github kubernetes-sigs/security-profiles-operator v1.1.1

pre-release3 hours ago

Welcome to the v1.1.1 release of the security-profiles-operator!

This is a patch release with many fixes in the controllers, the recorder,
the log enricher, the admission webhooks and spoc, tighter API validation
and a smaller host mount, and a hardened supply chain: the per-arch images are
reproducible and get SLSA Build L3 provenance from GitHub Actions, spoc and
the Helm chart are published as OCI artifacts with their GitHub provenance,
and every staging artifact is signed and attested. It is the first release
whose promotion to registry.k8s.io carries the attestations along and gets
signed SLSA verification summaries of the image promoter. The general
usage and setup can be found in our documentation.

To install the operator, run:

$ kubectl apply -f https://raw.githubusercontent.com/kubernetes-sigs/security-profiles-operator/v1.1.1/deploy/operator.yaml

The operator can also be installed with helm, and spoc, the official
Security Profiles Operator Command Line Interface, is attached to this release
for amd64, arm64, ppc64le and s390x. Both are published as OCI
artifacts to registry.k8s.io/security-profiles-operator as well.

All released artifacts are signed and the release assets carry SLSA build
provenance. Verifying the released artifacts has the commands
for the container images, the binaries, the SBOM and the helm chart.

Feel free to provide us any kind of feedback in the official Kubernetes Slack
#security-profiles-operator channel
.

What's Changed

API Changes

Feature

Bug

Cleanup

Full Changelog: v1.1.0...v1.1.1

Don't miss a new security-profiles-operator release

NewReleases is sending notifications on new releases.