MCK 1.13.0 Release Notes
New Features
- Ops Manager 9 support: Added support for Ops Manager version 9.0 to the
MongoDBOpsManagerresource.
Bug Fixes
- Fixed
PutSecretIfChangedfalling through to a Kubernetes write when the Vault secret backend is enabled and the Vault copy is already up to date. - Escape Ops Manager backup store identifiers when building admin API request paths, preventing request forgery to arbitrary Ops Manager endpoints.
- MongoDBUser: Fixed a bug where the connection string
Secretownership guard accepted a pre-existingSecretthat had no controller owner reference, allowing the operator to silently overwrite and adopt an administrator-createdSecret. The guard now rejects any pre-existingSecretnot already owned by the reconcilingMongoDBUser. - Ops Manager connectivity: Fixed an issue where a misconfigured or unresponsive Ops Manager endpoint could stall a reconcile worker indefinitely. The Ops Manager base URL set in the project
ConfigMapis now validated, and request timeouts are enforced so that reconciliation retries or continues upon failure. - LDAP: Fixed a bug where disabling LDAP did not remove the stored
bindQueryPasswordfrom the Ops Manager automation config. The LDAP block (including the plaintext bind credential) previously persisted indefinitely in OM config, backups, and agent downloads even after the user deleted the Kubernetes secret. Now the block is properly deleted from the deployment on disable.