15.1.0 (2026-09-09)
⚠ BREAKING CHANGES
- Add user principal id to global role binding (#2252)
Features
- Add new field
extendedto resource quota handlers (#1811) (3f3da57) - add refresh_interval support to catalog_v2 (#2202) (e956610)
- add reserved memory field (#1510) (c1b4fa0)
- add s3 retention config for etcd snapshots (#2402) (1730d97)
- add skip_schema_validation to app_v2 (#2294) (#2298) (b1f8bd7)
- add use internal certs option for local auth endpoint in cluster v2 (#1626) (#2301) (3e1899c)
- Add user principal id to global role binding (#2252) (84dc033)
- added ipv6 suppport for eks operator (#2005) (e6f04c7)
- Expose the OIDC Client secret. (#2349) (#2373) (97a08e3)
- GitHub app provider (#1695) (cf6e584)
- implement PC and PDB support for the fleet agent (#1986) (ebf8d31)
- implement support to nutanix machine config (#2083) (a214fea)
- keycloak OIDC auth provider (#2033) (90d2e4e)
- OIDC Client validation (#2352) (#2372) (8d07bdd)
- Support OIDC Provider OIDC Clients (#2147) (#2270) (fc9497f)
- Support Openstack Server Groups affinity (#2223) (fc9cf47)
Bug Fixes
- [Docs] Add inherited_cluster_roles to docs (#1342) (04d1088)
- add all protocols to metadata (#1794) (186d8f6)
- add FOSSA scanning workflow (#1988) (7c865b3)
- add permissions to update issues (#1936) (a48759f)
- add search option exact match in principal (#1331) (a3f15f1)
- add support for AuthConfig Cognito (#2029) (1f3fd79)
- Add the inherited-namespaced-rules field to globalroles (#2340) (#2417) (7e8baeb)
- allow specifying sha (#1764) (47e9f55)
- Backport 2208 to v15 (#2213) (296c351)
- Backport 2238 v15 (#2247) (7892188)
- backport the release process (#2475) (4f45686)
- break out the config pkg for better testing (#1899) (80e2197)
- build before testing (#1903) (fed4427)
- Bump Go dependencies and Go version. (#2278) (#2286) (3f4f3ad)
- Bump golang.org/x/crypto from 0.33.0 to 0.35.0 (#1530) (e617600)
- clean up nix install script (#2230) (#2235) (70d4e05)
- clear space on runner before release (#1848) (a5cb46c)
- clear space on runners before release tests (#1838) (e11d17d)
- Correct genericoidc provider implementation and tests (#1691) (0d7b485)
- do not check out branch that we tag (#1932) (666f798)
- Docs Add name space variable to kubeconfig command (#2226) (222d5a8)
- enable manual rc release for older branches (#1834) (afc0a9f)
- ensure the correct workflow, users, and tags (#1772) (e28d375)
- Fix removal of deployment configuration on imported clusters (#2244) (#2322) (b4d4114)
- Fix typo in rancher2_cluster public_access_sources docs (#2229) (4865835)
- for manual releases skip the git validation (#1788) (d67d532)
- github script uses slashes for comments (#1863) (9a266f9)
- goreleaser needs git state at the new tag (#1768) (2d2805d)
- improve cleanup and skip in CI (#1895) (8f5c657)
- improve test isolation logic (#1879) (188dae9)
- improve the documentation for cluster resources (#1805) (d2f8ef4)
- login (#2016) (edb74ae)
- make sure to only match the tag specified (#1776) (cb60c2a)
- manual full release workflow (#1759) (73f3e9c)
- migrate login flow to /v1-public endpoint (#1997) (3523df3)
- missing quotes causing syntax error (#1907) (6bfbfd4)
- need to quote json list (#1875) (565c318)
- notifications to issues for manual rc (#1923) (d05989f)
- prepare for v14 release (#2012) (d396219)
- rc release calculator for new branches (#2025) (cfad809)
- release as v15.0.0 (#2243) (46ef025)
- remove broken resources (#1693) (2785ae4)
- remove GKE enable logic (#2000) (0b9e382)
- Remove ingress Nginx annotation examples (#2038) (610b2f5)
- remove protected filter when getting branches in issue tracking workflow (#2110) (b115402)
- remove pull target (#2098) (3def343)
- remove rke1 dependency (#2289) (#2297) (415c7ab)
- remove the default template (#1780) (acc669c)
- repository owner is in github context (#1891) (b23d521)
- resolve user_principal_id to user_id on global role binding create (#2366) (#2416) (9434405)
- Revert "feat: support using internal certs for the local auth endpoint" (#1626) (#2440) (#2445) (c85328c)
- run tests in different jobs (#1859) (651634a)
- security vulnerabilities and tracking workflow label (#2130) (4e5d376)
- set bootstrap sha and release version (#1755) (54b7dcf)
- set new release version (#2021) (b466f31)
- short circuit the testing logic (#1867) (42a638d)
- Stop data sources from generating kubeconfig tokens on every plan (#2269) (#2287) (8f0c51c)
- support exceptions in diff suppression (#1808) (2bb8da1)
- the first job should never skip (#1887) (d6a3ea6)
- typo in repository context (#1883) (c5ed793)
- typo in script name (#1915) (0257fdf)
- typo in variable name (#1911) (694d6ee)
- update checkout (#1842) (58979f1)
- update default token TTL to match Rancher (#2220) (23d0c85)
- update docs on app_v2 import (#2317) (#2329) (45f8156)
- update machine selector config example (#1976) (bda0250)
- update rancher2 config map import command (#1287) (1061ac6)
- update release config to get proper version (#1955) (c2e8d4a)
- update release manifest to force new version (#1951) (c878c36)
- update release to 13.1.0 (#1943) (a9ca6e7)
- update release to 13.1.1 (#1947) (b4df9f1)
- update release version (#1968) (687f1a8)
- update versions in registry manifest (#1963) (e75639c)
- use back tick instead of single quotes (#1852) (b449a29)
- use environment to pass data to the script (#1919) (0b62b72)
- use proper outputs for validating test (#1871) (46c9209)
- use separate goreleaser files for manual (#1784) (f9cc6bb)
- v3 public fallback logic (#2081) (f9c7a99)