Omni 1.12.4 (2026-10-07)
Welcome to the v1.12.4 release of Omni!
Please try out the release binaries and report any issues at
https://github.com/siderolabs/omni/issues.
Local Resource Service Removal
The local resource service, which served Omni resources on a local listener, is removed. Consumers should reach Omni through its regular API with a service account instead. Its services.localResourceService settings and flags have no effect.
Contributors
- Utku Ozdemir
- Oguz Kilcan
- Artem Chernyshev
- Andy Longwill
- immanuwell
Changes
22 commits
f9d1743a5release(v1.12.4): prepare releasea1265ba7afix: return only the unauthenticated error for an unsigned request69c79f273fix: redact config secrets and clear the stored OIDC client secret3b0446c85fix: forward only known headers to the Kubernetes apiserver4dfee714ffix: remove conflicting join token renew alias6eddd8c08fix: require a confirmed key for workload proxy access18ac5ee9dfix: make a resource's cluster label agree with its target3b2a95383fix: extract the cluster ID from label query terms correctly42a6dd708feat: allow upgrading one deprecated Talos to another one in maintenance999446893fix: do not allocate machines with outdated schematics into a cluster3526d6614fix: reject unknown Talos versions on the talosctl downloads endpoint7d5c9bf5cfeat: remove the local resource service33d8d5b7efix: resolve node headers only for the runtime that uses themd9e69d606fix: read local resource server stream metadata from its own contextdcfa43a27fix: verify the caller before reporting a resolution failure29958ee1afix: check access before rejecting a request that names several nodese38d71c06fix: record the outcome of Talos access in the audit log6f7d8c83efix: parse the role of a public key request before any lookup2982aa994fix: return only the access error for a denied requestfcf4c8568fix: return the same error for a missing and an inaccessible target668469919chore: bump otel libraries to close a vuln47322b255fix(frontend): add v prefix to installer image tag
Dependency Changes
This release has no dependency changes
Previous release can be found at v1.12.3