Commit Graph

3602 Commits

Author SHA1 Message Date
Vitor Savian
968460dfe8 Add retention flag specific for s3
* Add retention flag specific for s3
* Add retention for the unit tests:

Signed-off-by: Vitor Savian <vitor.savian@suse.com>
2025-08-05 14:06:38 -03:00
Rafael
17cfde1c82 Update to v1.31.11 (#12650)
Signed-off-by: Rafael Breno <rafael_breno@outlook.com>
v1.31.11-rc1+k3s1 v1.31.11+k3s1
2025-07-16 16:36:45 -03:00
Brad Davidson
1364f42080 bump helm-controller and image
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-07-14 18:24:28 -07:00
Brad Davidson
c94e07181a Bump containerd to v2.0.5-k3s2
Adds backports of containerd/containerd#11588 and containerd/containerd#12053

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 0d48c8eb49)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-07-14 18:24:28 -07:00
Brad Davidson
19394a9da1 Update kine and use config defaults helper
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 5ce3db779d)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-07-14 18:24:28 -07:00
Brad Davidson
79887b7e1f Update to new CRDs
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 7ab7865530)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-07-14 18:24:28 -07:00
github-actions[bot]
daf744ddea chore: Bump golang:alpine version
Made with ❤️️ by updatecli

(cherry picked from commit 5ed2ef73c3)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-07-14 18:24:28 -07:00
dependabot[bot]
66bc0cb563 Bump alpine from 3.21 to 3.22 in /package
Bumps alpine from 3.21 to 3.22.

---
updated-dependencies:
- dependency-name: alpine
  dependency-version: '3.22'
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
(cherry picked from commit 1101b82769)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-07-14 18:24:28 -07:00
ERIK
c78b360232 Add etcdmigration e2e test
Signed-off-by: bo.jiang <bo.jiang@daocloud.io>
(cherry picked from commit be35453220)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-07-14 18:24:28 -07:00
bo.jiang
9fd01a8707 fix: Remove unused legacy certificates
Signed-off-by: bo.jiang <bo.jiang@daocloud.io>
(cherry picked from commit db778faaf3)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-07-14 18:24:28 -07:00
Derek Nola
d66f873a12 [Release-1.31] GHA Artifacts + Testing Backports July 2025 (#12610)
* Move to more secure split trivy workflow based on labels, not comments (#12592)

Signed-off-by: Derek Nola <derek.nola@suse.com>

* Add basic fuzz test

Signed-off-by: Derek Nola <derek.nola@suse.com>

* Add retry around common timeout for hardened docker test (#12601)

Signed-off-by: Derek Nola <derek.nola@suse.com>

* Remove ghcr build cache (#12602)

Signed-off-by: Derek Nola <derek.nola@suse.com>

* Migrate K3s Release Artifacts to GHA (#12606)

Signed-off-by: Derek Nola <derek.nola@suse.com>

---------

Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-07-11 10:55:51 -07:00
Vitor Savian
05e0f84a23 Refac shell completion to a better command structure
* Refac for shell completion

Signed-off-by: Vitor Savian <vitor.savian@suse.com>

* Change FLAGS to OPTIONS

Signed-off-by: Vitor Savian <vitor.savian@suse.com>

* Refac bash and zsh func names

Signed-off-by: Vitor Savian <vitor.savian@suse.com>

* Refac bash and zsh func names

Signed-off-by: Vitor Savian <vitor.savian@suse.com>

---------

Signed-off-by: Vitor Savian <vitor.savian@suse.com>
2025-07-11 03:45:20 -03:00
Derek Nola
77dca1ac15 Add usage description for etcd-snapshot (#12572)
Co-authored-by: Manuel Buil <mbuil@suse.com>
2025-07-03 09:24:25 -07:00
Rafael
c02ce139f6 Update to v1.31.10 (#12531)
Signed-off-by: Rafael Breno <32229014+rafaelbreno@users.noreply.github.com>
v1.31.10+k3s1 v1.31.10-rc1+k3s1
2025-06-20 14:24:34 -03:00
Roberto Bonafiglia
c548d39a53 Update network components
Signed-off-by: Roberto Bonafiglia <roberto.bonafiglia@suse.com>
2025-06-17 15:00:26 +02:00
Brad Davidson
60862b9d4b Bump helm-controller
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-06-16 16:31:10 -07:00
Brad Davidson
5f094d699a Fix rootless e2e test
The install script was starting the service, and then the test itself was restarting it immediately thereafter, which caused frequent flakes.

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 0446d79e27)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-06-13 11:08:25 -07:00
Brad Davidson
eb195875e5 Fix sqlite-etcd migration
Forgot to add new config to temporary kine in #12293

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 4eabd0f1fd)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-06-13 11:08:25 -07:00
Brad Davidson
9c230013d5 Bump dynamiclistener to v0.6.3
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 22d92bcb22)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-06-13 11:08:25 -07:00
Zero King
ad7568bf8e Add new topologySpreadConstraints to coredns
Prefer scaling across zones if multiple zones are available.

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-06-13 11:08:25 -07:00
bo.jiang
5793ff60c7 Fix K3s not validating datastore connection when no token is set
Signed-off-by: bo.jiang <bo.jiang@daocloud.io>
(cherry picked from commit b5f4fd1d73)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-06-13 11:08:25 -07:00
haruna
0031ed6df1 Improve shebang of bash completion script
Signed-off-by: haruna <w10776e8w@yahoo.co.jp>
(cherry picked from commit d256968ee4)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-06-13 11:08:25 -07:00
bo.jiang
ce341a1270 Fix secrets encryption rotation timeout causing false failures
Signed-off-by: bo.jiang <bo.jiang@daocloud.io>
(cherry picked from commit f7f546a23e)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-06-13 11:08:25 -07:00
Derek Nola
d2465ddef4 Build and push k3s image to GHCR
Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-06-10 10:06:19 -06:00
Derek Nola
080f7430c0 Remove unused scripts files
Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-06-10 10:06:19 -06:00
Derek Nola
414195f4a7 Remove legacy PROXY Envs in build system
Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-06-10 10:06:19 -06:00
Derek Nola
210da4d177 Build k3s overhaul (#12200)
* Add full ci support without Dapper
* Seperate git and other version tags, improves caching on binary builds
* Use new local targets for build-k3s.yaml workflow
* Allow optional ghcr build caching
* Build binary using GHA native commands
* Use internal setup-go action for e2e.yaml
* Add emulation builds to k3s-build.yaml (for arm32 and future riscv64)
* Be consistent in k3s artifact names
* Fix package/dockerfile warnings
* Fix install script for PR installs

Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-06-10 10:06:19 -06:00
Derek Nola
7b64e11b6a Simplify and update E2E drone pipeline (#10430)
Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-06-10 10:06:19 -06:00
Vitor Savian
812206503b Change binary max size to 75
Signed-off-by: Vitor Savian <vitor.savian@suse.com>
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
v1.31.9-rc1+k3s1 v1.31.9+k3s1
2025-05-16 10:18:36 -07:00
Brad Davidson
9cb40e502a Fix e2e startup test
Do more cleanup between runs, collect more logs on failure.

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-16 10:18:36 -07:00
Rafael
dd2bda4ef9 Update to v1.31.9 (#12363)
Signed-off-by: Rafael Breno <32229014+rafaelbreno@users.noreply.github.com>
2025-05-16 13:20:23 -03:00
Brad Davidson
6c7be18621 Fix startuphooks race condition panic
Ensure startup hooks WaitGroup is initialized before starting goroutine that will wait on it

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-15 17:46:07 -07:00
Brad Davidson
64981bc458 Fix secretsencryption request handler panic
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-15 17:46:07 -07:00
Brad Davidson
398eef4220 Fix authorization-config/authentication-config handling
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-15 15:39:35 -07:00
Brad Davidson
8053523ea1 Sync datastore config defaults with kine CLI
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 10e3d40bf3)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Brad Davidson
34e81a6613 Bump kine and enable sqlite dbstat
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 2747770623)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Richard Hansen
d4bb1cbbda flannel: Use custom type for network mode (IPv4, IPv6, dual-stack)
Move the `ipv4` and `ipv6` constants to their own constant
declaration.  This ensures that the `iota` expression for the `ipv4`
constant evaluates to 0, not some arbitrary value.  (`iota` evaluates
to N for the Nth constant in the constant declaration; see
<https://go.dev/ref/spec#Iota>.)  This is also more idiomatic, which
improves readability.

Also switch from incremental integers to bit flags, and use bitwise
operators for checking.  This is more idiomatic (the integer is
treated like a set of booleans), it avoids some code duplication, and
it is necessary to avoid ambiguity.  Consider the following:

    const (
    	ipv4 = iota
    	ipv6
    )

In the above, `ipv4` would have the value 0 and `ipv6` would have the
value 1.  This would make it impossible to distinguish an IPv6-only
stack from a dual-stack configuration because `ipv6` would equal
`ipv4 + ipv6`.  With bit flags this problem doesn't exist.

And put the integer holding the bit flags in a custom type with
convenience methods to improve readability.

Signed-off-by: Richard Hansen <rhansen@rhansen.org>
(cherry picked from commit 925726c84d)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
bo.jiang
a890866a83 Optimize certificate status check
Signed-off-by: bo.jiang <bo.jiang@daocloud.io>
(cherry picked from commit 4c1f014d27)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Brad Davidson
36ef04e9c9 Add support for conditional image tarball imports
Normally K3s will import all tarballs in the image dir on startup, and
re-import any tarballs that change while it is running.

This change allows users to opt into only importing tarballs that have
changed since they were last imported, even across restarts.

This behavior is opted into by touching a `.cache.json` file in the
images dir. This file is used to track the size and mtime of the image
files when they are imported.

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 67291090ca)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Brad Davidson
bc309b8c15 Add CLI flag and config file for s3 bucket lookup type
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit a8f0acbe52)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Brad Davidson
29b29b8e15 Add anonymous-auth to flags gated on empty authorization-config value
Also warn if default flags are not set due to user provided config

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 921e502918)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Brad Davidson
ca634926b8 Bump containerd/cri-dockerd/spegel/runc
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit b15af84e4a)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Vitor Savian
8efef65aaf Fix prints that broke unit tests
Signed-off-by: Vitor Savian <vitor.savian@suse.com>
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Brad Davidson
a4f870e60b Bump spegel to v0.1.1
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
(cherry picked from commit 396f1366cc)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Robert Rose
c037d66355 Remove resources created by addon before deleting addon (#11975)
Remove the AddOn last, after any resources it created in the cluster
have been deleted and the AddOn file is removed.

Signed-off-by: Robert Rose <robert.rose@mailbox.org>
(cherry picked from commit 5e1845b7c1)
Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
2025-05-13 14:45:27 -07:00
Vitor Savian
b39fd93002 Update certification renew alert to 120 days
Signed-off-by: Vitor Savian <vitor.savian@suse.com>
2025-05-13 17:46:08 -03:00
Vitor Savian
a2634b8904 Add generation for kube-scheduler and kube-controller-manager certs (#12285)
* Add generation for kube-scheduler and kube-controller-manager certs

Signed-off-by: Vitor Savian <vitor.savian@suse.com>

* Add new certs to the tests

Signed-off-by: Vitor Savian <vitor.savian@suse.com>

* Change cert-dir to tls-cert-file and tls-private-key-file

Signed-off-by: Vitor Savian <vitor.savian@suse.com>

* Address altName structure

Co-authored-by: Brad Davidson <brad@oatmail.org>
Signed-off-by: Vitor Savian <vitor.savian@suse.com>

---------

Signed-off-by: Vitor Savian <vitor.savian@suse.com>
Co-authored-by: Brad Davidson <brad@oatmail.org>
2025-05-13 17:46:08 -03:00
Derek Nola
e02a03c34d Better logging on E2E tests around metrics availability (#12198)
Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-05-07 15:27:30 -07:00
Derek Nola
53c90f1ed0 Fix sonobuoy conformance testing (#12214)
Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-05-07 15:27:30 -07:00
Derek Nola
2e568b728f Address top flaky tests (#12163)
* ExternalIP E2E test: Improve clientIP checking
* E2E: Better top node error logs
* Skew test: increase deployment timeout

Signed-off-by: Derek Nola <derek.nola@suse.com>
2025-05-07 15:27:30 -07:00