Kube-OVN - v1.10.7

Security

v1.10.7 (2022-11-11)

  • 6c2ff6ab set release for 1.10.7
  • 0b47ca3d fix: Add support for Mellanox NIC (#1999)
  • b2cd4df1 fix pinger namespace error (#2034)
  • 7e2c3be7 increase action timeout
  • 51dbde5e prepare release for 1.10.7
  • 2cab58da fix: gateway route should stay still when node is pingable (#2011)
  • f2bdb8ea iptables: avoid duplicate logging (#2028)
  • d895b766 update np name with character prefix (#2024)
  • 3267b0f5 bump kind and node image versions (#2023)
  • 5db54e30 fix ovn nb/sb health check (#2019)
  • 0633625b fix ovs fdb for the local bridge port (#2014)
  • cf1ffcb2 do not need to delete pg when update networkpolicy (#1959)
  • 381882c2 ci: upgrade deprecated actions (#2004)
  • 071bebc6 fix: make ip deletion the same as creation (#2002)
  • 1bf5fa96 fix: delete fiprule failed at first time (#1998)
  • 9e51caaa add check of write to ovn sb db for ovn-controller (#1989)
  • ce6536a4 fix grep matching device in routes (#1986)
  • 14566316 delete pod after TerminationGracePeriodSeconds (#1984)
  • 20ed648d ovs: fix waiting flows in underlay networking (#1983)
  • 8c9232ce feature: support default vpc use nat gw pod as cust vpc (#1979)
  • e7f3fb56 ovn db: recover automatically on startup if db corruption is detected (#1980)
  • e430042f fix: modify src route priority (#1973)
  • a62e0740 fix CVE-2022-32149
  • d433f257 avoid concurrent subnet status update (#1976)
  • 9e249b34 upgrade ovs-ovn pod by generation version instead of chart version (#1960)
  • 916ae918 fix metrics name (#1977)
  • f56bb0b0 add vm pod to ipam by ip when initIPAM (#1974)
  • ffa04989 validate nbctl socket path in start-controller.sh
  • 21b4b3f8 skip CVE-2022-3358 (#1972)
  • 3f836950 use latest base image
  • 2a1074e4 fix: add default deny acl (#1935)
  • aa716033 ovs: fix mac learning in environments with hairpin enabled (#1943)
  • 77c27d4b Fix registry for ovn-central container in install.sh (#1951)
  • 1f1e3c28 ovs: add fdb update logging (#1941)
  • eeaf796d add chart version check when upgrade ovs-ovn pod
  • b0907efc fix underlay e2e testing (#1929)
  • 4a80a485 set leader flag when get leader
  • 5ef11cb4 set ovsdb-server vlog level to avoid warnings caused by ovs-vsctl (#1937)
  • 122041c1 fix: pod mistaken ls label (#1925)
  • 8996131a ignore pod without lsp when add pod to port-group
  • ee1c306a add network partition check in ovn probes
  • efa8f60d update ns annotation when subnet cidr changed (#1921)
  • 3e00aa54 fix CVE-2022-27664
  • 98f7bc08 fix EIP/SNAT on dynamic Pod annotation (#1918)
  • bcaf1e7c fix: eip and nat crd can delete even if nat gw pod deleted and ipatab… (#1917)
  • 95ebe009 fix: failed to add eip (#1898)
  • 5e06b367 ci: increase golangci-lint timeout (#1894)
  • 72a26074 fix: gatewaynode might be null (#1896)
  • 5f5e85f6 fix: api rollback
  • 63eb2551 fix: diskfull may lead to wrong raft status for ovs db (#1635)
  • 2bc4f03e kubectl-ko: turn off pipefail for ovn leader check (#1891)
  • ec0f1e4f update dpdk base image
  • 503807e3 kubectl-ko: fix trace for KubeVirt VM (#1802)
  • f961605a fix duplicate logs for leader election (#1886)
  • 88473e63 fix setting ether dst addr for dnat (#1881)
  • 704c179e refactor iptables rules (#1868)
  • 7f399adf cni should handler unmont volume, when delete pod. (#1873)
  • 3e54d9dd delete and recreate netem qos when update process (#1872)
  • e52d3476 feat: check configuration (#1832)
  • e92c85fa fix: nat gw pod should set default gw to net1 so that to access public (#1864)

Contributors

  • Kaihang Zhang
  • Mengxin Liu
  • Noah
  • bobz965
  • hzma
  • jeffy
  • long.wang
  • lut777
  • runzhliu
  • shane
  • zhangzujian
  • 张祖建
  • 马洪贞

Details

date
Nov. 11, 2022, 8:09 a.m.
name
v1.10.7
type
Patch
👇
Register or login to:
  • 🔍View and search all Kube-OVN releases.
  • 🛠️Create and share lists to track your tools.
  • 🚨Setup notifications for major, security, feature or patch updates.
  • 🚀Much more coming soon!
Continue with GitHub
Continue with Google
or