Releases: edgelesssys/constellation
Releases · edgelesssys/constellation
v2.16.1
This release improves the user experience on STACKIT. Users on other platforms can safely skip this version.
What's Changed
🎁 New features
🐛 Bug fixes
🔧 Other changes
- simplify configuration by reading STACKIT related credentials from canonical locations
- improve STACKIT related documentation
Full Changelog: v2.16.0...v2.16.1
v2.16.0
v2.15.1
What's Changed
🛠 Breaking changes
- Prepare for EOL of classic Azure Application insights by removing cloud loggers, by @msanft in #2892
Full Changelog: v2.15.0...v2.15.1
v2.15.0
What's Changed
🛠 Breaking changes
Important
An upgrade from v2.14.0
to v2.15.0
will require you to explicitly specify the microservice version in your Terraform configuration and re-apply the changed configuration while still on provider version v2.14.0
before upgrading to the provider version v2.15.0
.
🎁 New features
- Add pod disruption budgets so the cluster-autoscaler is able to move kube-admin namespaced resources by @3u13r in #2781
- cli: support for GCP marketplace images by @msanft in #2792
- attestation: enable Constellation for Azure TDX by @daniel-weisse in #2827
🐛 Bug fixes
- terraform-provider: fix parsing
api_server_cert_sans
by @3u13r in #2758 - helm: masq traffic to the mini-qemu-metadata container so that the join-service can retrieve its metadata by @3u13r in #2782
- cli: fix AWS SEV-SNP latest version resolution in cluster by @elchead in #2810
- terraform-provider: validate microservice and image version during plan by @elchead in #2814
- operator: fix node upgrades when using Azure marketplace images by @msanft in #2846
- cilium: performance fixes and reproducible images by @burgerdev @3u13r in #2855
🔧 Other changes
Full Changelog: v2.14.3...v2.15.0
v2.14.3
What's Changed
🐛 Bug fixes
- helm: masq traffic to the mini-qemu-metadata container so that the join-service can retrieve it's metadata by @3u13r in #2782
- node-operator: allow the upgrade process to succeed by correctly setting the communityGallery VM image in Azure by @elchead in #2788
Full Changelog: v2.14.2...v2.14.3
v2.14.2
v2.14.1
v2.14.0
What's Changed
🎁 New features
- terraform-provider: first release of the Terraform provider for full lifecycle cluster management in Terraform by @daniel-weisse, @elchead and @msanft
- Enable Cilium node-to-node strict encryption by @3u13r in #2462
- cli: enable
constellation apply
to create new clusters by @daniel-weisse in #2549 - docs: add Helm chart for VPN connectivity by @burgerdev in #2577
- aws: reintroduce SNP-based attestation by @derpsteb in #2601
- Make Kubernetes serviceCIDR configurable in config by @3u13r in #2660
- terraform: Azure Marketplace image support by @msanft in #2651
- image: reproducible builds test by @malt3 in #2707
- deps: update cert manager to 1.12.6 by @3u13r in #2700
- deps: pin cert-manager image to sha256 checksum by @elchead in #2721
- deps: pin Kubernetes container image hashes by @burgerdev in #2719
🐛 Bug fixes
- cli: fix panic in status cmd without conf file by @elchead in #2625
- api: respect
HTTP(S)_PROXY
environment variable by @msanft in #2635
New Contributors
- @burgerdev made their first contribution in #2576
Full Changelog: v2.13.0...v2.14.0
v2.13.0
What's Changed
🎁 New features
- cli: add field docs to the state file by @msanft in #2453
- cli: generate state file during
constellation config generate
by @msanft in #2455 - Support internal load balancers by @3u13r in #2388
- cli: add
constellation apply
command to replaceinit
andupgrade apply
by @daniel-weisse in #2484 - cli: state file validation by @msanft in #2523
- terraform: Terraform module for AWS by @elchead in #2503
- terraform: Terraform module for GCP by @elchead in #2553
- terraform: Terraform module for Azure by @msanft in #2566
🐛 Bug fixes
- helm: add GCP CCM permissions for internal LBs by @3u13r in #2474
- [Windows] cli: fix incorrect filepath separator causing upgrades to fail by @daniel-weisse in #2562
🔧 Other changes
- docs: add new page to document s3proxy by @derpsteb in #2417
- docs: extend filestash example with more regions by @derpsteb in #2445
- docs: document self-managed infrastructure by @msanft in #2458
- hack: remove GCP internal LB by @3u13r in #2502
- docs: refer to apply command instead of
init
orupgrade apply
by @daniel-weisse in #2487 - docs: align self-managed infrastructure docs with e2e worfklow by @msanft in #2525
New Contributors
Full Changelog: v2.12.0...v2.13.0
v2.12.0
What's Changed
🛠 Breaking changes
🎁 New features
- cli: perform upgrades in-place in Terraform workspace by @msanft in #2317
- s3proxy: add initial implementation by @derpsteb in #2385
🐛 Bug fixes
- cli: temporarily increase AWS ASG creation timeout by @msanft in #2340
- cli: report log collection failure to user by @daniel-weisse in #2354
🔧 Other changes
- joinservice: cache certificates for Azure SEV-SNP attestation by @msanft in #2336
- docs: add observability page by @m1ghtym0 in #2384
- docs: document gcp permissions needed for upgrade by @3u13r in #2378
- cli: use state file on init and upgrade by @msanft in #2395
Full Changelog: v2.11.0...v2.12.0