ccb9d12927
Merge pull request #5462 from cappyzawa/feat/runtime-secrets-migration
...
Migrate sourcesecret package to runtime/secrets APIs
2025-07-29 14:59:44 +01:00
8b95a09319
Migrate sourcesecret package to runtime/secrets APIs
...
The sourcesecret package now uses pkg/runtime/secrets factory
functions instead of the previous monolithic approach. This
provides standardized secret generation with consistent
validation and error handling across all authentication types.
Signed-off-by: cappyzawa <cappyzawa@gmail.com>
2025-07-29 22:50:56 +09:00
8176d88801
Merge pull request #5440 from pinkavaj/pi-labels
...
manifests: Add `app.kubernetes.io/part-of: flux` label to controller pods
2025-07-28 11:37:24 +03:00
2f850743fa
Add labels to Pod templates
...
Ensure also pods contain the relevant labels inherited from pared
Deployment object, this makes it easier to select and filter the pods
using the labels eg. when scraping for metrics.
Signed-off-by: Jiří Pinkava <j-pi@seznam.cz>
2025-07-28 10:09:12 +02:00
4e53b6cb8d
Merge pull request #5460 from fluxcd/ci-token-update
...
ci: Use GITHUB_TOKEN for API calls in update workflow
2025-07-18 14:16:08 +03:00
0bb2e3929f
ci: Use GITHUB_TOKEN for API calls in update workflow
...
Signed-off-by: Stefan Prodan <stefan.prodan@gmail.com>
2025-07-18 13:33:10 +03:00
82b38dfa68
Merge pull request #5455 from fluxcd/upgrade-deps
...
Upgrade fluxcd/pkg dependencies
2025-07-15 10:51:36 +01:00
b3b404ed30
Upgrade fluxcd/pkg dependencies
...
Signed-off-by: Matheus Pimenta <matheuscscp@gmail.com>
2025-07-15 10:32:35 +01:00
45990633e6
Merge pull request #5435 from fluxcd/dependabot/github_actions/ci-641206964f
...
build(deps): bump the ci group across 1 directory with 7 updates
2025-07-15 10:31:53 +03:00
97937c55bf
build(deps): bump the ci group across 1 directory with 7 updates
...
Bumps the ci group with 7 updates in the / directory:
| Package | From | To |
| --- | --- | --- |
| [korthout/backport-action](https://github.com/korthout/backport-action ) | `3.2.0` | `3.2.1` |
| [fluxcd/pkg](https://github.com/fluxcd/pkg ) | `1.17.0` | `1.18.0` |
| [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action ) | `3.10.0` | `3.11.1` |
| [ossf/scorecard-action](https://github.com/ossf/scorecard-action ) | `2.4.1` | `2.4.2` |
| [github/codeql-action](https://github.com/github/codeql-action ) | `3.28.17` | `3.29.2` |
| [anchore/sbom-action](https://github.com/anchore/sbom-action ) | `0.19.0` | `0.20.1` |
| [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer ) | `3.8.2` | `3.9.1` |
Updates `korthout/backport-action` from 3.2.0 to 3.2.1
- [Release notes](https://github.com/korthout/backport-action/releases )
- [Commits](436145e922...0193454f0c
)
Updates `fluxcd/pkg` from 1.17.0 to 1.18.0
- [Commits](7e9c75bbb6...3d6f759b76
)
Updates `docker/setup-buildx-action` from 3.10.0 to 3.11.1
- [Release notes](https://github.com/docker/setup-buildx-action/releases )
- [Commits](b5ca514318...e468171a9d
)
Updates `ossf/scorecard-action` from 2.4.1 to 2.4.2
- [Release notes](https://github.com/ossf/scorecard-action/releases )
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md )
- [Commits](f49aabe0b5...05b42c6244
)
Updates `github/codeql-action` from 3.28.17 to 3.29.2
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](60168efe1c...181d5eefc2
)
Updates `anchore/sbom-action` from 0.19.0 to 0.20.1
- [Release notes](https://github.com/anchore/sbom-action/releases )
- [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md )
- [Commits](9f73021414...9246b90769
)
Updates `sigstore/cosign-installer` from 3.8.2 to 3.9.1
- [Release notes](https://github.com/sigstore/cosign-installer/releases )
- [Commits](3454372f43...398d4b0eee
)
---
updated-dependencies:
- dependency-name: korthout/backport-action
dependency-version: 3.2.1
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: ci
- dependency-name: fluxcd/pkg
dependency-version: 1.18.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: ci
- dependency-name: docker/setup-buildx-action
dependency-version: 3.11.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: ci
- dependency-name: ossf/scorecard-action
dependency-version: 2.4.2
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: ci
- dependency-name: github/codeql-action
dependency-version: 3.29.2
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: ci
- dependency-name: anchore/sbom-action
dependency-version: 0.20.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: ci
- dependency-name: sigstore/cosign-installer
dependency-version: 3.9.1
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: ci
...
Signed-off-by: dependabot[bot] <support@github.com>
2025-07-15 06:30:36 +00:00
f79c44ee0a
Merge pull request #5453 from fluxcd/k8s-1.33.2
...
Update dependencies to Kubernetes 1.33.2
2025-07-11 19:31:37 +03:00
16eb212609
Update dependencies to Kubernetes 1.33.2
...
Signed-off-by: Stefan Prodan <stefan.prodan@gmail.com>
2025-07-11 18:31:11 +03:00
5da5186b3b
Merge pull request #5451 from dgunzy/bump-kustomize-1.18.1
...
Fix `flux diff kustomization` ignore patterns
2025-07-11 18:05:29 +03:00
158618e632
Bump pkg/kustomize 1.18.1
...
Fixes #4921
Signed-off-by: Daniel Guns <danbguns@gmail.com>
2025-07-11 11:53:42 -03:00
81bd619abd
Merge pull request #5452 from fluxcd/rfc-0010-kubeconfig
...
[RFC-0010] Add workload identity support for remote generic clusters
2025-07-11 11:42:10 +01:00
d2aa9fb996
[RFC-0010] Add workload identity support for remote generic clusters
...
Signed-off-by: Matheus Pimenta <matheuscscp@gmail.com>
2025-07-11 11:40:45 +01:00
315dad8682
Merge pull request #5449 from fluxcd/fix-push-insecure
...
Fix `flux push artifact` for insecure registries
2025-07-10 13:07:11 +03:00
600ec37524
Fix flux push artifact
for insecure registries
...
Signed-off-by: Stefan Prodan <stefan.prodan@gmail.com>
2025-07-10 12:38:53 +03:00
1af7e08f07
Merge pull request #5443 from fluxcd/update-components
...
Update toolkit components
2025-07-08 10:23:45 +01:00
61a19cac84
Update toolkit components
...
- kustomize-controller to v1.6.1
https://github.com/fluxcd/kustomize-controller/blob/v1.6.1/CHANGELOG.md
Signed-off-by: GitHub <noreply@github.com>
2025-07-08 09:07:31 +00:00
fa8ef5b9d1
Merge pull request #5434 from fluxcd/rfc-0010-kubeconfig
...
[RFC-0010] Add workload identity support for remote clusters
2025-07-07 16:14:35 +01:00
eb5904fb9d
[RFC-0010] Add workload identity support for remote clusters
...
Signed-off-by: Matheus Pimenta <matheuscscp@gmail.com>
2025-06-30 17:02:53 +01:00
fda72a014c
Merge pull request #5431 from dgunzy/bump-ssa-v0.49.0
...
Bump pkg/ssa to v0.49.0 for CABundle validation fix
2025-06-29 16:48:37 +01:00
f4d6934a6f
Bump pkg/ssa to v0.49.0 for CABundle validation fix
...
Includes fix for #800 : Remove CABundle from CRDs if cert is invalid
Signed-off-by: Daniel Guns <danbguns@gmail.com>
2025-06-29 12:38:45 -03:00
545b338004
Merge pull request #5426 from fluxcd/update-components
...
Update toolkit components
2025-06-27 13:39:38 +03:00
a8425f50bd
Fix: Prioritize sha2-512 and sha2-256 for ssh-rsa host keys
...
Signed-off-by: Matheus Pimenta <matheuscscp@gmail.com>
2025-06-27 11:26:31 +01:00
24bf751d4d
Update toolkit components
...
- source-controller to v1.6.2
https://github.com/fluxcd/source-controller/blob/v1.6.2/CHANGELOG.md
- image-automation-controller to v0.41.2
https://github.com/fluxcd/image-automation-controller/blob/v0.41.2/CHANGELOG.md
Signed-off-by: GitHub <noreply@github.com>
2025-06-27 10:21:22 +00:00
cf157ad8a3
Merge pull request #5421 from dgunzy/promote-image-commands-stable
...
Promote image CLI commands to stable
2025-06-26 10:08:21 +01:00
5a4bc9410b
Promote image CLI commands to stable
...
Remove experimental status from flux image commands in preparation
for GA release of image automation APIs.
Partial fix for #5411
Signed-off-by: Daniel Guns <danbguns@gmail.com>
2025-06-25 20:52:11 -03:00
de594183bd
Merge pull request #5418 from cappyzawa/cleanup-auth-error-handling
...
refactor: cleanup GetArtifactRegistryCredentials error handling
2025-06-21 08:47:13 +01:00
4c343893c5
refactor: cleanup GetArtifactRegistryCredentials error handling
...
Update fluxcd/pkg/auth to v0.18.0 and simplify error handling for
GetArtifactRegistryCredentials() following the improvements made in
the library.
Similar to fluxcd/image-reflector-controller#786 , this removes
unnecessary nil checks as the function now returns errors directly
for unsupported providers.
- Replace authentication code in push_artifact.go with loginWithProvider()
- Remove unnecessary authenticator nil check in oci.go
- Remove unused imports (errors, auth packages)
Signed-off-by: cappyzawa <cappyzawa@gmail.com>
2025-06-21 14:11:18 +09:00
8ae0aaa46c
Merge pull request #5409 from fluxcd/update-components
...
Update toolkit components
2025-06-13 18:13:38 +01:00
6b3a1134bd
Update toolkit components
...
- source-controller to v1.6.1
https://github.com/fluxcd/source-controller/blob/v1.6.1/CHANGELOG.md
- image-reflector-controller to v0.35.2
https://github.com/fluxcd/image-reflector-controller/blob/v0.35.2/CHANGELOG.md
- image-automation-controller to v0.41.1
https://github.com/fluxcd/image-automation-controller/blob/v0.41.1/CHANGELOG.md
Signed-off-by: GitHub <noreply@github.com>
2025-06-13 16:59:37 +00:00
40a9b495b2
Merge pull request #5402 from reiSh6phoo9o/feat/configurable_serviceaccountname
...
Make service-account name configurable in `flux create tenant`
2025-06-13 15:30:11 +03:00
1d34e5355b
Make golden tests pass
...
Signed-off-by: Stefan Bickel <stefan.bickel@cornelsen.de>
2025-06-13 13:25:26 +02:00
00d0e1af25
Add tests and golden files for create tenant
...
Signed-off-by: Stefan Bickel <stefan.bickel@cornelsen.de>
2025-06-13 13:25:26 +02:00
9f29702f54
Add cli arg --with-service-account
...
Signed-off-by: Stefan Bickel <stefan.bickel@cornelsen.de>
2025-06-13 13:25:26 +02:00
7626cd0c86
Merge pull request #5407 from cappyzawa/refactor-deprecated-ssa-func
...
refactor: Use `normalize.UnstructuredList` instead of `ssa.SetNativeKindsDefaults`
2025-06-13 14:07:43 +03:00
5291902fd7
Use normalize.UnstructuredList instead of ssa.SetNativeKindsDefaults
...
Signed-off-by: cappyzawa <cappyzawa@gmail.com>
2025-06-13 15:15:47 +09:00
1757d964c0
Merge pull request #5404 from fluxcd/fix-host-keys
...
Fix `knownhosts key mismatch` regression bug
2025-06-12 18:54:43 +01:00
999f61c02e
Upgrade dependencies
...
Signed-off-by: Matheus Pimenta <matheuscscp@gmail.com>
2025-06-12 18:12:50 +01:00
5eb43e4566
Merge pull request #5390 from fluxcd/azure-cli-auth
...
fix: Allow Azure CLI calls in `flux push artifact --provider azure` on DevOps runners
2025-06-09 15:59:31 +01:00
ec3804cc6f
Introduce support for shelling out to Azure binaries in authentication
...
Signed-off-by: Matheus Pimenta <matheuscscp@gmail.com>
2025-06-09 14:07:51 +01:00
4c3aed9faf
Merge pull request #5389 from ba-work/add-sparse-checkout
...
Add sparse checkout to cli
2025-06-04 18:10:30 +01:00
06e3047a2f
add sparse checkout to cli
...
Signed-off-by: Brock Alberry <brock.alberry@cse-cst.gc.ca>
2025-06-04 12:04:41 -04:00
99e6791f4b
Merge pull request #5347 from fluxcd/remove-manifests
...
Remove credentials sync manifests
2025-06-04 15:57:59 +01:00
9cad95dda5
Remove credentials sync manifests
...
Signed-off-by: Matheus Pimenta <matheuscscp@gmail.com>
2025-06-04 15:35:47 +01:00
76c584e751
Merge pull request #5388 from JIbald/typo
...
correct small typo
2025-06-04 11:43:07 +01:00
cd4244ae65
correct small typo
...
Signed-off-by: Johannes Ibald <johannes.ibald@etes.de>
2025-06-04 11:21:11 +02:00
1d6137d39d
Merge pull request #5383 from fluxcd/test-image-automation-digest
...
Add digest pinning to image automation testing
2025-06-01 22:11:27 +03:00