@@ -26,56 +26,74 @@ annotations:
2626 artifacthub.io/license : Apache-2.0
2727 artifacthub.io/operator : ' true'
2828 artifacthub.io/operatorCapabilities : Full Lifecycle
29- artifacthub.io/prerelease : ' false'
29+ artifacthub.io/prerelease : " false"
3030 artifacthub.io/containsSecurityUpdates : ' true'
3131 artifacthub.io/changes : |
3232 - kind: added
33- description: "admission: authorize maintenance through RBAC "
33+ description: "auth: default JWT flows to inline auth "
3434 - kind: added
35- description: "api : add runtime restart controls "
35+ description: "observability : add workload metrics scraping support "
3636 - kind: added
37- description: "readreplicas : add steady-state read replica topology and status "
37+ description: "openbaocluster : add audit file storage "
3838 - kind: added
39- description: "readreplicas: integrate read replicas with upgrade and restore workflows"
39+ description: "openbaocluster: add ingress integration readiness"
40+ - kind: added
41+ description: "openbao: improve PKCS#11 runtime ergonomics"
4042 - kind: fixed
41- description: "admission: guard hardened security context overrides "
43+ description: "backup: record manual triggers and failure time "
4244 - kind: fixed
43- description: "helm: allow global values in chart schema "
45+ description: "config: align audit device options with OpenBao "
4446 - kind: fixed
45- description: "helm: Helm provisioner admission identity "
47+ description: "config: harden generated JWT roles "
4648 - kind: fixed
47- description: "infra: delete scaled-down raft PVCs "
49+ description: "config: use SemVer precedence for OpenBao version checks "
4850 - kind: fixed
49- description: "multitenancy: gate cluster reconcile on tenant onboarding "
51+ description: "deps: restore dependency update CI coverage "
5052 - kind: fixed
51- description: "network: Require source-scoped managed Ingress access "
53+ description: "deps: update x/crypto for vulncheck "
5254 - kind: fixed
53- description: "openbao: stage safe raft scale-downs "
55+ description: "deps: update x/net for vulncheck "
5456 - kind: fixed
55- description: "probe: stabilize openbao workload probes "
57+ description: "gateway: emit TLSRoute as Gateway API v1 "
5658 - kind: fixed
57- description: "provisioner: reduce release reconciliation log noise"
58- - kind: security
59- description: "security: fail closed for configured trusted roots"
59+ description: "helm: deduplicate generated RBAC labels"
60+ - kind: fixed
61+ description: "openbao: guard metrics-only listener configuration"
62+ - kind: fixed
63+ description: "openbao: share JWT token cache"
64+ - kind: fixed
65+ description: "provisioner: support external tenant PSS label ownership"
66+ - kind: fixed
67+ description: "rbac: allow verification pull secret reads"
6068 - kind: fixed
61- description: "status: mark unsafe admission mode not production-ready"
69+ description: "rbac: permit managed ServiceMonitor reconciliation"
70+ - kind: fixed
71+ description: "restore: harden restore job rendering"
72+ - kind: fixed
73+ description: "restore: validate static token secret identity"
74+ - kind: security
75+ description: "security: harden backup and restore helper inputs"
76+ - kind: security
77+ description: "security: harden backup restore endpoint validation"
78+ - kind: security
79+ description: "security: harden transit unseal credential handling"
6280 - kind: fixed
63- description: "upgrade: complete SSA ownership migration "
81+ description: "storage: enforce request-time endpoint guard "
6482 - kind: fixed
65- description: "upgrade: harden bluegreen and rolling recovery flakes "
83+ description: "storage: retry transient S3 bucket ensure failures "
6684 - kind: fixed
67- description: "upgrade: set executor job resource requirements "
85+ description: "upgrade: harden rolling upgrade resume "
6886 - kind: fixed
69- description: "upgrade: treat raft promote already-voter as no-op "
87+ description: "workload: mount OCI plugin directory "
7088 artifacthub.io/images : |
7189 - name: openbao-operator
72- image: ghcr.io/dc-tec/openbao-operator:0.2 .0
90+ image: ghcr.io/dc-tec/openbao-operator:0.3 .0
7391 - name: openbao-init
74- image: ghcr.io/dc-tec/openbao-init:0.2 .0
92+ image: ghcr.io/dc-tec/openbao-init:0.3 .0
7593 - name: openbao-backup
76- image: ghcr.io/dc-tec/openbao-backup:0.2 .0
94+ image: ghcr.io/dc-tec/openbao-backup:0.3 .0
7795 - name: openbao-upgrade
78- image: ghcr.io/dc-tec/openbao-upgrade:0.2 .0
96+ image: ghcr.io/dc-tec/openbao-upgrade:0.3 .0
7997 artifacthub.io/crds : |
8098 - kind: OpenBaoCluster
8199 version: v1alpha1
0 commit comments