From 00678614478d320f2a757bd15d217c8559b64cfe Mon Sep 17 00:00:00 2001 From: Marco Ebert Date: Mon, 17 Oct 2022 16:49:40 +0200 Subject: [PATCH] Update controller container image to `v1.4.0`. (#353) --- CHANGELOG.md | 4 ++++ helm/nginx-ingress-controller-app/Chart.yaml | 2 +- .../templates/rbac.yaml | 16 ++++++++++++++++ helm/nginx-ingress-controller-app/values.yaml | 4 ++-- 4 files changed, 23 insertions(+), 3 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index ee6298c8..256c6c2f 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -11,6 +11,10 @@ and this project's packages adheres to [Semantic Versioning](http://semver.org/s - Add support to create internal Load Balancers on GCP. +### Changed + +- Update controller container image to [`v1.4.0`](https://github.com/kubernetes/ingress-nginx/blob/main/Changelog.md#140). ([#353](https://github.com/giantswarm/nginx-ingress-controller-app/pull/353)) + ### Removed - Disable `PodSecurityPolicy` for Kubernetes >= v1.25. ([#352](https://github.com/giantswarm/nginx-ingress-controller-app/pull/352)) diff --git a/helm/nginx-ingress-controller-app/Chart.yaml b/helm/nginx-ingress-controller-app/Chart.yaml index c86b65f2..2784f941 100644 --- a/helm/nginx-ingress-controller-app/Chart.yaml +++ b/helm/nginx-ingress-controller-app/Chart.yaml @@ -1,5 +1,5 @@ apiVersion: v1 -appVersion: v1.3.1 +appVersion: v1.4.0 description: The most popular ingress controller for Kubernetes, based on NGINX home: https://github.com/giantswarm/nginx-ingress-controller-app icon: https://s.giantswarm.io/app-icons/nginx-ingress-controller/1/light.svg diff --git a/helm/nginx-ingress-controller-app/templates/rbac.yaml b/helm/nginx-ingress-controller-app/templates/rbac.yaml index 333a8063..db75133c 100644 --- a/helm/nginx-ingress-controller-app/templates/rbac.yaml +++ b/helm/nginx-ingress-controller-app/templates/rbac.yaml @@ -98,6 +98,14 @@ rules: verbs: - list - watch +- apiGroups: + - discovery.k8s.io + resources: + - endpointslices + verbs: + - list + - watch + - get --- apiVersion: rbac.authorization.k8s.io/v1 kind: Role @@ -191,6 +199,14 @@ rules: - leases verbs: - create +- apiGroups: + - discovery.k8s.io + resources: + - endpointslices + verbs: + - list + - watch + - get {{- if .Values.podSecurityPolicy.enabled }} --- apiVersion: rbac.authorization.k8s.io/v1 diff --git a/helm/nginx-ingress-controller-app/values.yaml b/helm/nginx-ingress-controller-app/values.yaml index 422954e3..b33d36d7 100644 --- a/helm/nginx-ingress-controller-app/values.yaml +++ b/helm/nginx-ingress-controller-app/values.yaml @@ -124,7 +124,7 @@ controller: # controller.image.tag # When updating tag make sure to also keep appVersion in Chart.yaml in sync - tag: v1.3.1 + tag: v1.4.0 # controller.containerPort containerPort: @@ -392,7 +392,7 @@ controller: enabled: true image: repository: giantswarm/ingress-nginx-kube-webhook-certgen - tag: v1.3.0 + tag: v20220916-gd32f8c343 backoffLimit: 6 priorityClassName: "" podAnnotations: {}