Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

FOSSA-TEST #3

Draft
wants to merge 733 commits into
base: main
Choose a base branch
from
Draft
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
733 commits
Select commit Hold shift + click to select a range
e2b966c
docs: clarify LTS language (#20875)
jkirschner-hashicorp Mar 18, 2024
fea6926
Fix typo in example yaml for MeshService (#20879)
nathancoleman Mar 19, 2024
f3f2175
Update go-jose library (#20888)
Mar 22, 2024
12fd9db
Add docs for default_intention_policy (#20886)
Mar 22, 2024
d747b51
Handle ACL errors consistently when blocking query timeout is reached…
ishustava Mar 22, 2024
6026ada
[CE] feat(v2dns): enable v2 dns as default (#20715)
DanStough Mar 25, 2024
20210a8
fix broken link on sameness groups page (#20894)
jmurret Mar 25, 2024
d7f2563
Adds docs to upgrade-specific page to include the removal of the depr…
missylbytes Mar 26, 2024
cc959dc
security: triage false positive for go-jose/v3 (#20901)
zalimeni Mar 26, 2024
6212e7e
update changelog for 1.18.1 (#20912)
xwa153 Mar 27, 2024
4259b7b
Update Dockerfile: bump alpine (#20897)
Mar 27, 2024
2a2e773
Update Dockerfile: Base image for dev bump (#20919)
Mar 28, 2024
39112c7
GH-20889 - put conditionals are hcp initialization for consul server …
jmurret Mar 28, 2024
44facc2
chore: remove repetitive words (#20890)
availhang Mar 28, 2024
a6d9ad5
remove self-referencing link on network segments page (#20937)
jmurret Apr 1, 2024
3dc2751
Documentation: update python SDKs list (#20935)
manu-ns Apr 2, 2024
9af713f
[NET-5772] Make tcp external service registered on terminating gw rea…
nathancoleman Apr 3, 2024
be8d572
NET-8524 Remove registation of api gateway controller (#20950)
sarahalsmiller Apr 3, 2024
174f92a
docs: fix apply DNS ACL token via CLI (#20951)
jkirschner-hashicorp Apr 3, 2024
8659c06
Add diagrams for write flow through Raft (#20948)
freddygv Apr 4, 2024
3152ac3
security: bump go, x/net and envoy versions (#20956)
dduzgun-security Apr 8, 2024
ad23e96
ci: fix Envoy int test versions (#20964)
zalimeni Apr 8, 2024
159fcfb
security: ignore test and internal tool modules (#20963)
zalimeni Apr 8, 2024
d261a98
update go-control-plane envoy dependency to 0.12.0 (#20973)
jmurret Apr 10, 2024
e231f0e
Add an agent config option to diable per tenancy usage metrics. (#20976)
erichaberkorn Apr 11, 2024
a8d08e7
fix: consume ignored entries in CE downgrade via Ent snapshot (#20977)
zalimeni Apr 11, 2024
e52b170
FIX: wrong indentation of to block in Example yaml (#20974)
ChocolateAceCream Apr 11, 2024
5e9f02d
[NET-8091] Add file-system-certificate config entry for API gateway (…
nathancoleman Apr 15, 2024
08761f1
Net 6820 customize mesh gateway limits (#20945)
sarahalsmiller Apr 16, 2024
5eea0b6
test: force IPv4 on Docker 26+ to fix Envoy int tests (#20986)
zalimeni Apr 17, 2024
d106c7f
docs: KV tutorial becomes usage doc (#20994)
boruszak Apr 18, 2024
057ad7e
docs: Initial HCP Rebrand (#21000)
boruszak Apr 22, 2024
03ab736
feat(dataplane): allow token and tenancy information for proxied DNS …
DanStough Apr 22, 2024
4a3c3c0
docs: Redirect fix (#21008)
boruszak Apr 23, 2024
dbc0889
docs: Enterprise upgrade instruction (#20985)
boruszak Apr 24, 2024
e341fa0
docs: DNS caching tutorial becomes doc (#21010)
boruszak Apr 24, 2024
b9296f8
Fixed broken link in the ECS documentation (#21018)
Ranjandas Apr 29, 2024
bbd8080
HCP Consul Dedicated Rebrand changes (#21026)
boruszak May 1, 2024
3a6f2fb
security: bump envoy version and k8s.io/apimachinery (#21017)
dduzgun-security May 2, 2024
37e3ebe
chore: remove workstream from JIRA sync (#21031)
DanStough May 2, 2024
126784e
Update snapshot CLI command addition of Decode subcommand from PR#208…
natemollica-nm May 2, 2024
1793b50
chore: fix JIRA workflow (#21037)
DanStough May 3, 2024
8209b3f
security: fine-tune release scanner and bump coredns (#21038)
dduzgun-security May 3, 2024
8bea6cd
deployer: ensure the proxy/dns/pause containers do not continually ge…
rboyer May 3, 2024
4ad1757
add license file (#21035)
xwa153 May 3, 2024
86b0818
[NET-8601] security: upgrade vault/api to remove go-jose.v2 (#20910)
zalimeni May 4, 2024
b5b3a63
[NET-9098] Narrow scope of peering config on terminating gw filter ch…
nathancoleman May 6, 2024
5023460
test: remove v2 integration tests (#21056)
rboyer May 7, 2024
1535844
gossip: refactor some gossip related libraries into a central place (…
rboyer May 7, 2024
093618d
[NET-9141] ci: skip LICENSE copy for Ent linux packages (#21060)
zalimeni May 7, 2024
f51d080
Backport assistant onboarding with LTS support #9224 (#21058)
jeanneryan May 8, 2024
f56405e
security: Upgrade Go to 1.21.10 (#21074)
zalimeni May 9, 2024
8d4525a
doc: add clarifying note to versions.hcl (#21071)
zalimeni May 9, 2024
17df32e
NET-9084 - add tests to peering endpoint and blockingquery package to…
jmurret May 9, 2024
dc19ce3
NET-9143 - sameness group queries in DNS do not respect DefaultForFai…
jmurret May 10, 2024
794e730
docs: fix typo in security/acl (#21003)
nicoche May 10, 2024
0b03a92
Roll bpa version and cleanup (#21090)
jeanneryan May 13, 2024
6bf4214
ci: test BPA 0.4.1 with no-op doc change (#21091)
zalimeni May 13, 2024
d312d04
ci: temporarily re-enable retired CE backport labels (#21094)
zalimeni May 13, 2024
d0ebc85
docs: Fix docs for `-ui-content-path` CLI flag (#21095)
blake May 13, 2024
48df56f
docs: Add fault injection to Envoy extensions list (#21087)
blake May 13, 2024
a975b04
NET-5879 - move the filter for non-passing to occur in the health RPC…
jmurret May 14, 2024
9b2c1be
NET-5879 - expose sameness group param on service health endpoint and…
jmurret May 14, 2024
94791f7
build: update gha to latest approved tsccr (#21061)
DanStough May 14, 2024
04940e2
additional changes to ensure sameness groups without DefaultForFailov…
jmurret May 14, 2024
8c54eae
Xw/update changelog main (#21108)
xwa153 May 15, 2024
3c24c49
docs: Fix two small typos in "What is Consul?" introduction (#21110)
beckilee May 15, 2024
9b9c836
latest ui files in main (#21119)
jmurret May 15, 2024
1f4caae
upgrade deep-copy version, upgrade go to 1.22.3 (#21113)
dhiaayachi May 16, 2024
b9e8437
docs: FIPS certification (#21131)
boruszak May 20, 2024
f12ba3f
chore: fix PR Labeler config (#21141)
DanStough May 20, 2024
1c0f6e5
docs: Well Architected Framework content migration (#21099)
boruszak May 20, 2024
943f007
Doc added for Version specific upgrade Consul on Kubernetes component…
20sr20 May 20, 2024
6d088db
set go toolchain to go1.22.3 (#21195)
dhiaayachi May 21, 2024
50b26aa
deployer: remove catalog/mesh v2 support (#21194)
rboyer May 21, 2024
d5e92da
Update Vault/Nomad versions. (#21193)
NicoletaPopoviciu May 22, 2024
b2a618b
Fixes annotation and introduce tabs for static-client spec (#21199)
Ranjandas May 22, 2024
6f02144
docs: Fix spelling errors (#21204)
blake May 22, 2024
574f53d
security: enable go stdlib scans (#20905)
dduzgun-security May 23, 2024
912c5f5
docs: relocate Consul capacity planning page from waf/ to docs/ (#21088)
krastin May 24, 2024
cf1c030
feat: update supported envoy to 1.29 (#21142)
DanStough May 24, 2024
d2b107f
ci: update BPA to disable inactive CE backports (#21214)
zalimeni May 24, 2024
f70fcab
build: bandaid for action-go-build clean flag (#21217)
DanStough May 24, 2024
f3d1a8b
build: set go-build reproducible to false (#21218)
DanStough May 24, 2024
54a545d
build: prepare for 1.20.0 dev (#21219)
DanStough May 25, 2024
c1a7221
[NET-9445] Re-enable 1.18 backports during 1.19 RC (#21223)
zalimeni May 28, 2024
5f129ad
docs: Fix heading errors in security models (#21227)
boruszak May 28, 2024
9fb50fa
Fix Consul versions in nightly 1.19 int tests (#21226)
zalimeni May 28, 2024
ad9ada8
[NET-9510] Document known OpenShift issue for consul-k8s 1.2.x, 1.3.x…
nathancoleman May 28, 2024
11bcf52
dns v2 - both empty string and default should be allowed for namespac…
jmurret May 28, 2024
544ce7b
Restore 1.16 backports until 1.19 is released (#21240)
zalimeni May 30, 2024
6450b6a
update TestHTTPHandlers_AgentMetrics_LeaderShipMetrics to use 3 serve…
jmurret Jun 3, 2024
4edf369
[NET-8953] ci: disable Ent-only nightly tests on CE (#21242)
zalimeni Jun 3, 2024
d3ad840
[NET-8953] docs: add backport policy section to CONTRIBUTING (#21252)
zalimeni Jun 4, 2024
cb7ae64
docs: add a note for DNS resolver recommendations (#21250)
dduzgun-security Jun 4, 2024
68a7648
security: resolve incorrect type conversions (#21251)
dduzgun-security Jun 4, 2024
9e23fa7
[NET-9445] chore: update submodule versions (#21263)
zalimeni Jun 5, 2024
2631ec8
update go version to 1.22.4 (#21265)
dhiaayachi Jun 6, 2024
ffa7aff
[NET-8971] docs: update LTS Envoy versions to include 1.29.4 (#21271)
zalimeni Jun 6, 2024
2cdc387
Bump Envoy Versions (#21277)
sarahalsmiller Jun 10, 2024
3c25956
Fix broken link in wal-logstore/index.mdx (#21286)
wjordan Jun 10, 2024
fe2f8f1
docs: remove multiport docs, add v1dns flag (#21278)
DanStough Jun 10, 2024
3ee6816
ci: fix nightly cron schedules to run once (#21296)
zalimeni Jun 10, 2024
7ac9b1f
ci: fix a few missed Envoy version changes in latest bump (#21300)
zalimeni Jun 11, 2024
04d95d2
Use text/template instead of html/template for ACL template policy ge…
nathancoleman Jun 11, 2024
9703534
docs: File System Certificates (#21259)
boruszak Jun 11, 2024
963cee2
docs: External Services CRD (#21264)
boruszak Jun 11, 2024
14e409e
Configure linter to forbid use of html/template (#21307)
nathancoleman Jun 11, 2024
bba8dcb
docs: Consul v1.19 Release Notes (#21279)
boruszak Jun 11, 2024
ed962e8
docs: External CRD fast follow (#21313)
boruszak Jun 12, 2024
e0ef346
docs: update changelog.md for 1.19.0 (#21317)
DanStough Jun 12, 2024
28c5eaf
chore: update versions.hcl for 1.19.0 release (#21319)
DanStough Jun 12, 2024
e9c983f
docs: consul-k8s v1.5.0 release notes (#21320)
boruszak Jun 12, 2024
895e7f8
docs: v1.19 corrections (#21324)
boruszak Jun 13, 2024
45cb834
docs: k8s updates for the 1.5.0 release (#21329)
DanStough Jun 13, 2024
78715ef
docs: simplify Envoy version support docs (#21295)
zalimeni Jun 13, 2024
6302ef3
docs: known issue with v2dns SRV requests (#21331)
DanStough Jun 14, 2024
7a19d2e
security: fix AliasCheck panic (#21339)
dduzgun-security Jun 14, 2024
c18c911
[Security] Close cross scripting vulnerability (#21342)
sarahalsmiller Jun 17, 2024
a16bfc6
ci: skip 1.18 nightly int tests on CE (#21349)
zalimeni Jun 18, 2024
830d1bf
ci: fix file parsing in conditional-skip script (#21343)
zalimeni Jun 18, 2024
596a4cd
Create documentation for Argo Rollouts Plugin. (#20680)
Jun 24, 2024
a04cc5a
docs: Add argo rollouts to 1.19.x release notes (#21363)
Jun 25, 2024
a4a3aec
fix(dns): bug with standard lookup tags not working; SRV questions re…
DanStough Jun 25, 2024
cec66f0
build: cross compile darwin builds (#21326)
DanStough Jun 26, 2024
6f31bfe
Update retryable-http-client to resolve CVE-2024-6104 (#21384)
sarahalsmiller Jul 2, 2024
88bade6
security: fix AliasCheck panic (update) (#21510)
kkzo Jul 3, 2024
f3649e1
NET-10288-Bump-go-to-resolve-CVE-2024-24791 (#21507)
sarahalsmiller Jul 3, 2024
b3f15b9
docs: Remove duplicate 'to' word (#21222)
MaciejDromin Jul 3, 2024
763cd0b
fix(txn): validate verbs (#21519)
DanStough Jul 5, 2024
40ca4ad
[NET-5622] build: consolidate Envoy version management (#21245)
zalimeni Jul 5, 2024
a251f8a
fix(dns): spam ttl logs for prepared queries (#21381)
DanStough Jul 8, 2024
dce6241
[ui] File-specified deps for consul-ui (#21378)
philrenaud Jul 8, 2024
8d2370d
[NET-10290] Update ENVOY_VERSIONS (#21524)
nathancoleman Jul 8, 2024
ab3d5c7
Use debian:12 instead of centos:7 for artifact verification (#21527)
nathancoleman Jul 9, 2024
bc6e889
Use vault.centos.org instead of mirror.centos.org (#21530)
nathancoleman Jul 9, 2024
c0faddb
[NET-10246] use correct enterprise meta for service name for LinkedSe…
jm96441n Jul 10, 2024
a9d92d0
Add changelog entries for 1.15.13, 1.17.6, 1.18.3 and 1.19.1 (#21539)
nathancoleman Jul 11, 2024
654528c
DOCS: CE-556 Add partition parameter to API endpoint docs (#21374)
aimeeu Jul 18, 2024
5a74bb6
docs/WAF: failure zones refresh (#21545)
krastin Jul 22, 2024
e601d7e
[NET-7787] Update JWT docs for APIGateway (#20800)
jm96441n Jul 24, 2024
bbc5229
docs: Clarify cluster peering vs WAN federation comparison (#21568)
krastin Jul 30, 2024
01ae0d3
ci: Update backport-assistant to 0.4.4 (#21572)
zalimeni Jul 30, 2024
588730c
ci: use workflow-scoped GH PAT for backports (#21570)
zalimeni Jul 30, 2024
c526659
NET-10610 - stop logging no data as errors in DNS lookups (#21578)
jmurret Aug 1, 2024
779d3c3
Suppress CVE-2024-7264 (#21590)
sarahalsmiller Aug 7, 2024
929d602
ui: Upgrade d3 packages to update color dependency (#21588)
sarahalsmiller Aug 12, 2024
89618f9
CE-655 - Moving DNS forwading tutorial to docs (#21348)
danielehc Aug 13, 2024
dcad906
NET-10685 - Remove dns v2 code (#21598)
jmurret Aug 13, 2024
a570858
docs: Update compatibility.mdx for OpenShift (#21600)
zalimeni Aug 14, 2024
8555404
[NET-10733] fix generation of xds resources (#21603)
jm96441n Aug 14, 2024
1fa4285
[NET-10719] Fix cluster generation for jwt clusters for external jwt …
jm96441n Aug 14, 2024
58fad92
fix where jwt clusters are generated (#21606)
jm96441n Aug 14, 2024
e2bb1b7
CE-657 - Move Application leader election tutorial to docs (#21366)
danielehc Aug 15, 2024
f76da16
Fix TestDNS_ServiceLookup_ARecordLimits so that it only creates test …
jmurret Aug 15, 2024
bc4c479
[NET-10737] Add CI Checks for Generated Testdata (#21613)
jm96441n Aug 19, 2024
b88ddb8
update goldenfile checker for running in ent repo (#21617)
jm96441n Aug 19, 2024
ed738a6
fix: use Envoy's default for validate_clusters to fix breaking routes…
ndhanushkodi Aug 20, 2024
9d06fc3
remove consul-k8s submodule (#21622)
jm96441n Aug 20, 2024
0e47b38
[NET-10774] Fix Group Reference in GatewayPolcy Docs (#21625)
jm96441n Aug 20, 2024
53c225b
add build support script to print out the submodule versions required…
jmurret Aug 22, 2024
5710cbd
ci: fix workflow graph for 1.18 Envoy int tests (#21642)
zalimeni Aug 22, 2024
cc2c8fb
NET-5912/service-defaults protocol validation (#21593)
JadhavPoonam Aug 26, 2024
2a99624
test: update pause Docker image in Envoy int tests (#21659)
zalimeni Aug 26, 2024
9c02eff
add module retractions (#21665)
jmurret Aug 26, 2024
f187b92
run integration tests on push in main and release/* (#21666)
jmurret Aug 26, 2024
ab794b5
update version, changelog, and submodules after 1.19.2, 1.18.4, 1.17.…
jmurret Aug 28, 2024
d12f9cf
Set replication metric to 0 when losing leadership (#20665)
jorgemarey Aug 29, 2024
c1d0fc9
Docs CE-709: Remove circular links (#21685)
aimeeu Aug 29, 2024
6468318
security(deps): bump aws-sdk-go to v1.55.5 (#21684)
dduzgun-security Aug 29, 2024
188af1c
test: fix Envoy int tests and add container logs (#21674)
zalimeni Aug 30, 2024
3e6f1c1
remove v2 tenancy, catalog, and mesh (#21592)
rboyer Sep 5, 2024
e4d4435
Fix the server/client typo in the Agent docs (#21675)
counterleft Sep 6, 2024
8d2178d
exclude release branches for 1.15 thru 1.18 (#21682)
jmurret Sep 9, 2024
7653ffb
security: Upgrade Go to 1.22.7 (#21705)
NiniOak Sep 10, 2024
876a0a7
Update security-scan.hcl (#21707)
sarahalsmiller Sep 11, 2024
07fae7b
[Security] Fix XSS Vulnerability where content-type header wasn't exp…
sarahalsmiller Sep 11, 2024
35ffb31
[ui] Pin a newer version of Braces (#21710)
philrenaud Sep 11, 2024
1a62917
security: triage vendor alerts (#21716)
dduzgun-security Sep 12, 2024
320b708
Bump Envoy, remove support for unsupported versions (#21616)
sarahalsmiller Sep 12, 2024
a3ac555
[NET-10952] fix cluster dns lookup family to gracefully handle ipv6 (…
jm96441n Sep 12, 2024
0cc0fa7
[ui] Simple url sanitization for get-env and document.cookie (#21711)
philrenaud Sep 12, 2024
8c197db
add script to generate changelog for a PR (#21719)
jm96441n Sep 12, 2024
9bab2ed
[ui] Markdown-it pinned (#21717)
philrenaud Sep 12, 2024
30b5ffa
Hard update all 1.3 dataplane to 1.6 (#21728)
sarahalsmiller Sep 13, 2024
de281cb
[ui] codemirror lint removal (#21726)
philrenaud Sep 13, 2024
c40eecf
security: update alpine base image to 3.20 (#21729)
zalimeni Sep 13, 2024
4efac49
[ui] Prettify ember-cli-build (#21731)
philrenaud Sep 13, 2024
f924a01
[ui] Codemirror resolution pinned in package.json (#21715)
philrenaud Sep 13, 2024
d315ff1
[ui] Pin ansi-html to 0.0.8 (#21735)
philrenaud Sep 16, 2024
667eac2
Suppress CVE-2024-8096 (#21737)
sarahalsmiller Sep 16, 2024
ac41822
ci: fix security-scanner conditional skip (#21740)
dduzgun-security Sep 16, 2024
5a84cd1
Update security-scan.hcl (#21739)
sarahalsmiller Sep 16, 2024
17d43c6
Fix supression (#21744)
sarahalsmiller Sep 16, 2024
55db870
Backport of ci: update the security-scanner gha token into release/1.…
hc-github-team-consul-core Sep 17, 2024
418a32f
Backport of Initialize 1.20 Release into release/1.20.x (#21753)
hc-github-team-consul-core Sep 17, 2024
63e4511
Backport of Stage rc release into release/1.20.x (#21772)
hc-github-team-consul-core Sep 19, 2024
280f6d3
Backport of Upgrade ubi image to 9.4 into release/1.20.x (#21773)
hc-github-team-consul-core Sep 19, 2024
1f45e86
Backport of security: update alpine base image to 3.20 into release/1…
hc-github-team-consul-core Sep 19, 2024
af1c0ea
Backport of fix spacing of bash scripts into release/1.20.x (#21769)
hc-github-team-consul-core Sep 23, 2024
026bcce
Backport of [NET-11150] ci: fix conditional skip and add safeguard in…
hc-github-team-consul-core Sep 25, 2024
5234d05
Backport of update serf links into release/1.20.x (#21800)
hc-github-team-consul-core Oct 2, 2024
4b7887d
Backport of Added grafana dashboards into release/1.20.x (#21811)
hc-github-team-consul-core Oct 9, 2024
bba6be5
Backport of docs: Add missing `&&` in DNS forwading tutorial into rel…
hc-github-team-consul-core Oct 9, 2024
9bdd128
Backport of Upgrade test improvements for 1.20.x into release/1.20.x …
hc-github-team-consul-core Oct 11, 2024
c7a3ca6
Backport of Add partition field for catalog deregister docs into rele…
hc-github-team-consul-core Oct 14, 2024
461050d
Backport of ci: ensure int test docker pull goes through proxy into r…
hc-github-team-consul-core Oct 14, 2024
c1f9d37
Backport of Post-release updates for 1.20.0 into release/1.20.x (#21830)
hc-github-team-consul-core Oct 15, 2024
e6fe73f
Backport of docs: Consul DNS views on Kubernetes into release/1.20.x …
hc-github-team-consul-core Oct 16, 2024
3d28e33
Backport of docs: Consul v1.20 release notes into release/1.20.x (#21…
hc-github-team-consul-core Oct 16, 2024
c25549f
Delete old redundant encryption MDX file (#21834)
rmainwork Oct 16, 2024
824b17a
Manual backport of docs: Consul DNS views on Kubernetes (#21802) Beta…
zalimeni Oct 16, 2024
de188de
Manual backport of CE-654 - TLS Encryption docs + CE-713 - Gossip Enc…
zalimeni Oct 16, 2024
2300ed5
Prepare branch for future patch release (#21837)
nathancoleman Oct 16, 2024
424f5a8
Backport of [NET-1151 NET-11228] security: Add request normalization …
hc-github-team-consul-core Oct 16, 2024
5541817
Backport of api: remove dependency on proto-public, protobuf, and grp…
hc-github-team-consul-core Oct 17, 2024
da6dd8d
Backport of docs: clarify Envoy and dataplane LTS support policy into…
hc-github-team-consul-core Oct 17, 2024
d10c9f1
Backport of Update compatibility matrix to include 1.20.x into releas…
hc-github-team-consul-core Oct 17, 2024
bdeb6ee
Backport of Update Envoy compatibility matrices to include consul 1.2…
hc-github-team-consul-core Oct 17, 2024
b42b201
Backport of Update ENVOY_VERSIONS into release/1.20.x (#21822)
hc-github-team-consul-core Oct 25, 2024
fbad81c
Backport of Suppress CVE-2024-9143 into release/1.20.x (#21876)
hc-github-team-consul-core Oct 25, 2024
658864b
Backport of chore: retain retracted api submodule version into releas…
hc-github-team-consul-core Oct 28, 2024
2a1e55e
Backport of [NET-1151 NET-11046] docs: clarify request normalization …
hc-github-team-consul-core Oct 28, 2024
e7aac01
Backport of Allow multiple endpoints in Envoy clusters configured wit…
hc-github-team-consul-core Oct 29, 2024
e484279
Backport of docs: add missing slash in redirect into release/1.20.x (…
hc-github-team-consul-core Oct 29, 2024
920cc7c
Stage 1.20.1 (#21886)
jm96441n Oct 29, 2024
ed4cf68
Backport of docs: consul-k8s v1.5.0 release notes into release/1.19.x…
hc-github-team-consul-core Jun 12, 2024
862e0ec
docs: v1.19 corrections (#21324) (#21328)
boruszak Jun 13, 2024
78e9db4
Update CHANGELOG.md + VERSION (#21538)
nathancoleman Jul 11, 2024
5c52e15
Update submodules for 1.16.0 release
nathancoleman Jun 26, 2023
becafdd
Run go mod tidy with replace directives in-tact
nathancoleman Jun 26, 2023
d133e98
Make FederationStateRequestType msg ignorable by older versions
andrew-solace Apr 26, 2023
45d8d10
Add .cache directory to gitignore
andrew-solace Apr 26, 2023
44e2597
Bug SOL-95933: Restore FederationStateRequestType value when reading …
dsawhne May 24, 2023
821eec0
commiting a useless file to bump git hash
monoKeith Jul 20, 2023
1811e37
deleting the useless file that bumped git hash
monoKeith Jul 20, 2023
68cf295
touch versionbump
monoKeith Aug 1, 2023
978fea4
version bump
monoKeith Aug 1, 2023
fbe8686
bump version
monoKeith Aug 28, 2023
5b68461
bump version
monoKeith Aug 28, 2023
a77cb66
Bug SOL-109268: Updating consul to address vulnerabilities
sarah-oloumi Nov 1, 2023
d98a73f
Create fossa-scan.yaml
sarah-oloumi Nov 20, 2024
202693a
Create .fossa.yml
sarah-oloumi Nov 20, 2024
7836a4d
Update fossa-scan.yaml
sarah-oloumi Nov 20, 2024
d8eb9e6
Update fossa-scan.yaml
sarah-oloumi Nov 20, 2024
61f7a2c
Update fossa-scan.yaml
sarah-oloumi Nov 20, 2024
0cb078f
Update fossa-scan.yaml
sarah-oloumi Nov 20, 2024
5923694
Update fossa-scan.yaml
sarah-oloumi Nov 20, 2024
cf733c7
Update fossa-scan.yaml
sarah-oloumi Nov 20, 2024
4fb747b
Update fossa-scan.yaml
sarah-oloumi Dec 3, 2024
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
The diff you're trying to view is too large. We only load the first 3000 changed files.
4 changes: 4 additions & 0 deletions .changelog/18329.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,4 @@
```release-note:improvement
cli: Adds cli support for checking TCP connection for ports. If -ports flag is not given, it will check for
default ports of consul listed here - https://developer.hashicorp.com/consul/docs/install/ports
```
3 changes: 3 additions & 0 deletions .changelog/19499.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
acl: add policy bindtype to binding rules.
```
3 changes: 3 additions & 0 deletions .changelog/19586.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
ui: fix being able to view peered services from non-default namnespaces
```
3 changes: 3 additions & 0 deletions .changelog/19594.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
ui: move nspace and partitions requests into their selector menus
```
3 changes: 3 additions & 0 deletions .changelog/19647.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Add `CaseInsensitive` flag to service-routers that allows paths and path prefixes to ignore URL upper and lower casing.
```
3 changes: 3 additions & 0 deletions .changelog/19663.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Default `stats_flush_interval` to 60 seconds when using the Consul Telemetry Collector, unless custom stats sink are present or an explicit flush interval is configured.
```
3 changes: 3 additions & 0 deletions .changelog/19666.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
api: Add support for listing ACL tokens by service name when using templated policies.
```
3 changes: 3 additions & 0 deletions .changelog/19679.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
CLI: fix a panic when deleting a non existing policy by name.
```
3 changes: 3 additions & 0 deletions .changelog/19682.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
cloud: push additional server TLS metadata to HCP
```
3 changes: 3 additions & 0 deletions .changelog/19705.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
Update `github.com/golang-jwt/jwt/v4` to v4.5.0 to address [PRISMA-2022-0270](https://github.com/golang-jwt/jwt/issues/258).
```
6 changes: 6 additions & 0 deletions .changelog/19721.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
```release-note:improvement
metrics: modify consul.client.rpc metric to exclude internal retries for consistency with consul.client.rpc.exceeded and consul.client.rpc.failed
```
```release-note:improvement
metrics: increment consul.client.rpc.failed if RPC fails because no servers are accessible
```
3 changes: 3 additions & 0 deletions .changelog/19728.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
acl: add api-gateway templated policy
```
3 changes: 3 additions & 0 deletions .changelog/19735.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
acl: add templated policy descriptions
```
3 changes: 3 additions & 0 deletions .changelog/19795.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:enhancement
wan-federation: use a hash to diff config entries when replicating in the secondary DC to avoid unnecessary writes..
```
3 changes: 3 additions & 0 deletions .changelog/19821.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
cli: Adds new subcommand `peering exported-services` to list services exported to a peer . Refer to the [CLI docs](https://developer.hashicorp.com/consul/commands/peering) for more information.
```
3 changes: 3 additions & 0 deletions .changelog/19827.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
acl: Adds nomad client templated policy
```
3 changes: 3 additions & 0 deletions .changelog/19829.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:enhancement
mesh: parse the proxy-defaults protocol when write the config-entry to avoid parsing it when compiling the discovery chain.
```
7 changes: 7 additions & 0 deletions .changelog/19840.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
```release-note:security
Upgrade to use Go 1.20.12. This resolves CVEs
[CVE-2023-45283](https://nvd.nist.gov/vuln/detail/CVE-2023-45283): (`path/filepath`) recognize \??\ as a Root Local Device path prefix (Windows)
[CVE-2023-45284](https://nvd.nist.gov/vuln/detail/CVE-2023-45285): recognize device names with trailing spaces and superscripts (Windows)
[CVE-2023-39326](https://nvd.nist.gov/vuln/detail/CVE-2023-39326): (`net/http`) limit chunked data overhead
[CVE-2023-45285](https://nvd.nist.gov/vuln/detail/CVE-2023-45285): (`cmd/go`) go get may unexpectedly fallback to insecure git
```
3 changes: 3 additions & 0 deletions .changelog/19860.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
connect: Solves an issue where two upstream services with the same name in different namespaces were not getting routed to correctly by API Gateways.
```
3 changes: 3 additions & 0 deletions .changelog/19866.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
xds: ensure child resources are re-sent to Envoy when the parent is updated even if the child already has pending updates.
```
3 changes: 3 additions & 0 deletions .changelog/19871.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
xds: Add configurable `xds_fetch_timeout_ms` option to proxy registrations that allows users to prevent endpoints from dropping when they have proxies with a large number of upstreams.
```
3 changes: 3 additions & 0 deletions .changelog/19879.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
mesh: update supported envoy version 1.28.0 in addition to 1.25.11, 1.26.6, 1.27.2, 1.28.0 to address [CVE-2023-44487](https://github.com/envoyproxy/envoy/security/advisories/GHSA-jhv4-f7mr-xx76)
```
3 changes: 3 additions & 0 deletions .changelog/19881.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
xds: Make TCP external service registered with terminating gateway reachable from peered cluster
```
3 changes: 3 additions & 0 deletions .changelog/19907.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
ui: stop manually reconciling services if peering is enabled
```
3 changes: 3 additions & 0 deletions .changelog/19912.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
ui: update token list on Role details page to show only linked tokens
```
3 changes: 3 additions & 0 deletions .changelog/19940.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Replace usage of deprecated Envoy fields `envoy.config.cluster.v3.Cluster.http2_protocol_options` and `envoy.config.bootstrap.v3.Admin.access_log_path`.
```
3 changes: 3 additions & 0 deletions .changelog/19943.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:deprecation
cli: Deprecate the `-admin-access-log-path` flag from `consul connect envoy` command in favor of: `-admin-access-log-config`.
```
3 changes: 3 additions & 0 deletions .changelog/19954.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Remove usage of deprecated Envoy field `match_subject_alt_names` in favor of `match_typed_subject_alt_names`.
```
3 changes: 3 additions & 0 deletions .changelog/19992.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:breaking-change
config-entries: Allow disabling request and idle timeouts with negative values in service router and service resolver config entries.
```
3 changes: 3 additions & 0 deletions .changelog/20010.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Replace usage of deprecated Envoy field `envoy.config.cluster.v3.Cluster.http_protocol_options`.
```
3 changes: 3 additions & 0 deletions .changelog/20011.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Replace usage of deprecated Envoy field `envoy.config.router.v3.WeightedCluster.total_weight`.
```
3 changes: 3 additions & 0 deletions .changelog/20012.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Replace usage of deprecated Envoy field `envoy.extensions.filters.http.lua.v3.Lua.inline_code`.
```
3 changes: 3 additions & 0 deletions .changelog/20013.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Replace usage of deprecated Envoy fields `envoy.config.route.v3.HeaderMatcher.safe_regex_match` and `envoy.type.matcher.v3.RegexMatcher.google_re2`.
```
3 changes: 3 additions & 0 deletions .changelog/20014.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
Upgrade OpenShift container images to use `ubi9-minimal:9.3` as the base image.
```
3 changes: 3 additions & 0 deletions .changelog/20015.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
api: add a new api(/v1/exported-services) to list all the exported service and their consumers.
```
3 changes: 3 additions & 0 deletions .changelog/20023.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
Update `golang.org/x/crypto` to v0.17.0 to address [CVE-2023-48795](https://nvd.nist.gov/vuln/detail/CVE-2023-48795).
```
3 changes: 3 additions & 0 deletions .changelog/20062.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
Upgrade to use Go 1.21.6.
```
3 changes: 3 additions & 0 deletions .changelog/20078.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Replace usage of deprecated Envoy field `envoy.config.core.v3.HeaderValueOption.append`.
```
3 changes: 3 additions & 0 deletions .changelog/20111.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
UI: fix autofocus on search box when page refreshes on typing in it due to url change.
```
3 changes: 3 additions & 0 deletions .changelog/20112.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
Update RSA key generation to use a key size of at least 2048 bits.
```
7 changes: 7 additions & 0 deletions .changelog/20168.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
```release-note:enhancement
ProxyCfg: avoid setting a watch on `Internal.ServiceDump` when mesh gateway is not used.
```

```release-note:enhancement
ProxyCfg: only return the nodes list when querying the `Internal.ServiceDump` watch from proxycfg
```
3 changes: 3 additions & 0 deletions .changelog/20220.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
cloud: unconditionally add Access-Control-Expose-Headers HTTP header
```
3 changes: 3 additions & 0 deletions .changelog/20299.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
v2: prevent use of the v2 experiments in secondary datacenters for now
```
3 changes: 3 additions & 0 deletions .changelog/20308.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
docs: add Link API documentation
```
6 changes: 6 additions & 0 deletions .changelog/20312.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
```release-note:feature
cloud: Adds new API/CLI to initiate and manage linking a Consul cluster to HCP Consul Central
```
```release-note:breaking-change
telemetry: Adds fix to always use the value of `telemetry.disable_hostname` when determining whether to prefix gauge-type metrics with the hostname of the Consul agent. Previously, if only the default metric sink was enabled, this configuration was ignored and always treated as `true`, even though its default value is `false`.
```
3 changes: 3 additions & 0 deletions .changelog/20331.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
cli: Adds new command `exported-services` to list all services exported and their consumers. Refer to the [CLI docs](https://developer.hashicorp.com/consul/commands/exported-services) for more information.
```
3 changes: 3 additions & 0 deletions .changelog/20345.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
audit-logs: **(Enterprise Only)** Fixes non ASCII characters in audit logs because of gzip.
```
3 changes: 3 additions & 0 deletions .changelog/20352.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
logging: add /api prefix to v2 resource endpoint logs
```
3 changes: 3 additions & 0 deletions .changelog/20353.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
ui: adds V2CatalogEnabled to config that is passed to the ui
```
3 changes: 3 additions & 0 deletions .changelog/20359.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
ui: Adds a redirect and warning message around unavailable UI with V2 enabled
```
3 changes: 3 additions & 0 deletions .changelog/20406.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
mesh: Fix bug where envoy extensions could not be configured with "permissive" mTLS mode. Note that envoy extensions currently do not apply to non-mTLS traffic in permissive mode.
```
3 changes: 3 additions & 0 deletions .changelog/20417.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
connect: Fix regression with SAN matching on terminating gateways [GH-20360](https://github.com/hashicorp/consul/issues/20360)
```
3 changes: 3 additions & 0 deletions .changelog/20439.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
docs: Consul DNS Forwarding configuration for OpenShift update for [Resolve Consul DNS Requests in Kubernetes](https://developer.hashicorp.com/consul/docs/k8s/dns)
```
3 changes: 3 additions & 0 deletions .changelog/20481.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
connect: Fix issue where re-persisting existing proxy-defaults using `http` protocol fails with a protocol-mismatch error.
```
3 changes: 3 additions & 0 deletions .changelog/20511.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
connect: Remove code coupling where the xDS capacity controller could negatively affect raft autopilot performance.
```
3 changes: 3 additions & 0 deletions .changelog/20514.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
hcp: fix error logs when failing to push metrics
```
3 changes: 3 additions & 0 deletions .changelog/20544.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
agent: Introduces a new agent config default_intention_policy to decouple the default intention behavior from ACLs
```
3 changes: 3 additions & 0 deletions .changelog/20545.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
Upgrade to use Go 1.21.7.
```
3 changes: 3 additions & 0 deletions .changelog/20589.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
mesh: Update Envoy versions to 1.28.1, 1.27.3, and 1.26.7 to address [CVE-2024-23324](https://github.com/envoyproxy/envoy/security/advisories/GHSA-gq3v-vvhj-96j6), [CVE-2024-23325](https://github.com/envoyproxy/envoy/security/advisories/GHSA-5m7c-mrwr-pm26), [CVE-2024-23322](https://github.com/envoyproxy/envoy/security/advisories/GHSA-6p83-mfmh-qv38), [CVE-2024-23323](https://github.com/envoyproxy/envoy/security/advisories/GHSA-x278-4w4x-r7ch), [CVE-2024-23327](https://github.com/envoyproxy/envoy/security/advisories/GHSA-4h5x-x9vh-m29j), and [CVE-2023-44487](https://github.com/envoyproxy/envoy/security/advisories/GHSA-jhv4-f7mr-xx76)
```
7 changes: 7 additions & 0 deletions .changelog/20642.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
```release-note:bug
server: Ensure internal streams are properly terminated on snapshot restore.
```

```release-note:bug
server: Ensure controllers are automatically restarted on internal stream errors.
```
7 changes: 7 additions & 0 deletions .changelog/20643.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
```release-note:feature
dns: adds experimental support for a refactored DNS server that is v1 and v2 Catalog compatible.
Use `v2dns` in the `experiments` agent config to enable.
It will automatically be enabled when using the `resource-apis` (Catalog v2) experiment.
The new DNS implementation will be the default in Consul 1.19.
See the [Consul 1.18.x Release Notes](https://developer.hashicorp.com/consul/docs/release-notes/consul/v1_18_x) for deprecated DNS features.
```
3 changes: 3 additions & 0 deletions .changelog/20669.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
partitions: **(Enterprise only)** Allow disabling of Gossip per Partition
```
3 changes: 3 additions & 0 deletions .changelog/20672.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note: improvement
xds: Improved the performance of xDS server side load balancing. Its slightly improved in Consul CE with drastic CPU usage reductions in Consul Enterprise.
```
7 changes: 7 additions & 0 deletions .changelog/20674.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
```release-note:breaking-change
telemetry: State store usage metrics with a double `consul` element in the metric name have been removed. Please use the same metric without the second `consul` instead. As an example instead of `consul.consul.state.config_entries` use `consul.state.config_entries`
```

```release-note: improvement
telemetry: Improved the performance usage metrics emission by not outputting redundant metrics.
```
3 changes: 3 additions & 0 deletions .changelog/20679.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
dns: SERVFAIL when resolving not found PTR records.
```
6 changes: 6 additions & 0 deletions .changelog/20715.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,6 @@
```release-note:feature
dns: queries now default to a refactored DNS server that is v1 and v2 Catalog compatible.
Use `v1dns` in the `experiments` agent config to disable.
The legacy server will be removed in a future release of Consul.
See the [Consul 1.19.x Release Notes](https://developer.hashicorp.com/consul/docs/release-notes/consul/v1_19_x) for removed DNS features.
```
3 changes: 3 additions & 0 deletions .changelog/20801.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
Update `google.golang.org/protobuf` to v1.33.0 to address [CVE-2024-24786](https://nvd.nist.gov/vuln/detail/CVE-2024-24786).
```
3 changes: 3 additions & 0 deletions .changelog/20802.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
connect: Add ability to disable Auto Host Header Rewrite on Terminating Gateway at the service level
```
14 changes: 14 additions & 0 deletions .changelog/20812.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,14 @@
```release-note:security
Upgrade to use Go `1.21.8`. This resolves CVEs
[CVE-2024-24783](https://nvd.nist.gov/vuln/detail/CVE-2024-24783) (`crypto/x509`).
[CVE-2023-45290](https://nvd.nist.gov/vuln/detail/CVE-2023-45290) (`net/http`).
[CVE-2023-45289](https://nvd.nist.gov/vuln/detail/CVE-2023-45289) (`net/http`, `net/http/cookiejar`).
[CVE-2024-24785](https://nvd.nist.gov/vuln/detail/CVE-2024-24785) (`html/template`).
[CVE-2024-24784](https://nvd.nist.gov/vuln/detail/CVE-2024-24784) (`net/mail`).
```

```release-note:security
Update the Consul Build Go base image to `alpine3.19`. This resolves CVEs
[CVE-2023-52425](https://nvd.nist.gov/vuln/detail/CVE-2023-52425)
[CVE-2023-52426⁠](https://nvd.nist.gov/vuln/detail/CVE-2023-52426)
```
3 changes: 3 additions & 0 deletions .changelog/20824.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:improvement
snapshot: Add `consul snapshot decode` CLI command to output a JSON object stream of all the snapshots data.
```
7 changes: 7 additions & 0 deletions .changelog/20866.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,7 @@
```release-note:improvement
api: Randomize the returned server list for the WatchServers gRPC endpoint.
```

```release-note:bug
connect: Fix potential goroutine leak in xDS stream handling.
```
3 changes: 3 additions & 0 deletions .changelog/20867.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
connect: Fix xDS deadlock that could result in proxies being unable to start.
```
3 changes: 3 additions & 0 deletions .changelog/20868.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
connect: Fix issue where Consul-dataplane xDS sessions would not utilize the streaming backend for wan-federated queries.
```
3 changes: 3 additions & 0 deletions .changelog/20873.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:feature
gateways: api-gateway can leverage listener TLS certificates available on the gateway's local filesystem by specifying the public certificate and private key path in the new file-system-certificate configuration entry
```
3 changes: 3 additions & 0 deletions .changelog/20876.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
streaming: Handle ACL errors consistently when blocking query timeout is reached.
```
3 changes: 3 additions & 0 deletions .changelog/20897.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:security
Bump Dockerfile base image to `alpine:3.19`.
```
4 changes: 4 additions & 0 deletions .changelog/20899.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,4 @@
```release-note:improvement
dns: DNS-over-grpc when using `consul-dataplane` now accepts partition, namespace, token as metadata to default those query parameters.
`consul-dataplane` v1.5+ will send this information automatically.
```
4 changes: 4 additions & 0 deletions .changelog/20910.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,4 @@
```release-note:security
Update `vault/api` to v1.12.2 to address [CVE-2024-28180](https://nvd.nist.gov/vuln/detail/CVE-2024-28180)
(removes indirect dependency on impacted `go-jose.v2`)
```
3 changes: 3 additions & 0 deletions .changelog/20926.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:bug
error running consul server in 1.18.0: failed to configure SCADA provider user's home directory path: $HOME is not defined
```
3 changes: 3 additions & 0 deletions .changelog/20945.txt
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
```release-note:enhancement
gateways: service defaults configuration entries can now be used to set default upstream limits for mesh-gateways
```
Loading
Loading