Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update hashicorp/consul Docker tag to v1.20.2 #131

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

soerenschneider
Copy link
Owner

@soerenschneider soerenschneider commented Oct 15, 2024

This PR contains the following updates:

Package Update Change
hashicorp/consul (source) minor 1.19.2 -> 1.20.2

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

hashicorp/consul (hashicorp/consul)

v1.20.2

Compare Source

1.20.2 (December 26, 2024)

SECURITY:

FEATURES:

  • docs: added the docs for the grafana dashboards [GH-21795]

BUG FIXES:

  • proxycfg: fix a bug where peered upstreams watches are canceled even when another target needs it. [GH-21871]
  • state: ensure that identical manual virtual IP updates result in not bumping the modify indexes [GH-21909]

v1.20.1

Compare Source

BREAKING CHANGES:

  • mesh: Enable Envoy HttpConnectionManager.normalize_path by default on inbound traffic to mesh proxies. This resolves CVE-2024-10005. [GH-21816]

SECURITY:

  • mesh: Add contains and ignoreCase to L7 Intentions HTTP header matching criteria to support configuration resilient to variable casing and multiple values. This resolves CVE-2024-10006. [GH-21816]
  • mesh: Add http.incoming.requestNormalization to Mesh configuration entry to support inbound service traffic request normalization. This resolves CVE-2024-10005 and CVE-2024-10006. [GH-21816]

IMPROVEMENTS:

  • api: remove dependency on proto-public, protobuf, and grpc [GH-21780]
  • snapshot agent: (Enterprise only) Implement Service Principal Auth for snapshot agent on azure.
  • xds: configures Envoy to load balance over all instances of an external service configured with hostnames when "envoy_dns_discovery_type" is set to "STRICT_DNS" [GH-21655]

v1.20.0

Compare Source

SECURITY:

  • Explicitly set 'Content-Type' header to mitigate XSS vulnerability. [GH-21704]
  • Implement HTML sanitization for user-generated content to prevent XSS attacks in the UI. [GH-21711]
  • UI: Remove codemirror linting due to package dependency [GH-21726]
  • Upgrade Go to use 1.22.7. This addresses CVE
    CVE-2024-34155 [GH-21705]
  • Upgrade to support aws/aws-sdk-go v1.55.5 or higher. This resolves CVEs
    CVE-2020-8911 and
    CVE-2020-8912. [GH-21684]
  • ui: Pin a newer resolution of Braces [GH-21710]
  • ui: Pin a newer resolution of Codemirror [GH-21715]
  • ui: Pin a newer resolution of Markdown-it [GH-21717]
  • ui: Pin a newer resolution of ansi-html [GH-21735]

FEATURES:

  • grafana: added the dashboards service-to-service dashboard, service dashboard, and consul dataplane dashboard [GH-21806]
  • server: remove v2 tenancy, catalog, and mesh experiments [GH-21592]

IMPROVEMENTS:

  • security: upgrade ubi base image to 9.4 [GH-21750]
  • connect: Add Envoy 1.31 and 1.30 to support matrix [GH-21616]

BUG FIXES:

  • jwt-provider: change dns lookup family from the default of AUTO which would prefer ipv6 to ALL if LOGICAL_DNS is used or PREFER_IPV4 if STRICT_DNS is used to gracefully handle transitions to ipv6. [GH-21703]

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

@soerenschneider soerenschneider self-assigned this Oct 15, 2024
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch 4 times, most recently from dc3d8ae to 56125e1 Compare October 21, 2024 18:05
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch 5 times, most recently from a2ade27 to bf49421 Compare October 28, 2024 21:01
@soerenschneider soerenschneider changed the title Update hashicorp/consul Docker tag to v1.20.0 chore(deps): update hashicorp/consul docker tag to v1.20.0 Oct 28, 2024
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch from bf49421 to b3d8345 Compare October 30, 2024 19:01
@soerenschneider soerenschneider changed the title chore(deps): update hashicorp/consul docker tag to v1.20.0 chore(deps): update hashicorp/consul docker tag to v1.20.1 Oct 30, 2024
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch 2 times, most recently from 444b6ca to afbc5ea Compare November 6, 2024 19:01
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch 5 times, most recently from 7f747de to 1e815e9 Compare November 12, 2024 19:01
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch from 1e815e9 to 420c6a8 Compare November 15, 2024 19:01
@soerenschneider soerenschneider changed the title chore(deps): update hashicorp/consul docker tag to v1.20.1 Update hashicorp/consul Docker tag to v1.20.1 Nov 15, 2024
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch from 420c6a8 to b9d9205 Compare November 18, 2024 09:04
@soerenschneider soerenschneider changed the title Update hashicorp/consul Docker tag to v1.20.1 chore(deps): update hashicorp/consul docker tag to v1.20.1 Nov 18, 2024
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch from b9d9205 to b6a326c Compare November 22, 2024 19:02
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch 5 times, most recently from 0af6399 to d31a03b Compare December 9, 2024 19:08
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch from d31a03b to 1a3190e Compare December 11, 2024 22:48
@soerenschneider soerenschneider changed the title chore(deps): update hashicorp/consul docker tag to v1.20.1 Update hashicorp/consul Docker tag to v1.20.1 Dec 11, 2024
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch 2 times, most recently from 21754d9 to 68fc753 Compare January 6, 2025 19:06
@soerenschneider soerenschneider changed the title Update hashicorp/consul Docker tag to v1.20.1 Update hashicorp/consul Docker tag to v1.20.2 Jan 6, 2025
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch from 68fc753 to 841995d Compare January 6, 2025 22:15
@soerenschneider soerenschneider force-pushed the renovate/hashicorp-consul-1.x branch from 841995d to e343d45 Compare January 12, 2025 08:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants