Releases: bank-vaults/bank-vaults
Releases · bank-vaults/bank-vaults
v1.31.0
Overview
github.com/hashicorp/vault/api
has been bumped from v1.10.0
to v1.11.0
What's Changed
Features 🚀
- feat: add retry logic to vault secret engine mount process by @Reversaidx in #2444
- feat: allow to set transit cache-config by @Lucaber in #2463
- feat: switch from logrus to slog by @akijakya in #2362
Bug Fixes 🐛
- fix: Use correct unseal key name in cofigurer by @kirilvasilev in #2506
Maintenance 🚧
- feat(GA): update dependabot config by @akijakya in #2498
- feat(GA): add common pipeline actions by @ramizpolic in #2361
- feat(GA): cancel previous workflow on push by @csatib02 in #2508
- chore: update bank-vaults deps by @ramizpolic in #2504
Dependency Updates ⬆️
View all dependency changes
- build(deps): bump k8s.io/client-go from 0.28.4 to 0.29.2 by @dependabot in #2509
- build(deps): bump github.com/spf13/cast from 1.5.1 to 1.6.0 by @dependabot in #2360
- build(deps): bump cachix/install-nix-action from 23 to 24 by @dependabot in #2358
- build(deps): bump cloud.google.com/go/storage from 1.34.1 to 1.35.1 by @dependabot in #2359
- build(deps): bump k8s.io/apimachinery from 0.28.3 to 0.28.4 by @dependabot in #2363
- build(deps): bump golang from
110b07a
to70afe55
by @dependabot in #2369 - build(deps): bump alpine from 3.18.4 to 3.18.5 by @dependabot in #2370
- build(deps): bump docker/metadata-action from 5.0.0 to 5.2.0 by @dependabot in #2372
- build(deps): bump k8s.io/api from 0.28.3 to 0.28.4 by @dependabot in #2366
- build(deps): bump docker/metadata-action from 5.2.0 to 5.3.0 by @dependabot in #2373
- build(deps): bump k8s.io/client-go from 0.28.3 to 0.28.4 by @dependabot in #2374
- build(deps): bump aquasecurity/trivy-action from 0.14.0 to 0.15.0 by @dependabot in #2377
- build(deps): bump golang.org/x/oauth2 from 0.14.0 to 0.15.0 by @dependabot in #2379
- build(deps): bump golang from 1.21.4-alpine3.18 to 1.21.5-alpine3.18 by @dependabot in #2382
- build(deps): bump alpine from 3.18.5 to 3.19.0 by @dependabot in #2387
- build(deps): bump github.com/spf13/cobra from 1.7.0 to 1.8.0 by @dependabot in #2316
- build(deps): bump github.com/Azure/azure-sdk-for-go/sdk/azcore from 1.8.0 to 1.9.0 by @dependabot in #2320
- build(deps): bump actions/dependency-review-action from 3.1.3 to 3.1.4 by @dependabot in #2357
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.618 to 1.62.627 by @dependabot in #2386
- build(deps): bump aquasecurity/trivy-action from 0.15.0 to 0.16.0 by @dependabot in #2393
- build(deps): bump golang from
5c1cabd
to9390a99
by @dependabot in #2392 - build(deps): bump github.com/aws/aws-sdk-go from 1.47.4 to 1.48.16 by @dependabot in #2388
- build(deps): bump github.com/Azure/azure-sdk-for-go/sdk/azcore from 1.9.0 to 1.9.1 by @dependabot in #2390
- build(deps): bump google.golang.org/api from 0.150.0 to 0.154.0 by @dependabot in #2397
- build(deps): bump github.com/aws/aws-sdk-go from 1.48.16 to 1.49.5 by @dependabot in #2412
- build(deps): bump golang.org/x/crypto from 0.16.0 to 0.17.0 by @dependabot in #2409
- build(deps): bump docker/metadata-action from 5.3.0 to 5.4.0 by @dependabot in #2407
- build(deps): bump actions/upload-artifact from 3.1.3 to 4.0.0 by @dependabot in #2404
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.627 to 1.62.643 by @dependabot in #2417
- build(deps): bump github.com/aws/aws-sdk-go from 1.49.5 to 1.49.7 by @dependabot in #2416
- build(deps): bump github.com/bank-vaults/vault-sdk from 0.9.0 to 0.9.1 by @dependabot in #2364
- build(deps): bump github.com/aws/aws-sdk-go from 1.49.7 to 1.49.8 by @dependabot in #2418
- build(deps): bump golang from
9390a99
tod8b9994
by @dependabot in #2415 - build(deps): bump github.com/bank-vaults/vault-sdk from 0.9.1 to 0.9.2 by @dependabot in #2421
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.676 to 1.62.680 by @dependabot in #2516
- build(deps): bump github.com/spf13/viper from 1.10.1 to 1.18.2 by @dependabot in #2411
- build(deps): bump cloud.google.com/go/storage from 1.35.1 to 1.36.0 by @dependabot in #2424
- build(deps): bump github.com/prometheus/client_golang from 1.17.0 to 1.18.0 by @dependabot in #2430
- build(deps): bump aquasecurity/trivy-action from 0.16.0 to 0.16.1 by @dependabot in #2437
- build(deps): bump actions/dependency-review-action from 3.1.4 to 3.1.5 by @dependabot in #2440
- build(deps): bump google.golang.org/api from 0.154.0 to 0.155.0 by @dependabot in #2446
- build(deps): bump github.com/aliyun/aliyun-oss-go-sdk from 3.0.1+incompatible to 3.0.2+incompatible by @dependabot in #2448
- build(deps): bump golang.org/x/oauth2 from 0.15.0 to 0.16.0 by @dependabot in #2451
- build(deps): bump golang from 1.21.5-alpine3.18 to 1.21.6-alpine3.18 by @dependabot in #2452
- build(deps): bump actions/upload-artifact from 4.0.0 to 4.1.0 by @dependabot in #2457
- build(deps): bump cachix/install-nix-action from 24 to 25 by @dependabot in #2458
- build(deps): bump actions/dependency-review-action from 3.1.5 to 4.0.0 by @dependabot in #2469
- build(deps): bump google.golang.org/api from 0.155.0 to 0.157.0 by @dependabot in #2473
- build(deps): bump actions/upload-artifact from 4.1.0 to 4.3.0 by @dependabot in #2476
- build(deps): bump golang from
869193e
to3bd4475
by @dependabot in #2479 - build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.643 to 1.62.666 by @dependabot in #2480
- build(deps): bump actions/cache from 3.3.2 to 4.0.0 by @dependabot in #2468
- build(deps): bump github.com/Azure/azure-sdk-for-go/sdk/azidentity from 1.4.0 to 1.5.1 by @dependabot in #2483
- build(deps): bump github.com/aws/aws-sdk-go from 1.49.8 to 1.50.4 by @dependabot in #2484
- build(deps): bump docker/metadata-action from 5.4.0 to 5.5.0 by @dependabot in #2443
- build(deps): bump golang from
3bd4475
to3354c3a
by @dependabot in #2489 - build(deps): bump github.com/hashicorp/vault/api from 1.10.0 to 1.11.0 by @dependabot in #2487
- build(deps): bump alpine from 3.19.0 to 3.19.1 by @dependabot in #2488
- build(deps): bump DeterminateSystems/magic-nix-cache-action from 2 to 3 by @dependabot in #2493
- build(deps): bump tonistiigi/xx from 1.3.0 to 1.4.0 by @dependabot in #2496
- build(deps): bump actions/upload-artifact from 4.3.0 to 4.3.1 by @dependabot in #2494
- build(deps): bump golang from 1.21.6-alpine3.18 to 1.22.0-alpine3.18 by @dependabot in #2499
- build(deps): bump aquasecurity/trivy-action from 0.16.1 to 0.17.0 by @dependabot in #2495
- build(deps): bump google.golang.org/api from 0.157.0 t...
v1.30.0
Overview
IMPORTANT: All future releases will be tagged with v prefix, starting from v1.30.0
Make sure to use the new versioning scheme across other components when upgrading.
Discussion: https://github.com/orgs/bank-vaults/discussions/2065
Features
- feat(kv): implement a file provider for Azure auth by @akijakya in #2086
- feat(dev): remove viper StringToString pflag workaround by @alexandear in #2199
- feat(dev): use internal package, bump to go 1.21 by @akijakya in #2256
- feat(GA): verify pull request by @ramizpolic in #2263
- feat(dev): add gen-docs command by @ramizpolic in #2270
Bug Fixes
- fix: add back missing pcscd entrypoint script by @sagikazarmark in #2095
- fix: Typos in errors, logs, vars, and comments by @alexandear in #2184
- fix: Replace deprecated io/ioutil with io and os by @alexandear in #2186
- fix: dupword lint; mark few linters as deprecated by @alexandear in #2200
- fix: gocritic lint issues; enable some linters by @alexandear in #2237
- fix: Issue #1823 - moving vault keys from kube secret to aws s3 by @rmullinnix461332 in #2302
Documentation
- docs: Add PR template by @tanmay-pnaik in #2089
- docs: Update issue template by @tanmay-pnaik in #2094
- docs: Update Slack URL by @tanmay-pnaik in #2101
- docs: added OpenSSF best practices badge by @lgecse in #2238
- docs: remove shared project files by @ramizpolic in #2291
Maintenance
- chore: removed duplicate test script by @akijakya in #2122
- chore: remove viper from vault file reloaders by @ramizpolic in #2105
- chore: Clean up examples moved to docs by @tanmay-pnaik in #2073
- chore: add codeowners by @ramizpolic in #2183
- chore: fix buildtag by @alexandear in #2191
- chore: update makefile by @ramizpolic in #2330
Dependency
View all dependency changes
- build(deps): bump google.golang.org/api from 0.133.0 to 0.134.0 by @dependabot in #2079
- build(deps): bump github.com/aliyun/aliyun-oss-go-sdk from 2.2.7+incompatible to 2.2.8+incompatible by @dependabot in #2084
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.307 to 1.44.314 by @dependabot in #2090
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.475 to 1.62.503 by @dependabot in #2091
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.503 to 1.62.504 by @dependabot in #2092
- build(deps): bump gocloud.dev from 0.32.0 to 0.33.0 by @dependabot in #2093
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.314 to 1.44.316 by @dependabot in #2100
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.504 to 1.62.506 by @dependabot in #2097
- build(deps): bump alpine from 3.18.2 to 3.18.3 by @dependabot in #2109
- build(deps): bump google.golang.org/api from 0.134.0 to 0.135.0 by @dependabot in #2108
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.316 to 1.44.318 by @dependabot in #2106
- build(deps): bump sigs.k8s.io/controller-runtime from 0.15.0 to 0.15.1 by @dependabot in #2102
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.506 to 1.62.508 by @dependabot in #2107
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.318 to 1.44.319 by @dependabot in #2114
- build(deps): bump cloud.google.com/go/kms from 1.15.0 to 1.15.1 by @dependabot in #2113
- build(deps): bump google.golang.org/api from 0.135.0 to 0.136.0 by @dependabot in #2112
- build(deps): bump actions/dependency-review-action from 3.0.6 to 3.0.7 by @dependabot in #2111
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.319 to 1.44.322 by @dependabot in #2124
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.508 to 1.62.511 by @dependabot in #2125
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.322 to 1.44.325 by @dependabot in #2133
- build(deps): bump actions/dependency-review-action from 3.0.7 to 3.0.8 by @dependabot in #2126
- build(deps): bump google.golang.org/api from 0.136.0 to 0.137.0 by @dependabot in #2128
- build(deps): bump github.com/Azure/azure-sdk-for-go/sdk/azcore from 1.7.0 to 1.7.1 by @dependabot in #2129
- build(deps): bump cloud.google.com/go/storage from 1.31.0 to 1.32.0 by @dependabot in #2130
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.325 to 1.44.326 by @dependabot in #2134
- build(deps): bump k8s.io/client-go from 0.27.4 to 0.28.0 by @dependabot in #2135
- build(deps): bump google.golang.org/api from 0.137.0 to 0.138.0 by @dependabot in #2136
- build(deps): bump github.com/Azure/azure-sdk-for-go/sdk/azidentity from 1.3.0 to 1.3.1 by @dependabot in #2140
- build(deps): bump sigs.k8s.io/controller-runtime from 0.15.1 to 0.16.0 by @dependabot in #2142
- build(deps): bump actions/checkout from 3.5.3 to 3.6.0 by @dependabot in #2149
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.511 to 1.62.522 by @dependabot in #2152
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.326 to 1.44.331 by @dependabot in #2153
- build(deps): bump k8s.io/apimachinery from 0.28.0 to 0.28.1 by @dependabot in #2150
- build(deps): bump k8s.io/client-go from 0.28.0 to 0.28.1 by @dependabot in #2154
- build(deps): bump docker/setup-buildx-action from 2.9.1 to 2.10.0 by @dependabot in #2158
- build(deps): bump gocloud.dev from 0.33.0 to 0.34.0 by @dependabot in #2159
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.331 to 1.44.332 by @dependabot in #2160
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.522 to 1.62.526 by @dependabot in #2161
- build(deps): bump github.com/aliyun/aliyun-oss-go-sdk from 2.2.8+incompatible to 2.2.9+incompatible by @dependabot in #2156
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.332 to 1.44.334 by @dependabot in #2167
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.526 to 1.62.530 by @dependabot in #2166
- build(deps): bump github.com/Azure/azure-sdk-for-go/sdk/security/keyvault/azsecrets from 1.0.0 to 1.0.1 by @dependabot in #2148
- build(deps): bump github.com/aws/aws-sdk-go from 1.44.334 to 1.45.0 by @dependabot in #2169
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.62.530 to 1.62.533 by @dependabot in #2168
- build(deps): bump sigs.k8s.io/controller-runtime from 0.16.0 to 0.16.1 by @dependabot in #2170
- build(deps): bump github.com/aws/aws-sdk-go from 1.45.0 to 1.45.1 by @dependabot in #2171
- build(deps): bump actions/checkout from 3.6.0 to 4.0.0 by @dependabot in #2174
- build(deps): bump aquasecurity/trivy-action from 0.11.2 to 0.12.0 by @dependabot in #2175
- build(deps): bump github.com/aws/aws-sdk-go from 1.45.1 to 1.45.2 by @dependabot in https://github.com/bank-vaults/ba...
1.20.4
1.20.3
1.20.2
1.20.1
What's Changed
- Replace logo by @sagikazarmark in #2063
- ci: add openssf scorecard by @sagikazarmark in #2064
- build(deps): bump google.golang.org/api from 0.132.0 to 0.133.0 by @dependabot in #2058
- build(deps): bump github.com/Azure/azure-sdk-for-go/sdk/security/keyvault/azsecrets from 0.14.0 to 1.0.0 by @dependabot in #2062
- Fix AWS KMS encryption context by @sagikazarmark in #2066
Full Changelog: 1.20.0...1.20.1
1.20.0
What's Changed
- ci(GHA): fixed Helm version check by @akijakya in #1793
- build(deps): bump github.com/prometheus/client_golang from 1.11.0 to 1.11.1 by @dependabot in #1798
- build(deps): bump alpine from 3.17.1 to 3.17.2 by @dependabot in #1796
- Update adopters list by @ftpd in #1812
- Add Wildlife Studios as an adopter by @Kasama in #1818
- Update adopters list by @martinkubrak in #1816
- Improve CI (GHA) by @akijakya in #1806
- Update dependencies by @sagikazarmark in #1834
- build(deps): bump anchore/scan-action from 3.3.3 to 3.3.4 by @dependabot in #1801
- build(deps): bump actions/upload-artifact from 1 to 3 by @dependabot in #1828
- Update dependabot by @sagikazarmark in #1840
- Fix panic when secret is empty by @nsimons in #1815
- Delete reference to commercial support from README by @fekete-robert in #1826
- feat: added PhishLabs to adopters list by @akijakya in #1822
- build(deps): bump actions/setup-go from 3 to 4 by @dependabot in #1824
- fix(dependencies): update sprig to fix transitive CVE-2021-4238 by @bastianccm in #1817
- fix: Add missing parameters when using auto unseal by @lusu007 in #1808
- build(deps): bump golang from 1.19.5-alpine to 1.20.2-alpine by @dependabot in #1820
- build(deps): bump golang.org/x/crypto from 0.0.0-20210921155107-089bfa567519 to 0.1.0 by @dependabot in #1838
- build(deps): bump golang.org/x/net from 0.0.0-20220722155237-a158d28d115b to 0.7.0 by @dependabot in #1837
- build(deps): bump cloud.google.com/go/storage from 1.10.0 to 1.30.1 by @dependabot in #1842
- build(deps): bump github.com/stretchr/testify from 1.7.0 to 1.8.2 by @dependabot in #1831
- chore: update golangci-lint by @sagikazarmark in #1848
- build(deps): bump github.com/emicklei/go-restful from 2.9.5+incompatible to 2.16.0+incompatible by @dependabot in #1839
- build(deps): bump golang.org/x/net from 0.0.0-20211216030914-fe4d6282115f to 0.7.0 in /pkg/sdk by @dependabot in #1836
- build(deps): bump github.com/docker/distribution from 2.7.1+incompatible to 2.8.0+incompatible by @dependabot in #1846
- build(deps): bump github.com/opencontainers/image-spec from 1.0.2-0.20211117181255-693428a734f5 to 1.0.2 by @dependabot in #1847
- build(deps): bump golang.org/x/crypto from 0.0.0-20210711020723-a769d52b0f97 to 0.1.0 in /pkg/sdk by @dependabot in #1835
- build(deps): bump github.com/prometheus/client_golang from 1.11.1 to 1.14.0 by @dependabot in #1856
- build(deps): bump anchore/scan-action from 3.3.4 to 3.3.5 by @dependabot in #1863
- build(deps): bump alpine from 3.17.2 to 3.17.3 by @dependabot in #1862
- build(deps): bump github.com/Masterminds/sprig/v3 from 3.2.2 to 3.2.3 by @dependabot in #1860
- build(deps): bump github.com/Azure/go-autorest/autorest from 0.11.12 to 0.11.28 by @dependabot in #1865
- build(deps): bump github.com/docker/docker from 20.10.12+incompatible to 20.10.24+incompatible by @dependabot in #1867
- build(deps): bump github.com/fsnotify/fsnotify from 1.5.1 to 1.6.0 by @dependabot in #1866
- feature: reload vault-secret-webhook tls certicate on renewal by @fran-wl in #1809
- Reorganised testing files by @akijakya in #1859
- build(deps): bump golang from 1.20.2-alpine to 1.20.3-alpine by @dependabot in #1868
- Acceptance tests in Go by @akijakya in #1864
- Pass --pre-flight-checks=false correctly by @nsimons in #1804
- build(deps): bump helm/chart-testing-action from 2.3.1 to 2.4.0 by @dependabot in #1845
- 1782: allow env to be set in vault init container by @malachiobadeyi in #1810
- build(deps): bump github.com/Azure/azure-sdk-for-go from 46.4.0+incompatible to 68.0.0+incompatible by @dependabot in #1833
- build(deps): bump github.com/prometheus/client_golang from 1.14.0 to 1.15.0 by @dependabot in #1881
- Update sdk to use the code from the new module by @sagikazarmark in #1884
- Add startup probe to vault container by @nosammai in #1841
- fix: Honor vault operator init parameter validation by @kirilvasilev in #1871
- build(deps): bump github.com/Masterminds/semver/v3 from 3.2.0 to 3.2.1 by @dependabot in #1883
- build(deps): bump golang from 1.20.3-alpine to 1.20.4-alpine by @dependabot in #1888
- build(deps): bump github.com/slok/kubewebhook/v2 from 2.1.0 to 2.5.0 by @dependabot in #1858
- build(deps): bump github.com/Azure/go-autorest/autorest/azure/auth from 0.5.8 to 0.5.12 by @dependabot in #1887
- Add PITS Global Data Recovery Services to adopters list in #1889
- Remove operator by @akijakya in #1939
- webhook: use well-known kubernetes name label by @akijakya in #1907
- webhook: remove obsolete mutate-configmap annotation by @akijakya in #1929
- webhook: fix webhook servingCertificate helm issue by @akijakya in #1913
- build(deps): bump golang from 1.20.4-alpine to 1.20.5-alpine by @dependabot in #1937
- chore: use vault-env from the new repository by @sagikazarmark in #1942
- templating support for vault-role setting by @universam1 in #1870
- Remove vault-env (and some operator leftovers) by @akijakya in #1941
- refactor: remove webhook code by @sagikazarmark in #1944
- refactor: remove vault chart by @sagikazarmark in #1954
- Cleanup by @sagikazarmark in #1956
- build(deps): bump alpine from 3.17.3 to 3.18.2 by @dependabot in #1949
- New development environment by @sagikazarmark in #1957
- build(deps): bump github.com/aliyun/alibaba-cloud-sdk-go from 1.61.193 to 1.62.381 by @dependabot in #1955
- build(deps): bump k8s.io/apimachinery from 0.26.1 to 0.27.3 by @dependabot in #1951
- build(deps): bump k8s.io/client-go from 0.26.1 to 0.27.3 by @dependabot in #1950
- build(deps): bump github.com/hashicorp/go-uuid from 1.0.2 to 1.0.3 by @dependabot in #1960
- build(deps): bump github.com/sirupsen/logrus from 1.9.0 to 1.9.3 by @dependabot in #1959
- build(deps): bump github.com/Azure/go-autorest/autorest from 0.11.27 to 0.11.29 by @dependabot in #1893
- build(deps): bump github.com/spf13/cobra from 1.6.0 to 1.7.0 by @dependabot in #1958
- build(deps): bump github.com/hashicorp/vault/api from 1.9.1 to 1.9.2 by @dependabot in #1961
- Container image by @sagikazarmark in #1967
- build(deps): bump github.com/miekg/pkcs11 from 1.0.3 to 1.1.1 by @dependabot in #1966
- build(deps): bump github.com/spf13/viper from 1.10.1 to 1.16.0 by @dependabot in #1965
- build(deps): bump github.com/aliyun/aliyun-oss-go-sdk from 2.0.4+incompatible to 2.2.7+incompatible by @dependabot in https://github.com/bank-...
1.20.0-dev.3
1.20.0-dev.2
Changelog
- deb8843 build: add prerelease config