Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

rebase: bump k8s.io/api from 0.31.3 to 0.32.0 in /api in the k8s-dependencies group #5025

Closed

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Dec 16, 2024

Bumps the k8s-dependencies group in /api with 1 update: k8s.io/api.

Updates k8s.io/api from 0.31.3 to 0.32.0

Commits
  • e622342 Update dependencies to v0.32.0 tag
  • b0543a3 Merge remote-tracking branch 'origin/master' into release-1.32
  • f6bae9a Drop use of winreadlinkvolume godebug option
  • ea815d5 Merge remote-tracking branch 'origin/master' into release-1.32
  • c331a79 Revert to go1.22 windows filesystem stdlib behavior
  • f8e5e36 Merge pull request #128407 from ndixita/pod-level-resources
  • 84e0db8 Merge pull request #127857 from Jefftree/cle-v1alpha2
  • cbaf5a0 Merge pull request #128686 from thockin/take_over_pr-125233
  • a503a4f Merge pull request #128687 from tallclair/allocated-status
  • 3f43b5a Merge pull request #128240 from LionelJouin/KEP-4817
  • Additional commits viewable in compare view

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.

Depends-on: #5036
See-also: #5015


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

@dependabot dependabot bot added ci/skip/e2e skip running e2e CI jobs ci/skip/multi-arch-build skip building on multiple architectures rebase update the version of an external component labels Dec 16, 2024
@nixpanic
Copy link
Member

nixpanic commented Jan 8, 2025

@Mergifyio rebase

Copy link
Contributor

mergify bot commented Jan 8, 2025

rebase

❌ Base branch update has failed

Git reported the following error:

Rebasing (1/2)
Auto-merging api/go.mod
CONFLICT (content): Merge conflict in api/go.mod
error: could not apply fe8d5894... rebase: bump k8s.io/api in /api in the k8s-dependencies group
hint: Resolve all conflicts manually, mark them as resolved with
hint: "git add/rm <conflicted_files>", then run "git rebase --continue".
hint: You can instead skip this commit: run "git rebase --skip".
hint: To abort and get back to the state before "git rebase", run "git rebase --abort".
Could not apply fe8d5894... rebase: bump k8s.io/api in /api in the k8s-dependencies group

@iPraveenParihar iPraveenParihar force-pushed the dependabot/go_modules/api/k8s-dependencies-e2932ebc0c branch from adbdb2f to 20763ce Compare January 9, 2025 05:23
@iPraveenParihar
Copy link
Contributor

@dependabot recreate

@dependabot dependabot bot force-pushed the dependabot/go_modules/api/k8s-dependencies-e2932ebc0c branch from 20763ce to 9bb8bb4 Compare January 9, 2025 13:26
@iPraveenParihar
Copy link
Contributor

@dependabot rebase

Copy link
Contributor Author

dependabot bot commented on behalf of github Jan 10, 2025

Looks like this PR is already up-to-date with devel! If you'd still like to recreate it from scratch, overwriting any edits, you can request @dependabot recreate.

@iPraveenParihar iPraveenParihar force-pushed the dependabot/go_modules/api/k8s-dependencies-e2932ebc0c branch 3 times, most recently from 8aab901 to bcf0106 Compare January 13, 2025 08:04
@Madhu-1
Copy link
Collaborator

Madhu-1 commented Jan 14, 2025

@dependabot recreate

@dependabot dependabot bot force-pushed the dependabot/go_modules/api/k8s-dependencies-e2932ebc0c branch from bcf0106 to 393efae Compare January 14, 2025 07:45
@iPraveenParihar iPraveenParihar force-pushed the dependabot/go_modules/api/k8s-dependencies-e2932ebc0c branch 4 times, most recently from ef25ca2 to 5e70f94 Compare January 16, 2025 05:45
@nixpanic nixpanic removed ci/skip/e2e skip running e2e CI jobs ci/skip/multi-arch-build skip building on multiple architectures labels Jan 16, 2025
nixpanic
nixpanic previously approved these changes Jan 16, 2025
@nixpanic nixpanic requested a review from a team January 16, 2025 08:20
Madhu-1
Madhu-1 previously approved these changes Jan 16, 2025
@Madhu-1
Copy link
Collaborator

Madhu-1 commented Jan 16, 2025

Rebasing the commits of this branch on top of the base branch cannot be performed automatically as this would create a different result than a regular merge.

i see this message, we need to recreate the PR?

@nixpanic
Copy link
Member

@Mergifyio rebase

Copy link
Contributor

mergify bot commented Jan 16, 2025

rebase

✅ Branch has been successfully rebased

@nixpanic nixpanic force-pushed the dependabot/go_modules/api/k8s-dependencies-e2932ebc0c branch from 5e70f94 to 4b4713b Compare January 16, 2025 12:36
@nixpanic
Copy link
Member

Rebasing the commits of this branch on top of the base branch cannot be performed automatically as this would create a different result than a regular merge.

i see this message, we need to recreate the PR?

Mergify was able to do it 👍

@nixpanic
Copy link
Member

@Mergifyio queue

@iPraveenParihar
Copy link
Contributor

iPraveenParihar commented Jan 17, 2025

this time test passed but soon we need to debug/analyse #4633 and find out the cause.

@iPraveenParihar
Copy link
Contributor

@Mergifyio rebase

dependabot bot and others added 3 commits January 20, 2025 04:11
Bumps the k8s-dependencies group in /api with 1 update: [k8s.io/api](https://github.com/kubernetes/api).

Updates `k8s.io/api` from 0.31.3 to 0.32.0
- [Commits](kubernetes/api@v0.31.3...v0.32.0)

---
updated-dependencies:
- dependency-name: k8s.io/api
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: k8s-dependencies
...

Signed-off-by: dependabot[bot] <[email protected]>
Update K8s packages in go.mod to v0.32.0

Signed-off-by: Praveen M <[email protected]>
This commit resolves  CVE-2024-45338 -
Non-linear parsing of case-insensitive content in golang.org/x/net/html (high severity)
GHSA-w32m-9786-jp63

Signed-off-by: Praveen M <[email protected]>
Copy link
Contributor

mergify bot commented Jan 20, 2025

rebase

✅ Branch has been successfully rebased

@iPraveenParihar iPraveenParihar force-pushed the dependabot/go_modules/api/k8s-dependencies-e2932ebc0c branch from 5493850 to d2c60c3 Compare January 20, 2025 04:11
@iPraveenParihar
Copy link
Contributor

@Mergifyio queue

Copy link
Contributor

mergify bot commented Jan 20, 2025

queue

🟠 Waiting for conditions to match

  • -closed [📌 queue requirement]
  • any of: [🔀 queue conditions]
    • all of: [📌 queue conditions of queue default]
      • #approved-reviews-by >= 2 [🛡 GitHub branch protection]
      • #changes-requested-reviews-by = 0 [🛡 GitHub branch protection]
  • -conflict [📌 queue requirement]
  • -draft [📌 queue requirement]
  • depends-on = ceph/ceph-csi#5036 [⛓️ build: update Go 1.23 #5036]
  • any of: [📌 queue -> configuration change requirements]
    • -mergify-configuration-changed
    • check-success = Configuration changed

@iPraveenParihar iPraveenParihar added the ok-to-test Label to trigger E2E tests label Jan 20, 2025
@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/upgrade-tests-cephfs

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/k8s-e2e-external-storage/1.31

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/k8s-e2e-external-storage/1.30

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/upgrade-tests-rbd

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/mini-e2e-helm/k8s-1.31

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/mini-e2e-helm/k8s-1.30

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/mini-e2e/k8s-1.31

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/mini-e2e/k8s-1.30

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/k8s-e2e-external-storage/1.32

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/mini-e2e-helm/k8s-1.32

@ceph-csi-bot
Copy link
Collaborator

/test ci/centos/mini-e2e/k8s-1.32

@ceph-csi-bot ceph-csi-bot removed the ok-to-test Label to trigger E2E tests label Jan 20, 2025
@iPraveenParihar
Copy link
Contributor

/retest ci/centos/k8s-e2e-external-storage/1.30

@iPraveenParihar
Copy link
Contributor

this time test passed but soon we need to debug/analyse #4633 and find out the cause.

@nixpanic, All tests passed. Can we merge this now WDYT?

@iPraveenParihar
Copy link
Contributor

#5097

Copy link
Contributor Author

dependabot bot commented on behalf of github Jan 21, 2025

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot dependabot bot deleted the dependabot/go_modules/api/k8s-dependencies-e2932ebc0c branch January 21, 2025 05:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
rebase update the version of an external component
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants