File aws-iam-authenticator.changes of Package aws-iam-authenticator
-------------------------------------------------------------------
Tue Nov 18 14:43:44 UTC 2025 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.7.9
* Creating PR to update Go version to 1.25.4
* chore(deps): Bump the aws-dependencies group across 2 directories with 13 updates
* chore(deps): Bump golangci/golangci-lint-action in the actions group
* chore(deps): Bump the observability-dependencies group across 3 directories with 2 updates
* chore(deps): Bump sigs.k8s.io/apiserver-network-proxy/konnectivity-client
* chore(deps): Bump the aws-dependencies group across 2 directories with 14 updates
* bump golang version to 1.25.3
* Creating PR to update Go version to 1.25.3
* chore(deps): Bump github.com/onsi/ginkgo/v2
* chore(deps): Bump the observability-dependencies group across 3 directories with 1 update
* chore(deps): Bump the misc-dependencies group across 3 directories with 11 updates
* chore(deps): Bump the misc-dependencies group across 3 directories with 5 updates
* chore(deps): Bump the aws-dependencies group across 2 directories with 3 updates
-------------------------------------------------------------------
Thu Oct 9 12:16:22 UTC 2025 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.7.8
* chore: Bump indirect Kubernetes dependencies to latest
* chore: Bump Kubernetes dependencies to latest
* Bump the misc-dependencies group across 3 directories with 18 updates
* Bump the aws-dependencies group across 2 directories with 11 updates
* Fix CVE-2025-47910
* Bump go.opentelemetry.io/auto/sdk
* Bump the aws-dependencies group across 2 directories with 1 update
* Bump go.opentelemetry.io/auto/sdk
* Bump the misc-dependencies group across 3 directories with 10 updates
* Bump the aws-dependencies group across 2 directories with 11 updates
- from version 0.7.7
* add support for aws-eusc partition
* chore: Commit changes from `make codegen`
* fix: Use `.go-version` for the go version
* feat: Add `golanglint-ci` pull request review; resolve all findings
* Add haoranleo as approver
* Bump the observability-dependencies group across 3 directories with 3 updates
* Bump actions/setup-go from 5 to 6 in the actions group
* Bump the misc-dependencies group across 3 directories with 8 updates
* Bump the aws-dependencies group across 2 directories with 1 update
* Bump github.com/coreos/go-oidc
* Bump the observability-dependencies group across 3 directories with 12 updates
- from version 0.7.6
* feat: Update go version to `1.25`; update dependencies to latest
to patch reported vulnerabilities
* Force TCP URLs for etcd compatibility
* Update go dependencies with 1.34.0
* Bump the k8s-dependencies group across 3 directories with 8 updates
* Bump the aws-dependencies group across 2 directories with 11 updates
* Bump the k8s-dependencies group across 3 directories with 1 update
* Bump actions/checkout from 4 to 5 in the actions group
* Bump the aws-dependencies group across 2 directories with 13 updates
- from version 0.7.5
* migrate hostname verification to sdk go v2
* Bump the aws-dependencies group across 2 directories with 11 updates
* Bump the k8s-dependencies group across 3 directories with 8 updates
* Bump the aws-dependencies group across 2 directories with 1 update
- from version 0.7.4
* Bump the k8s-dependencies group across 3 directories with 1 update
* Bump the aws-dependencies group across 2 directories with 1 update
* Bump the misc-dependencies group across 3 directories with 18 updates
* chore: Move observability dependencies to separate dependabot update group
* Bump the aws-dependencies group across 2 directories with 12 updates
* Bump the k8s-dependencies group across 3 directories with 8 updates
- from version 0.7.3
* update Approvers/reviewers
* update go version to 1.24.4
* Bump the aws-dependencies group across 2 directories with 12 updates
* added logs for global region fallback
* added global region fallback to imds
* Bump sigs.k8s.io/apiserver-network-proxy/konnectivity-client
* bumps kops and k8s versions, replaced node label "master" with "control-plane"
* added imds logic back in, with EC2_METADATA enabled by default
* removed headersourceacct from ststest, return err if no region cfg
* added context chaining, cleanup
* add context chaining, client config fixes
* Move non problematic cache logs into debug
* Rename log-level to log-verbosity, remove AutomaticEnv
* lint fixes
* get region from imds if not in config
* added go.sum entries for tests/integration, fixed imds nil pointer dereference
* Revert "Bump sigs.k8s.io/apiserver-network-proxy/konnectivity-client"
* added some context chaining, fixed region config in GetWithOptions
* updated arn, deleted v1-v2 creds converter
* updated pkg/token to v2
* updated pkg/filecache
* updated arn in pkg/server to use v2
* updated pkg/server to use v2
* upgraded ec2provider
* Bump the misc-dependencies group across 3 directories with 5 updates
* Bump the k8s-dependencies group across 3 directories with 8 updates
* Bump the misc-dependencies group across 3 directories with 6 updates
* Bump sigs.k8s.io/apiserver-network-proxy/konnectivity-client
* Bump the misc-dependencies group across 3 directories with 9 updates
* Use logrus for filecache logs
* Add quiet mode (cache only)
- from version 0.7.2
* Bump the aws-dependencies group across 2 directories with 1 update
* Bump the misc-dependencies group across 3 directories with 43 updates
* Bump the k8s-dependencies group across 3 directories with 2 updates
- from version 0.7.1
* Revert "Add 2 more tag validation checks"
* Update the gorunner to v0.18.0-eks-1-32-latest
* update the go version to 1.24.2
* Bump the aws-dependencies group across 2 directories with 1 update
* adding yue9944882 to owner
* adds http2 support
* Bump the aws-dependencies group across 2 directories with 3 updates
* Update configmap.go
* release authenticator from mainline with 0.7.0
* release authenticator from mainline with 0.7.0
* Bump the misc-dependencies group across 3 directories with 9 updates
* Bump goreleaser/goreleaser-action from 5 to 6 in the actions group
* Bump the misc-dependencies group across 3 directories with 41 updates
* Remove no-op err assignment
* Fix credential expirability check
* chore: Update golan x package transitive dependencies
* Bump the aws-dependencies group across 2 directories with 3 updates
* fix: Correct codgen script due to deprecated script removal
* Update configmap test per 1.32.0 change in client-go
* Update upstream dependencies to v1.32.0
* chore: Update to go `1.23.4`
* deps: Update `golang.org/x/crypto` library to remediate high CVE
* chore: Add dependabot configuration to automatically check for package updates weekly
* handle scenario when the file is created but doesn't have content
* update code and add tests
* update code and add tests
* remove nnmin-aws from approver list
* add kmala to the owners list
* update metrics dimention to stsregion
* add default timeout for http client
* log sts host instead of global/regional
* log sts host instead of global/regional
* update log
* remove typo and log line
* remove typo and log line
* remove typo
* Bump test go versions
* add logs and metrics dimentions to find sts call success/failures on global/regional endpoints
* Bump go minor version
* add logs and metrics dimentions to find sts call success/failures on global/regional endpoints
* Update aws-iam-authenticator installation command
* use protobuf content type instead of json for k8s client
* Update RELEASE.md
* Bump go-restful in e2e and integration tests
* Bump go-restful
* Remove outdated changelog artifacts
* Bump deploy/example.yaml version
* update RELEASE.md
* Update filecache to use AWS SDK Go V2 with wrappers
* Refactored token filecache
* Fix x-amz-expires header value
* Remove parameterized AWS session from token.go
* Parse source account from sourceARN
* Add sourceArn to sts through headers
* Add configurable Now time for signature generation
* cleanup to use composite literals
* update to sig.k8s.io namespace
* retain original field
* update the image to latest to fix CVE-2024-39689
* add a namespaced field
* Update upstream dependencies to v1.31.0
* update the go version to 1.22.5
* Add unit test
* skip service validation to get the default regions endpoint
* fix: Run `go mod tidy` to fix `go.sum` files
* fix: Update goreleaser workflow to fix warnings and artifact generation
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* chore: Remove emeritus reviewers from `SECURITY_CONTACTS`
* fix: Add random string to e2e test role to avoid pipeline run conflicts
* fix: Run `go mod tidy` from `tests/integration` directory
* chore: Update CLI dependencies `cobra` and `viper`
* updating google.golang.org/grpc/otelgrpc to v0.47.0
* chore: Update CI action versions, remove `push` trigger
* chore: Align go versions and remove unused files
* updating k8s client libraries and go version
* adding new approvers - nnmin-aws
* Bump go version to 1.21.8
* Bump github.com/golang/protobuf v1.5.4, google.golang.org/protobuf v1.33.0
* chore: Re-update to latest patch version of K8s packages
* fix time formatting
* refactor structs for dynamic file load
* add support for adoption rate metrics for cam
* add support for e2e latency for dynamic mode
* Switch to GOTOOLCHAIN env setting from gimme
* Switch back to use go-version from go-image-tag
* Switch to use go-image-tag from go-version
* Repo controlled build go version
* chore: Re-update and align
* fix semantic error
* feat: Re-update K8s packages to latest release
* fix: Use `SIGDescribe`
* fix: Use `framework.WithDisruptive()`
* fix: [Disruptive] in plain text is deprecated and must be added through WithDisruptive instead
* chore: Update dependencies for `e2e` tests
* fix: Add context to `StartTestServer`
* fix: Align integration test `replace` versions in `go.mod`
* fix: Fix codegen and update `replace` test integration dependencies
* fix: Integration test dependencies run `go mod tidy`
* fix: Downgrade `k8s.io/sample-controller` which requires updating context handling
* chore: Update app K8s dependencies
* adding nnmin-aws into reviewers
* Replace deprecated `ioutil` package
* fix base image to use latest
* minor fix the IAM user arn verification
* Fix role ARN comparison for user ID strict check (#669)
* Check ARN for user ID strict check (#660)
* Update go to 1.21.5
* Change s3 bucket for e2e tests, current default exists somewhere (#652)
- Bump minimum Go version to 1.25 in BuildRequires
-------------------------------------------------------------------
Mon Apr 14 07:28:34 UTC 2025 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.31
* Adds http2 support
- from version 0.6.30
* Small fixes missed during cherrypicking
* Cherry-picked file changes from commit
https://github.com/kubernetes-sigs/aws-iam-authenticator/pull/554/commits
* Remove no-op err assignment
* Fix credential expirability check
* Simplify featuregate flag parsing for SSORoleMatch
* Support un-canonicalized ARNs in filemapper
* Add SSO Role suffix support (#416)
* Bump the misc-dependencies group across 3 directories with 9 updates
* Bump the misc-dependencies group across 3 directories with 41 updates
* Chore: Update golang x package transitive dependencies
* Bump the aws-dependencies group across 2 directories with 3 updates
* Fix: Correct codgen script due to deprecated script removal
* Update RELEASE.md
* Remove outdated changelog artifacts
* Bump deploy/example.yaml version
* Update RELEASE.md
- Add -buildmode=pie to go build command line (bsc#1239947)
-------------------------------------------------------------------
Fri Jan 10 08:49:33 UTC 2025 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.29
* Update configmap test per 1.32.0 change in client-go
* Update upstream dependencies to v1.32.0
* chore: Update to go `1.23.4`
* deps: Update `golang.org/x/crypto` library to remediate high CVE
* Handle scenario when the file is created but doesn't have content
- from version 0.6.28
* Update owners list to sync master branch
* Update owners list to sync master branch
* Remove nnmin-aws from approver list
* Add kmala to the owners list
* Update code and add tests
* Update code and add tests
* Update metrics dimention to stsregion
* Log sts host instead of global/regional
* Log sts host instead of global/regional
* Lpdate log
* Remove typo and log line
* Remove typo and log line
* Remove typo
* Add logs and metrics dimentions to find sts call
success/failures on global/regional endpoints
* Add logs and metrics dimentions to find sts call
success/failures on global/regional endpoints
* Bump test go versions
* Bump go minor version
* Add default timeout for http client
* Bump go-restful in e2e and integration tests
* Bump go-restful
* Update filecache to use AWS SDK Go V2 with wrappers
* Refactored token filecache
* Replace deprecated `ioutil` package
* Fix x-amz-expires header value
* Remove parameterized AWS session from token.go
* Add configurable Now time for signature generation
* Return 429 for STS throttling
-------------------------------------------------------------------
Tue Nov 5 14:04:07 UTC 2024 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to 0.6.27
* Use protobuf content type instead of json for k8s client
- from version 0.6.26
* Parse source account from sourceARN
* Add sourceArn to sts through headers
- from version 0.6.25
* Cleanup to use composite literals
* Update to sig.k8s.io namespace
* Retain original field
* Add a namespaced field
- from version 0.6.24
* Update the image to latest to fix CVE-2024-3968
- from version 0.6.23
* Update upstream dependencies to v1.31.0
-------------------------------------------------------------------
Wed Jul 31 10:27:42 UTC 2024 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.22
* Update the go version to 1.22.5
* Add unit test
* Skip service validation to get the default regions endpoint
-------------------------------------------------------------------
Tue Jul 2 12:34:17 UTC 2024 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.21
* chore: Remove emeritus reviewers from `SECURITY_CONTACTS`
* chore: Remove emeritus reviewers from `SECURITY_CONTACTS`
* chore: Remove emeritus reviewers from `SECURITY_CONTACTS`
* fix: Run `go mod tidy` to fix `go.sum` files
* fix: Update goreleaser workflow to fix warnings and artifact generation
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
* update aws go sdk to 1.54.6
- from version 0.6.20
* Merge pull request #713 from jaidevmane/updating-otelgrpc-to-v0.51.0
* Merge pull request #709 from bryantbiggs/chore/update-ci-versions
* Merge pull request #708 from jaidevmane/updating-deps
* Merge pull request #707 from jaidevmane/adding-new-approvers
* Merge pull request #687 from bryantbiggs/chore/update-app-k8s-dependencies
- from version 0.6.19
* Bump go version to 1.21.8
* Bump github.com/golang/protobuf v1.5.4,
google.golang.org/protobuf v1.33.0
- from version 0.6.18
* Fix time formatting
* Refactor structs for dynamic file load
* Add support for adoption rate metrics for cam
* Add support for e2e latency for dynamic mode
* Switch to GOTOOLCHAIN env setting from gimme
* Switch back to use go-version from go-image-tag
* Switch to use go-image-tag from go-version
* Repo controlled build go version
- from version 0.6.17
* Fix base image to use latest and release v0.6.17
- from version 0.6.16
* Minor fix the IAM user arn verification
- from version 0.6.15
* Fix role ARN comparison for user ID strict check (#669) (#671)
- Bump minimum Go version to 1.22 in BuildRequires
-------------------------------------------------------------------
Tue Feb 13 14:00:08 UTC 2024 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.14
* Check ARN for user ID strict check (#660) (#664)
* Update go to 1.21.5 (#663)
* Update go to 1.21.4 (#648) (#659)
-------------------------------------------------------------------
Tue Dec 5 14:16:09 UTC 2023 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.13
* Cherry-pick: Fix federated user ID parsing #644 (#654)
* Fix issue 606: use latest version of aws-sdk-go (#650)
* Change s3 bucket for e2e tests, current default exists somewhere (#653)
- from version 0.6.12
* Avoid parsing single quote empty inputs
* Avoid parsing known empty inputs
-------------------------------------------------------------------
Thu Aug 17 10:21:09 UTC 2023 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.11
* Optimize only rebuild mapper when the actual backend modes change
* Add int test for dynamic backend mode
* Add DynamicBackendMode
* Allow running create release from Github UI
-------------------------------------------------------------------
Tue Jul 4 09:35:29 UTC 2023 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.10
* Update go.sum
* Only replace x/net
* Add build-all-images make target
* Enable cross-compilation in Dockerfile
- from version 0.6.9
* Add DynamicFileError Metric
- from version 0.6.8
* Add comments explicitly on what we need to do later
* Shutdown gracefully and avoid the extra thread
leak checks that EtcdMain barfs on
* Switch to newer ginkgo v2
* Bump dependencies and go version (in go.mod)
- from version 0.6.7
* (no changes)
- from version 0.6.6
* Add Username Prefix Enforce for DynamicFile mode
- from version 0.6.5
* Update the aws sdk go version to latest
* Update base image in Docker file
- from version 0.6.4
* Loop up RoleMapping with UserId in dynamocfile mode
* Install kind if it doesn't exist to _output
* Update server_test for expose principal ID in audit log
* Update server_test for expose principal ID in audit log
* Expose Principal Id to audit log
* Migrate away from google.com gcp project k8s-testimages
* Build s390x/ppc64le binaries
* Add default instance region in sts hostname
- from version 0.6.3
* Bump aws sdk go to v1.44.145
* Update Dockerfile to pull from https://gallery.ecr.aws/ \
eks-distro-build-tooling/golang to avoid reaching pull
rate limit from docker.io
* Add go mod for E2E
* Add install kind into e2e script
* Move e2e test from start dev script + minor fix for run.sh
* Add end to end test for mountfile mode in kind Update Makefile
to support run e2e from either kind or kops.
* Add end to end test for dynamicfile backend
-------------------------------------------------------------------
Fri Mar 31 07:46:25 UTC 2023 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.6.2
* Add automatic release creation
* Add tag workflow to release-0.6 branch
* Remove dependency from PR #416
* Revert "Add SSO Role suffix support (#416)
- from version 0.6.1
* Test release tagging
* Fix file permissions
* Tag release on update to version.txt
* Bump aws sdk go to v1.44.145
* Update Dockerfile to pull from
https://gallery.ecr.aws/eks-distro-build-tooling/golang
to avoid reaching pull rate limit from docker.io
* Add go mod for E2E
* Add install kind into e2e script
* Added Issue and PR templates (#517)
* Move e2e test from start dev script + minor fix for run.sh
* Add end to end test for mountfile mode in kind Update Makefile
to support run e2e from either kind or kops.
* Remove dependency from PR #416
* Update Dockerfile to use Golang as builder
* Add end to end test for dynamicfile backend
- from version 0.6.0
* Print CommitID too on startup
* Print version on startup
* Add new backend mode DYNAMICFILE
* Update go.mod and go.sum for tests/integrations
* Replace tabs with spaces in go.mod
* Bump aws sdk go to v1.44.107
* Minor fix on the script to solve permission
denied issue when run make start-dev
* Working E2E tests in prow
* Non-blocking E2E tests
* Add e2e recipe to Makefile
* Basic E2E testing for authenticator
* Initialize metrics in NewVerifier() if needed
* Simplify featuregate flag parsing for SSORoleMatch
* Added ConfiguredInitDirectories featuregate for init command
* rm more v1alpha1 version
* Bump 0.6 (#471)
* Bump version in Makefile
* Add query parameter validation for multiple parameters
* Replace deprecated seccomp annotation with seccompProfile.
* Replace deprecated critical pod annotation with priorityClassName.
* Whitespace consistency fixes.
* Use rbac.authorization.k8s.io/v1 instead of v1beta1 in example manifest.
* Add SSO Role suffix support (#416)
* Lowercase the ARN keys
* Remove vendor directory
* linux/amd64 only for image target
* Don't push on image target
- from version 0.5.16
* Add comments explicitly on what we need to do later
* Shutdown gracefully and avoid the extra thread leak
checks that EtcdMain barfs on
* Switch to newer ginkgo v2
* Bump dependencies and go version (in go.mod)
- from version 0.5.15
* Add Username Prefix Enforce for DynamicFile mode
- from version 0.5.14
* Update the aws sdk go version to latest
* Update base image in Docker file
- from version 0.5.13
* Fix file permissions
* Tag release on update to version.txt
* Loop up RoleMapping with UserId in dynamocfile mode
* Install kind if it doesn't exist to _output
* Update server_test for expose principal ID in audit log
* Update server_test for expose principal ID in audit log
* Expose Principal Id to audit log
* Migrate away from google.com gcp project k8s-testimages
* Build s390x/ppc64le binaries
* Add default instance region in sts hostname
- from version 0.5.12
* Bump aws sdk go to v1.44.145
* Add go mod for E2E
* Update Dockerfile to pull from
https://gallery.ecr.aws/eks-distro-build-tooling/golang
to avoid reaching pull rate limit from docker.io
* Add install kind into e2e script
* Move e2e test from start dev script + minor fix for run.sh
* Fix Makefile on branch release-0.5 (#520)
* rm more v1alpha1 version (#516)
- from version 0.5.11
* Add end to end test for mountfile mode in kind Update
Makefile to support run e2e from either kind or kops.
* Remove dependency from PR #416
* Update Dockerfile to use Golang as builder
* Add end to end test for dynamicfile backend
* Print CommitID too on startup
* Print version on startup
* Add new backend mode DYNAMICFILE
* Minor fix on the script to solve permission
denied issue when run make start-dev
* Working E2E tests in prow
* Non-blocking E2E tests
* Add e2e recipe to Makefile
* Basic E2E testing for authenticator
* Added ConfiguredInitDirectories featuregate for init command
-------------------------------------------------------------------
Thu Dec 1 14:03:36 UTC 2022 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.5.10
* Bump Version in Makefile
* Automated cherry pick of #491: Bump aws sdk go to v1.44.107 (#493)
* Remove vendor from release-0.5 (#498)
-------------------------------------------------------------------
Tue Jul 12 09:49:32 UTC 2022 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.5.9
* Bump version in Makefile
* Add query parameter validation for multiple parameters (#469)
(bsc#1201395, CVE-2022-2385)
- from version 0.5.8
* Revert use of upstream yaml parsing (#455)
- from version 0.5.7
* Remove duplicate InitMetrics by @jngo2 in (#448)
+ Fixes a crash when executing authenticator in server mode
- from version 0.5.6
* Bump AWS SDK to v1.43.28 (#445)
* Use the apiversion from KUBERNETES_EXEC_INFO (#439)
* Bump promptui module to v0.9.0 (#437)
- from version 0.5.5
* Use full package name for goreleaser version (#433)
* Add sts error metric (#430)
* Emit metric for EC2 describeInstance calls (#428)
* Rename configmap_watch_failures to configmap_watch_failures_total (#432)
* Simplify goreleaser Dockerfiles (#431)
* Don't pass metrics around (#423)
- from version 0.5.4
* Embed go-runner into the image (#426)
* Bump Go to 1.17 in Travis (#414)
* Build multi-arch images (#417)
* Add kind-based development environment (#422
* Add jaypipes to approvers/reviewers (#407
* Fix deps (#396
* Fix panic when cache file can't be Stat-ed (#410
* Fix missing status definition in v1 CRD (#411)
* Use ./hack/install-etcd.sh (#405
* Run integration tests with per-test role (#402
* Add a counter for API server watch failures (#400)
* Upgrade CRD manifest to v1 (#397
* Move inactives to emeritus_approvers and add active users (#399)
* Fix tests add vendor (#398)
* Integration test framework (#395)
* Add cloudbuild & improvements (#394)
* Fix typo (#390)
* Add user/role subcommands (#381)
* goreleaser: bump release to 0.164.0 and fix config deprecations (#371)
* Run go mod vendor (#388)
* doc: fix typo in RELEASE.md (#376)
* [pkg/token]: Update credential API version (#386)
* Enrich Audit Logs with additional AWS Identity details
(via audit logs' "extra" map) (#372)
- Enable vendoring for Go module dependencies
-------------------------------------------------------------------
Thu May 20 11:39:15 UTC 2021 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Update to version 0.5.3
* Bump Go to 1.15 in Travis (#361)
* Update aws sdk go v1.37.1 (#360)
* (arn): validate partition against all partitions returned by the aws sdk (#348)
* Document AccessKeyId from UserInfo (#332)
* Support IPv6 listen address (#352)
* Added user agent to AWS SDK (#359)
* Remove Chris Hein from OWNERS (#351)
* Add instructions for the release process (#346)
- from version 0.5.2
* Added partition flag (#341)
* Update link to Kops docs site (#338)
* Security Improvements on the example yaml (#335)
* Fix RBAC on example file: service account requires get to ConfigMap (#334)
* Add AccessKeyID as variable for username (#337)
* Added server side AWS account ID log redaction (#327)
- from version 0.5.1
* Update examples/README (#317)
* Changelog gen (#318)
* Fix CRD mapper blocking all others because caches
never sync and revamp backend-mode flag (#303)
* Update aws-sdk-go to version v1.30.0 (#306)
* Bump k8s.io/ dependencies to 1.16.8 (#305)
* chown aws-iam-authenticator to avoid permission denied (#302)
* Indentation and unit test improvements (#298)
* Adding Rate limiting ec2:DescribeInstances API
along with Batching for high TPS (#292)
* Restrict ClusterRole to readonly IAMIdentityMapping access (#287)
* added selector to spec and changed from extenstions to apps/v1 (#291)
* Add AWS AccessKeyID as an extra field in UserInfo (#286)
* Allow server port customization (#278)
- from version 0.5.0
* Remove DNS-1123 validation of usernames and groups (#260)
* switch to use regional sts endpoint & imdsV2 (#283)
* Add AWS Access Key ID to log (#282)
* Require to pass in interface instead of the concrete type (#279)
* Refactor to allow configurable backends (configmap, eks configmap, crd) (#269)
* Update go version (#255)
* Adding session name parameter to TokenGenerator (#272)
* Rename prometheus metrics to match new project name (#249)
* Remove inactive approvers, add wongma7 (#266)
* Update aws-sdk-go to v1.23.11 (257)
* Added go module download check (#259)
* Updating goreleaser yaml to fix deprecated options (#252)
* Remove deprecated language from README (#244)
* Lowercase ARN inside doMapping and log about it (#239)
* IAMIdentityMapping CRD Implementation (#116)
* Adding micahhausler as approver (#237)
* add support for passing externalID to assume role (#228)
* Update README.md (#231)
* Using sigs.k8s.io domain instead of github.com (#223)
* Refactored EC2 API calls to be testable (#226)
* Include aws request ID when logging errors (#178)
- Remove global Go project variables
- Set GO111MODULE=off to force use of vendored modules
- Update Go build paths
-------------------------------------------------------------------
Tue May 14 14:37:00 UTC 2019 - John Paul Adrian Glaubitz <adrian.glaubitz@suse.com>
- Initial build
+ Version 0.4.0