Skip to content

NO-ISSUE: Synchronize From Upstream Repositories - #473

Merged
openshift-merge-bot[bot] merged 77 commits into
openshift:mainfrom
openshift-bot:synchronize-upstream
Sep 15, 2025
Merged

NO-ISSUE: Synchronize From Upstream Repositories#473
openshift-merge-bot[bot] merged 77 commits into
openshift:mainfrom
openshift-bot:synchronize-upstream

Conversation

@openshift-bot

Copy link
Copy Markdown

The downstream repository has been updated with the following following upstream commits:

DateCommitAuthorMessage
2025-09-12 21:29:14operator-framework/operator-controller@4867f92Joe Lanfordpromote rukpak hash util to shared package, use in boxcutter applier (#2201)
2025-09-12 21:10:00operator-framework/operator-controller@c73b6e0Nico SchiederAdd more probing to CER (#2210)
2025-09-12 20:59:02operator-framework/operator-controller@8762ed5dependabot[bot]🌱 Bump github.com/operator-framework/operator-registry (#2217)

The vendor/ directory has been updated and the following commits were carried:

DateCommitAuthorMessage
2025-09-12 15:02:17openshift/operator-framework-operator-controller@d8e9727dtfranzUPSTREAM: <carry>: Add OpenShift specific files
2025-09-12 15:02:20openshift/operator-framework-operator-controller@dbd436aTodd ShortUPSTREAM: <carry>: Fix catalogd.Dockerfile to use new paths
2025-09-12 15:02:22openshift/operator-framework-operator-controller@292c014Todd ShortUPSTREAM: <carry>: Update DOWNSTREAM_OWNERS_ALIASES
2025-09-12 15:02:25openshift/operator-framework-operator-controller@6fc5adcCatherine Chan-TseUPSTREAM: <carry>: Add openshift node selector annotation
2025-09-12 15:02:28openshift/operator-framework-operator-controller@fc81f7fTodd ShortUPSTREAM: <carry>: Add caalogd-cas-dir option to op-con
2025-09-12 15:02:30openshift/operator-framework-operator-controller@bab69e9Jian ZhangUPSTREAM: <carry>: set the SElinux type
2025-09-12 15:02:33openshift/operator-framework-operator-controller@c0e1c84Camila MacedoUPSTREAM: <carry>: Add initial stack to run tests to validate the catalogs
2025-09-12 15:02:36openshift/operator-framework-operator-controller@7801d0cCamila MacedoUPSTREAM: <carry>: Add vendor files for the catalog-sync tests
2025-09-12 15:02:39openshift/operator-framework-operator-controller@fab15ceTodd ShortUPSTREAM: <carry>: Bump catalog versions to 4.19
2025-09-12 15:02:42openshift/operator-framework-operator-controller@0a7a5b6Todd ShortUPSTREAM: <carry>: revert "Bump catalog versions to 4.19"
2025-09-12 15:02:44openshift/operator-framework-operator-controller@a037cbbTodd ShortUPSTREAM: <carry>: Update HOWTO-origin-tests
2025-09-12 15:02:47openshift/operator-framework-operator-controller@8de06a4Camila MacedoUPSTREAM: <carry>: [DefaultCatalogTests]: Allow to pass auth path for docker credentials"
2025-09-12 15:02:50openshift/operator-framework-operator-controller@8b1903dCamila MacedoUPSTREAM: <carry>: fix: set NoLchown=true to allow image unpack on OCPci
2025-09-12 15:02:53openshift/operator-framework-operator-controller@a6cd4d7Camila MacedoUPSTREAM: <carry>: [DefaultCatalogTests]: Moving parse of ENVVAR to the caller (follow-up 345)
2025-09-12 15:02:55openshift/operator-framework-operator-controller@5fadad0Camila MacedoUPSTREAM: <carry>: [Default Catalog]: Create tmp dir to extract layers with right permissions to avoid issues scenarios
2025-09-12 15:02:58openshift/operator-framework-operator-controller@2859467Camila MacedoUPSTREAM: <carry>: Default Catalog Remove hack directory which is not used
2025-09-12 15:03:00openshift/operator-framework-operator-controller@20d2870Camila MacedoUPSTREAM: <carry>: Change code implementation to extract layers in OCP env
2025-09-12 15:03:03openshift/operator-framework-operator-controller@d67a0e7Camila MacedoUPSTREAM: <carry>: Add vendor files for change in the extract code implementation
2025-09-12 15:03:06openshift/operator-framework-operator-controller@737bb74Camila MacedoUPSTREAM: <carry>: [Default Catalog Tests]: Final cleanups and enhancements of initial implementation
2025-09-12 15:03:08openshift/operator-framework-operator-controller@fdfab28Jian ZhangUPSTREAM: <carry>: SELinux type for operator-controller
2025-09-12 15:03:11openshift/operator-framework-operator-controller@6a5c636Todd ShortUPSTREAM: <carry>: Bump catalog versions to 4.19
2025-09-12 15:03:13openshift/operator-framework-operator-controller@7982650Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test] (feat) add check for executable files in filesystem
2025-09-12 15:03:16openshift/operator-framework-operator-controller@6f706c3Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: fix junit output format to allow generate xml
2025-09-12 15:03:19openshift/operator-framework-operator-controller@0c98d17Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test] (feat) add check to validate multi-arch support
2025-09-12 15:03:22openshift/operator-framework-operator-controller@09fd60aCamila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: Enable CatalogChecks
2025-09-12 15:03:24openshift/operator-framework-operator-controller@7d65f52Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: Rename Tests suite and small cleanups
2025-09-12 15:03:27openshift/operator-framework-operator-controller@35e0d33AOS Automation Release TeamUPSTREAM: <carry>: Updating ose-olm-operator-controller-container image to be consistent with ART for 4.20 Reconciling with https://github.com/openshift/ocp-build-data/tree/dfb5c7d531490cfdc61a3b88bc533702b9624997/images/ose-olm-operator-controller.yml
2025-09-12 15:03:30openshift/operator-framework-operator-controller@34a3071AOS Automation Release TeamUPSTREAM: <carry>: Updating ose-olm-catalogd-container image to be consistent with ART for 4.20 Reconciling with https://github.com/openshift/ocp-build-data/tree/dfb5c7d531490cfdc61a3b88bc533702b9624997/images/ose-olm-catalogd.yml
2025-09-12 15:03:32openshift/operator-framework-operator-controller@31ddddfTodd ShortUPSTREAM: <carry>: Update e2e registry to use 1.24/4.20
2025-09-12 15:03:35openshift/operator-framework-operator-controller@ce47fb1Camila MacedoUPSTREAM: <carry>: [Catalog Default Tests]: Upgrade go version to 1.24.3, dependencies and fix new lint issue
2025-09-12 15:03:38openshift/operator-framework-operator-controller@6a818d3Camila MacedoUPSTREAM: <carry>: Add structure to allow move the orgin tests using OTE
2025-09-12 15:03:43openshift/operator-framework-operator-controller@a48889eTodd ShortUPSTREAM: <carry>: Add support for experimental manifests
2025-09-12 15:03:48openshift/operator-framework-operator-controller@cc443deCamila MacedoUPSTREAM: <carry>: [OTE] - chore: follow up #383 – remove unreachable target call
2025-09-12 15:03:53openshift/operator-framework-operator-controller@4dc4241Todd ShortUPSTREAM: <carry>: Remove build of test image registry
2025-09-12 15:03:58openshift/operator-framework-operator-controller@388d137Todd ShortUPSTREAM: <carry>: Add test-experimental-e2e target to openshift Makefile
2025-09-12 15:04:03openshift/operator-framework-operator-controller@b0d5486Camila MacedoUPSTREAM: <carry>: [OTE]: Add binary in the operator controller image to allow proper integration with OCP tests
2025-09-12 15:04:08openshift/operator-framework-operator-controller@93fb83aTodd ShortUPSTREAM: <carry>: Fix experimental manifest copying
2025-09-12 15:04:13openshift/operator-framework-operator-controller@524852bTodd ShortUPSTREAM: <carry>: Update manifest generation for upstream rbac/webhooks
2025-09-12 15:04:19openshift/operator-framework-operator-controller@9790dcdCamila MacedoUPSTREAM: <carry>: [OTE] - Add tracking mechanism
2025-09-12 15:04:23openshift/operator-framework-operator-controller@97cbdfaCamila MacedoUPSTREAM: <carry>: Update OTE dep to get fix
2025-09-12 15:04:28openshift/operator-framework-operator-controller@a64c59cCamila MacedoUPSTREAM: <carry>: [OTE] Add Readme
2025-09-12 15:04:33openshift/operator-framework-operator-controller@0e160bdRashmi GottipatiUPSTREAM: <carry>: set GIT_COMMIT env from SOURCE_GIT_COMMIT in Dockerfiles for operator-controller and catalogd
2025-09-12 15:04:38openshift/operator-framework-operator-controller@41d2652Ankita ThomasUPSTREAM: <carry>: add openshift specific build target to pass commit info downstream
2025-09-12 15:04:43openshift/operator-framework-operator-controller@72117dbBrett TofelUPSTREAM: <carry>: add source commit into binaries when linking
2025-09-12 15:04:48openshift/operator-framework-operator-controller@37c8ca7Camila MacedoUPSTREAM: <carry>: OTE add first test from openshift/origin olmv1.go
2025-09-12 15:04:53openshift/operator-framework-operator-controller@21071c0Camila MacedoUPSTREAM: <carry>: Migrate tasks from openshift/origin olm v1.go file which are remaining
2025-09-12 15:04:58openshift/operator-framework-operator-controller@1bb17d0Camila MacedoUPSTREAM: <carry>: OTE - How to test locally with OCP instances
2025-09-12 15:05:03openshift/operator-framework-operator-controller@d2620acCamila MacedoUPSTREAM: <carry>: [OTE] Refac: refac helper and olmv1 test to create namespace instead to use pre-existent
2025-09-12 15:05:09openshift/operator-framework-operator-controller@37941bbCamila MacedoUPSTREAM: <carry>: [OTE] add webhook tests
2025-09-12 15:05:14openshift/operator-framework-operator-controller@8054641Todd ShortUPSTREAM: <carry>: OTE: rewrite the upgrade incompatible operator test
2025-09-12 15:05:19openshift/operator-framework-operator-controller@dad6b4cTodd ShortUPSTREAM: <carry>: Handle service-ca cert availability/rotation
2025-09-12 15:05:24openshift/operator-framework-operator-controller@5b58a7dLuke MeyerUPSTREAM: <carry>: [OTE] add webhook tests
2025-09-12 15:05:29openshift/operator-framework-operator-controller@43e46bdCamila MacedoUPSTREAM: <carry>: Upgrade OCP Catalog images from 4.19 to 4.20
2025-09-12 15:05:34openshift/operator-framework-operator-controller@2f9167fTodd ShortUPSTREAM: <carry>: Remove bindata generation from build
2025-09-12 15:05:38openshift/operator-framework-operator-controller@ae1a803Camila MacedoUPSTREAM: <carry>: [OTE] Add webhook tests
2025-09-12 15:05:43openshift/operator-framework-operator-controller@1e5692fCamila MacedoUPSTREAM: <carry>: OTE add logs and dumps for olmv1 test and fix helper for clusterextensions
2025-09-12 15:05:49openshift/operator-framework-operator-controller@6d00078Camila MacedoUPSTREAM: <carry>: [OTE] Migrate preflight checks from openshift/origin
2025-09-12 15:05:54openshift/operator-framework-operator-controller@212508fCamila MacedoUPSTREAM: <carry>: [OTE] Add webhook to validate openshift-service-ca certificate rotation
2025-09-12 15:05:59openshift/operator-framework-operator-controller@b853c96Camila MacedoUPSTREAM: <carry>: Adds ResourceVersion checks to the tls secret deletion test, mirroring the logic used in the certificate rotation test. This makes the test more robust by ensuring a new secret is created, not just that an existing one is still present.
2025-09-12 15:06:04openshift/operator-framework-operator-controller@7219879Camila MacedoUPSTREAM: <carry>: [OTE] - Readme:Add info to help use payload-aggregate with new tests
2025-09-12 15:06:09openshift/operator-framework-operator-controller@153b414grokspawnUPSTREAM: <carry>: remove obsolete owners
2025-09-12 15:06:14openshift/operator-framework-operator-controller@1fc53c2Camila MacedoUPSTREAM: <carry>: [OTE] add catalog tests from openshift/origin
2025-09-12 15:06:19openshift/operator-framework-operator-controller@493c761Camila MacedoUPSTREAM: <carry>: Migrate single/own namespace tests
2025-09-12 15:06:24openshift/operator-framework-operator-controller@b34035cForrest BabcockUPSTREAM: <carry>: Adds ResourceVersion checks to the tls secret deletion test, mirroring the logic used in the certificate rotation test. This makes the test more robust by ensuring a new secret is created, not just that an existing one is still present.
2025-09-12 15:06:29openshift/operator-framework-operator-controller@0405408Camila MacedoUPSTREAM: <carry>: Ensure unique name for bad-catalog tests
2025-09-12 15:06:34openshift/operator-framework-operator-controller@5e0a53dTodd ShortUPSTREAM: <carry>: Revert "Handle service-ca cert availability/rotation"
2025-09-12 15:06:39openshift/operator-framework-operator-controller@0c38855Jian ZhangUPSTREAM: <carry>: grant QE approver permission for OTE
2025-09-12 15:06:45openshift/operator-framework-operator-controller@6909edfPer Goncalves da SilvaUPSTREAM: <carry>: Update webhook ote tests to use latest webhook-operator
2025-09-12 15:07:42openshift/operator-framework-operator-controller@762bf39Anik BhattacharjeeUPSTREAM: <carry>: update operator-controller to v1.5.1
2025-09-12 15:07:49openshift/operator-framework-operator-controller@7c5c543Anik BhattacharjeeUPSTREAM: <carry>: configure watchnamespace using spec.config for OTE tests

This pull request is expected to merge without any human intervention. If tests are failing here, changes must land upstream to fix any issues so that future downstreaming efforts succeed.

/cc @openshift/openshift-team-operator-framework

dependabotBotand others added 30 commits September 12, 2025 20:59
Bumps [github.com/operator-framework/operator-registry](https://github.com/operator-framework/operator-registry) from 1.57.0 to 1.58.0.
- [Release notes](https://github.com/operator-framework/operator-registry/releases)
- [Commits](operator-framework/operator-registry@v1.57.0...v1.58.0)
---
updated-dependencies:
- dependency-name: github.com/operator-framework/operator-registry
dependency-version: 1.58.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
…(#2201)
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
Signed-off-by: dtfranz <dfranz@redhat.com>
UPSTREAM: <carry>: Update generate-manifests to handle new directory
The `default` directory was renamed `base`.
Signed-off-by: Todd Short <todd.short@me.com>
The `base` directory was moved to `base\operator-controller`.
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: Drop commitchecker
Signed-off-by: Alexander Greene <greene.al1991@gmail.com>
UPSTREAM: <carry>: Updating ose-olm-operator-controller-container image to be consistent with ART
Reconciling with https://github.com/openshift/ocp-build-data/tree/4022cd290f00a44d667dda03f2d78d84a488c7ed/images/ose-olm-operator-controller.yml
UPSTREAM: <carry>: update owners
* Remove alumni from owners
* Add m1kola to approvers
Signed-off-by: Mikalai Radchuk <mradchuk@redhat.com>
UPSTREAM: <carry>: Add pointer to tooling README
UPSTREAM: <carry>: Disable Validating Admission Policy APIs downstream
Signed-off-by: Mikalai Radchuk <mradchuk@redhat.com>
UPSTREAM: <carry>: Updating ose-olm-operator-controller-container image to be consistent with ART for 4.16
Reconciling with https://github.com/openshift/ocp-build-data/tree/6250d54c4686a708ca5985afb73080e8ca9a1f7f/images/ose-olm-operator-controller.yml
UPSTREAM: <carry>: Enable Validating Admission Policy APIs downstream
* This reverts commit 3f079c4.
* Includes Validating Admission Policy manifests
Signed-off-by: Mikalai Radchuk <mradchuk@redhat.com>
UPSTREAM: <carry>: manifests: set required-scc for openshift workloads
UPSTREAM: <carry>: Updating ose-olm-operator-controller-container image to be consistent with ART for 4.17
Reconciling with https://github.com/openshift/ocp-build-data/tree/4c1326094222f9209876f06833179a1b9178faf7/images/ose-olm-operator-controller.yml
UPSTREAM: <carry>: add everettraven to approvers+reviewers
Signed-off-by: everettraven <everettraven@gmail.com>
UPSTREAM: <carry>: add openshift kustomize overlay
to enable TLS communication with catalogd. Configure the CA certs
using the configmap injection method via service-ca-operator
Signed-off-by: everettraven <everettraven@gmail.com>
UPSTREAM: <carry>: Add tmshort to approvers
Also `s/runtime/framework/g` in the DOWNSTREAM_OWNERS
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: Updating ose-olm-operator-controller-container image to be consistent with ART for 4.18
Reconciling with https://github.com/openshift/ocp-build-data/tree/dd68246f3237db5db458127566fc7b05b55e1660/images/ose-olm-operator-controller.yml
UPSTREAM: <carry>: Properly copy and call kustomize
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: manifests: add hostPath mount for /etc/containers
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Add test-e2e target for downstream Makefile to be run by openshift/release.
Signed-off-by: dtfranz <dfranz@redhat.com>
UPSTREAM: <carry>: Add downstream verify makefile target
Signed-off-by: dtfranz <dfranz@redhat.com>
UPSTREAM: <carry>: openshift: template log verbosity to be managed by cluster-olm-operator
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Add global-pull-secret flag
Pass global-pull-secret to the manager container.
Signed-off-by: Mikalai Radchuk <mradchuk@redhat.com>
UPSTREAM: <carry>: Update openshift CAs to operator-controller
The /run/secrets/kubernetes.io/serviceaccount/ directory is projected
into the pod and contains the following CA certificates:
* configmap/kube-root-ca.crt as ca.crt
* configmap/openshift-service-ca.crt as service-ca.crt
Update the --ca-certs-dir argument to reference the directory.
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: Add HowTo for origin tests
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: Add e2e registry Dockerfile
Signed-off-by: dtfranz <dfranz@redhat.com>
UPSTREAM: <carry>: add nodeSelector and tolerations to operator-controller deployment via kustomize patch
Signed-off-by: everettraven <everettraven@gmail.com>
UPSTREAM: <carry>: namespace: use privileged PSA for audit and warn levels
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Enable downstream e2e
Signed-off-by: dtfranz <dfranz@redhat.com>
UPSTREAM: <carry>: Remove m1kola from owners
Signed-off-by: Mikalai Radchuk <mradchuk@redhat.com>
UPSTREAM: <carry>: Updating ose-olm-operator-controller-container image to be consistent with ART for 4.19
Reconciling with https://github.com/openshift/ocp-build-data/tree/a39508c86497b4e5e463d7b2c78e51e577be9e7d/images/ose-olm-operator-controller.yml
UPSTREAM: <carry>: generate and mount service-ca server cert
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Add support for proxy trustedCAs
Just map the list of trusted ca certs into the deployment
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: Fix error to build the image
Copy correct (new) executable name for operator-controller
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: Fix make verify for mac os envs
Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Move operator-controller openshift files to its own dir
UPSTREAM: <carry>: Upgrade OCP images from 4.18 to 4.19
UPSTREAM: <carry>: Add Openshift's catalogd manifests
- Move to openshift/catalogd the specific manifest under: https://github.com/openshift/operator-framework-catalogd/tree/main/openshift
- Add call to generate catalogd manifest to 'make manifest'. Make verify test is now done for catalogd and operator-controller Openshift's manifests
UPSTREAM: <carry>: resolve issue with pre-mature mounting of trusted CA configmap
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Add /etc/docker to the operator-controller and catalogd deployments
This allows for use of the any image.config.openshift.io trusted CAs
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: fixup catalogd.Dockerfile paths
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Resolve issue with pre-mature mounting of service CA configmap
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: use projected volume for CAs to avoid subPath limitations
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Revert "UPSTREAM: <carry>: use projected volume for CAs to avoid subPath limitations"
This reverts commit 548caa4.
UPSTREAM: <carry>: use projected volume for CAs to avoid subPath limitations
Signed-off-by: Joe Lanford <joe.lanford@gmail.com>
UPSTREAM: <carry>: Remove vet from openshift verify
The `vet` target was removed upstream.
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: Skip another upstream test
Signed-off-by: Todd Short <todd.short@me.com>
UPSTREAM: <carry>: Cleanup openshift/Makefile by removing no longer required comments regards catalogd e2e tests
UPSTREAM: <carry>: Enable OCP metrics collection by default
Enables OCP to collect Prometheus metrics for both catalogd and
operator-controller by default. This is accomplished
via ServiceMonitor CRs which are now created for both projects.
The root catalogd directory has been removed
Signed-off-by: Todd Short <todd.short@me.com>
Signed-off-by: Todd Short <todd.short@me.com>
Signed-off-by: Catherine Chan-Tse <cchantse@redhat.com>
(cherry picked from commit 9b4a113)
Signed-off-by: Todd Short <todd.short@me.com>
Signed-off-by: Jian Zhang <jiazha@redhat.com>
Signed-off-by: Todd Short <todd.short@me.com>
techpreview is no longer a required option.
Signed-off-by: Todd Short <todd.short@me.com>
…s with right permissions to avoid issues scenarios
Signed-off-by: Jian Zhang <jiazha@redhat.com>
Signed-off-by: Todd Short <todd.short@me.com>
…k for executable files in filesystem
Checks if given paths exist and point to executable files or valid symlinks.
camilamacedo86and others added 16 commits September 15, 2025 01:54
… certificate rotation
This change is a refactor of code from openshift/origin#30059.
Assisted-by: Gemini
…tion test, mirroring the logic used in the certificate rotation test. This makes the test more robust by ensuring a new secret is created, not just that an existing one is still present.
Signed-off-by: grokspawn <jordan@nimblewidget.com>
This commit migrates the olmv1_catalog set of tests from openshift/origin
to OTE as part the broad effort to migrate all tests.
Assisted-by: Gemini
This commit migrates the OLMv1 single and own namespace watch mode tests from openshift/origin/test/extended/olm/olmv1-singleownnamespace.go to this repository. This is part of the effort to move component-specific tests into their respective downstream locations.
Assisted-by: Gemini
…tion test, mirroring the logic used in the certificate rotation test. This makes the test more robust by ensuring a new secret is created, not just that an existing one is still present.
This reverts commit 0bb1953.
UPSTREAM: <carry>: [OTE] Add webhook to validate openshift-service-ca certificate rotation
This reverts commit e9e3220.
…rator
Signed-off-by: Per Goncalves da Silva <pegoncal@redhat.com>
@openshift-botopenshift-bot added tide/merge-method-merge Denotes a PR that should use a standard merge by tide when it merges. kind/sync approved Indicates a PR has been approved by an approver from all required OWNERS files. labels Sep 15, 2025
@openshift-ci-robotopenshift-ci-robot added the jira/valid-reference Indicates that this PR references a valid Jira ticket of any type. label Sep 15, 2025
@openshift-ci-robot

Copy link
Copy Markdown

@openshift-bot: This pull request explicitly references no jira issue.

Details

In response to this:

The downstream repository has been updated with the following following upstream commits:

DateCommitAuthorMessage
2025-09-12 21:29:14operator-framework/operator-controller@4867f92Joe Lanfordpromote rukpak hash util to shared package, use in boxcutter applier (#2201)
2025-09-12 21:10:00operator-framework/operator-controller@c73b6e0Nico SchiederAdd more probing to CER (#2210)
2025-09-12 20:59:02operator-framework/operator-controller@8762ed5dependabot[bot]🌱 Bump github.com/operator-framework/operator-registry (#2217)

The vendor/ directory has been updated and the following commits were carried:

DateCommitAuthorMessage
2025-09-12 15:02:17openshift/operator-framework-operator-controller@d8e9727dtfranzUPSTREAM: <carry>: Add OpenShift specific files
2025-09-12 15:02:20openshift/operator-framework-operator-controller@dbd436aTodd ShortUPSTREAM: <carry>: Fix catalogd.Dockerfile to use new paths
2025-09-12 15:02:22openshift/operator-framework-operator-controller@292c014Todd ShortUPSTREAM: <carry>: Update DOWNSTREAM_OWNERS_ALIASES
2025-09-12 15:02:25openshift/operator-framework-operator-controller@6fc5adcCatherine Chan-TseUPSTREAM: <carry>: Add openshift node selector annotation
2025-09-12 15:02:28openshift/operator-framework-operator-controller@fc81f7fTodd ShortUPSTREAM: <carry>: Add caalogd-cas-dir option to op-con
2025-09-12 15:02:30openshift/operator-framework-operator-controller@bab69e9Jian ZhangUPSTREAM: <carry>: set the SElinux type
2025-09-12 15:02:33openshift/operator-framework-operator-controller@c0e1c84Camila MacedoUPSTREAM: <carry>: Add initial stack to run tests to validate the catalogs
2025-09-12 15:02:36openshift/operator-framework-operator-controller@7801d0cCamila MacedoUPSTREAM: <carry>: Add vendor files for the catalog-sync tests
2025-09-12 15:02:39openshift/operator-framework-operator-controller@fab15ceTodd ShortUPSTREAM: <carry>: Bump catalog versions to 4.19
2025-09-12 15:02:42openshift/operator-framework-operator-controller@0a7a5b6Todd ShortUPSTREAM: <carry>: revert "Bump catalog versions to 4.19"
2025-09-12 15:02:44openshift/operator-framework-operator-controller@a037cbbTodd ShortUPSTREAM: <carry>: Update HOWTO-origin-tests
2025-09-12 15:02:47openshift/operator-framework-operator-controller@8de06a4Camila MacedoUPSTREAM: <carry>: [DefaultCatalogTests]: Allow to pass auth path for docker credentials"
2025-09-12 15:02:50openshift/operator-framework-operator-controller@8b1903dCamila MacedoUPSTREAM: <carry>: fix: set NoLchown=true to allow image unpack on OCPci
2025-09-12 15:02:53openshift/operator-framework-operator-controller@a6cd4d7Camila MacedoUPSTREAM: <carry>: [DefaultCatalogTests]: Moving parse of ENVVAR to the caller (follow-up 345)
2025-09-12 15:02:55openshift/operator-framework-operator-controller@5fadad0Camila MacedoUPSTREAM: <carry>: [Default Catalog]: Create tmp dir to extract layers with right permissions to avoid issues scenarios
2025-09-12 15:02:58openshift/operator-framework-operator-controller@2859467Camila MacedoUPSTREAM: <carry>: Default Catalog Remove hack directory which is not used
2025-09-12 15:03:00openshift/operator-framework-operator-controller@20d2870Camila MacedoUPSTREAM: <carry>: Change code implementation to extract layers in OCP env
2025-09-12 15:03:03openshift/operator-framework-operator-controller@d67a0e7Camila MacedoUPSTREAM: <carry>: Add vendor files for change in the extract code implementation
2025-09-12 15:03:06openshift/operator-framework-operator-controller@737bb74Camila MacedoUPSTREAM: <carry>: [Default Catalog Tests]: Final cleanups and enhancements of initial implementation
2025-09-12 15:03:08openshift/operator-framework-operator-controller@fdfab28Jian ZhangUPSTREAM: <carry>: SELinux type for operator-controller
2025-09-12 15:03:11openshift/operator-framework-operator-controller@6a5c636Todd ShortUPSTREAM: <carry>: Bump catalog versions to 4.19
2025-09-12 15:03:13openshift/operator-framework-operator-controller@7982650Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test] (feat) add check for executable files in filesystem
2025-09-12 15:03:16openshift/operator-framework-operator-controller@6f706c3Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: fix junit output format to allow generate xml
2025-09-12 15:03:19openshift/operator-framework-operator-controller@0c98d17Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test] (feat) add check to validate multi-arch support
2025-09-12 15:03:22openshift/operator-framework-operator-controller@09fd60aCamila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: Enable CatalogChecks
2025-09-12 15:03:24openshift/operator-framework-operator-controller@7d65f52Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: Rename Tests suite and small cleanups
2025-09-12 15:03:27openshift/operator-framework-operator-controller@35e0d33AOS Automation Release TeamUPSTREAM: <carry>: Updating ose-olm-operator-controller-container image to be consistent with ART for 4.20 Reconciling with https://github.com/openshift/ocp-build-data/tree/dfb5c7d531490cfdc61a3b88bc533702b9624997/images/ose-olm-operator-controller.yml
2025-09-12 15:03:30openshift/operator-framework-operator-controller@34a3071AOS Automation Release TeamUPSTREAM: <carry>: Updating ose-olm-catalogd-container image to be consistent with ART for 4.20 Reconciling with https://github.com/openshift/ocp-build-data/tree/dfb5c7d531490cfdc61a3b88bc533702b9624997/images/ose-olm-catalogd.yml
2025-09-12 15:03:32openshift/operator-framework-operator-controller@31ddddfTodd ShortUPSTREAM: <carry>: Update e2e registry to use 1.24/4.20
2025-09-12 15:03:35openshift/operator-framework-operator-controller@ce47fb1Camila MacedoUPSTREAM: <carry>: [Catalog Default Tests]: Upgrade go version to 1.24.3, dependencies and fix new lint issue
2025-09-12 15:03:38openshift/operator-framework-operator-controller@6a818d3Camila MacedoUPSTREAM: <carry>: Add structure to allow move the orgin tests using OTE
2025-09-12 15:03:43openshift/operator-framework-operator-controller@a48889eTodd ShortUPSTREAM: <carry>: Add support for experimental manifests
2025-09-12 15:03:48openshift/operator-framework-operator-controller@cc443deCamila MacedoUPSTREAM: <carry>: [OTE] - chore: follow up #383 – remove unreachable target call
2025-09-12 15:03:53openshift/operator-framework-operator-controller@4dc4241Todd ShortUPSTREAM: <carry>: Remove build of test image registry
2025-09-12 15:03:58openshift/operator-framework-operator-controller@388d137Todd ShortUPSTREAM: <carry>: Add test-experimental-e2e target to openshift Makefile
2025-09-12 15:04:03openshift/operator-framework-operator-controller@b0d5486Camila MacedoUPSTREAM: <carry>: [OTE]: Add binary in the operator controller image to allow proper integration with OCP tests
2025-09-12 15:04:08openshift/operator-framework-operator-controller@93fb83aTodd ShortUPSTREAM: <carry>: Fix experimental manifest copying
2025-09-12 15:04:13openshift/operator-framework-operator-controller@524852bTodd ShortUPSTREAM: <carry>: Update manifest generation for upstream rbac/webhooks
2025-09-12 15:04:19openshift/operator-framework-operator-controller@9790dcdCamila MacedoUPSTREAM: <carry>: [OTE] - Add tracking mechanism
2025-09-12 15:04:23openshift/operator-framework-operator-controller@97cbdfaCamila MacedoUPSTREAM: <carry>: Update OTE dep to get fix
2025-09-12 15:04:28openshift/operator-framework-operator-controller@a64c59cCamila MacedoUPSTREAM: <carry>: [OTE] Add Readme
2025-09-12 15:04:33openshift/operator-framework-operator-controller@0e160bdRashmi GottipatiUPSTREAM: <carry>: set GIT_COMMIT env from SOURCE_GIT_COMMIT in Dockerfiles for operator-controller and catalogd
2025-09-12 15:04:38openshift/operator-framework-operator-controller@41d2652Ankita ThomasUPSTREAM: <carry>: add openshift specific build target to pass commit info downstream
2025-09-12 15:04:43openshift/operator-framework-operator-controller@72117dbBrett TofelUPSTREAM: <carry>: add source commit into binaries when linking
2025-09-12 15:04:48openshift/operator-framework-operator-controller@37c8ca7Camila MacedoUPSTREAM: <carry>: OTE add first test from openshift/origin olmv1.go
2025-09-12 15:04:53openshift/operator-framework-operator-controller@21071c0Camila MacedoUPSTREAM: <carry>: Migrate tasks from openshift/origin olm v1.go file which are remaining
2025-09-12 15:04:58openshift/operator-framework-operator-controller@1bb17d0Camila MacedoUPSTREAM: <carry>: OTE - How to test locally with OCP instances
2025-09-12 15:05:03openshift/operator-framework-operator-controller@d2620acCamila MacedoUPSTREAM: <carry>: [OTE] Refac: refac helper and olmv1 test to create namespace instead to use pre-existent
2025-09-12 15:05:09openshift/operator-framework-operator-controller@37941bbCamila MacedoUPSTREAM: <carry>: [OTE] add webhook tests
2025-09-12 15:05:14openshift/operator-framework-operator-controller@8054641Todd ShortUPSTREAM: <carry>: OTE: rewrite the upgrade incompatible operator test
2025-09-12 15:05:19openshift/operator-framework-operator-controller@dad6b4cTodd ShortUPSTREAM: <carry>: Handle service-ca cert availability/rotation
2025-09-12 15:05:24openshift/operator-framework-operator-controller@5b58a7dLuke MeyerUPSTREAM: <carry>: [OTE] add webhook tests
2025-09-12 15:05:29openshift/operator-framework-operator-controller@43e46bdCamila MacedoUPSTREAM: <carry>: Upgrade OCP Catalog images from 4.19 to 4.20
2025-09-12 15:05:34openshift/operator-framework-operator-controller@2f9167fTodd ShortUPSTREAM: <carry>: Remove bindata generation from build
2025-09-12 15:05:38openshift/operator-framework-operator-controller@ae1a803Camila MacedoUPSTREAM: <carry>: [OTE] Add webhook tests
2025-09-12 15:05:43openshift/operator-framework-operator-controller@1e5692fCamila MacedoUPSTREAM: <carry>: OTE add logs and dumps for olmv1 test and fix helper for clusterextensions
2025-09-12 15:05:49openshift/operator-framework-operator-controller@6d00078Camila MacedoUPSTREAM: <carry>: [OTE] Migrate preflight checks from openshift/origin
2025-09-12 15:05:54openshift/operator-framework-operator-controller@212508fCamila MacedoUPSTREAM: <carry>: [OTE] Add webhook to validate openshift-service-ca certificate rotation
2025-09-12 15:05:59openshift/operator-framework-operator-controller@b853c96Camila MacedoUPSTREAM: <carry>: Adds ResourceVersion checks to the tls secret deletion test, mirroring the logic used in the certificate rotation test. This makes the test more robust by ensuring a new secret is created, not just that an existing one is still present.
2025-09-12 15:06:04openshift/operator-framework-operator-controller@7219879Camila MacedoUPSTREAM: <carry>: [OTE] - Readme:Add info to help use payload-aggregate with new tests
2025-09-12 15:06:09openshift/operator-framework-operator-controller@153b414grokspawnUPSTREAM: <carry>: remove obsolete owners
2025-09-12 15:06:14openshift/operator-framework-operator-controller@1fc53c2Camila MacedoUPSTREAM: <carry>: [OTE] add catalog tests from openshift/origin
2025-09-12 15:06:19openshift/operator-framework-operator-controller@493c761Camila MacedoUPSTREAM: <carry>: Migrate single/own namespace tests
2025-09-12 15:06:24openshift/operator-framework-operator-controller@b34035cForrest BabcockUPSTREAM: <carry>: Adds ResourceVersion checks to the tls secret deletion test, mirroring the logic used in the certificate rotation test. This makes the test more robust by ensuring a new secret is created, not just that an existing one is still present.
2025-09-12 15:06:29openshift/operator-framework-operator-controller@0405408Camila MacedoUPSTREAM: <carry>: Ensure unique name for bad-catalog tests
2025-09-12 15:06:34openshift/operator-framework-operator-controller@5e0a53dTodd ShortUPSTREAM: <carry>: Revert "Handle service-ca cert availability/rotation"
2025-09-12 15:06:39openshift/operator-framework-operator-controller@0c38855Jian ZhangUPSTREAM: <carry>: grant QE approver permission for OTE
2025-09-12 15:06:45openshift/operator-framework-operator-controller@6909edfPer Goncalves da SilvaUPSTREAM: <carry>: Update webhook ote tests to use latest webhook-operator
2025-09-12 15:07:42openshift/operator-framework-operator-controller@762bf39Anik BhattacharjeeUPSTREAM: <carry>: update operator-controller to v1.5.1
2025-09-12 15:07:49openshift/operator-framework-operator-controller@7c5c543Anik BhattacharjeeUPSTREAM: <carry>: configure watchnamespace using spec.config for OTE tests

This pull request is expected to merge without any human intervention. If tests are failing here, changes must land upstream to fix any issues so that future downstreaming efforts succeed.

/cc @openshift/openshift-team-operator-framework

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the openshift-eng/jira-lifecycle-plugin repository.

@openshift-botopenshift-bot added the lgtm Indicates that a PR is ready to be merged. label Sep 15, 2025
@openshift-ci

Copy link
Copy Markdown
Contributor

@openshift-bot: GitHub didn't allow me to request PR reviews from the following users: openshift/openshift-team-operator-framework.

Note that only openshift members and repo collaborators can review this PR, and authors cannot review their own PRs.

Details

In response to this:

The downstream repository has been updated with the following following upstream commits:

DateCommitAuthorMessage
2025-09-12 21:29:14operator-framework/operator-controller@4867f92Joe Lanfordpromote rukpak hash util to shared package, use in boxcutter applier (#2201)
2025-09-12 21:10:00operator-framework/operator-controller@c73b6e0Nico SchiederAdd more probing to CER (#2210)
2025-09-12 20:59:02operator-framework/operator-controller@8762ed5dependabot[bot]🌱 Bump github.com/operator-framework/operator-registry (#2217)

The vendor/ directory has been updated and the following commits were carried:

DateCommitAuthorMessage
2025-09-12 15:02:17openshift/operator-framework-operator-controller@d8e9727dtfranzUPSTREAM: <carry>: Add OpenShift specific files
2025-09-12 15:02:20openshift/operator-framework-operator-controller@dbd436aTodd ShortUPSTREAM: <carry>: Fix catalogd.Dockerfile to use new paths
2025-09-12 15:02:22openshift/operator-framework-operator-controller@292c014Todd ShortUPSTREAM: <carry>: Update DOWNSTREAM_OWNERS_ALIASES
2025-09-12 15:02:25openshift/operator-framework-operator-controller@6fc5adcCatherine Chan-TseUPSTREAM: <carry>: Add openshift node selector annotation
2025-09-12 15:02:28openshift/operator-framework-operator-controller@fc81f7fTodd ShortUPSTREAM: <carry>: Add caalogd-cas-dir option to op-con
2025-09-12 15:02:30openshift/operator-framework-operator-controller@bab69e9Jian ZhangUPSTREAM: <carry>: set the SElinux type
2025-09-12 15:02:33openshift/operator-framework-operator-controller@c0e1c84Camila MacedoUPSTREAM: <carry>: Add initial stack to run tests to validate the catalogs
2025-09-12 15:02:36openshift/operator-framework-operator-controller@7801d0cCamila MacedoUPSTREAM: <carry>: Add vendor files for the catalog-sync tests
2025-09-12 15:02:39openshift/operator-framework-operator-controller@fab15ceTodd ShortUPSTREAM: <carry>: Bump catalog versions to 4.19
2025-09-12 15:02:42openshift/operator-framework-operator-controller@0a7a5b6Todd ShortUPSTREAM: <carry>: revert "Bump catalog versions to 4.19"
2025-09-12 15:02:44openshift/operator-framework-operator-controller@a037cbbTodd ShortUPSTREAM: <carry>: Update HOWTO-origin-tests
2025-09-12 15:02:47openshift/operator-framework-operator-controller@8de06a4Camila MacedoUPSTREAM: <carry>: [DefaultCatalogTests]: Allow to pass auth path for docker credentials"
2025-09-12 15:02:50openshift/operator-framework-operator-controller@8b1903dCamila MacedoUPSTREAM: <carry>: fix: set NoLchown=true to allow image unpack on OCPci
2025-09-12 15:02:53openshift/operator-framework-operator-controller@a6cd4d7Camila MacedoUPSTREAM: <carry>: [DefaultCatalogTests]: Moving parse of ENVVAR to the caller (follow-up 345)
2025-09-12 15:02:55openshift/operator-framework-operator-controller@5fadad0Camila MacedoUPSTREAM: <carry>: [Default Catalog]: Create tmp dir to extract layers with right permissions to avoid issues scenarios
2025-09-12 15:02:58openshift/operator-framework-operator-controller@2859467Camila MacedoUPSTREAM: <carry>: Default Catalog Remove hack directory which is not used
2025-09-12 15:03:00openshift/operator-framework-operator-controller@20d2870Camila MacedoUPSTREAM: <carry>: Change code implementation to extract layers in OCP env
2025-09-12 15:03:03openshift/operator-framework-operator-controller@d67a0e7Camila MacedoUPSTREAM: <carry>: Add vendor files for change in the extract code implementation
2025-09-12 15:03:06openshift/operator-framework-operator-controller@737bb74Camila MacedoUPSTREAM: <carry>: [Default Catalog Tests]: Final cleanups and enhancements of initial implementation
2025-09-12 15:03:08openshift/operator-framework-operator-controller@fdfab28Jian ZhangUPSTREAM: <carry>: SELinux type for operator-controller
2025-09-12 15:03:11openshift/operator-framework-operator-controller@6a5c636Todd ShortUPSTREAM: <carry>: Bump catalog versions to 4.19
2025-09-12 15:03:13openshift/operator-framework-operator-controller@7982650Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test] (feat) add check for executable files in filesystem
2025-09-12 15:03:16openshift/operator-framework-operator-controller@6f706c3Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: fix junit output format to allow generate xml
2025-09-12 15:03:19openshift/operator-framework-operator-controller@0c98d17Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test] (feat) add check to validate multi-arch support
2025-09-12 15:03:22openshift/operator-framework-operator-controller@09fd60aCamila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: Enable CatalogChecks
2025-09-12 15:03:24openshift/operator-framework-operator-controller@7d65f52Camila MacedoUPSTREAM: <carry>: [Default Catalog Consistency Test]: Rename Tests suite and small cleanups
2025-09-12 15:03:27openshift/operator-framework-operator-controller@35e0d33AOS Automation Release TeamUPSTREAM: <carry>: Updating ose-olm-operator-controller-container image to be consistent with ART for 4.20 Reconciling with https://github.com/openshift/ocp-build-data/tree/dfb5c7d531490cfdc61a3b88bc533702b9624997/images/ose-olm-operator-controller.yml
2025-09-12 15:03:30openshift/operator-framework-operator-controller@34a3071AOS Automation Release TeamUPSTREAM: <carry>: Updating ose-olm-catalogd-container image to be consistent with ART for 4.20 Reconciling with https://github.com/openshift/ocp-build-data/tree/dfb5c7d531490cfdc61a3b88bc533702b9624997/images/ose-olm-catalogd.yml
2025-09-12 15:03:32openshift/operator-framework-operator-controller@31ddddfTodd ShortUPSTREAM: <carry>: Update e2e registry to use 1.24/4.20
2025-09-12 15:03:35openshift/operator-framework-operator-controller@ce47fb1Camila MacedoUPSTREAM: <carry>: [Catalog Default Tests]: Upgrade go version to 1.24.3, dependencies and fix new lint issue
2025-09-12 15:03:38openshift/operator-framework-operator-controller@6a818d3Camila MacedoUPSTREAM: <carry>: Add structure to allow move the orgin tests using OTE
2025-09-12 15:03:43openshift/operator-framework-operator-controller@a48889eTodd ShortUPSTREAM: <carry>: Add support for experimental manifests
2025-09-12 15:03:48openshift/operator-framework-operator-controller@cc443deCamila MacedoUPSTREAM: <carry>: [OTE] - chore: follow up #383 – remove unreachable target call
2025-09-12 15:03:53openshift/operator-framework-operator-controller@4dc4241Todd ShortUPSTREAM: <carry>: Remove build of test image registry
2025-09-12 15:03:58openshift/operator-framework-operator-controller@388d137Todd ShortUPSTREAM: <carry>: Add test-experimental-e2e target to openshift Makefile
2025-09-12 15:04:03openshift/operator-framework-operator-controller@b0d5486Camila MacedoUPSTREAM: <carry>: [OTE]: Add binary in the operator controller image to allow proper integration with OCP tests
2025-09-12 15:04:08openshift/operator-framework-operator-controller@93fb83aTodd ShortUPSTREAM: <carry>: Fix experimental manifest copying
2025-09-12 15:04:13openshift/operator-framework-operator-controller@524852bTodd ShortUPSTREAM: <carry>: Update manifest generation for upstream rbac/webhooks
2025-09-12 15:04:19openshift/operator-framework-operator-controller@9790dcdCamila MacedoUPSTREAM: <carry>: [OTE] - Add tracking mechanism
2025-09-12 15:04:23openshift/operator-framework-operator-controller@97cbdfaCamila MacedoUPSTREAM: <carry>: Update OTE dep to get fix
2025-09-12 15:04:28openshift/operator-framework-operator-controller@a64c59cCamila MacedoUPSTREAM: <carry>: [OTE] Add Readme
2025-09-12 15:04:33openshift/operator-framework-operator-controller@0e160bdRashmi GottipatiUPSTREAM: <carry>: set GIT_COMMIT env from SOURCE_GIT_COMMIT in Dockerfiles for operator-controller and catalogd
2025-09-12 15:04:38openshift/operator-framework-operator-controller@41d2652Ankita ThomasUPSTREAM: <carry>: add openshift specific build target to pass commit info downstream
2025-09-12 15:04:43openshift/operator-framework-operator-controller@72117dbBrett TofelUPSTREAM: <carry>: add source commit into binaries when linking
2025-09-12 15:04:48openshift/operator-framework-operator-controller@37c8ca7Camila MacedoUPSTREAM: <carry>: OTE add first test from openshift/origin olmv1.go
2025-09-12 15:04:53openshift/operator-framework-operator-controller@21071c0Camila MacedoUPSTREAM: <carry>: Migrate tasks from openshift/origin olm v1.go file which are remaining
2025-09-12 15:04:58openshift/operator-framework-operator-controller@1bb17d0Camila MacedoUPSTREAM: <carry>: OTE - How to test locally with OCP instances
2025-09-12 15:05:03openshift/operator-framework-operator-controller@d2620acCamila MacedoUPSTREAM: <carry>: [OTE] Refac: refac helper and olmv1 test to create namespace instead to use pre-existent
2025-09-12 15:05:09openshift/operator-framework-operator-controller@37941bbCamila MacedoUPSTREAM: <carry>: [OTE] add webhook tests
2025-09-12 15:05:14openshift/operator-framework-operator-controller@8054641Todd ShortUPSTREAM: <carry>: OTE: rewrite the upgrade incompatible operator test
2025-09-12 15:05:19openshift/operator-framework-operator-controller@dad6b4cTodd ShortUPSTREAM: <carry>: Handle service-ca cert availability/rotation
2025-09-12 15:05:24openshift/operator-framework-operator-controller@5b58a7dLuke MeyerUPSTREAM: <carry>: [OTE] add webhook tests
2025-09-12 15:05:29openshift/operator-framework-operator-controller@43e46bdCamila MacedoUPSTREAM: <carry>: Upgrade OCP Catalog images from 4.19 to 4.20
2025-09-12 15:05:34openshift/operator-framework-operator-controller@2f9167fTodd ShortUPSTREAM: <carry>: Remove bindata generation from build
2025-09-12 15:05:38openshift/operator-framework-operator-controller@ae1a803Camila MacedoUPSTREAM: <carry>: [OTE] Add webhook tests
2025-09-12 15:05:43openshift/operator-framework-operator-controller@1e5692fCamila MacedoUPSTREAM: <carry>: OTE add logs and dumps for olmv1 test and fix helper for clusterextensions
2025-09-12 15:05:49openshift/operator-framework-operator-controller@6d00078Camila MacedoUPSTREAM: <carry>: [OTE] Migrate preflight checks from openshift/origin
2025-09-12 15:05:54openshift/operator-framework-operator-controller@212508fCamila MacedoUPSTREAM: <carry>: [OTE] Add webhook to validate openshift-service-ca certificate rotation
2025-09-12 15:05:59openshift/operator-framework-operator-controller@b853c96Camila MacedoUPSTREAM: <carry>: Adds ResourceVersion checks to the tls secret deletion test, mirroring the logic used in the certificate rotation test. This makes the test more robust by ensuring a new secret is created, not just that an existing one is still present.
2025-09-12 15:06:04openshift/operator-framework-operator-controller@7219879Camila MacedoUPSTREAM: <carry>: [OTE] - Readme:Add info to help use payload-aggregate with new tests
2025-09-12 15:06:09openshift/operator-framework-operator-controller@153b414grokspawnUPSTREAM: <carry>: remove obsolete owners
2025-09-12 15:06:14openshift/operator-framework-operator-controller@1fc53c2Camila MacedoUPSTREAM: <carry>: [OTE] add catalog tests from openshift/origin
2025-09-12 15:06:19openshift/operator-framework-operator-controller@493c761Camila MacedoUPSTREAM: <carry>: Migrate single/own namespace tests
2025-09-12 15:06:24openshift/operator-framework-operator-controller@b34035cForrest BabcockUPSTREAM: <carry>: Adds ResourceVersion checks to the tls secret deletion test, mirroring the logic used in the certificate rotation test. This makes the test more robust by ensuring a new secret is created, not just that an existing one is still present.
2025-09-12 15:06:29openshift/operator-framework-operator-controller@0405408Camila MacedoUPSTREAM: <carry>: Ensure unique name for bad-catalog tests
2025-09-12 15:06:34openshift/operator-framework-operator-controller@5e0a53dTodd ShortUPSTREAM: <carry>: Revert "Handle service-ca cert availability/rotation"
2025-09-12 15:06:39openshift/operator-framework-operator-controller@0c38855Jian ZhangUPSTREAM: <carry>: grant QE approver permission for OTE
2025-09-12 15:06:45openshift/operator-framework-operator-controller@6909edfPer Goncalves da SilvaUPSTREAM: <carry>: Update webhook ote tests to use latest webhook-operator
2025-09-12 15:07:42openshift/operator-framework-operator-controller@762bf39Anik BhattacharjeeUPSTREAM: <carry>: update operator-controller to v1.5.1
2025-09-12 15:07:49openshift/operator-framework-operator-controller@7c5c543Anik BhattacharjeeUPSTREAM: <carry>: configure watchnamespace using spec.config for OTE tests

This pull request is expected to merge without any human intervention. If tests are failing here, changes must land upstream to fix any issues so that future downstreaming efforts succeed.

/cc @openshift/openshift-team-operator-framework

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository.

@openshift-ci

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

Approval requirements bypassed by manually added approval.

This pull-request has been approved by: openshift-bot

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

1 similar comment
@openshift-ci

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

Approval requirements bypassed by manually added approval.

This pull-request has been approved by: openshift-bot

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@openshift-ci

Copy link
Copy Markdown
Contributor

@openshift-bot: all tests passed!

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

@jianzhangbjz

Copy link
Copy Markdown
Contributor

/verified by pass

@openshift-ci-robotopenshift-ci-robot added the verified Signifies that the PR passed pre-merge verification criteria label Sep 15, 2025
@openshift-ci-robot

Copy link
Copy Markdown

@jianzhangbjz: This PR has been marked as verified by pass.

Details

In response to this:

/verified by pass

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the openshift-eng/jira-lifecycle-plugin repository.

@openshift-merge-bot
openshift-merge-botBot merged commit 988abd6 into openshift:mainSep 15, 2025
12 checks passed
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

approvedIndicates a PR has been approved by an approver from all required OWNERS files.jira/valid-referenceIndicates that this PR references a valid Jira ticket of any type.kind/synclgtmIndicates that a PR is ready to be merged.tide/merge-method-mergeDenotes a PR that should use a standard merge by tide when it merges.verifiedSignifies that the PR passed pre-merge verification criteria

Projects

None yet

Development

Successfully merging this pull request may close these issues.

16 participants

@openshift-bot@openshift-ci-robot@jianzhangbjz@thetechnick@joelanford@dtfranz@tmshort@oceanc80@camilamacedo86@rashmigottipati@ankitathomas@bentito@sosiouxme@grokspawn@neisw@anik120