From 6648c8c7fc8952c5d3784c5974b8337156e20ef9 Mon Sep 17 00:00:00 2001 From: Ubuntu Date: Mon, 19 Oct 2020 06:18:08 +0000 Subject: [PATCH] release: Kata Containers 2.0.0 - backport 2.0-dev commits to stable-2.0.0 dbfe85e snap: install libseccomp-dev 0c3b6a9 package: drop qemu-virtiofs shim f751c98 packaging: install virtiofsd for normal qemu build as well 08361c5 runtime: enable virtiofs by default da9bfb2 runtime: Pass `--thread-pool-size=1` to virtiofsd 7347d43 packaging: Apply virtiofs performance related fixes to 5.x c7bb1e2 tools: Improve agent-ctl README e6f7ddd tools: Make agent-ctl support more APIs 46cfed5 tools: Remove commented out code in agent-ctl 81fb2c9 tools: Log request in agent-ctl tool if debug enabled 0c43215 tools: Rename agent-ctl command to GetGuestDetails 6511ffe tools: Fix comment in agent-ctl ee59378 kernel: update to 5.4.71 ef11213 config: make virtio-fs part of standard kernel 1fb6730 agent: remove `unwrap()` for `e.as_errno()` 05e9fe0 agent: Use `?` instead of `match` when the error returns directly d658129 kata-monitor: use regexp to check if runtime is kata containers ae2d89e agent: use anyhow `context` to attach context to `Error` instead of `match` 095d4ad agent: remove useless match bd816df agent: Use `ok_or_else` instead of match for Option -> Result d413bf7 agent: Fix crasher if AddARPNeighbors request empty 76408c0 agent: Fix crasher if UpdateRoutes request empty 6e4da19 agent: Fix crasher if UpdateInterface request empty 8f8061d agent: replace `match Result` with `or_else` 64e4b2f agent: replace unnecessary `match Result` with `map_err` 7c0d68f agent: replace check! with map_err for readability 82ed34a agent: remove `check!` in child process because we cant' see logs. 9def624 agent: replace `if let Err` with `or_else` 6926914 agent: refactor namespace::setup to optimize error handling e733c13 agent: replace `if let Err` with `map_err` ba069f9 rustjail: add length check for uid_mappings in rootless euid mapping cc8ec7b versions: Update Kubernetes, containerd, cri-o and cri-tools 8a364d2 annotations: Correct unit tests to validate new protections 0cc6297 annotations: Split addHypervisorOverrides to reduce complexity b6059f3 annotations: Add unit test for checkPathIsInGlobs c6afad2 annotations: Add unit test for regexpContains function 451608f makefile: Add missing generated vars to `USER_VARS` 8328136 makefile: Improve names of config entries for annotation checks a92a630 annotations: Give better names to local variabes in search functions 997f7c4 annotations: Rename checkPathIsInGlobList with checkPathIsInGlobs 74d4065 config: Add better comments in the template files 73bb3fd config: Whitelist hypervisor annotations by name 5a587ba config: Use glob instead of regexp to match paths in annotations 29f5dec annotations: Fix typo in comment d71f9e1 config: Add makefile variables for path lists 28c386c config: Protect file_mem_backend against annotation attacks c2a186b config: Protect vhost_user_store_path against annotation attacks 8cd094c config: Add security warning on configuration examples b5f2a1e config: Protect ctlpath from annotation attack 2d65b3b config: Protect jailer_path annotation fe5e1cf config: Add examples for path_list configuration 3f7bcf5 annotations: Simplify negative logic 80144fc config: Add hypervisor path override through annotations 2f5f356 config: Fix typo in function name 2faafbd config: Protect virtio_fs_daemon annotation 9e5ed41 config: Add 'List' alternates for hypervisor configuration paths b33d4fe agent: fix panic on malformed device resource in container update 1838233 cpuset: add cpuset pkg bfbbe8b cpuset: don't set cpuset.mems in the guest 5c21ec2 sandbox: consider cpusets if quota is not enforced 9bb0d48 cpuset: support setting mems for sandbox 64a2ef6 virtcontainers: add method for calculating cpuset for sandbox a441f21 cpuset: add cpuset pkg ce54090 docs: Update upgrading guide e884fef docs: update the build kata containers kernel document 9c16643 agent/device: Check type as well as major:minor when looking up devices 4978c90 agent/device: Index all devices in spec before updating them a7ba362 agent/device: Forward port update_spec_device_list() unit test 230a983 agent/device: update_spec_device_list() should error if dev not found a6d9fd4 sandbox: don't constrain cpus, mem only cpuset, devices 8f0cb2f cgroups: add ability to update CPUSet cbdae44 agent: fix errorneous parsing for guest block size 97acaa8 docs: Add containerd install guide 2324666 agent: use ok_or/map_err instead of match ebe5ad1 rustjail: use Iterator to manipulate vector elements c9497c8 rustjail: delete codes commented out d5d9928 rustjail: delete unused test code f70892a agent: use chain of Result to avoid early return ab64780 agent: update not accurate comments 9e064ba agent: use macro to simplify parse_cmdline function in config.rs 42c48f5 agent: add blank lines between methods d3a36fa agent: delete unused field in agentService fa54660 agent: use no-named closure to reduce codes efddcb4 agent: use a local fn to reduce duplicated codes 7bb3e56 packaging: fix cloud-hypervisor binary path 7b53041 packaging: fix missing cloud_hypervisor_repo 38212ba packaging: apply qemu v5.1 stable fixes fb7e9b4 agent: fix aarch64 build 0cfcbf7 docs: add namespace key to pod/container config files 997f1f6 docs: Add crictl example json files f60f43a runtime: Clear the VCMock 1.x API Methods from 2.0 1789527 ci: snap: add event filtering 999f67d agent: do not follow link when mounting container proc and sysfs cb2255f agent: set init process non-dumpable 2a6c9ee agent-ctl: include cargo lock updates eaff5de versions: add plugins section 4f1d23b virtiofs: Disable DAX 6d80df9 snap: specify python version a116ce0 osbuilder: Create target directory for agent 4dc3bc0 rust-agent: Treat warnings as error 8f7a484 rust-agent: Identify unused results in tests ce54e5d rust-agent: Log returned errors rather than ignore them 9adb7b7 rust-agent: Remove unused imports 73ab9b1 rust-agent: Report errors to caller if possible 4db3f9e rust-agent: Ignore write errors while writing to the logs 19cb657 rust-agent: Remove unused code that has undefined behavior 86bc151 rust-agent: Remove 'mut' where not needed 8d8adb6 rust-agent: Remove uses of deprecated functions 76298c1 rust-agent: Remove or rename unused parameters 7d303ec rust-agent: Remove or rename unused variables e0b79eb rust-agent: Remove unused functions 8ed61b1 rust-agent: Remove useless braces cc4f02e rust-agent: Remove unused macros ace6f1e clh: Support VFIO device unplug 47cfeaa clh: Remove unnecessary VmmPing 63c4757 versions: cloud-hypervisor: Bump to version 6d30fe05 059b89c docs: Change kata_tap0 to tap0_kata 4ff3ed5 docs: update networking description de8dcb1 dev-guide: update kata-agent install details c488cc4 docs: Update docs for enabling agent debug console e5acb12 docs: update dev guide for agent build 1bddde7 ci: add github action to test the snap 9517b0a versions: cloud-hypervisor: bump version f5a7175 runtime: cloud-hypervisor: tag openapi-generator-cli container Signed-off-by: Ubuntu --- VERSION | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/VERSION b/VERSION index e88e200671..227cea2156 100644 --- a/VERSION +++ b/VERSION @@ -1 +1 @@ -2.0.0-rc1 +2.0.0