Update CHANGELOG/CHANGELOG-1.25.md

Co-authored-by: Davanum Srinivas <davanum@gmail.com>
This commit is contained in:
Carlos Santana 2022-08-25 22:16:07 -04:00 committed by GitHub
parent 612f57b2e9
commit fa577b8204
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -276,7 +276,7 @@ Promoted the `ServerSideFieldValidation` feature gate to beta (on by default). T
Introduce KMS v2alpha1 API to add performance, rotation, and observability improvements. Encrypt data at rest (ie Kubernetes `Secrets`) with DEK using AES-GCM instead of AES-CBC for kms data encryption. No user action is required. Reads with AES-GCM and AES-CBC will continue to be allowed. See the guide [Using a KMS provider for data encryption](https://kubernetes.io/docs/tasks/administer-cluster/kms-provider/) for more information.
### Kube-proxy images are now based in distroless
### Kube-proxy images are now based on distroless images
In previous releases, kube-proxy container images were built using Debian as the base image. Starting with this release, the images are now built using [distroless](https://github.com/GoogleContainerTools/distroless). This change reduced image size by almost 50% and decreased the number of installed packages and files to only those strictly required for kube-proxy to do its job.