Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Sep 2, 2025

Bumps the k8s-dependencies group with 5 updates in the / directory:

Package From To
k8s.io/apimachinery 0.33.0 0.34.0
k8s.io/client-go 0.33.0 0.34.0
k8s.io/component-base 0.33.0 0.34.0
k8s.io/component-helpers 0.33.0 0.34.0
sigs.k8s.io/gateway-api 1.2.1 1.3.0

Updates k8s.io/apimachinery from 0.33.0 to 0.34.0

Commits
  • b72d93d Merge remote-tracking branch 'origin/master' into release-1.34
  • cd8b91c clarify that staging repos are automatically published
  • 8c59599 add pointer to CONTRIBUTING.md for more details on contributing, clarify read...
  • ec3cea5 link to what a staging repository is
  • e4db694 docs: clarify that this is a staging repository and not for direct contributions
  • 04507a3 Merge pull request #132942 from thockin/kyaml
  • 50e39b1 Merge pull request #132935 from benluddy/cbor-bump-custom-marshalers
  • 7d108e8 Re-vendor sigs.k8s.io/yaml @ v1.6.0
  • 58c4eb0 Merge pull request #133130 from ylink-lfs/chore/residual_boolptr_removal
  • 38a24e6 chore: residual boolptr and intptr removal
  • Additional commits viewable in compare view

Updates k8s.io/client-go from 0.33.0 to 0.34.0

Commits
  • b1c7d7b Update dependencies to v0.34.0 tag
  • 97396af Merge remote-tracking branch 'origin/master' into release-1.34
  • 5f737f3 clarify that staging repos are automatically published
  • 0b8655b add pointer to CONTRIBUTING.md for more details on contributing, clarify read...
  • c00384c link to what a staging repository is
  • b53b1f8 docs: clarify that this is a staging repository and not for direct contributions
  • 42e6182 KEP-5075: generated codes from make update
  • da11948 Merge pull request #130653 from yliaog/master
  • 3b7d818 extended resource backed by DRA: codegen
  • bb11581 Merge pull request #130160 from KobayashiD27/dra-device-binding-conditions
  • Additional commits viewable in compare view

Updates k8s.io/component-base from 0.33.0 to 0.34.0

Commits
  • e82e2ac Update dependencies to v0.34.0 tag
  • 4f4e85f Merge remote-tracking branch 'origin/master' into release-1.34
  • b463ee1 clarify that staging repos are automatically published
  • e8c7af5 add pointer to CONTRIBUTING.md for more details on contributing, clarify read...
  • 7b7683a link to what a staging repository is
  • 6abb326 docs: clarify that this is a staging repository and not for direct contributions
  • b9f1c2d Merge pull request #132942 from thockin/kyaml
  • f959b03 Merge pull request #132935 from benluddy/cbor-bump-custom-marshalers
  • 33138af Re-vendor sigs.k8s.io/yaml @ v1.6.0
  • 07ee182 List available endpoints for kube-apiserver (#132581)
  • Additional commits viewable in compare view

Updates k8s.io/component-helpers from 0.33.0 to 0.34.0

Commits
  • cd3ded9 Update dependencies to v0.34.0 tag
  • 23e62f7 Merge remote-tracking branch 'origin/master' into release-1.34
  • 2338cb4 clarify that staging repos are automatically published
  • 3f30b53 add pointer to CONTRIBUTING.md for more details on contributing, clarify read...
  • 5a05a73 link to what a staging repository is
  • cb73b94 docs: clarify that this is a staging repository and not for direct contributions
  • 5859ac3 fixes scheduler nil panic due to empty init container request&limit
  • f50e498 Merge pull request #132942 from thockin/kyaml
  • aa8cc12 Merge pull request #132605 from toVersus/feat/downward-api-plresources
  • e2b12d7 Merge pull request #132277 from KevinTMtz/pod-level-resources-eviction-manager
  • Additional commits viewable in compare view

Updates sigs.k8s.io/gateway-api from 1.2.1 to 1.3.0

Release notes

Sourced from sigs.k8s.io/gateway-api's releases.

v1.3.0

Changes since v1.3.0-rc.2

Changes since v1.2.1

Noteworthy Changes for Implementors

This section is intended to be a guide for API changes that might inspire or require implementation changes. None of these API changes represent breaking changes.

OverlappingTLSConfig for Connection Coalescing

A new OverlappingTLSConfig condition has been added to Gateway Listeners to indicate situations where Connection Coalescing could be problematic. The Gateway specification for handling Hostname and SNI matching for HTTPS requests has been clarified and now recommends that implementations return 421 HTTP code responses in certain cases.

  • Implementation of GEP-3567 - TLS Updates for Connection Coalescing. (#3630,@​robscott)
  • Add GEP-3567: Gateway TLS Updates for HTTP/2 Connection Coalescing. (#3572,@​robscott)

Move BackendTLSPolicy SubjectAltNames from Core to Extended

  • The SubjectAltNames field of BackendTLSPolicy changed from Core to Extended feature. (#3591,@​mlavacca)

The backendRef filter must send traffic to the correct backends when weighted routing is configured

  • A new conformance test was added to ensure backendRef filters don't affect weighted routing. (#3604,@​dprotaso)

Clarify reasons for certain object status conditions

  • Set proper reason for Gateway parametersRef Accepted condition when parametersRef is invalid. (#3579,@​mlavacca)
  • Improve GatewayClass GatewayClassReasonInvalidParameters reason description. (#3553,@​mlavacca)

BackendTLSPolicy

GRPCRoute

Gateway.Spec.Addresses changes

A new type GatewaySpecAddress replaces GatewayAddress. In GatewayAddress the Value field was required. In GatewaySpecAddress the Value field is optional. When the Value is unspecified, if an implementation supports that, it SHOULD automatically assign an address. If an implementation does not support an empty Value, it MUST set the Programmed condition in status to false with a reason of "AddressNotAssigned". The Addresses field in Gateway.Spec has changed from type []GatewayAddress to []GatewaySpecAddress.

Standard Channel Additions and Changes

The Standard channel is Gateway API's set of maximally-stable install files. Only features with the best testing and support are added to the standard channel. This channel should be considered GA or stable, and future changes will be fully backwards compatible.

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the k8s-dependencies group with 5 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [k8s.io/apimachinery](https://github.com/kubernetes/apimachinery) | `0.33.0` | `0.34.0` |
| [k8s.io/client-go](https://github.com/kubernetes/client-go) | `0.33.0` | `0.34.0` |
| [k8s.io/component-base](https://github.com/kubernetes/component-base) | `0.33.0` | `0.34.0` |
| [k8s.io/component-helpers](https://github.com/kubernetes/component-helpers) | `0.33.0` | `0.34.0` |
| [sigs.k8s.io/gateway-api](https://github.com/kubernetes-sigs/gateway-api) | `1.2.1` | `1.3.0` |



Updates `k8s.io/apimachinery` from 0.33.0 to 0.34.0
- [Commits](kubernetes/apimachinery@v0.33.0...v0.34.0)

Updates `k8s.io/client-go` from 0.33.0 to 0.34.0
- [Changelog](https://github.com/kubernetes/client-go/blob/master/CHANGELOG.md)
- [Commits](kubernetes/client-go@v0.33.0...v0.34.0)

Updates `k8s.io/component-base` from 0.33.0 to 0.34.0
- [Commits](kubernetes/component-base@v0.33.0...v0.34.0)

Updates `k8s.io/component-helpers` from 0.33.0 to 0.34.0
- [Commits](kubernetes/component-helpers@v0.33.0...v0.34.0)

Updates `sigs.k8s.io/gateway-api` from 1.2.1 to 1.3.0
- [Release notes](https://github.com/kubernetes-sigs/gateway-api/releases)
- [Changelog](https://github.com/kubernetes-sigs/gateway-api/blob/main/RELEASE.md)
- [Commits](kubernetes-sigs/gateway-api@v1.2.1...v1.3.0)

---
updated-dependencies:
- dependency-name: k8s.io/apimachinery
  dependency-version: 0.34.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: k8s-dependencies
- dependency-name: k8s.io/client-go
  dependency-version: 0.34.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: k8s-dependencies
- dependency-name: k8s.io/component-base
  dependency-version: 0.34.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: k8s-dependencies
- dependency-name: k8s.io/component-helpers
  dependency-version: 0.34.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: k8s-dependencies
- dependency-name: sigs.k8s.io/gateway-api
  dependency-version: 1.3.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: k8s-dependencies
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added area/dependency Issues or PRs related to dependency changes ok-to-test Indicates a non-member PR verified by an org member that is safe to test. release-note-none Denotes a PR that doesn't merit a release note. labels Sep 2, 2025
@k8s-ci-robot k8s-ci-robot added the cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. label Sep 2, 2025
@k8s-ci-robot
Copy link
Contributor

Hi @dependabot[bot]. Thanks for your PR.

I'm waiting for a kubernetes-csi member to verify that this patch is reasonable to test. If it is, they should reply with /ok-to-test on its own line. Until that is done, I will not automatically test new commits in this PR, but the usual testing commands by org members will still work. Regular contributors should join the org to skip this step.

Once the patch is verified, the new status will be reflected by the ok-to-test label.

I understand the commands that are listed here.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository.

@k8s-ci-robot
Copy link
Contributor

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by: dependabot[bot]
Once this PR has been reviewed and has the lgtm label, please assign bswartz for approval. For more information see the Code Review Process.

The full list of commands accepted by this bot can be found here.

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@k8s-ci-robot k8s-ci-robot added the size/XXL Denotes a PR that changes 1000+ lines, ignoring generated files. label Sep 2, 2025
@k8s-ci-robot
Copy link
Contributor

@dependabot[bot]: The following tests failed, say /retest to rerun all failed tests or /retest-required to rerun all mandatory failed tests:

Test name Commit Details Required Rerun command
pull-kubernetes-csi-lib-volume-populator-1-32-on-kubernetes-1-32 744630e link true /test pull-kubernetes-csi-lib-volume-populator-1-32-on-kubernetes-1-32
pull-kubernetes-csi-lib-volume-populator-1-33-on-kubernetes-1-33 744630e link false /test pull-kubernetes-csi-lib-volume-populator-1-33-on-kubernetes-1-33
pull-kubernetes-csi-lib-volume-populator-1-31-on-kubernetes-1-31 744630e link true /test pull-kubernetes-csi-lib-volume-populator-1-31-on-kubernetes-1-31
pull-kubernetes-csi-lib-volume-populator-unit 744630e link true /test pull-kubernetes-csi-lib-volume-populator-unit

Full PR test history. Your PR dashboard. Please help us cut down on flakes by linking to an open issue when you hit one in your PR.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

Copy link
Contributor Author

dependabot bot commented on behalf of github Sep 15, 2025

Dependabot tried to update this pull request, but something went wrong. We're looking into it, but in the meantime you can retry the update by commenting @dependabot rebase.

@sunnylovestiramisu
Copy link
Contributor

This is failing because of the version of sigs.k8s.io/gateway-api, please see discussion in https://kubernetes.slack.com/archives/CR0H13KGA/p1757456615532989

Copy link
Contributor Author

dependabot bot commented on behalf of github Sep 18, 2025

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot bot closed this Sep 18, 2025
@dependabot dependabot bot deleted the dependabot/go_modules/k8s-dependencies-097f345ad7 branch September 18, 2025 16:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/dependency Issues or PRs related to dependency changes cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. ok-to-test Indicates a non-member PR verified by an org member that is safe to test. release-note-none Denotes a PR that doesn't merit a release note. size/XXL Denotes a PR that changes 1000+ lines, ignoring generated files.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants