mirror of
https://github.com/YuzuZensai/netbird-kubernetes-operator.git
synced 2026-09-13 10:49:15 +00:00
13c7bba3f36c1757ce7f1466b764d7fb4ae0b32d
6
Commits
| Author | SHA1 | Message | Date | |
|---|---|---|---|---|
|
|
5dd73dcc80 |
Add new resource for Kubernetes API proxy (#279)
This adds a new resource which deploys a Kubernetes API server proxy that can be used to access the API server without tokens through Netbird. Part of #274 <!-- This is an auto-generated comment: release notes by coderabbit.ai --> ## Summary by CodeRabbit * **New Features** * Added ClusterProxy custom resource for cluster API proxying capabilities * **Documentation** * Added ClusterProxy API reference documentation with schema details * **Examples** * Added example ClusterProxy configuration and RBAC setup for cluster proxy targets <!-- review_stack_entry_start --> [](https://app.coderabbit.ai/change-stack/netbirdio/kubernetes-operator/pull/279?utm_source=github_walkthrough&utm_medium=github&utm_campaign=change_stack) <!-- review_stack_entry_end --> <!-- end of auto-generated comment: release notes by coderabbit.ai --> |
||
|
|
fef05e4569 |
Bump github.com/netbirdio/netbird from 0.71.2 to 0.71.4 (#272)
Bumps [github.com/netbirdio/netbird](https://github.com/netbirdio/netbird) from 0.71.2 to 0.71.4. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/netbirdio/netbird/releases">github.com/netbirdio/netbird's releases</a>.</em></p> <blockquote> <h2>v0.71.4</h2> <h2>What's Changed</h2> <ul> <li>[client] Revert legacy registry cleanup on Windows install by <a href="https://github.com/lixmal"><code>@lixmal</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6232">netbirdio/netbird#6232</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/netbirdio/netbird/compare/v0.71.3...v0.71.4">https://github.com/netbirdio/netbird/compare/v0.71.3...v0.71.4</a></p> <h2>v0.71.3</h2> <h2>What's Changed</h2> <ul> <li>[management] fix: device redirect uri wasn't registered by <a href="https://github.com/jnfrati"><code>@jnfrati</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6191">netbirdio/netbird#6191</a></li> <li>[management] Fence peer status updates with a session token by <a href="https://github.com/mlsmaycon"><code>@mlsmaycon</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6193">netbirdio/netbird#6193</a></li> <li>[management] Add metrics for peer status updates and ephemeral cleanup by <a href="https://github.com/mlsmaycon"><code>@mlsmaycon</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6196">netbirdio/netbird#6196</a></li> <li>[management] Ensure SessionStartedAt has a default value by <a href="https://github.com/mlsmaycon"><code>@mlsmaycon</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6211">netbirdio/netbird#6211</a></li> <li>[proxy] clusters API surfaces type, online status, and capability flags by <a href="https://github.com/mlsmaycon"><code>@mlsmaycon</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6148">netbirdio/netbird#6148</a></li> <li>[misc] Update contribution guidelines by <a href="https://github.com/mlsmaycon"><code>@mlsmaycon</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6219">netbirdio/netbird#6219</a></li> <li>[client] Bump macOS sleep callback timeout to 20s by <a href="https://github.com/lixmal"><code>@lixmal</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6220">netbirdio/netbird#6220</a></li> <li>[doc] Clean up README by <a href="https://github.com/lixmal"><code>@lixmal</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6178">netbirdio/netbird#6178</a></li> <li>[proxy] concurrent proxy snapshot apply by <a href="https://github.com/pascal-fischer"><code>@pascal-fischer</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6207">netbirdio/netbird#6207</a></li> <li>[management] scope network router update call by <a href="https://github.com/pascal-fischer"><code>@pascal-fischer</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6222">netbirdio/netbird#6222</a></li> <li>[client] Fix nil channel panic in external chain monitor stop by <a href="https://github.com/lixmal"><code>@lixmal</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6224">netbirdio/netbird#6224</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/netbirdio/netbird/compare/v0.71.2...v0.71.3">https://github.com/netbirdio/netbird/compare/v0.71.2...v0.71.3</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/netbirdio/netbird/commit/0358be23136da50e829ba99a83e54ef555071a7f"><code>0358be2</code></a> [client] Revert "Clean up legacy 32-bit and HKCU registry entries on Windows ...</li> <li><a href="https://github.com/netbirdio/netbird/commit/37052fd5bc050f8eaf80b986d511f3c278233cca"><code>37052fd</code></a> [client] Fix nil channel panic in external chain monitor stop (<a href="https://redirect.github.com/netbirdio/netbird/issues/6224">#6224</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/454ff66518feaef2d9ceb10fb1960da28f14fd87"><code>454ff66</code></a> [management] scope network router update call (<a href="https://redirect.github.com/netbirdio/netbird/issues/6222">#6222</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/6137a1fcc53ad0ea0f5048ac97369168f1116a69"><code>6137a1f</code></a> [proxy] concurrent proxy snapshot apply (<a href="https://redirect.github.com/netbirdio/netbird/issues/6207">#6207</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/4955c345d53f63394266305744841c4e1bff8123"><code>4955c34</code></a> Clean up README header, key features table, and self-hosted quickstart (<a href="https://redirect.github.com/netbirdio/netbird/issues/6178">#6178</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/9192b4f029f8f0eeaad77fff8625c34ba9849668"><code>9192b4f</code></a> [client] Bump macOS sleep callback timeout to 20s (<a href="https://redirect.github.com/netbirdio/netbird/issues/6220">#6220</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/c784b0255063b9cbfde830c78670de2400e46c1c"><code>c784b02</code></a> [misc] Update contribution guidelines (<a href="https://redirect.github.com/netbirdio/netbird/issues/6219">#6219</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/d250f92c435bac83fd55f00fad3ee2c292eee910"><code>d250f92</code></a> feat(reverse-proxy): clusters API surfaces type, online status, and capabilit...</li> <li><a href="https://github.com/netbirdio/netbird/commit/80966ab1b09bd86b7a526d9402b6a47438bc0943"><code>80966ab</code></a> [management] Ensure SessionStartedAt has a default value (<a href="https://redirect.github.com/netbirdio/netbird/issues/6211">#6211</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/af24fd779640538c05c5f261a1e9fdf20fe7773f"><code>af24fd7</code></a> [management] Add metrics for peer status updates and ephemeral cleanup (<a href="https://redirect.github.com/netbirdio/netbird/issues/6196">#6196</a>)</li> <li>Additional commits viewable in <a href="https://github.com/netbirdio/netbird/compare/v0.71.2...v0.71.4">compare view</a></li> </ul> </details> <br /> Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> |
||
|
|
7744dc08f5 |
Bump github.com/netbirdio/netbird from 0.70.4 to 0.71.2 (#260)
Bumps [github.com/netbirdio/netbird](https://github.com/netbirdio/netbird) from 0.70.4 to 0.71.2. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/netbirdio/netbird/releases">github.com/netbirdio/netbird's releases</a>.</em></p> <blockquote> <h2>v0.71.2</h2> <h2>What's Changed</h2> <ul> <li>[management] Avoid peer IP reallocation when account settings update preserves the network range by <a href="https://github.com/lixmal"><code>@lixmal</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6173">netbirdio/netbird#6173</a></li> <li>[management] Avoid context cancellation in <code>cancelPeerRoutines</code> by <a href="https://github.com/mlsmaycon"><code>@mlsmaycon</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6175">netbirdio/netbird#6175</a></li> <li>[client] Clean up legacy 32-bit and HKCU registry entries on Windows install by <a href="https://github.com/lixmal"><code>@lixmal</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6176">netbirdio/netbird#6176</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/netbirdio/netbird/compare/v0.71.1...v0.71.2">https://github.com/netbirdio/netbird/compare/v0.71.1...v0.71.2</a></p> <h2>v0.71.1</h2> <h2>What's Changed</h2> <ul> <li>[client] Mirror v4 exit selection onto v6 pair and honour SkipAutoApply per route by <a href="https://github.com/lixmal"><code>@lixmal</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6150">netbirdio/netbird#6150</a></li> <li>[client] Drop DNS probes for passive health projection by <a href="https://github.com/lixmal"><code>@lixmal</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/5971">netbirdio/netbird#5971</a></li> <li>[proxy] auth token generation on mapping by <a href="https://github.com/crn4"><code>@crn4</code></a> in <a href="https://redirect.github.com/netbirdio/netbird/pull/6157">netbirdio/netbird#6157</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/netbirdio/netbird/compare/v0.71.0...v0.71.1">https://github.com/netbirdio/netbird/compare/v0.71.0...v0.71.1</a></p> <h2>v0.71.0</h2> <h2>Release Notes for v0.71.0</h2> <h3>What's New</h3> <p><strong>IPv6 overlay addressing</strong> NetBird's overlay is now dual-stack. Every account gets its own IPv6 prefix (default <code>/64</code>, configurable from <code>/48</code> to <code>/120</code>), and peers can receive both an IPv4 and an IPv6 overlay address. DNS serves AAAA and reverse PTR records alongside A records, ACLs apply to both families automatically, network routes accept IPv6 CIDRs (with masquerade), exit nodes that route <code>0.0.0.0/0</code> get a matching <code>::/0</code> route, and domain routes resolve both A and AAAA.</p> <p>Rollout is group-gated: new accounts enable IPv6 for the <strong>All</strong> group by default; existing accounts opt in under <strong>Settings > Network</strong>. Assignment is also gated on a per-peer capability, so older clients keep working on IPv4 until they upgrade. Hosts can opt out individually with <code>netbird up --disable-ipv6</code></p> <p>Read more in the <a href="https://netbird.io/knowledge-hub/ipv6-overlay-addressing">IPv6 Overlay Addressing announcement</a> and the <a href="https://docs.netbird.io/manage/settings/ipv6">IPv6 documentation</a>. <a href="https://redirect.github.com/netbirdio/netbird/pull/5631">netbirdio/netbird#5631</a> by <a href="https://github.com/lixmal"><code>@lixmal</code></a></p> <p><strong>MFA for local users</strong> Local users (non-IdP) can now enable multi-factor authentication, closing a gap for deployments that don't federate auth through an external provider. <a href="https://redirect.github.com/netbirdio/netbird/pull/5804">netbirdio/netbird#5804</a> by <a href="https://github.com/jnfrati"><code>@jnfrati</code></a></p> <p><strong>Bring your own proxy (backend ready)</strong> Backend support for per-account reverse-proxy lifecycle has landed: proxy tokens, per-account cluster allow-lists, conflict detection, and one-proxy-per-account enforcement. Full rollout (dashboard, docs) comes in a later release. <a href="https://redirect.github.com/netbirdio/netbird/pull/5627">netbirdio/netbird#5627</a> by <a href="https://github.com/crn4"><code>@crn4</code></a></p> <h4>Client Improvements</h4> <ul> <li>Included <strong>MTU and SSH auth config in debug bundle</strong> by <a href="https://github.com/lixmal"><code>@lixmal</code></a>. <a href="https://redirect.github.com/netbirdio/netbird/pull/6071">netbirdio/netbird#6071</a></li> <li>Added <strong>public key to debug bundle config.txt</strong> by <a href="https://github.com/lixmal"><code>@lixmal</code></a>. <a href="https://redirect.github.com/netbirdio/netbird/pull/6092">netbirdio/netbird#6092</a></li> <li>iOS: <strong>structured ResolvedIPs collection for domain routes</strong> by <a href="https://github.com/pappz"><code>@pappz</code></a>. <a href="https://redirect.github.com/netbirdio/netbird/pull/6090">netbirdio/netbird#6090</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/netbirdio/netbird/commit/3f91f49277e1841bdfccda06ae7baa0430e6de2e"><code>3f91f49</code></a> Clean up legacy 32-bit and HKCU registry entries on Windows install (<a href="https://redirect.github.com/netbirdio/netbird/issues/6176">#6176</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/347c5bf317794729a044ce9f866f29e357d386d9"><code>347c5bf</code></a> Avoid context cancellation in <code>cancelPeerRoutines</code> (<a href="https://redirect.github.com/netbirdio/netbird/issues/6175">#6175</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/22e2519d7113dffec718198e54474cc0a6d71c87"><code>22e2519</code></a> [management] Avoid peer IP reallocation when account settings update preserve...</li> <li><a href="https://github.com/netbirdio/netbird/commit/e916f12cca508dfea584e7b72cf99a135acebc2b"><code>e916f12</code></a> [proxy] auth token generation on mapping (<a href="https://redirect.github.com/netbirdio/netbird/issues/6157">#6157</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/9ed2e2a5b463077f8abe3e3926695f5dc9411e29"><code>9ed2e2a</code></a> [client] Drop DNS probes for passive health projection (<a href="https://redirect.github.com/netbirdio/netbird/issues/5971">#5971</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/2ccae7ec479c106efb6d7a7edff4bb55affb2aa4"><code>2ccae7e</code></a> [client] Mirror v4 exit selection onto v6 pair and honour SkipAutoApply per r...</li> <li><a href="https://github.com/netbirdio/netbird/commit/07e5450117dd0451aaeefc18729a822115587e69"><code>07e5450</code></a> [management] Bracket IPv6 reverse-proxy target hosts when building URL Host f...</li> <li><a href="https://github.com/netbirdio/netbird/commit/3f914090cbb345707a88b5edb20d9c1351873b4c"><code>3f91409</code></a> [client] Bracket IPv6 in embed listeners, expand debug bundle (<a href="https://redirect.github.com/netbirdio/netbird/issues/6134">#6134</a>)</li> <li><a href="https://github.com/netbirdio/netbird/commit/ea9fab4396fc5513f7c62e3465dd361dc8bb9e91"><code>ea9fab4</code></a> [management] Allocate and preserve IPv6 overlay addresses for embedded proxy ...</li> <li><a href="https://github.com/netbirdio/netbird/commit/77b479286e399660ef2bdcbe7983363946660574"><code>77b4792</code></a> [management] fix offline statuses for public proxy clusters (<a href="https://redirect.github.com/netbirdio/netbird/issues/6133">#6133</a>)</li> <li>Additional commits viewable in <a href="https://github.com/netbirdio/netbird/compare/v0.70.4...v0.71.2">compare view</a></li> </ul> </details> <br /> [](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <support@github.com> Signed-off-by: Philip Laine <philip.laine@gmail.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> |
||
|
|
360ef52aa3 |
Add build version to NetBird client user agent. (#248)
This also fix the runtime import aliases to avoid conflicts with stdlib runtime. |
||
|
|
69afe3aade |
Fix SPDX license header (#231)
This change adds SPDX license headers to all files and eforces it with the linter. Signed-off-by: Philip Laine <philip.laine@gmail.com> |
||
|
|
f8a383f533 |
Pin the default client image with digest (#227)
This changes the default client image from latest to a pinned digest. It also enforces that the default image version tag matches the version of the Netbird dependency. This makes testing a lot easier and also ensures that we wont get untested behavior introduced if the client makes a breaking change. Signed-off-by: Philip Laine <philip.laine@gmail.com> |