ui: Pin a newer resolution of Codemirror [GH-21715]
ui: Pin a newer resolution of Markdown-it [GH-21717]
ui: Pin a newer resolution of ansi-html [GH-21735]
FEATURES:
server: remove v2 tenancy, catalog, and mesh experiments [GH-21592]
IMPROVEMENTS:
security: upgrade ubi base image to 9.4 [GH-21750]
connect: Add Envoy 1.31 and 1.30 to support matrix [GH-21616]
BUG FIXES:
jwt-provider: change dns lookup family from the default of AUTO which would prefer ipv6 to ALL if LOGICAL_DNS is used or PREFER_IPV4 if STRICT_DNS is used to gracefully handle transitions to ipv6. [GH-21703]
1.19.2 (August 26, 2024)
SECURITY:
ui: Upgrade modules with d3-color as a dependency to address denial of service issue in d3-color < 3.1.0 [GH-21588]
IMPROVEMENTS:
Use Envoy's default for a route's validate_clusters option, which is false. This fixes a case where non-existent clusters could cause a route to no longer route to any of its backends, including existing ones. [GH-21587]
BUG FIXES:
api-gateway: (Enterprise only) ensure clusters are properly created for JWT providers with a remote URI for the JWKS endpoint [GH-21604]
1.18.4 Enterprise (August 26, 2024)
Enterprise LTS: Consul Enterprise 1.18 is a Long-Term Support (LTS) release.
SECURITY:
ui: Upgrade modules with d3-color as a dependency to address denial of service issue in d3-color < 3.1.0
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Bumps github.com/hashicorp/consul/api from 1.29.4 to 1.29.5.
Changelog
Sourced from github.com/hashicorp/consul/api's changelog.
... (truncated)
Commits
2664ce5
Consume release of proto-publicf9bbaf6
Backport of Adds grafana dashboards (#21806) (#21812)41e76d7
Init 1.20.0 release branch (#21786)600039d
tag version16aecab
pin api version0330d42
pin new proto rc6a08d34
pin filef0004df
Rebase 1.20.0 rc (#21775)e05f148
Set lifecycle appropriately in version (#21766)1f45e86
Backport of security: update alpine base image to 3.20 into release/1.20.x (#...Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show