Commit graph

24004 commits

Author SHA1 Message Date
openshift-merge-bot[bot]
d3e7d4e217
Merge pull request #24564 from openshift-cherrypick-robot/cherry-pick-24563-to-v5.3
[v5.3] Bump bundled krunkit to 0.1.4
2024-11-14 15:41:02 +00:00
Sergio Lopez
9a9f07aa4b Bump bundled krunkit to 0.1.4
Bump the bundled krunkit version from 0.1.3 to 0.1.4.

Fixes: #24559

Signed-off-by: Sergio Lopez <slp@redhat.com>
2024-11-14 15:05:16 +00:00
openshift-merge-bot[bot]
5a88fc45e3
Merge pull request #24560 from openshift-cherrypick-robot/cherry-pick-24321-to-v5.3
[v5.3] Fix for podman machine init not creating necessary JSON file when an ignition-path is passed
2024-11-14 13:07:02 +00:00
Graceson Aufderheide
5546dc6c20 fix podman machine init --ignition-path
Fix the issue where podman machine init does not create
all the necessary machine files when ignition-path is used. Fixes: #23544

Signed-off-by: Graceson Aufderheide <gracesonphoto@gmail.com>
2024-11-14 11:26:09 +00:00
openshift-merge-bot[bot]
2026506708
Merge pull request #24548 from mheon/bump_530
Bump to v5.3.0
2024-11-12 19:01:59 +00:00
Matt Heon
8efa1c1075 Bump to v5.3.1-dev
Signed-off-by: Matt Heon <mheon@redhat.com>
2024-11-12 11:10:36 -05:00
Matt Heon
874bf2c301 Bump to v5.3.0
Signed-off-by: Matt Heon <mheon@redhat.com>
2024-11-12 11:10:17 -05:00
Matt Heon
2e3836d226 Update release notes for v5.3.0
Signed-off-by: Matt Heon <mheon@redhat.com>
2024-11-12 10:58:28 -05:00
openshift-merge-bot[bot]
400240533d
Merge pull request #24528 from TomSweeneyRedHat/dev/tsweeney/buildahv1.38
[v5.3] Bump to Buildah v1.38.0
2024-11-11 21:43:40 +00:00
tomsweeneyredhat
31df1bb97c [v5.3] Bump to Buildah v1.38.0
Bump to Buildah v1.38.0 in preparation of Podman v5.3.

This will also ensure the following versions are in place:

c/storage: v1.56.0
c/image:   v5.33.0
c/common:  v0.61.0

Signed-off-by: tomsweeneyredhat <tsweeney@redhat.com>
2024-11-11 14:20:56 -05:00
tomsweeneyredhat
9556882bbf [v5.3] Skip FIPS mode secrets run test
The FIPS mode secrets test cannot run on this branch,
skip them for now.

Signed-off-by: tomsweeneyredhat <tsweeney@redhat.com>
2024-11-11 14:20:56 -05:00
Ed Santiago
c6dd2c77ab [v5.3] Buildah treadmill tweaks
* treadmill script: handle an obscure corner case
  wherein the script would bail because it thought
  there were no buildah-vendor changes.

* two new test skips

* update the diffs; line-number changes due to buildah
  PRs touching helpers.bash

Signed-off-by: Ed Santiago <santiago@redhat.com>
(cherry picked from commit 33398ebc1e)
Signed-off-by: tomsweeneyredhat <tsweeney@redhat.com>
2024-11-11 13:28:12 -05:00
openshift-merge-bot[bot]
d88d04e115
Merge pull request #24495 from Luap99/v5.3
[v5.3] Some backports for 5.3
2024-11-07 19:59:39 +00:00
Paul Holzinger
0710e83c41
test/buildah-bud: build new inet helper
Added in https://github.com/containers/buildah/pull/5783

Signed-off-by: Paul Holzinger <pholzing@redhat.com>
(cherry picked from commit 22152a2f9c)
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-07 17:41:23 +01:00
Paul Holzinger
d852c58d6c
test/system: add regression test for TZDIR local issue
Regression test for #23550. Setting the TZDIR env should make no
difference for the local timezone as this is not a real timezone name
that is resolved from that directory.

Signed-off-by: Paul Holzinger <pholzing@redhat.com>
(cherry picked from commit fb3a0e93a8)
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-07 17:41:23 +01:00
Paul Holzinger
ac59fb9231
vendor latest c/{buildah,common,image,storage}
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
(cherry picked from commit f6af35c695)
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-07 17:41:23 +01:00
Ed Santiago
1f0e2db2a9
Reapply "CI: test nftables driver on fedora"
Temporary, until we get CI VMs with kernel 6.11.6.

I've lost track of where this is being discussed.

This reverts commit 7f836df303.

Signed-off-by: Ed Santiago <santiago@redhat.com>
(cherry picked from commit 0e66a793bc)
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-07 17:40:49 +01:00
Ed Santiago
16acfd7edb
Revert "cirrus: test only on f40/rawhide"
This reverts commit d03e8ffc56.

Signed-off-by: Ed Santiago <santiago@redhat.com>
(cherry picked from commit d770069062)
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-07 17:40:48 +01:00
Ed Santiago
dc97a7e0de
test f41 VMs
Signed-off-by: Ed Santiago <santiago@redhat.com>
(cherry picked from commit ba5ce49c10)
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-07 17:40:48 +01:00
Paul Holzinger
9e38b455e4
volume ls: fix race that caused it to fail
If volume ls was called while another volume was removed at the right
time it could have failed with "no such volume" as we did not ignore
such error during listing. As we list things and this no longer exists
the correct thing is to ignore the error and continue like we do with
containers, pods, etc...

This was pretty easy to reproduce with these two commands running in
different terminals:
while :; do bin/podman volume create test && bin/podman volume rm test || break; done
while :; do bin/podman volume ls || break ; done

I have a slight feeling that this might solve #23913 but I am not to
sure there so I am not adding a Fixes here.

Signed-off-by: Paul Holzinger <pholzing@redhat.com>
(cherry picked from commit 9a0c0b2eef)
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-07 17:39:55 +01:00
Daniel J Walsh
44df7344fe
AdditionalSupport for SubPath volume mounts
Add support for inspecting Mounts which include SubPaths.

Handle SubPaths for kubernetes image volumes.

Signed-off-by: Daniel J Walsh <dwalsh@redhat.com>
(cherry picked from commit 6346a11b09)
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-07 17:39:54 +01:00
openshift-merge-bot[bot]
5d60bd286f
Merge pull request #24483 from mheon/bump_530_rc3
[CI:ALL] Bump to v5.3.0-rc3
2024-11-06 19:09:00 +00:00
Matt Heon
17224fcb05 Bump to v5.3.0-dev
Signed-off-by: Matt Heon <mheon@redhat.com>
2024-11-06 10:43:38 -05:00
Matt Heon
8469dcc4f0
Bump to v5.3.0-rc3
Signed-off-by: Matt Heon <mheon@redhat.com>
2024-11-06 10:43:00 -05:00
Matt Heon
bc938575ef Merge remote-tracking branch 'upstream/main' into bump_530_rc3
Signed-off-by: Matt Heon <mheon@redhat.com>
2024-11-06 10:42:20 -05:00
Matt Heon
a18365c665 Update release notes for v5.3-rc3
Signed-off-by: Matt Heon <mheon@redhat.com>
2024-11-06 10:42:06 -05:00
openshift-merge-bot[bot]
c0e24c6b60
Merge pull request #24460 from baude/roadmap
podman: update roadmap
2024-11-05 20:09:48 +00:00
openshift-merge-bot[bot]
a6c74779e5
Merge pull request #24469 from Luap99/journal-thread
libpod: journald do not lock thread
2024-11-05 16:25:42 +00:00
openshift-merge-bot[bot]
a358d83ce9
Merge pull request #24437 from lambinoo/feat-split-pod-container-start-24401
Add key to control if a container can get started by its pod
2024-11-05 15:04:16 +00:00
Brent Baude
10309bfb45 podman: update roadmap
move the podman roadmap into a separate file and began a feature
development log. also, small statements on our process of feature
prioritization.

Signed-off-by: Brent Baude <bbaude@redhat.com>
2024-11-05 08:15:52 -06:00
Paul Holzinger
b237b4dc2a
libpod: journald do not lock thread
This is not needed and was added by during debugging but it turned out
to be something else. We should not lock the thread unless needed
because this just raises question why it is here otherwise.
Also the lock would not do much as we spawn a goroutine below anyway so
it runs on another thread no matter what.

From the review comment by Miloslav but it was merged before I had the
chance to fix it:
https://github.com/containers/podman/pull/24406#discussion_r1828102666

Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-05 11:32:51 +01:00
openshift-merge-bot[bot]
c8af2f2c1e
Merge pull request #24334 from rhatdan/quadlet
Honor users requests in quadlet files
2024-11-05 09:45:11 +00:00
Farya L. Maerten
2597eeae70 Add key to control if a container can get started by its pod
By default today, the container is always started if its pod is also
started. This prevents to create custom with systemd where containers in
a pod could be started through their `[Install]` section.

We add a key `StartWithPod=`, enabled by default, that enables one to
disable that behavior.

This prevents the pod service from changing the state of the container
service.

Fixes #24401

Signed-off-by: Farya L. Maerten <me@ltow.me>
2024-11-05 08:39:23 +01:00
Daniel J Walsh
c6be5a6684
Honor users requests in quadlet files
Fixes: https://github.com/containers/podman/issues/24322

Signed-off-by: Daniel J Walsh <dwalsh@redhat.com>
2024-11-04 15:08:26 -05:00
openshift-merge-bot[bot]
df41725d61
Merge pull request #24461 from edsantiago/stop-trap-timeout
CI: systests: workaround for parallel podman-stop flake
2024-11-04 18:56:59 +00:00
openshift-merge-bot[bot]
0f25d9ee15
Merge pull request #24406 from Luap99/event-api-response
fix API issue about missing the status code in the events and logs endpoints
2024-11-04 18:54:14 +00:00
openshift-merge-bot[bot]
2da164c9f2
Merge pull request #24459 from arixmkii/contrib-le
Fix inconsistent line ending in win-installer project
2024-11-04 18:48:44 +00:00
Ed Santiago
2c01264568 CI: systests: workaround for parallel podman-stop flake
Just bump up a timeout when running parallel, because of high load.

Signed-off-by: Ed Santiago <santiago@redhat.com>
2024-11-04 10:45:14 -07:00
openshift-merge-bot[bot]
2279a77303
Merge pull request #24403 from Luap99/tools-vendor
go.mod vendor: ensure we never have the toolchain directive set
2024-11-04 17:15:12 +00:00
Arthur Sengileyev
528b085438 Fix inconsistent line ending in win-installer project
Signed-off-by: Arthur Sengileyev <arthur.sengileyev@gmail.com>
2024-11-04 16:56:20 +02:00
openshift-merge-bot[bot]
63b577e03e
Merge pull request #24450 from containers/renovate/github.com-opencontainers-runc-1.x
fix(deps): update module github.com/opencontainers/runc to v1.2.1
2024-11-04 11:56:08 +00:00
openshift-merge-bot[bot]
9b8b2bf684
Merge pull request #24449 from ygalblum/quadlet-mount-image
Quadlet - support image file based mount in container file
2024-11-04 10:20:33 +00:00
renovate[bot]
5ae5ab8c26
fix(deps): update module github.com/opencontainers/runc to v1.2.1
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-11-02 00:04:36 +00:00
openshift-merge-bot[bot]
7567cc1fcd
Merge pull request #24421 from Luap99/podman-clean-transient
make podman-clean-transient.service work as user
2024-11-01 22:34:10 +00:00
openshift-merge-bot[bot]
a109f22eec
Merge pull request #24431 from ntrrgc/2024-10-31-doc-interactive
doc: explain --interactive in more detail
2024-11-01 22:31:26 +00:00
Ygal Blum
dbfc8cccda Quadlet - support image file based mount in container file
Signed-off-by: Ygal Blum <ygal.blum@gmail.com>
2024-11-01 16:20:23 -04:00
Paul Holzinger
e6d987882e
API: container logs flush status code
API clients expect the status code quickly otherwise they can time out.
If we do not flush we may not write the header immediately and only when
futher logs are send.

Fixes #23712

Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-01 18:54:13 +01:00
Paul Holzinger
768ad8653a
rework event code to improve API errors
One of the problems with the Events() API was that you had to call it in
a new goroutine. This meant the the error returned by it had to be read
back via a second channel. This cuased other bugs in the past but here
the biggest problem is that basic errors such as invalid since/until
options were not directly returned to the caller.
It meant in the API we were not able to write http code 200 quickly
because we always waited for the first event or error from the
channels. This in turn made some clients not happy as they assume the
server hangs on time out if no such events are generated.

To fix this we resturcture the entire event flow. First we spawn the
goroutine inside the eventer Read() function so not all the callers have
to. Then we can return the basic error quickly without the goroutine.
The caller then checks the error like any normal function and the API
can use this one to decide which status code to return.
Second we now return errors/event in one channel then the callers can
decide to ignore or log them which makes it a bit more clear.

Fixes c46884aa93 ("podman events: check for an error after we finish reading events")
Fixes #23712

Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-01 18:54:13 +01:00
Paul Holzinger
e3abf5c9e8
events: remove memory eventer
This type is unsused, undocumented and basically broken. If this would
be used anywhere it will just deadlock after writing 100+ events without
reading as the channel will just be full.

It was added in commit 8da5f3f733 but never used there nor is there any
justification why this was added in the commit message or PR comments.

Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-01 18:53:09 +01:00
Paul Holzinger
6348778348
libpod: log file use Wait() over event API
Using the internal Wait() API over the events API as this is much more
efficient. Reading events will need to read a lot of data otherwise.

For the function here it should work fine and it is even better as it
does not depend on the event logger at all.

Signed-off-by: Paul Holzinger <pholzing@redhat.com>
2024-11-01 18:53:08 +01:00