github.com/verrazzano/verrazzano@v1.7.1/CHANGES.md (about)

     1  ### v1.7.1
     2  
     3  Component version updates:
     4  
     5  - Coherence Operator v3.3.2
     6  - Rancher v2.7.8
     7  - WebLogic Kubernetes Operator v4.1.4
     8  - WebLogic Monitoring Exporter v2.1.8
     9  - Istio v1.19.3
    10  - Redis v7.0.15
    11  
    12  Features:
    13  
    14  - Added an `export oam` option to the VZ CLI to export the Kubernetes objects created for a deployed OAM application.
    15  
    16  Fixes:
    17  
    18  - Fixed an issue with ArgoCD SSO with Keycloak using Let's Encrypt staging certificates
    19  
    20  ### v1.7.0
    21  Component version updates:
    22  
    23  - ArgoCD v2.8.3
    24  - WebLogic Kubernetes Operator v4.1.2
    25  - WebLogic Monitoring Exporter v2.1.5
    26  - Thanos v0.32.2 (includes support for OKE Workload Identities)
    27  - Kube State Metrics v2.10.0
    28  - NGINX Prometheus Exporter v0.11.0
    29  - Prometheus Pushgateway v1.6.2
    30  - Prometheus Node Exporter v1.6.1
    31  - Alertmanager v0.26.0
    32  - Istio v1.19.0
    33  
    34  Features:
    35  
    36  - Added OKEQuickCreate custom resource to support ease-of-use when creating OKE clusters on OCI.
    37  - Added OCNEOCIQuickCreate custom resource to support ease-of-use when creating OCNE clusters on OCI.
    38  - Enabled status updates for Istio reconciled objects
    39  - Support for Thanos Ruler and Compactor
    40  - Prometheus rules in the kube-prometheus-stack and Thanos Helm charts are enabled by default
    41  - Added Prometheus alerting rules for Verrazzano operators
    42  - Added progress flag in vz cli, which shows components installation progress in real time.
    43  
    44  ### v1.6.4
    45  
    46  Component version updates:
    47  
    48  - Istio v1.17.2
    49  - Rancher v2.7.5
    50  - Kiali v1.66.1
    51  
    52  Fixes:
    53  
    54  - Fixed issue provisioning OCNE workload clusters via Rancher UI when using Let's Encrypt Staging certs
    55  
    56  
    57  ### v1.6.1
    58  Features:
    59  
    60  - Enabled Alertmanager UI 
    61  
    62  Component version updates:
    63  
    64  - Alertmanager 0.25.0
    65  - WebLogic Kubernetes Operator v4.1.0
    66  - WebLogic Monitoring Exporter v2.1.4
    67  
    68  Fixes:
    69  
    70  - Re-enabled the startupapicheck job in cert-manager startup.
    71  
    72  ### v1.6.0
    73  Features:
    74  
    75  - The Prometheus components can now be enabled or disabled at any point in the Verrazzano lifecycle
    76  - Added a None profile that comes with all components disabled by default
    77  - Added Thanos, which supports high availability and long-term storage on top of Prometheus
    78  - Enhanced the Verrazzano CLI to support installing and upgrading from a private registry and in air-gapped environments
    79  - Added support for Kubernetes v1.25 and v1.26, and dropped support of Kubernetes v1.21, v1.22 and v1.23
    80  - Added Fluent Operator to allow use of Fluent Bit for log processing, but it will be disabled by default
    81  - Customer-managed Cert-Manager instances can now be used with Verrazzano
    82  
    83  Component version updates:
    84  
    85  - Rancher v2.7.3
    86      - Rancher Partner charts and RKE2 charts are no longer bundled.
    87  - WebLogic Kubernetes Operator v4.0.6
    88  - WebLogic Monitoring Exporter v2.1.3
    89  - Jaeger v1.42.0
    90  - NGINX Ingress Controller v1.7.1
    91  - Prometheus Operator v0.64.1
    92  - Prometheus v2.44.0
    93  - kube-state-metrics v2.8.2
    94  - kube-prometheus-stack Helm chart v45.25.0
    95  - kube-state-metrics Helm chart v5.6.4
    96  
    97  Components added:
    98  - Thanos v0.30.2
    99  - Fluent Operator v2.2.0
   100  - FluentbitOpensearchOutput Helm chart v1.6.0
   101  
   102  Fixes:
   103  
   104  - Disabled the startupapicheck job in cert-manager startup.
   105  - Fixed an issue with Rancher SSO via Keycloak when using a custom CA for Verrazzano certificates
   106  - Fixed an issue where not defining the replicas for default OpenSearch node pools in the Verrazzano CR caused the pods to terminate.
   107  
   108  ### v1.5.0
   109  Features:
   110  
   111  - Separated Verrazzano Platform Operator and Verrazzano Platform Webhooks into separate deployments for scalability and resiliency.
   112  - Added component availability to Verrazzano custom resource, displayed in the resource's status printout.
   113  - Rancher clusters are automatically synchronized with VerrazzanoManagedCluster resources. Creating a cluster in Rancher results in a VMC creation and deleting a cluster in Rancher results in a VMC deletion.
   114  - Applying the Rancher cluster registration manifest to a managed cluster causes additional Verrazzano resources to automatically transfer to the managed cluster.
   115  - Grafana dashboards are now organized in folders. Added Grafana dashboards for Istio, JVM Micrometer, user applications, and Verrazzano system health.
   116  - Added Argo CD which can be used as a declarative, GitOps continuous delivery tool for deploying applications.
   117  
   118  Component version updates:
   119  
   120  - Coherence Operator v3.2.9
   121  - MySQL Server 8.0.32
   122  - oam-kubernetes-runtime 0.3.3
   123  - NGINX Ingress Controller v1.3.1
   124  - Prometheus v2.38.0
   125  - Prometheus Operator v0.59.1
   126  - External DNS v0.12.2
   127  - kube-state-metrics v2.6.0
   128  - cert-manager v1.9.1
   129  - Prometheus Adapter for Kubernetes Metrics APIs v0.10.0
   130  - Grafana v7.5.17
   131  - WebLogic Kubernetes Operator v4.0.4
   132  - WebLogic Monitoring Exporter v2.1.0
   133  - OpenSearch v2.3.0
   134  - OpenSearch Dashboards v2.3.0
   135  - Istio v1.15.3
   136  - Jaeger v1.37.0
   137  - Kiali v1.57.1
   138  - Keycloak v20.0.1
   139  
   140  Components added:
   141  - Argo CD v2.5.3
   142  - MySQL Operator 8.0.32-2.0.8
   143  
   144  Fixes:
   145  
   146  - Updated base and other images for bugs and security.
   147  - Rancher upgrade intermittently fails with errors stating that the available chart version is less than the minimum chart version for Rancher system charts.
   148  - Fixed Fluentd configuration to prevent duplication of logs in OpenSearch on Fluentd restarts or upgrade.
   149  - Fixed i/o timeout errors installing Verrazzano on a RKE2 cluster.
   150  - Fixed IngressTrait JWT related issues to allow multiple paths where one path has requestPrincipals and the other doesn't.
   151  - Fixed IngressTrait JWT so that requestPrincipals with no paths are allowed.
   152  - Fixed IngressTrait related AuthorizationPolicy cleanup when application is deleted.
   153  - Fixed Argo CD bug to allow the policy.csv field in the argocd-rbac-cm ConfigMap to be overridden.
   154  
   155  ### v1.4.0
   156  Features:
   157  
   158  - Added the Verrazzano command-line tool (CLI) for interactive installation, upgrade, uninstall, cluster analysis, and bug reporting.
   159  - Added backup and restore functionality using Velero and rancher-backup.
   160  - Added Prometheus Operator based metrics collection (using ServiceMonitors and PodMonitors) for both Verrazzano system components and applications.
   161  - Added a new API version for the Verrazzano resource, `install.verrazzano.io/v1beta1`. See the [Deprecated API Migration Guide](https://verrazzano.io/latest/docs/reference/migration/").
   162  - Verrazzano distribution `tar.gz` artifacts now include the new CLI binaries and tooling.
   163  - Replaced Elasticsearch and Kibana with OpenSearch and OpenSearch dashboards (pods, URLs, CRD fields).
   164  - Improved Rancher integration.
   165      - Added the Rancher UI-based Verrazzano console.
   166      - Keycloak SSO authentication and authorization is configured by default.
   167      - OCI drivers now are enabled by default and ready-to-use.
   168  - kube-prometheus-stack components now are enabled by default.
   169  - Improved uninstall resiliency and performance.
   170  - Added support for OCNE 1.5.x.
   171  - Added support for Kubernetes v1.24.
   172  
   173  Component version updates:
   174  
   175  - Coherence Operator v3.2.6
   176  - Istio v1.14.3
   177  - Jaeger v1.34.1
   178  - Rancher v2.6.8
   179  
   180  Components added:
   181  
   182  - Rancher Backup Operator v2.1.3
   183  - Velero v1.8.1
   184  - Velero Plugin For AWS v1.4.1
   185  
   186  Components removed:
   187  
   188  - Config Map Reload
   189  
   190  Fixes:
   191  
   192  - Resolved an issue where Verrazzano started an installation, immediately after an upgrade, but before all the components were ready.
   193  - Resolved an issue where application pods that required an Istio sidecar did not restart after an upgrade.
   194  - Resolved unnecessary temporary file cleanup for Helm overrides after installation or upgrade.
   195  - Resolved an issue with Verrazzano resource status conditions being appended as duplicates instead of updated.
   196  - Resolved an issue where Verrazzano Monitoring Operator was querying OpenSearch before it was ready.
   197  - Resolved an issue where Verrazzano Platform Operator transitioned to a ready condition before all webhook context paths were ready.
   198  - Updated base and other images to resolve CVEs.
   199  
   200  
   201  ### v1.3.5
   202  Component version updates:
   203  
   204  - WebLogic Kubernetes Operator v3.4.3
   205  
   206  ### v1.3.4
   207  Fixes:
   208  
   209  - Updated the Kiali image to fix CVEs.
   210  - Resolved an issue with Prometheus volume attachment during upgrade.
   211  
   212  Component version updates:
   213  
   214  - Rancher v2.6.6
   215  
   216  ### v1.3.3
   217  Fixes:
   218  
   219  - Fixed AuthProxy to emit access logs.
   220  - Fixed Verazzano Console intermittent failures of timing out loading application details.
   221  
   222  Component version updates:
   223  
   224  - Istio v1.13.5
   225  
   226  ### v1.3.2
   227  Fixes:
   228  
   229  - Fixed Fluentd pattern to correctly parse `severity` value from WebLogic logs.
   230  - Fixed IngressTrait to remove the deleted IngressTrait entries from the Istio Gateway.
   231  
   232  ### v1.3.1
   233  Fixes:
   234  
   235  - Resolved an issue where the Verrazzano uninstall deleted additional namespaces when deleting Rancher components.
   236  - Fixed IngressTrait controller to support Services as component workloads.
   237  - Added liveness probe for the AuthProxy NGINX server.
   238  - Added support for dynamic configuration overrides to Verrazzano components from various monitored sources, including ConfigMaps, Secrets, and Values referenced in the Verrazzano CR.
   239  - Added support for JWT authentication and authorization policy specification for applications.
   240  - Added support for Prometheus Service Monitor and Pod Monitor CRs deployed using Prometheus Operator.
   241  - Updated Keycloak image to fix CVEs.
   242  
   243  ### v1.3.0
   244  Features:
   245  
   246  - Post-installation updates: configurations for DNS, certificate management, logging, ingress, and OpenSearch cluster configuration can be updated after a Verrazzano installation.
   247  - Added Jaeger Distributed Tracing.
   248  - Support for Kubernetes v1.22 and v1.23.
   249  - kube-prometheus-stack components are now part of Verrazzano and can be enabled, these include Prometheus Operator, Alertmanager, kube-state-metrics, and such.
   250  
   251  Component version updates:
   252  
   253  - cert-manager v1.7.1
   254  - Coherence Operator 3.2.5
   255  - Istio v1.13.2
   256  - Jaeger Operator v1.32.0
   257  - Kiali v1.42.0
   258  - NGINX Ingress Controller v1.1.1
   259  - Node Exporter v1.3.1
   260  - Prometheus v2.34.0
   261  - Rancher v2.6.4
   262  - WebLogic Kubernetes Operator v3.4.0
   263  
   264  Components added:
   265  
   266  - Alertmanager v0.24.0
   267  - kube-state-metrics v2.4.2
   268  - Prometheus Adapter v0.9.1
   269  - Prometheus Operator v0.55.1
   270  - Prometheus Pushgateway v1.4.2
   271  
   272  Fixes:
   273  
   274  - Resolved an issue in the console UI with displaying multicluster applications when a managed cluster is partially registered.
   275  - Resolved an issue in the console UI with the display of the Bob's Books sample WebLogic application.
   276  - Resolved an issue with exporting WebLogic application metrics in a private registry installation of Verrazzano.
   277  
   278  ### v1.2.2
   279  Fixes:
   280  
   281  - Resolved an issue with the Grafana Dashboards for Helidon in multicluster setup.
   282  - Resolved an issue with naming the Istio Authorization Policy for the AuthProxy.
   283  - Resolved an issue with AuthProxy pods being evicted due to ephemeral storage.
   284  - Resolved an issue with the length of the cookie TTL in the ingress trait.
   285  
   286  ### v1.2.1
   287  Fixes:
   288  
   289  - Resolved an issue with upgrade when configured to use a private registry.
   290  - Resolved an issue with the public image of WebLogic Monitoring Exporter being used when a private registry is configured.
   291  - Resolved an issue with intermittent upgrade failures while upgrading from Verrazzano v1.0.2 to v1.2.0.
   292  - Resolved an issue with the console UI when viewing WebLogic applications.
   293  - Resolved an issue with the console UI when displaying an application that is targeted to a managed cluster that has not completed the registration process.
   294  - Resolved an issue with the console UI not displaying the traits for an OAM application.
   295  - Resolved an issue with the `verrazzano-application-operator` pod continually crashing and restarting.
   296  - Resolved an issue with the WebLogic workload `logHome` value being ignored and always using `/scratch/log`.
   297  - Resolved an issue with Prometheus not scraping metrics from Verrazzano managed namespaces that do not have Istio injection enabled.
   298  - The Verrazzano operators no longer have watches on resources in the `kube-system` namespace.
   299  - Updated Keycloak image to address CVEs.
   300  
   301  Known Issues:
   302  
   303  - Importing a Kubernetes v1.21 cluster into Rancher might not work properly. Rancher does not currently support Kubernetes v1.21.
   304  
   305  ### v1.2.0
   306  Features:
   307  
   308  - Logging enhancements:
   309    - Added support for Oracle Cloud Infrastructure Logging integration.
   310    - Replaced Elasticsearch and Kibana with Opensearch and Opensearch Dashboard.
   311    - Updated Opensearch `prod` profile data node configuration to 3 replicas.
   312    - Enhanced Fluentd parsing/filtering rules for Verrazzano system logs.
   313  - Added support for using `instance_principal` authorization with using Oracle Cloud Infrastructure DNS.
   314  - Added support for metrics integration with non-OAM applications.
   315  - Added support for scaling Istio gateways and setting affinity.
   316  - Added support for scaling Verrazzano AuthProxy and setting affinity.
   317  - Component version updates:
   318    - External DNS v0.10.2.
   319    - MySQL v8.0.28.
   320    - Grafana v7.5.11.
   321    - Prometheus v2.31.1.
   322    - Opensearch v1.2.3 (replaces Elasticsearch).
   323    - Opensearch Dashboards v1.2.0 (replaces Kibana).
   324    - WebLogic Kubernetes Operator v3.3.7.
   325  
   326  Fixes:
   327  
   328  - Fixed Keycloak issue creating incorrect `verrazzano-monitors` group on installation.
   329  - Fixed Verrazzano failing to uninstall in a private registry configuration due to a missing Rancher image.
   330  - Fixed Rancher installation when `tls-ca-additional` secret is not present.
   331  - Fixed Opensearch parsing errors of `trait` field.
   332  - Fixed Custom CA certificates support.
   333  - Fixed issue requeuing unsupported traits in the Verrazzano Application Operator, and updated the OAM Operator.
   334  - Aligned Helidon workload service port names with Istio conventions to avoid protocol defaulting to TCP in all cases.
   335  - Added ability to set a DestinationRule with HTTP Cookie for session affinity.
   336  
   337  Known Issues:
   338  
   339  - Importing a Kubernetes v1.21 cluster into Rancher might not work properly. Rancher does not currently support Kubernetes v1.21.
   340  
   341  ### v1.1.2
   342  Fixes:
   343  - Fixed installation to create `verrazzano-monitors` group correctly.
   344  - Fixed installation to enable network access to Prometheus for Kiali.
   345  - Updated Spring Boot example image to address CVEs.
   346  - Updated Kibana image to address CVEs.
   347  - Updated Elasticsearch image to address CVEs.
   348  - Fixed Verrazzano failing to install when specifying a custom CA certificate.
   349  - Updated Keycloak image to address CVEs.
   350  - Fixed Verrazzano failing to install when the `spec.components.certManager.certificate.acme.environment` field was set to `production` in the Verrazzano CR.
   351  - Added support for using private DNS and instance principals with Oracle Cloud Infrastructure DNS.
   352  - Fixed Verrazzano failing to uninstall in a private registry configuration due to a missing Rancher image.
   353  - Updated Verrazzano to use the Rancher v2.5.9 Helm chart.
   354  
   355  Known Issues:
   356  - Importing a Kubernetes v1.21 cluster into Rancher might not work properly. Rancher does not currently support Kubernetes v1.21.
   357  
   358  ### v1.1.1
   359  Fixes:
   360  - Elasticsearch and Keycloak images were updated to address CVEs.
   361  - Updated WebLogic Kubernetes Operator version to 3.3.7.
   362  - Minor bug fixes including updating Elasticsearch logging to avoid type collisions.
   363  - Improved cluster-dump behavior when capturing logs.
   364  - Rancher namespace is now created by default.
   365  
   366  Known Issues:
   367  - Importing a Kubernetes v1.21 cluster into Rancher might not work properly. Rancher does not currently support Kubernetes v1.21.
   368  
   369  ### v1.1.0
   370  Fixes:
   371  - Added support for Kiali.
   372  - Simplified the placement of multicluster resources.
   373  - Improved the performance of installing Verrazzano.
   374  - Added support for external Elasticsearch.
   375  - Improvements to system functions, including the authenticating proxy.
   376  - Added support in the LoggingTrait to customize application logging.
   377  - Fixed ability to register a managed cluster with Rancher when configured to use LetsEncrypt staging certificates.
   378  - Fixed Elasticsearch status yellow due to unassigned shards.
   379  - Added support for Kubernetes 1.21, dropped support of Kubernetes 1.18.
   380  - Updated several installed and supported [Software Versions]({{< relref "/docs/setup/prereqs.md" >}}).
   381  
   382  Known Issues:
   383  - Importing a Kubernetes v1.21 cluster into Rancher might not work properly. Rancher does not currently support Kubernetes v1.21.
   384  
   385  ### v1.0.4
   386  Fixes:
   387  - Elasticsearch and Spring Boot images were updated to consume log4j 2.16, to address CVE-2021-44228/CVE-2021-45046.
   388  - Keycloak image was updated to address vulnerabilities.
   389  - Minor bug fixes including fixes for capitalization in user-visible messages.
   390  
   391  ### v1.0.3
   392  Fixes:
   393  - Fix to use load balancer service external IP address for application ingress when using an external load balancer and wildcard DNS.
   394  - Fixed scraping of Prometheus metrics for WebLogic workloads on managed clusters.
   395  - Rebuilt several component images to address known issues.
   396  - Updated to the following versions:
   397      - Grafana 6.7.4.
   398      - WebLogic Kubernetes Operator 3.3.3.
   399  
   400  ### v1.0.2
   401  Fixes:
   402  - Updated CoreDNS to version 1.6.2-1.
   403  - Updated Keycloak to version 10.0.2.
   404  - Updated WebLogic Kubernetes Operator to version 3.3.2.
   405  - Updated Oracle Linux image to version 7.9.
   406  - Rebuilt several component images to address known issues.
   407  - Fixes/improvements for the analysis tool, including support for diagnosing load balancer limit reached issues.
   408  - Fixes/improvements for the install/upgrade process, including:
   409    - Install/upgrade jobs now run in the ``verrazzano-install`` namespace.
   410    - Added Rancher registration status to the VerrazzanoManagedCluster status.
   411    - Updated OKE troubleshooting URL in installation log.
   412    - Fixed ExternalIP handling during Istio install.
   413  - Fixed Elasticsearch status yellow due to unassigned_shards.
   414  - Webhook now disallows multicluster resources that are not in a VerrazzanoProject namespace.
   415  
   416  ### v1.0.1
   417  Fixes:
   418  - Updated to the following versions:
   419     - WebLogic Kubernetes Operator v3.3.0.
   420     - Coherence Operator v3.2.1.
   421     - In the Analysis Tool, `kubectl` v1.20.6-2.
   422  - Ensured ConfigMaps are deleted during uninstall.
   423  - Fixed logging pattern match issue for OKE Kubernetes v1.20.8 clusters.
   424  - Fixed multicluster log collection for Verrazzano installations using LetsEncrypt certificates.
   425  - Fixed console UI display bugs for multicluster applications.
   426  - Fixed a bug where API keys generated by the Oracle Cloud Infrastructure Console were not working correctly.
   427  
   428  ### v1.0.0
   429  Features: Updated to Rancher v2.5.9.
   430  
   431  ### v0.17.0
   432  Features:
   433  - Allow Verrazzano Monitoring Instance (VMI) replicas and memory sizes to be changed during installation for both `dev` and `prod` profiles.
   434  - When installing Verrazzano on OKE, the OKE-specific Fluentd `extraVolumeMounts` configuration is no longer required.
   435  - Updated to WebLogic Kubernetes Operator v3.2.5.
   436  
   437  Fixes:
   438  - During uninstall, delete application resources only from namespaces which are managed by Verrazzano.
   439  - During upgrade, honor the APP_OPERATOR_IMAGE override.
   440  - Fixed Keycloak installation failure when Prometheus is disabled.
   441  - Allow empty values for Helm overrides in `config.json`.
   442  
   443  ### v0.16.0
   444  Features:
   445  - Provided options to configure log volume/mount of the log collector, Fluentd, and pre-configured profiles.
   446  - Automatically enabled metrics and log capture for WebLogic domains deployed in Verrazzano.
   447  - Added security-related data/project YAML files to the Verrazzano Console, under project details.
   448  - Updated to WebLogic Kubernetes Operator v3.2.4.
   449  
   450  Fixes:
   451  - Added a fix for default metrics traits not always being injected into the `appconfig`.
   452  - Updated the timestamp in WebLogic application logs so that the time filter can be used in Kibana.
   453  - Corrected the incorrect `podSelector` in the node exporter network policy.
   454  - Fixed the DNS resolution issue due to the missing cluster section of the `coredns configmap`.
   455  - Stability improvements for the platform, tests, and examples.
   456  - Renamed the Elasticsearch fields in a multicluster registration secret to be consistent.
   457  
   458  ### v0.15.1
   459  Features:
   460  - Allow customization of Elasticsearch node sizes and topology during installation.
   461  - If `runtimeEncryptionSecret`, specified in the WebLogic domain spec, does not already exist, then create it.
   462  - Support overrides of persistent storage configuration for Elasticsearch, Kibana, Prometheus, Grafana, and Keycloak.
   463  
   464  Known Issues:
   465  - After upgrade to 0.15.1, for Verrazzano Custom Resource installed on Oracle Cloud Infrastructure Container Engine for Kubernetes (OKE), the Fluentd DaemonSet in the `verrazzano-system` namespace cannot access logs.
   466    Run following command to patch the Fluentd DaemonSet and correct the issue:
   467    ```
   468    kubectl patch -n verrazzano-system ds fluentd --patch '{"spec":{"template":{"spec":{"containers":[{"name": "fluentd","volumeMounts":[{"mountPath":"/u01/data/","name":"extravol0","readOnly":true}]}],"volumes":[{"hostPath":{"path":"/u01/data/","type":""},"name":"extravol0"}]}}}}'
   469    ```
   470  
   471  ### v0.15.0
   472  Features:
   473  - Support for private container registries.
   474  - Secured communication between Verrazzano resources using Istio.
   475  - Updated to the following versions:
   476      - cert-manager v1.2.0.
   477      - Coherence Operator v3.1.5.
   478      - WebLogic Kubernetes Operator v3.2.3.
   479      - Node Exporter v1.0.0.
   480      - NGINX Ingress Controller v0.46.
   481      - Fluentd v1.12.3.
   482  - Added network policies for Istio.
   483  
   484  Fixes:
   485  - Stability improvements for the platform, tests, and examples.
   486  - Several fixes for scraping Prometheus metrics.
   487  - Several fixes for logging and Elasticsearch.
   488  - Replaced `keycloak.json` with dynamic realm creation.
   489  - Removed the LoggingScope CRD from the Verrazzano API.
   490  - Fixed issues related to multicluster resources being orphaned.
   491  
   492  ### v0.14.0
   493  Features:
   494  - Multicluster support for Verrazzano. Now you can:
   495      - Register participating clusters as VerrazzanoManagedClusters.
   496      - Deploy MutiClusterComponents and MultiClusterApplicationConfigurations.
   497      - Organize multicluster namespaces as VerrazzanoProjects.
   498      - Access MultiCluster Components and ApplicationConfigurations in the Verrazzano Console UI.
   499  - Changed default wildcard DNS from xip.io to nip.io.
   500  - Support for OKE clusters with private endpoints.
   501  - Support for network policies. Now you can:
   502      - Add ingress-NGINX network policies.
   503      - Add Rancher network policies.
   504      - Add NetworkPolicy support to Verrazzano projects.
   505      - Add network policies for Keycloak.
   506      - Add platform operator network policies.
   507      - Add network policies for Elasticsearch and Kibana.
   508      - Set network policies for Verrazzano operators, Console, and API proxy.
   509      - Add network policies for WebLogic Kubernetes Operator.
   510  - Changes to allow magic DNS provider to be specified (xip.io, nip.io, sslip.io).
   511  - Support service setup for multiple containers.
   512  - Enabled use of self-signed certs with Oracle Cloud Infrastructure DNS.
   513  - Support for setting DeploymentStrategy for VerrazzanoHelidonWorkload.
   514  
   515  Fixes:
   516  
   517  - Several stability improvements for the platform, tests, and examples.
   518  - Added retries around lookup of Rancher admin user.
   519  - Granted specific privileges instead of `ALL` for Keycloak user in MySQL.
   520  - Disabled the installation of the Verrazzano Console UI on managed clusters.
   521  
   522  ### v0.13.0
   523  Features:
   524  - `IngressTrait` support for explicit destination host and port.
   525  - Experimental cluster diagnostic tooling.
   526  - Grafana dashboards for `VerrazzanoHelidonWorkload`.
   527  - Now you can update application Fluentd sidecar images following a Verrazzano update.
   528  - Documented Verrazzano specific OAM workload resources.
   529  - Documented Verrazzano hardware requirements and installed software versions.
   530  
   531  Fixes:
   532  - `VerrazzanoWebLogicWorkload` and `VerrazzanoCoherenceWorkload` resources now handle updates.
   533  - Now `VerrazzanoHelidonWorkload` supports the use of the `ManualScalarTrait`.
   534  - Now you can delete a `Namespace` containing an `ApplicationConfiguration` resource.
   535  - Fixed frequent restarts of Prometheus during application deployment.
   536  - Made `verrazzano-application-operator` logging more useful and use structured logging.
   537  - Fixed Verrazzano uninstall issues.
   538  
   539  ### v0.12.0
   540  Features:
   541  - Observability stack now uses Keycloak SSO for authentication.
   542  - Istio sidecars now automatically injected when namespaces labeled `istio-injection=enabled`.
   543  - Support for Helidon applications now defined using `VerrazzanoHelidonWorkload` type.
   544  
   545  Fixes:
   546  - Fixed issues where logs were not captured from all containers in workloads with multiple containers.
   547  - Fixed issue where some resources were not cleaned up during uninstall.
   548  
   549  ### v0.11.0
   550  
   551  Features:
   552  - OAM applications are optionally deployed into an Istio service mesh.
   553  - Incremental improvements to user-facing roles.
   554  
   555  Fixes:
   556  - Fixed issue with logging when an application has multiple workload types.
   557  - Fixed metrics configuration in Spring Boot example application.
   558  
   559  ### v0.10.0
   560  
   561  **Breaking Changes**:
   562  - Model/binding files removed; now application deployment done exclusively by using Open Application Model (OAM).
   563  - Syntax changes for WebLogic and Coherence OAM workloads, now defined using `VerrazzanoCoherenceWorkload`
   564    and `VerrazzanoWebLogicWorkload` types.
   565  
   566  Features:
   567    - By default, application endpoints now use HTTPs - when using magic DNS, certificates are issued by cluster issuer, when using
   568      Oracle Cloud Infrastructure DNS certificates are issued using Let's Encrypt, or the end user can provide certificates.
   569    - Updated to Coherence Operator v3.1.3.
   570    - Updates for running Verrazzano on Kubernetes 1.19 and 1.20.
   571    - RBAC roles and role bindings created at installation.
   572    - Added instance information to status of Verrazzano custom resource; can be used to obtain instance URLs.
   573    - Updated to Istio v1.7.3.
   574  
   575  Fixes:
   576    - Reduced log level of Elasticsearch; excessive logging could have resulted in filling up disks.
   577  
   578  ### v0.9.0
   579  - Features:
   580      - Added platform support for installing Verrazzano on Kind clusters.
   581      - Log records are indexed from the OAM `appconfig` and `component` definitions using the following pattern: `namespace-appconfig-component`.
   582      - All system and curated components are now patchable.
   583      - More updates to Open Application Model (OAM) support.
   584  
   585  To enable OAM, when you install Verrazzano, specify the following in the Kubernetes manifest file for the Verrazzano custom resource:
   586  
   587  ```
   588  spec:
   589    oam:
   590      enabled: true
   591  ```
   592  
   593  
   594  ### v0.8.0
   595  - Features:
   596      - Support for two installation profiles, development (`dev`) and production (`prod`).  The production profile, which is the default, provides a 3-node Elasticsearch and persistent storage for the Verrazzano Monitoring Instance (VMI). The development profile provides a single node Elasticsearch and no persistent storage for the VMI.
   597      - The default behavior has been changed to use the system VMI for all monitoring (applications and Verrazzano components).  It is still possible to customize one of the profiles to enable the original, non-shared VMI mode.
   598      - Initial support for the Open Application Model (OAM).
   599  - Fixes:
   600      - Updated to Axios NPM package v0.21.1 to resolve a security vulnerability in the examples code.
   601  
   602  ### v.0.7.0
   603  - Features:
   604      - Ability to upgrade an existing Verrazzano installation.
   605      - Added the Verrazzano Console.
   606      - Enhanced the structure of the Verrazzano custom resource to allow more configurability.
   607      - Streamlined the secret usage for Oracle Cloud Infrastructure DNS installations.
   608  
   609  - Fixes:
   610      - Fixed bug where the Verrazzano CR `Certificate.CA` fields were being ignored.
   611      - Removed secret used for `hello-world`; `hello-world-application` image is now public in ghcr so `ImagePullSecrets` is no longer needed.
   612      - Fixed [issue #339](https://github.com/verrazzano/verrazzano/issues/339) (PRs [#208](https://github.com/verrazzano/verrazzano-operator/pull/208) & [#210](https://github.com/verrazzano/verrazzano-operator/pull/210).)
   613  
   614  ### v0.6.0
   615  - Features:
   616      - In-cluster installer which replaces client-side installation scripts.
   617      - Added installation profiles; in this release, there are two: production and development.
   618      - Verrazzano system components now emit JSON structured logs.
   619  - Fixes:
   620      - Updated Elasticsearch and Kibana versions (elasticsearch:7.6.1-20201130145440-5c76ab1) and (kibana:7.6.1-20201130145840-7717e73).
   621