ChangeLog
Changes
Version 3.2.0
Improvements
- Use wforce 3.2.0 images for wforce and replfwd
- The wforce image now includes replfwd, so stop using a separate image for replfwd
- Add CI support for Kubernetes 1.34 through 1.36, drop support for Kubernetes 1.31 through 1.32
Bug Fixes
- Fix EndpointSlice handling to rebuild siblings from all EndpointSlices for a Service
- Improve EndpointSlice error handling and skip endpoints without a usable address, port, or ready state
- Do not add the
wforce-registry-secret image pull secret when registry credentials are not configured
- Set the replfwd container command explicitly
Version 3.0.0
Improvements
- Use new livez and readyz endpoints in wforce for liveness/readiness checks
- Test on K8s 1.31 to 1.33
- Use wforce 3.0.0 release images
Bug Fixes
- Fix readiness issue due to unquoted pipe symbol
Version 2.12.1
Improvements
- Add the ability to specify additional volumes to mount in wforce Pods
- Add init container to download GeoIP DBs from specific URLs
- New Helm configuration for additional volumes and GeoIP DB download
Version 2.12.0
Improvements
- Enable webserver tls and password to be specified via an external secret
- Tested on Kubernetes 1.28 through 1.30
- Use wforce and replfwd images based on alpine, which are much smaller and more secure
Bug Fixes
- Fix regex in readiness check for wforce containers
- wforce.conf: Better error checking for v6 interface existence
Version 2.10.1
New Features
- Tracking Release to include wforce and replfwd 2.10.1
Version 2.10.0
New Features
- Helm Chart to automate deployment and LCM of OX Abuse Shield in Kubernetes
- Includes amd64 images for wforce, replfwd and wforce-agent
- Tested On Kubernetes 1.21 through 1.28