v1.30.X

Release v1.30.5+k3s1

This release updates Kubernetes to v1.30.5, and fixes a number of issues. For more details on what’s new, see the Kubernetes release notes.

Changes since v1.30.4+k3s1:

  • Testing And Secrets-Encryption Backports for 2024-09 (#10801)

    • Update to newer OS images for install testing

    • Fix caching name for e2e vagrant box

    • Remove secrets encryption controller

    • Cover edge case when on new minor release for E2E upgrade test

    • Removes deprecated alpha Secrets Encryption metrics (deprecated in 1.30, removed in 1.31)

  • Update CNI plugins version (#10818)

  • Backports for 2024-09 (#10843)

  • Fix hosts.toml header var (#10872)

  • Update to v1.30.5-k3s1 and Go 1.22.6 (#10888)

  • Update Kubernetes to v1.30.5-k3s2 (#10909)


Release v1.30.4+k3s1

This release updates Kubernetes to v1.30.4, and fixes a number of issues.

For more details on what’s new, see the Kubernetes release notes.

Changes since v1.30.3+k3s1:

  • Bump docker/docker to v25.0.6 (#10649)

  • Backports for 2024-08 release cycle (#10664)

    • Use pagination when listing large numbers of resources

    • Fix multiple issues with servicelb

    • Remove deprecated use of wait. functions

    • Wire lasso metrics up to metrics endpoint

  • Backports for August 2024 (#10671)

  • Bump containerd to v1.7.20 (#10660)

  • Add tolerations support for DaemonSet pods (#10703)

    • New Feature: Users can now define Kubernetes tolerations for ServiceLB DaemonSet directly in the svccontroller.k3s.cattle.io/tolerations annotation on services.

  • Update to v1.30.4-k3s1 and Go 1.22.5 (#10721)


Release v1.30.3+k3s1

This release updates Kubernetes to v1.30.3, and fixes a number of issues.

For more details on what’s new, see the Kubernetes release notes.

Changes since v1.30.2+k3s2:

  • Update channel server for k3s2 (#10446)

  • Set correct release channel for e2e upgrade test (#10460)

  • Backports for 2024-07 release cycle (#10497)

    • Bump k3s-root to v0.14.0

    • Bump github.com/hashicorp/go-retryablehttp from 0.7.4 to 0.7.7

    • Bump Local Path Provisioner version

    • Ensure remotedialer kubelet connections use kubelet bind address

    • Chore: Bump Trivy version

    • Add etcd s3 config secret implementation

  • July Test Backports (#10507)

  • Update to v1.30.3-k3s1 and Go 1.22.5 (#10536)

  • Fix issues loading data-dir value from env vars or dropping config files (#10596)


Release v1.30.2+k3s2

This release updates Kubernetes to v1.30.2, and fixes a number of issues.

For more details on what’s new, see the Kubernetes release notes.

Changes since v1.30.2+k3s1:

  • Update stable channel to v1.29.6+k3s1 (#10417)

  • Update flannel to v0.25.4 and fixed issue with IPv6 mask (#10422)


Release v1.30.2+k3s1

This release updates Kubernetes to v1.30.2, and fixes a number of issues.

For more details on what’s new, see the Kubernetes release notes.

Changes since v1.30.1+k3s1:

  • Fix bug when using tailscale config by file (#10074)

    • Fix bug when using vpn-auth-file in the agent

  • Add WithSkipMissing to not fail import on missing blobs (#10136)

  • Use fixed stream server bind address for cri-dockerd (#9975)

  • Switch stargz over to cri registry config_path (#9977)

  • Bump to containerd v1.7.17, etcd v3.5.13 (#10123)

  • Bump spegel version (#10118)

  • Fix issue installing artifacts from PR builds with multiple runs (#10122)

  • Fix issue with externalTrafficPolicy: Local for single-stack services on dual-stack nodes (#9963)

  • Update local-path-provisioner helper script (#9964)

  • Add support for svclb pod PriorityClassName (#10045)

    • ServiceLB now sets the priorityClassName on svclb pods to system-node-critical by default. This can be overridden on a per-service basis via the svccontroller.k3s.cattle.io/priorityclassname annotation.

  • Drop check for legacy traefik v1 chart (#9593)

    • K3s no longer automatically skips deploying traefik v2 if traefik v1 is present. All clusters should have been upgraded to v2 at some point over the last three years.

  • Update kube-router version to v2.1.2 (#10177)

  • Create ADR for branching strategy (#10147)

  • Bump minio-go to v7.0.70 (#10081)

  • Bump kine to v0.11.9 to fix pagination (#10082)

  • Update valid resolv conf (#9948)

  • Add missing kernel config check (#10100)

  • Git workflow file name correction (#10131)

    • None

  • Follow directory symlinks in auto deploying manifests (#9288) (#10049)

    • Symlinked sub-directories are now respected when scanning Auto-Deploying Manifests (AddOns)

  • Fix bug: allow helm controller set owner reference (#10048)

  • Fix go.mod (#10192)

  • Bump flannel version to v0.25.2 (#10146)

  • Test: add agent with auth file (#10119)

    • Fix bug when using vpn-auth-file in the agent

  • Add extra log in e2e tests (#10145)

  • Update channel server for may 2024 (#10137)

  • Bump klipper-helm image for tls secret support (#10187)

  • Updating the script binary_size_check to complete the command name by…​ (#9992)

  • Fix issue with k3s-etcd informers not starting (#10047)

  • Enable serving supervisor metrics (#10019)

    • --Enable-pprof can now be set on agents to enable the debug/pprof endpoints. When set, agents will listen on the supervisor port.

    • --Supervisor-metrics can now be set on servers to enable serving internal metrics on the supervisor endpoint; when set agents will listen on the supervisor port.

  • Bump alpine from 3.18 to 3.20 in /conformance (#10210)

  • Bump alpine from 3.18 to 3.20 in /package (#10211)

  • Bump ubuntu from 22.04 to 24.04 in /tests/e2e/scripts (#10040)

  • Bump Trivy version (#10039)

  • Fix netpol crash when node remains tainted uninitialized (#10073)

  • Fix issue caused by sole server marked as failed under load (#10241)

    • The embedded load-balancer will now fall back to trying all servers with health-checks ignored, if all servers have been marked unavailable due to failed health checks.

  • Add write-kubeconfig-group flag to server (#9233)

    • New flag in k3s server: --write-kubeconfig-group

  • Fix embedded mirror blocked by SAR RBAC and re-enable test (#10257)

  • Bump Local Path Provisioner version (#10268)

  • Fix: Use actual warningPeriod in certmonitor (#10271)

  • Fix bug that caused agents to bypass local loadbalancer (#10280)

  • Add ADR for support for etcd s3 config secret (#9364)

  • Add test for isValidResolvConf (#10302)

  • Add snapshot retention etcd-s3-folder fix (#10293)

  • Expand GHA golang caching to include newest release branch (#10307)

  • Fix race condition panic in loadbalancer.nextServer (#10318)

  • Fix typo, use rancher/permissions (#10296)

  • Update Kubernetes to v1.30.2 (#10349)

  • Fix agent supervisor port using apiserver port instead (#10352)

  • Fix issue that allowed multiple simultaneous snapshots to be allowed (#10372)


Release v1.30.1+k3s1

This release updates Kubernetes to v1.30.1, and fixes a number of issues.

For more details on what’s new, see the Kubernetes release notes.

Changes since v1.30.0+k3s1:


Release v1.30.0+k3s1

This release is K3S’s first in the v1.30 line. This release updates Kubernetes to v1.30.0.

For more details on what’s new, see the Kubernetes release notes.

Changes since v1.29.4+k3s1:

  • Kubernetes V1.30.0-k3s1 (#10063)

  • Update stable channel to v1.29.4+k3s1 (#10031)

  • Add E2E Split Server to Drone, support parallel testing in Drone (#9940)

  • Bump E2E opensuse leap to 15.6, fix btrfs test (#10057)

  • Remove deprecated pod-infra-container-image kubelet flag (#7409)

  • Fix e2e tests (#10061)