queue to be emptied once a week in a team triage meeting
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags |
7267 | `error finalizing order` message is light on details |
2
|
9mo | 2mo | 9mo |
priority/important-soon
|
contributor-last recv
|
|||
6741 | ACME account private key and URI are not updated if the path of the ACME server is changed |
5
|
1y | 9mo | 1y |
lifecycle/frozen
kind/bug
priority/important-soon
|
contributor-last recv
|
|||
6709 | 1.14 Release Review |
3
|
1y | 9mo | 1y |
lifecycle/frozen
priority/important-soon
|
commented contributor-last send
|
|||
6132 |
Checklist: CNCF Graduation
|
|
2y | 8mo | 8mo |
lifecycle/frozen
priority/important-soon
|
commented member-last pr-unreviewed
|
|||
5867 |
Controller can't handle hitting request rate limits of zerossl ACME API
|
7
12
31
|
2y | 2mo | 11mo |
lifecycle/frozen
kind/bug
priority/important-soon
|
commented pr-closed pr-merged recv-q send
|
|||
5751 | Wildcard DNS domains and `cnameStrategy: Follow` don't work nicely together |
|
2y | 9mo | 2y |
lifecycle/frozen
kind/bug
priority/important-soon
|
recv recv-q
|
|||
5298 | Complete the Migration Away From Jetstack Names | 2y | 9mo | 1y |
lifecycle/frozen
kind/cleanup
priority/important-soon
|
commented member-last send
|
||||
3381 | Setup separate package for cert-manager API |
5
|
4y | 5mo | 9mo |
lifecycle/frozen
kind/feature
priority/important-soon
|
assigned assignee-updated commented contributor-last send
|
|||
2930 | Mirror to gcr.io or dockerhub |
2
28
|
5y | 3mo | 1y |
lifecycle/frozen
kind/feature
priority/important-soon
area/deploy
|
assigned assignee-updated commented contributor-last send
|
|||
2239 |
Create a CertificatePreset resource type to allow configurable defaulting
|
2
96
|
5y | 2mo | 9mo |
area/api
kind/feature
priority/backlog
priority/important-soon
|
commented pr-closed pr-unreviewed send
|
|||
1425 | The `issuer.vault.spec.caBundleSecretRef` docs are missing | 1y | 11mo |
priority/important-soon
|
||||||
955 | Document when the vault pki role required setting `require_cn=false` |
|
3y | 8mo |
priority/important-soon
|
|||||
1174 | Document the docker images and how to find them |
|
2y | 2y | 2y |
good first issue
priority/important-soon
kind/documentation
|
commented member-last send
|
|||
802 |
Spelling errors are unclear in pull request CI results and spell checker is unmaintained
|
3y | 9mo |
kind/bug
priority/important-soon
|
contributor-last pr-merged
|
|||||
195 | Document keystores | 5y | 2y | 4y |
priority/important-soon
kind/documentation
|
commented contributor-last send
|
||||
899 | Upgrading from v1.7 to v1.8 check command should exclude null. |
2
|
3y | 8mo | 8mo |
priority/important-soon
|
commented member-last pr-approved send
|
|||
174 | Add documentation for CRD conversion webhook ca injection | 5y | 4y | 4y |
help wanted
priority/important-soon
kind/documentation
|
commented member-last send
|
||||
127 | cmctl version reports only the old CRD version if I upgrade cert-manager without including the CRDs | 8mo | 8mo |
priority/important-soon
|
||||||
63 | make test prints the apiKey | 1y | 9mo | 1y |
priority/important-soon
|
recv
|
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags |
6969 | Should upgrade status managed fields from CSA to SSA when ServerSideApply feature gate enabled | 1y | 8mo | 1y |
lifecycle/frozen
kind/bug
priority/important-longterm
|
commented contributor-last send
|
||||
6820 | Ongoing dependency evaluation |
|
1y | 11mo | 1y |
lifecycle/frozen
priority/important-longterm
|
contributor-last recv
|
|||
5959 | `ImagePullBackoff` on `cm-acme-http-solver` pod, if using private registries |
20
|
2y | 8mo | 2y |
lifecycle/frozen
kind/bug
priority/important-longterm
|
commented contributor-last recv-q send
|
|||
4191 | Setting default values for Pod's "resources"? |
7
|
3y | 8mo | 8mo |
lifecycle/frozen
priority/important-longterm
|
commented contributor-last recv-q send
|
|||
2178 | Handling 'unregistering' certificates from Venafi TPP |
22
|
5y | 1y | 1y |
lifecycle/frozen
kind/feature
priority/important-longterm
area/venafi
|
commented member-last send
|
|||
4685 | Unexpected EOF during watch stream event decoding: unexpected EOF -- possibly due to api server upgrades / restarts |
11
|
3y | 11mo | 1y |
lifecycle/frozen
kind/bug
priority/important-longterm
|
commented member-last send
|
|||
4950 |
General flakiness of our end-to-end suite
|
3
|
3y | 11mo | 2y |
lifecycle/frozen
priority/important-longterm
kind/flake
|
commented member-last pr-closed pr-merged send
|
|||
1194 | Confusing paragraph - cert-manager integration. | 2y | 9mo | 2y |
documentation
priority/important-longterm
|
commented member-last send
|
||||
1186 | Document that/why we don't use Helm's CRD installation mechanism | 2y | 11mo | 11mo |
good first issue
priority/important-longterm
kind/documentation
|
assigned assignee-updated commented member-last send
|
||||
1063 |
"Securing Ingresses with Venafi" tutorial contains link to missing manifest
|
2y | 8mo | 2y |
priority/important-longterm
|
pr-merged recv
|
||||
975 | Some pages do not make it clear what the user should read next | 3y | 8mo |
priority/important-longterm
|
||||||
850 | Document available cert-manager Prometheus metrics |
|
3y | 2y | 3y |
documentation
good first issue
priority/important-longterm
|
recv recv-q similar
|
|||
401 | Bring tutorials up to date | 4y | 2y | 2y |
priority/important-longterm
|
commented member-last send
|
||||
223 | Document wildcard certificate tutorial | 5y | 4y | 5y |
priority/important-longterm
kind/documentation
|
commented contributor-last send
|
||||
129 | Increase e2e test timeouts | 1y | 9mo |
priority/important-longterm
|
||||||
83 | As cmctl user, I want to use different kubectl context on command line ( --context='kubectl-context-abc' ) |
|
1y | 11mo | 1y |
priority/important-longterm
|
recv
|
|||
98 | Document new release process for all repos | 1y | 11mo |
priority/important-longterm
|
assigned
|
|||||
38 | Set repository to be a GitHub template repository |
|
3y | 9mo | 3y |
priority/important-longterm
|
recv
|
|||
3 |
Make unit testing easier/make examples work
|
6y | 9mo | 3y |
priority/important-longterm
|
commented member-last pr-closed send
|
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags |
7741 | Certmanager attempts infinite renewals if the Issuer Certificate read from Vault has expired |
3
|
5wk | 4wk | 4wk |
kind/bug
|
commented recv
|
|||
7688 | Feature Request: Vertical Pod Autoscaler Support for cert-manager |
3
|
2mo | 2mo | 2mo |
kind/feature
|
contributor-last pr-new-commits recv recv-q
|
|||
7617 | cert-manager-webhook fails to renew it's own certificate |
11
|
3mo | 3wk | 3mo |
kind/bug
|
contributor-last recv recv-q
|
|||
7473 | Create certificate based on HTTPRoute configuration |
14
33
|
5mo | 1mo | 2mo |
kind/feature
|
commented pr-unreviewed send
|
|||
7337 |
Using 1.16.0, the ACME issuer using HTTP-01 solver with Gateway API is broken
|
39
|
8mo | 2d | 8mo |
kind/bug
priority/awaiting-more-evidence
|
commented open-milestone pr-merged recv recv-q
|
|||
6179 | CRDs shouldn't be templated in Helm |
5
28
|
2y | 3wk | 2y |
priority/backlog
lifecycle/stale
|
commented contributor-last recv recv-q
|
|||
5566 |
upload Helm charts to OCI registry and sign them with cosign
|
4
43
|
2y | 1d | 7wk |
kind/feature
|
commented pr-merged recv-q send
|
|||
6716 | leader election namespace should default to `.Release.Namespace`, not `kube-system` |
3
28
|
1y | 18d | 11mo |
lifecycle/frozen
kind/bug
triage/not-reproducible
|
commented pr-closed pr-unreviewed recv-q send
|
|||
2538 | cert-manager does not use ingress.class from Ingress annotated with cert-manager.io/cluster-issuer |
75
|
5y | 10mo | 2y |
area/api
help wanted
lifecycle/frozen
kind/feature
priority/backlog
|
commented send similar
|
|||
7652 | Helm chart: add ability to add appprotocol to port in service |
3
|
2mo | 16d | 1mo |
size/XS
release-note
kind/bug
dco-signoff: yes
ok-to-test
area/deploy
|
commented recv-q reviewed-with-comment send
|
|||
7748 | Design: "Image Configuration in Helm Chart" |
2
|
4wk | 4wk | 4wk |
size/L
release-note-none
kind/design
dco-signoff: yes
|
commented contributor-last new-commits recv-q
|
|||
583 | cert-manager with ZeroSSL | 45
|
4y | 2y | 2y |
commented send
|
||||
1696 | Create redirects for cert-manager annotations |
4
|
4wk | 1d | 2d |
dco-signoff: yes
size/XL
|
commented contributor-last new-commits recv
|
|||
588 | Add ability to monitor validity period for CAs in bundle |
4
|
2mo | 5wk | 2mo |
kind/feature
help wanted
|
contributor-last recv recv-q
|
|||
578 | feat: add toplevel enable value to helmchart |
2
|
2mo | 6wk | 2mo |
ok-to-test
size/S
needs-rebase
dco-signoff: no
|
commented contributor-last recv recv-q unreviewed
|
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags | |
7755 | cert-manager-challenges Error presenting challenge: expected array of Record | 4wk | 3wk | 4wk |
recv recv-q
|
||||||
7642 | fixes #7506: enable configurable max key/cert sizes, defaulting to original safe values introduced in #7401 | 2mo | 1d | 2mo |
release-note
size/XL
area/api
kind/bug
kind/feature
needs-ok-to-test
dco-signoff: yes
area/testing
area/deploy
|
recv recv-q unreviewed
|
|||||
7646 | Support custom ACME account key type. | 2mo | 3d | 10d |
size/L
release-note
needs-rebase
area/api
area/acme
dco-signoff: yes
ok-to-test
area/deploy
needs-kind
|
commented contributor-last new-commits recv recv-q
|
|||||
7733 | fixes #5864: cert-manager CA to issue certs after verify with CA Certs Validity |
|
5wk | 8d | 9d |
size/L
release-note
kind/bug
kind/feature
dco-signoff: yes
ok-to-test
|
commented new-commits recv recv-q
|
||||
7689 | Add Vertical Pod Autoscaler |
2
|
2mo | 10d | 6wk |
size/L
release-note
approved
kind/feature
dco-signoff: yes
ok-to-test
area/deploy
|
commented new-commits recv recv-q
|
||||
7726 | [helm] Add IPv6 rules to the default network policy | 6wk | 5wk | 6wk |
release-note
size/S
kind/feature
dco-signoff: yes
ok-to-test
area/deploy
|
contributor-last recv recv-q unreviewed
|
|||||
7728 | Add unhealthyPodEvictionPolicy to supported PDB options |
|
6wk | 6wk | 6wk |
release-note
kind/feature
needs-ok-to-test
size/M
dco-signoff: yes
area/deploy
|
contributor-last recv recv-q similar unreviewed
|
||||
7736 | feat(metrics): adding `certmanager_certificate_challenge_status` metric |
2
|
5wk | 3d | 5wk |
size/L
release-note
kind/feature
area/acme
dco-signoff: yes
area/testing
ok-to-test
area/monitoring
|
contributor-last new-commits recv recv-q
|
||||
1686 | docs: harmonize `<p>` formatting by dropping internal spaces | 5wk | 5wk | 5wk |
size/XS
dco-signoff: yes
|
assigned changes-requested contributor-last recv recv-q
|
|||||
5 previously listed items omitted: #7337 #7741 #7652 #7748 #578 |
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags |
7643 | jkspassword.txt file in secret is having default password | 2mo | 2mo | 2mo |
kind/bug
triage/needs-information
|
commented contributor-last recv recv-q
|
||||
15 | Allow data-root to be an absolute path | 4y | 2y |
kind/bug
triage/needs-information
|
contributor-last pr-reviewed-with-comment
|
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags |
53 | Support crlDistributionPoints & ocspServers | 3y | 3y | 3y |
triage/support
|
commented send
|
||||
28 | Certificate revocation from CAS Console | 4y | 4y | 4y |
triage/support
|
commented member-last send
|
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags |
7544 | Self test of domain without acme ingress ready | 4mo | 12d | 4mo |
lifecycle/rotten
|
contributor-last recv
|
||||
7511 | Issuing certificate as Secret does not exist |
3
|
4mo | 4wk | 4mo |
lifecycle/rotten
|
contributor-last recv similar
|
|||
7493 | 400 Bad response error prevents order finalization | 5mo | 3wk | 5mo |
kind/bug
lifecycle/rotten
|
contributor-last recv recv-q
|
||||
7416 | Shorter retry period for failed issuance |
3
|
7mo | 4d | 7mo |
kind/feature
lifecycle/rotten
|
contributor-last recv
|
|||
7066 | When using a keystore.p12, we need to be able to specify the name for the alias |
2
|
1y | 3wk | 11mo |
area/api
kind/feature
priority/backlog
lifecycle/rotten
|
commented contributor-last recv-q send
|
|||
5904 | Support Azure Private DNS Zones for DNS Challenge |
4
4
16
|
2y | 5d | 5wk |
kind/feature
lifecycle/rotten
|
commented contributor-last recv-q send
|
|||
7502 | Failed to call webhook with HTTPS | 5mo | 3wk | 5mo |
kind/bug
lifecycle/rotten
|
contributor-last recv
|
||||
7482 | Cert-manager-startupapicheck job failed after migration from 1.15.x --> 1.16.x |
|
5mo | 3d | 5mo |
kind/bug
lifecycle/rotten
|
contributor-last recv recv-q
|
|||
4835 | Making sure per fixture only 1 setup is active at the same time | 3y | 3d | 10mo |
release-note-none
needs-rebase
kind/bug
size/M
lifecycle/rotten
dco-signoff: yes
area/testing
|
assigned assignee-updated commented contributor-last recv-q reviewed-with-comment
|
||||
5447 | Allow extra DNS-01 propagation time to be configured |
|
2y | 3d | 10mo |
release-note
needs-rebase
size/S
kind/feature
area/acme
lifecycle/rotten
dco-signoff: yes
ok-to-test
area/acme/dns01
|
commented contributor-last open-milestone recv recv-q unreviewed
|
|||
6902 | Specify resources for acme pods per issuer | 1y | 3d | 4mo |
release-note
size/XL
needs-rebase
area/api
kind/feature
area/acme
lifecycle/rotten
dco-signoff: yes
ok-to-test
area/acme/http01
area/deploy
|
commented contributor-last recv-q reviewed-with-comment send
|
||||
6516 | First draft of e2e test to try to reproduce same domain multiple orders race condition | 2y | 17d | 5mo |
release-note-none
size/M
lifecycle/rotten
dco-signoff: yes
area/testing
ok-to-test
needs-kind
|
commented contributor-last new-commits recv-q send
|
||||
7327 | add more detailed logging when service certificate is generated |
|
8mo | 18d | 8mo |
release-note-none
lgtm
size/S
lifecycle/rotten
dco-signoff: yes
ok-to-test
needs-kind
|
approved contributor-last recv recv-q
|
|||
7383 | feat(chart): add `global.logFormat` | 7mo | 3wk | 7mo |
release-note-none
size/S
kind/feature
needs-ok-to-test
lifecycle/rotten
dco-signoff: yes
area/deploy
|
contributor-last recv recv-q unreviewed
|
||||
222 |
[Feature] - Ability to inject a CA cert into a cert-manager managed secret resource
|
15
|
2y | 7d | 2y |
lifecycle/rotten
|
commented contributor-last pr-merged recv-q send
|
|||
297 | Allow all resources to be namespaced |
4
|
1y | 7d | 1y |
lifecycle/rotten
priority/backlog
|
contributor-last recv recv-q similar
|
|||
468 | WIP: POC of dynamic authority | 7mo | 1d | 7mo |
dco-signoff: yes
size/L
do-not-merge/hold
do-not-merge/work-in-progress
needs-rebase
lifecycle/rotten
|
contributor-last recv recv-q unreviewed
|
||||
503 | feat: add option to disable cluster rbac installation | 6mo | 16d | 6mo |
dco-signoff: yes
size/M
needs-ok-to-test
needs-rebase
lifecycle/rotten
|
contributor-last recv recv-q unreviewed
|
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags |
7689 | Add Vertical Pod Autoscaler |
2
|
2mo | 10d | 6wk |
size/L
release-note
approved
kind/feature
dco-signoff: yes
ok-to-test
area/deploy
|
commented new-commits recv recv-q
|
|||
7064 | Adds certificate name key annotation validation in secret as part of post issuance policy chain |
2
|
1y | 2mo | 2mo |
size/L
release-note-none
approved
lgtm
kind/bug
dco-signoff: yes
ok-to-test
|
commented contributor-last open-milestone recv-q reviewed-with-comment send
|
ID | Au | Desc | As | Rea | Cr | Up | Re | Cmntrs | Labels | Tags | |
7521 | ClusterIssuer read caBundle from Secret | 4mo | 5d | 4mo |
size/L
release-note
needs-rebase
area/api
kind/feature
needs-ok-to-test
area/acme
dco-signoff: yes
area/deploy
|
contributor-last recv recv-q unreviewed
|
|||||
7662 | Fix the issue of webhook routes generating duplicate operation IDs | 2mo | 6d | 2mo |
do-not-merge/release-note-label-needed
needs-rebase
needs-ok-to-test
size/M
area/acme
dco-signoff: yes
needs-kind
|
contributor-last recv recv-q unreviewed
|
|||||
7614 | Lower the minimum certificate duration from 1 hour to 5 minutes | 3mo | 8d | 3mo |
release-note
size/S
area/api
kind/feature
needs-ok-to-test
lifecycle/stale
dco-signoff: yes
|
contributor-last recv recv-q unreviewed
|
|||||
7702 | Add option to only render CRDs from helm | 7wk | 8d | 7wk |
size/L
release-note
kind/feature
needs-ok-to-test
dco-signoff: yes
area/deploy
|
contributor-last recv recv-q unreviewed
|
|||||
7608 | WIP: certificate based on HTTPRoute design document | 3mo | 10d | 3mo |
size/L
release-note-none
do-not-merge/work-in-progress
kind/design
needs-ok-to-test
lifecycle/stale
dco-signoff: yes
|
contributor-last draft recv recv-q unreviewed
|
|||||
7399 | Add renew window to restrict when certificate renewal can happen | 7mo | 11d | 7mo |
size/L
release-note
needs-rebase
area/api
kind/feature
needs-ok-to-test
dco-signoff: no
area/testing
area/deploy
|
contributor-last recv recv-q unreviewed
|
|||||
7439 | helm: add checksum/config annotations | 6mo | 3wk | 6mo |
release-note-none
size/S
kind/feature
needs-ok-to-test
dco-signoff: yes
area/deploy
|
recv recv-q unreviewed
|
|||||
7583 | Support for ACME servers that don't finalize within the ACME client finalizer retry window | 3mo | 3wk | 3mo |
release-note
kind/bug
needs-ok-to-test
size/M
area/acme
dco-signoff: yes
|
recv recv-q unreviewed
|
|||||
7764 | Doc: Add leaderElection.namespace recommendation | 3wk | 3wk | 3wk |
size/XS
release-note-none
needs-ok-to-test
dco-signoff: yes
area/deploy
needs-kind
|
contributor-last recv recv-q unreviewed
|
|||||
7761 | Helm: Fix naming format of tokenrequest RBAC resources | 3wk | 3wk | 3wk |
size/XS
release-note-none
kind/cleanup
needs-ok-to-test
dco-signoff: yes
area/deploy
|
contributor-last recv recv-q unreviewed
|
|||||
7558 | feat: add (helm) global.imageRepository |
|
4mo | 4wk | 4wk |
size/L
release-note
do-not-merge/hold
kind/feature
dco-signoff: yes
area/deploy
|
commented member-last reviewed-with-comment send
|
||||
7654 | Implement fallback for git_version creation in forked environments | 2mo | 4wk | 2mo |
release-note-none
size/S
kind/cleanup
needs-ok-to-test
dco-signoff: yes
|
contributor-last recv recv-q reviewed-with-comment
|
|||||
7664 | feat: Add ClusterIssuer and Issuer metrics | 2mo | 5wk | 2mo |
size/L
release-note
kind/feature
dco-signoff: yes
ok-to-test
area/monitoring
|
contributor-last recv recv-q unreviewed
|
|||||
6977 | Set `GOMAXPROCS` and `GOMEMLIMIT` environment variables |
4
|
1y | 5wk | 11mo |
release-note
do-not-merge/hold
kind/feature
size/M
dco-signoff: yes
ok-to-test
area/deploy
|
commented contributor-last new-commits recv recv-q
|
||||
7537 | feat: Added support for unhealthyPodEvictionPolicy to PDBs | 4mo | 6wk | 4mo |
release-note
kind/feature
size/M
dco-signoff: yes
ok-to-test
area/deploy
|
contributor-last recv recv-q reviewed-with-comment similar
|
|||||
7725 | chore: allow additional properties in Helm setup #7668 |
2
|
6wk | 6wk | 6wk |
size/XS
release-note-none
needs-ok-to-test
dco-signoff: no
area/deploy
needs-kind
|
contributor-last recv recv-q unreviewed
|
||||
7263 | fix: CAA validation with CNAME record | 9mo | 6wk | 9mo |
release-note
needs-rebase
size/S
kind/bug
needs-ok-to-test
area/acme
dco-signoff: yes
area/acme/dns01
|
contributor-last recv recv-q unreviewed
|
|||||
7694 | add ability to set metadata of created service | 1mo | 1mo | 1mo |
size/L
release-note-none
area/api
do-not-merge/work-in-progress
needs-ok-to-test
area/acme
dco-signoff: no
area/acme/http01
area/deploy
needs-kind
|
contributor-last draft recv recv-q unreviewed
|
|||||
7467 | fix: ❗dns-01 route53 query change status retry timeout |
2
|
6mo | 1mo | 1mo |
release-note
size/S
kind/bug
area/acme
dco-signoff: yes
ok-to-test
area/acme/dns01
|
approved commented member-last send
|
||||
7414 | WIP: feat: API defaults for IssuerRef | 7mo | 2mo | 7mo |
release-note-none
area/api
do-not-merge/work-in-progress
size/M
dco-signoff: yes
area/deploy
needs-kind
|
contributor-last draft pushed-after-approval recv recv-q
|
|||||
7450 | Make ACME Authorization Timeout Configurable | 6mo | 2mo | 6mo |
size/L
release-note
needs-rebase
area/api
needs-ok-to-test
area/acme
dco-signoff: yes
area/deploy
needs-kind
|
commented contributor-last new-commits recv recv-q
|
|||||
7658 | 7196 order reason not set | 2mo | 2mo | 2mo |
release-note
size/S
kind/bug
kind/design
area/acme
dco-signoff: yes
ok-to-test
|
commented contributor-last recv-q send unreviewed
|
|||||
7665 | Add cookie jar to Acme client | 2mo | 2mo | 2mo |
size/XS
do-not-merge/release-note-label-needed
kind/feature
needs-ok-to-test
area/acme
dco-signoff: yes
ok-to-test
|
contributor-last recv recv-q unreviewed
|
|||||
1589 | Apply change proposed in issue 899 | 8mo | 18d |
size/XS
dco-signoff: yes
|
approved contributor-last recv-q
|
||||||
1694 | enhance restore cert-manager resources | 4wk | 4wk | 4wk |
dco-signoff: yes
size/S
|
recv recv-q unreviewed
|
|||||
1672 | WIP: docs: Add an wrap-up announcement page |
|
1mo | 7wk |
dco-signoff: yes
do-not-merge/work-in-progress
size/M
|
contributor-last draft new-commits recv-q
|
|||||
1640 | Update issuer.md | 4mo | 2mo | 2mo |
size/XS
dco-signoff: yes
|
commented member-last send unreviewed
|
|||||
1569 | wip: update cert-manager logo svg | 8mo | 2mo | 2mo |
dco-signoff: yes
size/L
do-not-merge/work-in-progress
|
commented member-last send unreviewed
|
|||||
1364 | WIP: Patch release checklist | 2y | 4mo |
dco-signoff: yes
needs-rebase
do-not-merge/work-in-progress
size/M
|
contributor-last recv-q unreviewed
|
||||||
1607 | Document Log Level settings. Document DNS01 delegation using multiple providers. | 6mo | 6mo | 6mo |
dco-signoff: yes
size/M
|
recv recv-q unreviewed
|
|||||
1611 | Update webhook troubleshooting documentation to including necessary curl command. | 6mo | 6mo | 6mo |
dco-signoff: yes
size/S
|
changes-requested contributor-last recv recv-q
|
|||||
1587 | Custom Certificate Support for cert-manager Webhook Endpoint | 8mo | 8mo | 8mo |
dco-signoff: yes
size/S
|
recv recv-q unreviewed
|
|||||
1602 | acme troubleshooting: how to fix errored challenges | 6mo | 6mo | 6mo |
size/XS
dco-signoff: yes
|
recv recv-q unreviewed
|
|||||
1197 | doc about new option default-cleanup-policy |
|
2y | 11mo | 2y |
approved
dco-signoff: yes
needs-rebase
size/M
|
commented contributor-last new-commits send
|
||||
1202 | Add section about client cert authentication for vault | 2y | 11mo | 2y |
dco-signoff: yes
do-not-merge/work-in-progress
size/M
|
commented contributor-last draft new-commits send
|
|||||
1419 | fix: TLSConfig secretName description | 1y | 1y | 1y |
dco-signoff: yes
needs-rebase
size/S
|
changes-requested commented contributor-last recv-q send
|
|||||
1450 | Docker testing and validation | 1y | 1y | 1y |
dco-signoff: yes
needs-rebase
size/M
|
contributor-last new-commits recv recv-q
|
|||||
1213 | Draft of tutorial for Google's Public CA | 2y | 1y | 2y |
dco-signoff: yes
size/L
needs-rebase
ok-to-test
|
commented contributor-last reviewed-with-comment send
|
|||||
1447 | Explain how to install cert-manager using ArgoCD |
|
1y | 1y | 1y |
dco-signoff: yes
size/L
|
commented member-last reviewed-with-comment send
|
||||
790 | Update route53.md | 3y | 2y | 2y |
dco-signoff: no
size/XS
needs-rebase
needs-ok-to-test
|
changes-requested commented member-last send
|
|||||
1075 | Move Issuer / ClusterIssuer and Certificate resource content to a sub-folder of configuration/ | 2y | 2y | 2y |
approved
dco-signoff: yes
size/L
needs-rebase
|
changes-requested commented member-last send
|
|||||
1259 | Fixed Azure Workload identity doc | 2y | 2y | 2y |
dco-signoff: yes
size/S
|
recv unreviewed
|
|||||
948 | add note to ingress class definition | 3y | 2y | 2y |
dco-signoff: no
size/XS
needs-rebase
needs-ok-to-test
|
assigned commented contributor-last send unreviewed
|
|||||
859 | Move the meetings and slack information to a separate page |
|
3y | 3y | 3y |
approved
dco-signoff: yes
needs-rebase
size/M
|
changes-requested commented member-last send
|
||||
528 | Update "Setting Nameservers for DNS01 Self Check" example | 4y | 3y | 4y |
size/XS
dco-signoff: yes
needs-rebase
needs-ok-to-test
|
contributor-last recv unreviewed
|
|||||
201 | Add publish stage for pushing OCI helm chart | 3mo | 3mo | 3mo |
dco-signoff: yes
size/XL
do-not-merge/work-in-progress
|
commented draft member-last unreviewed
|
|||||
200 | Bump the all group across 1 directory with 12 updates | 3mo | 3mo | 3mo |
dco-signoff: yes
needs-ok-to-test
size/L
dependencies
go
|
contributor-last recv recv-q unreviewed
|
|||||
17 | Add image validation for Docker architecture | 5y | 3y | 4y |
dco-signoff: yes
lgtm
size/L
needs-rebase
|
assigned assignee-updated commented contributor-last new-commits send
|
|||||
43 | No more requirement "be in the release folder" to run cmrel, remove the flag --cloudbuild | 3y | 3y |
dco-signoff: yes
approved
size/M
needs-rebase
|
contributor-last unreviewed
|
||||||
36 | Add the "cmrel update-release-branch" command | 4y | 3y | 4y |
dco-signoff: yes
approved
size/M
needs-rebase
do-not-merge/work-in-progress
|
commented contributor-last draft unreviewed
|
|||||
537 | fix: make handling of additionalAnnotations more robust |
2
|
7wk | 18d | 7wk |
dco-signoff: yes
size/XS
needs-ok-to-test
|
recv recv-q unreviewed
|
||||
517 | Add `PodDisruptionBudget` to helm chart | 3mo | 3mo | 3mo |
dco-signoff: yes
size/M
needs-ok-to-test
|
contributor-last recv recv-q unreviewed
|
|||||
469 | Add app.server.certificateDuration | 5mo | 5mo | 5mo |
dco-signoff: yes
size/M
needs-ok-to-test
|
contributor-last recv recv-q reviewed-with-comment
|
|||||
628 | Grant cert-manager RBAC to use all policies by default | 6wk | 6wk | 6wk |
dco-signoff: yes
size/M
|
commented contributor-last recv recv-q unreviewed
|
|||||
558 | feat(helm-chart): add ability to set pod level security context | 4mo | 7wk | 4mo |
dco-signoff: yes
ok-to-test
size/S
|
contributor-last recv recv-q unreviewed
|
|||||
442 | WIP: refactor: dedicated struct for building source data | 8mo | 7wk | 4mo |
dco-signoff: yes
size/L
do-not-merge/work-in-progress
needs-rebase
|
commented contributor-last draft new-commits recv recv-q
|
|||||
475 | Replace webhook validations with CEL validation |
|
7mo | 7wk | 6mo |
dco-signoff: yes
size/XL
|
commented contributor-last new-commits recv recv-q
|
||||
395 | WIP: feat: inject bundle data into configmap | 11mo | 2mo | 11mo |
dco-signoff: yes
size/L
do-not-merge/work-in-progress
|
contributor-last recv recv-q unreviewed
|
|||||
304 | Add support for PodMonitor | 1y | 5mo | 5mo |
dco-signoff: yes
size/L
needs-ok-to-test
lifecycle/frozen
|
commented contributor-last recv-q send unreviewed
|
|||||
607 | Migrate test from JKS to PKCS#12 | 7wk | 15d | 15d |
dco-signoff: yes
size/L
|
commented member-last reviewed-with-comment send
|
|||||
188 | Remove SetCertificateRequestConditionError | 6mo | 17d |
dco-signoff: yes
size/XL
|
contributor-last recv-q unreviewed
|
||||||
186 | Remove GetIssuerTypeIdentifier from Issuer API | 6mo | 17d |
dco-signoff: yes
size/L
|
contributor-last recv-q unreviewed
|
||||||
189 | Make CertificateRequestObject interface more intuitive | 6mo | 17d |
dco-signoff: yes
size/L
|
contributor-last recv-q unreviewed
|
||||||
187 | Use `metav1.Condition` instead of `cmapi.IssuerCondition` in Issuer API | 6mo | 17d |
dco-signoff: yes
size/XL
|
contributor-last new-commits recv-q
|
||||||
24 | Add conformance tests | 2y | 2y | 2y |
dco-signoff: yes
size/XXL
approved
needs-rebase
|
assigned commented contributor-last reviewed-with-comment
|
|||||
251 | PoC: Generate SPIFFE identities in csi-driver | 1y | 1y | 1y |
dco-signoff: yes
size/S
do-not-merge/work-in-progress
needs-rebase
|
commented contributor-last draft recv-q unreviewed
|
|||||
129 | Add attribute support for certificate subject |
|
2y | 1y | 2y |
dco-signoff: yes
size/L
needs-rebase
ok-to-test
|
commented contributor-last reviewed-with-comment send
|
||||
135 | Added options to all containers | 2y | 1y | 2y |
dco-signoff: yes
size/L
needs-rebase
ok-to-test
|
commented contributor-last send unreviewed
|
|||||
404 | Add support for ECDSA and Ed25519 algorithms, make key size configurable | 6wk | 6wk | 6wk |
dco-signoff: yes
size/L
needs-ok-to-test
|
contributor-last recv recv-q unreviewed
|
|||||
107 | Remove csi-driver-spiffe approver | 1y | 1y |
size/XXL
dco-signoff: no
do-not-merge/work-in-progress
needs-rebase
|
contributor-last draft unreviewed
|
||||||
193 | Add option for DNS SAN based on SA name | 8mo | 8mo |
size/L
dco-signoff: no
|
contributor-last recv-q unreviewed
|
||||||
117 | fill spec.tls.caCertificate in route with intermediate ca certificate… |
|
7mo | 4mo | 6mo |
dco-signoff: yes
size/M
needs-rebase
ok-to-test
|
commented contributor-last new-commits recv-q send
|
||||
148 | limit-namespaces for namespace-scope deployments |
|
4mo | 4mo | 4mo |
dco-signoff: no
size/S
needs-ok-to-test
|
recv recv-q unreviewed
|
||||
71 | Refactor filesystem.go and adapt tests to use a real file system | 6mo | 10d | 10d |
dco-signoff: yes
size/L
|
commented member-last reviewed-with-comment
|
|||||
58 | Upgrade golangci-lint to the latest version | 6wk | 5wk | 6wk |
dco-signoff: yes
size/M
|
contributor-last recv recv-q reviewed-with-comment
|
|||||
59 | Update dependencies and the Go version | 6wk | 5wk | 6wk |
dco-signoff: yes
size/L
|
contributor-last new-commits recv recv-q
|
|||||
293 | Add Helm chart image baking | 4wk | 4wk |
dco-signoff: yes
size/S
|
contributor-last recv-q similar unreviewed
|
||||||
55 | feat: add test module | 1y | 1y | 1y |
dco-signoff: yes
size/M
|
commented contributor-last recv reviewed-with-comment
|
|||||
104 | Add Chart image baking | 4wk | 4wk |
dco-signoff: yes
size/L
|
contributor-last recv-q similar unreviewed
|
||||||
11 | Governance: folks meaningfully contributing to the biweekly can become GitHub Members | 2y | 2y |
do-not-merge/work-in-progress
dco-signoff: yes
size/S
|
contributor-last draft unreviewed
|
||||||
64 | Add imagePullSecrets to template | 1y | 1y | 1y |
size/XS
dco-signoff: yes
needs-ok-to-test
|
contributor-last recv unreviewed
|
|||||
59 | cleanup: remove unused NOTES.txt file | 2y | 2y | 2y |
size/XS
dco-signoff: yes
needs-ok-to-test
|
contributor-last recv unreviewed
|
|||||
5 | Improve test case | 6y | 5y | 6y |
dco-signoff: no
size/L
needs-rebase
|
assigned assignee-updated commented contributor-last recv recv-q reviewed-with-comment
|
|||||
79 | Bump github.com/cert-manager/cert-manager from 1.15.1 to 1.15.4 in the go_modules group across 1 directory | 6mo | 6mo | 6mo |
size/XS
dco-signoff: yes
needs-ok-to-test
dependencies
|
contributor-last recv recv-q unreviewed
|
|||||
1 | Manage the cert-manager GitHub organisation from this repo | 1y | 10mo | 1y |
dco-signoff: yes
size/XXL
|
commented member-last unreviewed
|
|||||
4 | Add support for custom license templates | 2y | 2y |
dco-signoff: yes
size/S
|
contributor-last unreviewed
|
||||||
159 | Split certificate chain | 1y | 4mo | 4mo |
commented member-last reviewed-with-comment send
|
||||||
141 | re-adding required clusterrole permission | 1y | 4mo | 1y |
size/XS
|
recv unreviewed
|
|||||
115 | 🔒 Add support for securityContext | 2y | 9mo | 2y |
needs-rebase
|
approved commented contributor-last recv-q send
|
|||||
137 | [Helm Chart] Add env, configmap, secret and volumes support | 1y | 9mo | 1y |
needs-rebase
|
contributor-last recv recv-q unreviewed
|
|||||
78 | Update API versions to v1 |
3
|
2y | 2y | 2y |
size/L
needs-rebase
do-not-merge/hold
|
assigned assignee-updated contributor-last recv recv-q unreviewed
|
||||
143 | feat: allow creating or reusing an existing sa | 1y | 3wk | 1y |
ok-to-test
|
recv recv-q unreviewed
|
|||||
13 previously listed items omitted: #7733 #7689 #7652 #7327 #7383 #7748 #7726 #7728 #7064 #6516 #1686 #503 #578 |