rddepman: bump certManager from 1.19.4 to 1.20.0#9999
Merged
Conversation
Signed-off-by: Rancher Desktop Dependency Manager <donotuse@rancherdesktop.io>
jandubois
approved these changes
Mar 11, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
v1.20.0 (v1.20.0)
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
v1.20.0 adds alpha support for the new ListenerSet resource, adds support for Azure Private DNS; parentRefs are no longer required when using ACME with Gateway API, and OtherNames was promoted to Beta.
Changes by Kind
Feature
imagePullSecretsin thestartupapicheck-jobHelm template to enable pulling images from private registries. (build(deps): bump golangci/golangci-lint-action from 6.2.0 to 6.3.0 #8186, @mathieu-clnk)parentRefoverride annotations on the Certificate resource. (BATS: compose: Support GHCR images #8518, @hjoshi123)venafi.cert-manager.io/custom-fieldsannotation on Issuer/ClusterIssuer and use it as base with override/append capabilities on Certificate level. (E2E: RDX: Test that CORS is bypassed #8301, @k0da)acme.cert-manager.io/http01-ingress-ingressclassnameto overridehttp01.ingress.ingressClassNamefield in HTTP-01 challenge solvers. (build(deps-dev): bump sass-loader from 16.0.4 to 16.0.5 #8244, @lunarwhite)global.nodeSelectorto helm chart to perform amergeand allow for a singlenodeSelectorto be set across all services. (Dependabot: use one rule for go modules #8195, @StingRayZA)XListenerSetsfeature gate (build(deps): bump github.com/containerd/containerd from 1.7.26 to 1.7.27 in /src/go/guestagent #8394, @hjoshi123)Documentation
Bug or Regression
Add full detailed DNS-01 errors to the events attached to the Challenge, for easier debugging (build(deps-dev): bump node-gyp from 11.0.0 to 11.1.0 #8221, @wallrj-cyberark)
v1.25.5to fixCVE-2025-61727andCVE-2025-61729(rddepman: bump dockerCLI from 28.0.0 to 28.0.1 #8290, @octo-sts[bot])cert-manager. Previously, it was set depending on various factors (namespace cert-manager is installed in and/or Helm release name). (build(deps): bump semver from 7.6.3 to 7.7.0 #8162, @LiquidPL)Other (Cleanup or Flake)
XListenerSetsfeature gate toListenerSets(wsl-proxy logs grow unlimited #8501, @hjoshi123)Compare between v1.19.4 and v1.20.0