Automated cherry pick of #18529: azure: Bump azure-cloud-controller-manager to v1.36.2 - #18531
Merged
kubernetes-prow[bot] merged 3 commits intoJul 3, 2026
Conversation
…atch "Update CCM pods to tolerate all taints" hand-edited the generated k8s-1.31.yaml.template to set the cloud-controller-manager and cloud-node-manager tolerations to a single "operator: Exists". That override lived only in the template, not in any kustomize input, so regenerate.sh reverted it to the chart's default tolerations and would silently drop the override on the next regeneration. Move the override into the kustomization.yaml patches block so regenerate.sh reproduces it. The rendered template is unchanged.
cloud-provider-azure stopped publishing images to
mcr.microsoft.com/oss/kubernetes after v1.34.3 and now publishes to
mcr.microsoft.com/oss/v2/kubernetes, which the upstream Helm chart
selects for Kubernetes 1.32 and newer. Switch the cloud-controller-manager
and cloud-node-manager image defaults to the oss/v2 path so kOps can
track current releases, and bump both from v1.34.3 to v1.36.2.
Also bump the pinned Helm chart from 1.34.5 to 1.36.0 to keep the chart
minor aligned with the image minor. The rendered manifest is unchanged:
the chart's Deployment and DaemonSet templates are identical between the
two versions, and kOps patches the image fields out with the
{{ .ExternalCloudControllerManager.* }} placeholders.
Notable upstream changes since v1.34.3:
- New service.beta.kubernetes.io/azure-disable-load-balancer-nsg-rule
annotation to skip CCM-managed LoadBalancer NSG rules.
- External LoadBalancer Services with an invalid or non-public pinned IP
now fail fast instead of listing Public IPs.
- Multiple standard load balancer fixes: backend pool IP deduplication,
serialized backend pool updates, and IP sharing across services.
- Network-isolated clusters always use the managed identity credential.
- ACR credential provider adds KSA-based authentication.
Release notes:
https://github.com/kubernetes-sigs/cloud-provider-azure/releases
Member
Author
Contributor
|
[APPROVALNOTIFIER] This PR is APPROVED This pull-request has been approved by: hakman The full list of commands accepted by this bot can be found here. The pull request process is described here DetailsNeeds approval from an approver in each of these files:
Approvers can indicate their approval by writing |
Member
|
/lgtm |
social4hyq
pushed a commit
to social4hyq/homebrew-core
that referenced
this pull request
Sep 20, 2026
kops 1.36.0 Created-by: HarmonybrewBot Commit-by: HarmonybrewBot Merged-by: HarmonybrewBot Description: Created by `brew bump` --- Created with `brew bump-formula-pr`.<details> <summary>release notes</summary> <pre>See the full [kOps 1.36 release notes](https://kops.sigs.k8s.io/releases/1.36-notes/) for details, including breaking changes and deprecations. ## Highlights * **Kubernetes 1.36 support** and completion of the move away from the in-tree cloud providers * **Reworked addon management**: `kops-channels` now runs as a static pod on control-plane nodes; the standalone `channels` binary is no longer distributed * **Hybrid bootstrap for gossip clusters**: workers bootstrap directly against the API load balancer, easing migration off gossip DNS, which is deprecated * **Karpenter refresh**: Karpenter v1.13.0 with kOps-managed `EC2NodeClass` and `NodePool` objects per instance group * **etcd-manager improvements**: recovery of members with replaced data disks, membership changes resilient to unreachable members, a distroless image, and faster single-member cluster startup * **Expanded Azure support**: cloud-controller-manager, Azure Disk CSI driver, and experimental Terraform target * **Hetzner Cluster Autoscaler support** and groundwork for Linode (Akamai) as a new cloud provider * **Component updates**: containerd v2.2.4, etcd-manager v3.0.20260707 with etcd 3.5.31/3.6.12, AWS Load Balancer Controller v3.3.0, Cilium tunables, CoreDNS v1.14.2, cluster-autoscaler v1.36.0 * **Removed**: support for Kubernetes 1.30, etcd 3.4, Amazon Linux 2, Ubuntu 20.04, and Debian 10 ## What's Changed * Automated cherry pick of #18467: aws: Reconcile target group health check changes on existing target groups by @hakman in kubernetes/kops#18469 * Automated cherry pick of #18484: gce: emit kops.k8s.io/instancegroup node label by @rifelpet in kubernetes/kops#18488 * Automated cherry pick of #18478: nodeup: load ip_set module and disable firewalld on RHEL10 by @rifelpet in kubernetes/kops#18492 * Automated cherry pick of #18498: Remove namespace from DO ClusterRole by @rifelpet in kubernetes/kops#18499 * Automated cherry pick of #18511: Allow setting missing slice elements from the command line by @hakman in kubernetes/kops#18512 * Automated cherry pick of ##18479: Upgrade Karpenter to v1.13.0 ##18486: Register Karpenter nodes with karpenter.sh/unregistered taint ##18487: Add missing EC2 read permissions to Karpenter IAM policy ##18497: Add managed Karpenter EC2NodeClass and NodePool by @hakman in kubernetes/kops#18513 * Automated cherry pick of #18522: azure: Scope nodes-to-API NSG rules to the NAT gateway public IP by @hakman in kubernetes/kops#18523 * Automated cherry pick of #18527: azure: Bump azuredisk-csi-driver to v1.34.4 by @hakman in kubernetes/kops#18528 * Automated cherry pick of #18529: azure: Bump azure-cloud-controller-manager to v1.36.2 by @hakman in kubernetes/kops#18531 * Automated cherry pick of #18533: azure: Grant control-plane VMSS Contributor instead of Owner by @hakman in kubernetes/kops#18534 * Automated cherry pick of #18535: coredns: Honor node taints in hostname topologySpreadConstraint by @hakman in kubernetes/kops#18536 * Automated cherry pick of #18538: hetzner: fix Cluster Autoscaler node group membership by @hakman in kubernetes/kops#18539 * Automated cherry pick of #18541: Update cluster-autoscaler to v1.36.0 by @hakman in kubernetes/kops#18542 * Automated cherry pick of #18543: gce: register all zonal MIGs of a multi-zone instance group with cluster-autoscaler by @hakman in kubernetes/kops#18544 * Automated cherry pick of #18546: Update Go to 1.26.5 and bump golang.org/x modules by @hakman in kubernetes/kops#18547 * Cherry pick of #18560: etcd-manager: upgrade to v3.0.20260707 by @hakman in kubernetes/kops#18561 * Automated cherry pick of #18556: feat(api): add storageInitializationTimeout to KubeAPIServerConfig by @hakman in kubernetes/kops#18558 * Cherry pick of #18549: Replace fi.PtrTo with new() builtin by @hakman in kubernetes/kops#18551 * Automated cherry pick of #18567: dns-controller: always apply the addon, empty when unused by @hakman in kubernetes/kops#18573 * Release 1.36.0 by @hakman in kubernetes/kops#18591 **Full Changelog**: https://github.com/kubernetes/kops/compare/v1.36.0-beta.1...v1.36.0</pre> <p>View the full release notes at <a href="/sitelet?url=https%3A%2F%2Fgithub.com%2Fkubernetes%2Fkops%2Fpull%2F%253Ca%2520href%3D"https://github.com/kubernetes/kops/releases/tag/v1.36.0">https://github.com/kubernetes/kops/releases/tag/v1.36.0</a>.</p">https://github.com/kubernetes/kops/releases/tag/v1.36.0">https://github.com/kubernetes/kops/releases/tag/v1.36.0</a>.</p> </details> <hr> See merge request: Harmonybrew/homebrew-core!14334
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Cherry pick of #18529 on release-1.36.
#18529: azure: Bump azure-cloud-controller-manager to v1.36.2
For details on the cherry pick process, see the cherry pick requests page.
What type of PR is this?