0.36.0 (2024-12-20)
0.35.5 (2024-12-10)
- kyverno lint for umc-gateway (6f96380)
0.35.4 (2024-12-03)
- add missing update strategy (ae0ee31)
0.35.3 (2024-12-03)
- kubernetes warning (8b0b88b)
0.35.2 (2024-11-28)
- probes (051f763)
0.35.1 (2024-11-27)
- add a systemExtension to the linter_values.yaml file (57f451d)
- Kyverno lint (58e942b)
- make probes optional (166b09d)
- sssd probes (35de8aa)
0.35.0 (2024-11-21)
- migrate component secret (849525d)
0.34.3 (2024-11-01)
- umc-gateway: make univention-web-* packages appear in SBOM, so the license information is shown (7685861)
0.34.2 (2024-10-15)
- umc-server: Build umc-server with erratum 1133 to fix selfservice dos (0a6a1fe), closes univention/customers/dataport/team-souvap#880
0.34.1 (2024-10-09)
- fix ingress paths (8f5812e)
0.34.0 (2024-10-02)
- add patch for replacing PAM login with UDM login for password change (bbb3376)
0.33.0 (2024-09-26)
- ci: enable malware scanning, disable sbom generation (0b5ea87)
0.32.0 (2024-09-23)
- enforce conversion of all profile pictures to JPEG (1fcbd39)
0.31.1 (2024-09-18)
- umc-server: specify unwanted configuration (37a8983)
0.31.0 (2024-09-16)
- update UCS base image to 2024-09-09 (805bee9)
0.30.0 (2024-09-10)
- umc-gateway: disable plain UMC login (b5103f6)
0.29.0 (2024-09-03)
- changes relating to BSI compliance (a005474)
- run umc-gateway as non privileged user with ro fs (f92ee32)
- move entrypoint execution to init container (2a1011e)
- move sed call from stack-data entrypoint script to Dockerfile (e6f7350)
- set emtpyDir medium to Memory where applicable, unify securityContexts where possible, remove development artifacts (7aa4aeb)
- set permissions for files and directories created in Dockerfile (996b545)
- use container port 8080 instead of 80 to support running as non-root user (148e54e)
0.28.0 (2024-08-28)
- unify UCR configuration (124e13e)
0.27.2 (2024-08-27)
- remove license patch (6580190)
0.27.1 (2024-08-27)
- do not watch the configuration file for live updates (1fbfc3b)
0.27.0 (2024-08-21)
- umc-server: Add certManager template for ingress (7c8423e)
0.26.0 (2024-08-19)
- umc-server: Session stickyness (a7bcd05)
0.25.0 (2024-08-15)
- umc-gateway: Add certManager template for ingress (2e1c1f5)
0.24.1 (2024-07-16)
- remove UMC title patch, now set via UCR (3f39276)
0.24.0 (2024-07-11)
- cors headers for umc-gateway (6801d3b)
0.23.0 (2024-07-10)
- remove license patch (484336e)
0.22.4 (2024-07-10)
- silence uldap warning of missing appcenter attribute mapping file (0f16e38)
0.22.3 (2024-07-09)
- change containers order so logs and shells default to it (390da3f)
0.22.2 (2024-07-09)
- extraVolumeMounts for sssd (ca1adc7)
0.22.1 (2024-07-09)
- Helm: Change default value of smtpSecretFile (69678b8)
0.22.0 (2024-07-09)
- umc-gateway: migrate umc-gateway to ucs-base-520 (f21ce51)
- umc-server: migrate umc-server to ucs-base-520 (5afd209)
0.21.0 (2024-07-09)
- adjust ingress configuration to support Nubus deployment without stack-gateway or centralized ingress configuration (78c9a87)
0.20.0 (2024-07-05)
- make content of password reset email customizable (6b4bb25)
0.19.0 (2024-07-05)
- Add support for dynamic extension configuration (0f1d0c0)
0.18.1 (2024-07-03)
- create all directories and copy umc-modules (ef1cdbd)
0.18.0 (2024-07-02)
- UMC server extensions (af1e301)
0.17.0 (2024-07-02)
- remove extension load from build time (222e629)
0.16.0 (2024-06-27)
- Update ox-connector extensions (7c2332d)
0.15.1 (2024-06-25)
0.15.0 (2024-06-19)
- umc-gateway: Adjust dockerfile to new structure of portal-extension (be1c053)
- umc-server: Adjust dockerfile to new structure of portal-extensions (3077401)
- Update the portal-extensions version to 0.26.0 (f2cef06)
0.14.6 (2024-06-13)
- umc-server: certificate generation generated after declaration (c863be9)
0.14.5 (2024-05-24)
- update memcached, drop common-helm (023e80e)
0.14.4 (2024-05-24)
- Add header "X-UMC-HTTPS" into the UMC ingress configuration (6a4500f)
0.14.3 (2024-05-23)
- use global registry (5d9d831)
0.14.2 (2024-05-23)
- copyright dates (e26ef45)
0.14.1 (2024-05-20)
0.14.0 (2024-05-07)
- Copy all Python files in from "univention" (b92bdb9)
0.13.0 (2024-04-29)
- add templating of .Values.memcached.auth.existingPasswordSecret, remove unneeded templates.ldapUri (b46878a)
- changes to support the refactored umbrella values in a nubus deployment (32c01a6)
- set additional nubusTemplates, added connection parameters for future compatibility (stack-data configmap removal) (c7527a7)
- add default credentialSecret key, moved postgresql and memcached configuration to .Values, fix configMapUcrForce default, removed unneeded templates, fixed udm-rest-api cp error (e41df56)
- add support for existingPasswordSecret of bundled memcached (cd62169)
- refactored template includes, ldap and smtp secret configuration, minor bugfix (36fc76c)
- rename global definition of postgresql connection (7ae7375)
0.12.0 (2024-04-24)
- Avoid calling "apt-get update" to use fixed packages set (ac1878a)
- Use date based ucs base image (ad766b5)
- Join two consecutive RUN statements in Dockerfile of umc-server (24c205b)
- Remove unused fragment from Dockerfile of umc-server (70f7e07)
0.11.8 (2024-04-10)
- umc-server: allow configuring SMTP authentication for self-service again (196c108)
0.11.7 (2024-04-10)
- umc-server: allow printing the domainname in self-service email templates (ad47427)
0.11.6 (2024-04-05)
- allow unauthenticated connection to memcached (85a0997)
0.11.5 (2024-04-02)
- replace deployment.yaml from common-helm with chart-deployed manifest (umbrella opendesk compatibility) (0ec1711)
0.11.4 (2024-03-27)
- ci: update common-ci from v1.24.4 to v1.25.0 (85638b2)
0.11.3 (2024-03-25)
- fix umbrella/helmfile incompatible handling of imagePullSecrets (7baee4c)
0.11.2 (2024-03-19)
- update ucr reference (4e29d07)
0.11.1 (2024-03-18)
- ci: update common-ci from v1.16.2 to v1.24.4 (ce1a01b)
0.11.0 (2024-03-14)
- Drop patch to allow start_tls configuration for uldap (3bbdb74)
- Embed the Deployment template into the Helm chart of umc-server (11f0b4c)
- Update patches to reflect the current state of the errata releases (5c83054)
- Add patch to disable the cookie suffix again (663a936)
- Add patch to disable the license checking again (b7f1c2f)
- enable license check (4703170)
- integrate upstream credential handling for PostgreSQL and Memcache (44efd90)
- Provide credentials based on Secret instead of ConfigMap (bd67c71)
- Tests selfservice db and memcached secrets (1229967)
0.10.3 (2024-02-20)
- add missing python3-jwt dependency (eef79fd)
- gateway: remove python3.11 dependency as httpd was removed (29f71bb)
0.10.2 (2024-01-31)
- Correct the build configuration in docker-compose override (b470dcd)
0.10.1 (2024-01-30)
- Ensure that "univention.logging" is available in the final image (882dca4)
0.10.0 (2024-01-30)
- umc-server: caCert, certPem and privateKey are not expected to be base64 encoded (10bf583)
- umc-server: Generate a self-signed certificate for SAML if none is provided (c7cd200)
- umc-server: Define attributes in Secret via "stringData" (8072dfd)
0.9.0 (2024-01-22)
- Change version requirements for common to "0.*" (bb2e508)
- Remove alias for dependency "common" (a705f0d)
- Remove memcached password from default configuration (80a4a05)
- umc-server: Compress linter_values.yaml to needed values (f0be680)
- umc-server: Downgrade bundled memcached for compatibility (24321fd)
- umc-server: Downgrade the bundled postgresql for compatibility reasons (3a45bb4)
- umc-server: Expect ldapSecret and machineSecret without b64 encoding (cee52a5)
- umc-server: Reduce defaults for liveness and readiness probes (ed63257)
- umc-server: Reduce initial delay of probes (d1de77e)
- umc-server: Remove default values for postgresql secrets (1188f35)
- umc-server: Update common-helm to version 0.6.0 (d322774)
- umc-gateway: Use the knut registry by default (e14ae8f)
- umc-server: Use the knut registry by default (a15b90e)
0.8.0 (2024-01-18)
- ci: add debian update check jobs for scheduled pipeline (187c2df)
- deps: add renovate.json (896731f)
0.7.3 (2023-12-28)
- licensing/ci: add spdx license headers, add license header checking pre-commit (10e1dad)
0.7.2 (2023-12-21)
- umc-gateway: entrypoint scripts should not break if an env value is unset (2bd1e91)
0.7.1 (2023-12-21)
- docker: update ucs-base from 5.0-5 to 5.0-6 (8a733b7)
0.7.0 (2023-12-18)
- make the umc html title configurable (8bead8a)
0.6.4 (2023-12-18)
- ci: add Helm chart signing and publishing to souvap via OCI, common-ci 1.12.x (0ea6509)
0.6.3 (2023-12-11)
- ci: reference common-ci v1.11.x to push sbom and signature to souvap (022c99b)
0.6.2 (2023-12-05)
- server: skip SingleLogoutService via SOAP, even when advertised, because umc-server cannot deal with it (0aff4da)
0.6.1 (2023-11-24)
- server: allow set/password without Kerberos or PAM (571653e)
0.6.0 (2023-11-21)
- server: allow configuring self-service smtp host (8ad73dd)
- docker: include SASL library for memcached authorization (c7f4a08)
- helm: allow using memcached without authentication (210408f)
0.5.1 (2023-11-17)
- gateway: Set content security policy for self-service pages (c6409e8)
- helm: Gateway serves /self-service now (f02fbb1)
0.5.0 (2023-11-15)
- add self-service backend and frontend data (298b186)
0.4.1 (2023-11-15)
- helm: .Values.global.configMapUcrForced is unset by default (a6bfc04)
0.4.0 (2023-11-14)
0.3.5 (2023-11-09)
- Revert "chore: set souvap Group as codeowner" (f5660c9)
0.3.4 (2023-11-09)
- server: bump ox-connector dependencies for upstream fixes (e3b3234)
0.3.3 (2023-11-08)
- server: ox-connector missing dependencies for portal tiles (da13af3)
0.3.2 (2023-11-06)
- docker: bump common-ci to build latest image (2c17c4a)
0.3.1 (2023-11-06)
- umc-server: fix SAML via HTTP (not HTTPS) for dev-env (ba550f7)
0.3.0 (2023-11-03)
- server: added ox-connector xml (3a04952)
0.2.1 (2023-11-03)
- versions: produce version-tagged Docker images (03756e4)