feat(container): update image snapshot-controller ( 5.0.3 → 5.2.0 ) - #3330
Open
renovate[bot] wants to merge 1 commit into
Open
feat(container): update image snapshot-controller ( 5.0.3 → 5.2.0 )#3330renovate[bot] wants to merge 1 commit into
renovate[bot] wants to merge 1 commit into
Conversation
|
Path: --- /tmp/tmp.l9h2MTOuAK 2026-08-12 03:55:54.860839581 +0000
+++ /tmp/tmp.B4K3bO7W5N 2026-08-12 03:55:55.596855699 +0000
@@ -7,31 +7,6 @@
namespace: default
---
-# Source: snapshot-controller/charts/snapshot-controller/templates/serviceaccount_webhook.yaml
-apiVersion: v1
-kind: ServiceAccount
-metadata:
- name: release-name-conversion-webhook
- namespace: default
-
----
-# Source: snapshot-controller/charts/snapshot-controller/templates/crds.yaml
-# Check if the TLS secret already exists and initialize variables for later use at the top level
-
-
-
-apiVersion: v1
-kind: Secret
-metadata:
- name: release-name-conversion-webhook
- namespace: default
-type: kubernetes.io/tls
-data:
- ca.crt: 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
- tls.key: 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
- tls.crt: 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
-
----
# Source: snapshot-controller/charts/snapshot-controller/templates/crds.yaml
apiVersion: apiextensions.k8s.io/v1
kind: CustomResourceDefinition
@@ -1247,6 +1222,89 @@
- jsonPath: .metadata.creationTimestamp
name: Age
type: date
+ name: v1
+ schema:
+ openAPIV3Schema:
+ description: |-
+ VolumeGroupSnapshotClass specifies parameters that a underlying storage system
+ uses when creating a volume group snapshot. A specific VolumeGroupSnapshotClass
+ is used by specifying its name in a VolumeGroupSnapshot object.
+ VolumeGroupSnapshotClasses are non-namespaced.
+ properties:
+ apiVersion:
+ description: |-
+ APIVersion defines the versioned schema of this representation of an object.
+ Servers should convert recognized schemas to the latest internal value, and
+ may reject unrecognized values.
+ More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources
+ type: string
+ deletionPolicy:
+ description: |-
+ DeletionPolicy determines whether a VolumeGroupSnapshotContent created
+ through the VolumeGroupSnapshotClass should be deleted when its bound
+ VolumeGroupSnapshot is deleted.
+ Supported values are "Retain" and "Delete".
+ "Retain" means that the VolumeGroupSnapshotContent and its physical group
+ snapshot on underlying storage system are kept.
+ "Delete" means that the VolumeGroupSnapshotContent and its physical group
+ snapshot on underlying storage system are deleted.
+ Required.
+ enum:
+ - Delete
+ - Retain
+ type: string
+ x-kubernetes-validations:
+ - message: deletionPolicy is immutable once set
+ rule: self == oldSelf
+ driver:
+ description: |-
+ Driver is the name of the storage driver expected to handle this VolumeGroupSnapshotClass.
+ Required.
+ type: string
+ x-kubernetes-validations:
+ - message: driver is immutable once set
+ rule: self == oldSelf
+ kind:
+ description: |-
+ Kind is a string value representing the REST resource this object represents.
+ Servers may infer this from the endpoint the client submits requests to.
+ Cannot be updated.
+ In CamelCase.
+ More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds
+ type: string
+ metadata:
+ type: object
+ parameters:
+ additionalProperties:
+ type: string
+ description: |-
+ Parameters is a key-value map with storage driver specific parameters for
+ creating group snapshots.
+ These values are opaque to Kubernetes and are passed directly to the driver.
+ type: object
+ x-kubernetes-validations:
+ - message: parameters are immutable once set
+ rule: self == oldSelf
+ required:
+ - deletionPolicy
+ - driver
+ type: object
+ served: true
+ storage: false
+ subresources: {}
+ - additionalPrinterColumns:
+ - jsonPath: .driver
+ name: Driver
+ type: string
+ - description: Determines whether a VolumeGroupSnapshotContent created through the
+ VolumeGroupSnapshotClass should be deleted when its bound
+ VolumeGroupSnapshot is deleted.
+ jsonPath: .deletionPolicy
+ name: DeletionPolicy
+ type: string
+ - jsonPath: .metadata.creationTimestamp
+ name: Age
+ type: date
deprecated: true
name: v1beta1
schema:
@@ -1414,44 +1472,6 @@
- vgscs
singular: volumegroupsnapshotcontent
scope: Cluster
- conversion:
- strategy: Webhook
- webhook:
- conversionReviewVersions: [ "v1" ]
- clientConfig:
- {
- "caBundle": "LS0tLS1CRUdJTiBDRVJUSUZJQ0FURS0tLS0tCk1JSURiakNDQWxhZ0F3SUJBZ0lSQU\
- t3M2dnSUxyTUp2TWpLVVplTm16Qll3RFFZSktvWklodmNOQVFFTEJRQXcKTmpFME1ES\
- UdBMVVFQXhNcmNtVnNaV0Z6WlMxdVlXMWxMV052Ym5abGNuTnBiMjR0ZDJWaWFHOXZh\
- eTVrWldaaApkV3gwTG5OMll6QWVGdzB5TmpBNE1USXdNelUxTlRSYUZ3MHpOakE0TUR\
- rd016VTFOVFJhTURZeE5EQXlCZ05WCkJBTVRLM0psYkdWaGMyVXRibUZ0WlMxamIyNT\
- JaWEp6YVc5dUxYZGxZbWh2YjJzdVpHVm1ZWFZzZEM1emRtTXcKZ2dFaU1BMEdDU3FHU\
- 0liM0RRRUJBUVVBQTRJQkR3QXdnZ0VLQW9JQkFRREV0QzBDTHJpSVJLUEpQNG5zVXl1\
- dgp5a1dMTE5UVm94dlBQd1dJSkdDOEowd2dyODRFdnNYM3hSQTRkSkJzbkJ6OGE2OHl\
- MZ0ZpSllBNXFRZ1o2Q3paCmowMEdiOE9yTWFWeEd4NitJc20wZUgyQTFTdko4V3Q0U3\
- FRQzhIa2s4alJrTTJmZ3NmNUJ5SDZUVTFBM2xJRVEKTUR1ckJnZ3N0TXFiRmFzVHJMb\
- 3Z3Ti9TYktsNGpQbHROWDJHN2dOVkt1QTBjWUZzRE1QYUNUUHplemZWZGtWdApaVG1I\
- c1RBck8yTXNWVFI0U0ZqRjFuL2p1ZVNVc1Q3Y1pFWVRxWlp2VkRUK1dTblVjU29Ta01\
- TWnQxbkxualFkCld2elZpVGE0SU5UcFBQbGZPankzQ1JMeTBaaENaQ0FhNHVyL3pxYy\
- 9pTVJUWXRCKzg5S2Q1RmhGS25qTytRZUIKQWdNQkFBR2pkekIxTUE0R0ExVWREd0VCL\
- 3dRRUF3SUZvREFkQmdOVkhTVUVGakFVQmdnckJnRUZCUWNEQVFZSQpLd1lCQlFVSEF3\
- SXdEQVlEVlIwVEFRSC9CQUl3QURBMkJnTlZIUkVFTHpBdGdpdHlaV3hsWVhObExXNWh\
- iV1V0ClkyOXVkbVZ5YzJsdmJpMTNaV0pvYjI5ckxtUmxabUYxYkhRdWMzWmpNQTBHQ1\
- NxR1NJYjNEUUVCQ3dVQUE0SUIKQVFCNi81eXZxSk5UdDRvdE1nWUlXbWVhdnh3Y2Zod\
- 3lxUlc5WTA5T0k3cjh4eDM1Y1VEdmNYbDJDQ2prS0VLcAp1TUdtYk52bE4xbFNaTkV4\
- TEFhVDk1OUNicXIzazdwc00xeXhTTkRENHB6c0VqbEV4YUFvMDFUdmYyYVhxNHZkCll\
- XWVR1WThBKzZsRGhjeUkzN3MwR2FVaEVRL1hERUhtbEpISGptbmR6d2pGdWRvbDIwT3\
- Frd3V4YjJ2TWhXY3AKbElFOXlEWGt4NWZ4bUhKMktKZ2ZjK08xTFh1MkhIcy84Y1JYN\
- EwzaElOWGdZdG1xZ0ZwZkc0aGtBaFprVDZaNApwNVE1OFZsenlvUEVTdW9FclY3VTlG\
- KzlJc0xmTXBsc2dGejdSanFyNjFFeGpXUWNhTWRiSGZoNWJsWnlQK0JUCkFYYTQvdEE\
- 3ckxadSt6ZW03eWlnNktwagotLS0tLUVORCBDRVJUSUZJQ0FURS0tLS0tCg==",
- "service":
- {
- "name": "release-name-conversion-webhook",
- "namespace": "default",
- "path": "/convert"
- }
- }
versions:
- additionalPrinterColumns:
- description: Indicates if all the individual snapshots in the group are ready to
@@ -1488,6 +1508,333 @@
- jsonPath: .metadata.creationTimestamp
name: Age
type: date
+ name: v1
+ schema:
+ openAPIV3Schema:
+ description: |-
+ VolumeGroupSnapshotContent represents the actual "on-disk" group snapshot object
+ in the underlying storage system
+ properties:
+ apiVersion:
+ description: |-
+ APIVersion defines the versioned schema of this representation of an object.
+ Servers should convert recognized schemas to the latest internal value, and
+ may reject unrecognized values.
+ More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources
+ type: string
+ kind:
+ description: |-
+ Kind is a string value representing the REST resource this object represents.
+ Servers may infer this from the endpoint the client submits requests to.
+ Cannot be updated.
+ In CamelCase.
+ More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds
+ type: string
+ metadata:
+ type: object
+ spec:
+ description: |-
+ Spec defines properties of a VolumeGroupSnapshotContent created by the underlying storage system.
+ Required.
+ properties:
+ deletionPolicy:
+ description: |-
+ DeletionPolicy determines whether this VolumeGroupSnapshotContent and the
+ physical group snapshot on the underlying storage system should be deleted
+ when the bound VolumeGroupSnapshot is deleted.
+ Supported values are "Retain" and "Delete".
+ "Retain" means that the VolumeGroupSnapshotContent and its physical group
+ snapshot on underlying storage system are kept.
+ "Delete" means that the VolumeGroupSnapshotContent and its physical group
+ snapshot on underlying storage system are deleted.
+ For dynamically provisioned group snapshots, this field will automatically
+ be filled in by the CSI snapshotter sidecar with the "DeletionPolicy" field
+ defined in the corresponding VolumeGroupSnapshotClass.
+ For pre-existing snapshots, users MUST specify this field when creating the
+ VolumeGroupSnapshotContent object.
+ Required.
+ enum:
+ - Delete
+ - Retain
+ type: string
+ driver:
+ description: |-
+ Driver is the name of the CSI driver used to create the physical group snapshot on
+ the underlying storage system.
+ This MUST be the same as the name returned by the CSI GetPluginName() call for
+ that driver.
+ Required.
+ type: string
+ x-kubernetes-validations:
+ - message: driver is immutable once set
+ rule: self == oldSelf
+ source:
+ description: |-
+ Source specifies whether the snapshot is (or should be) dynamically provisioned
+ or already exists, and just requires a Kubernetes object representation.
+ This field is immutable after creation.
+ Required.
+ properties:
+ groupSnapshotHandles:
+ description: |-
+ GroupSnapshotHandles specifies the CSI "group_snapshot_id" of a pre-existing
+ group snapshot and a list of CSI "snapshot_id" of pre-existing snapshots
+ on the underlying storage system for which a Kubernetes object
+ representation was (or should be) created.
+ This field is immutable.
+ properties:
+ volumeGroupSnapshotHandle:
+ description: |-
+ VolumeGroupSnapshotHandle specifies the CSI "group_snapshot_id" of a pre-existing
+ group snapshot on the underlying storage system for which a Kubernetes object
+ representation was (or should be) created.
+ This field is immutable.
+ Required.
+ type: string
+ volumeSnapshotHandles:
+ description: |-
+ VolumeSnapshotHandles is a list of CSI "snapshot_id" of pre-existing
+ snapshots on the underlying storage system for which Kubernetes objects
+ representation were (or should be) created.
+ This field is immutable.
+ Required.
+ items:
+ type: string
+ type: array
+ required:
+ - volumeGroupSnapshotHandle
+ - volumeSnapshotHandles
+ type: object
+ x-kubernetes-validations:
+ - message: groupSnapshotHandles is immutable
+ rule: self == oldSelf
+ volumeHandles:
+ description: |-
+ VolumeHandles is a list of volume handles on the backend to be snapshotted
+ together. It is specified for dynamic provisioning of the VolumeGroupSnapshot.
+ This field is immutable.
+ items:
+ type: string
+ type: array
+ x-kubernetes-validations:
+ - message: volumeHandles is immutable
+ rule: self == oldSelf
+ type: object
+ x-kubernetes-validations:
+ - message: volumeHandles is required once set
+ rule: '!has(oldSelf.volumeHandles) || has(self.volumeHandles)'
+ - message: groupSnapshotHandles is required once set
+ rule: '!has(oldSelf.groupSnapshotHandles) || has(self.groupSnapshotHandles)'
+ - message: exactly one of volumeHandles and groupSnapshotHandles must be set
+ rule: (has(self.volumeHandles) && !has(self.groupSnapshotHandles)) ||
+ (!has(self.volumeHandles) &&
+ has(self.groupSnapshotHandles))
+ volumeGroupSnapshotClassName:
+ description: |-
+ VolumeGroupSnapshotClassName is the name of the VolumeGroupSnapshotClass from
+ which this group snapshot was (or will be) created.
+ Note that after provisioning, the VolumeGroupSnapshotClass may be deleted or
+ recreated with different set of values, and as such, should not be referenced
+ post-snapshot creation.
+ For dynamic provisioning, this field must be set.
+ This field may be unset for pre-provisioned snapshots.
+ type: string
+ x-kubernetes-validations:
+ - message: volumeGroupSnapshotClassName is immutable once set
+ rule: self == oldSelf
+ volumeGroupSnapshotRef:
+ description: |-
+ VolumeGroupSnapshotRef specifies the VolumeGroupSnapshot object to which this
+ VolumeGroupSnapshotContent object is bound.
+ VolumeGroupSnapshot.Spec.VolumeGroupSnapshotContentName field must reference to
+ this VolumeGroupSnapshotContent's name for the bidirectional binding to be valid.
+ For a pre-existing VolumeGroupSnapshotContent object, name and namespace of the
+ VolumeGroupSnapshot object MUST be provided for binding to happen.
+ This field is immutable after creation.
+ Required.
+ properties:
+ apiVersion:
+ description: API version of the referent.
+ type: string
+ fieldPath:
+ description: |-
+ If referring to a piece of an object instead of an entire object, this string
+ should contain a valid JSON/Go field access statement, such as desiredState.manifest.containers[2].
+ For example, if the object reference is to a container within a pod, this would take on a value like:
+ "spec.containers{name}" (where "name" refers to the name of the container that triggered
+ the event) or if no container name is specified "spec.containers[2]" (container with
+ index 2 in this pod). This syntax is chosen only to have some well-defined way of
+ referencing a part of an object.
+ TODO: this design is not final and this field is subject to change in the future.
+ type: string
+ kind:
+ description: |-
+ Kind of the referent.
+ More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds
+ type: string
+ name:
+ description: |-
+ Name of the referent.
+ More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#names
+ type: string
+ namespace:
+ description: |-
+ Namespace of the referent.
+ More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/namespaces/
+ type: string
+ resourceVersion:
+ description: |-
+ Specific resourceVersion to which this reference is made, if any.
+ More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#concurrency-control-and-consistency
+ type: string
+ uid:
+ description: |-
+ UID of the referent.
+ More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#uids
+ type: string
+ type: object
+ x-kubernetes-map-type: atomic
+ x-kubernetes-validations:
+ - message: both volumeGroupSnapshotRef.name and volumeGroupSnapshotRef.namespace
+ must be set
+ rule: has(self.name) && has(self.__namespace__)
+ - message: volumeGroupSnapshotRef.name and volumeGroupSnapshotRef.namespace are
+ immutable
+ rule: self.name == oldSelf.name && self.__namespace__ == oldSelf.__namespace__
+ - message: volumeGroupSnapshotRef.uid is immutable once set
+ rule: '!has(oldSelf.uid) || (has(self.uid) && self.uid == oldSelf.uid)'
+ required:
+ - deletionPolicy
+ - driver
+ - source
+ - volumeGroupSnapshotRef
+ type: object
+ status:
+ description: status represents the current information of a group snapshot.
+ properties:
+ creationTime:
+ description: |-
+ CreationTime is the timestamp when the point-in-time group snapshot is taken
+ by the underlying storage system.
+ If not specified, it indicates the creation time is unknown.
+ If not specified, it means the readiness of a group snapshot is unknown.
+ This field is the source for the CreationTime field in VolumeGroupSnapshotStatus
+ format: date-time
+ type: string
+ error:
+ description: |-
+ Error is the last observed error during group snapshot creation, if any.
+ Upon success after retry, this error field will be cleared.
+ properties:
+ message:
+ description: |-
+ message is a string detailing the encountered error during snapshot
+ creation if specified.
+ NOTE: message may be logged, and it should not contain sensitive
+ information.
+ type: string
+ time:
+ description: time is the timestamp when the error was encountered.
+ format: date-time
+ type: string
+ type: object
+ readyToUse:
+ description: |-
+ ReadyToUse indicates if all the individual snapshots in the group are ready to be
+ used to restore a group of volumes.
+ ReadyToUse becomes true when ReadyToUse of all individual snapshots become true.
+ type: boolean
+ volumeGroupSnapshotHandle:
+ description: |-
+ VolumeGroupSnapshotHandle is a unique id returned by the CSI driver
+ to identify the VolumeGroupSnapshot on the storage system.
+ If a storage system does not provide such an id, the
+ CSI driver can choose to return the VolumeGroupSnapshot name.
+ type: string
+ x-kubernetes-validations:
+ - message: volumeGroupSnapshotHandle is immutable once set
+ rule: self == oldSelf
+ volumeSnapshotInfoList:
+ description: |-
+ This field is introduced in v1beta2
+ It is replacing VolumeSnapshotHandlePairList
+ VolumeSnapshotInfoList is a list of snapshot information returned by
+ by the CSI driver to identify snapshots on the storage system.
+ items:
+ description: |-
+ The VolumeSnapshotInfo struct is added in v1beta2
+ VolumeSnapshotInfo contains information for a snapshot
+ properties:
+ creationTime:
+ description: |-
+ creationTime is the timestamp when the point-in-time snapshot is taken
+ by the underlying storage system.
+ format: int64
+ type: integer
+ readyToUse:
+ description: ReadyToUse indicates if the snapshot is ready to be used to restore
+ a volume.
+ type: boolean
+ restoreSize:
+ description: |-
+ RestoreSize represents the minimum size of volume required to create a volume
+ from this snapshot.
+ format: int64
+ type: integer
+ snapshotHandle:
+ description: SnapshotHandle is the CSI "snapshot_id" of this snapshot on the
+ underlying storage system.
+ type: string
+ volumeHandle:
+ description: |-
+ VolumeHandle specifies the CSI "volume_id" of the volume from which this snapshot
+ was taken from.
+ type: string
+ type: object
+ type: array
+ type: object
+ required:
+ - spec
+ type: object
+ served: true
+ storage: false
+ subresources:
+ status: {}
+ - additionalPrinterColumns:
+ - description: Indicates if all the individual snapshots in the group are ready to
+ be used to restore a group of volumes.
+ jsonPath: .status.readyToUse
+ name: ReadyToUse
+ type: boolean
+ - description: Determines whether this VolumeGroupSnapshotContent and its physical
+ group snapshot on the underlying storage system should be deleted
+ when its bound VolumeGroupSnapshot is deleted.
+ jsonPath: .spec.deletionPolicy
+ name: DeletionPolicy
+ type: string
+ - description: Name of the CSI driver used to create the physical group snapshot
+ on the underlying storage system.
+ jsonPath: .spec.driver
+ name: Driver
+ type: string
+ - description: Name of the VolumeGroupSnapshotClass from which this group snapshot
+ was (or will be) created.
+ jsonPath: .spec.volumeGroupSnapshotClassName
+ name: VolumeGroupSnapshotClass
+ type: string
+ - description: Namespace of the VolumeGroupSnapshot object to which this
+ VolumeGroupSnapshotContent object is bound.
+ jsonPath: .spec.volumeGroupSnapshotRef.namespace
+ name: VolumeGroupSnapshotNamespace
+ type: string
+ - description: Name of the VolumeGroupSnapshot object to which this
+ VolumeGroupSnapshotContent object is bound.
+ jsonPath: .spec.volumeGroupSnapshotRef.name
+ name: VolumeGroupSnapshot
+ type: string
+ - jsonPath: .metadata.creationTimestamp
+ name: Age
+ type: date
deprecated: true
name: v1beta1
schema:
@@ -2134,6 +2481,227 @@
- jsonPath: .metadata.creationTimestamp
name: Age
type: date
+ name: v1
+ schema:
+ openAPIV3Schema:
+ description: |-
+ VolumeGroupSnapshot is a user's request for creating either a point-in-time
+ group snapshot or binding to a pre-existing group snapshot.
+ properties:
+ apiVersion:
+ description: |-
+ APIVersion defines the versioned schema of this representation of an object.
+ Servers should convert recognized schemas to the latest internal value, and
+ may reject unrecognized values.
+ More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources
+ type: string
+ kind:
+ description: |-
+ Kind is a string value representing the REST resource this object represents.
+ Servers may infer this from the endpoint the client submits requests to.
+ Cannot be updated.
+ In CamelCase.
+ More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds
+ type: string
+ metadata:
+ type: object
+ spec:
+ description: |-
+ Spec defines the desired characteristics of a group snapshot requested by a user.
+ Required.
+ properties:
+ source:
+ description: |-
+ Source specifies where a group snapshot will be created from.
+ This field is immutable after creation.
+ Required.
+ properties:
+ selector:
+ description: |-
+ Selector is a label query over persistent volume claims that are to be
+ grouped together for snapshotting.
+ This labelSelector will be used to match the label added to a PVC.
+ If the label is added or removed to a volume after a group snapshot
+ is created, the existing group snapshots won't be modified.
+ Once a VolumeGroupSnapshotContent is created and the sidecar starts to process
+ it, the volume list will not change with retries.
+ properties:
+ matchExpressions:
+ description: matchExpressions is a list of label selector requirements. The
+ requirements are ANDed.
+ items:
+ description: |-
+ A label selector requirement is a selector that contains values, a key, and an operator that
+ relates the key and values.
+ properties:
+ key:
+ description: key is the label key that the selector applies to.
+ type: string
+ operator:
+ description: |-
+ operator represents a key's relationship to a set of values.
+ Valid operators are In, NotIn, Exists and DoesNotExist.
+ type: string
+ values:
+ description: |-
+ values is an array of string values. If the operator is In or NotIn,
+ the values array must be non-empty. If the operator is Exists or DoesNotExist,
+ the values array must be empty. This array is replaced during a strategic
+ merge patch.
+ items:
+ type: string
+ type: array
+ x-kubernetes-list-type: atomic
+ required:
+ - key
+ - operator
+ type: object
+ type: array
+ x-kubernetes-list-type: atomic
+ matchLabels:
+ additionalProperties:
+ type: string
+ description: |-
+ matchLabels is a map of {key,value} pairs. A single {key,value} in the matchLabels
+ map is equivalent to an element of matchExpressions, whose key field is "key", the
+ operator is "In", and the values array contains only "value". The requirements are ANDed.
+ type: object
+ type: object
+ x-kubernetes-map-type: atomic
+ x-kubernetes-validations:
+ - message: selector is immutable
+ rule: self == oldSelf
+ volumeGroupSnapshotContentName:
+ description: |-
+ VolumeGroupSnapshotContentName specifies the name of a pre-existing VolumeGroupSnapshotContent
+ object representing an existing volume group snapshot.
+ This field should be set if the volume group snapshot already exists and
+ only needs a representation in Kubernetes.
+ This field is immutable.
+ type: string
+ x-kubernetes-validations:
+ - message: volumeGroupSnapshotContentName is immutable
+ rule: self == oldSelf
+ type: object
+ x-kubernetes-validations:
+ - message: selector is required once set
+ rule: '!has(oldSelf.selector) || has(self.selector)'
+ - message: volumeGroupSnapshotContentName is required once set
+ rule: '!has(oldSelf.volumeGroupSnapshotContentName) ||
+ has(self.volumeGroupSnapshotContentName)'
+ - message: exactly one of selector and volumeGroupSnapshotContentName must be set
+ rule: (has(self.selector) && !has(self.volumeGroupSnapshotContentName)) ||
+ (!has(self.selector) &&
+ has(self.volumeGroupSnapshotContentName))
+ volumeGroupSnapshotClassName:
+ description: |-
+ VolumeGroupSnapshotClassName is the name of the VolumeGroupSnapshotClass
+ requested by the VolumeGroupSnapshot.
+ VolumeGroupSnapshotClassName may be left nil to indicate that the default
+ class will be used.
+ Empty string is not allowed for this field.
+ type: string
+ x-kubernetes-validations:
+ - message: volumeGroupSnapshotClassName must not be the empty string when set
+ rule: size(self) > 0
+ required:
+ - source
+ type: object
+ status:
+ description: |-
+ Status represents the current information of a group snapshot.
+ Consumers must verify binding between VolumeGroupSnapshot and
+ VolumeGroupSnapshotContent objects is successful (by validating that both
+ VolumeGroupSnapshot and VolumeGroupSnapshotContent point to each other) before
+ using this object.
+ properties:
+ boundVolumeGroupSnapshotContentName:
+ description: |-
+ BoundVolumeGroupSnapshotContentName is the name of the VolumeGroupSnapshotContent
+ object to which this VolumeGroupSnapshot object intends to bind to.
+ If not specified, it indicates that the VolumeGroupSnapshot object has not
+ been successfully bound to a VolumeGroupSnapshotContent object yet.
+ NOTE: To avoid possible security issues, consumers must verify binding between
+ VolumeGroupSnapshot and VolumeGroupSnapshotContent objects is successful
+ (by validating that both VolumeGroupSnapshot and VolumeGroupSnapshotContent
+ point at each other) before using this object.
+ type: string
+ x-kubernetes-validations:
+ - message: boundVolumeGroupSnapshotContentName is immutable once set
+ rule: self == oldSelf
+ creationTime:
+ description: |-
+ CreationTime is the timestamp when the point-in-time group snapshot is taken
+ by the underlying storage system.
+ If not specified, it may indicate that the creation time of the group snapshot
+ is unknown.
+ This field is updated based on the CreationTime field in VolumeGroupSnapshotContentStatus
+ format: date-time
+ type: string
+ error:
+ description: |-
+ Error is the last observed error during group snapshot creation, if any.
+ This field could be helpful to upper level controllers (i.e., application
+ controller) to decide whether they should continue on waiting for the group
+ snapshot to be created based on the type of error reported.
+ The snapshot controller will keep retrying when an error occurs during the
+ group snapshot creation. Upon success, this error field will be cleared.
+ properties:
+ message:
+ description: |-
+ message is a string detailing the encountered error during snapshot
+ creation if specified.
+ NOTE: message may be logged, and it should not contain sensitive
+ information.
+ type: string
+ time:
+ description: time is the timestamp when the error was encountered.
+ format: date-time
+ type: string
+ type: object
+ readyToUse:
+ description: |-
+ ReadyToUse indicates if all the individual snapshots in the group are ready
+ to be used to restore a group of volumes.
+ ReadyToUse becomes true when ReadyToUse of all individual snapshots become true.
+ If not specified, it means the readiness of a group snapshot is unknown.
+ type: boolean
+ type: object
+ required:
+ - spec
+ type: object
+ served: true
+ storage: false
+ subresources:
+ status: {}
+ - additionalPrinterColumns:
+ - description: Indicates if all the individual snapshots in the group are ready to
+ be used to restore a group of volumes.
+ jsonPath: .status.readyToUse
+ name: ReadyToUse
+ type: boolean
+ - description: The name of the VolumeGroupSnapshotClass requested by the
+ VolumeGroupSnapshot.
+ jsonPath: .spec.volumeGroupSnapshotClassName
+ name: VolumeGroupSnapshotClass
+ type: string
+ - description: Name of the VolumeGroupSnapshotContent object to which the
+ VolumeGroupSnapshot object intends to bind to. Please note that
+ verification of binding actually requires checking both
+ VolumeGroupSnapshot and VolumeGroupSnapshotContent to ensure both
+ are pointing at each other. Binding MUST be verified prior to usage
+ of this object.
+ jsonPath: .status.boundVolumeGroupSnapshotContentName
+ name: VolumeGroupSnapshotContent
+ type: string
+ - description: Timestamp when the point-in-time group snapshot was taken by the
+ underlying storage system.
+ jsonPath: .status.creationTime
+ name: CreationTime
+ type: date
+ - jsonPath: .metadata.creationTimestamp
+ name: Age
+ type: date
deprecated: true
name: v1beta1
schema:
@@ -2657,22 +3225,6 @@
app.kubernetes.io/instance: release-name
---
-# Source: snapshot-controller/charts/snapshot-controller/templates/service_webhook.yaml
-apiVersion: v1
-kind: Service
-metadata:
- name: release-name-conversion-webhook
- namespace: default
-spec:
- ports:
- - port: 443
- targetPort: 8443
- name: https
- selector:
- app.kubernetes.io/name: conversion-webhook
- app.kubernetes.io/instance: release-name
-
----
# Source: snapshot-controller/charts/snapshot-controller/templates/deployment_controller.yaml
apiVersion: apps/v1
kind: Deployment
@@ -2700,7 +3252,7 @@
readOnlyRootFilesystem: true
runAsNonRoot: true
runAsUser: 1000
- image: "registry.k8s.io/sig-storage/snapshot-controller:v8.5.0"
+ image: "registry.k8s.io/sig-storage/snapshot-controller:v8.6.0"
imagePullPolicy: IfNotPresent
args:
- --feature-gates=CSIVolumeGroupSnapshot=true
@@ -2731,59 +3283,9 @@
dnsPolicy: ClusterFirst
---
-# Source: snapshot-controller/charts/snapshot-controller/templates/deployment_webhook.yaml
-apiVersion: apps/v1
-kind: Deployment
-metadata:
- name: release-name-conversion-webhook
- namespace: default
-spec:
- replicas: 1
- revisionHistoryLimit: 10
- selector:
- matchLabels:
- app.kubernetes.io/name: conversion-webhook
- app.kubernetes.io/instance: release-name
- template:
- metadata: {}
- spec:
- serviceAccountName: release-name-conversion-webhook
- securityContext: {}
- containers:
- - name: "conversion-webhook"
- securityContext:
- capabilities:
- drop:
- - ALL
- readOnlyRootFilesystem: true
- runAsNonRoot: true
- runAsUser: 1000
- image: "ghcr.io/piraeusdatastore/snapshot-conversion-webhook:v8.5.0"
- imagePullPolicy: IfNotPresent
- args:
- - --port=8443
- - --tls-cert-file=/etc/webhook/tls.crt
- - --tls-private-key-file=/etc/webhook/tls.key
- ports:
- - name: https
- containerPort: 8443
- protocol: TCP
- livenessProbe:
- httpGet:
- port: https
- path: /readyz
- scheme: HTTPS
- resources: {}
- volumeMounts:
- - name: tls
- mountPath: /etc/webhook
- readOnly: true
- hostNetwork: false
- dnsPolicy: ClusterFirst
- volumes:
- - name: tls
- secret:
- secretName: release-name-conversion-webhook
+
+# Source: snapshot-controller/charts/snapshot-controller/templates/crds.yaml
+# Check if the TLS secret already exists and initialize variables for later use at the top level
--- |
renovate
Bot
force-pushed
the
renovate/snapshot-controller-5.x
branch
2 times, most recently
from
May 22, 2026 21:15
c519487 to
324f22e
Compare
renovate
Bot
force-pushed
the
renovate/snapshot-controller-5.x
branch
from
June 9, 2026 10:38
324f22e to
93491dd
Compare
renovate
Bot
force-pushed
the
renovate/snapshot-controller-5.x
branch
from
June 15, 2026 20:39
93491dd to
efb4685
Compare
renovate
Bot
force-pushed
the
renovate/snapshot-controller-5.x
branch
from
July 20, 2026 20:41
efb4685 to
08c8c5c
Compare
renovate
Bot
force-pushed
the
renovate/snapshot-controller-5.x
branch
from
July 21, 2026 17:56
08c8c5c to
a0fe9a2
Compare
renovate
Bot
force-pushed
the
renovate/snapshot-controller-5.x
branch
from
July 30, 2026 16:06
a0fe9a2 to
b280fe6
Compare
| datasource | package | from | to | | ---------- | -------------------------------------------------------- | ----- | ----- | | docker | ghcr.io/piraeusdatastore/helm-charts/snapshot-controller | 5.0.3 | 5.2.0 | Signed-off-by: Roger Rumao <rogerrum@users.noreply.github.com>
renovate
Bot
force-pushed
the
renovate/snapshot-controller-5.x
branch
from
August 12, 2026 03:55
b280fe6 to
1c71a7e
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
5.0.3→5.2.0Configuration
📅 Schedule: (in timezone America/Chicago)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.