NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #305 by repository stars
Last release today
01 Oct 2026
Ships on a steady schedule
a new release about every 8 days
Some releases are documented
notes for 17 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
8 years old
3045 releases · first in 2018
Nothing published for this version
Nothing published for this version
Nothing published for this version
One column per quarter.
Welcome to the v1.11.0-alpha.0 release of Talos! *This is a pre-release of Talos*
Welcome to the v1.11.0-alpha.0 release of Talos!
This is a pre-release of Talos
Please try out the release binaries and report any issues at https://github.com/siderolabs/talos/issues.
<details><summary>49 commits</summary> <p>
ace44ea61 test: update hydrophone to 0.7.03a1163692 chore: cross platform qemu preflight checks7914fb104 chore: move the create command to it's own packagec8e619608 chore: prepare for release 1.111299aaa45 chore(ci): add extensions test for Youki runtimee50ceb221 docs: activate Talos 1.10 docs9d12aaeb1 test: improve config patch test106a656b6 chore: make qemu provider build on darwin8013aa06c test: replace platform metadata test2b89c2810 fix: relax etcd APIs RBAC requirements1e677587c fix: preserve kubelet image suffix62ab8af45 fix: disk image generation with image cached60626f01 fix: handle encryption type mismatcha9109ebd0 feat: allow SideroLink unique token in machine config2ff3a6e40 feat(kernel): add bcache kernel module to core talosfa95a2146 fix(ci): bios provision testf7c5b86be fix: sync PCR extension with volume provisioning lifecyclef90c79474 chore: show bound driver in pcidevices info8db34624c fix: handle correctly changing platform network config77c7a075b feat: update Kubernetes to 1.33.074f0c48c7 feat: add version compatibility for Talos 1.11c4fb7dad0 fix: force DNS runner shutdown on timeoutc49b4836e docs: hetzner: add note about public iso16ea2b113 docs: add what is new for 1.10be3f0c018 fix: fix Gvisor tests with containerd patch37db132b3 chore(ci): add provision test with biosec60b70e7 fix: set media type to OCI for image cache layera471eb31b feat: update Linux 6.12.24, containerd 2.0.554ad5b872 fix: extension services logging to console601f036ba docs: correct flannel extra args exampleae94377d1 feat: support encryption config for user volumes9616f6e8d docs: add caveat for kubespan and host portsa1d08a362 docs: fixes typo at OpenEBS Mayastor worker patchesa91e8726e docs: add a dark themec76189c58 fix: grub EFI mount point4ca985c65 fix: grub efi platform installb31260281 docs: update storage.md396a29040 feat: add new SBCsa902f6580 feat: update Flannel to v0.26.72bbefec1a docs: use cache in preview6028a8d2d docs: update kubeprism.mde51a8ef8c fix: prefer new MountStatus resourced9c7e7946 docs: fix searchb32fa029b feat: update Kubernetes to 1.33.0-rc.1f0ea478cb feat: support address priority8cd3c8dc7 test: fix NVIDIA OSS tests62f2d27cd docs: update virtualbox.md141326ea3 docs: fix tabpane styling134aa53cc feat: update base CoreDNS code in host DNS to 1.12.1
</p>
</details><details><summary>4 commits</summary> <p>
9cea00b feat: update Linux to 6.12.25cb108a5 feat(kernel): enable bcache moduled042432 fix: backport sandbox fix for Gvisorfa625dc feat: update Linux 6.12.24, containerd 2.0.5
</p>
</details>Previous release can be found at v1.10.0
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
`2b8e08234` feat: deprecate .machine.install.extensions
Welcome to the v1.10.0-alpha.3 release of Talos!
This is a pre-release of Talos
Please try out the release binaries and report any issues at https://github.com/siderolabs/talos/issues.
Kernel parameter talos.auditd.disabled=1 can be used to disable Talos built-in auditd service.
Talos Linux no longer supports cgroupsv1 when running in non-container mode.
The kernel argument talos.unified_cgroup_hierarchy is now ignored.
Talos starting with 1.10 will have disk images that will use GRUB only for legacy BIOS and systemd-boot for modern UEFI systems. On first boot Talos determines the boot method and will wipe the unused bootloader.
Secureboot disk-images will be sd-boot only.
For ARM64 imager will still generate GRUB bootloader for Talos < 1.10 and for Talos >= 1.10 all ARM64 boot assets will use systemd-boot.
Imager supports overwriting bootloader when generating a disk image via the Imager profile output option.
Eg:
output:
kind: image
imageOptions:
bootloader: sd-boot # supported options are sd-boot, grub, dual-boot
Talos 1.10 now supports a new machine config document named PCIDriverRebindConfig that allows rebinding the driver of a PCI device to a different target driver.
See the documentation for more information.
Talos now provides ethtool-style Ethernet low-level configuration via network/EthernetConfig documents.
Current status of the interface can be read by talosctl get ethernetstatus.
.machine.install.extensions will have no effect starting from Talos 1.10, the machine config document field is still kept so upgrades from older versions are possible.
Use Boot Assets instead.
Talos 1.10 on fresh install on UEFI systems will now use systemd-boot and UKIs (Unified Kernel Images)[https://uapi-group.org/specifications/specs/unified_kernel_image/]. This means the kernel command line arguments are part of the UKI and cannot be modified without an upgrade to a new UKI.
Upgrades to Talos 1.10 will preseve the existing bootloader (GRUB for non-secureboot) and sd-boot for Secureboot and this change will have no effect.
To build a boot asset with extra kernel arguments whether an installer or a boot image use either Image Factory or
Imager.
This means kernel arguments not part of the UKI will not be preserved across updates and a proper installer image generated via Imager Factory or Imager is required.
Talos Ingress Firewall now filters access to Kubernetes NodePort services correctly.
Talos now generates /etc/iscsi/initiatorname.iscsi file based on the node identity which is tied to the lifecycle of the node.
If using iscsi-tools extension, starting with Talos 1.10 would have a more deterministic IQN for the initiator node.
Make sure to update any iSCSI targets to use the new initiator IQN.
The iqn can be read by talosctl read /etc/iscsi/initiatorname.iscsi
Talos starting with 1.10 will have ISO's that will use GRUB only for legacy BIOS and systemd-boot for modern UEFI systems.
When using .cluster.apiServer.authorizationConfig the user provided order for the authorizers is honoured and Node and RBAC authorizers are always added to the end if not explicitly specified.
Eg: If user provides only Webhook authorizer, the final order will be Webhook, Node, RBAC.
To provide a specific order for Node or RBAC explicitly, user can provide the authorizer in the order they want.
Eg:
cluster:
apiServer:
authorizationConfig:
- type: Node
name: Node
- type: Webhook
name: Webhook
webhook:
connectionInfo:
type: InClusterConfig
...
- type: RBAC
name: rbac
Usage of authorization-mode CLI argument will not support this form of customization.
Talos now generates /etc/nvme/hostnqn and /etc/nvme/hostid files based on the node identity which is tied to the lifecycle of the node.
The NQN can be read by talosctl read /etc/nvme/hostnqn
Talos 1.10 is built with a toolchain based on [Stageˣ], which is a project building fully bootstrapped software. This change increases reproducibility, auditability and security of Talos builds.
This also changes Talos root filesystem structure for unified /usr, with other directories symlinking to /usr/bin and /usr/lib. System extensions must move their directories accordingly for 1.10.
Talos is built with Go 1.24.1.
<details><summary>270 commits</summary> <p>
a834219ac chore: update dependencies857779b90 docs: clarify custom CA certificate with KMS STATE encryption39ed45ae6 docs: add information about Cilium exclusive CNI087a85f40 feat: support running with SELinux enforcingd4aacb0d8 refactor: mount operation for STATE and user disks44f3c7248 fix: kata extension7ca5ab5e9 fix: shrink installer and imager imagesea0994cfe fix: kexec with smbios type 11 string8e20a5d28 fix: pass /usr/etc/in-container to apid, trustd and extension containers9b9512ba8 feat: update Linux 6.12.19, containerd 2.0.4433b0237b fix: correct structprotogen example6e68a522a chore: fix conformance artifact namef592730d9 fix(ci): fix image cache testcc6c714ce feat: add Tegra modules to initrd81d1fe0f8 fix: add missing TOOLS_PREFIX for WITH_DEBUG_SHELL builds3e38bf6d4 fix: ignore missing config (nocloud) via cidata27a4486a8 docs: fix typo cluser -> clusterac79b1ea0 feat: pull in Intel STTMAC network drivers9bb5c060c chore: bump go-kubernetes2b8e08234 feat: deprecate .machine.install.extensionsb7446372b docs: add documentation on unofficial SBC forks9bec765c4 feat: talosctl kubeconfig write to stdout option11ebb1078 fix: kexec when using sd-boot61f1a32d2 test: allocate more resources for conformance runsb8b7b83f8 chore: extraKernelArgs validation for UKI'se2df0c6d3 docs: update siderolink.mdf9b14e784 fix: reconnect on SideroLink tunnel on/off change29f7b3bf3 test(ci): use k8s websocket executor for tests9531c1c6d fix(ci): image-cache cron90abdc489 feat: update Kubernetes to 1.33.0-beta.09a5914048 refactor: ephemeral mounte4fb1c06a docs: update for predictable interface naming729fce306 feat: update Linux to 6.12.18b4d2e1c3c fix: typo in machinery CloudPlatforms7e0475488 fix: qemu: archive cluster logs only after stopping VMsdab30a8b9 fix: ensure no goroutines escape in dns controllerfce824e2f fix: change from "init6" to "inet6" in docsf51ebd1bc chore: fix the mount cache ids in the Dockerfile4365aecbd test: use standard installer for e2e-iso431178327 feat: update Kubernetes to v1.33.0-alpha.31259345e4 fix(ci): image-cache cron18871a7eb chore: tidy labeled-squashfs.shd45259f89 feat: update Flannel to 0.26.5e83ef0e2e docs: update proxmox.md3def5f9a6 feat: update etcd to 3.5.19c3c0d2e42 test: fix dns test in race mode17965c32f chore: update Go to 1.24.11fbb2d1a7 docs: update nvidia-gpu-proprietary.mdd60972bdf chore: add installer-base to the list of signed imagesab6cb3dfa chore: disable azure upload2355218e4 release(v1.10.0-alpha.2): prepare released4e3e957c fix(ci): fix integration tests1849b5388 feat: update dependencies88fc6bbeb test: fix UKI preserving talos.config and image cacheba8cd304d test: enable image-cache in the cron28b5dc738 test: fix reproduciblity test50998038b feat: prefer sd-boot for UEFIe831e52e0 feat: add support for qla2xxec5c049a5 feat: update Kubernetes to 1.33.0-alpha.2ebfa82f35 docs: update deprecated commandd79059a2c chore: fix shutdown typo in shutdown sequencea3f88d2ef fix: block NodePort services with ingress firewallfd8131cb8 feat: generate unified installerebfdb91b4 fix: handle dynamic HTTP proxy settings for discovery clientd45eaeb74 fix: correctly map link names/aliases when using VIP operator7c4e47c0c chore: stop doing generate on each buildb1d410cb6 feat: dual boot disk image468e318ba fix: multiple fixes for dashboard/no data3dd8d9aed docs: update resetting-a-machine.md to include example of reset7af8f6b2f feat: validate docker image references in upgrade optionsc949f55e6 docs: remove typo on resetting a machine pagef5c097041 feat: add description to schema object defs79ee304e1 chore: update enumer to a version that fixes Go 1.24 compatibility46d67fe44 chore: update Go to 1.24, update pkgs7f1dd2669 fix(ci): fix integration-misc crons26a773d3f docs: add a note about syslog sending messages to services7ce053638 fix: ignore digest part of images when checking versionae1b00354 feat: support noclooud instance-id from dmi58661dea7 docs: update getting-started.md94cf9fb84 chore: fix spurious generate failures32a34791e fix: typo in Makefile target talosctl-freebsd-arm641b4464c8a feat: update Kubernetes to 1.32.29463ac23e fix: make ingress firewall filter traffic to nodeports8531d91a1 fix: blockdevice transport detectionce616d93a fix: path for ca-certificatesf35b58779 fix: fix diff printingbf0f910a1 chore: provide more logging for dns requests607998ba2 feat: support uki profiles via imager711cf2d99 fix: ignore errors to stop pods142d75483 fix: handle empty registry config47f377b21 feat: implement the last ethtool feature - channels88cf69b8c feat: multi profile UKIs557faad75 feat: update Linux to 6.12.135dbf9e350 refactor: implement volume mount controlleraa11e9abb fix: make image cache volume management less strict26a62e342 docs: fix typo in Wireguard docs0419f5d8b feat: implement features in ethtool-like supportcd66fc6e8 feat: use bootstrapped packages for building Talos2b5bd5d1d chore: upgrade siderolabs/go-loadbalancer15191aa3e fix: extract cmdline multi profile UKIs716f700da feat: provide initial support for ethtool configurationb726e2f9f feat: update Flannel to 0.26.498d56d4d6 chore: track opened grpc connections5e28c8e03 fix: image cache volume provisioningc9667813d chore: remove containerd importer270ffb69a fix: duplicate qemu drive ids71ec41be1 fix: build of Talos on non-Linux hoste2aa7c98c fix: installer with SecureBoot should contain UKIs6e22c06c3 release(v1.10.0-alpha.1): prepare release3a2d9867b fix: do not close client.Client.conn with finalizer73f30ff25 feat: bump pkgs for udev updateaea90cb8f docs: update hyper-vb7165615f fix: use local NTP for AWS platform673ca4bcb fix: ensure proper closure of client.Client.conn with finalizer19040ffd6 fix: handle of PE sections with duplicate names83489d348 docs: add note about vmxnet and flannel conflictf1292f5e7 docs: add iscsi-tools extension to prerequisites93b4a3740 test: bump timeout on rotate CA test42e166984 feat: support kexec from uki8da264946 docs: add Orange Pi 5 to Image Factory platforms and documentationc5fb62e2e feat: update Linux to 6.2.1183d007c16 feat: update etcd to 3.5.18edf7c3288 fix: pe uki extract70f72c5b0 docs: update multus.md807a3cd29 refactor: all network merge controllersec8c4660e docs: update vmware.mdbaf81cd49 fix(ci): k8s integration suite wait for resourcecd5e54903 feat: generate iso's with both UKI and grub75673b6a3 feat: provide stable symlinks in disk resourcesf407c88e4 fix(ci): wait for longhorn node resource601cdccb9 feat: extract kernel/initrd from uki for grubff175b9fb docs: update disk-encryption.mda8d84e315 docs: fix typos and add more explanations in docs3a384240e fix: invalid date field in iqn/nqn82c9ec158 chore(ci): add tests with longhorn v2 engine689ea1dbf fix: bring back disk UUID7a712fad2 fix: disks with 4k sector size and systemd-bootd62a34aaf feat: update tools/pkgs/extrasb9a8ad6ac chore: de-hardcode list of extra images for image-cache test683153a33 docs: remove the last mentions of preserve flag for Talos 1.8+33c7f4195 docs: fix typo an MacOS to on MacOS21cff3919 chore(ci): fio benchmark results as separate artifacts0b7fc7cdf fix: abort node watch on hostname change99ba53941 docs: remove the mention of preserve flag for Talos 1.8+bde516fde chore(ci): rework iscsi-tools extensions teste1efbf656 refactor: extract platform metadata into Talos machinery79987c05d feat: generate iqn and nqn files0cab6ed17 docs: update troubleshooting.md921e10254 chore: update Go to 1.23.5399d53b54 fix: ignore forbidden error when waiting for pod eviction8dea57a81 fix: make etc binds read-only63157dcb4 docs: update SideroLinkConfig examplefc7080e34 chore: clear cache after updating upstreams51e0f273f docs: update documentation for Talos 1.9.2e06b14112 feat: update Kubernetes to 1.32.14310b290d fix: generate UKI only if actually neededa8cd99102 docs: update OpenEBS Mayastor installationcf45f4764 docs: add Radxa ROCK 5B docs to Single Board Computer sectionb21bdc5e5 chore(ci): save csi tests fio results01c86832c chore(ci): add test for OpenEBS MayaStorc77483510 test: update talosctl debug air-gappedddd695d93 feat: update containerd to 2.0.2da2e81120 fix: add informer resync period for node status watcher9b957df64 chore: uki code restructuree41a99525 fix: kube-apiserver authorizers orderdb4ca5668 feat: add a kernel parameter to disable built-in auditdfaa149003 feat: update Linux to 6.12.98de19758d fix: a couple of imager panics/crashes5bc3e34cb fix: detect GPT before ZFSed7e47d15 refactor: drop usage of objcopy to generate UKIsedf5c5e29 fix: extfs repair and resize6e32ea5b7 fix: merge of VolumeConfig documents with sizes1be5f8ff2 feat: update Linux to 6.12.8e6a4583ba feat: support generating unsigned UKIsbbd6067d4 fix: partition alignment on disks with 4k sectors84fcc976f fix: yet another dashboard panic6d605fc85 fix: disable NRI plugin in a different way499695e24 fix: request previous IP address in discoverycc84caf8c docs: update Cilium documentationfa5300d91 chore: revert: drop deprecated allowSchedulingOnMasters0abb3dabf docs: fix command to wait for ceph-rook HEALTH_OK32c67c27c chore: drop deprecated allowSchedulingOnMastersae6d065be fix: mount selinuxfs only when SELinux is enabled5ccbf4bcd feat: enable configfs59582496d feat: bring in partity with sd-25783d84a831 chore(ci): better zfs checks650eb3a4f refactor: rewrite cloud uploader to use AWS SDK Go v201bf8449b fix: update field name for bus path disk selectore915c98d5 fix: exclude disks with empty transport for disk selectorb7a7fdc4b refactor: generate /etc/os-release file static waye79c9e127 chore(ci): drop equinix metal e2e-test418945444 fix: build of talosctl on non-Linux platforms4761a9e6a chore: update dependenciesf98efb333 fix: ignore member not found error on leave clusterb72bda0a4 fix: talosctl support and race tests27233cf0f test: use node informer instead of raw watch5dc15e8db fix: update go-blockdevice to v2.0.95f3acd0f2 fix: use correct default search domain7e5d36d46 fix: pci driver rebind config validation4b97bbc3f fix: pull in containerd CNI deadlock fix066480722 test: fix apparmor tests82ea44a6b fix: reduce installer image78b3e7f4f fix: get next rule number for IPv6 in the appropriate chain675854aa0 docs: fix two typosf70b7386a test: add a xfs makefs test8212e4864 refactor: use quirks in kernel argsb4aa5189d release(v1.10.0-alpha.0): prepare releasebd85bd5b7 fix: fix Failed to initialize SELinux labeling handle udev error73c82e3e5 feat: bring Linux 6.12.6, CNI plugins 1.6.1c12b52491 docs: document Kubernetes service registry incompat with K8s 1.32a5660ed77 feat: pcirebind controller4c3261626 docs: fix several typosfb3675321 fix: dashboard crash on CPU datadec0185c8 chore: reduce memory usage for secureboot functionscee6c60a0 fix: make talosctl time work with PTP time syncf75604313 chore: support gcr.io auth for cache and image gen6ef2596da docs: improve Hetzner documentation7d39b9ec2 feat: remove cgroupsv1 in non-container mode8003536c7 fix: restore previous disk serial fetching03116ef9b chore: prepare for Talos 1.1000682fdd6 docs: activate 1.9 docs as defaultbea05f5c9 docs: update deploying-cilium.md284ab1179 feat: support link altnames/aliases5bfd829bf docs: fix 'containter' typo8d151b771 docs: clarify TALOSCONFIG for AWS0ef19171f fix: renovate typoc568adc7d fix: renovate configec2e24fd9 fix: match MAC addresses case-insensitive (nocloud)41a0c440a chore: rekres for renovate changesa49bb9ee4 feat: update Linux to 6.12.5b15917ecc chore: add more debugging logs for META and volumes2b1b326f0 docs: mention different paths for OpenEBS9470e842f test: cleanup failed Kubernetes podsc9c685150 fix: node identity flip590c01657 feat: update containerd to v2.0.118fa5a258 docs: update image-cache doc for isoab5bb6884 fix: generate and serve registries with port58236066d fix: support image cache on VFAT USB sticke193a5071 fix: image cache integration test08ee400fd test: fix flaky test NodeAddressSortd45e8d1d1 feat: update Kubernetes to 1.32.0136b12912 chore: drop semicolon for supporting vfat filesystems3e9e027ef test: add an option to boot from an USB stickef8c3e3b3 docs: fix typo in multus.mdd54414add fix: authorization config gencce72cfe8 docs: replace deprecated Hetzner server plans81805103d chore: enable proper parallel usage of TestDepthe1b824eba docs: update ceph-with-rook.md470b75563 fix: use mtu network option for podman61b1489a0 fix: order volume config by the requested sizebc3039acd feat: update runc to 1.2.330016a0a8 fix: avoid nil-pointer-panic in RegistriesConfigControllerfe0457152 fix: power on the machine on reboot request in qemu power api10da553ef docs: build what's new for 1.9d946ccae3 feat: update Linux to 6.12.4707a77bf6 test: fix user namespace test, TPM2 fixesc3537b2f5 feat: update Linux to 6.12.3cb4d9d673 docs: fix a few mistakes in release notesc4724fc97 chore: add integration tests for image-cache07220fe7f fix: install iptables-nft to the host14841750b chore: add version compatibility for Talos 1.10852baf819 feat: support vlan/bond in v1, vlan in v2 for noclouddd61ad861 fix: lock provisioning order of user disk partitionsd0773ff09 chore: update Go to 1.23.47d6507189 feat: implement new address sorting algorithm9081506d6 feat: add process scheduling options77e9db4ab test: use two workers in qemu tests by default5a4bdf62a feat: update Kubernetes to 1.32.0-rc.1d99bcc950 chore: refactor mergeDNSServers func0cde08d8b docs: add Turing RK1 docs to Single Board Computer section
</p>
</details><details><summary>49 commits</summary> <p>
a834219ac chore: update dependencies857779b90 docs: clarify custom CA certificate with KMS STATE encryption39ed45ae6 docs: add information about Cilium exclusive CNI087a85f40 feat: support running with SELinux enforcingd4aacb0d8 refactor: mount operation for STATE and user disks44f3c7248 fix: kata extension7ca5ab5e9 fix: shrink installer and imager imagesea0994cfe fix: kexec with smbios type 11 string8e20a5d28 fix: pass /usr/etc/in-container to apid, trustd and extension containers9b9512ba8 feat: update Linux 6.12.19, containerd 2.0.4433b0237b fix: correct structprotogen example6e68a522a chore: fix conformance artifact namef592730d9 fix(ci): fix image cache testcc6c714ce feat: add Tegra modules to initrd81d1fe0f8 fix: add missing TOOLS_PREFIX for WITH_DEBUG_SHELL builds3e38bf6d4 fix: ignore missing config (nocloud) via cidata27a4486a8 docs: fix typo cluser -> clusterac79b1ea0 feat: pull in Intel STTMAC network drivers9bb5c060c chore: bump go-kubernetes2b8e08234 feat: deprecate .machine.install.extensionsb7446372b docs: add documentation on unofficial SBC forks9bec765c4 feat: talosctl kubeconfig write to stdout option11ebb1078 fix: kexec when using sd-boot61f1a32d2 test: allocate more resources for conformance runsb8b7b83f8 chore: extraKernelArgs validation for UKI'se2df0c6d3 docs: update siderolink.mdf9b14e784 fix: reconnect on SideroLink tunnel on/off change29f7b3bf3 test(ci): use k8s websocket executor for tests9531c1c6d fix(ci): image-cache cron90abdc489 feat: update Kubernetes to 1.33.0-beta.09a5914048 refactor: ephemeral mounte4fb1c06a docs: update for predictable interface naming729fce306 feat: update Linux to 6.12.18b4d2e1c3c fix: typo in machinery CloudPlatforms7e0475488 fix: qemu: archive cluster logs only after stopping VMsdab30a8b9 fix: ensure no goroutines escape in dns controllerfce824e2f fix: change from "init6" to "inet6" in docsf51ebd1bc chore: fix the mount cache ids in the Dockerfile4365aecbd test: use standard installer for e2e-iso431178327 feat: update Kubernetes to v1.33.0-alpha.31259345e4 fix(ci): image-cache cron18871a7eb chore: tidy labeled-squashfs.shd45259f89 feat: update Flannel to 0.26.5e83ef0e2e docs: update proxmox.md3def5f9a6 feat: update etcd to 3.5.19c3c0d2e42 test: fix dns test in race mode17965c32f chore: update Go to 1.24.11fbb2d1a7 docs: update nvidia-gpu-proprietary.mdd60972bdf chore: add installer-base to the list of signed images
</p>
</details><details><summary>1 commit</summary> <p>
0d45dee chore: bump deps
</p>
</details><details><summary>1 commit</summary> <p>
64513a6 feat: rekres, regenerate proto files
</p>
</details><details><summary>1 commit</summary> <p>
b3632c4 feat: support extra dial options in the client
</p>
</details><details><summary>7 commits</summary> <p>
c201b87 feat: update dependencies4102a78 feat: build hermetically using new bldr and pkgsf4a110f fix: build tc-redirect-tap as static binary0840abb fix: pull in fixed CNI plugins from pkgs52c217f feat: update dependenciesf755eb4 chore: rekres to simplify .kres.yaml defaultse5382fc chore: kresify renovate
</p>
</details><details><summary>1 commit</summary> <p>
5ae3afe chore: update hashtriemap implementation from the latest upstream
</p>
</details><details><summary>2 commits</summary> <p>
015a398 fix: replace static buffer allocation on growthed8685e test: add more assertions for write length result
</p>
</details><details><summary>1 commit</summary> <p>
ea108ca chore: add support for Go 1.24
</p>
</details><details><summary>1 commit</summary> <p>
cc42d09 chore: rekres and update
</p>
</details><details><summary>3 commits</summary> <p>
9ba5654 fix: fix ignoring alpha/beta version parsing0fe1db4 feat: update for new changes in Kubernetes 1.33.0-alpha.3804cb44 feat: add support for Kubernetes to 1.33
</p>
</details><details><summary>1 commit</summary> <p>
589c33a chore: upgrade upstream.List and loadbalancer.TCP to Go 1.23
</p>
</details><details><summary>1 commit</summary> <p>
347ee9b chore: rekres, update dependencies
</p>
</details><details><summary>1 commit</summary> <p>
0f784bd fix: avoid deadlock on context cancel
</p>
</details><details><summary>69 commits</summary> <p>
55d99ea feat: update dependencies668d25b fix: trim qemu-tools143f50d feat(containerd): provide ctr as part of the build990a9e8 feat: update Linux 6.12.19, Linux firmware 202503119af76d3 feat: update containerd 2.0.4, runc 1.2.65a0d262 feat: add CONFIG_DWMAC_DWC_QOS_ETH to arm64 config9e9a817 feat(kernel): add support for intel based edge device4d4aaad fix: patch containerd with restart fixdbdeff4 feat: enable kernel drivers for tegra194, tegra234 SoCs499e56f feat(kernel): enable v3d as kernel module988ec60 feat: add intel pmt/pmc8e2c6d8 feat: update Linux to 6.12.185246c32 feat(kernel): add -@ to dtc flags for arm64 to enable overlay support068171e chore: unify buildkitsa4ac508 feat: add panfrost kernel module5d6ca21 fix: backport MGLRU patch from Linux 6.131d84473 feat: update dependencies831bc76 feat(kernel): enable TPM SPI support in kernel config for arm64023f092 feat: enable nfsd support in the kernel347ad26 feat: update Linux 6.12.17, containerd 2.0.340241af feat: enable qla2xxx module6fb00b4 fix: pull in kmod from toolscc5317a fix: patch Linux with blackhole patch08389dd chore: support vmdk and cp format for qemu-img7774b08 feat: update Linux to 6.12.16, validate package structure40d288c fix: imager deps351a1a1 feat: add tools needed for imager80351ca fix: reproducibility testse1f11f0 fix: remove patches and other files from copy-only packages8fff06b chore:Nothing published for this version
Nothing published for this version
Nothing published for this version
`ebfa82f35` docs: update deprecated command
Welcome to the v1.10.0-alpha.2 release of Talos!
This is a pre-release of Talos
Please try out the release binaries and report any issues at https://github.com/siderolabs/talos/issues.
Kernel parameter talos.auditd.disabled=1 can be used to disable Talos built-in auditd service.
Talos Linux no longer supports cgroupsv1 when running in non-container mode.
The kernel argument talos.unified_cgroup_hierarchy is now ignored.
Talos starting with 1.10 will have disk images that will use GRUB only for legacy BIOS and systemd-boot for modern UEFI systems. On first boot Talos determines the boot method and will wipe the unused bootloader.
Secureboot disk-images will be sd-boot only.
For ARM64 imager will still generate GRUB bootloader for Talos < 1.10 and for Talos >= 1.10 all ARM64 boot assets will use systemd-boot.
Imager supports overwriting bootloader when generating a disk image via the Imager profile output option.
Eg:
output:
kind: image
imageOptions:
bootloader: sd-boot # supported options are sd-boot, grub, dual-boot
Talos 1.10 now supports a new machine config document named PCIDriverRebindConfig that allows rebinding the driver of a PCI device to a different target driver.
See the documentation for more information.
Talos now provides ethtool-style Ethernet low-level configuration via network/EthernetConfig documents.
Current status of the interface can be read by talosctl get ethernetstatus.
Talos Ingress Firewall now filters access to Kubernetes NodePort services correctly.
Talos now generates /etc/iscsi/initiatorname.iscsi file based on the node identity which is tied to the lifecycle of the node.
If using iscsi-tools extension, starting with Talos 1.10 would have a more deterministic IQN for the initiator node.
Make sure to update any iSCSI targets to use the new initiator IQN.
The iqn can be read by talosctl read /etc/iscsi/initiatorname.iscsi
Talos starting with 1.10 will have ISO's that will use GRUB only for legacy BIOS and systemd-boot for modern UEFI systems.
When using .cluster.apiServer.authorizationConfig the user provided order for the authorizers is honoured and Node and RBAC authorizers are always added to the end if not explicitly specified.
Eg: If user provides only Webhook authorizer, the final order will be Webhook, Node, RBAC.
To provide a specific order for Node or RBAC explicitly, user can provide the authorizer in the order they want.
Eg:
cluster:
apiServer:
authorizationConfig:
- type: Node
name: Node
- type: Webhook
name: Webhook
webhook:
connectionInfo:
type: InClusterConfig
...
- type: RBAC
name: rbac
Usage of authorization-mode CLI argument will not support this form of customization.
Talos now generates /etc/nvme/hostnqn and /etc/nvme/hostid files based on the node identity which is tied to the lifecycle of the node.
The NQN can be read by talosctl read /etc/nvme/hostnqn
Talos 1.10 is built with a toolchain based on [Stageˣ], which is a project building fully bootstrapped software. This change increases reproducibility, auditability and security of Talos builds.
This also changes Talos root filesystem structure for unified /usr, with other directories symlinking to /usr/bin and /usr/lib. System extensions must move their directories accordingly for 1.10.
Talos is built with Go 1.24.0.
<details><summary>219 commits</summary> <p>
d4e3e957c fix(ci): fix integration tests1849b5388 feat: update dependencies88fc6bbeb test: fix UKI preserving talos.config and image cacheba8cd304d test: enable image-cache in the cron28b5dc738 test: fix reproduciblity test50998038b feat: prefer sd-boot for UEFIe831e52e0 feat: add support for qla2xxec5c049a5 feat: update Kubernetes to 1.33.0-alpha.2ebfa82f35 docs: update deprecated commandd79059a2c chore: fix shutdown typo in shutdown sequencea3f88d2ef fix: block NodePort services with ingress firewallfd8131cb8 feat: generate unified installerebfdb91b4 fix: handle dynamic HTTP proxy settings for discovery clientd45eaeb74 fix: correctly map link names/aliases when using VIP operator7c4e47c0c chore: stop doing generate on each buildb1d410cb6 feat: dual boot disk image468e318ba fix: multiple fixes for dashboard/no data3dd8d9aed docs: update resetting-a-machine.md to include example of reset7af8f6b2f feat: validate docker image references in upgrade optionsc949f55e6 docs: remove typo on resetting a machine pagef5c097041 feat: add description to schema object defs79ee304e1 chore: update enumer to a version that fixes Go 1.24 compatibility46d67fe44 chore: update Go to 1.24, update pkgs7f1dd2669 fix(ci): fix integration-misc crons26a773d3f docs: add a note about syslog sending messages to services7ce053638 fix: ignore digest part of images when checking versionae1b00354 feat: support noclooud instance-id from dmi58661dea7 docs: update getting-started.md94cf9fb84 chore: fix spurious generate failures32a34791e fix: typo in Makefile target talosctl-freebsd-arm641b4464c8a feat: update Kubernetes to 1.32.29463ac23e fix: make ingress firewall filter traffic to nodeports8531d91a1 fix: blockdevice transport detectionce616d93a fix: path for ca-certificatesf35b58779 fix: fix diff printingbf0f910a1 chore: provide more logging for dns requests607998ba2 feat: support uki profiles via imager711cf2d99 fix: ignore errors to stop pods142d75483 fix: handle empty registry config47f377b21 feat: implement the last ethtool feature - channels88cf69b8c feat: multi profile UKIs557faad75 feat: update Linux to 6.12.135dbf9e350 refactor: implement volume mount controlleraa11e9abb fix: make image cache volume management less strict26a62e342 docs: fix typo in Wireguard docs0419f5d8b feat: implement features in ethtool-like supportcd66fc6e8 feat: use bootstrapped packages for building Talos2b5bd5d1d chore: upgrade siderolabs/go-loadbalancer15191aa3e fix: extract cmdline multi profile UKIs716f700da feat: provide initial support for ethtool configurationb726e2f9f feat: update Flannel to 0.26.498d56d4d6 chore: track opened grpc connections5e28c8e03 fix: image cache volume provisioningc9667813d chore: remove containerd importer270ffb69a fix: duplicate qemu drive ids71ec41be1 fix: build of Talos on non-Linux hoste2aa7c98c fix: installer with SecureBoot should contain UKIs6e22c06c3 release(v1.10.0-alpha.1): prepare release3a2d9867b fix: do not close client.Client.conn with finalizer73f30ff25 feat: bump pkgs for udev updateaea90cb8f docs: update hyper-vb7165615f fix: use local NTP for AWS platform673ca4bcb fix: ensure proper closure of client.Client.conn with finalizer19040ffd6 fix: handle of PE sections with duplicate names83489d348 docs: add note about vmxnet and flannel conflictf1292f5e7 docs: add iscsi-tools extension to prerequisites93b4a3740 test: bump timeout on rotate CA test42e166984 feat: support kexec from uki8da264946 docs: add Orange Pi 5 to Image Factory platforms and documentationc5fb62e2e feat: update Linux to 6.2.1183d007c16 feat: update etcd to 3.5.18edf7c3288 fix: pe uki extract70f72c5b0 docs: update multus.md807a3cd29 refactor: all network merge controllersec8c4660e docs: update vmware.mdbaf81cd49 fix(ci): k8s integration suite wait for resourcecd5e54903 feat: generate iso's with both UKI and grub75673b6a3 feat: provide stable symlinks in disk resourcesf407c88e4 fix(ci): wait for longhorn node resource601cdccb9 feat: extract kernel/initrd from uki for grubff175b9fb docs: update disk-encryption.mda8d84e315 docs: fix typos and add more explanations in docs3a384240e fix: invalid date field in iqn/nqn82c9ec158 chore(ci): add tests with longhorn v2 engine689ea1dbf fix: bring back disk UUID7a712fad2 fix: disks with 4k sector size and systemd-bootd62a34aaf feat: update tools/pkgs/extrasb9a8ad6ac chore: de-hardcode list of extra images for image-cache test683153a33 docs: remove the last mentions of preserve flag for Talos 1.8+33c7f4195 docs: fix typo an MacOS to on MacOS21cff3919 chore(ci): fio benchmark results as separate artifacts0b7fc7cdf fix: abort node watch on hostname change99ba53941 docs: remove the mention of preserve flag for Talos 1.8+bde516fde chore(ci): rework iscsi-tools extensions teste1efbf656 refactor: extract platform metadata into Talos machinery79987c05d feat: generate iqn and nqn files0cab6ed17 docs: update troubleshooting.md921e10254 chore: update Go to 1.23.5399d53b54 fix: ignore forbidden error when waiting for pod eviction8dea57a81 fix: make etc binds read-only63157dcb4 docs: update SideroLinkConfig examplefc7080e34 chore: clear cache after updating upstreams51e0f273f docs: update documentation for Talos 1.9.2e06b14112 feat: update Kubernetes to 1.32.14310b290d fix: generate UKI only if actually neededa8cd99102 docs: update OpenEBS Mayastor installationcf45f4764 docs: add Radxa ROCK 5B docs to Single Board Computer sectionb21bdc5e5 chore(ci): save csi tests fio results01c86832c chore(ci): add test for OpenEBS MayaStorc77483510 test: update talosctl debug air-gappedddd695d93 feat: update containerd to 2.0.2da2e81120 fix: add informer resync period for node status watcher9b957df64 chore: uki code restructuree41a99525 fix: kube-apiserver authorizers orderdb4ca5668 feat: add a kernel parameter to disable built-in auditdfaa149003 feat: update Linux to 6.12.98de19758d fix: a couple of imager panics/crashes5bc3e34cb fix: detect GPT before ZFSed7e47d15 refactor: drop usage of objcopy to generate UKIsedf5c5e29 fix: extfs repair and resize6e32ea5b7 fix: merge of VolumeConfig documents with sizes1be5f8ff2 feat: update Linux to 6.12.8e6a4583ba feat: support generating unsigned UKIsbbd6067d4 fix: partition alignment on disks with 4k sectors84fcc976f fix: yet another dashboard panic6d605fc85 fix: disable NRI plugin in a different way499695e24 fix: request previous IP address in discoverycc84caf8c docs: update Cilium documentationfa5300d91 chore: revert: drop deprecated allowSchedulingOnMasters0abb3dabf docs: fix command to wait for ceph-rook HEALTH_OK32c67c27c chore: drop deprecated allowSchedulingOnMastersae6d065be fix: mount selinuxfs only when SELinux is enabled5ccbf4bcd feat: enable configfs59582496d feat: bring in partity with sd-25783d84a831 chore(ci): better zfs checks650eb3a4f refactor: rewrite cloud uploader to use AWS SDK Go v201bf8449b fix: update field name for bus path disk selectore915c98d5 fix: exclude disks with empty transport for disk selectorb7a7fdc4b refactor: generate /etc/os-release file static waye79c9e127 chore(ci): drop equinix metal e2e-test418945444 fix: build of talosctl on non-Linux platforms4761a9e6a chore: update dependenciesf98efb333 fix: ignore member not found error on leave clusterb72bda0a4 fix: talosctl support and race tests27233cf0f test: use node informer instead of raw watch5dc15e8db fix: update go-blockdevice to v2.0.95f3acd0f2 fix: use correct default search domain7e5d36d46 fix: pci driver rebind config validation4b97bbc3f fix: pull in containerd CNI deadlock fix066480722 test: fix apparmor tests82ea44a6b fix: reduce installer image78b3e7f4f fix: get next rule number for IPv6 in the appropriate chain675854aa0 docs: fix two typosf70b7386a test: add a xfs makefs test8212e4864 refactor: use quirks in kernel argsb4aa5189d release(v1.10.0-alpha.0): prepare releasebd85bd5b7 fix: fix Failed to initialize SELinux labeling handle udev error73c82e3e5 feat: bring Linux 6.12.6, CNI plugins 1.6.1c12b52491 docs: document Kubernetes service registry incompat with K8s 1.32a5660ed77 feat: pcirebind controller4c3261626 docs: fix several typosfb3675321 fix: dashboard crash on CPU datadec0185c8 chore: reduce memory usage for secureboot functionscee6c60a0 fix: make talosctl time work with PTP time syncf75604313 chore: support gcr.io auth for cache and image gen6ef2596da docs: improve Hetzner documentation7d39b9ec2 feat: remove cgroupsv1 in non-container mode8003536c7 fix: restore previous disk serial fetching03116ef9b chore: prepare for Talos 1.1000682fdd6 docs: activate 1.9 docs as defaultbea05f5c9 docs: update deploying-cilium.md284ab1179 feat: support link altnames/aliases5bfd829bf docs: fix 'containter' typo8d151b771 docs: clarify TALOSCONFIG for AWS0ef19171f fix: renovate typoc568adc7d fix: renovate configec2e24fd9 fix: match MAC addresses case-insensitive (nocloud)41a0c440a chore: rekres for renovate changesa49bb9ee4 feat: update Linux to 6.12.5b15917ecc chore: add more debugging logs for META and volumes2b1b326f0 docs: mention different paths for OpenEBS9470e842f test: cleanup failed Kubernetes podsc9c685150 fix: node identity flip590c01657 feat: update containerd to v2.0.118fa5a258 docs: update image-cache doc for isoab5bb6884 fix: generate and serve registries with port58236066d fix: support image cache on VFAT USB sticke193a5071 fix: image cache integration test08ee400fd test: fix flaky test NodeAddressSortd45e8d1d1 feat: update Kubernetes to 1.32.0136b12912 chore: drop semicolon for supporting vfat filesystems3e9e027ef test: add an option to boot from an USB stickef8c3e3b3 docs: fix typo in multus.mdd54414add fix: authorization config gencce72cfe8 docs: replace deprecated Hetzner server plans81805103d chore: enable proper parallel usage of TestDepthe1b824eba docs: update ceph-with-rook.md470b75563 fix: use mtu network option for podman61b1489a0 fix: order volume config by the requested sizebc3039acd feat: update runc to 1.2.330016a0a8 fix: avoid nil-pointer-panic in RegistriesConfigControllerfe0457152 fix: power on the machine on reboot request in qemu power api10da553ef docs: build what's new for 1.9d946ccae3 feat: update Linux to 6.12.4707a77bf6 test: fix user namespace test, TPM2 fixesc3537b2f5 feat: update Linux to 6.12.3cb4d9d673 docs: fix a few mistakes in release notesc4724fc97 chore: add integration tests for image-cache07220fe7f fix: install iptables-nft to the host14841750b chore: add version compatibility for Talos 1.10852baf819 feat: support vlan/bond in v1, vlan in v2 for noclouddd61ad861 fix: lock provisioning order of user disk partitionsd0773ff09 chore: update Go to 1.23.47d6507189 feat: implement new address sorting algorithm9081506d6 feat: add process scheduling options77e9db4ab test: use two workers in qemu tests by default5a4bdf62a feat: update Kubernetes to 1.32.0-rc.1d99bcc950 chore: refactor mergeDNSServers func0cde08d8b docs: add Turing RK1 docs to Single Board Computer section
</p>
</details><details><summary>57 commits</summary> <p>
d4e3e957c fix(ci): fix integration tests1849b5388 feat: update dependencies88fc6bbeb test: fix UKI preserving talos.config and image cacheba8cd304d test: enable image-cache in the cron28b5dc738 test: fix reproduciblity test50998038b feat: prefer sd-boot for UEFIe831e52e0 feat: add support for qla2xxec5c049a5 feat: update Kubernetes to 1.33.0-alpha.2ebfa82f35 docs: update deprecated commandd79059a2c chore: fix shutdown typo in shutdown sequencea3f88d2ef fix: block NodePort services with ingress firewallfd8131cb8 feat: generate unified installerebfdb91b4 fix: handle dynamic HTTP proxy settings for discovery clientd45eaeb74 fix: correctly map link names/aliases when using VIP operator7c4e47c0c chore: stop doing generate on each buildb1d410cb6 feat: dual boot disk image468e318ba fix: multiple fixes for dashboard/no data3dd8d9aed docs: update resetting-a-machine.md to include example of reset7af8f6b2f feat: validate docker image references in upgrade optionsc949f55e6 docs: remove typo on resetting a machine pagef5c097041 feat: add description to schema object defs79ee304e1 chore: update enumer to a version that fixes Go 1.24 compatibility46d67fe44 chore: update Go to 1.24, update pkgs7f1dd2669 fix(ci): fix integration-misc crons26a773d3f docs: add a note about syslog sending messages to services7ce053638 fix: ignore digest part of images when checking versionae1b00354 feat: support noclooud instance-id from dmi58661dea7 docs: update getting-started.md94cf9fb84 chore: fix spurious generate failures32a34791e fix: typo in Makefile target talosctl-freebsd-arm641b4464c8a feat: update Kubernetes to 1.32.29463ac23e fix: make ingress firewall filter traffic to nodeports8531d91a1 fix: blockdevice transport detectionce616d93a fix: path for ca-certificatesf35b58779 fix: fix diff printingbf0f910a1 chore: provide more logging for dns requests607998ba2 feat: support uki profiles via imager711cf2d99 fix: ignore errors to stop pods142d75483 fix: handle empty registry config47f377b21 feat: implement the last ethtool feature - channels88cf69b8c feat: multi profile UKIs557faad75 feat: update Linux to 6.12.135dbf9e350 refactor: implement volume mount controlleraa11e9abb fix: make image cache volume management less strict26a62e342 docs: fix typo in Wireguard docs0419f5d8b feat: implement features in ethtool-like supportcd66fc6e8 feat: use bootstrapped packages for building Talos2b5bd5d1d chore: upgrade siderolabs/go-loadbalancer15191aa3e fix: extract cmdline multi profile UKIs716f700da feat: provide initial support for ethtool configurationb726e2f9f feat: update Flannel to 0.26.498d56d4d6 chore: track opened grpc connections5e28c8e03 fix: image cache volume provisioningc9667813d chore: remove containerd importer270ffb69a fix: duplicate qemu drive ids71ec41be1 fix: build of Talos on non-Linux hoste2aa7c98c fix: installer with SecureBoot should contain UKIs
</p>
</details><details><summary>1 commit</summary> <p>
0d45dee chore: bump deps
</p>
</details><details><summary>1 commit</summary> <p>
64513a6 feat: rekres, regenerate proto files
</p>
</details><details><summary>1 commit</summary> <p>
b3632c4 feat: support extra dial options in the client
</p>
</details><details><summary>6 commits</summary> <p>
4102a78 feat: build hermetically using new bldr and pkgsf4a110f fix: build tc-redirect-tap as static binary0840abb fix: pull in fixed CNI plugins from pkgs52c217f feat: update dependenciesf755eb4 chore: rekres to simplify .kres.yaml defaultse5382fc chore: kresify renovate
</p>
</details><details><summary>1 commit</summary> <p>
5ae3afe chore: update hashtriemap implementation from the latest upstream
</p>
</details><details><summary>2 commits</summary> <p>
015a398 fix: replace static buffer allocation on growthed8685e test: add more assertions for write length result
</p>
</details><details><summary>1 commit</summary> <p>
ea108ca chore: add support for Go 1.24
</p>
</details><details><summary>1 commit</summary> <p>
804cb44 feat: add support for Kubernetes to 1.33
</p>
</details><details><summary>1 commit</summary> <p>
589c33a chore: upgrade upstream.List and loadbalancer.TCP to Go 1.23
</p>
</details><details><summary>1 commit</summary> <p>
0f784bd fix: avoid deadlock on context cancel
</p>
</details><details><summary>50 commits</summary> <p>
347ad26 feat: update Linux 6.12.17, containerd 2.0.340241af feat: enable qla2xxx module6fb00b4 fix: pull in kmod from toolscc5317a fix: patch Linux with blackhole patch08389dd chore: support vmdk and cp format for qemu-img7774b08 feat: update Linux to 6.12.16, validate package structure40d288c fix: imager deps351a1a1 feat: add tools needed for imager80351ca fix: reproducibility testse1f11f0 fix: remove patches and other files from copy-only packages8fff06b chore: bump xfsprogs to 6.12.076a0316 chore: systemd 257.3, runc 1.2.5, ipxe359807b feat: copy built packages, improve hermetic build117a1d6 feat: update Linux to 6.12.1385f8901 feat: make pkgs build bootstrapped5763e3e feat: update systemd to 257.21e24b31 feat: update Linux to 6.12.1138749d1 fix: build CNI plugins statically linked5da83db feat: bump NVIDIA driver versions5934363 fix: certificates CA57f492d feat: bump dependencies45b9ebe feat: update Linux to 6.2.10e00ad67 chore: rekres to fix reproducibility buildcfb4b0a feat: update Go to 1.23.572f19a2 feat: update containerd to v2.0.217a80ee feat: update Linux to 6.12.9c9d718d fix: adjust kernel options around ACPI/PCI/EFIeb9d566 feat: update Linux to 6.12.873e4353 fix: update config-arm64 to add Rasperry Pi watchdog support0ab2427 fix: dvb was missing I2C_MUX support and si2168 driverc3ac8e2 chore: drop unused cert copye7eddcf feat: bump dependencies0b00e86 fix: patch containerd with CNI deadlock fix9051c9a feat: update Linux to 6.12.66695012 chore: rekres to simplify .kres.yaml defaults611ca38 chore: rekres to bring renovate under kresa4c4215 fix: drop cgroupsv1 controllers28c909d feat: update Linux firmware to 20241210c40a9e9 feat: update Linux to 6.12.5d54ca83 feat: update containerd to v2.0.186e3755 fix: add CONFIG_INTEL_MEI_GSC_PROXY as module8c31321 feat: update ZFS to 2.2.7605f493 feat: update runc to v1.2.31a55529 feat: update Linux to 6.12.452ba9a5 feat: update Linux 6.12.39cf35be feat: build host iptables with nftables support71003a3 feat: update Go to 1.23.45b4d402 feat: build dvb kernel modules and CX23885b330af9 chore: bring in KSPP recommendationsf81b190 feat: kernel driver support for RK3588 devices (Turing RK1)
</p>
</details><details><summary>1 commit</summary> <p>
3235c29 chore: bump deps
</p>
</details><details><summary>1 commit</summary> <p>
38e459e chore: bump deps
</p>
</details><details><summary>19 commits</summary> <p>
fcee25b fix: revert kmod to 336a71711 fix: do not install man and locale for exported packages3389ba2 chore: move zlib to be an external packaged93b780 chore: expose more tools46be459 chore: remove systemd versionf33fbe4 fix: install policycoreutils under correct prefix758d61c chore: update dependenciesf398a04 chore: update dependencies, hermetic build9db33dd feat: update to Go 1.23.6ef0a679 fix: do not install anything to /usr/lib6435748ea feat: fully bootstrapped build7200845 feat: update dependenciesbc30a2a feat: update Go to 1.23.5533b595 chore: rekres to fix reproducibility01568a5 chore: use Make and Go from the toolchain image0393558 feat: bump dependencies7811a5f chore: rekres to simplify .kres.yaml defaults0b8b905 chore: kresify renovate configfe34fb3 feat: update Go to 1.23.4
</p>
</details>Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
`fa5300d91` chore: revert: drop deprecated allowSchedulingOnMasters
Welcome to the v1.10.0-alpha.1 release of Talos!
This is a pre-release of Talos
Please try out the release binaries and report any issues at https://github.com/siderolabs/talos/issues.
Kernel parameter talos.auditd.disabled=1 can be used to disable Talos built-in auditd service.
Talos Linux no longer supports cgroupsv1 when running in non-container mode.
The kernel argument talos.unified_cgroup_hierarchy is now ignored.
Talos 1.10 now supports a new machine config document named PCIDriverRebindConfig that allows rebinding the driver of a PCI device to a different target driver.
See the documentation for more information.
Talos now generates /etc/iscsi/initiatorname.iscsi file based on the node identity which is tied to the lifecycle of the node.
If using iscsi-tools extension, starting with Talos 1.10 would have a more deterministic IQN for the initiator node.
Make sure to update any iSCSI targets to use the new initiator IQN.
The iqn can be read by talosctl read /etc/iscsi/initiatorname.iscsi
Talos starting with 1.10 will have ISO's that will use GRUB only for legacy BIOS and systemd-boot for modern UEFI systems.
When using .cluster.apiServer.authorizationConfig the user provided order for the authorizers is honoured and Node and RBAC authorizers are always added to the end if not explicitly specified.
Eg: If user provides only Webhook authorizer, the final order will be Webhook, Node, RBAC.
To provide a specific order for Node or RBAC explicitly, user can provide the authorizer in the order they want.
Eg:
cluster:
apiServer:
authorizationConfig:
- type: Node
name: Node
- type: Webhook
name: Webhook
webhook:
connectionInfo:
type: InClusterConfig
...
- type: RBAC
name: rbac
Usage of authorization-mode CLI argument will not support this form of customization.
Talos now generates /etc/nvme/hostnqn and /etc/nvme/hostid files based on the node identity which is tied to the lifecycle of the node.
The NQN can be read by talosctl read /etc/nvme/hostnqn
Talos is built with Go 1.23.5.
<details><summary>161 commits</summary> <p>
3a2d9867b fix: do not close client.Client.conn with finalizer73f30ff25 feat: bump pkgs for udev updateaea90cb8f docs: update hyper-vb7165615f fix: use local NTP for AWS platform673ca4bcb fix: ensure proper closure of client.Client.conn with finalizer19040ffd6 fix: handle of PE sections with duplicate names83489d348 docs: add note about vmxnet and flannel conflictf1292f5e7 docs: add iscsi-tools extension to prerequisites93b4a3740 test: bump timeout on rotate CA test42e166984 feat: support kexec from uki8da264946 docs: add Orange Pi 5 to Image Factory platforms and documentationc5fb62e2e feat: update Linux to 6.2.1183d007c16 feat: update etcd to 3.5.18edf7c3288 fix: pe uki extract70f72c5b0 docs: update multus.md807a3cd29 refactor: all network merge controllersec8c4660e docs: update vmware.mdbaf81cd49 fix(ci): k8s integration suite wait for resourcecd5e54903 feat: generate iso's with both UKI and grub75673b6a3 feat: provide stable symlinks in disk resourcesf407c88e4 fix(ci): wait for longhorn node resource601cdccb9 feat: extract kernel/initrd from uki for grubff175b9fb docs: update disk-encryption.mda8d84e315 docs: fix typos and add more explanations in docs3a384240e fix: invalid date field in iqn/nqn82c9ec158 chore(ci): add tests with longhorn v2 engine689ea1dbf fix: bring back disk UUID7a712fad2 fix: disks with 4k sector size and systemd-bootd62a34aaf feat: update tools/pkgs/extrasb9a8ad6ac chore: de-hardcode list of extra images for image-cache test683153a33 docs: remove the last mentions of preserve flag for Talos 1.8+33c7f4195 docs: fix typo an MacOS to on MacOS21cff3919 chore(ci): fio benchmark results as separate artifacts0b7fc7cdf fix: abort node watch on hostname change99ba53941 docs: remove the mention of preserve flag for Talos 1.8+bde516fde chore(ci): rework iscsi-tools extensions teste1efbf656 refactor: extract platform metadata into Talos machinery79987c05d feat: generate iqn and nqn files0cab6ed17 docs: update troubleshooting.md921e10254 chore: update Go to 1.23.5399d53b54 fix: ignore forbidden error when waiting for pod eviction8dea57a81 fix: make etc binds read-only63157dcb4 docs: update SideroLinkConfig examplefc7080e34 chore: clear cache after updating upstreams51e0f273f docs: update documentation for Talos 1.9.2e06b14112 feat: update Kubernetes to 1.32.14310b290d fix: generate UKI only if actually neededa8cd99102 docs: update OpenEBS Mayastor installationcf45f4764 docs: add Radxa ROCK 5B docs to Single Board Computer sectionb21bdc5e5 chore(ci): save csi tests fio results01c86832c chore(ci): add test for OpenEBS MayaStorc77483510 test: update talosctl debug air-gappedddd695d93 feat: update containerd to 2.0.2da2e81120 fix: add informer resync period for node status watcher9b957df64 chore: uki code restructuree41a99525 fix: kube-apiserver authorizers orderdb4ca5668 feat: add a kernel parameter to disable built-in auditdfaa149003 feat: update Linux to 6.12.98de19758d fix: a couple of imager panics/crashes5bc3e34cb fix: detect GPT before ZFSed7e47d15 refactor: drop usage of objcopy to generate UKIsedf5c5e29 fix: extfs repair and resize6e32ea5b7 fix: merge of VolumeConfig documents with sizes1be5f8ff2 feat: update Linux to 6.12.8e6a4583ba feat: support generating unsigned UKIsbbd6067d4 fix: partition alignment on disks with 4k sectors84fcc976f fix: yet another dashboard panic6d605fc85 fix: disable NRI plugin in a different way499695e24 fix: request previous IP address in discoverycc84caf8c docs: update Cilium documentationfa5300d91 chore: revert: drop deprecated allowSchedulingOnMasters0abb3dabf docs: fix command to wait for ceph-rook HEALTH_OK32c67c27c chore: drop deprecated allowSchedulingOnMastersae6d065be fix: mount selinuxfs only when SELinux is enabled5ccbf4bcd feat: enable configfs59582496d feat: bring in partity with sd-25783d84a831 chore(ci): better zfs checks650eb3a4f refactor: rewrite cloud uploader to use AWS SDK Go v201bf8449b fix: update field name for bus path disk selectore915c98d5 fix: exclude disks with empty transport for disk selectorb7a7fdc4b refactor: generate /etc/os-release file static waye79c9e127 chore(ci): drop equinix metal e2e-test418945444 fix: build of talosctl on non-Linux platforms4761a9e6a chore: update dependenciesf98efb333 fix: ignore member not found error on leave clusterb72bda0a4 fix: talosctl support and race tests27233cf0f test: use node informer instead of raw watch5dc15e8db fix: update go-blockdevice to v2.0.95f3acd0f2 fix: use correct default search domain7e5d36d46 fix: pci driver rebind config validation4b97bbc3f fix: pull in containerd CNI deadlock fix066480722 test: fix apparmor tests82ea44a6b fix: reduce installer image78b3e7f4f fix: get next rule number for IPv6 in the appropriate chain675854aa0 docs: fix two typosf70b7386a test: add a xfs makefs test8212e4864 refactor: use quirks in kernel argsb4aa5189d release(v1.10.0-alpha.0): prepare releasebd85bd5b7 fix: fix Failed to initialize SELinux labeling handle udev error73c82e3e5 feat: bring Linux 6.12.6, CNI plugins 1.6.1c12b52491 docs: document Kubernetes service registry incompat with K8s 1.32a5660ed77 feat: pcirebind controller4c3261626 docs: fix several typosfb3675321 fix: dashboard crash on CPU datadec0185c8 chore: reduce memory usage for secureboot functionscee6c60a0 fix: make talosctl time work with PTP time syncf75604313 chore: support gcr.io auth for cache and image gen6ef2596da docs: improve Hetzner documentation7d39b9ec2 feat: remove cgroupsv1 in non-container mode8003536c7 fix: restore previous disk serial fetching03116ef9b chore: prepare for Talos 1.1000682fdd6 docs: activate 1.9 docs as defaultbea05f5c9 docs: update deploying-cilium.md284ab1179 feat: support link altnames/aliases5bfd829bf docs: fix 'containter' typo8d151b771 docs: clarify TALOSCONFIG for AWS0ef19171f fix: renovate typoc568adc7d fix: renovate configec2e24fd9 fix: match MAC addresses case-insensitive (nocloud)41a0c440a chore: rekres for renovate changesa49bb9ee4 feat: update Linux to 6.12.5b15917ecc chore: add more debugging logs for META and volumes2b1b326f0 docs: mention different paths for OpenEBS9470e842f test: cleanup failed Kubernetes podsc9c685150 fix: node identity flip590c01657 feat: update containerd to v2.0.118fa5a258 docs: update image-cache doc for isoab5bb6884 fix: generate and serve registries with port58236066d fix: support image cache on VFAT USB sticke193a5071 fix: image cache integration test08ee400fd test: fix flaky test NodeAddressSortd45e8d1d1 feat: update Kubernetes to 1.32.0136b12912 chore: drop semicolon for supporting vfat filesystems3e9e027ef test: add an option to boot from an USB stickef8c3e3b3 docs: fix typo in multus.mdd54414add fix: authorization config gencce72cfe8 docs: replace deprecated Hetzner server plans81805103d chore: enable proper parallel usage of TestDepthe1b824eba docs: update ceph-with-rook.md470b75563 fix: use mtu network option for podman61b1489a0 fix: order volume config by the requested sizebc3039acd feat: update runc to 1.2.330016a0a8 fix: avoid nil-pointer-panic in RegistriesConfigControllerfe0457152 fix: power on the machine on reboot request in qemu power api10da553ef docs: build what's new for 1.9d946ccae3 feat: update Linux to 6.12.4707a77bf6 test: fix user namespace test, TPM2 fixesc3537b2f5 feat: update Linux to 6.12.3cb4d9d673 docs: fix a few mistakes in release notesc4724fc97 chore: add integration tests for image-cache07220fe7f fix: install iptables-nft to the host14841750b chore: add version compatibility for Talos 1.10852baf819 feat: support vlan/bond in v1, vlan in v2 for noclouddd61ad861 fix: lock provisioning order of user disk partitionsd0773ff09 chore: update Go to 1.23.47d6507189 feat: implement new address sorting algorithm9081506d6 feat: add process scheduling options77e9db4ab test: use two workers in qemu tests by default5a4bdf62a feat: update Kubernetes to 1.32.0-rc.1d99bcc950 chore: refactor mergeDNSServers func0cde08d8b docs: add Turing RK1 docs to Single Board Computer section
</p>
</details><details><summary>97 commits</summary> <p>
3a2d9867b fix: do not close client.Client.conn with finalizer73f30ff25 feat: bump pkgs for udev updateaea90cb8f docs: update hyper-vb7165615f fix: use local NTP for AWS platform673ca4bcb fix: ensure proper closure of client.Client.conn with finalizer19040ffd6 fix: handle of PE sections with duplicate names83489d348 docs: add note about vmxnet and flannel conflictf1292f5e7 docs: add iscsi-tools extension to prerequisites93b4a3740 test: bump timeout on rotate CA test42e166984 feat: support kexec from uki8da264946 docs: add Orange Pi 5 to Image Factory platforms and documentationc5fb62e2e feat: update Linux to 6.2.1183d007c16 feat: update etcd to 3.5.18edf7c3288 fix: pe uki extract70f72c5b0 docs: update multus.md807a3cd29 refactor: all network merge controllersec8c4660e docs: update vmware.mdbaf81cd49 fix(ci): k8s integration suite wait for resourcecd5e54903 feat: generate iso's with both UKI and grub75673b6a3 feat: provide stable symlinks in disk resourcesf407c88e4 fix(ci): wait for longhorn node resource601cdccb9 feat: extract kernel/initrd from uki for grubff175b9fb docs: update disk-encryption.mda8d84e315 docs: fix typos and add more explanations in docs3a384240e fix: invalid date field in iqn/nqn82c9ec158 chore(ci): add tests with longhorn v2 engine689ea1dbf fix: bring back disk UUID7a712fad2 fix: disks with 4k sector size and systemd-bootd62a34aaf feat: update tools/pkgs/extrasb9a8ad6ac chore: de-hardcode list of extra images for image-cache test683153a33 docs: remove the last mentions of preserve flag for Talos 1.8+33c7f4195 docs: fix typo an MacOS to on MacOS21cff3919 chore(ci): fio benchmark results as separate artifacts0b7fc7cdf fix: abort node watch on hostname change99ba53941 docs: remove the mention of preserve flag for Talos 1.8+bde516fde chore(ci): rework iscsi-tools extensions teste1efbf656 refactor: extract platform metadata into Talos machinery79987c05d feat: generate iqn and nqn files0cab6ed17 docs: update troubleshooting.md921e10254 chore: update Go to 1.23.5399d53b54 fix: ignore forbidden error when waiting for pod eviction8dea57a81 fix: make etc binds read-only63157dcb4 docs: update SideroLinkConfig examplefc7080e34 chore: clear cache after updating upstreams51e0f273f docs: update documentation for Talos 1.9.2e06b14112 feat: update Kubernetes to 1.32.14310b290d fix: generate UKI only if actually neededa8cd99102 docs: update OpenEBS Mayastor installationcf45f4764 docs: add Radxa ROCK 5B docs to Single Board Computer sectionb21bdc5e5 chore(ci): save csi tests fio results01c86832c chore(ci): add test for OpenEBS MayaStorc77483510 test: update talosctl debug air-gappedddd695d93 feat: update containerd to 2.0.2da2e81120 fix: add informer resync period for node status watcher9b957df64 chore: uki code restructuree41a99525 fix: kube-apiserver authorizers orderdb4ca5668 feat: add a kernel parameter to disable built-in auditdfaa149003 feat: update Linux to 6.12.98de19758d fix: a couple of imager panics/crashes5bc3e34cb fix: detect GPT before ZFSed7e47d15 refactor: drop usage of objcopy to generate UKIsedf5c5e29 fix: extfs repair and resize6e32ea5b7 fix: merge of VolumeConfig documents with sizes1be5f8ff2 feat: update Linux to 6.12.8e6a4583ba feat: support generating unsigned UKIsbbd6067d4 fix: partition alignment on disks with 4k sectors84fcc976f fix: yet another dashboard panic6d605fc85 fix: disable NRI plugin in a different way499695e24 fix: request previous IP address in discoverycc84caf8c docs: update Cilium documentationfa5300d91 chore: revert: drop deprecated allowSchedulingOnMasters0abb3dabf docs: fix command to wait for ceph-rook HEALTH_OK32c67c27c chore: drop deprecated allowSchedulingOnMastersae6d065be fix: mount selinuxfs only when SELinux is enabled5ccbf4bcd feat: enable configfs59582496d feat: bring in partity with sd-25783d84a831 chore(ci): better zfs checks650eb3a4f refactor: rewrite cloud uploader to use AWS SDK Go v201bf8449b fix: update field name for bus path disk selectore915c98d5 fix: exclude disks with empty transport for disk selectorb7a7fdc4b refactor: generate /etc/os-release file static waye79c9e127 chore(ci): drop equinix metal e2e-test418945444 fix: build of talosctl on non-Linux platforms4761a9e6a chore: update dependenciesf98efb333 fix: ignore member not found error on leave clusterb72bda0a4 fix: talosctl support and race tests27233cf0f test: use node informer instead of raw watch5dc15e8db fix: update go-blockdevice to v2.0.95f3acd0f2 fix: use correct default search domain7e5d36d46 fix: pci driver rebind config validation4b97bbc3f fix: pull in containerd CNI deadlock fix066480722 test: fix apparmor tests82ea44a6b fix: reduce installer image78b3e7f4f fix: get next rule number for IPv6 in the appropriate chain675854aa0 docs: fix two typosf70b7386a test: add a xfs makefs test8212e4864 refactor: use quirks in kernel args
</p>
</details><details><summary>1 commit</summary> <p>
0d45dee chore: bump deps
</p>
</details><details><summary>5 commits</summary> <p>
f4a110f fix: build tc-redirect-tap as static binary0840abb fix: pull in fixed CNI plugins from pkgs52c217f feat: update dependenciesf755eb4 chore: rekres to simplify .kres.yaml defaultse5382fc chore: kresify renovate
</p>
</details><details><summary>1 commit</summary> <p>
5ae3afe chore: update hashtriemap implementation from the latest upstream
</p>
</details><details><summary>1 commit</summary> <p>
0f784bd fix: avoid deadlock on context cancel
</p>
</details><details><summary>35 commits</summary> <p>
5763e3e feat: update systemd to 257.21e24b31 feat: update Linux to 6.12.1138749d1 fix: build CNI plugins statically linked5da83db feat: bump NVIDIA driver versions5934363 fix: certificates CA57f492d feat: bump dependencies45b9ebe feat: update Linux to 6.2.10e00ad67 chore: rekres to fix reproducibility buildcfb4b0a feat: update Go to 1.23.572f19a2 feat: update containerd to v2.0.217a80ee feat: update Linux to 6.12.9c9d718d fix: adjust kernel options around ACPI/PCI/EFIeb9d566 feat: update Linux to 6.12.873e4353 fix: update config-arm64 to add Rasperry Pi watchdog support0ab2427 fix: dvb was missing I2C_MUX support and si2168 driverc3ac8e2 chore: drop unused cert copye7eddcf feat: bump dependencies0b00e86 fix: patch containerd with CNI deadlock fix9051c9a feat: update Linux to 6.12.66695012 chore: rekres to simplify .kres.yaml defaults611ca38 chore: rekres to bring renovate under kresa4c4215 fix: drop cgroupsv1 controllers28c909d feat: update Linux firmware to 20241210c40a9e9 feat: update Linux to 6.12.5d54ca83 feat: update containerd to v2.0.186e3755 fix: add CONFIG_INTEL_MEI_GSC_PROXY as module8c31321 feat: update ZFS to 2.2.7605f493 feat: update runc to v1.2.31a55529 feat: update Linux to 6.12.452ba9a5 feat: update Linux 6.12.39cf35be feat: build host iptables with nftables support71003a3 feat: update Go to 1.23.45b4d402 feat: build dvb kernel modules and CX23885b330af9 chore: bring in KSPP recommendationsf81b190 feat: kernel driver support for RK3588 devices (Turing RK1)
</p>
</details><details><summary>8 commits</summary> <p>
7200845 feat: update dependenciesbc30a2a feat: update Go to 1.23.5533b595 chore: rekres to fix reproducibility01568a5 chore: use Make and Go from the toolchain image0393558 feat: bump dependencies7811a5f chore: rekres to simplify .kres.yaml defaults0b8b905 chore: kresify renovate configfe34fb3 feat: update Go to 1.23.4
</p>
</details>Previous release can be found at v1.9.0
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
`cce72cfe8` docs: replace deprecated Hetzner server plans
Welcome to the v1.10.0-alpha.0 release of Talos!
This is a pre-release of Talos
Please try out the release binaries and report any issues at https://github.com/siderolabs/talos/issues.
Talos Linux no longer supports cgroupsv1 when running in non-container mode.
The kernel argument talos.unified_cgroup_hierarchy is now ignored.
Talos 1.10 now supports a new machine config document named PCIDriverRebindConfig that allows rebinding the driver of a PCI device to a different target driver.
See the documentation for more information.
Talos is built with Go 1.23.4.
<details><summary>63 commits</summary> <p>
bd85bd5b7 fix: fix Failed to initialize SELinux labeling handle udev error73c82e3e5 feat: bring Linux 6.12.6, CNI plugins 1.6.1c12b52491 docs: document Kubernetes service registry incompat with K8s 1.32a5660ed77 feat: pcirebind controller4c3261626 docs: fix several typosfb3675321 fix: dashboard crash on CPU datadec0185c8 chore: reduce memory usage for secureboot functionscee6c60a0 fix: make talosctl time work with PTP time syncf75604313 chore: support gcr.io auth for cache and image gen6ef2596da docs: improve Hetzner documentation7d39b9ec2 feat: remove cgroupsv1 in non-container mode8003536c7 fix: restore previous disk serial fetching03116ef9b chore: prepare for Talos 1.1000682fdd6 docs: activate 1.9 docs as defaultbea05f5c9 docs: update deploying-cilium.md284ab1179 feat: support link altnames/aliases5bfd829bf docs: fix 'containter' typo8d151b771 docs: clarify TALOSCONFIG for AWS0ef19171f fix: renovate typoc568adc7d fix: renovate configec2e24fd9 fix: match MAC addresses case-insensitive (nocloud)41a0c440a chore: rekres for renovate changesa49bb9ee4 feat: update Linux to 6.12.5b15917ecc chore: add more debugging logs for META and volumes2b1b326f0 docs: mention different paths for OpenEBS9470e842f test: cleanup failed Kubernetes podsc9c685150 fix: node identity flip590c01657 feat: update containerd to v2.0.118fa5a258 docs: update image-cache doc for isoab5bb6884 fix: generate and serve registries with port58236066d fix: support image cache on VFAT USB sticke193a5071 fix: image cache integration test08ee400fd test: fix flaky test NodeAddressSortd45e8d1d1 feat: update Kubernetes to 1.32.0136b12912 chore: drop semicolon for supporting vfat filesystems3e9e027ef test: add an option to boot from an USB stickef8c3e3b3 docs: fix typo in multus.mdd54414add fix: authorization config gencce72cfe8 docs: replace deprecated Hetzner server plans81805103d chore: enable proper parallel usage of TestDepthe1b824eba docs: update ceph-with-rook.md470b75563 fix: use mtu network option for podman61b1489a0 fix: order volume config by the requested sizebc3039acd feat: update runc to 1.2.330016a0a8 fix: avoid nil-pointer-panic in RegistriesConfigControllerfe0457152 fix: power on the machine on reboot request in qemu power api10da553ef docs: build what's new for 1.9d946ccae3 feat: update Linux to 6.12.4707a77bf6 test: fix user namespace test, TPM2 fixesc3537b2f5 feat: update Linux to 6.12.3cb4d9d673 docs: fix a few mistakes in release notesc4724fc97 chore: add integration tests for image-cache07220fe7f fix: install iptables-nft to the host14841750b chore: add version compatibility for Talos 1.10852baf819 feat: support vlan/bond in v1, vlan in v2 for noclouddd61ad861 fix: lock provisioning order of user disk partitionsd0773ff09 chore: update Go to 1.23.47d6507189 feat: implement new address sorting algorithm9081506d6 feat: add process scheduling options77e9db4ab test: use two workers in qemu tests by default5a4bdf62a feat: update Kubernetes to 1.32.0-rc.1d99bcc950 chore: refactor mergeDNSServers func0cde08d8b docs: add Turing RK1 docs to Single Board Computer section
</p>
</details><details><summary>17 commits</summary> <p>
9051c9a feat: update Linux to 6.12.66695012 chore: rekres to simplify .kres.yaml defaults611ca38 chore: rekres to bring renovate under kresa4c4215 fix: drop cgroupsv1 controllers28c909d feat: update Linux firmware to 20241210c40a9e9 feat: update Linux to 6.12.5d54ca83 feat: update containerd to v2.0.186e3755 fix: add CONFIG_INTEL_MEI_GSC_PROXY as module8c31321 feat: update ZFS to 2.2.7605f493 feat: update runc to v1.2.31a55529 feat: update Linux to 6.12.452ba9a5 feat: update Linux 6.12.39cf35be feat: build host iptables with nftables support71003a3 feat: update Go to 1.23.45b4d402 feat: build dvb kernel modules and CX23885b330af9 chore: bring in KSPP recommendationsf81b190 feat: kernel driver support for RK3588 devices (Turing RK1)
</p>
</details><details><summary>1 commit</summary> <p>
fe34fb3 feat: update Go to 1.23.4
</p>
</details>Previous release can be found at v1.9.0
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →