Announcing Istio 1.14.2
Istio 1.14.2 patch release.
This release contains bug fixes to improve robustness and some additional support. This release note describes what’s different between Istio 1.14.1 and Istio 1.14.2.
FYI, Go 1.18.4 has been released, which includes 9 security fixes. We recommend you to upgrade to this newer Go version if you are using Go locally.
BEFORE YOU UPGRADE
Things to know and prepare before upgrading.
Download and install this release.
Visit the documentation for this release.
Inspect the full set of source code changes.
istioctl experimental envoy-stats -o prom-mergedfor retrieving
istio-proxymerged metrics from Prometheus. (Issue #39454)
Added support for Kubernetes 1.25 by using new
PodDisruptionBudgetAPI versions when supported.
Added the ability to read
cacertssecrets. (Issue #38528)
Fixed a bug when updating a multi-cluster secret, the previous cluster is not stopped. Even deleting the secret will not stop the previous cluster. (Issue #39366)
Fixed a bug where specifying
Lbpolicy is not configuring the warmup duration. (Issue #39430)
Fixed a bug when sending access logging to injected
OTel-collectorpod throws a
http2.invalid.header.fielderror. (Issue #39196)
Fixed an issue where Istio is sending traffic to unready pods when
PILOT_SEND_UNHEALTHY_ENDPOINTSis enabled. (Issue #39825)
Fixed an issue causing Service merging to only take into account the first and last Service, rather than all of them.
Fixed an issue where the
ProxyConfigimage type is not taking effect. (Issue #38959)