From a5a5cc44e9c36e07525216f6ce6af7569f15dde8 Mon Sep 17 00:00:00 2001 From: Ben Vincent Date: Sun, 27 Sep 2026 18:11:38 +1000 Subject: [PATCH] Promote bind-operator to v0.3.1 (#503) bind-operator v0.3.1 fixes the apex NS bug two ways: the operator no longer glues apex NS records to pod IPs, and a new CEL rule on `DNSRecordSpec` rejects apex NS DNSRecords at admission. The CRDs are pinned by tag URL, so bumping only the image would leave the admission half inert. - Bump the bind-operator image to `v0.3.1` - Bump the CRD install URL to the matching `v0.3.1` tag --------- Co-authored-by: unkin-agent Reviewed-on: https://git.unkin.net/unkin/argocd-apps/pulls/503 Co-authored-by: Ben Vincent Co-committed-by: Ben Vincent --- apps/base/bind-system/deployment.yaml | 2 +- apps/base/bind-system/kustomization.yaml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/apps/base/bind-system/deployment.yaml b/apps/base/bind-system/deployment.yaml index 435a209..d50dc41 100644 --- a/apps/base/bind-system/deployment.yaml +++ b/apps/base/bind-system/deployment.yaml @@ -21,7 +21,7 @@ spec: runAsNonRoot: true containers: - name: operator - image: artifactapi.k8s.syd1.au.unkin.net/docker-internal/bind-operator:v0.3.0 + image: artifactapi.k8s.syd1.au.unkin.net/docker-internal/bind-operator:v0.3.1 args: - --metrics-bind-address=:8080 - --health-probe-bind-address=:8081 diff --git a/apps/base/bind-system/kustomization.yaml b/apps/base/bind-system/kustomization.yaml index 05d78f6..b596216 100644 --- a/apps/base/bind-system/kustomization.yaml +++ b/apps/base/bind-system/kustomization.yaml @@ -6,7 +6,7 @@ resources: - namespace.yaml # CRDs are pulled from the bind-operator repo at the matching tag rather than # vendored here, so they never drift from the operator. - - https://git.unkin.net/unkin/bind-operator/raw/tag/v0.3.0/config/crd/install.yaml + - https://git.unkin.net/unkin/bind-operator/raw/tag/v0.3.1/config/crd/install.yaml - rbac.yaml - agent-dns-rbac.yaml - deployment.yaml