Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): bump the go_modules group across 1 directory with 2 updates #588

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 9, 2024

Bumps the go_modules group with 2 updates in the /test/qryn_test_env/longtest directory: golang.org/x/net and google.golang.org/grpc.

Updates golang.org/x/net from 0.7.0 to 0.23.0

Commits
  • c48da13 http2: fix TestServerContinuationFlood flakes
  • 762b58d http2: fix tipos in comment
  • ba87210 http2: close connections when receiving too many headers
  • ebc8168 all: fix some typos
  • 3678185 http2: make TestCanonicalHeaderCacheGrowth faster
  • 448c44f http2: remove clientTester
  • c7877ac http2: convert the remaining clientTester tests to testClientConn
  • d8870b0 http2: use synthetic time in TestIdleConnTimeout
  • d73acff http2: only set up deadline when Server.IdleTimeout is positive
  • 89f602b http2: validate client/outgoing trailers
  • Additional commits viewable in compare view

Updates google.golang.org/grpc from 1.53.0 to 1.56.3

Release notes

Sourced from google.golang.org/grpc's releases.

Release 1.56.3

Security

  • server: prohibit more than MaxConcurrentStreams handlers from running at once (CVE-2023-44487)

    In addition to this change, applications should ensure they do not leave running tasks behind related to the RPC before returning from method handlers, or should enforce appropriate limits on any such work.

Release 1.56.2

  • status: To fix a panic, status.FromError now returns an error with codes.Unknown when the error implements the GRPCStatus() method, and calling GRPCStatus() returns nil. (#6374)

Release 1.56.1

  • client: handle empty address lists correctly in addrConn.updateAddrs

Release 1.56.0

New Features

  • client: support channel idleness using WithIdleTimeout dial option (#6263)
    • This feature is currently disabled by default, but will be enabled with a 30 minute default in the future.
  • client: when using pickfirst, keep channel state in TRANSIENT_FAILURE until it becomes READY (gRFC A62) (#6306)
  • xds: Add support for Custom LB Policies (gRFC A52) (#6224)
  • xds: support pick_first Custom LB policy (gRFC A62) (#6314) (#6317)
  • client: add support for pickfirst address shuffling (gRFC A62) (#6311)
  • xds: Add support for String Matcher Header Matcher in RDS (#6313)
  • xds/outlierdetection: Add Channelz Logger to Outlier Detection LB (#6145)
  • xds: enable RLS in xDS by default (#6343)
  • orca: add support for application_utilization field and missing range checks on several metrics setters
  • balancer/weightedroundrobin: add new LB policy for balancing between backends based on their load reports (gRFC A58) (#6241)
  • authz: add conversion of json to RBAC Audit Logging config (#6192)
  • authz: add support for stdout logger (#6230 and #6298)
  • authz: support customizable audit functionality for authorization policy (#6192 #6230 #6298 #6158 #6304 and #6225)

Bug Fixes

  • orca: fix a race at startup of out-of-band metric subscriptions that would cause the report interval to request 0 (#6245)
  • xds/xdsresource: Fix Outlier Detection Config Handling and correctly set xDS Defaults (#6361)
  • xds/outlierdetection: Fix Outlier Detection Config Handling by setting defaults in ParseConfig() (#6361)

API Changes

  • orca: allow a ServerMetricsProvider to be passed to the ORCA service and ServerOption (#6223)

Release 1.55.1

  • status: To fix a panic, status.FromError now returns an error with codes.Unknown when the error implements the GRPCStatus() method, and calling GRPCStatus() returns nil. (#6374)

Release 1.55.0

Behavior Changes

  • xds: enable federation support by default (#6151)
  • status: status.Code and status.FromError handle wrapped errors (#6031 and #6150)

... (truncated)

Commits
  • 1055b48 Update version.go to 1.56.3 (#6713)
  • 5efd7bd server: prohibit more than MaxConcurrentStreams handlers from running at once...
  • bd1f038 Upgrade version.go to 1.56.3-dev (#6434)
  • faab873 Update version.go to v1.56.2 (#6432)
  • 6b0b291 status: fix panic when servers return a wrapped error with status OK (#6374) ...
  • ed56401 [PSM interop] Don't fail target if sub-target already failed (#6390) (#6405)
  • cd6a794 Update version.go to v1.56.2-dev (#6387)
  • 5b67e5e Update version.go to v1.56.1 (#6386)
  • d0f5150 client: handle empty address lists correctly in addrConn.updateAddrs (#6354) ...
  • 997c1ea Change version to 1.56.1-dev (#6345)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps the go_modules group with 2 updates in the /test/qryn_test_env/longtest directory: [golang.org/x/net](https://github.com/golang/net) and [google.golang.org/grpc](https://github.com/grpc/grpc-go).


Updates `golang.org/x/net` from 0.7.0 to 0.23.0
- [Commits](golang/net@v0.7.0...v0.23.0)

Updates `google.golang.org/grpc` from 1.53.0 to 1.56.3
- [Release notes](https://github.com/grpc/grpc-go/releases)
- [Commits](grpc/grpc-go@v1.53.0...v1.56.3)

---
updated-dependencies:
- dependency-name: golang.org/x/net
  dependency-type: indirect
  dependency-group: go_modules
- dependency-name: google.golang.org/grpc
  dependency-type: indirect
  dependency-group: go_modules
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file go Pull requests that update Go code labels Oct 9, 2024
@CLAassistant
Copy link

CLAassistant commented Oct 9, 2024

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you all sign our Contributor License Agreement before we can accept your contribution.
1 out of 2 committers have signed the CLA.

✅ lmangani
❌ dependabot[bot]
You have signed the CLA already but the status is still pending? Let us recheck it.

@lmangani lmangani requested a review from akvlad October 9, 2024 19:37
@lmangani
Copy link
Collaborator

lmangani commented Oct 9, 2024

@akvlad please lets merge and include this in the next release

Copy link

Workflow Telemetry - K6 Test qxip/qryn / Run k6 on qryn:latest

Workflow telemetry for commit 18768b68217fcc952c4d7d441164ea54897a2750
You can access workflow job details here

Step Trace

gantt
	title Run k6 on qryn:latest
	dateFormat x
	axisFormat %H:%M:%S
	Set up job : milestone, 1731324024000, 1731324025000
	Initialize containers : 1731324025000, 1731324040000
	Checkout : 1731324040000, 1731324041000
	Run actions/setup-go@v4 : 1731324041000, 1731324048000
	Download k6 for Prometheus : 1731324048000, 1731324049000
	Download k6 for Prometheus : 1731324049000, 1731324049000
	Collect Workflow Telemetry : 1731324049000, 1731324049000
	Wait for Loki API : 1731324049000, 1731324050000
	Run k6 loki test : 1731324050000, 1731324116000
	Run mv summary.txt loki_summary.txt : 1731324116000, 1731324116000
	Wait for Prom API : 1731324116000, 1731324116000
	Run k6 prometheus test : 1731324116000, 1731324178000
	Run mv summary.txt prom_summary.txt : 1731324178000, 1731324178000
	Wait for Tempo API : 1731324178000, 1731324178000
	Run k6 tempo test : 1731324178000, 1731324246000
	Run mv summary.txt tempo_summary.txt : 1731324246000, 1731324246000
	Strip Text report : 1731324246000, 1731324246000
	Run actions/upload-artifact@v3 : 1731324246000, 1731324247000
	Summary Report : 1731324247000, 1731324247000

Loading

CPU Metrics

chart_stacked_area_time_0af76e62-93ab-4d7d-8488-15e57bd55c9d

Memory Metrics

chart_stacked_area_time_3d49684c-d43f-41d7-884c-b3a191cb086f

IO Metrics

Read Write
Network I/O chart_line_time_d9be5a77-ab64-4294-a297-ef217c9b9e40 chart_line_time_3e90d369-fad1-46dc-9ca1-a6445c03216d
Disk I/O chart_line_time_8de19872-3947-4105-8e3b-6a39eb43d8d7 chart_line_time_affc5687-86ff-45c6-90af-2ef9bdd3fe81

Process Trace

Top 100 processes with highest duration

gantt
	title Run k6 on qryn:latest
	dateFormat x
	axisFormat %H:%M:%S

Loading

@lmangani
Copy link
Collaborator

@dependabot rebase please

Copy link
Contributor Author

dependabot bot commented on behalf of github Dec 28, 2024

Looks like this PR has been edited by someone other than Dependabot. That means Dependabot can't rebase it - sorry!

If you're happy for Dependabot to recreate it from scratch, overwriting any edits, you can request @dependabot recreate.

@lmangani
Copy link
Collaborator

@dependabot recreate

Copy link
Contributor Author

dependabot bot commented on behalf of github Dec 28, 2024

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot bot closed this Dec 28, 2024
@dependabot dependabot bot deleted the dependabot/go_modules/test/qryn_test_env/longtest/go_modules-83829034f7 branch December 28, 2024 12:30
Copy link

Workflow Telemetry - K6 Test qxip/qryn / Run k6 on qryn:latest

Workflow telemetry for commit 37708341ab63b4c4dfa7540600a2371cafa1168b
You can access workflow job details here

Step Trace

gantt
	title Run k6 on qryn:latest
	dateFormat x
	axisFormat %H:%M:%S
	Set up job : milestone, 1735388911000, 1735388912000
	Initialize containers : 1735388912000, 1735388928000
	Checkout : 1735388928000, 1735388929000
	Run actions/setup-go@v4 : 1735388929000, 1735388936000
	Download k6 for Prometheus : 1735388936000, 1735388937000
	Download k6 for Prometheus : 1735388937000, 1735388938000
	Collect Workflow Telemetry : 1735388938000, 1735388938000
	Wait for Loki API : 1735388938000, 1735388938000
	Run k6 loki test : 1735388938000, 1735389005000
	Run mv summary.txt loki_summary.txt : 1735389005000, 1735389005000
	Wait for Prom API : 1735389005000, 1735389005000
	Run k6 prometheus test : 1735389005000, 1735389067000
	Run mv summary.txt prom_summary.txt : 1735389067000, 1735389067000
	Wait for Tempo API : 1735389067000, 1735389067000
	Run k6 tempo test : 1735389067000, 1735389117000
	Run mv summary.txt tempo_summary.txt : 1735389117000, 1735389117000
	Strip Text report : 1735389117000, 1735389117000
	Run actions/upload-artifact@v3 : 1735389117000, 1735389117000
	Summary Report : 1735389117000, 1735389117000

Loading

CPU Metrics

chart_stacked_area_time_9ff194a7-50f5-4d4b-b680-e5d424cab649

Memory Metrics

chart_stacked_area_time_c9eb38f9-e425-4c98-8fd7-d690c858e2a1

IO Metrics

Read Write
Network I/O chart_line_time_04539584-4aba-4f6b-bced-680e3a6f8862 chart_line_time_a11e744d-00e2-41da-a586-ce501591effe
Disk I/O chart_line_time_3b7282d2-7200-43da-bf2f-3fd543dbbaeb chart_line_time_9009c0a5-aeac-48dd-a1ef-e0e4f10b3db2

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file go Pull requests that update Go code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants