Skip to content

chore(release): promote v1.6.1-rc.1 -> v1.6.1 - #3550

Merged
myasnikovdaniil merged 4 commits into
release-1.6from
release-1.6.1
Aug 5, 2026
Merged

myasnikovdaniil merged 4 commits into
release-1.6from
release-1.6.1

Conversation

@cozystack-ci

@cozystack-ci cozystack-ci Bot commented Aug 5, 2026

Copy link
Copy Markdown
Contributor

Promotes v1.6.1-rc.1 to stable v1.6.1 — no rebuild. The tree pins the rc's images by digest. On merge, pull-requests-release.yaml creates the write-once v1.6.1 tag at the merge commit, retags those digests to v1.6.1 (+:latest when this is the newest stable), publishes the stable cozy-installer chart, and publishes the release — so the stable artifacts are bit-for-bit the rc that passed e2e. Do NOT squash-merge (decision B): the stable tag must attach to a real merge commit.

⚠️ RC e2e gate bypassed — this promotion did not verify green full e2e evidence for v1.6.1-rc.1.

ℹ️ E2E already ran against the immutable rc, so this promote PR does not run E2E by default. A maintainer may add the full-e2e label to run the full suite again.

✅ Includes docs/changelogs/v1.6.1.md, which finalize uses verbatim as the published release body.

✅ Website docs PR opened/refreshed on cozystack/website (branch update-docs-v1.6.1), generated from the release-1.6.1 staging branch. Do NOT merge that PR until v1.6.1 is published — merging it early flips the site's latest-version pointer to an unpublished version and 404s its docs/API links (see the PR body).

cozystack-ci Bot added 3 commits August 4, 2026 18:45
Signed-off-by: cozystack-ci[bot] <274107086+cozystack-ci[bot]@users.noreply.github.com>
Signed-off-by: cozystack-ci[bot] <274107086+cozystack-ci[bot]@users.noreply.github.com>
Signed-off-by: cozystack-ci[bot] <274107086+cozystack-ci[bot]@users.noreply.github.com>
@cozystack-ci cozystack-ci Bot added the release Releasing a new Cozystack version label Aug 5, 2026
@cozystack-ci cozystack-ci Bot added the release Releasing a new Cozystack version label Aug 5, 2026
@github-actions github-actions Bot added area/release Issues or PRs related to release tooling (changelog, backport, release pipeline) kind/cleanup Categorizes issue or PR as related to cleanup of code, process, or technical debt size/L This PR changes 100-499 lines, ignoring generated files labels Aug 5, 2026
Assisted-By: GPT-5 <[email protected]>
Signed-off-by: Myasnikov Daniil <[email protected]>
@myasnikovdaniil
myasnikovdaniil merged commit 8f4c19d into release-1.6 Aug 5, 2026
11 of 12 checks passed
@myasnikovdaniil
myasnikovdaniil deleted the release-1.6.1 branch August 5, 2026 10:00
myasnikovdaniil added a commit that referenced this pull request Aug 18, 2026
…se-1.6 (#3893)

v1.6.1 was promoted with the rc e2e gate bypassed, and its promote PR
body says so verbatim. The reason is mechanical rather than anyone's
judgement call: workflows run from the ref they fire on, release-1.6's
`tags.yaml` has no `rc-e2e` job and this branch has no `e2e-tag.yaml` at
all, so when `v1.6.1-rc.1` was pushed there was nothing to produce
evidence the gate could find. Bypass was the only outcome available.

This closes that. Adds `e2e-tag.yaml` verbatim from main, which works as
written here because `hack/e2e-chainsaw/` and the `test-chainsaw` target
already exist on this branch. Splices main's `rc-e2e` job into
`tags.yaml`. Adds the `verify-release-candidate` job to
`pull-requests.yaml`, and the candidate-verification step to
`pull-requests-release.yaml` positioned before tag creation, publish and
retag. Plus `hack/verify-promoted-packages.sh`,
`hack/lib/promoted-packages.sh`, `hack/validate-changelog.sh` and two
bats suites.

All five files `promote-rc.yaml`'s preflight demands are present now
with their markers, where this branch previously satisfied one of five.
The e2e job name is kept byte-identical because promote-rc matches on
exactly that string, and `hack/promote-gate-contract.bats` now pins the
pair so the next drift gets a red test instead of a silent bypass.

One deviation worth knowing about. The verify job is keyed on author
plus a `release-` head branch, not on the presence of the `release`
label. On #3550 the PR was created at 09:35:31Z and the label arrived as
a separate `labeled` event at 09:35:32Z, and this branch's
`on.pull_request.types` has no `labeled`, so a label-keyed job would
satisfy the preflight marker and then never fire. Adding `labeled` was
the other option but on main it is interlocked with a concurrency split,
a `plan` guard complement and `e2e-fork.yaml`, so keying on the author
is the narrower change. Checked against every release-labelled bot PR
back to v1.0.7, the bot's other release PRs use `changelog-v*` heads so
they do not collide.
myasnikovdaniil added a commit that referenced this pull request Sep 24, 2026
…VM disks (#4431)

Backport of #3455 to `release-1.6`.

Management etcd on this branch stalls under the VM-heavy suites the same
way main did before #3455: every operator loses its lease in the same
few seconds, and install failed on it in #3550 and #3905. Second commit
widens tenant node-join deadline from 12m to 18m. Most kubernetes suite
failures on 1.6 are workers that get their CSR signed 6-9 minutes after
VMI start and miss the 12m window, the script step already has 40m so
the wider wait fits.

Both commits cherry-picked clean with `-x`.

### Testing

- `make unit-tests` green, POSIX sh sweep clean.
- Real check is E2E on this PR.

```release-note
NONE
```
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

area/release Issues or PRs related to release tooling (changelog, backport, release pipeline) kind/cleanup Categorizes issue or PR as related to cleanup of code, process, or technical debt release Releasing a new Cozystack version size/L This PR changes 100-499 lines, ignoring generated files

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant