Skip to content

Use ubi10-micro as a base image - #13056

Draft
Frawless wants to merge 1 commit into
strimzi:mainfrom
Frawless:use-ubi10
Draft

Use ubi10-micro as a base image#13056
Frawless wants to merge 1 commit into
strimzi:mainfrom
Frawless:use-ubi10

Conversation

@Frawless

@Frawless Frawless commented Aug 13, 2026

Copy link
Copy Markdown
Member

Type of change

  • Enhancement / new feature

Description

This PR implements https://github.com/strimzi/proposals/blob/main/152-use-ubi10-as-base-image.md for current repo.

The following table shows testing results (✅/❌/❔):

Cluster type Version Status Details
Kind 1.30 GHA Run - there were two flaky runs, failures wasn't connected to changes but to slow arm runners
Kind 1.31 GHA Run
Kind 1.32 GHA Run
Kind 1.33 GHA Run
Kind 1.34 GHA Run
Kind 1.35 GHA Run
Kind 1.36 GHA Run
OCP 4.20
OCP 4.21-FIPS
OCP 4.22
OCP 4.23
OCP 5.0
IPv6/Dual stack 1.36

Checklist

TODO - change the checklist once testing is done

  • Update documentation
  • Update CHANGELOG.md (if present)
  • Reference relevant issue(s) and close them after merging
  • Write tests
  • Make sure all tests pass
  • Try your changes inside a Kubernetes cluster, not just from unit tests
  • AI assistance was used to create this PR (see the Strimzi AI policy)

Signed-off-by: Jakub Stejskal <[email protected]>
@Frawless Frawless added this to the 1.3.0 milestone Aug 13, 2026
@Frawless Frawless self-assigned this Aug 13, 2026
@snyk-io

snyk-io Bot commented Aug 13, 2026

Copy link
Copy Markdown

Snyk checks have passed. No issues have been found so far.

Status Scan Engine Critical High Medium Low Total (0)
Open Source Security 0 0 0 0 0 issues
Licenses 0 0 0 0 0 issues
Code Security 0 0 0 0 0 issues

💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse.

@codecov

codecov Bot commented Aug 13, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 80.33%. Comparing base (fab198c) to head (849b58f).
⚠️ Report is 6 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff            @@
##               main   #13056   +/-   ##
=========================================
  Coverage     80.33%   80.33%           
- Complexity     6520     6523    +3     
=========================================
  Files           343      343           
  Lines         22695    22695           
  Branches       3079     3079           
=========================================
  Hits          18232    18232           
+ Misses         3250     3249    -1     
- Partials       1213     1214    +1     

see 5 files with indirect coverage changes

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@Frawless

Copy link
Copy Markdown
Member Author

/gha run pipeline=regression,upgrade kubeVersion=kindest/node:v1.30.13@sha256:397209b3d947d154f6641f2d0ce8d473732bd91c87d9575ade99049aa33cd648

@github-actions

github-actions Bot commented Aug 13, 2026

Copy link
Copy Markdown

⏳ System test verification started: link

The following 10 job(s) will be executed:

  • regression-brokers-and-security-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operators-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operands-amd64 (cncf-ubuntu-8-32-x86)
  • regression-brokers-and-security-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operators-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operands-arm64 (cncf-ubuntu-8-32-arm)
  • upgrade-azp_kraft_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kafka_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kraft_upgrade-arm64 (cncf-ubuntu-4-16-arm)
  • upgrade-azp_kafka_upgrade-arm64 (cncf-ubuntu-4-16-arm)

Tests will start after successful build completion.

@see-quick

Copy link
Copy Markdown
Member

Also IPv6/Dual stack would be worth check?

@github-actions

Copy link
Copy Markdown

🎉 System test verification passed: link

@strimzi strimzi deleted a comment from github-actions Bot Aug 14, 2026
@Frawless

Copy link
Copy Markdown
Member Author

/gha run pipeline=regression,upgrade kubeVersion=kindest/node:v1.31.14@sha256:6f86cf509dbb42767b6e79debc3f2c32e4ee01386f0489b3b2be24b0a55aac2b

@github-actions

github-actions Bot commented Aug 14, 2026

Copy link
Copy Markdown

⏳ System test verification started: link

The following 10 job(s) will be executed:

  • regression-brokers-and-security-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operators-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operands-amd64 (cncf-ubuntu-8-32-x86)
  • regression-brokers-and-security-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operators-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operands-arm64 (cncf-ubuntu-8-32-arm)
  • upgrade-azp_kraft_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kafka_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kraft_upgrade-arm64 (cncf-ubuntu-4-16-arm)
  • upgrade-azp_kafka_upgrade-arm64 (cncf-ubuntu-4-16-arm)

Tests will start after successful build completion.

@Frawless

Copy link
Copy Markdown
Member Author

/gha run pipeline=regression,upgrade kubeVersion=kindest/node:v1.32.11@sha256:5fc52d52a7b9574015299724bd68f183702956aa4a2116ae75a63cb574b35af8

@github-actions

github-actions Bot commented Aug 14, 2026

Copy link
Copy Markdown

⏳ System test verification started: link

The following 10 job(s) will be executed:

  • regression-brokers-and-security-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operators-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operands-amd64 (cncf-ubuntu-8-32-x86)
  • regression-brokers-and-security-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operators-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operands-arm64 (cncf-ubuntu-8-32-arm)
  • upgrade-azp_kraft_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kafka_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kraft_upgrade-arm64 (cncf-ubuntu-4-16-arm)
  • upgrade-azp_kafka_upgrade-arm64 (cncf-ubuntu-4-16-arm)

Tests will start after successful build completion.

@Frawless

Copy link
Copy Markdown
Member Author

/gha run pipeline=regression,upgrade kubeVersion=kindest/node:v1.33.12@sha256:3f5c8443c620245e4d355cfe09e96a91ead32ceaa569d3f1ca9edf0cb2fe2ff4

@github-actions

github-actions Bot commented Aug 14, 2026

Copy link
Copy Markdown

⏳ System test verification started: link

The following 10 job(s) will be executed:

  • regression-brokers-and-security-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operators-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operands-amd64 (cncf-ubuntu-8-32-x86)
  • regression-brokers-and-security-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operators-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operands-arm64 (cncf-ubuntu-8-32-arm)
  • upgrade-azp_kraft_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kafka_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kraft_upgrade-arm64 (cncf-ubuntu-4-16-arm)
  • upgrade-azp_kafka_upgrade-arm64 (cncf-ubuntu-4-16-arm)

Tests will start after successful build completion.

@github-actions

Copy link
Copy Markdown

🎉 System test verification passed: link

@github-actions

Copy link
Copy Markdown

🎉 System test verification passed: link

@github-actions

Copy link
Copy Markdown

🎉 System test verification passed: link

@Frawless

Copy link
Copy Markdown
Member Author

/gha run pipeline=regression,upgrade kubeVersion=kindest/node:v1.34.8@sha256:02722c2dedddcfc00febf5d27fbeb9b7b2c14294c82109ff4a85d89ac9ba3256

@github-actions

github-actions Bot commented Aug 14, 2026

Copy link
Copy Markdown

⏳ System test verification started: link

The following 10 job(s) will be executed:

  • regression-brokers-and-security-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operators-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operands-amd64 (cncf-ubuntu-8-32-x86)
  • regression-brokers-and-security-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operators-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operands-arm64 (cncf-ubuntu-8-32-arm)
  • upgrade-azp_kraft_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kafka_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kraft_upgrade-arm64 (cncf-ubuntu-4-16-arm)
  • upgrade-azp_kafka_upgrade-arm64 (cncf-ubuntu-4-16-arm)

Tests will start after successful build completion.

@Frawless

Copy link
Copy Markdown
Member Author

/gha run pipeline=regression,upgrade kubeVersion=kindest/node:v1.35.5@sha256:ce977ae6d65918d0b58a5f8b5e940429c2ce42fa3a5619ec2bbc60b949c0ac95

@github-actions

github-actions Bot commented Aug 14, 2026

Copy link
Copy Markdown

⏳ System test verification started: link

The following 10 job(s) will be executed:

  • regression-brokers-and-security-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operators-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operands-amd64 (cncf-ubuntu-8-32-x86)
  • regression-brokers-and-security-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operators-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operands-arm64 (cncf-ubuntu-8-32-arm)
  • upgrade-azp_kraft_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kafka_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kraft_upgrade-arm64 (cncf-ubuntu-4-16-arm)
  • upgrade-azp_kafka_upgrade-arm64 (cncf-ubuntu-4-16-arm)

Tests will start after successful build completion.

@Frawless

Copy link
Copy Markdown
Member Author

/gha run pipeline=regression,upgrade kubeVersion=kindest/node:v1.36.1@sha256:3489c7674813ba5d8b1a9977baea8a6e553784dab7b84759d1014dbd78f7ebd5

@github-actions

github-actions Bot commented Aug 14, 2026

Copy link
Copy Markdown

⏳ System test verification started: link

The following 10 job(s) will be executed:

  • regression-brokers-and-security-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operators-amd64 (cncf-ubuntu-8-32-x86)
  • regression-operands-amd64 (cncf-ubuntu-8-32-x86)
  • regression-brokers-and-security-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operators-arm64 (cncf-ubuntu-8-32-arm)
  • regression-operands-arm64 (cncf-ubuntu-8-32-arm)
  • upgrade-azp_kraft_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kafka_upgrade-amd64 (cncf-ubuntu-4-16-x86)
  • upgrade-azp_kraft_upgrade-arm64 (cncf-ubuntu-4-16-arm)
  • upgrade-azp_kafka_upgrade-arm64 (cncf-ubuntu-4-16-arm)

Tests will start after successful build completion.

@github-actions

Copy link
Copy Markdown

🎉 System test verification passed: link

@github-actions

Copy link
Copy Markdown

🎉 System test verification passed: link

@github-actions

Copy link
Copy Markdown

🎉 System test verification passed: link

#####
# Get Tini
#####
ENV TINI_VERSION=v0.19.0

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Would it make sense to download tini directly to /mnt/rootfs and then copy it with it?

Comment on lines +22 to +25
java-${JAVA_VERSION}-openjdk-headless \
openssl \
bash \
tzdata \

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Here and in the other dockerfiles ... can you keep the comments what is needed why?

Comment on lines 71 to 72
ARG TARGETOS
ARG TARGETARCH

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Are these still needed?

@scholzj scholzj left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

FYI: CHANGELOG.md record would be nice for this 😉

@Frawless

Copy link
Copy Markdown
Member Author

FYI: CHANGELOG.md record would be nice for this 😉

I plan to add it within the followup commit when I fill incorporate your suggestions from review.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants