v1.13.4
hashicorp/vaultv1.13.4Jun 20, 2023by hc-github-team-es-release-engineering
AI Summary
Introduces automated license utilization reporting. Contains a breaking change regarding certificate count metrics. Includes multiple bug fixes for core, identity, and replication.
Key Highlights
- Added automated license utilization reporting
- Bumped Go version to 1.20.5
- Breaking change: Certificate count metrics disabled by default
- Fixed duplicate group creation issues
Breaking Changes
- secrets/pki: Maintaining running count of certificates will be turned off by default. To re-enable keeping these metrics available on the tidy status endpoint, enable maintain_stored_certificate_counts on tidy-config.
New Features
- Automated License Utilization Reporting
Full Release Notes
## 1.13.4 ### June 21, 2023 BREAKING CHANGES: * secrets/pki: Maintaining running count of certificates will be turned off by default. To re-enable keeping these metrics available on the tidy status endpoint, enable maintain_stored_certificate_counts on tidy-config, to also publish them to the metrics consumer, enable publish_stored_certificate_count_metrics . [[GH-18186](https://github.com/hashicorp/vault/pull/18186)] CHANGES: * core: Bump Go version to 1.20.5. FEATURES: * **Automated License Utilization Reporting**: Added automated license utilization reporting, which sends minimal product-license [metering data](https://developer.hashicorp.com/vault/docs/enterprise/license/utilization-reporting) to HashiCorp without requiring you to manually collect and report them. * core (enterprise): Add background worker for automatic reporting of billing information. [[GH-19625](https://github.com/hashicorp/vault/pull/19625)] IMPROVEMENTS: * api: GET ... /sys/internal/counters/activity?current_billing_period=true now results in a response which contains the full billing period [[GH-20694](https://github.com/hashicorp/vault/pull/20694)] * api: `/sys/internal/counters/config` endpoint now contains read-only `minimum_retention_months`. [[GH-20150](https://github.com/hashicorp/vault/pull/20150)] * api: `/sys/internal/counters/config` endpoint now contains read-only `reporting_enabled` and `billing_start_timestamp` fields. [[GH-20086](https://github.com/hashicorp/vault/pull/20086)] * core (enterprise): add configuration for license reporting [[GH-19891](https://github.com/hashicorp/vault/pull/19891)] * core (enterprise): license updates trigger a reload of reporting and the activity log [[GH-20680](https://github.com/hashicorp/vault/pull/20680)] * core (enterprise): support reloading configuration for automated reporting via SIGHUP [[GH-20680](https://github.com/hashicorp/vault/pull/20680)] * core (enterprise): vault server command now allows for opt-out of automated reporting via the `OPTOUT_LICENSE_REPORTING` environment variable. [[GH-3939](https://github.com/hashicorp/vault/pull/3939)] * core/activity: error when attempting to update retention configuration below the minimum [[GH-20078](https://github.com/hashicorp/vault/pull/20078)] * core/activity: refactor the activity log's generation of precomputed queries [[GH-20073](https://github.com/hashicorp/vault/pull/20073)] * ui: updates clients configuration edit form state based on census reporting configuration [[GH-20125](https://github.com/hashicorp/vault/pull/20125)] BUG FIXES: * agent: Fix bug with 'cache' stanza validation [[GH-20934](https://github.com/hashicorp/vault/pull/20934)] * core (enterprise): Don't delete backend stored data that appears to be filterable on this secondary if we don't have a corresponding mount entry. * core: Change where we evaluate filtered paths as part of mount operations; this is part of an enterprise bugfix that will have its own changelog entry. Fix wrong lock used in ListAuths link meta interface implementation. [[GH-21260](https://github.com/hashicorp/vault/pull/21260)] * core: Do not cache seal configuration to fix a bug that resulted in sporadic auto unseal failures. [[GH-21223](https://github.com/hashicorp/vault/pull/21223)] * core: Don't exit just because we think there's a potential deadlock. [[GH-21342](https://github.com/hashicorp/vault/pull/21342)] * core: Fix panic in sealed nodes using raft storage trying to emit raft metrics [[GH-21249](https://github.com/hashicorp/vault/pull/21249)] * identity: Fixes duplicate groups creation with the same name but unique IDs. [[GH-20964](https://github.com/hashicorp/vault/pull/20964)] * replication (enterprise): Fix a race condition with update-primary that could result in data loss after a DR failover * replication (enterprise): Fix path filters deleting data right after it's written by backend Initialize funcs * replication (enterprise): Fix regression causing token creation against a role with a new entity alias to be incorrectly forwarded from perf standbys. [[GH-21100](https://github.com/hashicorp/vault/pull/21100)] * storage/raft: Fix race where new follower joining can get pruned by dead server cleanup. [[GH-20986](https://github.com/hashicorp/vault/pull/20986)]