Skip to content

[v3.33] Upgrade Envoy Gateway to v1.9.1 - #5334

Merged
electricjesus merged 1 commit into
tigera:release-v1.44from
electricjesus:seth/eg-1.9.1-v1.44
Sep 24, 2026
Merged

electricjesus merged 1 commit into
tigera:release-v1.44from
electricjesus:seth/eg-1.9.1-v1.44

Conversation

@electricjesus

Copy link
Copy Markdown
Member

Description

Bumps the embedded Envoy Gateway chart and github.com/envoyproxy/gateway from v1.8.3 to v1.9.1, and sigs.k8s.io/gateway-api to v1.6.1. This is the operator half of projectcalico/calico#14025 for Calico v3.33. The images and RBAC are in projectcalico/calico#14049, and the two should merge together.

EG v1.9.1 split EnvoyGatewayKubernetesProvider into two embedded structs. Field access still works, so only one composite literal in gateway_api_test.go changes. The other go.mod moves are transitive, and match what master got in 14025.

Testing:

  • go build ./... and go vet on the gatewayapi packages are clean.
  • go test ./pkg/render/gatewayapi/... ./pkg/controller/gatewayapi/... passes with the v1.9.1 chart.

Release Note

Update the bundled Envoy Gateway to v1.9.1 and the Gateway API CRDs to v1.6.1. Envoy Gateway v1.9 raises the minimum supported Kubernetes version to v1.33.

For PR author

  • Tests for change. Existing gatewayapi tests, one literal updated.
  • If changing pkg/apis/, run make gen-files. N/A, no pkg/apis/ changes.
  • If changing versions, run make gen-versions. N/A, no component version changes.

For PR reviewers

A note for code reviewers - all pull requests must have the following:

  • Milestone set according to targeted release.
  • Appropriate labels:
    • kind/bug if this is a bugfix.
    • kind/enhancement if this is a a new feature.
    • enterprise if this PR applies to Calico Enterprise only.

AI assistance: This PR was written in part with the assistance of generative AI.

Moves github.com/envoyproxy/gateway to v1.9.1, sigs.k8s.io/gateway-api to
v1.6.1, and the embedded gateway-helm chart to v1.9.1.

EG v1.9.1 split EnvoyGatewayKubernetesProvider into two embedded structs.
Promoted field access still works, so only a composite literal in the
gatewayapi render test changes.

Pick of the operator half of projectcalico/calico#14025.

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🟡 Changes recommended

The required gateway-helm.tgz archive is missing, preventing clean compilation and the chart upgrade.

Get a fresh assessment by requesting another Copilot review.

Review effort: Lite
Findings: 1 High severity

Open (1)
What changed in this PR

Updates Envoy Gateway to v1.9.1 and Gateway API to v1.6.1 for Calico v3.33.

Changes:

  • Updates Envoy Gateway chart and Go dependencies.
  • Refreshes dependency checksums.
  • Adapts the provider configuration test.
File Description
pkg/​render/​gatewayapi/​gateway_api_test.go Updates the provider test fixture.
Makefile Updates the chart version selector.
go.sum Refreshes dependency checksums.
go.mod Updates direct and transitive dependencies.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

Comment thread Makefile
@electricjesus
electricjesus merged commit a8c59df into tigera:release-v1.44 Sep 24, 2026
4 checks passed
@electricjesus
electricjesus deleted the seth/eg-1.9.1-v1.44 branch September 24, 2026 19:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants