La versione 1.9.1 GA di Google Distributed Cloud air-gapped introduce uno strumento per generare modelli per gli elenchi di controllo dell'accesso dell'accesso correlati all'interconnessione.
Nella versione GA 1.9.1 di Google Distributed Cloud air-gapped, il componente Node and Operating System utilizza una funzionalità di riavvio automatico alla configurazione della VM per risolvere il problema del potenziale mancato utilizzo di un nuovo disco VM per una VM dopo l'arresto e il riavvio di KVM durante l'upgrade del cluster.
Nel componente operabile di monitoraggio, IMSPodImageReconciller non ha eseguito il loop di tutti i progetti in Artifact Registry e non è riuscito a trovare immagini nel progetto della libreria, causando l'attivazione continua dell'avviso ims_unauthorized_image.
Nella disponibilità generale privata di Google Distributed Cloud con air gap, i sistemi di rilevamento e prevenzione delle intrusioni Syslog vengono distribuiti a ogni organizzazione.
Google Distributed Cloud air-gapped 1.9.1 GA aggiunge regole di sicurezza per il protocollo BGP (Border Gateway Protocol) sui firewall che utilizzano CIDR di link hairpin e per il protocollo ICMP (Internet Control Message Protocol) sui firewall che utilizzano CIDR esterni dell'istanza.
È stata aggiornata la versione di Google Distributed Cloud alla 1.14.2-gke.11 per applicare le patch di sicurezza più recenti e gli aggiornamenti importanti.
È stata aggiornata la versione dell'immagine del sistema operativo Canonical Ubuntu alla versione 20230227 per applicare le patch di sicurezza più recenti e gli aggiornamenti importanti.
Sono state corrette le seguenti vulnerabilità di sicurezza:
Google Distributed Cloud air-gapped 1.9.1 presenta un problema noto per cui controllo dell'accesso basato sui ruoli (RBAC) e le impostazioni dello schema in VM Manager impediscono agli utenti di avviare i processi di backup e ripristino delle VM.
Google Distributed Cloud air-gapped 1.9.0 presenta un problema noto per cui
il software di gestione remota del server
a volte non riesce a recuperare la chiave da HSM.
Google Distributed Cloud air-gapped 1.9.1 GA presenta un problema noto per cui l'utilizzo della classe di archiviazione standard-block potrebbe impedire l'avvio o il riavvio delle macchine virtuali (VM).
La versione GA 1.9.1 di Google Distributed Cloud air-gapped presenta un problema noto per cui un nodo di calcolo si blocca dopo il riprovisioning di una macchina.
Google Distributed Cloud air-gapped 1.9.1 GA presenta un problema noto durante l'upgrade del sistema operativo del nodo in cui il server è bloccato nel deprovisioning perché l'URL boot.ipxe non è valido.
Google Distributed Cloud air-gapped 1.9.1 GA presenta un problema noto durante l'upgrade del sistema operativo del nodo in cui un nodo non riesce a eseguire il job machine-init.
Google Distributed Cloud air-gapped 1.9.1 GA presenta un problema noto per cui l'upgrade dalla versione 1.9.0 alla 1.9.1 è bloccato perché l'add-on ods-fleet non è stato installato.
Google Distributed Cloud air-gapped 1.9.0 presenta un problema noto nell'interfaccia utente che consente di selezionare un accoppiamento incompatibile di GPU e tipo di VM.
Google Distributed Cloud air-gapped 1.9.0 presenta un problema noto per cui le VM con memoria superiore a 32 GB richiedono una sostituzione della memoria a causa di un calcolo errato dell'overhead di QEMU.
Google Distributed Cloud air-gapped 1.9.1 GA presenta un problema noto per cui gli avvisi nei cluster di sistema dell'organizzazione non raggiungono il sistema di gestione dei ticket.
[[["Facile da capire","easyToUnderstand","thumb-up"],["Il problema è stato risolto","solvedMyProblem","thumb-up"],["Altra","otherUp","thumb-up"]],[["Difficile da capire","hardToUnderstand","thumb-down"],["Informazioni o codice di esempio errati","incorrectInformationOrSampleCode","thumb-down"],["Mancano le informazioni o gli esempi di cui ho bisogno","missingTheInformationSamplesINeed","thumb-down"],["Problema di traduzione","translationIssue","thumb-down"],["Altra","otherDown","thumb-down"]],["Ultimo aggiornamento 2025-09-04 UTC."],[[["\u003cp\u003eGoogle Distributed Cloud air-gapped 1.9.1 is now generally available, offering a range of services including AI/ML, compute, databases, marketplace, networking, security, and storage.\u003c/p\u003e\n"],["\u003cp\u003eThe new release introduces predefined cluster roles for disaster recovery, enhancing the management capabilities for Infrastructure Operators and Platform Administrators.\u003c/p\u003e\n"],["\u003cp\u003eVersion 1.9.1 of Google Distributed Cloud includes a tool for generating templates for interconnect-related access control lists and improvements for Node and Operating System component failures.\u003c/p\u003e\n"],["\u003cp\u003eMultiple security vulnerabilities in both the Ubuntu OS image and container images have been addressed in this release, as well as updating the google distributed cloud version to 1.14.2.\u003c/p\u003e\n"],["\u003cp\u003eSeveral known issues have been identified in versions 1.9.0 and 1.9.1, including problems with VM backup and restore processes, \u003ccode\u003estandard-block\u003c/code\u003e storage class, node reprovisioning, node OS upgrades, add-on installations, GPU-to-VM coupling, and memory overrides.\u003c/p\u003e\n"]]],[],null,["# Google Distributed Cloud air-gapped 1.9.1 release notes\n\n\u003cbr /\u003e\n\nMarch 21, 2023 \\[GDC 1.9.1 General Availability\\]\n-------------------------------------------------\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 General Availability (GA) is now released.\n\nSee the [product overview](/distributed-cloud/hosted/docs/latest/gdch/overview) to learn about the features of Google Distributed Cloud air-gapped.\n\nThe following table lists services available in Google Distributed Cloud air-gapped.\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA introduces new predefined cluster roles for disaster recovery:\n\n- `dr-admin` created on a root admin cluster for an Infrastructure Operator (IO).\n\n- `gdch-dr-admin` created in the namespace `gdch-dr` for an IO for bucket creation.\n\n- `dr-restore-admin` created on an org admin cluster for an IO.\n\n- `dr-backup-admin` created on an org admin cluster for a Platform Administrator (PA).\n\n- `dr-system-admin` created in the namespace `dr-system` for a PA for bucket creation.\n\nFor details, see:\n\n- [Predefined identity and access roles tables for PA and AO](/distributed-cloud/hosted/docs/latest/gdch/platform/pa-user/iam/role-descriptions)\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA introduces a tool for generating templates for interconnect-related access control lists.\n\n*** ** * ** ***\n\n\nIn Google Distributed Cloud air-gapped 1.9.1 GA, the Node and Operating System component uses an auto restart on configuration feature of the VM to resolve the issue of potential failure to use a new VM disk for a VM after stopping and restarting KVM during cluster upgrade.\n\n*** ** * ** ***\n\n\nIn Monitoring operable component, `IMSPodImageReconciller` did not loop all projects in Artifact Registry and couldn't find images in the library project causing the `ims_unauthorized_image` alert to fire all the time.\n\n*** ** * ** ***\n\n\nIn Google Distributed Cloud air-gapped Private General Availability, Intrusion Detection and Prevention Systems Syslog fans-out to each organization.\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA adds security rules for Border Gateway Protocol on firewalls using hairpin links CIDR and for Internet Control Message Protocol on firewalls using instance external CIDR.\n\n*** ** * ** ***\n\n\nUpdated Google Distributed Cloud version to 1.14.2-gke.11 to apply the latest security patches and important updates.\n\nSee [Google Distributed Cloud 1.14.2 release notes](https://cloud.google.com/anthos/clusters/docs/bare-metal/latest/release-notes#March_01_2023) for details.\n\n*** ** * ** ***\n\n\nUpdated Canonical Ubuntu OS image version to 20230227 to apply the latest security patches and important updates.\n\nThe following security vulnerabilities are fixed:\n\n- [CVE-2022-2601](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2601)\n- [CVE-2022-3775](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3775)\n- [CVE-2022-2601](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2601)\n- [CVE-2022-3775](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3775)\n\n*** ** * ** ***\n\n\nThe following container image security vulnerabilities are fixed:\n\n- [CVE-2023-0286](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-0286)\n- [CVE-2023-0215](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-0215)\n- [CVE-2022-4450](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-4450)\n- [CVE-2022-2097](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2097)\n- [CVE-2022-32221](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-32221)\n- [CVE-2022-41903](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-41903)\n- [CVE-2022-23521](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-23521)\n- [CVE-2022-39260](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39260)\n- [CVE-2022-29187](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-29187)\n- [CVE-2022-24765](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-24765)\n- [CVE-2022-39253](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39253)\n- [CVE-2021-46848](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-46848)\n- [CVE-2022-42898](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42898)\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 has a known issue where role-based access control (RBAC) and schema settings in the VM manager is stopping users from starting VM backup and restore processes.\n\n*** ** * ** ***\n\nGoogle Distributed Cloud air-gapped 1.9.0 has a known issue where\n\nremote server management software\n\nis occasionally unable to retrieve the key from HSM.\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA has a known issue where using the `standard-block` storage class might prevent virtual machines (VMs) from starting or restarting.\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA has a known issue where a compute node becomes stuck after reprovisioning a machine.\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA has a known issue during the Node OS upgrade where a the server is stuck in deprovisioning because `boot.ipxe` URL is invalid.\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA has a known issue during the Node OS upgrade where a node fails the `machine-init` job.\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA has a known issue where the upgrade from 1.9.0 to 1.9.1 is blocked because the `ods-fleet` add-on failed to install.\n\n*** ** * ** ***\n\nGoogle Distributed Cloud air-gapped 1.9.0 has a known issue in the UI that lets you select an incompatible coupling of GPU to VM type.\n\n*** ** * ** ***\n\nGoogle Distributed Cloud air-gapped 1.9.0 has a known issue where VMs with memory greater than 32 GB require a memory override due to an incorrect QEMU overhead calculation.\n\n*** ** * ** ***\n\n\nGoogle Distributed Cloud air-gapped 1.9.1 GA has a known issue where alerts in organization system clusters don't reach the ticketing system."]]