replicated-software-factory[bot]andTroubleshoot Bot 5e6f3cdac1 chore: update Go dependencies (#2068)
Updated Go dependencies to latest patch/minor versions:
- cloud.google.com/go/auth v0.20.0 -> v0.21.0
- cloud.google.com/go/iam v1.5.3 -> v1.11.0
- cloud.google.com/go/monitoring v1.24.3 -> v1.29.0
- cloud.google.com/go/storage v1.61.3 -> v1.63.0
- github.com/andybalholm/brotli v1.2.1 -> v1.2.2
- github.com/aws/aws-sdk-go-v2/config v1.32.17 -> v1.32.28
- github.com/chai2010/gettext-go v1.0.2 -> v1.0.3
- github.com/cyphar/filepath-securejoin v0.6.1 -> v0.7.0
- github.com/docker/cli v29.5.3 -> v29.6.1
- github.com/fxamacker/cbor/v2 v2.9.0 -> v2.9.2
- github.com/go-viper/mapstructure/v2 v2.4.0 -> v2.5.0
- github.com/google/gnostic-models v0.7.0 -> v0.7.1
- github.com/googleapis/enterprise-certificate-proxy v0.3.16 -> v0.3.18
- github.com/hashicorp/aws-sdk-go-base/v2 v2.0.0-beta.72 -> v2.0.0-beta.73
- github.com/lufia/plan9stats v0.0.0-20260330125221 -> v0.0.0-20260627054121
- github.com/pelletier/go-toml/v2 v2.2.4 -> v2.4.3
- github.com/sagikazarmark/locafero v0.11.0 -> v0.12.0
- github.com/spiffe/go-spiffe/v2 v2.6.0 -> v2.8.1
- go.opentelemetry.io/contrib/detectors/gcp v1.42.0 -> v1.44.0
- go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.67.0 -> v0.69.0
- golang.org/x/crypto v0.53.0 -> v0.54.0
- golang.org/x/mod v0.37.0 -> v0.38.0
- golang.org/x/sync v0.21.0 -> v0.22.0
- golang.org/x/sys v0.46.0 -> v0.47.0
- golang.org/x/term v0.44.0 -> v0.45.0
- golang.org/x/text v0.39.0 -> v0.40.0
- google.golang.org/api v0.283.0 -> v0.287.1
- google.golang.org/genproto/googleapis/api v0.0.0-20260401024825 -> v0.0.0-20260706201446
- google.golang.org/genproto/googleapis/rpc v0.0.0-20260523011958 -> v0.0.0-20260706201446
- google.golang.org/grpc v1.81.1 -> v1.82.0
- k8s.io/kube-openapi v0.0.0-20260317180543 -> v0.0.0-20260706235625
- k8s.io/utils v0.0.0-20260210185600 -> v0.0.0-20260707023825
- sigs.k8s.io/structured-merge-diff/v6 v6.3.2 -> v6.4.2

Note: github.com/longhorn/go-iscsi-helper was kept at v0.0.0-20210330030558-49a327fb024e
due to breaking API changes in newer versions.

Build and tests pass successfully.

Co-authored-by: Troubleshoot Bot <troubleshoot-bot@replicated.com>
2026-07-09 09:36:56 +12:00
2025-10-08 10:22:11 -07:00
2025-10-08 10:22:11 -07:00
2019-07-05 22:38:40 +00:00
2025-10-08 10:22:11 -07:00
2026-07-08 14:37:48 +12:00
2026-07-08 14:37:48 +12:00
2026-07-09 09:36:56 +12:00
2026-07-09 09:36:56 +12:00
2019-07-19 00:55:32 +00:00
2019-07-05 22:38:40 +00:00
2025-10-08 10:22:11 -07:00
2025-10-08 10:22:11 -07:00

Replicated Troubleshoot

Replicated Troubleshoot is a framework for collecting, redacting, and analyzing highly customizable diagnostic information about a Kubernetes cluster. Troubleshoot specs are created by 3rd-party application developers/maintainers and run by cluster operators in the initial and ongoing operation of those applications.

Troubleshoot provides two CLI tools as kubectl plugins (using Krew): kubectl preflight and kubectl support-bundle. Preflight provides pre-installation cluster conformance testing and validation (preflight checks) and support-bundle provides post-installation troubleshooting and diagnostics (support bundles).

To know more about troubleshoot, please visit: https://troubleshoot.sh/

Preflight Checks

Preflight checks are an easy-to-run set of conformance tests that can be written to verify that specific requirements in a cluster are met.

To run a sample preflight check from a sample application, install the preflight kubectl plugin:

curl https://krew.sh/preflight | bash

and run, where https://preflight.replicated.com provides an example preflight spec:

kubectl preflight https://preflight.replicated.com

NOTE this is an example. Do not use to validate real scenarios.

For more details on creating the custom resource files that drive preflight checks, visit creating preflight checks.

Support Bundle

A support bundle is an archive that's created in-cluster, by collecting logs and cluster information, and executing specified commands (including redaction of sensitive information). After creating a support bundle, the cluster operator will normally deliver it to the 3rd-party application vendor for analysis and disconnected debugging. Another Replicated project, KOTS, provides k8s apps an in-cluster UI for processing support bundles and viewing analyzers (as well as support bundle collection).

To collect a sample support bundle, install the troubleshoot kubectl plugin:

curl https://krew.sh/support-bundle | bash

and run, where https://support-bundle.replicated.com provides an example support bundle spec:

kubectl support-bundle https://support-bundle.replicated.com

NOTE this is an example. Do not use to validate real scenarios.

For more details on creating the custom resource files that drive support-bundle collection, visit creating collectors and creating analyzers.

And see our other tool sbctl that makes it easier to interact with support bundles using kubectl commands you already know

Community

For questions about using Troubleshoot, how to contribute and engaging with the project in any other way, please refer to the following resources and channels.

Software Bill of Materials

A signed SBOM that includes Troubleshoot dependencies is included in each release.

  • troubleshoot-sbom.tgz contains a software bill of materials for Troubleshoot.
  • troubleshoot-sbom.tgz.sig is the digital signature for troubleshoot-sbom.tgz
  • key.pub is the public key from the key pair used to sign troubleshoot-sbom.tgz

The following example illustrates using cosign to verify that troubleshoot-sbom.tgz has not been tampered with.

$ cosign verify-blob --key key.pub --signature troubleshoot-sbom.tgz.sig troubleshoot-sbom.tgz
Verified OK

If you were to get an error similar to the one below, it means you are verifying an SBOM signed using cosign v1 using a newer v2 of the binary. This version introduced breaking changes which require an additional flag --insecure-ignore-tlog=true to successfully verify SBOMs like so.

$ cosign verify-blob --key key.pub --signature troubleshoot-sbom.tgz.sig troubleshoot-sbom.tgz --insecure-ignore-tlog=true
WARNING: Skipping tlog verification is an insecure practice that lacks of transparency and auditability verification for the blob.
Verified OK
S
Description
Preflight Checks and Support Bundles Framework for Kubernetes Applications
Readme Apache-2.0
38 MiB
Languages
Go 98.2%
Python 0.8%
Shell 0.8%
Makefile 0.2%