This repository was archived by the owner on Nov 18, 2024. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 5
Update Terraform aws to v5.76.0 #101
Open
renovate
wants to merge
1
commit into
main
Choose a base branch
from
renovate/aws-5.x-lockfile
base: main
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Open
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
e96f72a to
6adf0fd
Compare
ec67c52 to
0ae140c
Compare
f8047f8 to
fd46514
Compare
fd46514 to
9b38637
Compare
9b38637 to
1940f95
Compare
1940f95 to
32b08ee
Compare
75056d1 to
aa59cc0
Compare
aa59cc0 to
8063c6d
Compare
8063c6d to
7f9679c
Compare
7f9679c to
aec8904
Compare
aec8904 to
14fb544
Compare
14fb544 to
6c6f830
Compare
6c6f830 to
f865c12
Compare
1836cd2 to
450df01
Compare
450df01 to
f9dd840
Compare
f9dd840 to
87a4440
Compare
87a4440 to
f5f648b
Compare
f5f648b to
d8accc6
Compare
d8accc6 to
7bdddf8
Compare
7bdddf8 to
c7a64c2
Compare
c7a64c2 to
856a271
Compare
856a271 to
525a833
Compare
525a833 to
4662cf1
Compare
4662cf1 to
d902aaf
Compare
d902aaf to
39e98c2
Compare
Sign up for free
to subscribe to this conversation on GitHub.
Already have an account?
Sign in.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
5.45.0->5.76.0Release Notes
hashicorp/terraform-provider-aws (aws)
v5.76.0Compare Source
FEATURES:
aws_vpc_security_group_vpc_association(#40069)ENHANCEMENTS:
BUG FIXES:
BadRequestException: Invalid mapping expression specifiedandNotFoundException: Invalid parameter name specifiederrors when making updates torequest_parametersand/orcache_key_parameters(#40124)BadRequestException: Invalid mapping expression specifiedandNotFoundException: Invalid parameter name specifiederrors when making updates torequest_parameters(#40124)launch_templatethat is updated causingValidationError: You must use a valid fully-formed launch template.(#40088)ipam_pool_idis set (#40082)Provider returned invalid result object after applyerrors (#40090)policy_names(#40076)policy_arns(#40076)policy_names(#40076)policy_arns(#40076)policy_names(#40076)policy_arns(#40076)v5.75.1Compare Source
ENHANCEMENTS:
descriptionattribute (#39980)reset_on_deleteto properly reset CloudWatch Role ARN on deletion. (#40004)descriptionargument (#39980)BUG FIXES:
canary_settingsandstage_descriptionwhenstage_namenot set. (#40067)ttl[0].attribute_nameto be set whenttl[0].enabledis false (#40046)ValidationExceptionon updates when RStudio is disabled on the domain (#40049)v5.75.0Compare Source
BREAKING CHANGES:
canary_settings.deployment_idattribute asrequired(#39929)NOTES:
ARNTypewill properly surface validation errors (#40008)deployment_idwas added tocanary_settingsas arequiredattribute. This breaking change was necessary to makecanary_settingsfunctional. Without this change all canary traffic was routed to the main deployment (#39929)FEATURES:
aws_spot_datafeed_subscription(#39647)ENHANCEMENTS:
init_containers,share_process_namespace, andimage_pull_secretsattributes (#40019)init_containersandshare_process_namespacearguments (#40019)containersarguments to 10 (#40019)pod_identity_associationargument (#38357)passwordargument as sensitive (#39991)BUG FIXES:
alarm_configuration.alarmsargument (#39971)ResourceNotFoundexceptions during resource destruction (#38357)Value Conversion Errorduring resource creation (#39945)tcp_idle_timeout_secondsargument for gateway load balancers (#40039)tcp_idle_timeout_secondsvalue, preventingModifyListenerAttributesAPI calls when a value is not explicitly configured (#40039)public_ip_source = "amazon":The request can only contain PubliclyAdvertisable if the AddressFamily is IPv6 and PublicIpSource is byoip.(#40042)v5.74.0Compare Source
FEATURES:
aws_lb_listener_rule(#39865)aws_opensearch_authorize_vpc_endpoint_access(#39846)aws_ssmquicksetup_configuration_manager(#39931)ENHANCEMENTS:
distribution.s3_export_configurationattribute (#35492)block_device_mapping.0.ebs.0.delete_on_termination: '' expected type 'bool', got unconvertible type 'string'errors (#39928)termination_hook_enabledargument (#35482)zonal_shift_configargument (#39852)distribution.s3_export_configurationargument (#35492)container_recipe_arnandimage_recipe_arnto be updated in-place (#39117)replication_specificationargument (#36331)efa-onlyas a valid value fornetwork_interfaces.interface_type(#39882)TransferSecurityPolicy-Restricted-2024-06as a valid value forsecurity_policy_name(#39871)BUG FIXES:
master_passwordon resource Create whensnapshot_identifieris configured (#38193)component.parameter.name,component.parameter.value,target_repository.repository_name, andtarget_repository.serviceto ForceNew (#39117)interface conversion: interface {} is nil, not map[string]interface {}panic whengeolocation_routing_policyis empty (#39944)approval_rule.approve_after_daysvalidation to allow a maximum value of360(#39949)decoding JSON: unexpected end of JSON inputerrors when updating from usingrule_jsonto usingrule(#39283)rule_json(#39878)v5.73.0Compare Source
FEATURES:
aws_ssm_patch_baselines(#39779)aws_imagebuilder_lifecycle_policy(#35674)aws_resiliencehub_resiliency_policy(#38913)aws_sagemaker_hub(#39807)aws_sagemaker_mlflow_tracking_server(#39796)ENHANCEMENTS:
valkeyas valid value forproduct_description(#39745)parametersmap attribute to readCROSS_ACCOUNT_VERSION(#39826)enable_zonal_shiftattribute (#39585)min_sizeandmax_size(#39843)zonal_configargument (#34850)approximate_creation_date_time_precisionargument (#38098)valkeyas valid value forengine(#39745)engine_version(#39745)engine_version(#39745)valkeyas valid value forengine(#39745)valkeyas valid value forengine(#39745)iceberg_configurationargument (#39844)parametersmap argument enablingCROSS_ACCOUNT_VERSIONto be set (#39826)enable_zonal_shiftargument (#39585)tcp_idle_timeout_secondsargument (#39585)nameargument (#39798)kms:DescribeKeyfor the S3 default AWS managed key (alias/aws/s3) on Read (#39782)kms:DescribeKeyfor the S3 default AWS managed key (alias/aws/s3) on Read (#39782)kms:DescribeKeyfor the S3 default AWS managed key (alias/aws/s3) on Read (#39782)default_user_settings.jupyter_lab_app_settings.app_lifecycle_management,default_user_settings.jupyter_lab_app_settings.built_in_lifecycle_config_arn,default_user_settings.jupyter_lab_app_settings.emr_settings,default_space_settings.jupyter_lab_app_settings.app_lifecycle_management,default_space_settings.jupyter_lab_app_settings.built_in_lifecycle_config_arn,default_space_settings.jupyter_lab_app_settings.emr_settings,default_user_settings.auto_mount_home_efs,default_user_settings.canvas_app_settings.emr_serverless_settings,default_user_settings.studio_web_portal_settings.hidden_instance_types,default_user_settings.code_editor_app_settings.app_lifecycle_management,default_user_settings.code_editor_app_settings.built_in_lifecycle_config_arn, andtag_propagationarguments (#39774)app_network_access_typeandapp_security_group_managementto be updated in-place (#39774)feature_definition.collection_config,feature_definition.collection_type, andthroughput_configarguments (#39805)space_settings.code_editor_app_settings.app_lifecycle_managementandspace_settings.jupyter_lab_app_settings.app_lifecycle_managementarguments (#39800)user_settings.auto_mount_home_efs,user_settings.canvas_app_settings.emr_serverless_settings,user_settings.code_editor_app_settings.app_lifecycle_management,user_settings.code_editor_app_settings.built_in_lifecycle_config_arn,user_settings.jupyter_lab_app_settings.app_lifecycle_management,user_settings.jupyter_lab_app_settings.built_in_lifecycle_config_arn,user_settings.jupyter_lab_app_settings.emr_settingsanduser_settings.studio_web_portal_settings.hidden_instance_typesarguments (#39774)BUG FIXES:
name. This fixes a regression introduced in v5.72.0 causingmultiple WorkSpaces Bundles matched; use additional constraints to reduce matches to a single WorkSpaces Bundleerrors (#39777)on_demand_throughputis excluded (#39784)policycontent is written to state (#39842)InvalidParameterValue: This API supports only cross-engine upgrades to Valkey engine currentlyerrors on Update (#39745)policycontent is written to state (#39842)policycontent is written to state (#39842)policycontent is written to state (#39842)InvalidParameterValueException: Invalid RowLevelPermissionDataSet. Namespace parameter should not be specified for Version 2errors on Create and Update (#39778)ttl=0(#39728)policycontent is written to state (#39842)policycontent is written to state (#39842)v5.72.1Compare Source
FEATURES:
aws_iam_group_policy_attachments_exclusive(#39732)aws_iam_user_policy_attachments_exclusive(#39731)ENHANCEMENTS:
scopeargument (#39744)BUG FIXES:
billing_modeis set toPAY_PER_REQUESTwithoutglobal_secondary_indexupdates (#39752)AGGREGATORindexes as tainted on Create (#39744)v5.72.0Compare Source
NOTES:
managed_policy_arnsargument is deprecated. Use theaws_iam_role_policy_attachments_exclusiveresource instead. (#39718)FEATURES:
aws_iam_role_policy_attachments_exclusive(#39718)ENHANCEMENTS:
saml_propertiesattribute (#39060)source_flow_config.source_connector_properties.sapo_data.pagination_configandsource_flow_config.source_connector_properties.sapo_data.parallelism_configattributes (#38932)aws:RequestTagconditions (#39648)appsync_targetconfiguration block (#37773)on_demand_throughputandglobal_secondary_index.on_demand_throughputarguments (#37799)serverlessv2_scaling_configuration.max_capacityandserverlessv2_scaling_configuration.min_capacityfrom128to256(#39697)storage-optimizationstatus as success when creating or updating cluster DB instances (#39691)saml_propertiesconfiguration block (#39060)BUG FIXES:
arnfor automation documents (#39705)schemahas emptystring_attribute_constraintsornumber_attribute_constraints(#20386)arnfor automation documents (#39705)v5.70.0Compare Source
NOTES:
aws_simpledb_domainresource has been deprecated and will be removed in a future version. Use Amazon DynamoDB instead (#39536)aws_worklink_fleetresource has been deprecated and will be removed in a future version. Use Amazon WorkSpaces Secure Browser instead (#39538)aws_worklink_website_certificate_authority_associationresource has been deprecated and will be removed in a future version. Use Amazon WorkSpaces Secure Browser instead (#39538)FEATURES:
aws_backup_logically_air_gapped_vault(#39098)aws_ec2_transit_gateway_default_route_table_association(#39496)aws_ec2_transit_gateway_default_route_table_propagation(#39517)aws_iam_group_policies_exclusive(#39554)aws_iam_user_policies_exclusive(#39544)aws_securityhub_standards_control_association(#39511)ENHANCEMENTS:
start_timeattribute (#39557)prepare_agentargument (#39486)vector_ingestion_configuration.custom_transformation_configurationargument (#39556)endpoint_configuration.attachment_arnargument (#39507)tagsargument andtags_allattribute (#39535)arnattribute (#39535)tagsargument andtags_allattribute (#39535)transition_default_minimum_object_sizeargument (#39578)BUG FIXES:
customer_encryption_key_arnnot being passed during update (#39565)prompt_override_configurationnot being passed when not modified (#39565)knowledge_base_configurationandstorage_configurationto ForceNew (#39567)security_group_referencing_supportargument and mark as Computed. This suppresses the diffs shown for resources created with v5.68.0 (or earlier) (#39519)policy_versioncomputed attribute changing (#39528)policy_versioncomputed attribute changing (#39528)sheets.filter_controls.list.cascading_control_configurationandsheets.parameter_controls.list.cascading_control_configurationattributes (#39453)v5.69.0Compare Source
NOTES:
(account-id).ddb.(region).amazonaws.cominstead ofdynamodb.(region).amazonaws.com. If your network configuration blocks outgoing traffic to DynamoDB based on DNS names or endpoint URLs, you must adjust your configuration, because the service's DNS name will change. You may instead disable account-based endpoints for DynamoDB by settingaccount_id_endpoint_mode = disabledin a shared config file or setting theAWS_ACCOUNT_ID_ENDPOINT_MODEenvironment variable todisabled(#39505)1.23.1. The issue with AWS Network Firewall dropping TLS handshakeClientHellomessages after the v5.65.0 upgrade to Go1.23.0, temporarily resolved by the v5.67.0 downgrade to Go1.22.7, has been addressed by removing theX25519Kyber768Draft00key exchange mechanism from the HTTP client used to make AWS API calls (#39432)ENHANCEMENTS:
tagsattribute (#39402)security_group_referencing_supportattribute (#34542)security_group_referencing_supportattribute (#34542)failure_codeandfailure_reasonattributes (#38995)guardrail_configurationargument (#39440)tagsargument andtags_allattribute (#39402)security_group_referencing_supportargument (#34542)security_group_referencing_supportargument (#34542)security_group_referencing_supportargument (#34542)volume_configuration.managed_ebs_volume.tag_specificationsattribute (#38662)display_nameto be updated in-place (#39416)credentials.secret_arnargument (#29034)BUG FIXES:
security_group_ids. This requires a call to the EC2DescribeVpcEndpointsAPI (#39454)ap-southeast-5Region (#39389)nameattribute. (#38993)nameattribute. (#38993)ConcurrentModificationExceptions during role creation (#39429)AccessDeniedException: Lambda code scanning is not supported in ...errors (#38254)AccessDeniedExceptionerrors during creation (#38254)nameandvpc_idto ForceNew (#39454)security_group_ids. This requires a call to the EC2DescribeVpcEndpointsAPI (#39454)v5.68.0Compare Source
NOTES:
inline_policyargument is deprecated. Use theaws_iam_role_policyresource instead. If Terraform should exclusively manage all inline policy associations (the current behavior of this argument), use theaws_iam_role_policies_exclusiveresource as well. (#39203)composite_slot_type_settingblock, thesubslotsargument has been renamedsub_slots. See the linked pull request for additional justification on this change. The previous misnaming effectively made this argument unusable, therefore a breaking change in a minor version was deemed acceptable. (#39353)FEATURES:
aws_elasticache_reserved_cache_node_offering(#29832)aws_securityhub_standards_control_associations(#39334)aws_synthetics_runtime_version(#39180)aws_synthetics_runtime_versions(#39180)aws_appsync_source_api_association(#39323)aws_elasticache_reserved_cache_node(#29832)aws_iam_role_policies_exclusive(#39203)aws_pinpointsmsvoicev2_opt_out_list(#25036)aws_pinpointsmsvoicev2_phone_number(#25036)aws_sesv2_account_suppression_attributes(#39325)ENHANCEMENTS:
iam_role_arnargument tos3_actionconfiguration block (#39364)namelength to 255 characters (#39315)BUG FIXES:
assume_role.role_arnto be an empty string when there is a singleassume_roleentry. (#39328)environment_variablesargument (#39397)Managed by DynamoDBencryption setting (#31284)engine_versionmismatch with RabbitMQ 3.13 and ActiveMQ 5.18 and above (#39024)endpoint_management = "CUSTOMER"(#39394)policy(#39322)v5.67.0Compare Source
BREAKING CHANGES:
value_selection_setting.advanced_recognition_settingblock, theaudio_recognition_settingargument has been renamedaudio_recognition_strategy(#39254)NOTES:
1.22.6. A small number of users have reported failed or hanging network connections using the version of the Terraform AWS provider which was first built with Go1.23.0(v5.65.0). At this point, maintainers have been unable to reproduce failures, but enough distinct users have reported issues that we are going to attempt downgrading to Go1.22.6for the next provider release. We will continue to coordinate with users and AWS in an attempt to identify the root cause, using this upcoming release with a reverted Go build version as a data point. (#39256)value_selection_setting.advanced_recognition_settingblock, theaudio_recognition_settingargument has been renamedaudio_recognition_strategy. See the linked pull request for additional justification on this change. The previous misnaming effectively made this argument unusable, therefore a breaking change in a minor version was deemed acceptable. (#39254)FEATURES:
aws_codebuild_fleet(#39237)aws_cloudformation_stack_instances(#36794)aws_codebuild_fleet(#39237)aws_computeoptimizer_enrollment_status(#35349)aws_computeoptimizer_recommendation_preferences(#35349)aws_costoptimizationhub_enrollment_status(#36440)aws_costoptimizationhub_preferences(#36526)aws_datazone_asset_type(#38812)aws_datazone_environment_profile(#38581)aws_lambda_function_recursion_config(#39153)ENHANCEMENTS:
domainandtagsas Optional. This enables certificates to be matched based on tags (#31453)encryption_typeandkms_key_idattributes (#39212)user_pool_tagsin favor of standardtags. (#39260)assume_rolenow accepts multiple elements. (#39255)cache_configargument (#39215)modeargument (#39206)hsm2m.mediumas a valid value forhsm_type(#39206)fleetattribute inenvironmentconfiguration block (#39237)snowflake_configuration.buffering_internalandsnowflake_configuration.buffering_sizearguments (#39214)READER_PRO,AUTHOR_PRO, andADMIN_PROas valid values for theuser_roleargument (#39220)default_user_settings.domain_settings.docker_settingsconfiguration block (#35416)default_user_settings.studio_web_portal_settings,default_space_settings.jupyter_lab_app_settings,default_space_settings.space_storage_settings,default_space_settings.custom_posix_user_config, anddefault_space_settings.custom_file_system_configconfiguration blocks (#38457)production_variants.managed_instance_scalingandshadow_production_variants.managed_instance_scalingconfiguration blocks (#35479)primary_container.inference_specification_nameandcontainer.inference_specification_namearguments (#35873)primary_container.model_data_source.s3_data_source.model_access_config,primary_container.multi_model_config,container.model_data_source.s3_data_source.model_access_config, andcontainer.multi_model_configconfiguration blocks (#35873)user_settings.studio_web_portal_settingsconfiguration block (#38567)definitionusing the AWS Step Functions Validation API (#39229)BUG FIXES:
created_atas an RFC3339 formatted timestamp (#24183)created_atas an RFC3339 formatted timestamp (#24183)check_certificate_revovation_statusis ignored due to bad autoflex field mapping (#39211)aggregation_periodnot set. (#39279)permissions.actionsMaxItemsfrom16to20. This fixes a regression introduced in v5.66.0 (#39226)vpc_connection_idregular expression validator. This fixes a regression iConfiguration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.