Skip to content
This repository was archived by the owner on Feb 10, 2026. It is now read-only.

v1.75.0

Choose a tag to compare

@cloudpossebot cloudpossebot released this 06 Oct 17:27
9598785
VPC, DNS, CloudTrail, testing Nuru (@Nuru) (#501)

breaking changes

  • VPC
    • Removed region_availability_zones. It was a pre-Atmos way of providing defaults, no longer needed now that we have Atmos.
    • Removed ec2_vpc_endpoint_enabled. It was overly specific, and the functionality has been generalized in interface_vpc_endpoints
    • Removed ineffective IPAM support, including ipv4_primary_cidr_block_association as it did not work: did not configure pool ID, did not support IPv6. Will need to be implemented better in the future.
    • Removed Kubernetes kubernetes.io/cluster/<cluster-name> tags from subnets, as they are no longer needed as of Kubernetes 1.19
    • Removed eks_component_names input and eks remote state lookup as they were only used to create the tag which is no longer created
    • Added availability_zone_ids to allow specifying subnet availability zones by ID rather than name, which we should do as best practice in us-east-1 at least so that components in different accounts are nevertheless in the same AZ. Also, required for us-east-1 using Amazon Workstations, as it is not supported in some AZs.
    • Added ipv4_cidrs input to allow complete manual configuration of subnet CIDRs
    • Added public_subnets_enabled (default true) to allow for disabling creation of public subnets
    • Added default of false for nat instance_enabled since NAT instances are deprecated and this option will likely be removed in the future.
    • Added default of true for nat_gateway_enabled
    • Added gateway_vpc_endpoints for provisioning VPC Gateway endpoints
    • Added interface_vpc_endpoints for provisioning VPC Interface endpoints for an arbitrary set of services

what

  • Upstream changes to
    • cloudtrail
    • cloudtrail-bucket
    • dns-delegated
    • dns-primary
    • vpc
  • Run bats tests on modified modules
  • Remove default.auto.tfvars per latest standard

why

  • VPC
    • Improve support for VPC Endpoints
    • Remove support for deprecated features
  • DNS
    • Change default negative TTL to 60 seconds
    • Make SOA configurable in dns-delegated
    • Improve SOA documentation
  • CloudTrail: update remote-state, fix provider version pinning
  • Testing: enforce relevant standards from our Open Source Terraform modules