Update Terraform aws to v5 (release/v0) #178
Closed
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
>= 2.0, < 5->< 6Release Notes
hashicorp/terraform-provider-aws (aws)
v5.24.0Compare Source
NOTES:
FEATURES:
aws_opensearchserverless_lifecycle_policy(#34144)aws_detective_organization_admin_account(#25237)aws_detective_organization_configuration(#25237)aws_opensearchserverless_lifecycle_policy(#34144)aws_redshift_resource_policy(#34149)aws_verifiedaccess_endpoint(#30763)ENHANCEMENTS:
custom_headersargument (#31561)node_propertiesargument (#34153)code,database, andinitialization_scriptarguments. The update timeout has been increased to 30 minutes. (#34220)kafka.headeranderror_action.kafka.headerarguments (#34191)NO_ENCAPas a validoptions.protocolvalue (#34109)subnet_arnargument to support Tunnel-less Connect attachments (#34109)inside_cidr_blocksis Optional (#34109)backup_retention_period(also, "1") to allow integration with AWS Backup (#34187)snapshot_arnargument (#34181)manage_master_passwordandmaster_password_secret_kms_key_idarguments to support managed admin credentials (#34182)override_providerconfiguration block, allowing tags inherited from the providerdefault_tagsconfiguration block to be ignored (#33262)rotation_lambda_arnargument is now optional to support modifying the rotation schedule of AWS-managed secrets. (#34180)BUG FIXES:
idattribute for individual IPAM pools (#32133)action.forward.target_groupargument minimum item requirement. Previously this was set to 2, but the AWS API allows specifying a single target group. (#33727)enable_performance_mode(#34141)action.forward.target_groupargument minimum item requirement. Previously this was set to 2, but the AWS API allows specifying a single target group. (#33727)window_options.bounds.*argument validatation functions (#34230)window_options.bounds.*argument validatation functions (#34230)window_options.bounds.*argument validatation functions (#34230)unexpected state 'scaling-compute'(#34187)v5.23.1Compare Source
BUG FIXES:
vpc_config.ipv6_allowed_for_dual_stackattribute, fixingInvalid address to set: []string{"vpc_config", "0", "ipv6_allowed_for_dual_stack"}errors (#34134)v5.23.0Compare Source
NOTES:
finspace,kafka,medialive,rds,s3control,timestreamwrite, andxray. These changes primarily affect how arguments with default values are serialized for outbound requests, changing scalar types to pointers. See this AWS SDK for Go V2 issue for additional context. The corresponding provider changes should make this breakfix transparent to users, but as with any breaking change there is the potential for missed edge cases. If errors are observed in the impacted resources, please link to this dependency update pull request in the bug report. (#34096)FEATURES:
aws_iot_domain_configuration(#24765)ENHANCEMENTS:
image_scanning_configurationattribute (#34049)evaluation_modeattribute (#34033)ip_discoveryandnetwork_typearguments (#34019)image_scanning_configurationconfiguration block (#34049)vpc_config.ipv6_allowed_for_dual_stackargument (#34045)dns_record_client_routing_policyattribute to configure Availability Zonal DNS affinity on Network Load Balancer (NLB) (#33992)target_health_stateconfiguration block (#34070)false) forconnection_terminationargument and mark as Computed, to support new default behavior for UDP/TCP_UDP target groups (#34070)slowqueryas a validenable_cloudwatch_logs_exportsvalue (#34053)BUG FIXES:
tags_allis null (#34073)launch_templatename is updated. (#34086)falseforadd_trailing_padding_character, maintaining compatibility with older (pre-3.4.7) DMS engine versions (#34048)0as a valid value forvolume.efs_volume_configuration.transit_encryption_port, preventing unexpected drift (#34020)descriptionattribute when it is changed (#34037)thing_indexing_configuration.filterattribute, resolvingInvalidRequestException: NamedShadowNames Filter must not be empty for enabling NamedShadowIndexingModeerrors (#26859)0(representing Sunday) formaintenance_start_time.day_of_week(#34015)InvalidParameterValue: Policy Document cannot be provided when Policy Enabled is false or missingerrors when updatingpolicy_document(#34054)v5.22.0Compare Source
FEATURES:
aws_media_convert_queue(#27075)aws_elasticsearch_vpc_endpoint(#33925)aws_msk_replicator(#33973)ENHANCEMENTS:
self_service_portal_urlattribute (#34007)name_prefixargument (#33852)name_prefixargument (#33852)name_prefixargument (#33852)name_prefixargument (#33852)cluster_identifier_prefixargument (#33852)identifier_prefixargument (#33852)name_prefixargument (#33852)name_prefixargument (#33852)self_service_portal_urlattribute (#34007)name_prefixargument (#33852)name_prefixargument (#33852)name_prefixargument (#33852)name_prefixargument (#33852)name_prefixargument (#33852)typeattribute (#33950)name_prefixargument (#33852)name_prefixargument (#33852)cluster_identifier_prefixargument (#33852)identifier_prefixargument (#33852)name_prefixargument (#33852)name_prefixargument (#33852)name_prefixargument (#33852)cluster_identifier_prefixargument (#33852)identifier_prefixargument (#33852)name_prefixargument (#33852)signer:SignPayloadas a validactionvalue (#33852)statement_id_prefixargument (#33852)pre_authentication_login_bannerandpost_authentication_login_bannerlength limits to 4096 (#33937)ja3_fingerprinttofield_to_matchconfiguration blocks (#33933)BUG FIXES:
computedvalues are not set when there is no update (#33969)manage_master_user_passwordandmaster_user_secret_kms_key_idattributes correctly (#33699)engine_versionfrom6.xto a specific6.<digit>version number (#33954)permission_boundarywhen deleted outside of Terraform (#33963)permission_boundarywhen deleted outside of Terraform (#33963)Value at 'resourceTypes' failed to satisfy constrainterrors (#33348)engine_version(#33487)found resourceerrors on Delete (#33966)v5.21.0Compare Source
FEATURES:
aws_servicequotas_templates(#33871)aws_ec2_image_block_public_access(#33810)aws_guardduty_organization_configuration_feature(#33913)aws_servicequotas_template_association(#33725)aws_verifiedaccess_group(#33297)aws_verifiedaccess_instance_logging_configuration(#33864)ENHANCEMENTS:
s3_settings.glue_catalog_generationattribute (#33778)cluster_uuidattribute (#33805)outdated_instances_strategyargument (#33844)s3_settings.glue_catalog_generationattribute (#33778)glue_catalog_generationattribute (#33778)allow_major_version_upgradeargument (#33790)copy_tags_to_snapshotargument (#31022)import_tableconfiguration block (#33802)cluster_uuidattribute (#33805)cluster_uuidattribute (#33805)base_policy_documentargument (#33712)require_sslanduse_fips_sslconfig_parameterskeys (#33916)fips_enabledargument (#33880)config.lambda_event_structure_versionargument (#33804)config.port,config.protocolandconfig.vpc_identifieroptional (#33804)aws_managed_rules_acfp_rule_settomanaged_rule_group_configsconfiguration block (#33915)BUG FIXES:
AWS_S3_US_EAST_1_REGIONAL_ENDPOINTenvironment variable when configuring the S3 API client (#33874).) no longer fail validation (#33704).) no longer fail validation (#33704)v5.20.1Compare Source
NOTES:
v5.20.0Compare Source
FEATURES:
aws_guardduty_detector_feature(#31463)aws_servicequotas_template(#33688)aws_sesv2_account_vdm_attributes(#33705)aws_verifiedaccess_instance_trust_provider_attachment(#33734)ENHANCEMENTS:
featuresattribute (#31463)name(#21030)opensearchserverless_configurationandmsk_source_configurationconfiguration blocks (#33101)opensearchserverlessas a validdestinationvalue (#33101)BUG FIXES:
active_directory_configuration.self_managed_active_directory_configuration.file_system_administrators_groupis not configured (#33800)active_directory_configuration.self_managed_active_directory_configuration.file_system_administrators_groupis not configured (#33800)dns_options.dns_record_ip_typetoComputedto prevent diffs (#33743)v5.19.0Compare Source
BREAKING CHANGES:
metadataattribute's keys are always returned in lowercase (#33660)metadataattribute's keys are always returned in lowercase (#33660)NOTES:
metadataattribute's keys are now always returned in lowercase. Please modify configurations as necessary (#33660)metadataattribute's keys are now always returned in lowercase. Please modify configurations as necessary (#33660)FEATURES:
aws_cleanrooms_configured_table(#33602)aws_dms_replication_config(#32908)aws_lexv2models_bot(#33475)aws_rds_custom_db_engine_version(#33285)ENHANCEMENTS:
ubuntu-22.04-x86_64andresolve:ssm:/aws/service/cloud9/amis/ubuntu-22.04-x86_64as valid values forimage_id(#33662)bypass_snaplock_enterprise_retentionargument andsnaplock_configurationconfiguration block to support SnapLock (#32530)copy_tags_to_backupsandsnapshot_policyarguments (#32530)delete_volume_optionsargument (#32530)force_deleteargument (#33586)connection_properties,connection_modeandaccept_connectionarguments (#32990)rate_based_statement.custom_keyconfiguration block (#33594)rate_based_statement.custom_keyconfiguration block (#33594)BUG FIXES:
compute_environmentsas ARNs (#33577)IllegalUpdateerrors when updating a stagingaws_cloudfront_distributionthat is part of continuous deployment (#33578)IllegalUpdateerrors when updating a staging distribution associated with anaws_cloudfront_continuous_deployment_policy(#33578)PreconditionFailederrors when destroying a distribution associated with anaws_cloudfront_continuous_deployment_policy(#33578)StagingDistributionInUseerrors when destroying a distribution associated with anaws_cloudfront_continuous_deployment_policy(#33578)protocol.smb.domain,protocol.smb.userandprotocol.smb.password(#33641)policy(#33570)policy(#33570)policy(#33570)assume_role_policy(#33570)policy(#33570)policy(#33570)policy(#33570)couldn't find resourceerrors on resource Create (#33537)inline_policy(#33570)policy(#33570)policy(#33570)v5.18.1Compare Source
NOTES:
v5.18.0Compare Source
FEATURES:
aws_fsx_ontap_file_system(#32503)aws_fsx_ontap_storage_virtual_machine(#32621)aws_fsx_ontap_storage_virtual_machines(#32624)aws_organizations_organizational_unit(#33408)aws_opensearch_package(#33227)aws_opensearch_package_association(#33227)ENHANCEMENTS:
active_directory_configuration.self_managed_active_directory_configuration.domain_name,active_directory_configuration.self_managed_active_directory_configuration.file_system_administrators_groupandactive_directory_configuration.self_managed_active_directory_configuration.organizational_unit_distinguished_nameallowing an SVM to join AD after creation (#33466)BUG FIXES:
dkim_signing_attributes.domain_signing_private_keyas sensitive (#33477)storage_throughputcan be changed wheniopsandallocated_storageare not changed (#33529)optionportand/orversionis not set (#33511)active_directory_configuration.self_managed_active_directory_configuration.file_system_administrators_groupis configured (#33466)file_system_idto ForceNew (#32621)OperationAborted: A conflicting conditional operation is currently in progress against this resourceerrors (#33531)OperationAborted: A conflicting conditional operation is currently in progress against this resourceerrors (#33531)OperationAborted: A conflicting conditional operation is currently in progress against this resourceerrors (#33531)dkim_signing_attributes.domain_signing_private_keyas sensitive (#33477)v5.17.0Compare Source
NOTES:
/as the value forkeyis no longer supported (#33358)FEATURES:
aws_shield_application_layer_automatic_response(#33432)aws_verifiedaccess_instance(#33459)ENHANCEMENTS:
checksum_modeargument andchecksum_crc32,checksum_crc32c,checksum_sha1andchecksum_sha256attributes (#33358)details.region.bucket_account_idattribute (#33416)checksum_algorithmargument andchecksum_crc32,checksum_crc32c,checksum_sha1andchecksum_sha256attributes (#33358)checksum_algorithmargument andchecksum_crc32,checksum_crc32c,checksum_sha1andchecksum_sha256attributes (#33358)details.region.bucket_account_idargument to support cross-account Multi-Region Access Points (#33416)details.region.regionattribute (#33416)JSONSchemaDraft4schema type support (#33442)sftp_configargument and makeas2_configoptional (#32741)WAFOptimisticLockExceptionerrors (#33432)BUG FIXES:
replication_task_settingsisnil(#33456)redisengine types caused by the newtransit_encryption_enabledargument (#33451)kms_key_arnon restore from DB cluster snapshot (#33413)provisioning_artifact_parametersattribute (#33448)v5.16.2Compare Source
FEATURES:
aws_cognito_identity_pool(#33053)aws_verifiedaccess_trust_provider(#33195)ENHANCEMENTS:
instance_refresh.preferences.scale_in_protected_instancesandinstance_refresh.preferences.standby_instancesfromWaitto the Amazon EC2 Auto Scaling console recommended value ofIgnore(#33382)aliasattribute (#33388)BUG FIXES:
ValidationErrorerrors when starting Auto Scaling group instance refresh (#33382)InvalidParametererrors on Update with Kafka destinations (#33360)name(#33405)name(#33405)name(#33405)name(#33405)lb_name(#33405)lb_name(#33405)lb_name(#33405)lb_name(#33405)lb_name(#33405)lb_name(#33405)v5.16.1Compare Source
BUG FIXES:
Search returned 0 resultserrors when there are more than 101 file systems in the configured Region (#33336)unexpected stateerrors on resource Create (#33369)metadata_locationandtable_typeparameterswhen updating Iceberg tables (#33374)v5.16.0Compare Source
NOTES:
FEATURES:
aws_shield_drt_access_log_bucket_association(#33328)aws_shield_drt_access_role_arn_association(#33328)ENHANCEMENTS:
customer_idattribute (#33281)disk_iops_configurationattribute (#33303)software_update_optionsattribute (#32234)request_payerargument andrequest_chargedattribute (#33304)encoding_type(#33304)api_key_versionandfeaturesattributes (#33279)customer_idargument (#33281)name(#33281)scale_in_protected_instancesandstandby_instancesattributes toinstance_refresh.preferencesconfiguration block (#33310)redshift-serverlessas valid value forengine_name(#33316)transit_encryption_enabledargument, enabling in-transit encryption for Memcached clusters inside a VPC (#26987)disk_iops_configurationconfiguration block (#33303)open_table_format_inputconfiguration block to support open table formats such as Apache Iceberg (#33274)automatic_input_failover_settingsininput_attachments(#33129)software_update_optionsattribute (#32234)sync_complianceattribute (#23515)BUG FIXES:
filterargument to preventUnknownOperationExceptionerrors in certain Regions (#33311)filterargument to preventUnknownOperationExceptionerrors in certain Regions (#33311)max_keysvalue if it's greater than1000(#33304)cloudwatch_role_arnto an empty value and set it correctly on Read, allowing its value to be determined on import (#33279)disk_iops_configuration.iopsto160000(#33263)ResourceNotFoundExceptionerrors on resource Delete when configuredprincipal_typeisIAM_PATTERN(#32243)v5.15.0Compare Source
ENHANCEMENTS:
nameattribute (#33243)read_only_adminsattribute (#33189)cluster_config.multi_az_with_standby_enabledattribute (#33031)call_as = "DELEGATED_ADMIN"via StackSetName,CallAs syntax forimportblock orterraform importcommand (#19092)call_as = "DELEGATED_ADMIN"via StackSetName,AccountID,Region,CallAs syntax forimportblock orterraform importcommand (#19092)setting protocol: Invalid address to seterrors (#33225)nameattribute (#33243)endpoint_ip_address_range,preferred_subnet_idandroute_table_idsarguments to support the Multi-AZ deployment type (#33245)read_only_adminsargument (#33189)cluster_config.multi_az_with_standby_enabledargument (#33031)name_prefixargument (#33206)statement.managed_rule_group_statement.managed_rule_group_configs.aws_managed_rules_atp_rule_set.enable_regex_in_pathargument (#33217)BUG FIXES:
tagsthat arecomputed(#33226)oauth2incustom_connector_profile(#33192)Can only set RetainStacksOnAccountRemoval if AutoDeployment is enablederrors (#19092)TypeStringinstead ofTypeIntto preventvalue out of rangepanic (#33220)tag propagation: timeout while waiting for state to become 'TRUE'errors when any tag value is empty ("") (#33226)ShieldMitigationRuleGrouprule on resource Update (#33216)v5.14.0Compare Source
NOTES:
statement.*.conditionblocks with the sametestandvariablearguments were incorrectly handled by the provider. Since this results in unexpected IAM Policies being submitted to AWS, we have updated the logic to mergevalueslists in this case. This may cause existinConfiguration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.