chore(deps): update terraform aws to v5.24.0 - autoclosed #319
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
5.18.1
->5.24.0
Release Notes
hashicorp/terraform-provider-aws (aws)
v5.24.0
Compare Source
NOTES:
FEATURES:
aws_opensearchserverless_lifecycle_policy
(#34144)aws_detective_organization_admin_account
(#25237)aws_detective_organization_configuration
(#25237)aws_opensearchserverless_lifecycle_policy
(#34144)aws_redshift_resource_policy
(#34149)aws_verifiedaccess_endpoint
(#30763)ENHANCEMENTS:
custom_headers
argument (#31561)node_properties
argument (#34153)code
,database
, andinitialization_script
arguments. The update timeout has been increased to 30 minutes. (#34220)kafka.header
anderror_action.kafka.header
arguments (#34191)NO_ENCAP
as a validoptions.protocol
value (#34109)subnet_arn
argument to support Tunnel-less Connect attachments (#34109)inside_cidr_blocks
is Optional (#34109)backup_retention_period
(also, "1") to allow integration with AWS Backup (#34187)snapshot_arn
argument (#34181)manage_master_password
andmaster_password_secret_kms_key_id
arguments to support managed admin credentials (#34182)override_provider
configuration block, allowing tags inherited from the providerdefault_tags
configuration block to be ignored (#33262)rotation_lambda_arn
argument is now optional to support modifying the rotation schedule of AWS-managed secrets. (#34180)BUG FIXES:
id
attribute for individual IPAM pools (#32133)action.forward.target_group
argument minimum item requirement. Previously this was set to 2, but the AWS API allows specifying a single target group. (#33727)enable_performance_mode
(#34141)action.forward.target_group
argument minimum item requirement. Previously this was set to 2, but the AWS API allows specifying a single target group. (#33727)window_options.bounds.*
argument validatation functions (#34230)window_options.bounds.*
argument validatation functions (#34230)window_options.bounds.*
argument validatation functions (#34230)unexpected state 'scaling-compute'
(#34187)v5.23.1
Compare Source
BUG FIXES:
vpc_config.ipv6_allowed_for_dual_stack
attribute, fixingInvalid address to set: []string{"vpc_config", "0", "ipv6_allowed_for_dual_stack"}
errors (#34134)v5.23.0
Compare Source
NOTES:
finspace
,kafka
,medialive
,rds
,s3control
,timestreamwrite
, andxray
. These changes primarily affect how arguments with default values are serialized for outbound requests, changing scalar types to pointers. See this AWS SDK for Go V2 issue for additional context. The corresponding provider changes should make this breakfix transparent to users, but as with any breaking change there is the potential for missed edge cases. If errors are observed in the impacted resources, please link to this dependency update pull request in the bug report. (#34096)FEATURES:
aws_iot_domain_configuration
(#24765)ENHANCEMENTS:
image_scanning_configuration
attribute (#34049)evaluation_mode
attribute (#34033)ip_discovery
andnetwork_type
arguments (#34019)image_scanning_configuration
configuration block (#34049)vpc_config.ipv6_allowed_for_dual_stack
argument (#34045)dns_record_client_routing_policy
attribute to configure Availability Zonal DNS affinity on Network Load Balancer (NLB) (#33992)target_health_state
configuration block (#34070)false
) forconnection_termination
argument and mark as Computed, to support new default behavior for UDP/TCP_UDP target groups (#34070)slowquery
as a validenable_cloudwatch_logs_exports
value (#34053)BUG FIXES:
tags_all
is null (#34073)launch_template
name is updated. (#34086)false
foradd_trailing_padding_character
, maintaining compatibility with older (pre-3.4.7) DMS engine versions (#34048)0
as a valid value forvolume.efs_volume_configuration.transit_encryption_port
, preventing unexpected drift (#34020)description
attribute when it is changed (#34037)thing_indexing_configuration.filter
attribute, resolvingInvalidRequestException: NamedShadowNames Filter must not be empty for enabling NamedShadowIndexingMode
errors (#26859)0
(representing Sunday) formaintenance_start_time.day_of_week
(#34015)InvalidParameterValue: Policy Document cannot be provided when Policy Enabled is false or missing
errors when updatingpolicy_document
(#34054)v5.22.0
Compare Source
FEATURES:
aws_media_convert_queue
(#27075)aws_elasticsearch_vpc_endpoint
(#33925)aws_msk_replicator
(#33973)ENHANCEMENTS:
self_service_portal_url
attribute (#34007)name_prefix
argument (#33852)name_prefix
argument (#33852)name_prefix
argument (#33852)name_prefix
argument (#33852)cluster_identifier_prefix
argument (#33852)identifier_prefix
argument (#33852)name_prefix
argument (#33852)name_prefix
argument (#33852)self_service_portal_url
attribute (#34007)name_prefix
argument (#33852)name_prefix
argument (#33852)name_prefix
argument (#33852)name_prefix
argument (#33852)name_prefix
argument (#33852)type
attribute (#33950)name_prefix
argument (#33852)name_prefix
argument (#33852)cluster_identifier_prefix
argument (#33852)identifier_prefix
argument (#33852)name_prefix
argument (#33852)name_prefix
argument (#33852)name_prefix
argument (#33852)cluster_identifier_prefix
argument (#33852)identifier_prefix
argument (#33852)name_prefix
argument (#33852)signer:SignPayload
as a validaction
value (#33852)statement_id_prefix
argument (#33852)pre_authentication_login_banner
andpost_authentication_login_banner
length limits to 4096 (#33937)ja3_fingerprint
tofield_to_match
configuration blocks (#33933)BUG FIXES:
computed
values are not set when there is no update (#33969)manage_master_user_password
andmaster_user_secret_kms_key_id
attributes correctly (#33699)engine_version
from6.x
to a specific6.<digit>
version number (#33954)permission_boundary
when deleted outside of Terraform (#33963)permission_boundary
when deleted outside of Terraform (#33963)Value at 'resourceTypes' failed to satisfy constraint
errors (#33348)engine_version
(#33487)found resource
errors on Delete (#33966)v5.21.0
Compare Source
FEATURES:
aws_servicequotas_templates
(#33871)aws_ec2_image_block_public_access
(#33810)aws_guardduty_organization_configuration_feature
(#33913)aws_servicequotas_template_association
(#33725)aws_verifiedaccess_group
(#33297)aws_verifiedaccess_instance_logging_configuration
(#33864)ENHANCEMENTS:
s3_settings.glue_catalog_generation
attribute (#33778)cluster_uuid
attribute (#33805)outdated_instances_strategy
argument (#33844)s3_settings.glue_catalog_generation
attribute (#33778)glue_catalog_generation
attribute (#33778)allow_major_version_upgrade
argument (#33790)copy_tags_to_snapshot
argument (#31022)import_table
configuration block (#33802)cluster_uuid
attribute (#33805)cluster_uuid
attribute (#33805)base_policy_document
argument (#33712)require_ssl
anduse_fips_ssl
config_parameters
keys (#33916)fips_enabled
argument (#33880)config.lambda_event_structure_version
argument (#33804)config.port
,config.protocol
andconfig.vpc_identifier
optional (#33804)aws_managed_rules_acfp_rule_set
tomanaged_rule_group_configs
configuration block (#33915)BUG FIXES:
AWS_S3_US_EAST_1_REGIONAL_ENDPOINT
environment variable when configuring the S3 API client (#33874).
) no longer fail validation (#33704).
) no longer fail validation (#33704)v5.20.1
Compare Source
NOTES:
v5.20.0
Compare Source
FEATURES:
aws_guardduty_detector_feature
(#31463)aws_servicequotas_template
(#33688)aws_sesv2_account_vdm_attributes
(#33705)aws_verifiedaccess_instance_trust_provider_attachment
(#33734)ENHANCEMENTS:
features
attribute (#31463)name
(#21030)opensearchserverless_configuration
andmsk_source_configuration
configuration blocks (#33101)opensearchserverless
as a validdestination
value (#33101)BUG FIXES:
active_directory_configuration.self_managed_active_directory_configuration.file_system_administrators_group
is not configured (#33800)active_directory_configuration.self_managed_active_directory_configuration.file_system_administrators_group
is not configured (#33800)dns_options.dns_record_ip_type
toComputed
to prevent diffs (#33743)v5.19.0
Compare Source
BREAKING CHANGES:
metadata
attribute's keys are always returned in lowercase (#33660)metadata
attribute's keys are always returned in lowercase (#33660)NOTES:
metadata
attribute's keys are now always returned in lowercase. Please modify configurations as necessary (#33660)metadata
attribute's keys are now always returned in lowercase. Please modify configurations as necessary (#33660)FEATURES:
aws_cleanrooms_configured_table
(#33602)aws_dms_replication_config
(#32908)aws_lexv2models_bot
(#33475)aws_rds_custom_db_engine_version
(#33285)ENHANCEMENTS:
ubuntu-22.04-x86_64
andresolve:ssm:/aws/service/cloud9/amis/ubuntu-22.04-x86_64
as valid values forimage_id
(#33662)bypass_snaplock_enterprise_retention
argument andsnaplock_configuration
configuration block to support SnapLock (#32530)copy_tags_to_backups
andsnapshot_policy
arguments (#32530)delete_volume_options
argument (#32530)force_delete
argument (#33586)connection_properties
,connection_mode
andaccept_connection
arguments (#32990)rate_based_statement.custom_key
configuration block (#33594)rate_based_statement.custom_key
configuration block (#33594)BUG FIXES:
compute_environments
as ARNs (#33577)IllegalUpdate
errors when updating a stagingaws_cloudfront_distribution
that is part of continuous deployment (#33578)IllegalUpdate
errors when updating a staging distribution associated with anaws_cloudfront_continuous_deployment_policy
(#33578)PreconditionFailed
errors when destroying a distribution associated with anaws_cloudfront_continuous_deployment_policy
(#33578)StagingDistributionInUse
errors when destroying a distribution associated with anaws_cloudfront_continuous_deployment_policy
(#33578)protocol.smb.domain
,protocol.smb.user
andprotocol.smb.password
(#33641)policy
(#33570)policy
(#33570)policy
(#33570)assume_role_policy
(#33570)policy
(#33570)policy
(#33570)policy
(#33570)couldn't find resource
errors on resource Create (#33537)inline_policy
(#33570)policy
(#33570)policy
(#33570)v5.18.1
Compare Source
NOTES:
v5.18.0
Compare Source
FEATURES:
aws_fsx_ontap_file_system
(#32503)aws_fsx_ontap_storage_virtual_machine
(#32621)aws_fsx_ontap_storage_virtual_machines
(#32624)aws_organizations_organizational_unit
(#33408)aws_opensearch_package
(#33227)aws_opensearch_package_association
(#33227)ENHANCEMENTS:
active_directory_configuration.self_managed_active_directory_configuration.domain_name
,active_directory_configuration.self_managed_active_directory_configuration.file_system_administrators_group
andactive_directory_configuration.self_managed_active_directory_configuration.organizational_unit_distinguished_name
allowing an SVM to join AD after creation (#33466)BUG FIXES:
dkim_signing_attributes.domain_signing_private_key
as sensitive (#33477)storage_throughput
can be changed wheniops
andallocated_storage
are not changed (#33529)option
port
and/orversion
is not set (#33511)active_directory_configuration.self_managed_active_directory_configuration.file_system_administrators_group
is configured (#33466)file_system_id
to ForceNew (#32621)OperationAborted: A conflicting conditional operation is currently in progress against this resource
errors (#33531)OperationAborted: A conflicting conditional operation is currently in progress against this resource
errors (#33531)OperationAborted: A conflicting conditional operation is currently in progress against this resource
errors (#33531)dkim_signing_attributes.domain_signing_private_key
as sensitive (#33477)v5.17.0
Compare Source
NOTES:
/
as the value forkey
is no longer supported (#33358)FEATURES:
aws_shield_application_layer_automatic_response
(#33432)aws_verifiedaccess_instance
(#33459)ENHANCEMENTS:
checksum_mode
argument andchecksum_crc32
,checksum_crc32c
,checksum_sha1
andchecksum_sha256
attributes (#33358)details.region.bucket_account_id
attribute (#33416)checksum_algorithm
argument andchecksum_crc32
,checksum_crc32c
,checksum_sha1
andchecksum_sha256
attributes (#33358)checksum_algorithm
argument andchecksum_crc32
,checksum_crc32c
,checksum_sha1
andchecksum_sha256
attributes (#33358)details.region.bucket_account_id
argument to support cross-account Multi-Region Access Points (#33416)details.region.region
attribute (#33416)JSONSchemaDraft4
schema type support (#33442)sftp_config
argument and makeas2_config
optional (#32741)WAFOptimisticLockException
errors (#33432)BUG FIXES:
replication_task_settings
isnil
(#33456)redis
engine types caused by the newtransit_encryption_enabled
argument (#33451)kms_key_arn
on restore from DB cluster snapshot (#33413)provisioning_artifact_parameters
attribute (#33448)v5.16.2
Compare Source
FEATURES:
aws_cognito_identity_pool
(#33053)aws_verifiedaccess_trust_provider
(#33195)ENHANCEMENTS:
instance_refresh.preferences.scale_in_protected_instances
andinstance_refresh.preferences.standby_instances
fromWait
to the Amazon EC2 Auto Scaling console recommended value ofIgnore
(#33382)alias
attribute (#33388)BUG FIXES:
ValidationError
errors when starting Auto Scaling group instance refresh (#33382)InvalidParameter
errors on Update with Kafka destinations (#33360)name
(#33405)name
(#33405)name
(#33405)name
(#33405)lb_name
(#33405)lb_name
(#33405)lb_name
(#33405)lb_name
(#33405)lb_name
(#33405)lb_name
(#33405)v5.16.1
Compare Source
BUG FIXES:
Search returned 0 results
errors when there are more than 101 file systems in the configured Region (#33336)unexpected state
errors on resource Create (#33369)metadata_location
andtable_type
parameters
when updating Iceberg tables (#33374)v5.16.0
Compare Source
NOTES:
FEATURES:
aws_shield_drt_access_log_bucket_association
(#33328)aws_shield_drt_access_role_arn_association
(#33328)ENHANCEMENTS:
customer_id
attribute (#33281)disk_iops_configuration
attribute (#33303)software_update_options
attribute (#32234)request_payer
argument andrequest_charged
attribute (#33304)encoding_type
(#33304)api_key_version
andfeatures
attributes (#33279)customer_id
argument (#33281)name
(#33281)scale_in_protected_instances
andstandby_instances
attributes toinstance_refresh.preferences
configuration block (#33310)redshift-serverless
as valid value forengine_name
(#33316)transit_encryption_enabled
argument, enabling in-transit encryption for Memcached clusters inside a VPC (#26987)disk_iops_configuration
configuration block (#33303)open_table_format_input
configuration block to support open table formats such as Apache Iceberg (#33274)automatic_input_failover_settings
ininput_attachments
(#33129)software_update_options
attribute (#32234)sync_compliance
attribute (#23515)BUG FIXES:
filter
argument to preventUnknownOperationException
errors in certain Regions (#33311)filter
argument to preventUnknownOperationException
errors in certain Regions (#33311)max_keys
value if it's greater than1000
(#33304)cloudwatch_role_arn
to an empty value and set it correctly on Read, allowing its value to be determined on import (#33279)disk_iops_configuration.iops
to160000
(#33263)ResourceNotFoundException
errors on resource Delete when configuredprincipal_type
isIAM_PATTERN
(#32243)v5.15.0
Compare Source
ENHANCEMENTS:
name
attribute (#33243)read_only_admins
attribute (#33189)cluster_config.multi_az_with_standby_enabled
attribute (#33031)call_as = "DELEGATED_ADMIN"
via StackSetName,CallAs syntax forimport
block orterraform import
command (#19092)call_as = "DELEGATED_ADMIN"
via StackSetName,AccountID,Region,CallAs syntax forimport
block orterraform import
command (#19092)setting protocol: Invalid address to set
errors (#33225)name
attribute (#33243)endpoint_ip_address_range
,preferred_subnet_id
androute_table_ids
arguments to support the Multi-AZ deployment type (#33245)read_only_admins
argument (#33189)cluster_config.multi_az_with_standby_enabled
argument (#33031)name_prefix
argument (#33206)statement.managed_rule_group_statement.managed_rule_group_configs.aws_managed_rules_atp_rule_set.enable_regex_in_path
argument (#33217)BUG FIXES:
tags
that arecomputed
(#33226)oauth2
incustom_connector_profile
(#33192)Can only set RetainStacksOnAccountRemoval if AutoDeployment is enabled
errors (#19092)TypeString
instead ofTypeInt
to preventvalue out of range
panic (#33220)tag propagation: timeout while waiting for state to become 'TRUE'
errors when any tag value is empty (""
) (#33226)ShieldMitigationRuleGroup
rule on resource Update (#33216)v5.14.0
Compare Source
NOTES:
statement.*.condition
blocks with the sametest
andvariable
arguments were incorrectly handled by the provider. Since this results in unexpected IAM Policies being submitted to AWS, we have updated the logic to mergevalues
lists in this case. This may cause existing IAM Policy documents to repConfiguration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.