Update Terraform google to v3.90.1 #10
Open
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Coming soon: The Renovate bot (GitHub App) will be renamed to Mend. PRs from Renovate will soon appear from 'Mend'. Learn more here.
This PR contains the following updates:
3.58.0->3.90.1Warning
Some dependencies could not be looked up. Check the warning logs for more information.
Release Notes
hashicorp/terraform-provider-google (google)
v3.90.1Compare Source
DEPRECATIONS:
master_auth, constraining it tomaster_auth.usernameandmaster_auth.passwordv3.90.0Compare Source
DEPRECATIONS:
workload_identity_config.0.identity_namespaceand it will be removed in a future major release as it has been deprecated in the API. Useworkload_identity_config.0.workload_poolinstead. Switching your configuration from one value to the other will trigger a diff at plan time, and a spurious update. (#10327)google_container_clusterfields:instance_group_urlsandmaster_auth(#10356)IMPROVEMENTS:
node_config.0.guest_accelerator.0.gpu_partition_sizefield to google_container_node_pool (#10339)workload_identity_config.0.workload_pooltogoogle_container_cluster(#10327)monitoring_configto acceptWORKLOAD(#10321)BUG FIXES:
template.spec.containers.ports.nameof thegoogle_cloud_run_serviceresource (#10340)config.node_config.zonerequirement ongoogle_composer_environment(#10353)failover_policyongoogle_compute_region_backend_service(#10316)descriptionupdatable without recreation ongoogle_compute_instance_group_manager(#10329)google_container_node_pool.workload_metadata_config.mode(#10313)google_scc_notification_config.streaming_config.filterwas not updating. (#10315)v3.89.0Compare Source
DEPRECATIONS:
enable_displayfield ingoogle_compute_instance_templatein thegoogle(GA) provider. It will only be available in thegoogle-betaprovider in a future release, as the underlying feature is in beta. (#10281)BUG FIXES:
google_compute_router_peercould not set an advertised route priority of 0, causing permadiff. (#10292)monitoring_configofgoogle_container_cluster(#10290)google_storage_bucketresources. (#10287)v3.88.0Compare Source
NOTES:
DEPRECATIONS:
workload_metadata_configuration.node_metadatain favor ofworkload_metadata_configuration.modeingoogle_container_cluster(#10238)google_dataproc_workflow_template.versionfield, as it wasn't actually useful. The field is used during updates, but updates aren't currently possible with the resource. (#10183)google(GA) provider includinggoogle_runtimeconfig_config,google_runtimeconfig_variable,google_runtimeconfig_config_iam_policy,google_runtimeconfig_config_iam_binding,google_runtimeconfig_config_iam_member,data.google_runtimeconfig_config. They will only be available in thegoogle-betaprovider in a future release, as the underlying service is in beta. (#10232)BREAKING CHANGES:
config_membershipfield ingoogle_gke_hub_featurerequired, disallowing invalid configurations (#10199)configmanagement,feature,location,membershipfields ingoogle_gke_hub_feature_membershiprequired, disallowing invalid configurations (#10199)FEATURES:
google_service_networking_peered_dns_domain(#10229)google_sourcerepo_repository(#10203)google_storage_bucket(#10190)google_pubsub_lite_reservation(#10263)google_service_networking_peered_dns_domain(#10229)IMPROVEMENTS:
workloads_configandcloud_composer_network_ipv4_cidr_blocktocomposer_environment(10269)google_compute_subnetworkandgoogle_compute_instance.network_interfaces(#10189)workload_metadata_configuration.modeingoogle_container_cluster(#10238)uidoutput field,cloud_functiondestination togoogle_eventarc_trigger(#10199)gcp_service_account_emailwhen configuring Git sync ingoogle_gke_hub_feature_membership(#10199)resource_state,stateoutputs togoogle_gke_hub_feature(#10199)google_pubsub_lite_reservationtogoogle_pubsub_lite_topic. (#10263)BUG FIXES:
google_monitoring_uptime_check_configwhereNOT_MATCHES_REGEXcould not be specified. (#10249)v3.87.0Compare Source
3.87.0 (October 04, 2021)
DEPRECATIONS:
google_dataproc_workflow_template.versionfield, as it wasn't actually useful. The field is used during updates, but updates aren't currently possible with the resource. (#10183)FEATURES:
google_org_policy_policy(#10111)IMPROVEMENTS:
service_accounttogoogle_cloudbuild_trigger(#10159)scheduler_counttogoogle_composer_environment(#10158)resource_policiesproperty (#10173)logging_configandmonitoring_configtogoogle_container_cluster(#10125)import_onlytogoogle_kms_crypto_key(#10157)google_network_services_edge_cache_originfrom 30m to 60m (#10182)BUG FIXES:
reserved_ip_rangeongoogle_filestore_instancevia recreation of the instance (#10146)v3.86.0Compare Source
IMPROVEMENTS:
google_healthcare_hl7_v2_store.parseConfig.versionto GA (#10099)BUG FIXES:
google_dns_record_setwhererrdatascould not be updated (#10089)google_dns_record_setwhere creating the resource would result in an 409 error (#10089)google_organization_policy(#10082)v3.85.0Compare Source
IMPROVEMENTS:
user_project_overrideingoogle_bigtable_instanceandgoogle_bigtable_table(#10060)iapfields togoogle_compute_region_backend_service(#10038)nextHopIlbfield ofgoogle_compute_routeresource (#10048)disabledfield togoogle_service_accountresource (#10033)pathtogoogle_storage_transfer_job(#10047)BUG FIXES:
deployment.container.imagewould update to an old version even if inignore_changes(#10058)destination_encryption_config.kms_key_namestored the version rather than the key name. (#10068)google_redis_instance(#10037)google_project_servicewhere users could not reenable services that were disabled outside of Terraform. (#10045)v3.84.0Compare Source
FEATURES:
google_secret_manager_secret(#9983)IMPROVEMENTS:
google_compute_service_attachment(#9982)BUG FIXES:
maintenance_exclusionongoogle_container_cluster(#10025)google_compute_router_natwhere removinglog_configresulted in a perma-diff (#9950)advanced_machine_featureserror messages ingoogle_compute_instance(#10023)google_cloudfunctions_function(#10011)bucket_options.linear_buckets.widthongoogle_logging_metric(#9985)google_os_config_guest_policies(#10019)days_since_noncurrent_timeofgoogle_storage_bucket(#10024)v3.83.0: 3.83.0Compare Source
FEATURES:
google_privateca_certificate_template(#9905)IMPROVEMENTS:
certificate_templatetogoogle_privateca_certificate. (#9915)ip_addressfield ofgoogle_compute_router_peer(#9913)google_compute_service_attachmentto ga (#9914)roleandpurposefields ingoogle_compute_subnetworkto ga (#9914)destroy_scheduled_durationtogoogle_kms_crypto_key(#9911)BUG FIXES:
config_idongoogle_endpoints_service(#9912)google_cloudbuild_triggeras requiring one of branch_name/tag_name/commit_sha within build.source.repo_source (#9952)enablefield ofgoogle_compute_router_peer(#9940)next_hop_instance_zoneongoogle_compute_routewhennext_hop_instancewas set to a self link (#9931)google_compute_router_natwhere removinglog_configresulted in a perma-diff (#9950)publishing_optionsongoogle_privateca_ca_poolwhen both attributes set false (#9926)google_storage_bucket_object(#9937)v3.82.0Compare Source
FEATURES:
google_privateca_certificate_template(#9905)google_compute_firewall_policy(#9887)google_compute_firewall_policy_association(#9887)google_compute_firewall_policy_rule(#9887)IMPROVEMENTS:
collationtogoogle_sql_database_instance(#9888)BUG FIXES:
apigatewayresources (#9871)google_dns_managed_zone(#9898)google_healthcare_hl7_v2_store.parser_configsubfields would error with "...parser_config.version field is immutable..." (#9900)google_os_config_guest_policies(#9872)google_pubsub_schemato deal with eventually consistent deletes (#9863)replicationfields would not update ingoogle_secret_manager_secret(#9894)google_service_usage_consumer_quota_override(#9876)typewhen BUILT_IN ongoogle_sql_user(#9864)google_sql_userwith CLOUD_IAM_USERs on POSTGRES. (#9859)v3.81.0Compare Source
IMPROVEMENTS:
enableattribute togoogle_compute_router_peer(#9776)L3_DEFAULTasip_protocolforgoogle_compute_forwarding_ruleandUNSPECIFIEDasprotocolforgoogle_compute_region_backend_serviceto support network load balancers that forward all protocols and ports. (#9799)security_settingstogoogle_compute_backend_service(#9797)google_essential_contacts_contactto GA (#9822)google_gke_hub_membershipsupport for both//container.googleapis.com/${google_container_cluster.my-cluster.id}andgoogle_container_cluster.my-cluster.idinendpoint.0.gke_cluster.0.resource_link(#9765)request_reason(#9794)billing_projectacross all resources. Ifuser_project_overrideis set totrueand abilling_projectis set, theX-Goog-User-Projectheader will be sent for all resources. (#9852)BUG FIXES:
google_assured_workloads_workloadcan delete what it creates (#9835)locationof thegoogle_bigquery_dataset(#9810)wait_for_instancesingoogle_compute_instance_group_managerandgoogle_compute_region_instance_group_managerto no longer block plan / refresh, waiting on managed instance statuses during apply instead (#9832)negative_caching_policycannot be set always revalidate ongoogle_compute_backend_service(#9821)/projectsafter the host (#9834)__name__ongoogle_firestore_index(#9820)google_privateca_certificate_authoritywithmax_issuer_path_length = 0. (#9856)ignore_active_certificates_on_deletionon the importedgoogle_privateca_certificate_authority(#9781)v3.80.0Compare Source
FEATURES:
google_dialogflow_cx_environment(#9738)IMPROVEMENTS:
//container.googleapis.com/${google_container_cluster.my-cluster.id}andgoogle_container_cluster.my-cluster.idreferences ingoogle_gke_hub_membership.endpoint.0.gke_cluster.0.resource_link(#9765)namefield togoogle_kms_crypto_key_versiondatasource (#9762)BUG FIXES:
google_apigee_envgroup(#9740)google_privateca_certificate_authorityof typeSUBORDINATEdue to an invalid attempt to activate it on creation. (#9761)v3.79.0Compare Source
NOTES:
num_nodesfield ongoogle_spanner_instancewill have its default removed in a future major release, and eithernum_nodesorprocessing_unitswill be required. (#9716)FEATURES:
google_dialogflow_cx_entity_type(#9717)google_dialogflow_cx_page(#9683)IMPROVEMENTS:
processing_unitstogoogle_spanner_instance(#9716)customer_encryptiononresource_storage_bucket_object(#9704)v3.78.0Compare Source
FEATURES:
google_gke_hub_membership(#9616)IMPROVEMENTS:
user_project_overrideandbilling_projecttogoogle_service_networking_connection(#9668)BUG FIXES:
azure_blob_storage_data_sourceforgoogle_storage_transfer_job(#9644)google_sql_userin state for iam users. (#9625)azure_credentialswas defined ingoogle_storage_transfer_job(#9671)v3.77.0: 3.77.0Compare Source
3.77.0 (July 26, 2021)
FEATURES:
google_scc_notification_config(#9578)IMPROVEMENTS:
log_configfield ofgoogle_compute_region_backend_service(#9568)crypto_replace_ffx_fpe_configandcrypto_replace_ffx_fpe_configas primitive transformation types togoogle_data_loss_prevention_deidentify_template(#9572)BUG FIXES:
destination_dataset_idwas required, it is now optional. (#9605)budget_filter. projectsongoogle_billing_budget(#9598)0.8fromgoogle_backend_service.backend.max_utilizationand it will now default from API. Allmax_connections_xxxandmax_rate_xxxwill also default from API as these are all conditional on balancing mode. (#9587)v3.76.0Compare Source
FEATURES:
google_dialogflow_cx_flow(#9551)google_dialogflow_cx_intent(#9537)google_dialogflow_cx_version(#9554)google_network_services_edge_cache_keyset(#9540)google_network_services_edge_cache_origin(#9540)google_network_services_edge_cache_service(#9540)IMPROVEMENTS:
peering_cidr_rangeongoogle_apigee_instance(#9558)pubsub_configandwebhook_configparameter togoogle_cloudbuild_trigger. (#9541)BUG FIXES:
v3.75.0Compare Source
FEATURES:
IMPROVEMENTS:
kms_key_versionas an output onbigquery_table.encryption_configurationand thedestination_encryption_configurationblocks ofbigquery_job.query,bigquery_job.load, andbigquery_copy. (#9500)advanced_machine_featurestogoogle_compute_instance(#9470)cdn_policysub fields ingoogle_compute_backend_service,google_compute_region_backend_serviceandgoogle_compute_backend_bucketto GA (#9432)replace_with_info_type_configtodlp_deidentify_template. (#9446)temporary_holdandevent_based_holdattributes togoogle_storage_bucket_object(#9487)BUG FIXES:
google_bigquery_table.schema(#9499)all_updates_rule.*fields updatable ongoogle_billing_budget(#9473)amount.specified_amount.unitsupdatable ongoogle_billing_budget(#9465)google_compute_instance(#9460)google_storage_object_access_control(#9502)v3.74.0Compare Source
FEATURES:
google_app_engine_service_network_settings(#9414)google_vertex_ai_dataset(#9411)google_cloudbuild_worker_pool(#9417)IMPROVEMENTS:
cluster.kms_key_namefield togoogle_bigtable_instance(#9393)cdn_policysub fields ingoogle_compute_backend_service,google_compute_region_backend_serviceandgoogle_compute_backend_bucketto GA (#9432)ttl,expire_time,topicsandrotationfields togoogle_secret_manager_secret(#9398)BUG FIXES:
node_config.service_accountat the same time asenable_autopilot = trueforgoogle_container_cluster(#9399)google_container_node_pool(#9424)google_dataproc_workflow_templatewithsecondary_worker_configempty except fornum_instances = 0(#9381)google_filestore_instancewhere creating two instances simultaneously resulted in an error. (#9396)binary_loggingon replica instances forgooge_sql_database_instance(#9428)v3.73.0Compare Source
FEATURES:
google_dialogflow_cx_agent(#9338)IMPROVEMENTS:
advanced_machine_featuresfields togoogle_compute_instance_template(#9363)custom_response_headersto GA forgoogle_compute_backend_serviceandgoogle_compute_backend_bucket(#9374)redis_versionto be upgraded ongoogle_redis_instance(#9378)transit_encryption_modeandserver_ca_certsto GA ongoogle_redis_instance(#9378)BUG FIXES:
peering_cidr_rangeongoogle_apigee_instance(#9343)google_cloud_run_serviceif the order of thetemplate.spec.containers.envlist was re-ordered outside of terraform. (#9340)user_project_overridesupport to the ContainerOperationWaiter used bygoogle_container_cluster(#9379)v3.72.0: 3.72.0Compare Source
IMPROVEMENTS:
google_compute_router,google_compute_ha_vpn_gateway,google_compute_interconnect_attachmentandgoogle_compute_address(#9288)google_container_node_pool.clusterto ensure that a node pool is recreated if the associated cluster is recreated. (#9309)azure_blob_storage_data_sourcetogoogle_storage_transfer_job(#9311)BUG FIXES:
google_bigquery_table.schemahandling of policyTags (#9302)encryptionshowed a perma-diff on resources created prior to the feature being released. (#9303)v3.71.0Compare Source
FEATURES:
google_dialogflow_fulfillment(#9253)IMPROVEMENTS:
reservation_affinitytogoogle_compute_instanceandgoogle_compute_instance_template(#9256)wait_for_instances_statusongoogle_compute_instance_group_managerandgoogle_compute_region_instance_group_manager(#9231)statusfield ongoogle_compute_instance_group_managerandgoogle_compute_region_instance_group_manager(#9231)log_configfield ofgoogle_compute_health_checkandgoogle_compute_region_health_checkto GA (#9274)google_compute_region_health_checkto avoid permanent diff on plan/apply. (#9274)BUG FIXES:
google_composer_environment(#9255)matches_storage_classis set empty ongoogle_storage_bucket(#9221)max_throughputis not set ongoogle_vpc_access_connector(#9282)v3.70.0Compare Source
IMPROVEMENTS:
provisioned_iopstogoogle_compute_disk(#9193)distribution_policy_target_shapefield ingoogle_compute_region_instance_group_managerto GA. (#9186)disk_autoresize_limittosql_database_instance(#9203)BUG FIXES:
matches_storage_classis set empty ongoogle_storage_bucket(#9221)v3.69.0Compare Source
IMPROVEMENTS:
autoscaling_policy.scaling_schedulesongoogle_compute_autoscalerandgoogle_compute_region_autoscalerto ga (#9165)autoscaling_policy.cpu_utilization.predictive_methodongoogle_compute_autoscalerandgoogle_compute_region_autoscalerto ga. (#9156)BUG FIXES:
initial_group_configofgoogle_cloud_identity_group(#9143)google_compute_metadata_itemto reduce retries + quota errors (#9168)enable_shielded_nodescould not be false on resourcegoogle_container_cluster(#9131)v3.68.0Compare Source
FEATURES:
google_pubsub_schema(#9116)IMPROVEMENTS:
initial_sizein resourcegoogle_compute_node_groupto account for scenarios where size may change under the hood (#9078)kms_key_nameongoogle_compute_machine_image(#9107)google_dataflow_flex_template_job(#9123)BUG FIXES:
node_versionandremove_default_node_poolcannot be set ongoogle_container_cluster(#9100)v3.67.0Compare Source
FEATURES:
NOTES:
DEPRECATIONS:
distribution_policy_target_shapeingoogle_compute_region_instance_group_managerUse thegoogle-betaprovider to continue using this field (#8970)min_ready_secingoogle_compute_region_instance_group_manager&google_compute_instance_group_managerUse thegoogle-betaprovider to continue using this field (#8970)pod_security_policy_configfield on resourcegoogle_container_cluster. Use thegoogle-betaprovider to continue using this field (#8970)BREAKING CHANGES:
dataset_idorproject_idingoogle_bigquery_datasetwill now recreate the resource (#8973)IMPROVEMENTS:
require_verified_chrome_osin basic access levels. (#9071)google_billing_budget(#8990)initial_group_configto the google_cloud_identity_group resource (#9035)google_cloud_run_service(#9073)initial_sizeto account for scenarios where size may change under the hood in resourcegoogle_compute_node_group(#9078)stream_configsingoogle_healthcare_dicom_store(#8986)google_secret_manager_secret(#9046)force_destroytogoogle_spanner_instanceto delete instances that have backups enabled. (#9076)google_spanner_database(#8966)source_contentsandservice_accountas updatable ongoogle_workflows_workflow(#9018)BUG FIXES:
dataset_idto force new resource if name is changed. (#8973)google_cloud_run_domain_mapping.metadata.labels(#8971)google_composer_environment.master_ipv4_cidr_blockto draw default from the API (#9017)google_container_node_pool(#9034)rrdataslist ongoogle_dns_record_setfor AAAA records (#9029)skip_initial_version_creationongoogle_kms_crypto_key(#8988)metric_descriptor.labelscan't be updated on 'google_logging_metric' (#9057)minimum_backoff&maximum_backoffongoogle_pubsub_subscription(#9048)google_organization_iam_member,google_organization_iam_binding, andgoogle_organization_iam_policy(#9047)google_project_service.servicevalidation to reject invalid service domains that don't contain a period (#8987)role_entityuser wouldn't update if the role changed. (#9008)v3.66.1Compare Source
BUG FIXES:
service_account.scopesto more. (#9032)v3.66.0Compare Source
NOTES:
BREAKING CHANGES:
parentingoogle_data_catalog_tagwill now recreate the resource (#8964)FEATURES:
google_compute_ha_vpn_gateway(#8952)google_dataproc_workflow_template(#8962)IMPROVEMENTS:
google_cloudfunctions_function.available_memory_mb(#8946)google_compute_instance(#8927)shielded_instance_configfields togoogle_dataproc_cluster(#8910)google_spanner_database(#8966)BUG FIXES:
scopesongoogle_compute_instance(#8953)node_configongoogle_container_clusterwhenConfiguration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.