chore(deps): update terraform-aws #1920
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
~> 5.84.0->~> 5.90.05.84.0->5.90.120.33.1->20.34.0~> 5.17.0->~> 5.19.0Release Notes
hashicorp/terraform-provider-aws (aws)
v5.90.1Compare Source
NOTES:
godebug tlskyber=0directive ingo.mod. This disables the experimental the post-quantum key exchange mechanismX25519Kyber768Draft00, fixing failed or hanging network connections to various AWS services. This fixes a regression introduced in v5.90.0 (#41740)FEATURES:
aws_datazone_domain(#41480)ENHANCEMENTS:
stage.before_entry,stage.on_successandstage.on_failureconfiguration blocks (#41663)connector_configurationto be updated in-place (#41685)ja3_fingerprintandja4_fingerprinttocustom_keyconfiguration blocks (#41719)ja4_fingerprinttofield_to_matchconfiguration blocks (#41719)ja3_fingerprintandja4_fingerprinttocustom_keyconfiguration blocks (#41719)ja4_fingerprinttofield_to_matchconfiguration blocks (#41719)v5.90.0Compare Source
BREAKING CHANGES:
rule.noncurrent_version_expiration.noncurrent_daysandrule.noncurrent_version_transition.noncurrent_daysare Required (#40796)NOTES:
elastic_gpu_specificationsandelastic_inference_acceleratorare deprecated. AWS no longer supports Elastic Graphics or Elastic Inference. (#41677)X25519Kyber768Draft00. Previously, in environments using AWS Network Firewall, the Provider would hang due to a handshake issue between Go 1.23 and Network Firewall, which supported Suricata 6.0.9. We had disabled the post-quantum key exchange to resolve the issue. Since November 2024, AWS Network Firewall has upgraded to Suricata 7.0, which no longer has this issue. However, if you use AWS Network Firewall, we’d appreciate your help in identifying any remaining issues related to this change. (#41655)overrides.inference_accelerator_overridesis deprecated. AWS no longer provides the Elastic Inference service. (#41676)elastic_gpu_specificationsandelastic_inference_acceleratorare deprecated. AWS no longer supports Elastic Graphics or Elastic Inference. (#41677)accelerator_typesis deprecated and will be removed in a future version. Useinstance_typeinstead. (#41673)FEATURES:
aws_dataexchange_event_action(#40552)aws_lakeformation_opt_in(#41611)ENHANCEMENTS:
arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)stateattribute (#41575)cluster_config.node_optionsattribute (#40181)arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)arnattribute (#41660)disconnect_on_session_timeoutattribute (#41621)max_webserversandmin_webserversarguments from2to1in support of Amazon MWAA micro environments (#40244)cluster_config.node_optionsconfiguration block in support of dedicated coordinator nodes (#40181)vpc_options.vpc_endpoint_managementargument (#38001)arnattribute (#41645)tagsargument andtags_allattribute (#41645)arnattribute (#41660)arnattribute (#41660)rule.filter(#41662)rule.noncurrent_version_expiration.noncurrent_daysandrule.noncurrent_version_transition.noncurrent_daysare Required. Technically this is a breaking change, but failure to configure this attribute would have led toInvalidArgumentorMalformedXMLerrors (#40796)arnattribute (#41660)arnattribute (#41660)BUG FIXES:
exclude_charactersfromBooltoString(#41546)vpc_lattice_configurationsblocks (#41594)ruleconfiguration fromfilter.prefixtofilter.and.prefix(#41662)ruleconfiguration fromprefixtofilter.prefixorfilter.and.prefix(#41662)ConflictExceptionerrors on delete (#41594)v5.89.0Compare Source
FEATURES:
aws_macie2_organization_configuration(#41475)aws_neptunegraph_graph(#41216)aws_quicksight_role_membership(#41589)aws_rds_shard_group(#41254)aws_xray_resource_policy(#41517)ENHANCEMENTS:
configurationargument (#41524)cluster_scalability_typeattribute (#41254)database_insights_modeattribute (#41254)application/yamlto the list ofContent-Types that return a body (#41443)application/yamlto the list ofContent-Types that return a body (#41443)checksum_crc64nvmeattribute (#41015)target_tracking_configuration.customized_metric_specification.periodargument to support high-resolution metrics (#41385)RequiredWithvalidationpassword_woandpassword_wo_version. RemovePreferWriteOnlyAttributevalidation (#41562)RequiredWithvalidationmaster_password_woandmaster_password_wo_version. RemovePreferWriteOnlyAttributevalidation (#41562)25Gbpsand400Gbpsas supportedbandwidthvalues (#41547)25Gbpsas a supportedbandwidthvalue (#41547)400Gbpsas a supportedconnections_bandwidthvalue (#41547)network_interfaces.ena_srd_specificationconfiguration block (#41367)enable_zonal_shiftsupport for Application Load Balancers (#41335)tagsto be updated in-place (#41266)tagsto be updated in-place (#41266)tagsto be updated in-place (#41266)tagsto be updated in-place (#41266)secondary_private_ip_address_counttosecondary_private_ip_addressesfor private NAT Gateways (#41403)RequiredWithvalidationmaster_password_woandmaster_password_wo_version. RemovePreferWriteOnlyAttributevalidation (#41562)cluster_scalability_typeargument (#41254)database_insights_modeargument (#41254)""as a valid value forengine_mode(#41254)iam-db-auth-erroras a valid value forenabled_cloudwatch_logs_exports(#41408)RequiredWithvalidationmaster_password_woandmaster_password_wo_version. RemovePreferWriteOnlyAttributevalidation (#41562)RequiredWithvalidationadmin_user_password_woandadmin_user_password_wo_version. RemovePreferWriteOnlyAttributevalidation (#41562)data_redundancyisSingleLocalZoneiflocation.typeisLocalZone(#40944)checksum_crc64nvmeattribute (#41015)checksum_crc64nvmeattribute (#41015)RequiredWithvalidationsecret_string_woandsecret_string_wo_version. RemovePreferWriteOnlyAttributevalidation (#41562)PreferWriteOnlyAttributevalidation (#41562)BUG FIXES:
s3_delivery_configuration.suffix_path(#41497)spot_options.max_total_price,spot_options.min_target_capacity,spot_options.single_instance_type, andspot_options.single_availability_zonearguments (#41272)routing_http_response_server_enabled,routing_http_response_strict_transport_security_header_value,routing_http_response_access_control_allow_origin_header_value,routing_http_response_access_control_allow_methods_header_value,routing_http_response_access_control_allow_headers_header_value,routing_http_response_access_control_allow_credentials_header_value,routing_http_response_access_control_expose_headers_header_value,routing_http_response_access_control_max_age_header_value,routing_http_response_content_security_policy_header_value,routing_http_response_x_content_type_options_header_value,routing_http_response_x_frame_options_header_value,routing_http_request_x_amzn_mtls_clientcert_serial_number_header_name,routing_http_request_x_amzn_mtls_clientcert_issuer_header_name,routing_http_request_x_amzn_mtls_clientcert_subject_header_name,routing_http_request_x_amzn_mtls_clientcert_validity_header_name,routing_http_request_x_amzn_mtls_clientcert_leaf_header_name,routing_http_request_x_amzn_mtls_clientcert_header_name,routing_http_request_x_amzn_tls_version_header_name, androuting_http_request_x_amzn_tls_cipher_suite_header_nameare updated iftcp_idle_timeout_secondsdoes not change (#41299)statusandtagscan be updated in-place (#41266)secondary_allocation_idsto be updated in-place (#41403)master_usernamevalidation (#41556)InvalidRequesterror whenrule.and.object_size_less_thannot set. (#41542)v5.88.0Compare Source
NOTES:
rule.expiration.expired_object_delete_markeris set with eitherrule.expiration.dateorrule.expiration.days. While historically the provider allowed this invalid configuration, the migration of this resource to the Terraform Plugin Framework inv5.86.0resulted in this misconfiguration surfacing as a hardinconsistent result after applyerror. This diagnostic aims to direct users how to resolve the issue at plan time. See this issue comment for additional context. (#41462)FEATURES:
aws_cloudwatch_contributor_managed_insight_rules(#41472)aws_cloudwatch_contributor_managed_insight_rule(#41449)aws_qbusiness_application(#35249)ENHANCEMENTS:
video_data_delivery_enabledargument (#41317)password_wowrite-only attribute (#41366)master_password_wowrite-only attribute (#41413)storage_descriptor.additional_locationsargument (#41434)master_password_wowrite-only attribute (#41411)admin_user_password_wowrite-only attribute (#41412)secret_string_wowrite-only attribute (#41371)BUG FIXES:
scaling_configurationis not empty. (#41377)sub_domain(#36961)embedding_data_delivery_enabled,image_data_delivery_enabled, andtext_data_delivery_enabledarguments as optional with default value oftrue(#41317)v5.87.0Compare Source
FEATURES:
aws_cloudwatch_contributor_insight_rule(#41373)ENHANCEMENTS:
export_typeandincremental_export_specificationarguments (#41303)parameters.s3.role_arnargument to allow override an account-wide role for a specific S3 data source (#41284)master_password_wowrite-only attribute (#41314)stream_processor_arnin favor ofarn. (#41271)value_wowrite-only attribute (#40952)service_network_log_typeargument (#41304)BUG FIXES:
on_demand_throughputandglobal_secondary_index.*.on_demand_throughputattributes to resolve read error (#41350)OperationInProgresserrors (#41388)v5.86.1Compare Source
BUG FIXES:
AccessDeniedErrorattempting to list tags (#41295)AccessDeniedErrorattempting to list tags (#41295)sns_topic_nameshows perpectual diff when an ARN of a SNS topic from a different region is specified (#41279)rule[*].prefixis an empty string. (#41296)v5.86.0Compare Source
NOTES:
prefix, the Terraform plan will show the removal ofprefixfrom state. This is expected, and should not occur on subsequent plans. (#41159)ENHANCEMENTS:
monitoring_intervalandmonitoring_role_arnattributes (#41002)us-isof-east-1andus-isof-south-1as valid AWS Regions (#41243)security_service_policy_data.policy_option.network_acl_common_policyargument to allow creation of FMS-managed NACL rules (#41219)monitoring_intervalandmonitoring_role_arnarguments (#41002)timeouts. (#41232)BUG FIXES:
tags_allvalue (#41256)instance_lifecycleisspot(#41206)panic: runtime error: invalid memory address or nil pointer dereferencewhen deleting the resource would otherwise return an error (#41260)transition_default_minimum_object_size(#41159)ruleduring import (#41205)v5.85.0Compare Source
NOTES:
FEATURES:
aws_vpc_ipam(#40459)aws_vpc_ipams(#40459)aws_secretsmanager_random_password(#41106)aws_guardduty_member_detector_feature(#35625)aws_route53domains_domain(#37885)aws_timestreamquery_scheduled_query(#41145)aws_vpclattice_resource_configuration(#41019)aws_vpclattice_service_network_resource_association(#41057)ENHANCEMENTS:
arnattribute (#41086)arnattribute (#41087)arnattribute (#41084)network_interfaces.connection_tracking_specificationattribute (#41184)connector_profile_config.connector_profile_properties.salesforce.use_privatelink_for_metadata_and_authorizationargument (#41175)target_tracking_configuration.customized_metric_specification.metrics.metric_stat.periodargument to support high-resolution metrics (#41066)data_source_configuration.confluence_configuration,data_source_configuration.salesforce_configuration,data_source_configuration.share_point_configuration, anddata_source_configuration.web_configurationarguments (#40711)knowledge_base_configuration.vector_knowledge_base_configuration.embedding_model_configurationandknowledge_base_configuration.vector_knowledge_base_configuration.supplemental_data_storage_configurationarguments (#40737)sns_topic_arnattribute (#41168)suspendargument (#40607)invocation_connectivity_parametersargument (#41144)arnattribute (#41087)arnattribute (#41084)enable_fault_injectionargument (#41078)network_interfaces.connection_tracking_specificationargument (#41184)concurrent_jobsargument (#41012)createtimeout (#40972)orchestration_sending_role_arnargument (#41043)kms_key_identifierargument (#41082)instanceas a valid value forenabled_cloudwatch_logs_exports(#41111)tagsargument andtags_allattribute (#41192)resource_configuration_arnandservice_network_arnarguments to support creating VPC Endpoints of typeResourceandServiceNetwork(#41116)BUG FIXES:
created_dateandlast_modified_dateattributes (#41105)sort_ascendingto sort in ascending order (#40529)role_arnargument (#41072)Provider produced inconsistent result after applyerrors fors3_delivery_configuration.enable_hive_compatible_path(#41122)field_delimiteras Computed (#41122)provider_nameto count UTF-8 characters properly (#41187)nameto count UTF-8 characters properly (#41187)callback_urls,default_redirect_uri,logout_urls, andsupported_identity_providers` to count UTF-8 characters properly (#41187)panic: interface conversion: interface {} is float64, not string(#41096)InvalidParameterCombinationerror during update (#40969)name,name_prefix, andpathwithout forcing new resource (#41186)invitation_idwhen calling theAcceptInvitationAPI (#41163)terraform-aws-modules/terraform-aws-eks (terraform-aws-modules/eks/aws)
v20.34.0Compare Source
Features
terraform-aws-modules/terraform-aws-vpc (terraform-aws-modules/vpc/aws)
v5.19.0Compare Source
Features
v5.18.1Compare Source
Bug Fixes
v5.18.0Compare Source
Features
Configuration
📅 Schedule: Branch creation - "* * 1,15 * *" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.