- 
                Notifications
    You must be signed in to change notification settings 
- Fork 7
chore(deps): update terraform aws to v5.83.1 #552
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
          
     Open
      
        
      
            renovate
  wants to merge
  1
  commit into
  main
  
    
      
        
          
  
    
      Choose a base branch
      
     
    
      
        
      
      
        
          
          
        
        
          
            
              
              
              
  
           
        
        
          
            
              
              
           
        
       
     
  
        
          
            
          
            
          
        
       
    
      
from
renovate/aws-5.x-lockfile
  
      
      
   
  
    
  
  
  
 
  
      
    base: main
Could not load branches
            
              
  
    Branch not found: {{ refName }}
  
            
                
      Loading
              
            Could not load tags
            
            
              Nothing to show
            
              
  
            
                
      Loading
              
            Are you sure you want to change the base?
            Some commits from the old base branch may be removed from the timeline,
            and old review comments may become outdated.
          
          Conversation
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
    c2e163f    to
    c4686fd      
    Compare
  
    c4686fd    to
    ed04b66      
    Compare
  
    ed04b66    to
    e4c6e24      
    Compare
  
    e4c6e24    to
    0dee05e      
    Compare
  
    0dee05e    to
    637b781      
    Compare
  
    637b781    to
    aadff07      
    Compare
  
    aadff07    to
    4e0fc52      
    Compare
  
    4e0fc52    to
    7406a78      
    Compare
  
    bfd162c    to
    87a1d26      
    Compare
  
    87a1d26    to
    929c8c8      
    Compare
  
    929c8c8    to
    ccdf4f1      
    Compare
  
    ccdf4f1    to
    12227e0      
    Compare
  
    12227e0    to
    9bd000f      
    Compare
  
    9bd000f    to
    cdf5908      
    Compare
  
    cdf5908    to
    08067d5      
    Compare
  
    08067d5    to
    f4e1ade      
    Compare
  
    f4e1ade    to
    c99db62      
    Compare
  
    c99db62    to
    dd1bd6b      
    Compare
  
    dd1bd6b    to
    be91098      
    Compare
  
    be91098    to
    b59c446      
    Compare
  
    b59c446    to
    2f01510      
    Compare
  
    2f01510    to
    9f1eb60      
    Compare
  
    
  
    Sign up for free
    to join this conversation on GitHub.
    Already have an account?
    Sign in to comment
  
      Labels
    None yet
0 participants
  Add this suggestion to a batch that can be applied as a single commit.
  This suggestion is invalid because no changes were made to the code.
  Suggestions cannot be applied while the pull request is closed.
  Suggestions cannot be applied while viewing a subset of changes.
  Only one suggestion per line can be applied in a batch.
  Add this suggestion to a batch that can be applied as a single commit.
  Applying suggestions on deleted lines is not supported.
  You must change the existing code in this line in order to create a valid suggestion.
  Outdated suggestions cannot be applied.
  This suggestion has been applied or marked resolved.
  Suggestions cannot be applied from pending reviews.
  Suggestions cannot be applied on multi-line comments.
  Suggestions cannot be applied while the pull request is queued to merge.
  Suggestion cannot be applied right now. Please check back later.
  
    
  
    
This PR contains the following updates:
5.48.0->5.83.1Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Release Notes
hashicorp/terraform-provider-aws (aws)
v5.83.1Compare Source
BUG FIXES:
fdqnvalue ifnameis a wildcard domain name (the leftmost label is*). This fixes a regression introduced in v5.83.0 (#40868)v5.83.0Compare Source
NOTES:
apigatewayv2client has been updated to more extensively matchConflictExceptionerror responses. This change should be transparent to users, but if any unexpected changes in behavior withapigatewayv2resources occur following an upgrade to this release, please open a bug report. (#40840)idin favor ofarn. (#40626)id. (#40626)idin favor ofbucket. (#40626)FEATURES:
aws_cloudwatch_event_buses(#40662)aws_ecs_clusters(#40638)aws_route53_records(#38186)aws_cognito_identity_openid_token_for_developer_identity(#40763)aws_bedrockagent_agent_collaborator(#40559)aws_cleanrooms_membership(#35165)aws_cloudwatch_log_delivery(#40731)aws_cloudwatch_log_delivery_destination(#40731)aws_cloudwatch_log_delivery_destination_policy(#40731)aws_cloudwatch_log_delivery_source(#40731)aws_cloudwatch_log_index_policy(#40594)aws_vpclattice_resource_gateway(#40821)ENHANCEMENTS:
compute_configurationattribute (#40752)kafka_settings.sasl_mechanismattribute (#36918)ap-southeast-7AWS Region (#40850)ap-southeast-7AWS Region (#40850)default_for_new_launchesattribute (#40536)supports_certificate_rotation_without_restart,supports_integrations, andsupports_local_write_forwardingattributes (#40700)ap-southeast-7AWS Region (#40850)regionattribute (#40795)service_regionsargument (#40795)ap-southeast-7as a valid AWS Region (#40849)data_transfer_apiattribute to destination_flow_config_list.destination_connector_properties.salesforce (#34937)grpc_configargument todefault_cache_behaviorandordered_cache_behaviorconfiguration blocks (#40762)compute_configurationargument (#40752)email_mfa_configurationargument (#40734)sign_in_policyandweb_authn_configurationarguments (#40765)user_pool_tierargument (#40633)kafka_settings.sasl_mechanismargument (#36918)nameandvaluearguments (#40772)instance_idornetwork_interface_id(#40769)node_repair_configconfiguration block (#40698)VALKEYas supported value for 'engine' argument (#40764)VALKEYas supported value for 'engine' argument (#40764)encryption_key_arnargument (#40771)user_invitation_urlattribute (#40775)iam-db-auth-erroras a valid value forenabled_cloudwatch_logs_exports(#40789)data_filterargument (#40816)override_providerconfiguration block, allowing tags inherited from the providerdefault_tagsconfiguration block to be ignored (#40689)BUG FIXES:
description,nameorversionif they are not present in the OpenAPI definitionbody(#40707)ConflictExceptionerror responses (#40840)panic: interface conversion: interface {} is nil, not map[string]interface {}whenparameters_in_cache_key_and_forwarded_to_origin.cookies_config,parameters_in_cache_key_and_forwarded_to_origin.headers_config, orparameters_in_cache_key_and_forwarded_to_origin.query_strings_configare empty (#40815)scaling_configurationto be removed on Update (#40773)file_system_locationsto be removed on Update (#40842)fips_dns_nameto an empty value ("") when no value is returned from the EC2 API. This fixes known-after-apply loops in Regions that don't support FIPS endpoints (#37939)create_table_default_permissionwith a nilprincipalblock (#40761)http_tokenswhenmetadata_optionsis updated (#40727)public_dnsandpublic_ipattributes when changinginstance_type,user_data, oruser_data_base64(#40710)operation error EC2: DetachInternetGateway, ..., api error InvalidInternetGatewayID.NotFound: ...errors on delete for resources deleted out-of-band (#40790)operation error EC2: DetachInternetGateway, ..., api error InvalidInternetGatewayID.NotFound: ...errors on delete for resources deleted out-of-band (#40790)logical_table_map.tag_column_operation.tags.column_description(#40713)manage_master_user_passwordbeing updated in state when update errors (#40538)alias.namecontains characters that the Route 53 API escapes (#40154)namecontains characters that the Route 53 API escapes (#40154)delivery_options.max_delivery_secondswhen not configured (#40670)sqs_managed_sse_enabled=trueandkms_data_key_reuse_period_secondsis configured (#40729)v5.82.2Compare Source
BUG FIXES:
mutual_authentication.advertise_trust_store_ca_namesattribute. This fixes a regression introduced in v5.82.0 causingsetting mutual_authentication: Invalid address to set: []string{"mutual_authentication", "0", "advertise_trust_store_ca_names"}errors (#40658)v5.82.1Compare Source
ENHANCEMENTS:
availability_zone_distributionargument (#40634)BUG FIXES:
statementsid(#40639)v5.82.0Compare Source
NOTES:
idattribute has changed to prevent inconsistent parsing which resulted in provider crashes under certain conditions. The new format is a comma-delimited string combininggroup_arnandresource_arnin their entirety. Configuarations relying on the previous format may need to be updated to continue functioning correctly. (#40579)FEATURES:
aws_servicecatalogappregistry_attribute_group_associations(#38306)aws_api_gateway_domain_name_access_association(#40566)aws_cloudfront_vpc_origin(#40239)aws_memorydb_multi_region_cluster(#40376)aws_networkmanager_dx_gateway_attachment(#40546)aws_rds_cluster_snapshot_copy(#40398)ENHANCEMENTS:
arnattribute (#40546)statementsidis valid, including on alphanumeric characters (#40562)service_regionattribute (#40583)agent_collaborationattribute to configure agent collaboration role (#40543)origin.vpc_origin_configargument (#40239)name_prefixargument (#40622)arnattribute (#40546)efa_enabledargument (#40381)advertise_trust_store_ca_namesattribute to themutual_authenticationconfiguration block (#40550)multi_region_cluster_nameargument (#40376)edge_locationsattribute (#40546)service_regionargument (#40583)BUG FIXES:
AccessDeniedException: ... is not authorized to perform: acm-pca:GetCertificateAuthorityCsr on resource: ...errors for RAM-shared CAs (#39952)setting entitlements: Invalid address to set: []string{"entitlements", "0", "overage"}errors (#40621)certificate_settingswhen updating. (#40589)certificate_settings.typetoCUSTOM. (#40589)ValidationExceptionwhen settingcertificate_settings.typetoAMPLIFY_MANAGED. (#40589)certificate_settingsnot set. (#40589)certificate_settingsis not set during update. (#40589)arnfor private custom domain names (#40566)vpc_configuration.tls_certificateas Optional (#40574)at_rest_encryption_enabledwhenengineisvalkey. (#40514)IAMPrincipalsprincipal group (#38600)permissionsandpermissions_with_grant_optionattributes (#38047)resultattribute when changinginputattribute, for lifecycle scope "CRUD" (#34263)teletext_destination_settings. (#33797)allocated_storage(#40601)force_destroy = truecan now delete objects with non-XML-safe keys (#40537)force_destroy = truecan now delete objects with non-XML-safe keys (#40537)automatically_after_dayswas not being set properly whenschedule_expressionhad been set previously (#34295)InvalidRequestException: A previous rotation isn't complete. That rotation will be reattempted.(#34295)redrive_allow_policydiffs (#40604)v5.81.0Compare Source
FEATURES:
aws_servicecatalogappregistry_attribute_group(#38188)aws_ssm_parameter(#40313)aws_bedrock_inference_profile(#40294)aws_cloudwatch_log_anomaly_detector(#40437)aws_ecr_account_setting(#40219)aws_msk_single_scram_secret_association(#37056)aws_servicecatalogappregistry_attribute_group(#38183)aws_servicecatalogappregistry_attribute_group_association(#38290)ENHANCEMENTS:
policyanddomain_name_idattributes (#40364)tagsattribute (#38243)delivery_options.max_delivery_secondsandtracking_options.https_policyattributes (#40194)domain_name_idargument (#40447)policyargument anddomain_name_idattribute (#40364)PRIVATEas a valid value forendpoint_configuration.typesargument, enabling custom domain name support for private REST API endpoints (#40364)completion_duration_minutesargument (#40336)configuration.retention_configurationandconfiguration.orphan_file_deletion_configurationattributes. (#40199)enable_primary_ipv6argument to add support for enabling primary IPv6 addresses on EC2 instances (#36425)shard_countwould not exceed the AWS account's shard quota when the data stream capacity mode isPROVISIONED, preventing the provider from retrying for 1 hour in the case that the quota is exceeded. This functionality requires thekinesis:DescribeLimitsIAM permission (#40499)kinesis:DescribeLimitsIAM permission (#40499)topic_replication.topic_name_configurationargument (#40101)enable_primary_ipv6argument to add support for enabling primary IPv6 addresses for network interfaces (#36425)stateful_engine_options.flow_timeoutsargument (#39996)serverlessv2_scaling_configuration.seconds_until_auto_pauseargument (#40441)tagsargument andtags_allattribute (#40470)notebook-al2-v3value forplatform_identifier(#40484)tagsargument andtags_allattribute (#38243)delivery_options.max_delivery_secondsandtracking_options.https_policyarguments (#40194)BUG FIXES:
InvalidArgumentException: NextToken and StreamName cannot be provided togethererrors when the data stream has more than 1000 shards (#40499)rulefromTypeSettoTypeListas order is significant (#40521)throughput_capacityvalidation to allow values up to12228(#40468)logging_configuration.log_destination_configs (#40092)InvalidDBClusterStateFaulterrors when deleting clusters that are members of a global cluster (#40333)InvalidParameterValue: Serverless v2 maximum capacity 0.0 isn't valid. The maximum capacity must be at least 1.0.errors when removingserverlessv2_scaling_configurationin an update (#40511)storage_typewhen restoring from S3 (#40471)storage_typewhen restoring from snapshot (#40471)storage_typewhen restoring to a point in time (#40471)database_nameas Computed. This prevents resource recreation when the source cluster specifies adatabase_name(#40469)v5.80.0Compare Source
FEATURES:
aws_codeconnections_connection(#40300)aws_codeconnections_host(#40300)aws_s3tables_namespace(#40420)aws_s3tables_table(#40420)aws_s3tables_table_bucket(#40420)aws_s3tables_table_bucket_policy(#40420)aws_s3tables_table_policy(#40420)ENHANCEMENTS:
instructionmax length for validation to 8000 (#40279)deletion_protection_enabledargument (#35359)serverlessv2_scaling_configuration.max_capacityandserverlessv2_scaling_configuration.min_capacityminimum values to0to support Amazon Aurora Serverless v2 scaling to 0 ACUs (#40230)LocalZoneas a valid value forlocation.type, enabling support for Amazon S3 Express One Zone in AWS Dedicated Local Zones (#40339)BUG FIXES:
tags_allwhen planning. (#40305)deserialization failed, failed to decode response body with invalid JSONerrors on Read (#40419)v5.79.0Compare Source
FEATURES:
aws_vpc_block_public_access_exclusion(#40235)aws_vpc_block_public_access_options(#40233)ENHANCEMENTS:
compute_config,storage_config, andkubernetes_network_config.elastic_load_balancingarguments for EKS Auto Mode (#40370)remote_network_configargument for EKS Auto Mode (#40371)metrics_configargument (#40322)provisioned_poller_configargument (#40303)supported_regionsargument (#40346)BUG FIXES:
disk_iops_configuration.iopsfrom350000to400000fordeployment_type = "SINGLE_AZ_2"(#40359)v5.78.0Compare Source
NOTES:
FEATURES:
aws_iam_organizations_features(#40164)ENHANCEMENTS:
engineattribute (#40224)cluster_configuration.engineattribute (#40224)engineargument (#40224)cluster_configuration.engineattribute (#40224)BUG FIXES:
product_description(e.g., "postgresql") is a substring of multiple products, fixError: multiple RDS Reserved Instance Offerings matched; use additional constraints to reduce matches to a single RDS Reserved Instance Offering(#40281)Warning: AWS account ID not found for providerwhenskip_requesting_account_idistrue(#40264)eksPropertiesorecsPropertiesblock (#40172)content_policy_config.filters_configs are specified. (#40304)sns_topic_arnschanges (#40253)sns_topic_arnschanges (#40291)storage_typefromio1orio2togp3, fix bug causing errorInvalidParameterCombination: You must specify both the storage size and iops when modifying the storage size or iops on a DB instance that has iops(#37257)gp3volume'sallocated_storageto a value larger than the threshold value forengine, fix bug causing errorInvalidParameterCombination: You must specify both the storage size and iops when modifying the storage size or iops on a DB instance that has iops(#28847)v5.77.0Compare Source
NOTES:
aws_kms_secrets,aws_lambda_invocation, andaws_secretsmanager_secret_versionnow support ephemeral values. (#40009)FEATURES:
aws_kms_secrets(#40009)aws_lambda_invocation(#39988)aws_secretsmanager_secret_version(#40009)aws_rds_instance_state(#40180)ENHANCEMENTS:
most_recentis true and certain filter criteria are missing (#40211)availability_zone_rebalancingattribute (#40225)availability_zone_rebalancingattribute (#40225)versionConsistencyargument tocontainer_definitions(#40216)nodejs22.xruntimevalue (#40277)nodejs22.xcompatible_runtimesvalue (#40277)endpointargument to point to the writer DB instance in the current primary cluster (#39960)BUG FIXES:
tagsfrom theDescribeSubnetsresponse, removing the need for theec2:DescribeTagsIAM permission (#40144)schemaelement (#40195)pod_identity_associationis modified (#40168)pod_identity_associationis changed (#40168)v5.76.0Compare Source
FEATURES:
aws_vpc_security_group_vpc_association(#40069)ENHANCEMENTS:
python3.13runtimevalue (#40277)python3.13compatible_runtimesvalue (#40277)BUG FIXES:
BadRequestException: Invalid mapping expression specifiedandNotFoundException: Invalid parameter name specifiederrors when making updates torequest_parametersand/orcache_key_parameters(#40124)BadRequestException: Invalid mapping expression specifiedandNotFoundException: Invalid parameter name specifiederrors when making updates torequest_parameters(#40124)launch_templatethat is updated causingValidationError: You must use a valid fully-formed launch template.(#40088)ipam_pool_idis set (#40082)Provider returned invalid result object after applyerrors (#40090)policy_names(#40076)policy_arns(#40076)policy_names(#40076)policy_arns(#40076)policy_names(#40076)policy_arns(#40076)v5.75.1Compare Source
ENHANCEMENTS:
descriptionattribute (#39980)reset_on_deleteto properly reset CloudWatch Role ARN on deletion. (#40004)descriptionargument (#39980)BUG FIXES:
canary_settingsandstage_descriptionwhenstage_namenot set. (#40067)ttl[0].attribute_nameto be set whenttl[0].enabledis false (#40046)ValidationExceptionon updates when RStudio is disabled on the domain (#40049)v5.75.0Compare Source
BREAKING CHANGES:
canary_settings.deployment_idattribute asrequired(#39929)NOTES:
ARNTypewill properly surface validation errors (#40008)deployment_idwas added tocanary_settingsas arequiredattribute. This breaking change was necessary to makecanary_settingsfunctional. Without this change all canary traffic was routed to the main deployment (#39929)FEATURES:
aws_spot_datafeed_subscription(#39647)ENHANCEMENTS:
init_containers,share_process_namespace, andimage_pull_secretsattributes (#40019)init_containersandshare_process_namespacearguments (#40019)containersarguments to 10 (#40019)pod_identity_associationargument (#38357)passwordargument as sensitive (#39991)BUG FIXES:
alarm_configuration.alarmsargument (#39971)ResourceNotFoundexceptions during resource destruction (#38357)Value Conversion Errorduring resource creation (#39945)tcp_idle_timeout_secondsargument for gateway load balancers (#40039)tcp_idle_timeout_secondsvalue, preventingModifyListenerAttributesAPI calls when a value is not explicitly configured (#40039)public_ip_source = "amazon":The request can only contain PubliclyAdvertisable if the AddressFamily is IPv6 and PublicIpSource is byoip.(#40042)v5.74.0Compare Source
FEATURES:
aws_lb_listener_rule(#39865)aws_opensearch_authorize_vpc_endpoint_access(#39846)aws_ssmquicksetup_configuration_manager(#39931)ENHANCEMENTS:
distribution.s3_export_configurationattribute (#35492)block_device_mapping.0.ebs.0.delete_on_termination: '' expected type 'bool', got unconvertible type 'string'errors (#39928)termination_hook_enabledargument (#35482)zonal_shift_configargument (#39852)distribution.s3_export_configurationargument (#35492)container_recipe_arnandimage_recipe_arnto be updated in-place (#39117)replication_specificationargument (#36331)efa-onlyas a valid value fornetwork_interfaces.interface_type(#39882)TransferSecurityPolicy-Restricted-2024-06as a valid value forsecurity_policy_name(#39871)BUG FIXES:
master_passwordon resource Create whensnapshot_identifieris configured (#38193)component.parameter.name,component.parameter.value,target_repository.repository_name, andtarget_repository.serviceto ForceNew (#39117)interface conversion: interface {} is nil, not map[string]interface {}panic whengeolocation_routing_policyis empty (#39944)approval_rule.approve_after_daysvalidation to allow a maximum value of360(#39949)decoding JSON: unexpected end of JSON inputerrors when updating from usingrule_jsonto usingrule(#39283)rule_json(#39878)v5.73.0Compare Source
FEATURES:
aws_ssm_patch_baselines(#39779)aws_imagebuilder_lifecycle_policy(#35674)aws_resiliencehub_resiliency_policy(#38913)aws_sagemaker_hub(#39807)aws_sagemaker_mlflow_tracking_server(#39796)ENHANCEMENTS:
valkeyas valid value forproduct_description(#39745)Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about these updates again.
This PR was generated by Mend Renovate. View the repository job log.