Update Terraform aws to v6 #11
Open
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
5.59.0->6.0.0Release Notes
hashicorp/terraform-provider-aws (aws)
v6.0.0Compare Source
BREAKING CHANGES:
most_recentistrueand owner and image ID filter criteria has been increased to an error. Existing configurations which were previously receiving a warning diagnostic will now fail to apply. To prevent this error, set theownerargument or include afilterblock with animage-idorowner-idname/value pair. To continue using unsafe filter values withmost_recentset totrue, set the newallow_unsafe_filterargument totrue. This is not recommended. (#42114)inference_acceleratorattribute. Amazon Elastic Inference reached end of life on April, 2024. (#42137)inference_accelerator_overridesattribute. Amazon Elastic Inference reached end of life on April, 2024. (#42137)action.authenticate_cognito,action.authenticate_oidc,action.fixed_response,action.forward,action.forward.stickiness,action.redirect,condition.host_header,condition.http_header,condition.http_request_method,condition.path_pattern,condition.query_string, andcondition.source_ipattributes are now list nested blocks instead of single nested blocks (#42283)filterhas been removed (#42325)elastic_inference_acceleratorattribute. Amazon Elastic Inference reached end of life on April, 2024. (#42137)elastic_gpu_specificationshas been removed (#42312)kibana_endpointhas been removed (#42268)saml_optionsis now a list nested block instead of a single nested block (#42270)tags_allattribute (#42136)aws_opsworks_applicationresource has been removed (#41948)aws_opsworks_custom_layerresource has been removed (#41948)aws_opsworks_ecs_cluster_layerresource has been removed (#41948)aws_opsworks_ganglia_layerresource has been removed (#41948)aws_opsworks_haproxy_layerresource has been removed (#41948)aws_opsworks_instanceresource has been removed (#41948)aws_opsworks_java_app_layerresource has been removed (#41948)aws_opsworks_memcached_layerresource has been removed (#41948)aws_opsworks_mysql_layerresource has been removed (#41948)aws_opsworks_nodejs_app_layerresource has been removed (#41948)aws_opsworks_permissionresource has been removed (#41948)aws_opsworks_php_app_layerresource has been removed (#41948)aws_opsworks_rails_app_layerresource has been removed (#41948)aws_opsworks_rds_db_instanceresource has been removed (#41948)aws_opsworks_stackresource has been removed (#41948)aws_opsworks_static_web_layerresource has been removed (#41948)aws_opsworks_user_profileresource has been removed (#41948)aws_simpledb_domainresource has been removed. Add a constraint to v5 of the Terraform AWS Provider for continued use of this resource (#41775)aws_worklink_fleetresource has been removed (#42059)aws_worklink_website_certificate_authority_associationresource has been removed (#42059)aws_redshift_service_accountresource has been removed. AWS recommends that a service principal name should be used instead of an AWS account ID in any relevant IAM policy (#41941)endpoints.iotanalyticsandendpoints.ioteventsconfiguration arguments have been removed (#42703)endpoints.opsworksconfiguration argument has been removed (#41948)endpoints.simpledbandendpoints.sdbconfiguration arguments have been removed (#41775)endpoints.worklinkconfiguration argument has been removed (#42059)filter.existsnow only accepts one of""(empty string),true, orfalse(#42434)preserve_client_ipnow only accepts one of""(empty string),true, orfalse(#42434)reset_on_deleteargument has been removed (#42226)canary_settings,execution_arn,invoke_url,stage_description, andstage_namearguments. Instead, use theaws_api_gateway_stageresource to manage stages. (#42249)compute_environment_nametonameresource/aws_batch_compute_environment: Rename
compute_environment_name_prefixtoname_prefix(#38050)compute_environment_nametoname(#38050)compute_environmentsin place ofcompute_environment_order(#40751)logging_config,logging_config.cloudwatch_config,logging_config.cloudwatch_config.large_data_delivery_s3_config, andlogging_config.s3_configare now list nested blocks instead of single nested blocks (#42307)idis now set to remote object'sIdinstead ofname(#42230)etagargument is now computed only (#38448)suspendnow only accepts one of""(empty string),true, orfalse(#42434)idattribute is now a comma-delimited string concatenating theuser_pool_id,group_name, andusernamearguments (#34082)s3_prefixargument is now required (#38446)character_set_namenow cannot be set withreplicate_source_db,restore_to_point_in_time,s3_import, orsnapshot_identifier. (#42348)s3_settingsattribute. Useaws_dms_s3_endpointinstead (#42379)vpn_gateway_idhas been removed (#42323)terminate_instances_on_deletenow only accepts one of""(empty string),true, orfalse(#42434)block_duration_minutesattribute (#42060)inference_acceleratorattribute. Amazon Elastic Inference reached end of life on April, 2024. (#42137)vpchas been removed. Usedomaininstead. (#42340)resolve_conflictshas been removed. Useresolve_conflicts_on_createandresolve_conflicts_on_updateinstead. (#42318)auto_minor_version_upgradenow only accepts one of""(empty string),true, orfalse(#42434)at_rest_encryption_enabledandauto_minor_version_upgradenow only accept one of""(empty string),true, orfalse(#42434)auth_token_update_strategyno longer has a default value. Ifauth_tokenis set,auth_token_update_strategymust also be explicitly configured. (#42336)variations.value.bool_valuenow only accepts one of""(empty string),true, orfalse(#42434)log_group_namehas been removed. Uselog_destinationinstead. (#42333)idattribute is now computed only (#42097)datasources. Useaws_guardduty_detector_featureresources instead. (#42436)auto_enableattribute has been removed (#42251)filterhas been removed (#42325)instance_configuration.block_device_mapping.ebs.delete_on_terminationandinstance_configuration.block_device_mapping.ebs.encryptednow only accept one of""(empty string),true, orfalse(#42434)block_device_mapping.ebs.delete_on_terminationandblock_device_mapping.ebs.encryptednow only accept one of""(empty string),true, orfalse(#42434)cpu_core_countandcpu_threads_per_core. Instead, usecpu_options. (#42280)user_datanow displays cleartext instead of a hash. Base64 encoded content should useuser_data_base64instead. (#42078)block_device_mappings.ebs.delete_on_termination,block_device_mappings.ebs.encrypted,ebs_optimized,network_interfaces.associate_carrier_ip_address,network_interfaces.associate_public_ip_address,network_interfaces.delete_on_termination, andnetwork_interfaces.primary_ipv6now only accept one of""(empty string),true, orfalse(#42434)elastic_inference_acceleratorattribute. Amazon Elastic Inference reached end of life on April, 2024. (#42137)elastic_gpu_specificationshas been removed (#42312)mutual_authenticationattributesadvertise_trust_store_ca_names,ignore_client_certificate_expiry, andtrust_store_arnare only valid ifmodeisverify(#42326)preserve_client_ipnow only accepts one of""(empty string),true, orfalse(#42434)logs.auditnow only accepts one of""(empty string),true, orfalse(#42434)base_policy_regionargument has been removed. Usebase_policy_regionsinstead. (#38398)kibana_endpointhas been removed (#42268)saml_optionsis now a list nested block instead of a single nested block (#42270)key_attributesandkey_attributes.key_modes_of_useare now list nested blocks instead of single nested blocks. (#42264)tags_allhas been removed (#42260)cluster_public_key,cluster_revision_number, andendpointare now read only and should not be set (#42119)loggingattribute has been removed (#42013)publicly_accessibleattribute now defaults tofalse(#41978)snapshot_copyattribute has been removed (#41995)regions_of_interest.bounding_boxis now a list nested block instead of a single nested block (#41380)policy,policy.az,policy.hardware,policy.software, andpolicy.regionare now list nested blocks instead of single nested blocks (#42297)code_editor_app_image_config,jupyter_lab_image_config, orkernel_gateway_image_configblock must be configured (#42753)idis now a comma-delimited string concatenatingimage_nameandversion(#42536)accelerator_typesfrom your configuration—it no longer exists. Instead, useinstance_typeto use Inferentia. (#42099)instance_idargument (#42224)definitionis now a list nested block instead of a single nested block (#42305)rule.statement.managed_rule_group_statement.managed_rule_group_configs.aws_managed_rules_bot_control_rule_set.enable_machine_learningnow defaults tofalse(#39858)NOTES:
nameattribute has been deprecated. All configurations usingnameshould be updated to use theregionattribute instead (#42131)bucket_regionattribute. Use of thebucket_regionattribute instead of theregionattribute is encouraged (#42014)regionattribute has been deprecated. All configurations usingregionshould be updated to use theaws_regionattribute instead (#42131)regionattribute has been deprecated. All configurations usingregionshould be updated to use theregionsattribute instead (#42014)regionattribute has been deprecated. All configurations usingregionshould be updated to use theservice_regionattribute instead (#42014)regionattribute has been deprecated. All configurations usingregionshould be updated to use therequester_regionattribute instead (#42014)s3_us_east_1_regional_endpointargument. The ability to use the global S3 endpoint will be removed inv7.0.0. (#42375)regionattribute has been deprecated. All configurations usingregionshould be updated to use thestack_set_instance_regionattribute instead (#42014)idin favor ofarn(#42232)regionattribute has been deprecated. All configurations usingregionshould be updated to use theauthorized_aws_regionattribute instead (#42014)regionattribute has been deprecated. All configurations usingregionshould be updated to use theconnection_regionattribute instead (#42014)enginevalue is deprecated (#42419)enginevalue is deprecated (#42419)enginevalue is deprecated (#42419)datasourcesnow returns a deprecation warning (#42251)aws_kinesisanalyticsv2_applicationresource instead (#42102)encryptedis nowtrueto match the AWS API. (#42631)bucket_regionattribute. Use of thebucket_regionattribute instead of theregionattribute is encouraged (#42014)health_check_custom_config.failure_thresholdis deprecated. The argument is no longer supported by AWS and is always set to 1 (#40777)regionattribute has been deprecated. All configurations usingregionshould be updated to use theaws_regionattribute instead (#42131)regionattribute has been deprecated. All configurations usingregionshould be updated to use theregionsattribute instead (#42014)ENHANCEMENTS:
allow_unsafe_filterargument (#42114)group_long_nameattribute (#42014)regionas Optional, allowing a value to be configured (#42014)roles.role_arnandroles.role_type(#42131)regionsupport to most resources, data sources, and ephemeral resources, allowing per-resource Region targeting without requiring multiple provider configurations. See the Enhanced Region Support guide for more information. (#43075)control_mapping_sources.source_frequency,control_mapping_sources.source_set_up_option, andcontrol_mapping_sources.source_type(#42131)destination_account(#42741)admin_account_id(#42741)arnattribute (#42733)finding_publishing_frequency. (#42436)mutual_authenticationattributetrust_store_arnis required ifmodeisverify(#42326)policy_arn(#42131)aliasesargument (#42610)access_typesource.aws_log_source_resource.source_name, andsubscriber_identity.external_id(#42131)BUG FIXES:
Provider produced inconsistent result after applyerrors (#42131)encryptedis not explicitly set totrue. (#42631)regions_of_interest.bounding_boxandregions_of_interest.polygonargument validation (#41380)access_typeto ForceNew (#42131)v5.100.0Compare Source
NOTES:
FEATURES:
aws_dsql_cluster(#41868)aws_dsql_cluster_peering(#41868)aws_prometheus_workspace_configuration(#42478)aws_s3control_directory_bucket_access_point_scope(#42338)aws_vpc_route_server(#42392)aws_vpc_route_server_endpoint(#42392)aws_vpc_route_server_peer(#42392)aws_vpc_route_server_propagation(#42392)aws_vpc_route_server_vpc_association(#42392)aws_workspacesweb_data_protection_settings(#42852)aws_workspacesweb_ip_access_settings(#42863)aws_workspacesweb_user_access_logging_settings(#42868)ENHANCEMENTS:
ap-east-2AWS Region (#42915)ap-east-2AWS Region (#42915)latest,has_major_target,preferred_major_targets, andpreferred_upgrade_targets(#42854)ap-east-2AWS Region (#42915)ap-east-2as a valid AWS Region (#42906)data_read_cache_configurationandthroughput_capacityarguments in support of the Intelligent-Tiering storage class (#42839)two_way_channel_roleargument (#42950)preshared_key_storageargument andpreshared_key_arnattribute (#42819)statement.asn_match_statementconfiguration block (#42965)statement.asn_match_statementconfiguration block (#42965)BUG FIXES:
max_batch_sizeargument can be used to override the default value of50items. (#42795)stream_arnattribute when changingstream_view_type(#42561)InvalidPaginationTokenerrors on read (#42948)InvalidParameterValue: The value of loadBalancerOptions.port you provided is not validerrors when creating TCP load balancer endpoints (#42736)OperationInProgress: VpcEndpoint modify operation in progresserrors when deleting multiple associations in parallel (#42884)v5.99.1Compare Source
BUG FIXES:
panic: runtime error: invalid memory address or nil pointer dereference(#42813)InvalidActionexceptions forDescribeCapacityReservationoperations. This fixes a regression introduced in v5.99.0 (#42812)rule.filter. (#42655)v5.99.0Compare Source
FEATURES:
aws_notifications_channel_association(#42575)aws_notifications_event_rule(#42575)aws_notifications_notification_configuration(#42575)aws_notifications_notification_hub(#42544)aws_notificationscontacts_email_contact(#42575)aws_quicksight_account_settings(#42185)aws_workspacesweb_browser_settings(#42681)aws_workspacesweb_network_settings(#42722)aws_workspacesweb_user_settings(#42783)ENHANCEMENTS:
block_device_mappings.ebs["volume_initialization_rate"]attribute (#42684)block_device_mappings.ebs.volume_initialization_rateattribute (#42684)tagsattribute. This functionality requires theverifiedpermissions:ListTagsForResourceIAM permission (#42663)volume_configuration.managed_ebs_volume.volume_initialization_rateargument (#42750)block_device_mappings.ebs.volume_initialization_rateargument (#42684)minimum_load_balancer_capacityconfiguration block. This functionality requires theelasticloadbalancing:DescribeCapacityReservationsandelasticloadbalancing:ModifyCapacityReservationIAM permissions (#42685)nameto be updated in-place. This functionality requires theaccount:PutAccountNameIAM permission (#42350)tagsargument andtags_allattribute. This functionality requires theverifiedpermissions:ListTagsForResource,verifiedpermissions:TagResource, andverifiedpermissions:UntagResourceIAM permissions (#42663)BUG FIXES:
prefixcan now be up to 256 characters (#42723)user_pool_add_ons.advanced_security_additional_flowsblock is non-empty, but contains only a singlenilvalue. (#42793)prefixcan now be up to 256 characters (#42723)HeadBucketS3 API calls are made using configured credentials. This fixes a regression introduced in v5.98.0 (#42786)rule.filter. (#42624)dns_optionswere not being updated correctly whenprivate_dns_enabledwas set to true (#42746)v5.98.0Compare Source
FEATURES:
aws_account_primary_contact(#42526)aws_dynamodb_tables(#42339)aws_bedrockagent_prompt(#42211)aws_cloudfrontkeyvaluestore_keys_exclusive(#42246)aws_dataexchange_revision_assets(#42272)aws_inspector2_filter(#42374)aws_wafv2_api_key(#42525)ENHANCEMENTS:
dead_letter_configattribute (#42471)kms_key_identifierattribute (#42385)refresh_token_rotationattribute (#42430)user_pool_add_onsattribute (#42470)point_in_time_recovery.recovery_period_in_daysattribute (#41484)client_route_enforcement_optionsattribute (#42424)distribution.ssm_parameter_configurationattribute (#42604)track_nameattribute (#42451)active_directory_config,user_identity_type,workspace_directory_description,workspace_directory_name, andworkspace_typeattributes (#42330)destination_flow_config.destination_connector_properties.salesforce.data_transfer_apiargument (#42479)capacity_reservation_specificationargument (#42380)prepared_atattribute. (#42586)instructionmax length for validation to 20000 (#42596)dead_letter_configargument (#42471)kms_key_identifierargument (#42385)refresh_token_rotationargument (#42430)refresh_token_rotationargument (#42430)user_pool_add_ons.advanced_security_additional_flowsargument (#42470)manage_master_user_passwordargument andmaster_user_secretattribute (#42563)point_in_time_recovery.recovery_period_in_daysargument (#41484)client_route_enforcement_optionsargument (#42424)defaultLogDriverModevalue inNameargument (#42418)distribution.ssm_parameter_configurationargument (#42604)application_protocolandauthentication_typearguments (#42534)bootstrap_brokers_sasl_iamattribute. This functionality requires thekafka:GetBootstrapBrokersIAM permission (#42148)track_nameargument (#42451)domain_listargument (#42456)domainas Optional (#42456)encryption_configurationargument. This functionality requires thes3tables:GetTableEncryptionIAM permission (#42356)encryption_configurationargument. This functionality requires thes3tables:GetTableBucketEncryptionIAM permission (#42356)NO_REGIONSas a valid value forlinking_mode(#42574Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Renovate Bot.