Important
We highly recommend that you keep your environments up to date by upgrading to the latest version. See Update the solution for the required actions to upgrade.
Fixed
- fix(asea): fix lambda role replacement for asea functions
- fix(asea): remove deprecated asea phase5 lambdas
- fix(config-service): create service linked role when orgs only #834 #857
- fix(macie): allow undefined value for excluded regions
- fix(metadata): missing s3 read permissions on accelerator metadata lambda role #864
- fix(networking): fix rql resource from being recreated
- fix(networking): reverts bug disabling private dns for vpc interface endpoints
- fix(organizations): don't add existing accounts to org account creation
- fix(pipeline): add missing environment variable for validation
- fix(stack-policy): fix error on new account creation
- fix(validation): added partition env var to pipeline
- fix(validation): add validation for imported access log bucket name
Changed
- chore(configs): update sample configurations to lza universal config
- chore(control-tower): updated default access logs retention to 365 days
- chore(docs): add v2 mkdoc navigation
- chore(docs): update service quota documentation
- chore(docs): update documentation for maxPasswordAge
- chore(docs): update security hub findings and universal configuration reference
- chore(logging): updated default cloudwatch log retention to 1 year
- Revert "fix(validation): query log without r53 resolver configured" #876