NOTES:
- data-source/aws_vpc_endpoint_service: The
service_type
argument filtering has been switched from client-side to new EC2 API functionality (#17641) - provider: New
default_tags
argument as a public preview for applying tags across all resources under a provider. Support for the functionality must be added to individual resources in the codebase and is only implemented for theaws_subnet
andaws_vpc
resources at this time. Until a general availability announcement, no compatibility promises are made with these provider arguments and their functionality. (#17974) - resource/aws_codebuild_project: The
source
andsecondary_sources
configuration blockauth
attributes have been deprecated to match the CodeBuild API documentation. Use theaws_codebuild_source_credential
resource instead. (#17465) - resource/aws_wafv2_web_acl_logging_configuration: The
redacted_fields
configuration blockall_query_arguments
,body
, andsingle_query_argument
arguments have been deprecated to match the WAF API documentation (#14319)
FEATURES:
- New Data Source:
aws_ec2_transit_gateway_route_tables
(#17589) - New Data Source:
aws_kinesis_stream_consumer
(#17149) - New Resource:
aws_kinesis_stream_consumer
(#17149)
ENHANCEMENTS:
- provider: Add
default_tags
argument (in public preview, see note above) (#17974) - resource/aws_db_parameter_group: Store all values in lowercase to prevent unexpected diffs (#17909)
- resource/aws_ssm_parameter: Add support for
Intelligent-Tiering
(#11967) - resource/aws_storagegateway_gateway: Add support for
smb_file_share_visibility
. (#18076) - resource/aws_subnet: Support provider-wide default tags (in public preview, see note above) (#17974)
- resource/aws_vpc: Support provider-wide default tags (in public preview, see note above) (#17974)
BUG FIXES:
- data-source/aws_vpc_endpoint_service: Prevent panic with incorrect
service_type
argument values (#17641) - resource/aws_dms_certificate: Correctly base64 decode
certificate_wallet
value (#17958) - resource/aws_globalaccelerator_accelerator: Correct length for
name
attribute validation (#17985) - resource/aws_lakeformation_permissions: Properly serialize SELECT permission for
permissions
andpermissions_with_grant_option
fields (#18203) - resource/aws_ssm_patch_group: Allow for a single patch group to be registered with multiple patch baselines (#15213)
- resource/aws_ssm_patch_group: Replace
Provider produced inconsistent result after apply
with actual error message (#15213) - resource/aws_waf_rule: Fix rule deletion when still referenced by a WebACL (#17876)
- resource/aws_wafv2_web_acl_logging_configuration: Ensure
redacted_fields
are applied to the resource (#14319)