hashicorp/terraform-provider-aws
### [`v4.65.0`](https://togithub.com/hashicorp/terraform-provider-aws/blob/HEAD/CHANGELOG.md#4650-April-27-2023)
[Compare Source](https://togithub.com/hashicorp/terraform-provider-aws/compare/v4.64.0...v4.65.0)
NOTES:
- data-source/aws_db_instance: With the retirement of EC2-Classic the`db_security_groups` attribute has been deprecated and will be removed in a future version ([#30919](https://togithub.com/hashicorp/terraform-provider-aws/issues/30919))
- data-source/aws_elasticache_cluster: With the retirement of EC2-Classic the`security_group_names` attribute has been deprecated and will be removed in a future version ([#30919](https://togithub.com/hashicorp/terraform-provider-aws/issues/30919))
- data-source/aws_launch_configuration: With the retirement of EC2-Classic the`vpc_classic_link_id` and `vpc_classic_link_security_groups` attributes have been deprecated and will be removed in a future version ([#30919](https://togithub.com/hashicorp/terraform-provider-aws/issues/30919))
- data-source/aws_redshift_cluster: With the retirement of EC2-Classic the `cluster_security_groups` attribute has been deprecated and will be removed in a future version ([#30919](https://togithub.com/hashicorp/terraform-provider-aws/issues/30919))
- resource/aws_config_organization_custom_policy_rule: Because we cannot easily test this functionality, it is best effort and we ask for community help in testing ([#21373](https://togithub.com/hashicorp/terraform-provider-aws/issues/21373))
FEATURES:
- **New Data Source:** `aws_api_gateway_authorizer` ([#28148](https://togithub.com/hashicorp/terraform-provider-aws/issues/28148))
- **New Data Source:** `aws_api_gateway_authorizers` ([#28148](https://togithub.com/hashicorp/terraform-provider-aws/issues/28148))
- **New Data Source:** `aws_dms_replication_subnet_group` ([#30832](https://togithub.com/hashicorp/terraform-provider-aws/issues/30832))
- **New Data Source:** `aws_dms_replication_task` ([#30967](https://togithub.com/hashicorp/terraform-provider-aws/issues/30967))
- **New Data Source:** `aws_ssmcontacts_contact` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667))
- **New Data Source:** `aws_ssmcontacts_contact_channel` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667))
- **New Data Source:** `aws_ssmcontacts_plan` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667))
- **New Data Source:** `aws_ssmincidents_response_plan` ([#30665](https://togithub.com/hashicorp/terraform-provider-aws/issues/30665))
- **New Resource:** `aws_config_organization_custom_policy_rule` ([#28201](https://togithub.com/hashicorp/terraform-provider-aws/issues/28201))
- **New Resource:** `aws_quicksight_folder_membership` ([#30871](https://togithub.com/hashicorp/terraform-provider-aws/issues/30871))
- **New Resource:** `aws_quicksight_refresh_schedule` ([#30788](https://togithub.com/hashicorp/terraform-provider-aws/issues/30788))
- **New Resource:** `aws_ssmcontacts_contact` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667))
- **New Resource:** `aws_ssmcontacts_contact_channel` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667))
- **New Resource:** `aws_ssmcontacts_plan` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667))
- **New Resource:** `aws_ssmincidents_response_plan` ([#30665](https://togithub.com/hashicorp/terraform-provider-aws/issues/30665))
- **New Resource:** `aws_synthetics_group` ([#30678](https://togithub.com/hashicorp/terraform-provider-aws/issues/30678))
- **New Resource:** `aws_synthetics_group_association` ([#30678](https://togithub.com/hashicorp/terraform-provider-aws/issues/30678))
ENHANCEMENTS:
- data-source/aws_ami_ids: Add `include_deprecated` argument ([#30294](https://togithub.com/hashicorp/terraform-provider-aws/issues/30294))
- data-source/aws_backup_report_plan: Add `accounts`, `organization_units` and `regions` attributes to the `report_setting` block ([#28309](https://togithub.com/hashicorp/terraform-provider-aws/issues/28309))
- data-source/aws_imagebuilder_image: Add `containers` attribute to the `output_resources` block ([#30899](https://togithub.com/hashicorp/terraform-provider-aws/issues/30899))
- resource/aws_appstream_stack: Add `streaming_experience_settings` attribute ([#28512](https://togithub.com/hashicorp/terraform-provider-aws/issues/28512))
- resource/aws_backup_report_plan: Add `accounts`, `organization_units` and `regions` attributes to the `report_setting` block ([#28309](https://togithub.com/hashicorp/terraform-provider-aws/issues/28309))
- resource/aws_chime_voice_connector_streaming: Add `media_insights_configuration` argument ([#30713](https://togithub.com/hashicorp/terraform-provider-aws/issues/30713))
- resource/aws_db_subnet_group: Add `vpc_id` attribute ([#30775](https://togithub.com/hashicorp/terraform-provider-aws/issues/30775))
- resource/aws_fis_experiment_template: Add support for `Cluster` Network Actions to `actions.*.target` ([#27337](https://togithub.com/hashicorp/terraform-provider-aws/issues/27337))
- resource/aws_gamelift_game_session_queue: Add `custom_event_data` argument ([#26206](https://togithub.com/hashicorp/terraform-provider-aws/issues/26206))
- resource/aws_imagebuilder_image: Add `containers` attribute to the `output_resources` block ([#30899](https://togithub.com/hashicorp/terraform-provider-aws/issues/30899))
- resource/aws_networkfirewall_rule_group: Add limit for `reference_sets` ([#30759](https://togithub.com/hashicorp/terraform-provider-aws/issues/30759))
- resource/aws_networkmanager_core_network: Wait for the network policy to be in the `READY_TO_EXECUTE` state before executing any changes ([#30879](https://togithub.com/hashicorp/terraform-provider-aws/issues/30879))
- resource/aws_s3outposts_endpoint: Add `access_type` and `customer_owned_ipv4_pool` arguments ([#23839](https://togithub.com/hashicorp/terraform-provider-aws/issues/23839))
- resource/aws_wafv2\_web_acl: Add `token_domains` argument ([#30340](https://togithub.com/hashicorp/terraform-provider-aws/issues/30340))
- various IAM resource types: more detailed error messages for invalid policy document JSON ([#27502](https://togithub.com/hashicorp/terraform-provider-aws/issues/27502))
BUG FIXES:
- resource/aws_api_gateway_api_key: Fix `value` minimum length verification when specified. ([#30894](https://togithub.com/hashicorp/terraform-provider-aws/issues/30894))
- resource/aws_apprunner_service: Allow additional `instance_configuration.cpu` and `instance_configuration.memory` values ([#30889](https://togithub.com/hashicorp/terraform-provider-aws/issues/30889))
- resource/aws_dms_replication_task: Fix perpetual diff on dms replication_task settings ([#30885](https://togithub.com/hashicorp/terraform-provider-aws/issues/30885))
- resource/aws_ds_shared_directory: Properly handle paged response objects on read ([#30914](https://togithub.com/hashicorp/terraform-provider-aws/issues/30914))
- resource/aws_ecs_service: Fix removal of `service_registries` configuration block ([#30852](https://togithub.com/hashicorp/terraform-provider-aws/issues/30852))
- resource/aws_redshiftdata_statement: Fix `ValidationException` errors reading expired statements ([#26343](https://togithub.com/hashicorp/terraform-provider-aws/issues/26343))
- resource/aws_vpc_endpoint_route_table_association: Retry resource Create for EC2 eventual consistency ([#30994](https://togithub.com/hashicorp/terraform-provider-aws/issues/30994))
- resource/aws_vpc_endpoint_service_allowed_principal: Fix `too many results` error ([#30974](https://togithub.com/hashicorp/terraform-provider-aws/issues/30974))
### [`v4.64.0`](https://togithub.com/hashicorp/terraform-provider-aws/blob/HEAD/CHANGELOG.md#4640-April-20-2023)
[Compare Source](https://togithub.com/hashicorp/terraform-provider-aws/compare/v4.63.0...v4.64.0)
FEATURES:
- **New Data Source:** `aws_dms_endpoint` ([#30717](https://togithub.com/hashicorp/terraform-provider-aws/issues/30717))
- **New Data Source:** `aws_fsx_windows_file_system` ([#28622](https://togithub.com/hashicorp/terraform-provider-aws/issues/28622))
- **New Data Source:** `aws_iam_access_keys` ([#29278](https://togithub.com/hashicorp/terraform-provider-aws/issues/29278))
- **New Data Source:** `aws_networkfirewall_resource_policy` ([#25474](https://togithub.com/hashicorp/terraform-provider-aws/issues/25474))
- **New Data Source:** `aws_prometheus_workspaces` ([#28574](https://togithub.com/hashicorp/terraform-provider-aws/issues/28574))
- **New Data Source:** `aws_redshiftserverless_workgroup` ([#29208](https://togithub.com/hashicorp/terraform-provider-aws/issues/29208))
- **New Data Source:** `aws_route53_resolver_query_log_config` ([#29111](https://togithub.com/hashicorp/terraform-provider-aws/issues/29111))
- **New Data Source:** `aws_sesv2_configuration_set` ([#30108](https://togithub.com/hashicorp/terraform-provider-aws/issues/30108))
- **New Data Source:** `aws_vpclattice_listener` ([#30843](https://togithub.com/hashicorp/terraform-provider-aws/issues/30843))
- **New Resource:** `aws_cloudwatch_event_endpoint` ([#25846](https://togithub.com/hashicorp/terraform-provider-aws/issues/25846))
- **New Resource:** `aws_vpclattice_listener` ([#30711](https://togithub.com/hashicorp/terraform-provider-aws/issues/30711))
- **New Resource:** `aws_vpclattice_listener_rule` ([#30784](https://togithub.com/hashicorp/terraform-provider-aws/issues/30784))
ENHANCEMENTS:
- data-source/aws_cloudfront_response_headers_policy: Add `remove_headers_config` attribute ([#28940](https://togithub.com/hashicorp/terraform-provider-aws/issues/28940))
- data-source/aws_ecs_task_definition: Add `execution_role_arn` attribute ([#28662](https://togithub.com/hashicorp/terraform-provider-aws/issues/28662))
- data-source/aws_eks_node_group: Add `launch_template` attribute ([#30780](https://togithub.com/hashicorp/terraform-provider-aws/issues/30780))
- data-source/aws_iam_role: Add `role_last_used` attribute ([#30750](https://togithub.com/hashicorp/terraform-provider-aws/issues/30750))
- data-source/aws_kms_key: Add `cloud_hsm_cluster_id`, `custom_key_store_id`, `key_spec`, `pending_deletion_window_in_days`, and `xks_key_configuration` attributes ([#29250](https://togithub.com/hashicorp/terraform-provider-aws/issues/29250))
- data-source/aws_lakeformation_data_lake_settings: Add `allow_external_data_filtering`, `external_data_filtering_allow_list` and `authorized_session_tag_value_list` attributes ([#30207](https://togithub.com/hashicorp/terraform-provider-aws/issues/30207))
- data-source/aws_outposts_outpost: Add `lifecycle_status`, `site_arn`, `supported_hardware_type` and `tags` attributes ([#30754](https://togithub.com/hashicorp/terraform-provider-aws/issues/30754))
- data-source/aws_servicequotas_service_quota: Add `usage_metric` attribute ([#29499](https://togithub.com/hashicorp/terraform-provider-aws/issues/29499))
- data-source/aws_subnet: Add `enable_lni_at_device_index` attribute ([#30798](https://togithub.com/hashicorp/terraform-provider-aws/issues/30798))
- resource/aws_appsync_datasource: Add `opensearchservice_config` argument ([#29578](https://togithub.com/hashicorp/terraform-provider-aws/issues/29578))
- resource/aws_cloudfront_response_headers_policy: Add `remove_headers_config` argument ([#28940](https://togithub.com/hashicorp/terraform-provider-aws/issues/28940))
- resource/aws_cloudwatch_event_target: Add `ecs_target.ordered_placement_strategy` argument ([#28384](https://togithub.com/hashicorp/terraform-provider-aws/issues/28384))
- resource/aws_cloudwatch_metric_stream: Add `include_linked_accounts_metrics` argument ([#29281](https://togithub.com/hashicorp/terraform-provider-aws/issues/29281))
- resource/aws_dms_replication_instance: Increase default timeout for `create` ([#29905](https://togithub.com/hashicorp/terraform-provider-aws/issues/29905))
- resource/aws_eks_node_group: Add plan time validation to `node_group_name` and `node_group_name_prefix` arguments ([#29975](https://togithub.com/hashicorp/terraform-provider-aws/issues/29975))
- resource/aws_elastic_beanstalk_application: Add plan time validation to `appversion_lifecycle.service_role` and `name` arguments ([#17727](https://togithub.com/hashicorp/terraform-provider-aws/issues/17727))
- resource/aws_emr_cluster: Add `placement_group_config` argument ([#30121](https://togithub.com/hashicorp/terraform-provider-aws/issues/30121))
- resource/aws_fis_experiment_template: Add support for `Subnets` Network Actions to `actions.*.target` ([#30211](https://togithub.com/hashicorp/terraform-provider-aws/issues/30211))
- resource/aws_iam_role: Add `role_last_used` attribute ([#30750](https://togithub.com/hashicorp/terraform-provider-aws/issues/30750))
- resource/aws_iot_topic_rule: Add `error_action.firehose.batch_mode`, `error_action.iot_analytics.batch_mode`, `error_action.iot_events.batch_mode`, `firehose.batch_mode`, `iot_analytics.batch_mode` and `iot_events.batch_mode` arguments ([#28568](https://togithub.com/hashicorp/terraform-provider-aws/issues/28568))
- resource/aws_kinesis_firehose_delivery_stream: Add `opensearch_configuration` block ([#29112](https://togithub.com/hashicorp/terraform-provider-aws/issues/29112))
- resource/aws_kinesis_firehose_delivery_stream: Add `opensearch` as a valid `destination` value ([#29112](https://togithub.com/hashicorp/terraform-provider-aws/issues/29112))
- resource/aws_lakeformation_data_lake_settings: Add `allow_external_data_filtering`, `external_data_filtering_allow_list` and `authorized_session_tag_value_list` arguments ([#30207](https://togithub.com/hashicorp/terraform-provider-aws/issues/30207))
- resource/aws_lambda_event_source_mapping: Add `document_db_event_source_config` configuration block ([#28586](https://togithub.com/hashicorp/terraform-provider-aws/issues/28586))
- resource/aws_lambda_function: Add support for `python3.10` `runtime` value ([#30781](https://togithub.com/hashicorp/terraform-provider-aws/issues/30781))
- resource/aws_lambda_layer_version: Add support for `python3.10` `compatible_runtimes` value ([#30781](https://togithub.com/hashicorp/terraform-provider-aws/issues/30781))
- resource/aws_main_route_table_association: Add configurable timeouts ([#30755](https://togithub.com/hashicorp/terraform-provider-aws/issues/30755))
- resource/aws_route: Allow `gateway_id` value of `local` when updating a Route ([#24507](https://togithub.com/hashicorp/terraform-provider-aws/issues/24507))
- resource/aws_route_table_association: Add configurable timeouts ([#30755](https://togithub.com/hashicorp/terraform-provider-aws/issues/30755))
- resource/aws_s3\_bucket: Correct S3 Object Lock error handling for third-party S3-compatible API implementations ([#26317](https://togithub.com/hashicorp/terraform-provider-aws/issues/26317))
- resource/aws_s3\_bucket_object_lock_configuration: Correct error handling for third-party S3-compatible API implementations ([#26317](https://togithub.com/hashicorp/terraform-provider-aws/issues/26317))
- resource/aws_securityhub_account: Add `control_finding_generator`, `auto_enable_controls` and `arn` attributes ([#30692](https://togithub.com/hashicorp/terraform-provider-aws/issues/30692))
- resource/aws_servicequotas_service_quota: Add `usage_metric` attribute ([#29499](https://togithub.com/hashicorp/terraform-provider-aws/issues/29499))
- resource/aws_ssoadmin_account_assignment: Extend timeout delay and min timeout ([#25849](https://togithub.com/hashicorp/terraform-provider-aws/issues/25849))
- resource/aws_ssoadmin_permission_set: Extend timeout delay and min timeout ([#25849](https://togithub.com/hashicorp/terraform-provider-aws/issues/25849))
- resource/aws_subnet: Add `enable_lni_at_device_index` attribute ([#30798](https://togithub.com/hashicorp/terraform-provider-aws/issues/30798))
- resource/aws_vpc_endpoint_service_allowed_principal: Changed id to use ServicePermissionId ([#27640](https://togithub.com/hashicorp/terraform-provider-aws/issues/27640))
- resource/aws_wafv2\_rule_group: Add `rule.action.challenge` argument ([#29690](https://togithub.com/hashicorp/terraform-provider-aws/issues/29690))
- resource/aws_wafv2\_rule_group: Add `rule.captcha_config` argument ([#29608](https://togithub.com/hashicorp/terraform-provider-aws/issues/29608))
- resource/aws_wafv2\_web_acl: Add `captcha_config` and `rule.captcha_config` arguments ([#29608](https://togithub.com/hashicorp/terraform-provider-aws/issues/29608))
BUG FIXES:
- data-source/aws_lakeformation_permissions: Change `lf_tag_policy.expression` from `TypeList` to `TypeSet` as order is not significant ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643))
- data-source/aws_lakeformation_permissions: Remove limit on number of `lf_tag_policy.expression` blocks ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643))
- resource/aws_cloudwatch_event_rule: Add retry to read step, resolving `couldn't find resource` error ([#25846](https://togithub.com/hashicorp/terraform-provider-aws/issues/25846))
- resource/aws_default_vpc: Fix adoption of default VPC with generated IPv6 ([#29083](https://togithub.com/hashicorp/terraform-provider-aws/issues/29083))
- resource/aws_dx_gateway: Remove plan time validation from `name` argument ([#30739](https://togithub.com/hashicorp/terraform-provider-aws/issues/30739))
- resource/aws_ecs_service: Fix error importing service with an IAM role with a path ([#30170](https://togithub.com/hashicorp/terraform-provider-aws/issues/30170))
- resource/aws_fsx_windows_file_system: Increase `throughput_capacity` first to avoid `BadRequest` errors ([#28622](https://togithub.com/hashicorp/terraform-provider-aws/issues/28622))
- resource/aws_lakeformation_permissions: Change `lf_tag_policy.expression` from `TypeList` to `TypeSet` as order is not significant ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643))
- resource/aws_lakeformation_permissions: Change `lf_tag`, `lf_tag.values`, `lf_tag_policy`, `lf_tag_policy.expression.key`, `lf_tag_policy.expression.values` and `lf_tag_policy.resource_type` to [ForceNew](https://developer.hashicorp.com/terraform/plugin/sdkv2/schemas/schema-behaviors#forcenew) ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643))
- resource/aws_lakeformation_permissions: Remove limit on number of `lf_tag_policy.expression` blocks ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643))
- resource/aws_lambda_event_source_mapping: Fix IAM eventual consistency errors on resource Update ([#28586](https://togithub.com/hashicorp/terraform-provider-aws/issues/28586))
- resource/aws_medialive_channel: Fix to properly expand `destinations.media_package_settings` field ([#30660](https://togithub.com/hashicorp/terraform-provider-aws/issues/30660))
- resource/aws_networkfirewall_firewall_policy: Fix unexpected `encryption_configuration.type` updates from `Customer_KMS` to `AWS_KMS` ([#30821](https://togithub.com/hashicorp/terraform-provider-aws/issues/30821))
- resource/aws_networkfirewall_rule_group: Fix unexpected `encryption_configuration.type` updates from `Customer_KMS` to `AWS_KMS` ([#30821](https://togithub.com/hashicorp/terraform-provider-aws/issues/30821))
- resource/aws_quicksight_data_set: Correct custom_sql documentation ([#30742](https://togithub.com/hashicorp/terraform-provider-aws/issues/30742))
- resource/aws_quicksight_data_set: Correctly persist `create_columns_operation.expression` field ([#30708](https://togithub.com/hashicorp/terraform-provider-aws/issues/30708))
- resource/aws_quicksight_data_set: Fix to properly expand `project_operation.projected_columns` field ([#30699](https://togithub.com/hashicorp/terraform-provider-aws/issues/30699))
- resource/aws_quicksight_data_set: Fix to properly flatten `cast_column_type_operation.format` field ([#30701](https://togithub.com/hashicorp/terraform-provider-aws/issues/30701))
- resource/aws_sagemaker_app: Fix crash when app is not found ([#30786](https://togithub.com/hashicorp/terraform-provider-aws/issues/30786))
- resource/aws_sns_topic: Fix IAM eventual consistency error creating SNS topics with ABAC-controlled permissions ([#30432](https://togithub.com/hashicorp/terraform-provider-aws/issues/30432))
- resource/aws_vpc: Don't overwrite any configured value for `ipv6_ipam_pool_id` with *IPAM Managed* ([#30795](https://togithub.com/hashicorp/terraform-provider-aws/issues/30795))
Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
[ ] If you want to rebase/retry this PR, check this box
This PR has been generated by Mend Renovate. View repository job log here.
This PR contains the following updates:
4.63.0
->4.65.0
Release Notes
hashicorp/terraform-provider-aws
### [`v4.65.0`](https://togithub.com/hashicorp/terraform-provider-aws/blob/HEAD/CHANGELOG.md#4650-April-27-2023) [Compare Source](https://togithub.com/hashicorp/terraform-provider-aws/compare/v4.64.0...v4.65.0) NOTES: - data-source/aws_db_instance: With the retirement of EC2-Classic the`db_security_groups` attribute has been deprecated and will be removed in a future version ([#30919](https://togithub.com/hashicorp/terraform-provider-aws/issues/30919)) - data-source/aws_elasticache_cluster: With the retirement of EC2-Classic the`security_group_names` attribute has been deprecated and will be removed in a future version ([#30919](https://togithub.com/hashicorp/terraform-provider-aws/issues/30919)) - data-source/aws_launch_configuration: With the retirement of EC2-Classic the`vpc_classic_link_id` and `vpc_classic_link_security_groups` attributes have been deprecated and will be removed in a future version ([#30919](https://togithub.com/hashicorp/terraform-provider-aws/issues/30919)) - data-source/aws_redshift_cluster: With the retirement of EC2-Classic the `cluster_security_groups` attribute has been deprecated and will be removed in a future version ([#30919](https://togithub.com/hashicorp/terraform-provider-aws/issues/30919)) - resource/aws_config_organization_custom_policy_rule: Because we cannot easily test this functionality, it is best effort and we ask for community help in testing ([#21373](https://togithub.com/hashicorp/terraform-provider-aws/issues/21373)) FEATURES: - **New Data Source:** `aws_api_gateway_authorizer` ([#28148](https://togithub.com/hashicorp/terraform-provider-aws/issues/28148)) - **New Data Source:** `aws_api_gateway_authorizers` ([#28148](https://togithub.com/hashicorp/terraform-provider-aws/issues/28148)) - **New Data Source:** `aws_dms_replication_subnet_group` ([#30832](https://togithub.com/hashicorp/terraform-provider-aws/issues/30832)) - **New Data Source:** `aws_dms_replication_task` ([#30967](https://togithub.com/hashicorp/terraform-provider-aws/issues/30967)) - **New Data Source:** `aws_ssmcontacts_contact` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667)) - **New Data Source:** `aws_ssmcontacts_contact_channel` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667)) - **New Data Source:** `aws_ssmcontacts_plan` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667)) - **New Data Source:** `aws_ssmincidents_response_plan` ([#30665](https://togithub.com/hashicorp/terraform-provider-aws/issues/30665)) - **New Resource:** `aws_config_organization_custom_policy_rule` ([#28201](https://togithub.com/hashicorp/terraform-provider-aws/issues/28201)) - **New Resource:** `aws_quicksight_folder_membership` ([#30871](https://togithub.com/hashicorp/terraform-provider-aws/issues/30871)) - **New Resource:** `aws_quicksight_refresh_schedule` ([#30788](https://togithub.com/hashicorp/terraform-provider-aws/issues/30788)) - **New Resource:** `aws_ssmcontacts_contact` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667)) - **New Resource:** `aws_ssmcontacts_contact_channel` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667)) - **New Resource:** `aws_ssmcontacts_plan` ([#30667](https://togithub.com/hashicorp/terraform-provider-aws/issues/30667)) - **New Resource:** `aws_ssmincidents_response_plan` ([#30665](https://togithub.com/hashicorp/terraform-provider-aws/issues/30665)) - **New Resource:** `aws_synthetics_group` ([#30678](https://togithub.com/hashicorp/terraform-provider-aws/issues/30678)) - **New Resource:** `aws_synthetics_group_association` ([#30678](https://togithub.com/hashicorp/terraform-provider-aws/issues/30678)) ENHANCEMENTS: - data-source/aws_ami_ids: Add `include_deprecated` argument ([#30294](https://togithub.com/hashicorp/terraform-provider-aws/issues/30294)) - data-source/aws_backup_report_plan: Add `accounts`, `organization_units` and `regions` attributes to the `report_setting` block ([#28309](https://togithub.com/hashicorp/terraform-provider-aws/issues/28309)) - data-source/aws_imagebuilder_image: Add `containers` attribute to the `output_resources` block ([#30899](https://togithub.com/hashicorp/terraform-provider-aws/issues/30899)) - resource/aws_appstream_stack: Add `streaming_experience_settings` attribute ([#28512](https://togithub.com/hashicorp/terraform-provider-aws/issues/28512)) - resource/aws_backup_report_plan: Add `accounts`, `organization_units` and `regions` attributes to the `report_setting` block ([#28309](https://togithub.com/hashicorp/terraform-provider-aws/issues/28309)) - resource/aws_chime_voice_connector_streaming: Add `media_insights_configuration` argument ([#30713](https://togithub.com/hashicorp/terraform-provider-aws/issues/30713)) - resource/aws_db_subnet_group: Add `vpc_id` attribute ([#30775](https://togithub.com/hashicorp/terraform-provider-aws/issues/30775)) - resource/aws_fis_experiment_template: Add support for `Cluster` Network Actions to `actions.*.target` ([#27337](https://togithub.com/hashicorp/terraform-provider-aws/issues/27337)) - resource/aws_gamelift_game_session_queue: Add `custom_event_data` argument ([#26206](https://togithub.com/hashicorp/terraform-provider-aws/issues/26206)) - resource/aws_imagebuilder_image: Add `containers` attribute to the `output_resources` block ([#30899](https://togithub.com/hashicorp/terraform-provider-aws/issues/30899)) - resource/aws_networkfirewall_rule_group: Add limit for `reference_sets` ([#30759](https://togithub.com/hashicorp/terraform-provider-aws/issues/30759)) - resource/aws_networkmanager_core_network: Wait for the network policy to be in the `READY_TO_EXECUTE` state before executing any changes ([#30879](https://togithub.com/hashicorp/terraform-provider-aws/issues/30879)) - resource/aws_s3outposts_endpoint: Add `access_type` and `customer_owned_ipv4_pool` arguments ([#23839](https://togithub.com/hashicorp/terraform-provider-aws/issues/23839)) - resource/aws_wafv2\_web_acl: Add `token_domains` argument ([#30340](https://togithub.com/hashicorp/terraform-provider-aws/issues/30340)) - various IAM resource types: more detailed error messages for invalid policy document JSON ([#27502](https://togithub.com/hashicorp/terraform-provider-aws/issues/27502)) BUG FIXES: - resource/aws_api_gateway_api_key: Fix `value` minimum length verification when specified. ([#30894](https://togithub.com/hashicorp/terraform-provider-aws/issues/30894)) - resource/aws_apprunner_service: Allow additional `instance_configuration.cpu` and `instance_configuration.memory` values ([#30889](https://togithub.com/hashicorp/terraform-provider-aws/issues/30889)) - resource/aws_dms_replication_task: Fix perpetual diff on dms replication_task settings ([#30885](https://togithub.com/hashicorp/terraform-provider-aws/issues/30885)) - resource/aws_ds_shared_directory: Properly handle paged response objects on read ([#30914](https://togithub.com/hashicorp/terraform-provider-aws/issues/30914)) - resource/aws_ecs_service: Fix removal of `service_registries` configuration block ([#30852](https://togithub.com/hashicorp/terraform-provider-aws/issues/30852)) - resource/aws_redshiftdata_statement: Fix `ValidationException` errors reading expired statements ([#26343](https://togithub.com/hashicorp/terraform-provider-aws/issues/26343)) - resource/aws_vpc_endpoint_route_table_association: Retry resource Create for EC2 eventual consistency ([#30994](https://togithub.com/hashicorp/terraform-provider-aws/issues/30994)) - resource/aws_vpc_endpoint_service_allowed_principal: Fix `too many results` error ([#30974](https://togithub.com/hashicorp/terraform-provider-aws/issues/30974)) ### [`v4.64.0`](https://togithub.com/hashicorp/terraform-provider-aws/blob/HEAD/CHANGELOG.md#4640-April-20-2023) [Compare Source](https://togithub.com/hashicorp/terraform-provider-aws/compare/v4.63.0...v4.64.0) FEATURES: - **New Data Source:** `aws_dms_endpoint` ([#30717](https://togithub.com/hashicorp/terraform-provider-aws/issues/30717)) - **New Data Source:** `aws_fsx_windows_file_system` ([#28622](https://togithub.com/hashicorp/terraform-provider-aws/issues/28622)) - **New Data Source:** `aws_iam_access_keys` ([#29278](https://togithub.com/hashicorp/terraform-provider-aws/issues/29278)) - **New Data Source:** `aws_networkfirewall_resource_policy` ([#25474](https://togithub.com/hashicorp/terraform-provider-aws/issues/25474)) - **New Data Source:** `aws_prometheus_workspaces` ([#28574](https://togithub.com/hashicorp/terraform-provider-aws/issues/28574)) - **New Data Source:** `aws_redshiftserverless_workgroup` ([#29208](https://togithub.com/hashicorp/terraform-provider-aws/issues/29208)) - **New Data Source:** `aws_route53_resolver_query_log_config` ([#29111](https://togithub.com/hashicorp/terraform-provider-aws/issues/29111)) - **New Data Source:** `aws_sesv2_configuration_set` ([#30108](https://togithub.com/hashicorp/terraform-provider-aws/issues/30108)) - **New Data Source:** `aws_vpclattice_listener` ([#30843](https://togithub.com/hashicorp/terraform-provider-aws/issues/30843)) - **New Resource:** `aws_cloudwatch_event_endpoint` ([#25846](https://togithub.com/hashicorp/terraform-provider-aws/issues/25846)) - **New Resource:** `aws_vpclattice_listener` ([#30711](https://togithub.com/hashicorp/terraform-provider-aws/issues/30711)) - **New Resource:** `aws_vpclattice_listener_rule` ([#30784](https://togithub.com/hashicorp/terraform-provider-aws/issues/30784)) ENHANCEMENTS: - data-source/aws_cloudfront_response_headers_policy: Add `remove_headers_config` attribute ([#28940](https://togithub.com/hashicorp/terraform-provider-aws/issues/28940)) - data-source/aws_ecs_task_definition: Add `execution_role_arn` attribute ([#28662](https://togithub.com/hashicorp/terraform-provider-aws/issues/28662)) - data-source/aws_eks_node_group: Add `launch_template` attribute ([#30780](https://togithub.com/hashicorp/terraform-provider-aws/issues/30780)) - data-source/aws_iam_role: Add `role_last_used` attribute ([#30750](https://togithub.com/hashicorp/terraform-provider-aws/issues/30750)) - data-source/aws_kms_key: Add `cloud_hsm_cluster_id`, `custom_key_store_id`, `key_spec`, `pending_deletion_window_in_days`, and `xks_key_configuration` attributes ([#29250](https://togithub.com/hashicorp/terraform-provider-aws/issues/29250)) - data-source/aws_lakeformation_data_lake_settings: Add `allow_external_data_filtering`, `external_data_filtering_allow_list` and `authorized_session_tag_value_list` attributes ([#30207](https://togithub.com/hashicorp/terraform-provider-aws/issues/30207)) - data-source/aws_outposts_outpost: Add `lifecycle_status`, `site_arn`, `supported_hardware_type` and `tags` attributes ([#30754](https://togithub.com/hashicorp/terraform-provider-aws/issues/30754)) - data-source/aws_servicequotas_service_quota: Add `usage_metric` attribute ([#29499](https://togithub.com/hashicorp/terraform-provider-aws/issues/29499)) - data-source/aws_subnet: Add `enable_lni_at_device_index` attribute ([#30798](https://togithub.com/hashicorp/terraform-provider-aws/issues/30798)) - resource/aws_appsync_datasource: Add `opensearchservice_config` argument ([#29578](https://togithub.com/hashicorp/terraform-provider-aws/issues/29578)) - resource/aws_cloudfront_response_headers_policy: Add `remove_headers_config` argument ([#28940](https://togithub.com/hashicorp/terraform-provider-aws/issues/28940)) - resource/aws_cloudwatch_event_target: Add `ecs_target.ordered_placement_strategy` argument ([#28384](https://togithub.com/hashicorp/terraform-provider-aws/issues/28384)) - resource/aws_cloudwatch_metric_stream: Add `include_linked_accounts_metrics` argument ([#29281](https://togithub.com/hashicorp/terraform-provider-aws/issues/29281)) - resource/aws_dms_replication_instance: Increase default timeout for `create` ([#29905](https://togithub.com/hashicorp/terraform-provider-aws/issues/29905)) - resource/aws_eks_node_group: Add plan time validation to `node_group_name` and `node_group_name_prefix` arguments ([#29975](https://togithub.com/hashicorp/terraform-provider-aws/issues/29975)) - resource/aws_elastic_beanstalk_application: Add plan time validation to `appversion_lifecycle.service_role` and `name` arguments ([#17727](https://togithub.com/hashicorp/terraform-provider-aws/issues/17727)) - resource/aws_emr_cluster: Add `placement_group_config` argument ([#30121](https://togithub.com/hashicorp/terraform-provider-aws/issues/30121)) - resource/aws_fis_experiment_template: Add support for `Subnets` Network Actions to `actions.*.target` ([#30211](https://togithub.com/hashicorp/terraform-provider-aws/issues/30211)) - resource/aws_iam_role: Add `role_last_used` attribute ([#30750](https://togithub.com/hashicorp/terraform-provider-aws/issues/30750)) - resource/aws_iot_topic_rule: Add `error_action.firehose.batch_mode`, `error_action.iot_analytics.batch_mode`, `error_action.iot_events.batch_mode`, `firehose.batch_mode`, `iot_analytics.batch_mode` and `iot_events.batch_mode` arguments ([#28568](https://togithub.com/hashicorp/terraform-provider-aws/issues/28568)) - resource/aws_kinesis_firehose_delivery_stream: Add `opensearch_configuration` block ([#29112](https://togithub.com/hashicorp/terraform-provider-aws/issues/29112)) - resource/aws_kinesis_firehose_delivery_stream: Add `opensearch` as a valid `destination` value ([#29112](https://togithub.com/hashicorp/terraform-provider-aws/issues/29112)) - resource/aws_lakeformation_data_lake_settings: Add `allow_external_data_filtering`, `external_data_filtering_allow_list` and `authorized_session_tag_value_list` arguments ([#30207](https://togithub.com/hashicorp/terraform-provider-aws/issues/30207)) - resource/aws_lambda_event_source_mapping: Add `document_db_event_source_config` configuration block ([#28586](https://togithub.com/hashicorp/terraform-provider-aws/issues/28586)) - resource/aws_lambda_function: Add support for `python3.10` `runtime` value ([#30781](https://togithub.com/hashicorp/terraform-provider-aws/issues/30781)) - resource/aws_lambda_layer_version: Add support for `python3.10` `compatible_runtimes` value ([#30781](https://togithub.com/hashicorp/terraform-provider-aws/issues/30781)) - resource/aws_main_route_table_association: Add configurable timeouts ([#30755](https://togithub.com/hashicorp/terraform-provider-aws/issues/30755)) - resource/aws_route: Allow `gateway_id` value of `local` when updating a Route ([#24507](https://togithub.com/hashicorp/terraform-provider-aws/issues/24507)) - resource/aws_route_table_association: Add configurable timeouts ([#30755](https://togithub.com/hashicorp/terraform-provider-aws/issues/30755)) - resource/aws_s3\_bucket: Correct S3 Object Lock error handling for third-party S3-compatible API implementations ([#26317](https://togithub.com/hashicorp/terraform-provider-aws/issues/26317)) - resource/aws_s3\_bucket_object_lock_configuration: Correct error handling for third-party S3-compatible API implementations ([#26317](https://togithub.com/hashicorp/terraform-provider-aws/issues/26317)) - resource/aws_securityhub_account: Add `control_finding_generator`, `auto_enable_controls` and `arn` attributes ([#30692](https://togithub.com/hashicorp/terraform-provider-aws/issues/30692)) - resource/aws_servicequotas_service_quota: Add `usage_metric` attribute ([#29499](https://togithub.com/hashicorp/terraform-provider-aws/issues/29499)) - resource/aws_ssoadmin_account_assignment: Extend timeout delay and min timeout ([#25849](https://togithub.com/hashicorp/terraform-provider-aws/issues/25849)) - resource/aws_ssoadmin_permission_set: Extend timeout delay and min timeout ([#25849](https://togithub.com/hashicorp/terraform-provider-aws/issues/25849)) - resource/aws_subnet: Add `enable_lni_at_device_index` attribute ([#30798](https://togithub.com/hashicorp/terraform-provider-aws/issues/30798)) - resource/aws_vpc_endpoint_service_allowed_principal: Changed id to use ServicePermissionId ([#27640](https://togithub.com/hashicorp/terraform-provider-aws/issues/27640)) - resource/aws_wafv2\_rule_group: Add `rule.action.challenge` argument ([#29690](https://togithub.com/hashicorp/terraform-provider-aws/issues/29690)) - resource/aws_wafv2\_rule_group: Add `rule.captcha_config` argument ([#29608](https://togithub.com/hashicorp/terraform-provider-aws/issues/29608)) - resource/aws_wafv2\_web_acl: Add `captcha_config` and `rule.captcha_config` arguments ([#29608](https://togithub.com/hashicorp/terraform-provider-aws/issues/29608)) BUG FIXES: - data-source/aws_lakeformation_permissions: Change `lf_tag_policy.expression` from `TypeList` to `TypeSet` as order is not significant ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643)) - data-source/aws_lakeformation_permissions: Remove limit on number of `lf_tag_policy.expression` blocks ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643)) - resource/aws_cloudwatch_event_rule: Add retry to read step, resolving `couldn't find resource` error ([#25846](https://togithub.com/hashicorp/terraform-provider-aws/issues/25846)) - resource/aws_default_vpc: Fix adoption of default VPC with generated IPv6 ([#29083](https://togithub.com/hashicorp/terraform-provider-aws/issues/29083)) - resource/aws_dx_gateway: Remove plan time validation from `name` argument ([#30739](https://togithub.com/hashicorp/terraform-provider-aws/issues/30739)) - resource/aws_ecs_service: Fix error importing service with an IAM role with a path ([#30170](https://togithub.com/hashicorp/terraform-provider-aws/issues/30170)) - resource/aws_fsx_windows_file_system: Increase `throughput_capacity` first to avoid `BadRequest` errors ([#28622](https://togithub.com/hashicorp/terraform-provider-aws/issues/28622)) - resource/aws_lakeformation_permissions: Change `lf_tag_policy.expression` from `TypeList` to `TypeSet` as order is not significant ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643)) - resource/aws_lakeformation_permissions: Change `lf_tag`, `lf_tag.values`, `lf_tag_policy`, `lf_tag_policy.expression.key`, `lf_tag_policy.expression.values` and `lf_tag_policy.resource_type` to [ForceNew](https://developer.hashicorp.com/terraform/plugin/sdkv2/schemas/schema-behaviors#forcenew) ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643)) - resource/aws_lakeformation_permissions: Remove limit on number of `lf_tag_policy.expression` blocks ([#26643](https://togithub.com/hashicorp/terraform-provider-aws/issues/26643)) - resource/aws_lambda_event_source_mapping: Fix IAM eventual consistency errors on resource Update ([#28586](https://togithub.com/hashicorp/terraform-provider-aws/issues/28586)) - resource/aws_medialive_channel: Fix to properly expand `destinations.media_package_settings` field ([#30660](https://togithub.com/hashicorp/terraform-provider-aws/issues/30660)) - resource/aws_networkfirewall_firewall_policy: Fix unexpected `encryption_configuration.type` updates from `Customer_KMS` to `AWS_KMS` ([#30821](https://togithub.com/hashicorp/terraform-provider-aws/issues/30821)) - resource/aws_networkfirewall_rule_group: Fix unexpected `encryption_configuration.type` updates from `Customer_KMS` to `AWS_KMS` ([#30821](https://togithub.com/hashicorp/terraform-provider-aws/issues/30821)) - resource/aws_quicksight_data_set: Correct custom_sql documentation ([#30742](https://togithub.com/hashicorp/terraform-provider-aws/issues/30742)) - resource/aws_quicksight_data_set: Correctly persist `create_columns_operation.expression` field ([#30708](https://togithub.com/hashicorp/terraform-provider-aws/issues/30708)) - resource/aws_quicksight_data_set: Fix to properly expand `project_operation.projected_columns` field ([#30699](https://togithub.com/hashicorp/terraform-provider-aws/issues/30699)) - resource/aws_quicksight_data_set: Fix to properly flatten `cast_column_type_operation.format` field ([#30701](https://togithub.com/hashicorp/terraform-provider-aws/issues/30701)) - resource/aws_sagemaker_app: Fix crash when app is not found ([#30786](https://togithub.com/hashicorp/terraform-provider-aws/issues/30786)) - resource/aws_sns_topic: Fix IAM eventual consistency error creating SNS topics with ABAC-controlled permissions ([#30432](https://togithub.com/hashicorp/terraform-provider-aws/issues/30432)) - resource/aws_vpc: Don't overwrite any configured value for `ipv6_ipam_pool_id` with *IPAM Managed* ([#30795](https://togithub.com/hashicorp/terraform-provider-aws/issues/30795))Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.