terraform-ibm-modules / terraform-ibm-powervs-infrastructure

Sets up and configures a ready-to-use Power Virtual Servers infrastructure with IBM Cloud landing zone.
Apache License 2.0
4 stars 10 forks source link

chore(deps): update terraform terraform-ibm-modules/landing-zone/ibm to v4.9.2 #618

Closed terraform-ibm-modules-ops closed 1 year ago

terraform-ibm-modules-ops commented 1 year ago

This PR contains the following updates:

Package Type Update Change
terraform-ibm-modules/landing-zone/ibm (source) module minor 4.4.6 -> 4.9.2

Release Notes

terraform-ibm-modules/terraform-ibm-landing-zone (terraform-ibm-modules/landing-zone/ibm) ### [`v4.9.2`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.9.2) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.9.1...v4.9.2) ##### Bug Fixes - fixed invalid validation for the `vpc_placement_groups` variable ([#​579](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/579)) ([6703f05](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/6703f056e6cabad535766d3f95691415eda9d5ef)) ### [`v4.9.1`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.9.1) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.9.0...v4.9.1) ##### Bug Fixes - update the default VSI image name to ibm-ubuntu-22-04-2-minimal-amd64-1 ([#​572](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/572)) ([c68a696](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/c68a696dd48b44b200d2d395af120c09849f3f50)) ### [`v4.9.0`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.9.0) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.8.0...v4.9.0) ##### Features - You can now use keys that you created outside this module or from different accounts. You specify the key CRN in the "existing_key_crn" field. When using an existing key crn, user must have an authentication policy that allows the `block-storage`, `cloud-object-storage` and `secrets-manager` to access the Key Management Service in the external account. ([#​547](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/547)) ([1c27943](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/1c279438c5e777344586921bf01decac49cd1473)) For example: ```json "key_management": { "keys": [ { "key_ring": "slz-slz-ring", "name": "slz-slz-key", "root_key": true }, { "name": "slz-atracker-key", "existing_key_crn": "xxxx-xxx-xxx" } ], "name": "slz-slz-kms", "resource_group": "slz-service-rg", "use_hs_crypto": false } ``` ### [`v4.8.0`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.8.0) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.7.0...v4.8.0) ##### Features - exposed new boolean variable `transit_gateway_global` which allows you to enable connecting to the networks outside the associated region (only applicable if transit gateway is enabled) ([#​570](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/570)) ([459d6c8](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/459d6c8a8d583135b8aed603c5cd854385e8cbc2)) ### [`v4.7.0`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.7.0) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.6.5...v4.7.0) ##### Features - update the `existing_ssh_key_name` variable to be a vpc_ssh_key type in catalog ([#​569](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/569)) ([e20853c](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/e20853c1f2460ac63af5eac5f9f999629ceb589a)) ### [`v4.6.5`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.6.5) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.6.4...v4.6.5) ##### Bug Fixes - updated the description of the OCP `prefix` variable ([#​568](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/568)) ([be30022](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/be3002235cc341049fefca16c21663f2a2d42bcd)) ### [`v4.6.4`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.6.4) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.6.3...v4.6.4) ##### Bug Fixes - revert back to fscloud 1.3.0 for catalog DAs ([#​566](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/566)) ([d466a2b](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/d466a2baabad8346c3d873b1d9c8a4440913aa3b)) ### [`v4.6.3`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.6.3) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.6.2...v4.6.3) ##### Bug Fixes - fix the VSI quickstart pattern where new variables were incorrectly introduced ([#​548](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/548)) ([2d46352](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/2d46352e8091a57c71b1b73a67bb0ab25db56200)) ### [`v4.6.2`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.6.2) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.6.1...v4.6.2) ##### Bug Fixes - **deps:** update terraform-module ([#​562](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/562)) ([058f423](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/058f423015d11631f22c9208b2a97bb04133e2cf)) ### [`v4.6.1`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.6.1) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.6.0...v4.6.1) ##### Bug Fixes - **deps:** update terraform-module ([#​537](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/537)) ([d84e2c0](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/d84e2c04a050dbda6fbdcaec2a15cfd227395aad)) ### [`v4.6.0`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.6.0) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.5.5...v4.6.0) ##### Features - Add OCP boot volume KMS encryption support (NOTE: Enabled by default for new clusters, but will not be enabled when upgrading from previous version as encryption can only occur at initial provision time) ([#​534](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/534)) ([26f0d20](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/26f0d20c6ec81d1ce53f92c9314094d91a2d7ced)) ### [`v4.5.5`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.5) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.5.4...v4.5.5) ##### Bug Fixes - update required ibm provider version to >= 1.56.1 ([#​545](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/545)) ([39f1a6f](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/39f1a6f8b0851dc5f47bd3cf3e4a0a20f3c3b215)) ### [`v4.5.4`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.4) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.5.3...v4.5.4) ##### Bug Fixes - scope the source of the `secrets_manager_to_cos` auth policy to the resource group ([#​516](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/516)) ([5e481cc](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/5e481ccb2eeeb5562671405a47430dfc630d55a4)) ### [`v4.5.3`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.3) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.5.2...v4.5.3) ##### Bug Fixes - **deps:** update DAs IBM provider version to 1.56.1 ([#​543](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/543)) ### [`v4.5.2`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.2) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.5.1...v4.5.2) ##### :warning: This release will currently not deploy in IBM Schematics due to a known [provider bug](https://togithub.com/IBM-Cloud/terraform-provider-ibm/issues/4744). Please use [v4.5.3](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.3) which has the fix for this if running in IBM Schematics. ##### Bug Fixes - update to landing-zone-vsi v2.5.0 ([#​535](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/535)) ([c91b619](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/c91b619c727bf9f495b9fda2b9e394495a8f7091)) ##### :warning: Warning If you are upgrading from a previous release, and you are using the override JSON to provision additional VSI data volumes using the `block_storage_volumes` value, the terraform plan will tell you that it wants to destroy the volumes that are in the Default resource group and recreate them in the same resource group that the VSIs are provisioned in. If indeed you wish to continue to keep your data volumes in the Default resource group (to prevent them from being destroyed and recreated on upgrade), you can achieve this by adding the Default resource group ID into the `block_storage_volumes` array in the `vsi` part of the override JSON. For example: ```json { ..... "vsi": [ { "boot_volume_encryption_key_name": "PREFIX-vsi-volume-key", "image_name": "ibm-redhat-8-6-minimal-amd64-5", "machine_type": "cx2-8x16", "name": "sbx-workload", "resource_group": "PREFIX-workload-rg", "block_storage_volumes": [ { "name": "datavol", "profile": "general-purpose", "capacity": 100, "encryption_key": "PREFIX-vsi-volume-key", "resource_group_id" : "65xxxxxxxxxxxxxxxa3fd" } ] .... } ] .... } ``` ### [`v4.5.1`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.1) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.5.0...v4.5.1) ##### :warning: This release will currently not deploy in IBM Schematics due to a known [provider bug](https://togithub.com/IBM-Cloud/terraform-provider-ibm/issues/4744). Please use [v4.5.3](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.3) which has the fix for this if running in IBM Schematics. ##### Bug Fixes - Migrate DAs to FSCloud profile version 1.4.0 ([#​524](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/524)) ([d89833d](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/d89833deaec44aa718d70cbefd25cac23c2ad18b)) ### [`v4.5.0`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.0) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.4.7...v4.5.0) ##### :warning: This release will currently not deploy in IBM Schematics due to a known [provider bug](https://togithub.com/IBM-Cloud/terraform-provider-ibm/issues/4744). Please use [v4.5.3](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.5.3) which has the fix for this if running in IBM Schematics. ##### Features - added functionality to attach access tags to resources in. ([#​447](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/447)) ([f4c3e3a](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/f4c3e3a758586e37689973c1f56a70670741c82b))
The resources which support access tags are:
- Cluster
- COS
- VPE
- VPN
- KMS
- Secrets Manager
- Security Groups
- VSIs (Bastion, F5, standard VSI)

In order to utilize the access tags for a resource you will need to add a field to the override.json. For example, below is a snippet on how to add access tags to KMS: { "key_management": { "access_tags": ["tag-group:tag-name"] } } NOTE: creating access tags via Terraform is currently not supported. This module only enables tagging resources with already existing access tags. For more information on creating these access tags, see https://cloud.ibm.com/docs/account?topic=account-access-tags-tutorial. ### [`v4.4.7`](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/releases/tag/v4.4.7) [Compare Source](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/compare/v4.4.6...v4.4.7) ##### Bug Fixes - lock OCP DA version into OCP 4.12 and add validation ([#​511](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/issues/511)) ([ae8f462](https://togithub.com/terraform-ibm-modules/terraform-ibm-landing-zone/commit/ae8f462a93e24493e4d3b94d2a8d4c5a46e2547b))

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.



This PR has been generated by Renovate Bot.

surajsbharadwaj commented 1 year ago

/run pipeline

surajsbharadwaj commented 1 year ago

/run pipeline

terraform-ibm-modules-ops commented 1 year ago

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

Warning: custom changes will be lost.

surajsbharadwaj commented 1 year ago

/run pipeline

surajsbharadwaj commented 1 year ago

/run pipeline

surajsbharadwaj commented 1 year ago

/run pipeline

ocofaigh commented 1 year ago

@surajsbharadwaj Can you try 4.4.7 maybe and identify the version that it first breaks in?

surajsbharadwaj commented 1 year ago

/run pipeline

ocofaigh commented 1 year ago

Why keep running the pipeline on 4.9.2? We know it doesn't work. We need to identify the exact version where it broke

surajsbharadwaj commented 1 year ago

@ocofaigh I was thinking what if it was intermittant cloud issue. Once it happened in lon06 dc and once in tor01 DC. Thinking what if the Storage status returned by terraform api was delayed/ errored or something of that sort. Hecne gave it one last try. I have created a different branch now to test it different version

surajsbharadwaj commented 1 year ago

Here is a PR to test the SLZ version which breaks the test. I will increment till i break. https://github.com/terraform-ibm-modules/terraform-ibm-powervs-infrastructure/pull/622

surajsbharadwaj commented 1 year ago

Closing this PR as we will be upgrading to 4.10.0 And its a breaking change in SLZ module