Releases: hashicorp/terraform-provider-google
Releases · hashicorp/terraform-provider-google
v5.35.0
FEATURES:
- New Data Source:
google_artifact_registry_docker_image
(#18446) - New Resource:
google_service_networking_vpc_service_controls
(#18448)
IMPROVEMENTS:
- billingbudget: added
enable_project_level_recipients
field togoogle_billing_budget
resource (#18437) - compute: added
action_token_site_keys
andsession_token_site_keys
fields togoogle_compute_security_policy
andgoogle_compute_security_policy_rule
resources (#18414) - gkehub2: added
ENTERPRISE
option tosecurity_posture_config
field ongoogle_gke_hub_fleet
resource (#18440) - pubsub: added
bigquery_config.service_account_email
field togoogle_pubsub_subscription
resource (#18444) - redis: added
maintenance_version
field togoogle_redis_instance
resource (#18424) - storage: changed update behavior in
google_storage_bucket_object
to no longer delete to avoid object deletion on content update (#18479) - sql: added support for more MySQL values in
type
field ofgoogle_sql_user
resource (#18452) - sql: increased timeouts on
google_sql_database_instance
to 90m to account for longer-running actions such as creation through cloning (#18458) - workbench: added update support to
gce_setup.boot_disk
andgce_setup.data_disks
fields ingoogle_workbench_instance
resource (#18482)
BUG FIXES:
- compute: updated
google_compute_instance
to force reboot ifmin_node_cpus
is updated (#18420) - compute: fixed
description
field ingoogle_compute_firewall
to support empty/null values on update (#18478) - compute: fixed perma-diff on
google_compute_disk
for Ubuntu amd64 canonical LTS images (#18418) - storage: fixed lowercased
custom_placement_config
values ingoogle_storage_bucket
causing perma-destroy (#18456) - workbench: fixed issue where instance was not starting after an update in
google_workbench_instance
resource (#18464) - workbench: fixed perma-diff caused by empty
accelerator_configs
ingoogle_workbench_instance
resource (#18464)
v5.34.0
NOTES:
- compute: Updated field description of
connection_draining_timeout_sec
,balancing_mode
andoutlier_detection
ingoogle_compute_region_backend_service
andgoogle_compute_backend_service
to inform that default values will be changed in 6.0.0 (#18399)
FEATURES:
- New Resource:
google_netapp_backup
(#18357) - New Resource:
google_network_services_service_lb_policies
(#18326) - New Resource:
google_scc_management_folder_security_health_analytics_custom_module
(#18360) - New Resource:
google_scc_management_organization_project_security_health_analytics_custom_module
(#18369) - New Resource:
google_scc_management_organization_security_health_analytics_custom_module
(#18374)
IMPROVEMENTS:
- alloydb: changed the resource
google_alloydb_instance
to be created directly with public IP enabled instead of creating the resource with public IP disabled and then enabling it (#18344) - bigtable: added
automated_backup_configuration
field togoogle_bigtable_table
resource (#18335) - cloudbuildv2: added support for connecting to Bitbucket Data Center and Bitbucket Cloud with the
bitbucket_data_center_config
andbitbucket_cloud_config
fields ingoogle_cloudbuildv2_connection
(#18375) - compute: added update support to
ssl_policy
field ingoogle_compute_region_target_https_proxy
resource (#18361) - compute: removed enum validation on
guest_os_features.type
ingoogle_compute_disk
to allow for new features to be used without provider update (#18331) - compute: updated documentation of google_compute_target_https_proxy and google_compute_region_target_https_proxy (#18358)
- container: added support for
security_posture_config.mode
value "ENTERPRISE" inresource_container_cluster
(#18334) - discoveryengine: added
document_processing_config
field togoogle_discovery_engine_data_store
resource (#18350) - edgecontainer: added 'maintenance_exclusions' field to 'google_edgecontainer_cluster' resource (#18370)
- gkehub: added
prevent_drift
field to ConfigManagementfleet_default_member_config
(#18330) - netapp: added
administrators
field togoogle_netapp_active_directory
resource (#18333) - vertexai: promoted
optimized
field to GA forgoogle_vertex_ai_feature_online_store
resource (#18348) - workbench: updated the metadata keys managed by the backend. (#18367)
BUG FIXES:
- compute: fixed an issue where
google_compute_instance_group_manager
with a pending operation was incorrectly removed due to the operation no longer being present in the backend (#18380) - compute: fixed issue where users could not create
google_compute_security_policy
resources withlayer_7_ddos_defense_config
explicitly disabled (#18345) - workbench: fixed a bug in the
google_workbench_instance
resource where specifying a network in some scenarios would cause instance creation to fail (#18404
v4.85.0
NOTES:
- The
4.85.0
release backports configuration for the retention period for Cloud Storage soft delete (https://cloud.google.com/resources/storage/soft-delete-announce) so that customers who have not yet upgraded to5.22.0
+ are able to configure the retention period of objects in their buckets. By upgrading to this version and configuring or otherwise interacting with thegoogle_storage_bucket.soft_delete_policy
values, you will need to upgrade directly to5.22.0
+ from4.85.0
when upgrading to5.X
in the future.
IMPROVEMENTS:
- storage: added
soft_delete_policy
togoogle_storage_bucket
resource (#17624)
v5.33.0
DEPRECATIONS:
- healthcare: deprecated
notification_config
ingoogle_healthcare_fhir_store
resource. Usenotification_configs
instead. (#18306)
FEATURES:
- New Data Source:
google_compute_security_policy
(#18316) - New Resource:
google_compute_project_cloud_armor_tier
(#18319) - New Resource:
google_network_services_service_lb_policies
(#18326) - New Resource:
google_scc_management_organization_event_threat_detection_custom_module
(#18317) - New Resource:
google_spanner_instance_config
(#18322)
IMPROVEMENTS:
- appengine: added
flexible_runtime_settings
field togoogle_app_engine_flexible_app_version
resource (#18325) - bigtable: added
force_destroy
field togoogle_bigtable_instance
resource. This will force delete any backups present in the instance and allow the instance to be deleted. (#18291) - clouddeploy: added
execution_configs.verbose
field togoogle_clouddeploy_target
resource (#18292) - compute: added
storage_pool
field togoogle_compute_disk
resource (#18273) - dlp: added
secrets_discovery_target
,cloud_sql_target.filter.database_resource_reference
, andbig_query_target.filter.table_reference
fields togoogle_data_loss_prevention_discovery_config
resource (#18324) - gkebackup: added
backup_schedule.backup_config.permissive_mode
field togoogle_gke_backup_backup_plan
resource (#18266) - gkebackup: added
restore_config.restore_order
field togoogle_gke_backup_restore_plan
resource (#18266) - gkebackup: added
restore_config.volume_data_restore_policy_bindings
field togoogle_gke_backup_restore_plan
resource (#18266) - gkebackup: added new enum values
MERGE_SKIP_ON_CONFLICT
,MERGE_REPLACE_VOLUME_ON_CONFLICT
andMERGE_REPLACE_ON_CONFLICT
to fieldrestore_config.namespaced_resource_restore_mode
ingoogle_gke_backup_restore_plan
resource (#18266) - healthcare: added
notification_config.send_for_bulk_import
field togoogle_healthcare_dicom_store
resource (#18320) - healthcare: added
notification_configs
field togoogle_healthcare_fhir_store
resource (#18306) - integrationconnectors: added
endpoint_global_access
field togoogle_integration_connectors_endpoint_attachment
resource (#18293) - netapp: added
backup_config
field togoogle_netapp_volume
resource (#18286) - redis: added
zone_distribution_config
field togoogle_redis_cluster
resource (#18307) - resourcemanager: added support for
range_type = "default-domains-netblocks"
ingoogle_netblock_ip_ranges
data source (#18290) - secretmanager: added support for IAM conditions in
google_secret_manager_secret_iam_*
resources (#18294) - workstations: added
boot_disk_size_gb
,enable_nested_virtualization
, andpool_size
tohost.gce_instance.boost_configs
ingoogle_workstations_workstation_config
resource (#18310)
BUG FIXES:
- container: fixed
google_container_node_pool
crash ifnode_config.secondary_boot_disks.mode
is not set (#18323) - dlp: removed
required
oninspect_config.limits.max_findings_per_info_type.info_type
field to allow the use of default limit by not setting this field ingoogle_data_loss_prevention_inspect_template
resource (#18285) - provider: fixed application default credential and access token authorization when
universe_domain
is set (#18272)
v5.32.0
NOTES:
- privateca: converted
google_privateca_certificate_template
to now use the MMv1 engine instead of DCL (#18224)
FEATURES:
- New Resource:
google_dataplex_entry_type
(#18229) - New Resource:
google_logging_log_view_iam_binding
(#18243) - New Resource:
google_logging_log_view_iam_member
(#18243) - New Resource:
google_logging_log_view_iam_policy
(#18243)
IMPROVEMENTS:
- alloydb: added
psc_config
field togoogle_alloydb_cluster
resource (#18263) - alloydb: added
psc_instance_config
field togoogle_alloydb_instance
resource (#18263) - cloudrunv2: added
default_uri_disabled
field to resourcegoogle_cloud_run_v2_service
resource (#18246) - compute: added
NONE
to acceptable options forupdate_policy.minimal_action
field ingoogle_compute_instance_group_manager
resource (#18236) - looker: increased validation length of
name
togoogle_looker_instance
resource (#18244) - sql: updated support for a new value
week5
in fieldsetting.maintenance_window.update_track
ingoogle_sql_database_instance
resource (#18223)
BUG FIXES:
- cloudrunv2: added validation for
timeout
field togoogle_cloud_run_v2_job
andgoogle_cloud_run_v2_service
resources (#18260) - compute: fixed permadiff in ordering of
advertised_ip_ranges.range
field ongoogle_compute_router
resource (#18228) - iam: added a 10 second sleep when creating a 'google_service_account' resource to reduce eventual consistency errors(#18261)
- storage: fixed
google_storage_bucket.lifecycle_rule.condition
block fieldsdays_since_noncurrent_time
anddays_since_custom_time
andnum_newer_versions
were not working for 0 value (#18231)
v5.31.1
v5.31.0
FEATURES:
- New Data Source:
google_compute_subnetworks
(#18159) - New Resource:
google_dataplex_aspect_type
(#18201) - New Resource:
google_dataplex_entry_group
(#18188) - New Resource:
google_kms_autokey_config
(#18179) - New Resource:
google_kms_key_handle
(#18179) - New Resource:
google_network_services_lb_route_extension
(#18195)
IMPROVEMENTS:
- appengine: added field
instance_ip_mode
to resourcegoogle_app_engine_flexible_app_version
resource (beta) (#18168) - bigquery: added
external_data_configuration.bigtable_options
togoogle_bigquery_table
(#18181) - composer: added support for importing
google_composer_user_workloads_secret
via the "{{environment}}/{{name}}" format. (#7390) - composer: improved timeouts for
google_composer_user_workloads_secret
. (#7390) - compute: added
TLS_JA3_FINGERPRINT
andUSER_IP
options in fieldrate_limit_options.enforce_on_key
togoogle_compute_security_policy
resource (#18167) - compute: added 'rateLimitOptions' field to 'google_compute_security_policy_rule' resource (#18167)
- compute: changed
google_compute_region_ssl_policy
'sregion
field to optional and allow to be inferred from environment (#18178) - compute: added
subnet_length
field togoogle_compute_interconnect_attachment
resource (#18187) - container: added
containerd_config
field and subfields togoogle_container_cluster
andgoogle_container_node_pool
resources, to allow those resources to access private image registries. (#18160) - container: allowed both
enable_autopilot
andworkload_identity_config
to be set ingoogle_container_cluster
resource. (#18166) - datastream: added
create_without_validation
field togoogle_datastream_connection_profile
,google_datastream_private_connection
andgoogle_datastream_stream
resources (#18176) - network-security: added
trust_config
,min_tls_version
,tls_feature_profile
andcustom_tls_features
fields togoogle_network_security_tls_inspection_policy
resource (#18139) - networkservices: made field
load_balancing_scheme
immutable in resourcegoogle_network_services_lb_traffic_extension
, as in-place updating is always failing (#18195) - networkservices: made required fields
extension_chains.extensions.authority
andextension_chains.extensions.timeout
optional in resourcegoogle_network_services_lb_traffic_extension
(#18195) - networkservices: removed unsupported load balancing scheme
LOAD_BALANCING_SCHEME_UNSPECIFIED
from the fieldload_balancing_scheme
in resourcegoogle_network_services_lb_traffic_extension
(#18195) - pubsub: added
cloud_storage_config.filename_datetime_format
field togoogle_pubsub_subscription
resource (#18180) - tpu: added
type
ofaccelerator_config
togoogle_tpu_v2_vm
resource (#18148)
BUG FIXES:
- monitoring: fixed a permadiff with
monitored_resource.labels
property in thegoogle_monitoring_uptime_check_config
resource (#18174) - storage: fixed a bug where field
autoclass
block is generating permadiff whenever the block is removed from the config ingoogle_storage_bucket
resource (#18197) - storagetransfer: fixed a permadiff with
transfer_spec.0.aws_s3_data_source.0.aws_access_key
resource_storage_transfer_job
(#18190)
v5.30.0
FEATURES:
- New Data Source:
google_cloud_asset_resources_search_all
(#18129) - New Resource:
google_compute_interconnect
(#18064) - New Resource:
google_network_services_lb_traffic_extension
(#18138)
IMPROVEMENTS:
- compute: added
kms_key_name
field togoogle_bigquery_connection
resource (#18057) - compute: added
auto_network_tier
field togoogle_compute_router_nat
resource (#18055) - compute: promoted
enable_ipv4
,ipv4_nexthop_address
andpeer_ipv4_nexthop_address
fields ingoogle_compute_router_peer
resource to GA (#18056) - compute: promoted
identifier_range
field ingoogle_compute_router
resource to GA (#18056) - compute: promoted
ip_version
field ingoogle_compute_router_interface
resource to GA (#18056) - container: added
KUBELET
andCADVISOR
options tomonitoring_config.enable_components
ingoogle_container_cluster
resource (#18090) - dataproc: added
local_ssd_interface
togoogle_dataproc_cluster
resource (#18137) - dataprocmetastore: promoted
google_dataproc_metastore_federation
to GA (#18084) - dlp: added
cloud_sql_target
field togoogle_data_loss_prevention_discovery_config
resource (#18063) - netapp: added
FLEX
value to fieldservice_level
ingoogle_netapp_storage_pool
resource (#18088) - networksecurity: added
trust_config
,min_tls_version
,tls_feature_profile
andcustom_tls_features
fields togoogle_network_security_tls_inspection_policy
resource (#18139) - networkservices: supported in-place update for
gateway_security_policy
andcertificate_urls
fields ingoogle_network_services_gateway
resource (#18082)
BUG FIXES:
- compute: fixed a perma-diff on
machine_type
field ingoogle_compute_instance
resource (#18071) - compute: fixed a perma-diff on
type
field ingoogle_compute_disk
resource (#18071) - storage: fixed update issue for
lifecycle_rule.condition.custom_time_before
andlifecycle_rule.condition.noncurrent_time_before
ingoogle_storage_bucket
resource (#18127)
v5.29.1
v5.29.0
BREAKING CHANGES:
- compute: added required
reserved_internal_range
subfield toreserved_internal_range
ingoogle_compute_subnetwork
. This field can be set tonull
as an equivalent to leaving it unspecified.
NOTES:
- compute: added documentation for
md5_authentication_key
field ingoogle_compute_router_peer
resource. The field was introduced in v5.12.0, but documentation was unintentionally omitted at that time. (#17991)
FEATURES:
- New Resource:
google_bigtable_authorized_view
(#18006) - New Resource:
google_integration_connectors_managed_zone
(#18029) - New Resource:
google_network_connectivity_regional_endpoint
(#18014) - New Resource:
google_network_security_security_profile
(#18025) - New Resource:
google_network_security_security_profile_group
(#18025) - New Resource:
google_network_security_firewall_endpoint
(#18025) - New Resource:
google_network_security_firewall_endpoint_association
(#18025)
IMPROVEMENTS:
- clouddeploy: added
custom_target
field togoogle_clouddeploy_target
resource (#18000) - clouddeploy: added
google_cloud_build_repo
tocustom_target_type
resource (#18040) - compute: added
preconfigured_waf_config
field togoogle_compute_region_security_policy_rule
resource; (#18039) - compute: added
rate_limit_options
field togoogle_compute_region_security_policy_rule
resource; (#18039) - compute: added
security_profile_group
,tls_inspect
togoogle_compute_firewall_policy_rule
(#18000) - compute: added
security_profile_group
,tls_inspect
togoogle_compute_network_firewall_policy_rule
(#18000) - compute: added fields
reserved_internal_range
andsecondary_ip_ranges.reserved_internal_range
togoogle_compute_subnetwork
resource (#18026) - container: added
dns_config.additive_vpc_scope_dns_domain
field togoogle_container_cluster
resource (#18031) - container: added
enable_nested_virtualization
field togoogle_container_node_pool
andgoogle_container_cluster
resource. (#18015) - iam: added
extra_attributes_oauth2_client
field togoogle_iam_workforce_pool_provider
resource (#18027) - privateca: added
maximum_lifetime
field togoogle_privateca_certificate_template
resource (#18000)