github.com/blacked/terraform@v0.6.2-0.20150806163846-669c4ad71586/CHANGELOG.md (about) 1 ## 0.6.2 (Unreleased) 2 3 FEATURES: 4 5 * **New resource: `google_compute_instance_group_manager`** [GH-2868] 6 * **New resource: `google_compute_autoscaler`** [GH-2868] 7 * **New resource: `aws_s3_bucket_object`** [GH-2898] 8 9 IMPROVEMENTS: 10 11 * core: Add resource IDs to errors coming from `apply`/`refresh` [GH-2815] 12 * provider/aws: Validate credentials before walking the graph [GH-2730] 13 * provider/aws: Added website_domain for S3 buckets [GH-2210] 14 * provider/aws: ELB names are now optional, and generated by Terraform if omitted [GH-2571] 15 * provider/aws: Downcase RDS engine names to prevent continuous diffs [GH-2745] 16 * provider/aws: Added `source_dest_check` attribute to the aws_network_interface [GH-2741] 17 * provider/aws: Clean up externally removed Launch Configurations [GH-2806] 18 * provider/aws: Allow configuration of the DynamoDB Endpoint [GH-2825] 19 * provider/aws: Compute private ip addresses of ENIs if they are not specified [GH-2743] 20 * provider/aws: Add `arn` attribute for DynamoDB tables [GH-2924] 21 * provider/azure: Allow `settings_file` to accept XML string [GH-2922] 22 * provider/azure: Provide a simpler error when using a Platform Image without a 23 Storage Service [GH-2861] 24 * provider/google: `account_file` is now expected to be JSON. Paths are still supported for 25 backwards compatibility. [GH-2839] 26 27 BUG FIXES: 28 29 * core: Prevent error duplication in `apply` [GH-2815] 30 * core: Fix crash when a provider validation adds a warning [GH-2878] 31 * provider/aws: Fix issue with toggling monitoring in AWS Instances [GH-2794] 32 * provider/aws: Fix issue with Spot Instance Requests and cancellation [GH-2805] 33 * provider/aws: Fix issue with checking for ElastiCache cluster cache node status [GH-2842] 34 * provider/aws: Fix issue when unable to find a Root Block Device name of an Instance Backed 35 AMI [GH-2646] 36 * provider/dnsimple: Domain and type should force new records [GH-2777] 37 * provider/aws: Fix issue with IAM Server Certificates and Chains [GH-2871] 38 * provider/aws: Fix issue with IAM Server Certificates when using `path` [GH-2871] 39 * provider/aws: Fix issue in Security Group Rules when the Security Group is not found [GH-2897] 40 * provider/aws: allow external ENI attachments [GH-2943] 41 * provider/aws: Fix issue with S3 Buckets, and throwing an error when not found [GH-2925] 42 43 ## 0.6.1 (July 20, 2015) 44 45 FEATURES: 46 47 * **New resource: `google_container_cluster`** [GH-2357] 48 * **New resource: `aws_vpc_endpoint`** [GH-2695] 49 50 IMPROVEMENTS: 51 52 * connection/ssh: Print SSH bastion host details to output [GH-2684] 53 * provider/aws: Create RDS databases from snapshots [GH-2062] 54 * provider/aws: Add support for restoring from Redis backup stored in S3 [GH-2634] 55 * provider/aws: Add `maintenance_window` to ElastiCache cluster [GH-2642] 56 * provider/aws: Availability Zones are optional when specifying VPC Zone Identifiers in 57 Auto Scaling Groups updates [GH-2724] 58 * provider/google: Add metadata_startup_script to google_compute_instance [GH-2375] 59 60 BUG FIXES: 61 62 * core: Don't prompt for variables with defaults [GH-2613] 63 * core: Return correct number of planned updates [GH-2620] 64 * core: Fix "provider not found" error that can occur while running 65 a destroy plan with grandchildren modules [GH-2755] 66 * core: Fix UUID showing up in diff for computed splat (`foo.*.bar`) 67 variables. [GH-2788] 68 * core: Orphan modules that contain no resources (only other modules) 69 are properly destroyed up to arbitrary depth [GH-2786] 70 * core: Fix "attribute not available" during destroy plans in 71 cases where the parameter is passed between modules [GH-2775] 72 * core: Record schema version when destroy fails [GH-2923] 73 * connection/ssh: fix issue on machines with an SSH Agent available 74 preventing `key_file` from being read without explicitly 75 setting `agent = false` [GH-2615] 76 * provider/aws: Allow uppercase characters in `aws_elb.name` [GH-2580] 77 * provider/aws: Allow underscores in `aws_db_subnet_group.name` (undocumented by AWS) [GH-2604] 78 * provider/aws: Allow dots in `aws_db_subnet_group.name` (undocumented by AWS) [GH-2665] 79 * provider/aws: Fix issue with pending Spot Instance requests [GH-2640] 80 * provider/aws: Fix issue in AWS Classic environment with referencing external 81 Security Groups [GH-2644] 82 * provider/aws: Bump internet gateway detach timeout [GH-2669] 83 * provider/aws: Fix issue with detecting differences in DB Parameters [GH-2728] 84 * provider/aws: `ecs_cluster` rename (recreation) and deletion is handled correctly [GH-2698] 85 * provider/aws: `aws_route_table` ignores routes generated for VPC endpoints [GH-2695] 86 * provider/aws: Fix issue with Launch Configurations and enable_monitoring [GH-2735] 87 * provider/openstack: allow empty api_key and endpoint_type [GH-2626] 88 * provisioner/chef: Fix permission denied error with ohai hints [GH-2781] 89 90 ## 0.6.0 (June 30, 2015) 91 92 BACKWARDS INCOMPATIBILITIES: 93 94 * command/push: If a variable is already set within Atlas, it won't be 95 updated unless the `-overwrite` flag is present [GH-2373] 96 * connection/ssh: The `agent` field now defaults to `true` if 97 the `SSH_AGENT_SOCK` environment variable is present. In other words, 98 `ssh-agent` support is now opt-out instead of opt-in functionality. [GH-2408] 99 * provider/aws: If you were setting access and secret key to blank ("") 100 to force Terraform to load credentials from another source such as the 101 EC2 role, this will now error. Remove the blank lines and Terraform 102 will load from other sources. 103 * `concat()` has been repurposed to combine lists instead of strings (old behavior 104 of joining strings is maintained in this version but is deprecated, strings 105 should be combined using interpolation syntax, like "${var.foo}{var.bar}") 106 [GH-1790] 107 108 FEATURES: 109 110 * **New provider: `azure`** [GH-2052, GH-2053, GH-2372, GH-2380, GH-2394, GH-2515, GH-2530, GH-2562] 111 * **New resource: `aws_autoscaling_notification`** [GH-2197] 112 * **New resource: `aws_autoscaling_policy`** [GH-2201] 113 * **New resource: `aws_cloudwatch_metric_alarm`** [GH-2201] 114 * **New resource: `aws_dynamodb_table`** [GH-2121] 115 * **New resource: `aws_ecs_cluster`** [GH-1803] 116 * **New resource: `aws_ecs_service`** [GH-1803] 117 * **New resource: `aws_ecs_task_definition`** [GH-1803, GH-2402] 118 * **New resource: `aws_elasticache_parameter_group`** [GH-2276] 119 * **New resource: `aws_flow_log`** [GH-2384] 120 * **New resource: `aws_iam_group_association`** [GH-2273] 121 * **New resource: `aws_iam_policy_attachment`** [GH-2395] 122 * **New resource: `aws_lambda_function`** [GH-2170] 123 * **New resource: `aws_route53_delegation_set`** [GH-1999] 124 * **New resource: `aws_route53_health_check`** [GH-2226] 125 * **New resource: `aws_spot_instance_request`** [GH-2263] 126 * **New resource: `cloudstack_ssh_keypair`** [GH-2004] 127 * **New remote state backend: `swift`**: You can now store remote state in 128 a OpenStack Swift. [GH-2254] 129 * command/output: support display of module outputs [GH-2102] 130 * core: `keys()` and `values()` funcs for map variables [GH-2198] 131 * connection/ssh: SSH bastion host support and ssh-agent forwarding [GH-2425] 132 133 IMPROVEMENTS: 134 135 * core: HTTP remote state now accepts `skip_cert_verification` 136 option to ignore TLS cert verification. [GH-2214] 137 * core: S3 remote state now accepts the 'encrypt' option for SSE [GH-2405] 138 * core: `plan` now reports sum of resources to be changed/created/destroyed [GH-2458] 139 * core: Change string list representation so we can distinguish empty, single 140 element lists [GH-2504] 141 * core: Properly close provider and provisioner plugin connections [GH-2406, GH-2527] 142 * provider/aws: AutoScaling groups now support updating Load Balancers without 143 recreation [GH-2472] 144 * provider/aws: Allow more in-place updates for ElastiCache cluster without recreating 145 [GH-2469] 146 * provider/aws: ElastiCache Subnet Groups can be updated 147 without destroying first [GH-2191] 148 * provider/aws: Normalize `certificate_chain` in `aws_iam_server_certificate` to 149 prevent unnecessary replacement. [GH-2411] 150 * provider/aws: `aws_instance` supports `monitoring' [GH-2489] 151 * provider/aws: `aws_launch_configuration` now supports `enable_monitoring` [GH-2410] 152 * provider/aws: Show outputs after `terraform refresh` [GH-2347] 153 * provider/aws: Add backoff/throttling during DynamoDB creation [GH-2462] 154 * provider/aws: Add validation for aws_vpc.cidr_block [GH-2514] 155 * provider/aws: Add validation for aws_db_subnet_group.name [GH-2513] 156 * provider/aws: Add validation for aws_db_instance.identifier [GH-2516] 157 * provider/aws: Add validation for aws_elb.name [GH-2517] 158 * provider/aws: Add validation for aws_security_group (name+description) [GH-2518] 159 * provider/aws: Add validation for aws_launch_configuration [GH-2519] 160 * provider/aws: Add validation for aws_autoscaling_group.name [GH-2520] 161 * provider/aws: Add validation for aws_iam_role.name [GH-2521] 162 * provider/aws: Add validation for aws_iam_role_policy.name [GH-2552] 163 * provider/aws: Add validation for aws_iam_instance_profile.name [GH-2553] 164 * provider/aws: aws_auto_scaling_group.default_cooldown no longer requires 165 resource replacement [GH-2510] 166 * provider/aws: add AH and ESP protocol integers [GH-2321] 167 * provider/docker: `docker_container` has the `privileged` 168 option. [GH-2227] 169 * provider/openstack: allow `OS_AUTH_TOKEN` environment variable 170 to set the openstack `api_key` field [GH-2234] 171 * provider/openstack: Can now configure endpoint type (public, admin, 172 internal) [GH-2262] 173 * provider/cloudstack: `cloudstack_instance` now supports projects [GH-2115] 174 * provisioner/chef: Added a `os_type` to specifically specify the target OS [GH-2483] 175 * provisioner/chef: Added a `ohai_hints` option to upload hint files [GH-2487] 176 177 BUG FIXES: 178 179 * core: lifecycle `prevent_destroy` can be any value that can be 180 coerced into a bool [GH-2268] 181 * core: matching provider types in sibling modules won't override 182 each other's config. [GH-2464] 183 * core: computed provider configurations now properly validate [GH-2457] 184 * core: orphan (commented out) resource dependencies are destroyed in 185 the correct order [GH-2453] 186 * core: validate object types in plugins are actually objects [GH-2450] 187 * core: fix `-no-color` flag in subcommands [GH-2414] 188 * core: Fix error of 'attribute not found for variable' when a computed 189 resource attribute is used as a parameter to a module [GH-2477] 190 * core: moduled orphans will properly inherit provider configs [GH-2476] 191 * core: modules with provider aliases work properly if the parent 192 doesn't implement those aliases [GH-2475] 193 * core: unknown resource attributes passed in as parameters to modules 194 now error [GH-2478] 195 * core: better error messages for missing variables [GH-2479] 196 * core: removed set items now properly appear in diffs and applies [GH-2507] 197 * core: '*' will not be added as part of the variable name when you 198 attempt multiplication without a space [GH-2505] 199 * core: fix target dependency calculation across module boundaries [GH-2555] 200 * command/*: fixed bug where variable input was not asked for unset 201 vars if terraform.tfvars existed [GH-2502] 202 * command/apply: prevent output duplication when reporting errors [GH-2267] 203 * command/apply: destroyed orphan resources are properly counted [GH-2506] 204 * provider/aws: loading credentials from the environment (vars, EC2 role, 205 etc.) is more robust and will not ask for credentials from stdin [GH-1841] 206 * provider/aws: fix panic when route has no `cidr_block` [GH-2215] 207 * provider/aws: fix issue preventing destruction of IAM Roles [GH-2177] 208 * provider/aws: fix issue where Security Group Rules could collide and fail 209 to save to the state file correctly [GH-2376] 210 * provider/aws: fix issue preventing destruction self referencing Securtity 211 Group Rules [GH-2305] 212 * provider/aws: fix issue causing perpetual diff on ELB listeners 213 when non-lowercase protocol strings were used [GH-2246] 214 * provider/aws: corrected frankfurt S3 website region [GH-2259] 215 * provider/aws: `aws_elasticache_cluster` port is required [GH-2160] 216 * provider/aws: Handle AMIs where RootBlockDevice does not appear in the 217 BlockDeviceMapping, preventing root_block_device from working [GH-2271] 218 * provider/aws: fix `terraform show` with remote state [GH-2371] 219 * provider/aws: detect `instance_type` drift on `aws_instance` [GH-2374] 220 * provider/aws: fix crash when `security_group_rule` referenced non-existent 221 security group [GH-2434] 222 * provider/aws: `aws_launch_configuration` retries if IAM instance 223 profile is not ready yet. [GH-2452] 224 * provider/aws: `fqdn` is populated during creation for `aws_route53_record` [GH-2528] 225 * provider/aws: retry VPC delete on DependencyViolation due to eventual 226 consistency [GH-2532] 227 * provider/aws: VPC peering connections in "failed" state are deleted [GH-2544] 228 * provider/aws: EIP deletion works if it was manually disassociated [GH-2543] 229 * provider/aws: `elasticache_subnet_group.subnet_ids` is now a required argument [GH-2534] 230 * provider/aws: handle nil response from VPN connection describes [GH-2533] 231 * provider/cloudflare: manual record deletion doesn't cause error [GH-2545] 232 * provider/digitalocean: handle case where droplet is deleted outside of 233 terraform [GH-2497] 234 * provider/dme: No longer an error if record deleted manually [GH-2546] 235 * provider/docker: Fix issues when using containers with links [GH-2327] 236 * provider/openstack: fix panic case if API returns nil network [GH-2448] 237 * provider/template: fix issue causing "unknown variable" rendering errors 238 when an existing set of template variables is changed [GH-2386] 239 * provisioner/chef: improve the decoding logic to prevent parameter not found errors [GH-2206] 240 241 ## 0.5.3 (June 1, 2015) 242 243 IMPROVEMENTS: 244 245 * **New resource: `aws_kinesis_stream`** [GH-2110] 246 * **New resource: `aws_iam_server_certificate`** [GH-2086] 247 * **New resource: `aws_sqs_queue`** [GH-1939] 248 * **New resource: `aws_sns_topic`** [GH-1974] 249 * **New resource: `aws_sns_topic_subscription`** [GH-1974] 250 * **New resource: `aws_volume_attachment`** [GH-2050] 251 * **New resource: `google_storage_bucket`** [GH-2060] 252 * provider/aws: support ec2 termination protection [GH-1988] 253 * provider/aws: support for RDS Read Replicas [GH-1946] 254 * provider/aws: `aws_s3_bucket` add support for `policy` [GH-1992] 255 * provider/aws: `aws_ebs_volume` add support for `tags` [GH-2135] 256 * provider/aws: `aws_elasticache_cluster` Confirm node status before reporting 257 available 258 * provider/aws: `aws_network_acl` Add support for ICMP Protocol [GH-2148] 259 * provider/aws: New `force_destroy` parameter for S3 buckets, to destroy 260 Buckets that contain objects [GH-2007] 261 * provider/aws: switching `health_check_type` on ASGs no longer requires 262 resource refresh [GH-2147] 263 * provider/aws: ignore empty `vpc_security_group_ids` on `aws_instance` [GH-2311] 264 265 BUG FIXES: 266 267 * provider/aws: Correctly handle AWS keypairs which no longer exist [GH-2032] 268 * provider/aws: Fix issue with restoring an Instance from snapshot ID [GH-2120] 269 * provider/template: store relative path in the state [GH-2038] 270 * provisioner/chef: fix interpolation in the Chef provisioner [GH-2168] 271 * provisioner/remote-exec: Don't prepend shebang on scripts that already 272 have one [GH-2041] 273 274 ## 0.5.2 (May 15, 2015) 275 276 FEATURES: 277 278 * **Chef provisioning**: You can now provision new hosts (both Linux and 279 Windows) with [Chef](https://chef.io) using a native provisioner [GH-1868] 280 281 IMPROVEMENTS: 282 283 * **New config function: `formatlist`** - Format lists in a similar way to `format`. 284 Useful for creating URLs from a list of IPs. [GH-1829] 285 * **New resource: `aws_route53_zone_association`** 286 * provider/aws: `aws_autoscaling_group` can wait for capacity in ELB 287 via `min_elb_capacity` [GH-1970] 288 * provider/aws: `aws_db_instances` supports `license_model` [GH-1966] 289 * provider/aws: `aws_elasticache_cluster` add support for Tags [GH-1965] 290 * provider/aws: `aws_network_acl` Network ACLs can be applied to multiple subnets [GH-1931] 291 * provider/aws: `aws_s3_bucket` exports `hosted_zone_id` and `region` [GH-1865] 292 * provider/aws: `aws_s3_bucket` add support for website `redirect_all_requests_to` [GH-1909] 293 * provider/aws: `aws_route53_record` exports `fqdn` [GH-1847] 294 * provider/aws: `aws_route53_zone` can create private hosted zones [GH-1526] 295 * provider/google: `google_compute_instance` `scratch` attribute added [GH-1920] 296 297 BUG FIXES: 298 299 * core: fix "resource not found" for interpolation issues with modules 300 * core: fix unflattenable error for orphans [GH-1922] 301 * core: fix deadlock with create-before-destroy + modules [GH-1949] 302 * core: fix "no roots found" error with create-before-destroy [GH-1953] 303 * core: variables set with environment variables won't validate as 304 not set without a default [GH-1930] 305 * core: resources with a blank ID in the state are now assumed to not exist [GH-1905] 306 * command/push: local vars override remote ones [GH-1881] 307 * provider/aws: Mark `aws_security_group` description as `ForceNew` [GH-1871] 308 * provider/aws: `aws_db_instance` ARN value is correct [GH-1910] 309 * provider/aws: `aws_db_instance` only submit modify request if there 310 is a change. [GH-1906] 311 * provider/aws: `aws_elasticache_cluster` export missing information on cluster nodes [GH-1965] 312 * provider/aws: bad AMI on a launch configuration won't block refresh [GH-1901] 313 * provider/aws: `aws_security_group` + `aws_subnet` - destroy timeout increased 314 to prevent DependencyViolation errors. [GH-1886] 315 * provider/google: `google_compute_instance` Local SSDs no-longer cause crash 316 [GH-1088] 317 * provider/google: `google_http_health_check` Defaults now driven from Terraform, 318 avoids errors on update [GH-1894] 319 * provider/google: `google_compute_template` Update Instance Template network 320 definition to match changes to Instance [GH-980] 321 * provider/template: Fix infinite diff [GH-1898] 322 323 ## 0.5.1 (never released) 324 325 This version was never released since we accidentally skipped it! 326 327 ## 0.5.0 (May 7, 2015) 328 329 BACKWARDS INCOMPATIBILITIES: 330 331 * provider/aws: Terraform now remove the default egress rule created by AWS in 332 a new security group. 333 334 FEATURES: 335 336 * **Multi-provider (a.k.a multi-region)**: Multiple instances of a single 337 provider can be configured so resources can apply to different settings. 338 As an example, this allows Terraform to manage multiple regions with AWS. 339 * **Environmental variables to set variables**: Environment variables can be 340 used to set variables. The environment variables must be in the format 341 `TF_VAR_name` and this will be checked last for a value. 342 * **New remote state backend: `s3`**: You can now store remote state in 343 an S3 bucket. [GH-1723] 344 * **Automatic AWS retries**: This release includes a lot of improvement 345 around automatic retries of transient errors in AWS. The number of 346 retry attempts is also configurable. 347 * **Templates**: A new `template_file` resource allows long strings needing 348 variable interpolation to be moved into files. [GH-1778] 349 * **Provision with WinRM**: Provisioners can now run remote commands on 350 Windows hosts. [GH-1483] 351 352 IMPROVEMENTS: 353 354 * **New config function: `length`** - Get the length of a string or a list. 355 Useful in conjunction with `split`. [GH-1495] 356 * **New resource: `aws_app_cookie_stickiness_policy`** 357 * **New resource: `aws_customer_gateway`** 358 * **New resource: `aws_ebs_volume`** 359 * **New resource: `aws_elasticache_cluster`** 360 * **New resource: `aws_elasticache_security_group`** 361 * **New resource: `aws_elasticache_subnet_group`** 362 * **New resource: `aws_iam_access_key`** 363 * **New resource: `aws_iam_group_policy`** 364 * **New resource: `aws_iam_group`** 365 * **New resource: `aws_iam_instance_profile`** 366 * **New resource: `aws_iam_policy`** 367 * **New resource: `aws_iam_role_policy`** 368 * **New resource: `aws_iam_role`** 369 * **New resource: `aws_iam_user_policy`** 370 * **New resource: `aws_iam_user`** 371 * **New resource: `aws_lb_cookie_stickiness_policy`** 372 * **New resource: `aws_proxy_protocol_policy`** 373 * **New resource: `aws_security_group_rule`** 374 * **New resource: `aws_vpc_dhcp_options_association`** 375 * **New resource: `aws_vpc_dhcp_options`** 376 * **New resource: `aws_vpn_connection_route`** 377 * **New resource: `google_dns_managed_zone`** 378 * **New resource: `google_dns_record_set`** 379 * **Migrate to upstream AWS SDK:** Migrate the AWS provider to 380 [awslabs/aws-sdk-go](https://github.com/awslabs/aws-sdk-go), 381 the official `awslabs` library. Previously we had forked the library for 382 stability while `awslabs` refactored. Now that work has completed, and we've 383 migrated back to the upstream version. 384 * core: Improve error message on diff mismatch [GH-1501] 385 * provisioner/file: expand `~` in source path [GH-1569] 386 * provider/aws: Better retry logic, now retries up to 11 times by default 387 with exponentional backoff. This number is configurable. [GH-1787] 388 * provider/aws: Improved credential detection [GH-1470] 389 * provider/aws: Can specify a `token` via the config file [GH-1601] 390 * provider/aws: Added new `vpc_security_group_ids` attribute for AWS 391 Instances. If using a VPC, you can now modify the security groups for that 392 Instance without destroying it [GH-1539] 393 * provider/aws: White or blacklist account IDs that can be used to 394 protect against accidents. [GH-1595] 395 * provider/aws: Add a subset of IAM resources [GH-939] 396 * provider/aws: `aws_autoscaling_group` retries deletes through "in progress" 397 errors [GH-1840] 398 * provider/aws: `aws_autoscaling_group` waits for healthy capacity during 399 ASG creation [GH-1839] 400 * provider/aws: `aws_instance` supports placement groups [GH-1358] 401 * provider/aws: `aws_eip` supports network interface attachment [GH-1681] 402 * provider/aws: `aws_elb` supports in-place changing of listeners [GH-1619] 403 * provider/aws: `aws_elb` supports connection draining settings [GH-1502] 404 * provider/aws: `aws_elb` increase default idle timeout to 60s [GH-1646] 405 * provider/aws: `aws_key_pair` name can be omitted and generated [GH-1751] 406 * provider/aws: `aws_network_acl` improved validation for network ACL ports 407 and protocols [GH-1798] [GH-1808] 408 * provider/aws: `aws_route_table` can target network interfaces [GH-968] 409 * provider/aws: `aws_route_table` can specify propagating VGWs [GH-1516] 410 * provider/aws: `aws_route53_record` supports weighted sets [GH-1578] 411 * provider/aws: `aws_route53_zone` exports nameservers [GH-1525] 412 * provider/aws: `aws_s3_bucket` website support [GH-1738] 413 * provider/aws: `aws_security_group` name becomes optional and can be 414 automatically set to a unique identifier; this helps with 415 `create_before_destroy` scenarios [GH-1632] 416 * provider/aws: `aws_security_group` description becomes optional with a 417 static default value [GH-1632] 418 * provider/aws: automatically set the private IP as the SSH address 419 if not specified and no public IP is available [GH-1623] 420 * provider/aws: `aws_elb` exports `source_security_group` field [GH-1708] 421 * provider/aws: `aws_route53_record` supports alias targeting [GH-1775] 422 * provider/aws: Remove default AWS egress rule for newly created Security Groups [GH-1765] 423 * provider/consul: add `scheme` configuration argument [GH-1838] 424 * provider/docker: `docker_container` can specify links [GH-1564] 425 * provider/google: `resource_compute_disk` supports snapshots [GH-1426] 426 * provider/google: `resource_compute_instance` supports specifying the 427 device name [GH-1426] 428 * provider/openstack: Floating IP support for LBaaS [GH-1550] 429 * provider/openstack: Add AZ to `openstack_blockstorage_volume_v1` [GH-1726] 430 431 BUG FIXES: 432 433 * core: Fix graph cycle issues surrounding modules [GH-1582] [GH-1637] 434 * core: math on arbitrary variables works if first operand isn't a 435 numeric primitive. [GH-1381] 436 * core: avoid unnecessary cycles by pruning tainted destroys from 437 graph if there are no tainted resources [GH-1475] 438 * core: fix issue where destroy nodes weren't pruned in specific 439 edge cases around matching prefixes, which could cause cycles [GH-1527] 440 * core: fix issue causing diff mismatch errors in certain scenarios during 441 resource replacement [GH-1515] 442 * core: dependencies on resources with a different index work when 443 count > 1 [GH-1540] 444 * core: don't panic if variable default type is invalid [GH-1344] 445 * core: fix perpetual diff issue for computed maps that are empty [GH-1607] 446 * core: validation added to check for `self` variables in modules [GH-1609] 447 * core: fix edge case where validation didn't pick up unknown fields 448 if the value was computed [GH-1507] 449 * core: Fix issue where values in sets on resources couldn't contain 450 hyphens. [GH-1641] 451 * core: Outputs removed from the config are removed from the state [GH-1714] 452 * core: Validate against the worst-case graph during plan phase to catch cycles 453 that would previously only show up during apply [GH-1655] 454 * core: Referencing invalid module output in module validates [GH-1448] 455 * command: remote states with uppercase types work [GH-1356] 456 * provider/aws: Support `AWS_SECURITY_TOKEN` env var again [GH-1785] 457 * provider/aws: Don't save "instance" for EIP if association fails [GH-1776] 458 * provider/aws: launch configuration ID set after create success [GH-1518] 459 * provider/aws: Fixed an issue with creating ELBs without any tags [GH-1580] 460 * provider/aws: Fix issue in Security Groups with empty IPRanges [GH-1612] 461 * provider/aws: manually deleted S3 buckets are refreshed properly [GH-1574] 462 * provider/aws: only check for EIP allocation ID in VPC [GH-1555] 463 * provider/aws: raw protocol numbers work in `aws_network_acl` [GH-1435] 464 * provider/aws: Block devices can be encrypted [GH-1718] 465 * provider/aws: ASG health check grace period can be updated in-place [GH-1682] 466 * provider/aws: ELB security groups can be updated in-place [GH-1662] 467 * provider/aws: `aws_main_route_table_association` can be deleted 468 manually [GH-1806] 469 * provider/docker: image can reference more complex image addresses, 470 such as with private repos with ports [GH-1818] 471 * provider/openstack: region config is not required [GH-1441] 472 * provider/openstack: `enable_dhcp` for networking subnet should be bool [GH-1741] 473 * provisioner/remote-exec: add random number to uploaded script path so 474 that parallel provisions work [GH-1588] 475 * provisioner/remote-exec: chmod the script to 0755 properly [GH-1796] 476 477 ## 0.4.2 (April 10, 2015) 478 479 BUG FIXES: 480 481 * core: refresh won't remove outputs from state file [GH-1369] 482 * core: clarify "unknown variable" error [GH-1480] 483 * core: properly merge parent provider configs when asking for input 484 * provider/aws: fix panic possibility if RDS DB name is empty [GH-1460] 485 * provider/aws: fix issue detecting credentials for some resources [GH-1470] 486 * provider/google: fix issue causing unresolvable diffs when using legacy 487 `network` field on `google_compute_instance` [GH-1458] 488 489 ## 0.4.1 (April 9, 2015) 490 491 IMPROVEMENTS: 492 493 * provider/aws: Route 53 records can now update `ttl` and `records` attributes 494 without destroying/creating the record [GH-1396] 495 * provider/aws: Support changing additional attributes of RDS databases 496 without forcing a new resource [GH-1382] 497 498 BUG FIXES: 499 500 * core: module paths in ".terraform" are consistent across different 501 systems so copying your ".terraform" folder works. [GH-1418] 502 * core: don't validate providers too early when nested in a module [GH-1380] 503 * core: fix race condition in `count.index` interpolation [GH-1454] 504 * core: properly initialize provisioners, fixing resource targeting 505 during destroy [GH-1544] 506 * command/push: don't ask for input if terraform.tfvars is present 507 * command/remote-config: remove spurrious error "nil" when initializing 508 remote state on a new configuration. [GH-1392] 509 * provider/aws: Fix issue with Route 53 and pre-existing Hosted Zones [GH-1415] 510 * provider/aws: Fix refresh issue in Route 53 hosted zone [GH-1384] 511 * provider/aws: Fix issue when changing map-public-ip in Subnets #1234 512 * provider/aws: Fix issue finding db subnets [GH-1377] 513 * provider/aws: Fix issues with `*_block_device` attributes on instances and 514 launch configs creating unresolvable diffs when certain optional 515 parameters were omitted from the config [GH-1445] 516 * provider/aws: Fix issue with `aws_launch_configuration` causing an 517 unnecessary diff for pre-0.4 environments [GH-1371] 518 * provider/aws: Fix several related issues with `aws_launch_configuration` 519 causing unresolvable diffs [GH-1444] 520 * provider/aws: Fix issue preventing launch configurations from being valid 521 in EC2 Classic [GH-1412] 522 * provider/aws: Fix issue in updating Route 53 records on refresh/read. [GH-1430] 523 * provider/docker: Don't ask for `cert_path` input on every run [GH-1432] 524 * provider/google: Fix issue causing unresolvable diff on instances with 525 `network_interface` [GH-1427] 526 527 ## 0.4.0 (April 2, 2015) 528 529 BACKWARDS INCOMPATIBILITIES: 530 531 * Commands `terraform push` and `terraform pull` are now nested under 532 the `remote` command: `terraform remote push` and `terraform remote pull`. 533 The old `remote` functionality is now at `terraform remote config`. This 534 consolidates all remote state management under one command. 535 * Period-prefixed configuration files are now ignored. This might break 536 existing Terraform configurations if you had period-prefixed files. 537 * The `block_device` attribute of `aws_instance` has been removed in favor 538 of three more specific attributes to specify block device mappings: 539 `root_block_device`, `ebs_block_device`, and `ephemeral_block_device`. 540 Configurations using the old attribute will generate a validation error 541 indicating that they must be updated to use the new fields [GH-1045]. 542 543 FEATURES: 544 545 * **New provider: `dme` (DNSMadeEasy)** [GH-855] 546 * **New provider: `docker` (Docker)** - Manage container lifecycle 547 using the standard Docker API. [GH-855] 548 * **New provider: `openstack` (OpenStack)** - Interact with the many resources 549 provided by OpenStack. [GH-924] 550 * **New feature: `terraform_remote_state` resource** - Reference remote 551 states from other Terraform runs to use Terraform outputs as inputs 552 into another Terraform run. 553 * **New command: `taint`** - Manually mark a resource as tainted, causing 554 a destroy and recreate on the next plan/apply. 555 * **New resource: `aws_vpn_gateway`** [GH-1137] 556 * **New resource: `aws_elastic_network_interfaces`** [GH-1149] 557 * **Self-variables** can be used to reference the current resource's 558 attributes within a provisioner. Ex. `${self.private_ip_address}` [GH-1033] 559 * **Continuous state** saving during `terraform apply`. The state file is 560 continuously updated as apply is running, meaning that the state is 561 less likely to become corrupt in a catastrophic case: terraform panic 562 or system killing Terraform. 563 * **Math operations** in interpolations. You can now do things like 564 `${count.index+1}`. [GH-1068] 565 * **New AWS SDK:** Move to `aws-sdk-go` (hashicorp/aws-sdk-go), 566 a fork of the official `awslabs` repo. We forked for stability while 567 `awslabs` refactored the library, and will move back to the officially 568 supported version in the next release. 569 570 IMPROVEMENTS: 571 572 * **New config function: `format`** - Format a string using `sprintf` 573 format. [GH-1096] 574 * **New config function: `replace`** - Search and replace string values. 575 Search can be a regular expression. See documentation for more 576 info. [GH-1029] 577 * **New config function: `split`** - Split a value based on a delimiter. 578 This is useful for faking lists as parameters to modules. 579 * **New resource: `digitalocean_ssh_key`** [GH-1074] 580 * config: Expand `~` with homedir in `file()` paths [GH-1338] 581 * core: The serial of the state is only updated if there is an actual 582 change. This will lower the amount of state changing on things 583 like refresh. 584 * core: Autoload `terraform.tfvars.json` as well as `terraform.tfvars` [GH-1030] 585 * core: `.tf` files that start with a period are now ignored. [GH-1227] 586 * command/remote-config: After enabling remote state, a `pull` is 587 automatically done initially. 588 * providers/google: Add `size` option to disk blocks for instances. [GH-1284] 589 * providers/aws: Improve support for tagging resources. 590 * providers/aws: Add a short syntax for Route 53 Record names, e.g. 591 `www` instead of `www.example.com`. 592 * providers/aws: Improve dependency violation error handling, when deleting 593 Internet Gateways or Auto Scaling groups [GH-1325]. 594 * provider/aws: Add non-destructive updates to AWS RDS. You can now upgrade 595 `engine_version`, `parameter_group_name`, and `multi_az` without forcing 596 a new database to be created.[GH-1341] 597 * providers/aws: Full support for block device mappings on instances and 598 launch configurations [GH-1045, GH-1364] 599 * provisioners/remote-exec: SSH agent support. [GH-1208] 600 601 BUG FIXES: 602 603 * core: module outputs can be used as inputs to other modules [GH-822] 604 * core: Self-referencing splat variables are no longer allowed in 605 provisioners. [GH-795][GH-868] 606 * core: Validate that `depends_on` doesn't contain interpolations. [GH-1015] 607 * core: Module inputs can be non-strings. [GH-819] 608 * core: Fix invalid plan that resulted in "diffs don't match" error when 609 a computed attribute was used as part of a set parameter. [GH-1073] 610 * core: Fix edge case where state containing both "resource" and 611 "resource.0" would ignore the latter completely. [GH-1086] 612 * core: Modules with a source of a relative file path moving up 613 directories work properly, i.e. "../a" [GH-1232] 614 * providers/aws: manually deleted VPC removes it from the state 615 * providers/aws: `source_dest_check` regression fixed (now works). [GH-1020] 616 * providers/aws: Longer wait times for DB instances. 617 * providers/aws: Longer wait times for route53 records (30 mins). [GH-1164] 618 * providers/aws: Fix support for TXT records in Route 53. [GH-1213] 619 * providers/aws: Fix support for wildcard records in Route 53. [GH-1222] 620 * providers/aws: Fix issue with ignoring the 'self' attribute of a 621 Security Group rule. [GH-1223] 622 * providers/aws: Fix issue with `sql_mode` in RDS parameter group always 623 causing an update. [GH-1225] 624 * providers/aws: Fix dependency violation with subnets and security groups 625 [GH-1252] 626 * providers/aws: Fix issue with refreshing `db_subnet_groups` causing an error 627 instead of updating state [GH-1254] 628 * providers/aws: Prevent empty string to be used as default 629 `health_check_type` [GH-1052] 630 * providers/aws: Add tags on AWS IG creation, not just on update [GH-1176] 631 * providers/digitalocean: Waits until droplet is ready to be destroyed [GH-1057] 632 * providers/digitalocean: More lenient about 404's while waiting [GH-1062] 633 * providers/digitalocean: FQDN for domain records in CNAME, MX, NS, etc. 634 Also fixes invalid updates in plans. [GH-863] 635 * providers/google: Network data in state was not being stored. [GH-1095] 636 * providers/heroku: Fix panic when config vars block was empty. [GH-1211] 637 638 PLUGIN CHANGES: 639 640 * New `helper/schema` fields for resources: `Deprecated` and `Removed` allow 641 plugins to generate warning or error messages when a given attribute is used. 642 643 ## 0.3.7 (February 19, 2015) 644 645 IMPROVEMENTS: 646 647 * **New resources: `google_compute_forwarding_rule`, `google_compute_http_health_check`, 648 and `google_compute_target_pool`** - Together these provide network-level 649 load balancing. [GH-588] 650 * **New resource: `aws_main_route_table_association`** - Manage the main routing table 651 of a VPC. [GH-918] 652 * **New resource: `aws_vpc_peering_connection`** [GH-963] 653 * core: Formalized the syntax of interpolations and documented it 654 very heavily. 655 * core: Strings in interpolations can now contain further interpolations, 656 e.g.: `foo ${bar("${baz}")}`. 657 * provider/aws: Internet gateway supports tags [GH-720] 658 * provider/aws: Support the more standard environmental variable names 659 for access key and secret keys. [GH-851] 660 * provider/aws: The `aws_db_instance` resource no longer requires both 661 `final_snapshot_identifier` and `skip_final_snapshot`; the presence or 662 absence of the former now implies the latter. [GH-874] 663 * provider/aws: Avoid unnecessary update of `aws_subnet` when 664 `map_public_ip_on_launch` is not specified in config. [GH-898] 665 * provider/aws: Add `apply_method` to `aws_db_parameter_group` [GH-897] 666 * provider/aws: Add `storage_type` to `aws_db_instance` [GH-896] 667 * provider/aws: ELB can update listeners without requiring new. [GH-721] 668 * provider/aws: Security group support egress rules. [GH-856] 669 * provider/aws: Route table supports VPC peering connection on route. [GH-963] 670 * provider/aws: Add `root_block_device` to `aws_db_instance` [GH-998] 671 * provider/google: Remove "client secrets file", as it's no longer necessary 672 for API authentication [GH-884]. 673 * provider/google: Expose `self_link` on `google_compute_instance` [GH-906] 674 675 BUG FIXES: 676 677 * core: Fixing use of remote state with plan files. [GH-741] 678 * core: Fix a panic case when certain invalid types were used in 679 the configuration. [GH-691] 680 * core: Escape characters `\"`, `\n`, and `\\` now work in interpolations. 681 * core: Fix crash that could occur when there are exactly zero providers 682 installed on a system. [GH-786] 683 * core: JSON TF configurations can configure provisioners. [GH-807] 684 * core: Sort `depends_on` in state to prevent unnecessary file changes. [GH-928] 685 * core: State containing the zero value won't cause a diff with the 686 lack of a value. [GH-952] 687 * core: If a set type becomes empty, the state will be properly updated 688 to remove it. [GH-952] 689 * core: Bare "splat" variables are not allowed in provisioners. [GH-636] 690 * core: Invalid configuration keys to sub-resources are now errors. [GH-740] 691 * command/apply: Won't try to initialize modules in some cases when 692 no arguments are given. [GH-780] 693 * command/apply: Fix regression where user variables weren't asked [GH-736] 694 * helper/hashcode: Update `hash.String()` to always return a positive index. 695 Fixes issue where specific strings would convert to a negative index 696 and be omitted when creating Route53 records. [GH-967] 697 * provider/aws: Automatically suffix the Route53 zone name on record names. [GH-312] 698 * provider/aws: Instance should ignore root EBS devices. [GH-877] 699 * provider/aws: Fix `aws_db_instance` to not recreate each time. [GH-874] 700 * provider/aws: ASG termination policies are synced with remote state. [GH-923] 701 * provider/aws: ASG launch configuration setting can now be updated in-place. [GH-904] 702 * provider/aws: No read error when subnet is manually deleted. [GH-889] 703 * provider/aws: Tags with empty values (empty string) are properly 704 managed. [GH-968] 705 * provider/aws: Fix case where route table would delete its routes 706 on an unrelated change. [GH-990] 707 * provider/google: Fix bug preventing instances with metadata from being 708 created [GH-884]. 709 710 PLUGIN CHANGES: 711 712 * New `helper/schema` type: `TypeFloat` [GH-594] 713 * New `helper/schema` field for resources: `Exists` must point to a function 714 to check for the existence of a resource. This is used to properly 715 handle the case where the resource was manually deleted. [GH-766] 716 * There is a semantic change in `GetOk` where it will return `true` if 717 there is any value in the diff that is _non-zero_. Before, it would 718 return true only if there was a value in the diff. 719 720 ## 0.3.6 (January 6, 2015) 721 722 FEATURES: 723 724 * **New provider: `cloudstack`** 725 726 IMPROVEMENTS: 727 728 * **New resource: `aws_key_pair`** - Import a public key into AWS. [GH-695] 729 * **New resource: `heroku_cert`** - Manage Heroku app certs. 730 * provider/aws: Support `eu-central-1`, `cn-north-1`, and GovCloud. [GH-525] 731 * provider/aws: `route_table` can have tags. [GH-648] 732 * provider/google: Support Ubuntu images. [GH-724] 733 * provider/google: Support for service accounts. [GH-725] 734 735 BUG FIXES: 736 737 * core: temporary/hidden files that look like Terraform configurations 738 are no longer loaded. [GH-548] 739 * core: Set types in resources now result in deterministic states, 740 resulting in cleaner plans. [GH-663] 741 * core: fix issue where "diff was not the same" would come up with 742 diffing lists. [GH-661] 743 * core: fix crash where module inputs weren't strings, and add more 744 validation around invalid types here. [GH-624] 745 * core: fix error when using a computed module output as an input to 746 another module. [GH-659] 747 * core: map overrides in "terraform.tfvars" no longer result in a syntax 748 error. [GH-647] 749 * core: Colon character works in interpolation [GH-700] 750 * provider/aws: Fix crash case when internet gateway is not attached 751 to any VPC. [GH-664] 752 * provider/aws: `vpc_id` is no longer required. [GH-667] 753 * provider/aws: `availability_zones` on ELB will contain more than one 754 AZ if it is set as such. [GH-682] 755 * provider/aws: More fields are marked as "computed" properly, resulting 756 in more accurate diffs for AWS instances. [GH-712] 757 * provider/aws: Fix panic case by using the wrong type when setting 758 volume size for AWS instances. [GH-712] 759 * provider/aws: route table ignores routes with 'EnableVgwRoutePropagation' 760 origin since those come from gateways. [GH-722] 761 * provider/aws: Default network ACL ID and default security group ID 762 support for `aws_vpc`. [GH-704] 763 * provider/aws: Tags are not marked as computed. This introduces another 764 issue with not detecting external tags, but this will be fixed in 765 the future. [GH-730] 766 767 ## 0.3.5 (December 9, 2014) 768 769 FEATURES: 770 771 * **Remote State**: State files can now be stored remotely via HTTP, 772 Consul, or HashiCorp's Atlas. 773 * **New Provider: `atlas`**: Retrieve artifacts for deployment from 774 HashiCorp's Atlas service. 775 * New `element()` function to index into arrays 776 777 IMPROVEMENTS: 778 779 * provider/aws: Support tenancy for aws\_instance 780 * provider/aws: Support block devices for aws\_instance 781 * provider/aws: Support virtual\_name on block device 782 * provider/aws: Improve RDS reliability (more grace time) 783 * provider/aws: Added aws\_db\_parameter\_group resource 784 * provider/aws: Added tag support to aws\_subnet 785 * provider/aws: Routes in RouteTable are optional 786 * provider/aws: associate\_public\_ip\_address on aws\_launch\_configuration 787 * provider/aws: Added aws\_network\_acl 788 * provider/aws: Ingress rules in security groups are optional 789 * provider/aws: Support termination policy for ASG 790 * provider/digitalocean: Improved droplet size compatibility 791 792 BUG FIXES: 793 794 * core: Fixed issue causing double delete. [GH-555] 795 * core: Fixed issue with create-before-destroy not being respected in 796 some circumstances. 797 * core: Fixing issue with count expansion with non-homogenous instance 798 plans. 799 * core: Fix issue with referencing resource variables from resources 800 that don't exist yet within resources that do exist, or modules. 801 * core: Fixing depedency handling for modules 802 * core: Fixing output handling [GH-474] 803 * core: Fixing count interpolation in modules 804 * core: Fixing multi-var without module state 805 * core: Fixing HCL variable declaration 806 * core: Fixing resource interpolation for without state 807 * core: Fixing handling of computed maps 808 * command/init: Fixing recursion issue [GH-518] 809 * command: Validate config before requesting input [GH-602] 810 * build: Fixing GOPATHs with spaces 811 812 MISC: 813 814 * provider/aws: Upgraded to helper.Schema 815 * provider/heroku: Upgraded to helper.Schema 816 * provider/mailgun: Upgraded to helper.Schema 817 * provider/dnsimple: Upgraded to helper.Schema 818 * provider/cloudflare: Upgraded to helper.Schema 819 * provider/digitalocean: Upgraded to helper.Schema 820 * provider/google: Upgraded to helper.Schema 821 822 ## 0.3.1 (October 21, 2014) 823 824 IMPROVEMENTS: 825 826 * providers/aws: Support tags for security groups. 827 * providers/google: Add "external\_address" to network attributes [GH-454] 828 * providers/google: External address is used as default connection host. [GH-454] 829 * providers/heroku: Support `locked` and `personal` booleans on organization 830 settings. [GH-406] 831 832 BUG FIXES: 833 834 * core: Remove panic case when applying with a plan that generates no 835 new state. [GH-403] 836 * core: Fix a hang that can occur with enough resources. [GH-410] 837 * core: Config validation will not error if the field is being 838 computed so the value is still unknown. 839 * core: If a resource fails to create and has provisioners, it is 840 marked as tainted. [GH-434] 841 * core: Set types are validated to be sets. [GH-413] 842 * core: String types are validated properly. [GH-460] 843 * core: Fix crash case when destroying with tainted resources. [GH-412] 844 * core: Don't execute provisioners in some cases on destroy. 845 * core: Inherited provider configurations will be properly interpolated. [GH-418] 846 * core: Refresh works properly if there are outputs that depend on resources 847 that aren't yet created. [GH-483] 848 * providers/aws: Refresh of launch configs and autoscale groups load 849 the correct data and don't incorrectly recreate themselves. [GH-425] 850 * providers/aws: Fix case where ELB would incorrectly plan to modify 851 listeners (with the same data) in some cases. 852 * providers/aws: Retry destroying internet gateway for some amount of time 853 if there is a dependency violation since it is probably just eventual 854 consistency (public facing resources being destroyed). [GH-447] 855 * providers/aws: Retry deleting security groups for some amount of time 856 if there is a dependency violation since it is probably just eventual 857 consistency. [GH-436] 858 * providers/aws: Retry deleting subnet for some amount of time if there is a 859 dependency violation since probably asynchronous destroy events take 860 place still. [GH-449] 861 * providers/aws: Drain autoscale groups before deleting. [GH-435] 862 * providers/aws: Fix crash case if launch config is manually deleted. [GH-421] 863 * providers/aws: Disassociate EIP before destroying. 864 * providers/aws: ELB treats subnets as a set. 865 * providers/aws: Fix case where in a destroy/create tags weren't reapplied. [GH-464] 866 * providers/aws: Fix incorrect/erroneous apply cases around security group 867 rules. [GH-457] 868 * providers/consul: Fix regression where `key` param changed to `keys. [GH-475] 869 870 ## 0.3.0 (October 14, 2014) 871 872 FEATURES: 873 874 * **Modules**: Configuration can now be modularized. Modules can live on 875 GitHub, BitBucket, Git/Hg repos, HTTP URLs, and file paths. Terraform 876 automatically downloads/updates modules for you on request. 877 * **New Command: `init`**. This command initializes a Terraform configuration 878 from an existing Terraform module (also new in 0.3). 879 * **New Command: `destroy`**. This command destroys infrastructure 880 created with `apply`. 881 * Terraform will ask for user input to fill in required variables and 882 provider configurations if they aren't set. 883 * `terraform apply MODULE` can be used as a shorthand to quickly build 884 infrastructure from a module. 885 * The state file format is now JSON rather than binary. This allows for 886 easier machine and human read/write. Old binary state files will be 887 automatically upgraded. 888 * You can now specify `create_before_destroy` as an option for replacement 889 so that new resources are created before the old ones are destroyed. 890 * The `count` metaparameter can now contain interpolations (such as 891 variables). 892 * The current index for a resource with a `count` set can be interpolated 893 using `${count.index}`. 894 * Various paths can be interpolated with the `path.X` variables. For example, 895 the path to the current module can be interpolated using `${path.module}`. 896 897 IMPROVEMENTS: 898 899 * config: Trailing commas are now allowed for the final elements of lists. 900 * core: Plugins are loaded from `~/.terraform.d/plugins` (Unix) or 901 `%USERDATA%/terraform.d/plugins` (Windows). 902 * command/show: With no arguments, it will show the default state. [GH-349] 903 * helper/schema: Can now have default values. [GH-245] 904 * providers/aws: Tag support for most resources. 905 * providers/aws: New resource `db_subnet_group`. [GH-295] 906 * providers/aws: Add `map_public_ip_on_launch` for subnets. [GH-285] 907 * providers/aws: Add `iam_instance_profile` for instances. [GH-319] 908 * providers/aws: Add `internal` option for ELBs. [GH-303] 909 * providers/aws: Add `ssl_certificate_id` for ELB listeners. [GH-350] 910 * providers/aws: Add `self` option for security groups for ingress 911 rules with self as source. [GH-303] 912 * providers/aws: Add `iam_instance_profile` option to 913 `aws_launch_configuration`. [GH-371] 914 * providers/aws: Non-destructive update of `desired_capacity` for 915 autoscale groups. 916 * providers/aws: Add `main_route_table_id` attribute to VPCs. [GH-193] 917 * providers/consul: Support tokens. [GH-396] 918 * providers/google: Support `target_tags` for firewalls. [GH-324] 919 * providers/google: `google_compute_instance` supports `can_ip_forward` [GH-375] 920 * providers/google: `google_compute_disk` supports `type` to support disks 921 such as SSDs. [GH-351] 922 * provisioners/local-exec: Output from command is shown in CLI output. [GH-311] 923 * provisioners/remote-exec: Output from command is shown in CLI output. [GH-311] 924 925 BUG FIXES: 926 927 * core: Providers are validated even without a `provider` block. [GH-284] 928 * core: In the case of error, walk all non-dependent trees. 929 * core: Plugin loading from CWD works properly. 930 * core: Fix many edge cases surrounding the `count` meta-parameter. 931 * core: Strings in the configuration can escape double-quotes with the 932 standard `\"` syntax. 933 * core: Error parsing CLI config will show properly. [GH-288] 934 * core: More than one Ctrl-C will exit immediately. 935 * providers/aws: autoscaling_group can be launched into a vpc [GH-259] 936 * providers/aws: not an error when RDS instance is deleted manually. [GH-307] 937 * providers/aws: Retry deleting subnet for some time while AWS eventually 938 destroys dependencies. [GH-357] 939 * providers/aws: More robust destroy for route53 records. [GH-342] 940 * providers/aws: ELB generates much more correct plans without extranneous 941 data. 942 * providers/aws: ELB works properly with dynamically changing 943 count of instances. 944 * providers/aws: Terraform can handle ELBs deleted manually. [GH-304] 945 * providers/aws: Report errors properly if RDS fails to delete. [GH-310] 946 * providers/aws: Wait for launch configuration to exist after creation 947 (AWS eventual consistency) [GH-302] 948 949 ## 0.2.2 (September 9, 2014) 950 951 IMPROVEMENTS: 952 953 * providers/amazon: Add `ebs_optimized` flag. [GH-260] 954 * providers/digitalocean: Handle 404 on delete 955 * providers/digitalocean: Add `user_data` argument for creating droplets 956 * providers/google: Disks can be marked `auto_delete`. [GH-254] 957 958 BUG FIXES: 959 960 * core: Fix certain syntax of configuration that could cause hang. [GH-261] 961 * core: `-no-color` flag properly disables color. [GH-250] 962 * core: "~" is expanded in `-var-file` flags. [GH-273] 963 * core: Errors with tfvars are shown in console. [GH-269] 964 * core: Interpolation function calls with more than two args parse. [GH-282] 965 * providers/aws: Refreshing EIP from pre-0.2 state file won't error. [GH-258] 966 * providers/aws: Creating EIP without an instance/network won't fail. 967 * providers/aws: Refreshing EIP manually deleted works. 968 * providers/aws: Retry EIP delete to allow AWS eventual consistency to 969 detect it isn't attached. [GH-276] 970 * providers/digitalocean: Handle situations when resource was destroyed 971 manually. [GH-279] 972 * providers/digitalocean: Fix a couple scenarios where the diff was 973 incorrect (and therefore the execution as well). 974 * providers/google: Attaching a disk source (not an image) works 975 properly. [GH-254] 976 977 ## 0.2.1 (August 31, 2014) 978 979 IMPROVEMENTS: 980 981 * core: Plugins are automatically discovered in the executable directory 982 or pwd if named properly. [GH-190] 983 * providers/mailgun: domain records are now saved to state 984 985 BUG FIXES: 986 987 * core: Configuration parses when identifier and '=' have no space. [GH-243] 988 * core: `depends_on` with `count` generates the proper graph. [GH-244] 989 * core: Depending on a computed variable of a list type generates a 990 plan without failure. i.e. `${type.name.foos.0.bar}` where `foos` 991 is computed. [GH-247] 992 * providers/aws: Route53 destroys in parallel work properly. [GH-183] 993 994 ## 0.2.0 (August 28, 2014) 995 996 BACKWARDS INCOMPATIBILITIES: 997 998 * We've replaced the configuration language in use from a C library to 999 a pure-Go reimplementation. In the process, we removed some features 1000 of the language since it was too flexible: 1001 * Semicolons are no longer valid at the end of lines 1002 * Keys cannot be double-quoted strings: `"foo" = "bar"` is no longer 1003 valid. 1004 * JSON style maps `{ "foo": "bar" }` are no longer valid outside of JSON. 1005 Maps must be in the format of `{ foo = "bar" }` (like other objects 1006 in the config) 1007 * Heroku apps now require (will not validate without) `region` and 1008 `name` due to an upstream API change. [GH-239] 1009 1010 FEATURES: 1011 1012 * **New Provider: `google`**: Manage Google Compute instances, disks, 1013 firewalls, and more. 1014 * **New Provider: `mailgun`**: Manage mailgun domains. 1015 * **New Function: `concat`**: Concatenate multiple strings together. 1016 Example: `concat(var.region, "-", var.channel)`. 1017 1018 IMPROVEMENTS: 1019 1020 * core: "~/.terraformrc" (Unix) or "%APPDATA%/terraform.rc" (Windows) 1021 can be used to configure custom providers and provisioners. [GH-192] 1022 * providers/aws: EIPs now expose `allocation_id` and `public_ip` 1023 attributes. 1024 * providers/aws: Security group rules can be updated without a 1025 destroy/create. 1026 * providers/aws: You can enable and disable dns settings for VPCs. [GH-172] 1027 * providers/aws: Can specify a private IP address for `aws_instance` [GH-217] 1028 1029 BUG FIXES: 1030 1031 * core: Variables are validated to not contain interpolations. [GH-180] 1032 * core: Key files for provisioning can now contain `~` and will be expanded 1033 to the user's home directory. [GH-179] 1034 * core: The `file()` function can load files in sub-directories. [GH-213] 1035 * core: Fix issue where some JSON structures didn't map properly into 1036 Terraform structures. [GH-177] 1037 * core: Resources with only `file()` calls will interpolate. [GH-159] 1038 * core: Variables work in block names. [GH-234] 1039 * core: Plugins are searched for in the same directory as the executable 1040 before the PATH. [GH-157] 1041 * command/apply: "tfvars" file no longer interferes with plan apply. [GH-153] 1042 * providers/aws: Fix issues around failing to read EIPs. [GH-122] 1043 * providers/aws: Autoscaling groups now register and export load 1044 balancers. [GH-207] 1045 * providers/aws: Ingress results are treated as a set, so order doesn't 1046 matter anymore. [GH-87] 1047 * providers/aws: Instance security groups treated as a set [GH-194] 1048 * providers/aws: Retry Route53 requests if operation failed because another 1049 operation is in progress [GH-183] 1050 * providers/aws: Route53 records with multiple record values work. [GH-221] 1051 * providers/aws: Changing AMI doesn't result in errors anymore. [GH-196] 1052 * providers/heroku: If you delete the `config_vars` block, config vars 1053 are properly nuked. 1054 * providers/heroku: Domains and drains are deleted before the app. 1055 * providers/heroku: Moved from the client library bgentry/heroku-go to 1056 cyberdelia/heroku-go [GH-239]. 1057 * providers/heroku: Plans without a specific plan name for 1058 heroku\_addon work. [GH-198] 1059 1060 PLUGIN CHANGES: 1061 1062 * **New Package:** `helper/schema`. This introduces a high-level framework 1063 for easily writing new providers and resources. The Heroku provider has 1064 been converted to this as an example. 1065 1066 ## 0.1.1 (August 5, 2014) 1067 1068 FEATURES: 1069 1070 * providers/heroku: Now supports creating Heroku Drains [GH-97] 1071 1072 IMPROVEMENTS: 1073 1074 * providers/aws: Launch configurations accept user data [GH-94] 1075 * providers/aws: Regions are now validated [GH-96] 1076 * providers/aws: ELB now supports health check configurations [GH-109] 1077 1078 BUG FIXES: 1079 1080 * core: Default variable file "terraform.tfvars" is auto-loaded. [GH-59] 1081 * core: Multi-variables (`foo.*.bar`) work even when `count = 1`. [GH-115] 1082 * core: `file()` function can have string literal arg [GH-145] 1083 * providers/cloudflare: Include the proper bins so the cloudflare 1084 provider is compiled 1085 * providers/aws: Engine version for RDS now properly set [GH-118] 1086 * providers/aws: Security groups now depend on each other and 1087 * providers/aws: DB instances now wait for destroys, have proper 1088 dependencies and allow passing skip_final_snapshot 1089 * providers/aws: Add associate_public_ip_address as an attribute on 1090 the aws_instance resource [GH-85] 1091 * providers/aws: Fix cidr blocks being updated [GH-65, GH-85] 1092 * providers/aws: Description is now required for security groups 1093 * providers/digitalocean: Private IP addresses are now a separate 1094 attribute 1095 * provisioner/all: If an SSH key is given with a password, a better 1096 error message is shown. [GH-73] 1097 1098 ## 0.1.0 (July 28, 2014) 1099 1100 * Initial release