github.com/ggiamarchi/terraform@v0.3.7-0.20150607194748-ed2a66a46a71/CHANGELOG.md (about)

     1  ## 0.6.0 (Unreleased)
     2  
     3  FEATURES:
     4  
     5    * **New provider: `azure`** [GH-2053]
     6    * **New resource: `aws_autoscaling_notification`** [GH-2197]
     7    * **New resource: `aws_ecs_cluster`** [GH-1803]
     8    * **New resource: `aws_ecs_service`** [GH-1803]
     9    * **New resource: `aws_ecs_task_definition`** [GH-1803]
    10    * command/output: support display of module outputs [GH-2102]
    11    * core: keys() and values() funcs for map variables [GH-2198]
    12  
    13  IMPROVEMENTS:
    14  
    15    * provider/aws: ElastiCache Subnet Groups can be updated
    16        without destroying first [GH-2191]
    17    * provider/docker: `docker_container` has the `privileged`
    18        option. [GH-2227]
    19    * provider/openstack: allow `OS_AUTH_TOKEN` environment variable
    20        to set the openstack `api_key` field [GH-2234]
    21  
    22  BUG FIXES:
    23  
    24    * provider/aws: fix panic when route has no cidr_block [GH-2215]
    25    * provider/aws: fix issue causing perpetual diff on ELB listeners
    26        when non-lowercase protocol strings were used [GH-2246]
    27    * provider/aws: corrected frankfurt S3 website region [GH-2259]
    28  
    29  ## 0.5.3 (June 1, 2015)
    30  
    31  IMPROVEMENTS:
    32  
    33    * **New resource: `aws_kinesis_stream`** [GH-2110]
    34    * **New resource: `aws_iam_server_certificate`** [GH-2086]
    35    * **New resource: `aws_sqs_queue`** [GH-1939]
    36    * **New resource: `aws_sns_topic`** [GH-1974]
    37    * **New resource: `aws_sns_topic_subscription`** [GH-1974]
    38    * **New resource: `aws_volume_attachment`** [GH-2050]
    39    * **New resource: `google_storage_bucket`** [GH-2060]
    40    * provider/aws: support ec2 termination protection [GH-1988]
    41    * provider/aws: support for RDS Read Replicas [GH-1946]
    42    * provider/aws: `aws_s3_bucket` add support for `policy` [GH-1992]
    43    * provider/aws: `aws_ebs_volume` add support for `tags` [GH-2135]
    44    * provider/aws: `aws_elasticache_cluster` Confirm node status before reporting
    45        available
    46    * provider/aws: `aws_network_acl` Add support for ICMP Protocol [GH-2148]
    47    * provider/aws: New `force_destroy` parameter for S3 buckets, to destroy
    48        Buckets that contain objects [GH-2007]
    49    * provider/aws: switching `health_check_type` on ASGs no longer requires
    50        resource refresh [GH-2147]
    51  
    52  BUG FIXES:
    53  
    54    * provider/aws: Correctly handle AWS keypairs which no longer exist [GH-2032]
    55    * provider/aws: Fix issue with restoring an Instance from snapshot ID
    56      [GH-2120]
    57    * provider/template: store relative path in the state [GH-2038]
    58    * provisioner/chef: fix interpolation in the Chef provisioner [GH-2168]
    59    * provisioner/remote-exec: Don't prepend shebang on scripts that already
    60        have one [GH-2041]
    61  
    62  ## 0.5.2 (May 15, 2015)
    63  
    64  FEATURES:
    65  
    66    * **Chef provisioning**: You can now provision new hosts (both Linux and
    67       Windows) with [Chef](https://chef.io) using a native provisioner [GH-1868]
    68  
    69  IMPROVEMENTS:
    70  
    71    * **New config function: `formatlist`** - Format lists in a similar way to `format`.
    72      Useful for creating URLs from a list of IPs. [GH-1829]
    73    * **New resource: `aws_route53_zone_association`**
    74    * provider/aws: `aws_autoscaling_group` can wait for capacity in ELB
    75        via `min_elb_capacity` [GH-1970]
    76    * provider/aws: `aws_db_instances` supports `license_model` [GH-1966]
    77    * provider/aws: `aws_elasticache_cluster` add support for Tags [GH-1965]
    78    * provider/aws: `aws_network_acl` Network ACLs can be applied to multiple subnets [GH-1931]
    79    * provider/aws: `aws_s3_bucket` exports `hosted_zone_id` and `region` [GH-1865]
    80    * provider/aws: `aws_s3_bucket` add support for website `redirect_all_requests_to` [GH-1909]
    81    * provider/aws: `aws_route53_record` exports `fqdn` [GH-1847]
    82    * provider/aws: `aws_route53_zone` can create private hosted zones [GH-1526]
    83    * provider/google: `google_compute_instance` `scratch` attribute added [GH-1920]
    84  
    85  BUG FIXES:
    86  
    87    * core: fix "resource not found" for interpolation issues with modules
    88    * core: fix unflattenable error for orphans [GH-1922]
    89    * core: fix deadlock with create-before-destroy + modules [GH-1949]
    90    * core: fix "no roots found" error with create-before-destroy [GH-1953]
    91    * core: variables set with environment variables won't validate as
    92        not set without a default [GH-1930]
    93    * core: resources with a blank ID in the state are now assumed to not exist [GH-1905]
    94    * command/push: local vars override remote ones [GH-1881]
    95    * provider/aws: Mark `aws_security_group` description as `ForceNew` [GH-1871]
    96    * provider/aws: `aws_db_instance` ARN value is correct [GH-1910]
    97    * provider/aws: `aws_db_instance` only submit modify request if there
    98        is a change. [GH-1906]
    99    * provider/aws: `aws_elasticache_cluster` export missing information on cluster nodes [GH-1965]
   100    * provider/aws: bad AMI on a launch configuration won't block refresh [GH-1901]
   101    * provider/aws: `aws_security_group` + `aws_subnet` - destroy timeout increased
   102      to prevent DependencyViolation errors. [GH-1886]
   103    * provider/google: `google_compute_instance` Local SSDs no-longer cause crash
   104        [GH-1088]
   105    * provider/google: `google_http_health_check` Defaults now driven from Terraform,
   106        avoids errors on update [GH-1894]
   107    * provider/google: `google_compute_template` Update Instance Template network
   108        definition to match changes to Instance [GH-980]
   109    * provider/template: Fix infinite diff [GH-1898]
   110  
   111  ## 0.5.1 (never released)
   112  
   113  This version was never released since we accidentally skipped it!
   114  
   115  ## 0.5.0 (May 7, 2015)
   116  
   117  BACKWARDS INCOMPATIBILITIES:
   118  
   119    * provider/aws: Terraform now remove the default egress rule created by AWS in
   120      a new security group.
   121  
   122  FEATURES:
   123  
   124    * **Multi-provider (a.k.a multi-region)**: Multiple instances of a single
   125       provider can be configured so resources can apply to different settings.
   126       As an example, this allows Terraform to manage multiple regions with AWS.
   127    * **Environmental variables to set variables**: Environment variables can be
   128       used to set variables. The environment variables must be in the format
   129       `TF_VAR_name` and this will be checked last for a value.
   130    * **New remote state backend: `s3`**: You can now store remote state in
   131       an S3 bucket. [GH-1723]
   132    * **Automatic AWS retries**: This release includes a lot of improvement
   133       around automatic retries of transient errors in AWS. The number of
   134       retry attempts is also configurable.
   135    * **Templates**: A new `template_file` resource allows long strings needing
   136       variable interpolation to be moved into files. [GH-1778]
   137    * **Provision with WinRM**: Provisioners can now run remote commands on
   138       Windows hosts. [GH-1483]
   139  
   140  IMPROVEMENTS:
   141  
   142    * **New config function: `length`** - Get the length of a string or a list.
   143        Useful in conjunction with `split`. [GH-1495]
   144    * **New resource: `aws_app_cookie_stickiness_policy`**
   145    * **New resource: `aws_customer_gateway`**
   146    * **New resource: `aws_ebs_volume`**
   147    * **New resource: `aws_elasticache_cluster`**
   148    * **New resource: `aws_elasticache_security_group`**
   149    * **New resource: `aws_elasticache_subnet_group`**
   150    * **New resource: `aws_iam_access_key`**
   151    * **New resource: `aws_iam_group_policy`**
   152    * **New resource: `aws_iam_group`**
   153    * **New resource: `aws_iam_instance_profile`**
   154    * **New resource: `aws_iam_policy`**
   155    * **New resource: `aws_iam_role_policy`**
   156    * **New resource: `aws_iam_role`**
   157    * **New resource: `aws_iam_user_policy`**
   158    * **New resource: `aws_iam_user`**
   159    * **New resource: `aws_lb_cookie_stickiness_policy`**
   160    * **New resource: `aws_proxy_protocol_policy`**
   161    * **New resource: `aws_security_group_rule`**
   162    * **New resource: `aws_vpc_dhcp_options_association`**
   163    * **New resource: `aws_vpc_dhcp_options`**
   164    * **New resource: `aws_vpn_connection_route`**
   165    * **New resource: `google_dns_managed_zone`**
   166    * **New resource: `google_dns_record_set`**
   167    * **Migrate to upstream AWS SDK:** Migrate the AWS provider to
   168        [awslabs/aws-sdk-go](https://github.com/awslabs/aws-sdk-go),
   169        the official `awslabs` library. Previously we had forked the library for
   170        stability while `awslabs` refactored. Now that work has completed, and we've
   171        migrated back to the upstream version.
   172    * core: Improve error message on diff mismatch [GH-1501]
   173    * provisioner/file: expand `~` in source path [GH-1569]
   174    * provider/aws: Better retry logic, now retries up to 11 times by default
   175        with exponentional backoff. This number is configurable. [GH-1787]
   176    * provider/aws: Improved credential detection [GH-1470]
   177    * provider/aws: Can specify a `token` via the config file [GH-1601]
   178    * provider/aws: Added new `vpc_security_group_ids` attribute for AWS
   179        Instances. If using a VPC, you can now modify the security groups for that
   180        Instance without destroying it [GH-1539]
   181    * provider/aws: White or blacklist account IDs that can be used to
   182        protect against accidents. [GH-1595]
   183    * provider/aws: Add a subset of IAM resources [GH-939]
   184    * provider/aws: `aws_autoscaling_group` retries deletes through "in progress"
   185        errors [GH-1840]
   186    * provider/aws: `aws_autoscaling_group` waits for healthy capacity during
   187        ASG creation [GH-1839]
   188    * provider/aws: `aws_instance` supports placement groups [GH-1358]
   189    * provider/aws: `aws_eip` supports network interface attachment [GH-1681]
   190    * provider/aws: `aws_elb` supports in-place changing of listeners [GH-1619]
   191    * provider/aws: `aws_elb` supports connection draining settings [GH-1502]
   192    * provider/aws: `aws_elb` increase default idle timeout to 60s [GH-1646]
   193    * provider/aws: `aws_key_pair` name can be omitted and generated [GH-1751]
   194    * provider/aws: `aws_network_acl` improved validation for network ACL ports
   195        and protocols [GH-1798] [GH-1808]
   196    * provider/aws: `aws_route_table` can target network interfaces [GH-968]
   197    * provider/aws: `aws_route_table` can specify propagating VGWs [GH-1516]
   198    * provider/aws: `aws_route53_record` supports weighted sets [GH-1578]
   199    * provider/aws: `aws_route53_zone` exports nameservers [GH-1525]
   200    * provider/aws: `aws_s3_bucket` website support [GH-1738]
   201    * provider/aws: `aws_security_group` name becomes optional and can be
   202        automatically set to a unique identifier; this helps with
   203        `create_before_destroy` scenarios [GH-1632]
   204    * provider/aws: `aws_security_group` description becomes optional with a
   205        static default value [GH-1632]
   206    * provider/aws: automatically set the private IP as the SSH address
   207        if not specified and no public IP is available [GH-1623]
   208    * provider/aws: `aws_elb` exports `source_security_group` field [GH-1708]
   209    * provider/aws: `aws_route53_record` supports alias targeting [GH-1775]
   210    * provider/aws: Remove default AWS egress rule for newly created Security Groups [GH-1765]
   211    * provider/consul: add `scheme` configuration argument [GH-1838]
   212    * provider/docker: `docker_container` can specify links [GH-1564]
   213    * provider/google: `resource_compute_disk` supports snapshots [GH-1426]
   214    * provider/google: `resource_compute_instance` supports specifying the
   215        device name [GH-1426]
   216    * provider/openstack: Floating IP support for LBaaS [GH-1550]
   217    * provider/openstack: Add AZ to `openstack_blockstorage_volume_v1` [GH-1726]
   218  
   219  BUG FIXES:
   220  
   221    * core: Fix graph cycle issues surrounding modules [GH-1582] [GH-1637]
   222    * core: math on arbitrary variables works if first operand isn't a
   223        numeric primitive. [GH-1381]
   224    * core: avoid unnecessary cycles by pruning tainted destroys from
   225        graph if there are no tainted resources [GH-1475]
   226    * core: fix issue where destroy nodes weren't pruned in specific
   227        edge cases around matching prefixes, which could cause cycles [GH-1527]
   228    * core: fix issue causing diff mismatch errors in certain scenarios during
   229        resource replacement [GH-1515]
   230    * core: dependencies on resources with a different index work when
   231        count > 1 [GH-1540]
   232    * core: don't panic if variable default type is invalid [GH-1344]
   233    * core: fix perpetual diff issue for computed maps that are empty [GH-1607]
   234    * core: validation added to check for `self` variables in modules [GH-1609]
   235    * core: fix edge case where validation didn't pick up unknown fields
   236        if the value was computed [GH-1507]
   237    * core: Fix issue where values in sets on resources couldn't contain
   238        hyphens. [GH-1641]
   239    * core: Outputs removed from the config are removed from the state [GH-1714]
   240    * core: Validate against the worst-case graph during plan phase to catch cycles
   241        that would previously only show up during apply [GH-1655]
   242    * core: Referencing invalid module output in module validates [GH-1448]
   243    * command: remote states with uppercase types work [GH-1356]
   244    * provider/aws: Support `AWS_SECURITY_TOKEN` env var again [GH-1785]
   245    * provider/aws: Don't save "instance" for EIP if association fails [GH-1776]
   246    * provider/aws: launch configuration ID set after create success [GH-1518]
   247    * provider/aws: Fixed an issue with creating ELBs without any tags [GH-1580]
   248    * provider/aws: Fix issue in Security Groups with empty IPRanges [GH-1612]
   249    * provider/aws: manually deleted S3 buckets are refreshed properly [GH-1574]
   250    * provider/aws: only check for EIP allocation ID in VPC [GH-1555]
   251    * provider/aws: raw protocol numbers work in `aws_network_acl` [GH-1435]
   252    * provider/aws: Block devices can be encrypted [GH-1718]
   253    * provider/aws: ASG health check grace period can be updated in-place [GH-1682]
   254    * provider/aws: ELB security groups can be updated in-place [GH-1662]
   255    * provider/aws: `aws_main_route_table_association` can be deleted
   256        manually [GH-1806]
   257    * provider/docker: image can reference more complex image addresses,
   258        such as with private repos with ports [GH-1818]
   259    * provider/openstack: region config is not required [GH-1441]
   260    * provider/openstack: `enable_dhcp` for networking subnet should be bool [GH-1741]
   261    * provisioner/remote-exec: add random number to uploaded script path so
   262        that parallel provisions work [GH-1588]
   263    * provisioner/remote-exec: chmod the script to 0755 properly [GH-1796]
   264  
   265  ## 0.4.2 (April 10, 2015)
   266  
   267  BUG FIXES:
   268  
   269    * core: refresh won't remove outputs from state file [GH-1369]
   270    * core: clarify "unknown variable" error [GH-1480]
   271    * core: properly merge parent provider configs when asking for input
   272    * provider/aws: fix panic possibility if RDS DB name is empty [GH-1460]
   273    * provider/aws: fix issue detecting credentials for some resources [GH-1470]
   274    * provider/google: fix issue causing unresolvable diffs when using legacy
   275        `network` field on `google_compute_instance` [GH-1458]
   276  
   277  ## 0.4.1 (April 9, 2015)
   278  
   279  IMPROVEMENTS:
   280  
   281    * provider/aws: Route 53 records can now update `ttl` and `records` attributes
   282        without destroying/creating the record [GH-1396]
   283    * provider/aws: Support changing additional attributes of RDS databases
   284        without forcing a new resource  [GH-1382]
   285  
   286  BUG FIXES:
   287  
   288    * core: module paths in ".terraform" are consistent across different
   289        systems so copying your ".terraform" folder works. [GH-1418]
   290    * core: don't validate providers too early when nested in a module [GH-1380]
   291    * core: fix race condition in `count.index` interpolation [GH-1454]
   292    * core: properly initialize provisioners, fixing resource targeting
   293        during destroy [GH-1544]
   294    * command/push: don't ask for input if terraform.tfvars is present
   295    * command/remote-config: remove spurrious error "nil" when initializing
   296        remote state on a new configuration. [GH-1392]
   297    * provider/aws: Fix issue with Route 53 and pre-existing Hosted Zones [GH-1415]
   298    * provider/aws: Fix refresh issue in Route 53 hosted zone [GH-1384]
   299    * provider/aws: Fix issue when changing map-public-ip in Subnets #1234
   300    * provider/aws: Fix issue finding db subnets [GH-1377]
   301    * provider/aws: Fix issues with `*_block_device` attributes on instances and
   302        launch configs creating unresolvable diffs when certain optional
   303        parameters were omitted from the config [GH-1445]
   304    * provider/aws: Fix issue with `aws_launch_configuration` causing an
   305        unnecessary diff for pre-0.4 environments [GH-1371]
   306    * provider/aws: Fix several related issues with `aws_launch_configuration`
   307        causing unresolvable diffs [GH-1444]
   308    * provider/aws: Fix issue preventing launch configurations from being valid
   309        in EC2 Classic [GH-1412]
   310    * provider/aws: Fix issue in updating Route 53 records on refresh/read. [GH-1430]
   311    * provider/docker: Don't ask for `cert_path` input on every run [GH-1432]
   312    * provider/google: Fix issue causing unresolvable diff on instances with
   313        `network_interface` [GH-1427]
   314  
   315  ## 0.4.0 (April 2, 2015)
   316  
   317  BACKWARDS INCOMPATIBILITIES:
   318  
   319    * Commands `terraform push` and `terraform pull` are now nested under
   320      the `remote` command: `terraform remote push` and `terraform remote pull`.
   321      The old `remote` functionality is now at `terraform remote config`. This
   322      consolidates all remote state management under one command.
   323    * Period-prefixed configuration files are now ignored. This might break
   324      existing Terraform configurations if you had period-prefixed files.
   325    * The `block_device` attribute of `aws_instance` has been removed in favor
   326      of three more specific attributes to specify block device mappings:
   327      `root_block_device`, `ebs_block_device`, and `ephemeral_block_device`.
   328      Configurations using the old attribute will generate a validation error
   329      indicating that they must be updated to use the new fields [GH-1045].
   330  
   331  FEATURES:
   332  
   333    * **New provider: `dme` (DNSMadeEasy)** [GH-855]
   334    * **New provider: `docker` (Docker)** - Manage container lifecycle
   335        using the standard Docker API. [GH-855]
   336    * **New provider: `openstack` (OpenStack)** - Interact with the many resources
   337        provided by OpenStack. [GH-924]
   338    * **New feature: `terraform_remote_state` resource** - Reference remote
   339        states from other Terraform runs to use Terraform outputs as inputs
   340        into another Terraform run.
   341    * **New command: `taint`** - Manually mark a resource as tainted, causing
   342        a destroy and recreate on the next plan/apply.
   343    * **New resource: `aws_vpn_gateway`** [GH-1137]
   344    * **New resource: `aws_elastic_network_interfaces`** [GH-1149]
   345    * **Self-variables** can be used to reference the current resource's
   346        attributes within a provisioner. Ex. `${self.private_ip_address}` [GH-1033]
   347    * **Continuous state** saving during `terraform apply`. The state file is
   348        continuously updated as apply is running, meaning that the state is
   349        less likely to become corrupt in a catastrophic case: terraform panic
   350        or system killing Terraform.
   351    * **Math operations** in interpolations. You can now do things like
   352        `${count.index+1}`. [GH-1068]
   353    * **New AWS SDK:** Move to `aws-sdk-go` (hashicorp/aws-sdk-go),
   354        a fork of the official `awslabs` repo. We forked for stability while
   355        `awslabs` refactored the library, and will move back to the officially
   356        supported version in the next release.
   357  
   358  IMPROVEMENTS:
   359  
   360    * **New config function: `format`** - Format a string using `sprintf`
   361        format. [GH-1096]
   362    * **New config function: `replace`** - Search and replace string values.
   363        Search can be a regular expression. See documentation for more
   364        info. [GH-1029]
   365    * **New config function: `split`** - Split a value based on a delimiter.
   366        This is useful for faking lists as parameters to modules.
   367    * **New resource: `digitalocean_ssh_key`** [GH-1074]
   368    * config: Expand `~` with homedir in `file()` paths [GH-1338]
   369    * core: The serial of the state is only updated if there is an actual
   370        change. This will lower the amount of state changing on things
   371        like refresh.
   372    * core: Autoload `terraform.tfvars.json` as well as `terraform.tfvars` [GH-1030]
   373    * core: `.tf` files that start with a period are now ignored. [GH-1227]
   374    * command/remote-config: After enabling remote state, a `pull` is
   375        automatically done initially.
   376    * providers/google: Add `size` option to disk blocks for instances. [GH-1284]
   377    * providers/aws: Improve support for tagging resources.
   378    * providers/aws: Add a short syntax for Route 53 Record names, e.g.
   379        `www` instead of `www.example.com`.
   380    * providers/aws: Improve dependency violation error handling, when deleting
   381        Internet Gateways or Auto Scaling groups [GH-1325].
   382    * provider/aws: Add non-destructive updates to AWS RDS. You can now upgrade
   383        `engine_version`, `parameter_group_name`, and `multi_az` without forcing
   384        a new database to be created.[GH-1341]
   385    * providers/aws: Full support for block device mappings on instances and
   386        launch configurations [GH-1045, GH-1364]
   387    * provisioners/remote-exec: SSH agent support. [GH-1208]
   388  
   389  BUG FIXES:
   390  
   391    * core: module outputs can be used as inputs to other modules [GH-822]
   392    * core: Self-referencing splat variables are no longer allowed in
   393        provisioners. [GH-795][GH-868]
   394    * core: Validate that `depends_on` doesn't contain interpolations. [GH-1015]
   395    * core: Module inputs can be non-strings. [GH-819]
   396    * core: Fix invalid plan that resulted in "diffs don't match" error when
   397        a computed attribute was used as part of a set parameter. [GH-1073]
   398    * core: Fix edge case where state containing both "resource" and
   399        "resource.0" would ignore the latter completely. [GH-1086]
   400    * core: Modules with a source of a relative file path moving up
   401        directories work properly, i.e. "../a" [GH-1232]
   402    * providers/aws: manually deleted VPC removes it from the state
   403    * providers/aws: `source_dest_check` regression fixed (now works). [GH-1020]
   404    * providers/aws: Longer wait times for DB instances.
   405    * providers/aws: Longer wait times for route53 records (30 mins). [GH-1164]
   406    * providers/aws: Fix support for TXT records in Route 53. [GH-1213]
   407    * providers/aws: Fix support for wildcard records in Route 53. [GH-1222]
   408    * providers/aws: Fix issue with ignoring the 'self' attribute of a
   409        Security Group rule. [GH-1223]
   410    * providers/aws: Fix issue with `sql_mode` in RDS parameter group always
   411        causing an update. [GH-1225]
   412    * providers/aws: Fix dependency violation with subnets and security groups
   413        [GH-1252]
   414    * providers/aws: Fix issue with refreshing `db_subnet_groups` causing an error
   415        instead of updating state [GH-1254]
   416    * providers/aws: Prevent empty string to be used as default
   417        `health_check_type` [GH-1052]
   418    * providers/aws: Add tags on AWS IG creation, not just on update [GH-1176]
   419    * providers/digitalocean: Waits until droplet is ready to be destroyed [GH-1057]
   420    * providers/digitalocean: More lenient about 404's while waiting [GH-1062]
   421    * providers/digitalocean: FQDN for domain records in CNAME, MX, NS, etc.
   422        Also fixes invalid updates in plans. [GH-863]
   423    * providers/google: Network data in state was not being stored. [GH-1095]
   424    * providers/heroku: Fix panic when config vars block was empty. [GH-1211]
   425  
   426  PLUGIN CHANGES:
   427  
   428    * New `helper/schema` fields for resources: `Deprecated` and `Removed` allow
   429        plugins to generate warning or error messages when a given attribute is used.
   430  
   431  ## 0.3.7 (February 19, 2015)
   432  
   433  IMPROVEMENTS:
   434  
   435    * **New resources: `google_compute_forwarding_rule`, `google_compute_http_health_check`,
   436        and `google_compute_target_pool`** - Together these provide network-level
   437        load balancing. [GH-588]
   438    * **New resource: `aws_main_route_table_association`** - Manage the main routing table
   439        of a VPC. [GH-918]
   440    * **New resource: `aws_vpc_peering_connection`** [GH-963]
   441    * core: Formalized the syntax of interpolations and documented it
   442        very heavily.
   443    * core: Strings in interpolations can now contain further interpolations,
   444        e.g.: `foo ${bar("${baz}")}`.
   445    * provider/aws: Internet gateway supports tags [GH-720]
   446    * provider/aws: Support the more standard environmental variable names
   447        for access key and secret keys. [GH-851]
   448    * provider/aws: The `aws_db_instance` resource no longer requires both
   449        `final_snapshot_identifier` and `skip_final_snapshot`; the presence or
   450        absence of the former now implies the latter. [GH-874]
   451    * provider/aws: Avoid unnecessary update of `aws_subnet` when
   452        `map_public_ip_on_launch` is not specified in config. [GH-898]
   453    * provider/aws: Add `apply_method` to `aws_db_parameter_group` [GH-897]
   454    * provider/aws: Add `storage_type` to `aws_db_instance` [GH-896]
   455    * provider/aws: ELB can update listeners without requiring new. [GH-721]
   456    * provider/aws: Security group support egress rules. [GH-856]
   457    * provider/aws: Route table supports VPC peering connection on route. [GH-963]
   458    * provider/aws: Add `root_block_device` to `aws_db_instance` [GH-998]
   459    * provider/google: Remove "client secrets file", as it's no longer necessary
   460        for API authentication [GH-884].
   461    * provider/google: Expose `self_link` on `google_compute_instance` [GH-906]
   462  
   463  BUG FIXES:
   464  
   465    * core: Fixing use of remote state with plan files. [GH-741]
   466    * core: Fix a panic case when certain invalid types were used in
   467        the configuration. [GH-691]
   468    * core: Escape characters `\"`, `\n`, and `\\` now work in interpolations.
   469    * core: Fix crash that could occur when there are exactly zero providers
   470        installed on a system. [GH-786]
   471    * core: JSON TF configurations can configure provisioners. [GH-807]
   472    * core: Sort `depends_on` in state to prevent unnecessary file changes. [GH-928]
   473    * core: State containing the zero value won't cause a diff with the
   474        lack of a value. [GH-952]
   475    * core: If a set type becomes empty, the state will be properly updated
   476        to remove it. [GH-952]
   477    * core: Bare "splat" variables are not allowed in provisioners. [GH-636]
   478    * core: Invalid configuration keys to sub-resources are now errors. [GH-740]
   479    * command/apply: Won't try to initialize modules in some cases when
   480        no arguments are given. [GH-780]
   481    * command/apply: Fix regression where user variables weren't asked [GH-736]
   482    * helper/hashcode: Update `hash.String()` to always return a positive index.
   483        Fixes issue where specific strings would convert to a negative index
   484        and be omitted when creating Route53 records. [GH-967]
   485    * provider/aws: Automatically suffix the Route53 zone name on record names. [GH-312]
   486    * provider/aws: Instance should ignore root EBS devices. [GH-877]
   487    * provider/aws: Fix `aws_db_instance` to not recreate each time. [GH-874]
   488    * provider/aws: ASG termination policies are synced with remote state. [GH-923]
   489    * provider/aws: ASG launch configuration setting can now be updated in-place. [GH-904]
   490    * provider/aws: No read error when subnet is manually deleted. [GH-889]
   491    * provider/aws: Tags with empty values (empty string) are properly
   492        managed. [GH-968]
   493    * provider/aws: Fix case where route table would delete its routes
   494        on an unrelated change. [GH-990]
   495    * provider/google: Fix bug preventing instances with metadata from being
   496        created [GH-884].
   497  
   498  PLUGIN CHANGES:
   499  
   500    * New `helper/schema` type: `TypeFloat` [GH-594]
   501    * New `helper/schema` field for resources: `Exists` must point to a function
   502        to check for the existence of a resource. This is used to properly
   503        handle the case where the resource was manually deleted. [GH-766]
   504    * There is a semantic change in `GetOk` where it will return `true` if
   505        there is any value in the diff that is _non-zero_. Before, it would
   506        return true only if there was a value in the diff.
   507  
   508  ## 0.3.6 (January 6, 2015)
   509  
   510  FEATURES:
   511  
   512    * **New provider: `cloudstack`**
   513  
   514  IMPROVEMENTS:
   515  
   516    * **New resource: `aws_key_pair`** - Import a public key into AWS. [GH-695]
   517    * **New resource: `heroku_cert`** - Manage Heroku app certs.
   518    * provider/aws: Support `eu-central-1`, `cn-north-1`, and GovCloud. [GH-525]
   519    * provider/aws: `route_table` can have tags. [GH-648]
   520    * provider/google: Support Ubuntu images. [GH-724]
   521    * provider/google: Support for service accounts. [GH-725]
   522  
   523  BUG FIXES:
   524  
   525    * core: temporary/hidden files that look like Terraform configurations
   526        are no longer loaded. [GH-548]
   527    * core: Set types in resources now result in deterministic states,
   528        resulting in cleaner plans. [GH-663]
   529    * core: fix issue where "diff was not the same" would come up with
   530        diffing lists. [GH-661]
   531    * core: fix crash where module inputs weren't strings, and add more
   532        validation around invalid types here. [GH-624]
   533    * core: fix error when using a computed module output as an input to
   534        another module. [GH-659]
   535    * core: map overrides in "terraform.tfvars" no longer result in a syntax
   536        error. [GH-647]
   537    * core: Colon character works in interpolation [GH-700]
   538    * provider/aws: Fix crash case when internet gateway is not attached
   539        to any VPC. [GH-664]
   540    * provider/aws: `vpc_id` is no longer required. [GH-667]
   541    * provider/aws: `availability_zones` on ELB will contain more than one
   542        AZ if it is set as such. [GH-682]
   543    * provider/aws: More fields are marked as "computed" properly, resulting
   544        in more accurate diffs for AWS instances. [GH-712]
   545    * provider/aws: Fix panic case by using the wrong type when setting
   546        volume size for AWS instances. [GH-712]
   547    * provider/aws: route table ignores routes with 'EnableVgwRoutePropagation'
   548        origin since those come from gateways. [GH-722]
   549    * provider/aws: Default network ACL ID and default security group ID
   550        support for `aws_vpc`. [GH-704]
   551    * provider/aws: Tags are not marked as computed. This introduces another
   552        issue with not detecting external tags, but this will be fixed in
   553        the future. [GH-730]
   554  
   555  ## 0.3.5 (December 9, 2014)
   556  
   557  FEATURES:
   558  
   559   * **Remote State**: State files can now be stored remotely via HTTP,
   560       Consul, or HashiCorp's Atlas.
   561   * **New Provider: `atlas`**: Retrieve artifacts for deployment from
   562       HashiCorp's Atlas service.
   563   * New `element()` function to index into arrays
   564  
   565  IMPROVEMENTS:
   566  
   567    * provider/aws: Support tenancy for aws\_instance
   568    * provider/aws: Support block devices for aws\_instance
   569    * provider/aws: Support virtual\_name on block device
   570    * provider/aws: Improve RDS reliability (more grace time)
   571    * provider/aws: Added aws\_db\_parameter\_group resource
   572    * provider/aws: Added tag support to aws\_subnet
   573    * provider/aws: Routes in RouteTable are optional
   574    * provider/aws: associate\_public\_ip\_address on aws\_launch\_configuration
   575    * provider/aws: Added aws\_network\_acl
   576    * provider/aws: Ingress rules in security groups are optional
   577    * provider/aws: Support termination policy for ASG
   578    * provider/digitalocean: Improved droplet size compatibility
   579  
   580  BUG FIXES:
   581  
   582    * core: Fixed issue causing double delete. [GH-555]
   583    * core: Fixed issue with create-before-destroy not being respected in
   584        some circumstances.
   585    * core: Fixing issue with count expansion with non-homogenous instance
   586        plans.
   587    * core: Fix issue with referencing resource variables from resources
   588        that don't exist yet within resources that do exist, or modules.
   589    * core: Fixing depedency handling for modules
   590    * core: Fixing output handling [GH-474]
   591    * core: Fixing count interpolation in modules
   592    * core: Fixing multi-var without module state
   593    * core: Fixing HCL variable declaration
   594    * core: Fixing resource interpolation for without state
   595    * core: Fixing handling of computed maps
   596    * command/init: Fixing recursion issue [GH-518]
   597    * command: Validate config before requesting input [GH-602]
   598    * build: Fixing GOPATHs with spaces
   599  
   600  MISC:
   601  
   602    * provider/aws: Upgraded to helper.Schema
   603    * provider/heroku: Upgraded to helper.Schema
   604    * provider/mailgun: Upgraded to helper.Schema
   605    * provider/dnsimple: Upgraded to helper.Schema
   606    * provider/cloudflare: Upgraded to helper.Schema
   607    * provider/digitalocean: Upgraded to helper.Schema
   608    * provider/google: Upgraded to helper.Schema
   609  
   610  ## 0.3.1 (October 21, 2014)
   611  
   612  IMPROVEMENTS:
   613  
   614    * providers/aws: Support tags for security groups.
   615    * providers/google: Add "external\_address" to network attributes [GH-454]
   616    * providers/google: External address is used as default connection host. [GH-454]
   617    * providers/heroku: Support `locked` and `personal` booleans on organization
   618        settings. [GH-406]
   619  
   620  BUG FIXES:
   621  
   622    * core: Remove panic case when applying with a plan that generates no
   623        new state. [GH-403]
   624    * core: Fix a hang that can occur with enough resources. [GH-410]
   625    * core: Config validation will not error if the field is being
   626        computed so the value is still unknown.
   627    * core: If a resource fails to create and has provisioners, it is
   628        marked as tainted. [GH-434]
   629    * core: Set types are validated to be sets. [GH-413]
   630    * core: String types are validated properly. [GH-460]
   631    * core: Fix crash case when destroying with tainted resources. [GH-412]
   632    * core: Don't execute provisioners in some cases on destroy.
   633    * core: Inherited provider configurations will be properly interpolated. [GH-418]
   634    * core: Refresh works properly if there are outputs that depend on resources
   635        that aren't yet created. [GH-483]
   636    * providers/aws: Refresh of launch configs and autoscale groups load
   637        the correct data and don't incorrectly recreate themselves. [GH-425]
   638    * providers/aws: Fix case where ELB would incorrectly plan to modify
   639        listeners (with the same data) in some cases.
   640    * providers/aws: Retry destroying internet gateway for some amount of time
   641        if there is a dependency violation since it is probably just eventual
   642        consistency (public facing resources being destroyed). [GH-447]
   643    * providers/aws: Retry deleting security groups for some amount of time
   644        if there is a dependency violation since it is probably just eventual
   645        consistency. [GH-436]
   646    * providers/aws: Retry deleting subnet for some amount of time if there is a
   647        dependency violation since probably asynchronous destroy events take
   648        place still. [GH-449]
   649    * providers/aws: Drain autoscale groups before deleting. [GH-435]
   650    * providers/aws: Fix crash case if launch config is manually deleted. [GH-421]
   651    * providers/aws: Disassociate EIP before destroying.
   652    * providers/aws: ELB treats subnets as a set.
   653    * providers/aws: Fix case where in a destroy/create tags weren't reapplied. [GH-464]
   654    * providers/aws: Fix incorrect/erroneous apply cases around security group
   655        rules. [GH-457]
   656    * providers/consul: Fix regression where `key` param changed to `keys. [GH-475]
   657  
   658  ## 0.3.0 (October 14, 2014)
   659  
   660  FEATURES:
   661  
   662    * **Modules**: Configuration can now be modularized. Modules can live on
   663      GitHub, BitBucket, Git/Hg repos, HTTP URLs, and file paths. Terraform
   664      automatically downloads/updates modules for you on request.
   665    * **New Command: `init`**. This command initializes a Terraform configuration
   666      from an existing Terraform module (also new in 0.3).
   667    * **New Command: `destroy`**. This command destroys infrastructure
   668      created with `apply`.
   669    * Terraform will ask for user input to fill in required variables and
   670      provider configurations if they aren't set.
   671    * `terraform apply MODULE` can be used as a shorthand to quickly build
   672      infrastructure from a module.
   673    * The state file format is now JSON rather than binary. This allows for
   674      easier machine and human read/write. Old binary state files will be
   675      automatically upgraded.
   676    * You can now specify `create_before_destroy` as an option for replacement
   677      so that new resources are created before the old ones are destroyed.
   678    * The `count` metaparameter can now contain interpolations (such as
   679      variables).
   680    * The current index for a resource with a `count` set can be interpolated
   681      using `${count.index}`.
   682    * Various paths can be interpolated with the `path.X` variables. For example,
   683      the path to the current module can be interpolated using `${path.module}`.
   684  
   685  IMPROVEMENTS:
   686  
   687    * config: Trailing commas are now allowed for the final elements of lists.
   688    * core: Plugins are loaded from `~/.terraform.d/plugins` (Unix) or
   689      `%USERDATA%/terraform.d/plugins` (Windows).
   690    * command/show: With no arguments, it will show the default state. [GH-349]
   691    * helper/schema: Can now have default values. [GH-245]
   692    * providers/aws: Tag support for most resources.
   693    * providers/aws: New resource `db_subnet_group`. [GH-295]
   694    * providers/aws: Add `map_public_ip_on_launch` for subnets. [GH-285]
   695    * providers/aws: Add `iam_instance_profile` for instances. [GH-319]
   696    * providers/aws: Add `internal` option for ELBs. [GH-303]
   697    * providers/aws: Add `ssl_certificate_id` for ELB listeners. [GH-350]
   698    * providers/aws: Add `self` option for security groups for ingress
   699        rules with self as source. [GH-303]
   700    * providers/aws: Add `iam_instance_profile` option to
   701        `aws_launch_configuration`. [GH-371]
   702    * providers/aws: Non-destructive update of `desired_capacity` for
   703        autoscale groups.
   704    * providers/aws: Add `main_route_table_id` attribute to VPCs. [GH-193]
   705    * providers/consul: Support tokens. [GH-396]
   706    * providers/google: Support `target_tags` for firewalls. [GH-324]
   707    * providers/google: `google_compute_instance` supports `can_ip_forward` [GH-375]
   708    * providers/google: `google_compute_disk` supports `type` to support disks
   709        such as SSDs. [GH-351]
   710    * provisioners/local-exec: Output from command is shown in CLI output. [GH-311]
   711    * provisioners/remote-exec: Output from command is shown in CLI output. [GH-311]
   712  
   713  BUG FIXES:
   714  
   715    * core: Providers are validated even without a `provider` block. [GH-284]
   716    * core: In the case of error, walk all non-dependent trees.
   717    * core: Plugin loading from CWD works properly.
   718    * core: Fix many edge cases surrounding the `count` meta-parameter.
   719    * core: Strings in the configuration can escape double-quotes with the
   720        standard `\"` syntax.
   721    * core: Error parsing CLI config will show properly. [GH-288]
   722    * core: More than one Ctrl-C will exit immediately.
   723    * providers/aws: autoscaling_group can be launched into a vpc [GH-259]
   724    * providers/aws: not an error when RDS instance is deleted manually. [GH-307]
   725    * providers/aws: Retry deleting subnet for some time while AWS eventually
   726        destroys dependencies. [GH-357]
   727    * providers/aws: More robust destroy for route53 records. [GH-342]
   728    * providers/aws: ELB generates much more correct plans without extranneous
   729        data.
   730    * providers/aws: ELB works properly with dynamically changing
   731        count of instances.
   732    * providers/aws: Terraform can handle ELBs deleted manually. [GH-304]
   733    * providers/aws: Report errors properly if RDS fails to delete. [GH-310]
   734    * providers/aws: Wait for launch configuration to exist after creation
   735        (AWS eventual consistency) [GH-302]
   736  
   737  ## 0.2.2 (September 9, 2014)
   738  
   739  IMPROVEMENTS:
   740  
   741    * providers/amazon: Add `ebs_optimized` flag. [GH-260]
   742    * providers/digitalocean: Handle 404 on delete
   743    * providers/digitalocean: Add `user_data` argument for creating droplets
   744    * providers/google: Disks can be marked `auto_delete`. [GH-254]
   745  
   746  BUG FIXES:
   747  
   748    * core: Fix certain syntax of configuration that could cause hang. [GH-261]
   749    * core: `-no-color` flag properly disables color. [GH-250]
   750    * core: "~" is expanded in `-var-file` flags. [GH-273]
   751    * core: Errors with tfvars are shown in console. [GH-269]
   752    * core: Interpolation function calls with more than two args parse. [GH-282]
   753    * providers/aws: Refreshing EIP from pre-0.2 state file won't error. [GH-258]
   754    * providers/aws: Creating EIP without an instance/network won't fail.
   755    * providers/aws: Refreshing EIP manually deleted works.
   756    * providers/aws: Retry EIP delete to allow AWS eventual consistency to
   757        detect it isn't attached. [GH-276]
   758    * providers/digitalocean: Handle situations when resource was destroyed
   759        manually. [GH-279]
   760    * providers/digitalocean: Fix a couple scenarios where the diff was
   761        incorrect (and therefore the execution as well).
   762    * providers/google: Attaching a disk source (not an image) works
   763        properly. [GH-254]
   764  
   765  ## 0.2.1 (August 31, 2014)
   766  
   767  IMPROVEMENTS:
   768  
   769    * core: Plugins are automatically discovered in the executable directory
   770        or pwd if named properly. [GH-190]
   771    * providers/mailgun: domain records are now saved to state
   772  
   773  BUG FIXES:
   774  
   775    * core: Configuration parses when identifier and '=' have no space. [GH-243]
   776    * core: `depends_on` with `count` generates the proper graph. [GH-244]
   777    * core: Depending on a computed variable of a list type generates a
   778        plan without failure. i.e. `${type.name.foos.0.bar}` where `foos`
   779        is computed. [GH-247]
   780    * providers/aws: Route53 destroys in parallel work properly. [GH-183]
   781  
   782  ## 0.2.0 (August 28, 2014)
   783  
   784  BACKWARDS INCOMPATIBILITIES:
   785  
   786    * We've replaced the configuration language in use from a C library to
   787      a pure-Go reimplementation. In the process, we removed some features
   788      of the language since it was too flexible:
   789      * Semicolons are no longer valid at the end of lines
   790      * Keys cannot be double-quoted strings: `"foo" = "bar"` is no longer
   791        valid.
   792      * JSON style maps `{ "foo": "bar" }` are no longer valid outside of JSON.
   793        Maps must be in the format of `{ foo = "bar" }` (like other objects
   794        in the config)
   795    * Heroku apps now require (will not validate without) `region` and
   796      `name` due to an upstream API change. [GH-239]
   797  
   798  FEATURES:
   799  
   800    * **New Provider: `google`**: Manage Google Compute instances, disks,
   801        firewalls, and more.
   802    * **New Provider: `mailgun`**: Manage mailgun domains.
   803    * **New Function: `concat`**: Concatenate multiple strings together.
   804      Example: `concat(var.region, "-", var.channel)`.
   805  
   806  IMPROVEMENTS:
   807  
   808    * core: "~/.terraformrc" (Unix) or "%APPDATA%/terraform.rc" (Windows)
   809      can be used to configure custom providers and provisioners. [GH-192]
   810    * providers/aws: EIPs now expose `allocation_id` and `public_ip`
   811        attributes.
   812    * providers/aws: Security group rules can be updated without a
   813        destroy/create.
   814    * providers/aws: You can enable and disable dns settings for VPCs. [GH-172]
   815    * providers/aws: Can specify a private IP address for `aws_instance` [GH-217]
   816  
   817  BUG FIXES:
   818  
   819    * core: Variables are validated to not contain interpolations. [GH-180]
   820    * core: Key files for provisioning can now contain `~` and will be expanded
   821        to the user's home directory. [GH-179]
   822    * core: The `file()` function can load files in sub-directories. [GH-213]
   823    * core: Fix issue where some JSON structures didn't map properly into
   824       Terraform structures. [GH-177]
   825    * core: Resources with only `file()` calls will interpolate. [GH-159]
   826    * core: Variables work in block names. [GH-234]
   827    * core: Plugins are searched for in the same directory as the executable
   828        before the PATH. [GH-157]
   829    * command/apply: "tfvars" file no longer interferes with plan apply. [GH-153]
   830    * providers/aws: Fix issues around failing to read EIPs. [GH-122]
   831    * providers/aws: Autoscaling groups now register and export load
   832      balancers. [GH-207]
   833    * providers/aws: Ingress results are treated as a set, so order doesn't
   834        matter anymore. [GH-87]
   835    * providers/aws: Instance security groups treated as a set [GH-194]
   836    * providers/aws: Retry Route53 requests if operation failed because another
   837        operation is in progress [GH-183]
   838    * providers/aws: Route53 records with multiple record values work. [GH-221]
   839    * providers/aws: Changing AMI doesn't result in errors anymore. [GH-196]
   840    * providers/heroku: If you delete the `config_vars` block, config vars
   841        are properly nuked.
   842    * providers/heroku: Domains and drains are deleted before the app.
   843    * providers/heroku: Moved from the client library bgentry/heroku-go to
   844        cyberdelia/heroku-go [GH-239].
   845    * providers/heroku: Plans without a specific plan name for
   846        heroku\_addon work. [GH-198]
   847  
   848  PLUGIN CHANGES:
   849  
   850    * **New Package:** `helper/schema`. This introduces a high-level framework
   851      for easily writing new providers and resources. The Heroku provider has
   852      been converted to this as an example.
   853  
   854  ## 0.1.1 (August 5, 2014)
   855  
   856  FEATURES:
   857  
   858    * providers/heroku: Now supports creating Heroku Drains [GH-97]
   859  
   860  IMPROVEMENTS:
   861  
   862    * providers/aws: Launch configurations accept user data [GH-94]
   863    * providers/aws: Regions are now validated [GH-96]
   864    * providers/aws: ELB now supports health check configurations [GH-109]
   865  
   866  BUG FIXES:
   867  
   868    * core: Default variable file "terraform.tfvars" is auto-loaded. [GH-59]
   869    * core: Multi-variables (`foo.*.bar`) work even when `count = 1`. [GH-115]
   870    * core: `file()` function can have string literal arg [GH-145]
   871    * providers/cloudflare: Include the proper bins so the cloudflare
   872        provider is compiled
   873    * providers/aws: Engine version for RDS now properly set [GH-118]
   874    * providers/aws: Security groups now depend on each other and
   875    * providers/aws: DB instances now wait for destroys, have proper
   876        dependencies and allow passing skip_final_snapshot
   877    * providers/aws: Add associate_public_ip_address as an attribute on
   878        the aws_instance resource [GH-85]
   879    * providers/aws: Fix cidr blocks being updated [GH-65, GH-85]
   880    * providers/aws: Description is now required for security groups
   881    * providers/digitalocean: Private IP addresses are now a separate
   882        attribute
   883    * provisioner/all: If an SSH key is given with a password, a better
   884        error message is shown. [GH-73]
   885  
   886  ## 0.1.0 (July 28, 2014)
   887  
   888    * Initial release