github.com/jonasi/terraform@v0.6.10-0.20160125170522-e865c342cc1f/CHANGELOG.md (about)

     1  ## 0.6.10 (Unreleased)
     2  
     3  BACKWARDS INCOMPATIBILITIES:
     4  
     5   * The `-module-depth` flag available on `plan`, `apply`, `show`, and `graph` now defaults to `-1`, causing
     6     resources within modules to be expanded in command output. This is only a cosmetic change; it does not affect
     7     any behavior.
     8   * This release includes a bugfix for `$${}` interpolation escaping. These strings are now properly converted to `${}`
     9     during interpolation. This may cause diffs on existing configurations in certain cases.
    10  
    11  FEATURES:
    12  
    13    * **New resource: `azurerm_cdn_endpoint`** [GH-4759]
    14    * **New resource: `azurerm_cdn_profile`** [GH-4740]
    15    * **New resource: `azurerm_network_security_rule`** [GH-4586]
    16    * **New resource: `azurerm_subnet`** [GH-4595]
    17    * **New resource: `azurerm_network_interface`** [GH-4598]
    18    * **New resource: `azurerm_route_table`** [GH-4602]
    19    * **New resource: `azurerm_route`** [GH-4604]
    20    * **New resource: `azurerm_storage_account`** [GH-4698]
    21    * **New resource: `aws_lambda_alias`** [GH-4664]
    22    * **New resource: `aws_redshift_cluster`** [GH-3862]
    23    * **New resource: `aws_redshift_security_group`** [GH-3862]
    24    * **New resource: `aws_redshift_parameter_group`** [GH-3862]
    25    * **New resource: `aws_redshift_subnet_group`** [GH-3862]
    26    * **New resource: `docker_network`** [GH-4483]
    27    * **New resource: `docker_volume`** [GH-4483]
    28    * **New resource: `google_sql_user`** [GH-4669]
    29  
    30  IMPROVEMENTS:
    31  
    32    * core: Add `sha256()` interpolation function [GH-4704]
    33    * core: Validate lifecycle keys to show helpful error messages whe they are mistypes [GH-4745]
    34    * core: Default `module-depth` parameter to `-1`, which expands resources within modules in command output [GH-4763]
    35    * core: Variable types may now be specified explicitly using the `type` argument [GH-4795]
    36    * provider/aws: Add new parameters `az_mode` and `availability_zone(s)` in ElastiCache [GH-4631]
    37    * provider/aws: Allow ap-northeast-2 (Seoul) as valid region [GH-4637]
    38    * provider/aws: Limit SNS Topic Subscription protocols [GH-4639]
    39    * provider/aws: Add support for configuring logging on `aws_s3_bucket` resources [GH-4482]
    40    * provider/aws: Add AWS Classiclink for AWS VPC resource [GH-3994]
    41    * provider/aws: Supporting New AWS Route53 HealthCheck additions [GH-4564]
    42    * provider/aws: Store instance state [GH-3261]
    43    * provider/aws: Add support for updating ELB availability zones and subnets [GH-4597]
    44    * provider/aws: Enable specifying aws s3 redirect protocol [GH-4098]
    45    * provider/aws: Added support for `encrypted` on `ebs_block_devices` in Launch Configurations [GH-4481]
    46    * provider/aws: Add support for creating Managed Microsoft Active Directory 
    47      and Directory Connectors [GH-4388]
    48    * provider/aws: Mark some `aws_db_instance` fields as optional [GH-3138]
    49    * provider/digitalocean: Add support for reassigning `digitalocean_floating_ip` resources [GH-4476]
    50    * provider/dme: Add support for Global Traffic Director locations on `dme_record` resources [GH-4305]
    51    * provider/docker: Add support for adding host entries on `docker_container` resources [GH-3463]
    52    * provider/docker: Add support for mounting named volumes on `docker_container` resources [GH-4480]
    53    * provider/google: Add content field to bucket object [GH-3893]
    54    * provider/google: Add support for  `named_port` blocks on `google_compute_instance_group_manager` resources [GH-4605]
    55    * provider/openstack: Add "personality" support to instance resource [GH-4623]
    56    * provider/packet: Handle external state changes for Packet resources gracefully [GH-4676]
    57    * provider/tls: `tls_private_key` now exports attributes with public key in both PEM and OpenSSH format [GH-4606]
    58    * state/remote: Allow KMS Key Encryption to be used with S3 backend [GH-2903]
    59  
    60  BUG FIXES:
    61  
    62    * core: Fix handling of literals with escaped interpolations `$${var}` [GH-4747]
    63    * core: Fix diff mismatch when RequiresNew field and list both change [GH-4749]
    64    * core: Respect module target path argument on `terraform init` [GH-4753]
    65    * core: Write planfile even on empty plans [GH-4766]
    66    * core: Add validation error when output is missing value field [GH-4762]
    67    * core: Fix improper handling of orphan resources when targeting [GH-4574]
    68    * config: Detect a specific JSON edge case and show a helpful workaround [GH-4746]
    69    * provider/openstack: Ensure valid Security Group Rule attribute combination [GH-4466]
    70    * provider/openstack: Don't put fixed_ip in port creation request if not defined [GH-4617]
    71    * provider/google: Clarify SQL Database Instance recent name restriction [GH-4577]
    72    * provider/google: Split Instance network interface into two fields [GH-4265]
    73    * provider/aws: Error with empty list item on security group [GH-4140]
    74    * provider/aws: Trap Instance error from mismatched SG IDs and Names [GH-4240]
    75    * provider/aws: EBS optimised to force new resource in AWS Instance [GH-4627]
    76    * provider/aws: Wait for NACL rule to be visible [GH-4734]
    77    * provider/aws: `default_result` on `aws_autoscaling_lifecycle_hook` resources is now computed [GH-4695]
    78    * provider/mailgun: Handle the fact that the domain destroy API is eventually consistent [GH-4777]
    79    * provider/template: Fix race causing sporadic crashes in template_file with count > 1 [GH-4694]
    80    * provider/template: Add support for updating `template_cloudinit_config` resources [GH-4757]
    81  
    82  ## 0.6.9 (January 8, 2016)
    83  
    84  FEATURES:
    85  
    86    * **New provider: `vcd` - VMware vCloud Director** [GH-3785]
    87    * **New provider: `postgresql` - Create PostgreSQL databases and roles** [GH-3653]
    88    * **New provider: `chef` - Create chef environments, roles, etc** [GH-3084]
    89    * **New provider: `azurerm` - Preliminary support for Azure Resource Manager** [GH-4226]
    90    * **New provider: `mysql` - Create MySQL databases** [GH-3122]
    91    * **New resource: `aws_autoscaling_schedule`** [GH-4256]
    92    * **New resource: `aws_nat_gateway`** [GH-4381]
    93    * **New resource: `aws_network_acl_rule`** [GH-4286]
    94    * **New resources: `aws_ecr_repository` and `aws_ecr_repository_policy`** [GH-4415]
    95    * **New resource: `google_pubsub_topic`** [GH-3671]
    96    * **New resource: `google_pubsub_subscription`** [GH-3671]
    97    * **New resource: `template_cloudinit_config`** [GH-4095]
    98    * **New resource: `tls_locally_signed_cert`** [GH-3930]
    99    * **New remote state backend: `artifactory`** [GH-3684]
   100  
   101  IMPROVEMENTS:
   102  
   103    * core: Change set internals for performance improvements [GH-3992]
   104    * core: Support HTTP basic auth in consul remote state [GH-4166]
   105    * core: Improve error message on resource arity mismatch [GH-4244]
   106    * core: Add support for unary operators + and - to the interpolation syntax [GH-3621]
   107    * core: Add SSH agent support for Windows [GH-4323]
   108    * core: Add `sha1()` interpolation function [GH-4450]
   109    * provider/aws: Add `placement_group` as an option for `aws_autoscaling_group` [GH-3704]
   110    * provider/aws: Add support for DynamoDB Table StreamSpecifications [GH-4208]
   111    * provider/aws: Add `name_prefix` to Security Groups [GH-4167]
   112    * provider/aws: Add support for removing nodes to `aws_elasticache_cluster` [GH-3809]
   113    * provider/aws: Add support for `skip_final_snapshot` to `aws_db_instance` [GH-3853]
   114    * provider/aws: Adding support for Tags to DB SecurityGroup [GH-4260]
   115    * provider/aws: Adding Tag support for DB Param Groups [GH-4259]
   116    * provider/aws: Fix issue with updated route ids for VPC Endpoints [GH-4264]
   117    * provider/aws: Added measure_latency option to Route 53 Health Check resource [GH-3688]
   118    * provider/aws: Validate IOPs for EBS Volumes [GH-4146]
   119    * provider/aws: DB Subnet group arn output [GH-4261]
   120    * provider/aws: Get full Kinesis streams view with pagination [GH-4368]
   121    * provider/aws: Allow changing private IPs for ENIs [GH-4307]
   122    * provider/aws: Retry MalformedPolicy errors due to newly created principals in S3 Buckets [GH-4315]
   123    * provider/aws: Validate `name` on `db_subnet_group` against AWS requirements [GH-4340]
   124    * provider/aws: wait for ASG capacity on update [GH-3947]
   125    * provider/aws: Add validation for ECR repository name [GH-4431]
   126    * provider/cloudstack: performance improvements [GH-4150]
   127    * provider/docker: Add support for setting the entry point on `docker_container` resources [GH-3761]
   128    * provider/docker: Add support for setting the restart policy on `docker_container` resources [GH-3761]
   129    * provider/docker: Add support for setting memory, swap and CPU shares on `docker_container` resources [GH-3761]
   130    * provider/docker: Add support for setting labels on `docker_container` resources [GH-3761]
   131    * provider/docker: Add support for setting log driver and options on `docker_container` resources [GH-3761]
   132    * provider/docker: Add support for settings network mode on `docker_container` resources [GH-4475]
   133    * provider/heroku: Improve handling of Applications within an Organization [GH-4495]
   134    * provider/vsphere: Add support for custom vm params on `vsphere_virtual_machine` [GH-3867]
   135    * provider/vsphere: Rename vcenter_server config parameter to something clearer [GH-3718]
   136    * provider/vsphere: Make allow_unverified_ssl a configuable on the provider [GH-3933]
   137    * provider/vsphere: Add folder handling for folder-qualified vm names [GH-3939]
   138    * provider/vsphere: Change ip_address parameter for ipv6 support [GH-4035]
   139    * provider/openstack: Increase instance timeout from 10 to 30 minutes [GH-4223]
   140    * provider/google: Add `restart_policy` attribute to `google_managed_instance_group` [GH-3892]
   141  
   142  BUG FIXES:
   143  
   144    * core: skip provider input for deprecated fields [GH-4193]
   145    * core: Fix issue which could cause fields that become empty to retain old values in the state [GH-3257]
   146    * provider/docker: Fix an issue running with Docker Swarm by looking up containers by ID instead of name [GH-4148]
   147    * provider/openstack: Better handling of load balancing resource state changes [GH-3926]
   148    * provider/aws: Treat `INACTIVE` ECS cluster as deleted [GH-4364]
   149    * provider/aws: Skip `source_security_group_id` determination logic for Classic ELBs [GH-4075]
   150    * provider/aws: Fix issue destroy Route 53 zone/record if it no longer exists [GH-4198]
   151    * provider/aws: Fix issue force destroying a versioned S3 bucket [GH-4168]
   152    * provider/aws: Update DB Replica to honor storage type [GH-4155]
   153    * provider/aws: Fix issue creating AWS RDS replicas across regions [GH-4215]
   154    * provider/aws: Fix issue with Route53 and zero weighted records [GH-4427]
   155    * provider/aws: Fix issue with iam_profile in aws_instance when a path is specified [GH-3663]
   156    * provider/aws: Refactor AWS Authentication chain to fix issue with authentication and IAM [GH-4254]
   157    * provider/aws: Fix issue with finding S3 Hosted Zone ID for eu-central-1 region [GH-4236]
   158    * provider/aws: Fix missing AMI issue with Launch Configurations [GH-4242]
   159    * provider/aws: Opsworks stack SSH key is write-only [GH-4241]
   160    * provider/aws: Update VPC Endpoint to correctly set route table ids [GH-4392]
   161    * provider/aws: Fix issue with ElasticSearch Domain `access_policies` always appear changed [GH-4245]
   162    * provider/aws: Fix issue with nil parameter group value causing panic in `aws_db_parameter_group` [GH-4318]
   163    * provider/aws: Fix issue with Elastic IPs not recognizing when they have been unassigned manually [GH-4387]
   164    * provider/aws: Use body or URL for all CloudFormation stack updates [GH-4370]
   165    * provider/aws: Fix template_url/template_body conflict [GH-4540]
   166    * provider/aws: Fix bug w/ changing ECS svc/ELB association [GH-4366]
   167    * provider/azure: Update for [breaking change to upstream client library](https://github.com/Azure/azure-sdk-for-go/commit/68d50cb53a73edfeb7f17f5e86cdc8eb359a9528). [GH-4300]
   168    * provider/digitalocean: Fix issue where a floating IP attached to a missing droplet causes a panic [GH-4214]
   169    * provider/google: Fix project metadata sshKeys from showing up and causing unnecessary diffs [GH-4512]
   170    * provider/heroku: Retry drain create until log channel is assigned [GH-4823]
   171    * provider/openstack: Handle volumes in "deleting" state [GH-4204]
   172    * provider/rundeck: Tolerate Rundeck server not returning project name when reading a job [GH-4301]
   173    * provider/vsphere: Create and attach additional disks before bootup [GH-4196]
   174    * provider/openstack: Convert block_device from a Set to a List [GH-4288]
   175    * provider/google: Terraform identifies deleted resources and handles them appropriately on Read [GH-3913]
   176  
   177  ## 0.6.8 (December 2, 2015)
   178  
   179  FEATURES:
   180  
   181    * **New provider: `statuscake`** [GH-3340]
   182    * **New resource: `digitalocean_floating_ip`** [GH-3748]
   183    * **New resource: `aws_lambda_event_source_mapping`** [GH-4093]
   184  
   185  IMPROVEMENTS:
   186  
   187    * provider/cloudstack: Reduce the number of network calls required for common operations [GH-4051]
   188    * provider/aws: Make `publically_accessible` on an `aws_db_instance` update existing instances instead of forcing new ones [GH-3895]
   189    * provider/aws: Allow `block_duration_minutes` to be set for spot instance requests [GH-4071]
   190    * provider/aws: Make setting `acl` on S3 buckets update existing buckets instead of forcing new ones [GH-4080]
   191    * provider/aws: Make updates to `assume_role_policy` modify existing IAM roles instead of forcing new ones [GH-4107]
   192  
   193  BUG FIXES:
   194  
   195    * core: Fix a bug which prevented HEREDOC syntax being used in lists [GH-4078]
   196    * core: Fix a bug which prevented HEREDOC syntax where the anchor ends in a number [GH-4128]
   197    * core: Fix a bug which prevented HEREDOC syntax being used with Windows line endings [GH-4069]
   198    * provider/aws: Fix a bug which could result in a panic when reading EC2 metadata [GH-4024]
   199    * provider/aws: Fix issue recreating security group rule if it has been destroyed [GH-4050]
   200    * provider/aws: Fix issue with some attributes in Spot Instance Requests returning as nil [GH-4132]
   201    * provider/aws: Fix issue where SPF records in Route 53 could show differences with no modification to the configuration [GH-4108]
   202    * provisioner/chef: Fix issue with path separators breaking the Chef provisioner on Windows [GH-4041]
   203  
   204  ## 0.6.7 (November 23, 2015)
   205  
   206  FEATURES:
   207  
   208    * **New provider: `tls`** - A utility provider for generating TLS keys/self-signed certificates for development and testing [GH-2778]
   209    * **New provider: `dyn`** - Manage DNS records on Dyn
   210    * **New resource: `aws_cloudformation_stack`** [GH-2636]
   211    * **New resource: `aws_cloudtrail`** [GH-3094], [GH-4010]
   212    * **New resource: `aws_route`** [GH-3548]
   213    * **New resource: `aws_codecommit_repository`** [GH-3274]
   214    * **New resource: `aws_kinesis_firehose_delivery_stream`** [GH-3833]
   215    * **New resource: `google_sql_database` and `google_sql_database_instance`** [GH-3617]
   216    * **New resource: `google_compute_global_address`** [GH-3701]
   217    * **New resource: `google_compute_https_health_check`** [GH-3883]
   218    * **New resource: `google_compute_ssl_certificate`** [GH-3723]
   219    * **New resource: `google_compute_url_map`** [GH-3722]
   220    * **New resource: `google_compute_target_http_proxy`** [GH-3727]
   221    * **New resource: `google_compute_target_https_proxy`** [GH-3728]
   222    * **New resource: `google_compute_global_forwarding_rule`** [GH-3702]
   223    * **New resource: `openstack_networking_port_v2`** [GH-3731]
   224    * New interpolation function: `coalesce` [GH-3814]
   225  
   226  IMPROVEMENTS:
   227  
   228    * core: Improve message to list only resources which will be destroyed when using `--target` [GH-3859]
   229    * connection/ssh: Accept `private_key` contents instead of paths [GH-3846]
   230    * provider/google: `preemptible` option for instance_template [GH-3667]
   231    * provider/google: Accurate Terraform Version [GH-3554]
   232    * provider/google: Simplified auth (DefaultClient support) [GH-3553]
   233    * provider/google: `automatic_restart`, `preemptible`, `on_host_maintenance` options [GH-3643]
   234    * provider/google: Read credentials as contents instead of path [GH-3901]
   235    * null_resource: Enhance and document [GH-3244, GH-3659]
   236    * provider/aws: Add CORS settings to S3 bucket [GH-3387]
   237    * provider/aws: Add notification topic ARN for ElastiCache clusters [GH-3674]
   238    * provider/aws: Add `kinesis_endpoint` for configuring Kinesis [GH-3255]
   239    * provider/aws: Add a computed ARN for S3 Buckets [GH-3685]
   240    * provider/aws: Add S3 support for Lambda Function resource [GH-3794]
   241    * provider/aws: Add `name_prefix` option to launch configurations [GH-3802]
   242    * provider/aws: Add support for group name and path changes with IAM group update function [GH-3237]
   243    * provider/aws: Provide `source_security_group_id` for ELBs inside a VPC [GH-3780]
   244    * provider/aws: Add snapshot window and retention limits for ElastiCache (Redis) [GH-3707]
   245    * provider/aws: Add username updates for `aws_iam_user` [GH-3227]
   246    * provider/aws: Add AutoMinorVersionUpgrade to RDS Instances [GH-3677]
   247    * provider/aws: Add `access_logs` to ELB resource [GH-3756]
   248    * provider/aws: Add a retry function to rescue an error in creating Autoscaling Lifecycle Hooks [GH-3694]
   249    * provider/aws: `engine_version` is now optional for DB Instance [GH-3744]
   250    * provider/aws: Add configuration to enable copying RDS tags to final snapshot [GH-3529]
   251    * provider/aws: RDS Cluster additions (`backup_retention_period`, `preferred_backup_window`, `preferred_maintenance_window`) [GH-3757]
   252    * provider/aws: Document and validate ELB `ssl_certificate_id` and protocol requirements [GH-3887]
   253    * provider/azure: Read `publish_settings` as contents instead of path [GH-3899]
   254    * provider/openstack: Use IPv4 as the default IP version for subnets [GH-3091]
   255    * provider/aws: Apply security group after restoring `db_instance` from snapshot [GH-3513]
   256    * provider/aws: Make the AutoScalingGroup `name` optional [GH-3710]
   257    * provider/openstack: Add "delete on termination" boot-from-volume option [GH-3232]
   258    * provider/digitalocean: Make `user_data` force a new droplet [GH-3740]
   259    * provider/vsphere: Do not add network interfaces by default [GH-3652]
   260    * provider/openstack: Configure Fixed IPs through ports [GH-3772]
   261    * provider/openstack: Specify a port ID on a Router Interface [GH-3903]
   262    * provider/openstack: Make LBaaS Virtual IP computed [GH-3927]
   263  
   264  BUG FIXES:
   265  
   266    * `terraform remote config`: update `--help` output [GH-3632]
   267    * core: Modules on Git branches now update properly [GH-1568]
   268    * core: Fix issue preventing input prompts for unset variables during plan [GH-3843]
   269    * core: Fix issue preventing input prompts for unset variables during refresh [GH-4017]
   270    * core: Orphan resources can now be targets [GH-3912]
   271    * helper/schema: Skip StateFunc when value is nil [GH-4002]
   272    * provider/google: Timeout when deleting large `instance_group_manager` [GH-3591]
   273    * provider/aws: Fix issue with order of Termination Policies in AutoScaling Groups.
   274        This will introduce plans on upgrade to this version, in order to correct the ordering [GH-2890]
   275    * provider/aws: Allow cluster name, not only ARN for `aws_ecs_service` [GH-3668]
   276    * provider/aws: Fix a bug where a non-lower-cased `maintenance_window` can cause unnecessary planned changes [GH-4020]
   277    * provider/aws: Only set `weight` on an `aws_route53_record` if it has been set in configuration [GH-3900]
   278    * provider/aws: Ignore association not existing on route table destroy [GH-3615]
   279    * provider/aws: Fix policy encoding issue with SNS Topics [GH-3700]
   280    * provider/aws: Correctly export ARN in `aws_iam_saml_provider` [GH-3827]
   281    * provider/aws: Fix issue deleting users who are attached to a group [GH-4005]
   282    * provider/aws: Fix crash in Route53 Record if Zone not found [GH-3945]
   283    * provider/aws: Retry deleting IAM Server Cert on dependency violation [GH-3898]
   284    * provider/aws: Update Spot Instance request to provide connection information [GH-3940]
   285    * provider/aws: Fix typo in error checking for IAM Policy Attachments [GH-3970]
   286    * provider/aws: Fix issue with LB Cookie Stickiness and empty expiration period [GH-3908]
   287    * provider/aws: Tolerate ElastiCache clusters being deleted outside Terraform [GH-3767]
   288    * provider/aws: Downcase Route 53 record names in state file to match API output [GH-3574]
   289    * provider/aws: Fix issue that could occur if no ECS Cluster was found for a given name [GH-3829]
   290    * provider/aws: Fix issue with SNS topic policy if omitted [GH-3777]
   291    * provider/aws: Support scratch volumes in `aws_ecs_task_definition` [GH-3810]
   292    * provider/aws: Treat `aws_ecs_service` w/ Status==INACTIVE as deleted [GH-3828]
   293    * provider/aws: Expand ~ to homedir in `aws_s3_bucket_object.source` [GH-3910]
   294    * provider/aws: Fix issue with updating the `aws_ecs_task_definition` where `aws_ecs_service` didn't wait for a new computed ARN [GH-3924]
   295    * provider/aws: Prevent crashing when deleting `aws_ecs_service` that is already gone [GH-3914]
   296    * provider/aws: Allow spaces in `aws_db_subnet_group.name` (undocumented in the API) [GH-3955]
   297    * provider/aws: Make VPC ID required on subnets [GH-4021]
   298    * provider/azure: Various bug fixes [GH-3695]
   299    * provider/digitalocean: Fix issue preventing SSH fingerprints from working [GH-3633]
   300    * provider/digitalocean: Fix the DigitalOcean Droplet 404 potential on refresh of state [GH-3768]
   301    * provider/openstack: Fix several issues causing unresolvable diffs [GH-3440]
   302    * provider/openstack: Safely delete security groups [GH-3696]
   303    * provider/openstack: Ignore order of `security_groups` in instance [GH-3651]
   304    * provider/vsphere: Fix d.SetConnInfo error in case of a missing IP address [GH-3636]
   305    * provider/openstack: Fix boot from volume [GH-3206]
   306    * provider/openstack: Fix crashing when image is no longer accessible [GH-2189]
   307    * provider/openstack: Better handling of network resource state changes [GH-3712]
   308    * provider/openstack: Fix crashing when no security group is specified [GH-3801]
   309    * provider/packet: Fix issue that could cause errors when provisioning many devices at once [GH-3847]
   310    * provider/packet: Fix connection information for devices, allowing provisioners to run [GH-3948]
   311    * provider/openstack: Fix issue preventing security group rules from being removed [GH-3796]
   312    * provider/template: `template_file`: source contents instead of path [GH-3909]
   313  
   314  ## 0.6.6 (October 23, 2015)
   315  
   316  FEATURES:
   317  
   318    * New interpolation functions: `cidrhost`, `cidrnetmask` and `cidrsubnet` [GH-3127]
   319  
   320  IMPROVEMENTS:
   321  
   322    * "forces new resource" now highlighted in plan output [GH-3136]
   323  
   324  BUG FIXES:
   325  
   326    * helper/schema: Better error message for assigning list/map to string [GH-3009]
   327    * remote/state/atlas: Additional remote state conflict handling for semantically neutral state changes [GH-3603]
   328  
   329  ## 0.6.5 (October 21, 2015)
   330  
   331  FEATURES:
   332  
   333    * **New resources: `aws_codeploy_app` and `aws_codeploy_deployment_group`** [GH-2783]
   334    * New remote state backend: `etcd` [GH-3487]
   335    * New interpolation functions: `upper` and `lower` [GH-3558]
   336  
   337  BUG FIXES:
   338  
   339    * core: Fix remote state conflicts caused by ambiguity in ordering of deeply nested modules [GH-3573]
   340    * core: Fix remote state conflicts caused by state metadata differences [GH-3569]
   341    * core: Avoid using http.DefaultClient [GH-3532]
   342  
   343  INTERNAL IMPROVEMENTS:
   344  
   345    * provider/digitalocean: use official Go client [GH-3333]
   346    * core: extract module fetching to external library [GH-3516]
   347  
   348  ## 0.6.4 (October 15, 2015)
   349  
   350  FEATURES:
   351  
   352    * **New provider: `rundeck`** [GH-2412]
   353    * **New provider: `packet`** [GH-2260], [GH-3472]
   354    * **New provider: `vsphere`**: Initial support for a VM resource [GH-3419]
   355    * **New resource: `cloudstack_loadbalancer_rule`** [GH-2934]
   356    * **New resource: `google_compute_project_metadata`** [GH-3065]
   357    * **New resources: `aws_ami`, `aws_ami_copy`, `aws_ami_from_instance`** [GH-2784]
   358    * **New resources: `aws_cloudwatch_log_group`** [GH-2415]
   359    * **New resource: `google_storage_bucket_object`** [GH-3192]
   360    * **New resources: `google_compute_vpn_gateway`, `google_compute_vpn_tunnel`** [GH-3213]
   361    * **New resources: `google_storage_bucket_acl`, `google_storage_object_acl`** [GH-3272]
   362    * **New resource: `aws_iam_saml_provider`** [GH-3156]
   363    * **New resources: `aws_efs_file_system` and `aws_efs_mount_target`** [GH-2196]
   364    * **New resources: `aws_opsworks_*`** [GH-2162]
   365    * **New resource: `aws_elasticsearch_domain`** [GH-3443]
   366    * **New resource: `aws_directory_service_directory`** [GH-3228]
   367    * **New resource: `aws_autoscaling_lifecycle_hook`** [GH-3351]
   368    * **New resource: `aws_placement_group`** [GH-3457]
   369    * **New resource: `aws_glacier_vault`** [GH-3491]
   370    * **New lifecycle flag: `ignore_changes`** [GH-2525]
   371  
   372  IMPROVEMENTS:
   373  
   374    * core: Add a function to find the index of an element in a list. [GH-2704]
   375    * core: Print all outputs when `terraform output` is called with no arguments [GH-2920]
   376    * core: In plan output summary, count resource replacement as Add/Remove instead of Change [GH-3173]
   377    * core: Add interpolation functions for base64 encoding and decoding. [GH-3325]
   378    * core: Expose parallelism as a CLI option instead of a hard-coding the default of 10 [GH-3365]
   379    * core: Add interpolation function `compact`, to remove empty elements from a list. [GH-3239], [GH-3479]
   380    * core: Allow filtering of log output by level, using e.g. ``TF_LOG=INFO`` [GH-3380]
   381    * provider/aws: Add `instance_initiated_shutdown_behavior` to AWS Instance [GH-2887]
   382    * provider/aws: Support IAM role names (previously just ARNs) in `aws_ecs_service.iam_role` [GH-3061]
   383    * provider/aws: Add update method to RDS Subnet groups, can modify subnets without recreating  [GH-3053]
   384    * provider/aws: Paginate notifications returned for ASG Notifications [GH-3043]
   385    * provider/aws: Adds additional S3 Bucket Object inputs [GH-3265]
   386    * provider/aws: add `ses_smtp_password` to `aws_iam_access_key` [GH-3165]
   387    * provider/aws: read `iam_instance_profile` for `aws_instance` and save to state [GH-3167]
   388    * provider/aws: allow `instance` to be computed in `aws_eip` [GH-3036]
   389    * provider/aws: Add `versioning` option to `aws_s3_bucket` [GH-2942]
   390    * provider/aws: Add `configuation_endpoint` to `aws_elasticache_cluster` [GH-3250]
   391    * provider/aws: Add validation for `app_cookie_stickiness_policy.name` [GH-3277]
   392    * provider/aws: Add validation for `db_parameter_group.name` [GH-3279]
   393    * provider/aws: Set DynamoDB Table ARN after creation [GH-3500]
   394    * provider/aws: `aws_s3_bucket_object` allows interpolated content to be set with new `content` attribute. [GH-3200]
   395    * provider/aws: Allow tags for `aws_kinesis_stream` resource. [GH-3397]
   396    * provider/aws: Configurable capacity waiting duration for ASGs [GH-3191]
   397    * provider/aws: Allow non-persistent Spot Requests [GH-3311]
   398    * provider/aws: Support tags for AWS DB subnet group [GH-3138]
   399    * provider/cloudstack: Add `project` parameter to `cloudstack_vpc`, `cloudstack_network`, `cloudstack_ipaddress` and `cloudstack_disk` [GH-3035]
   400    * provider/openstack: add functionality to attach FloatingIP to Port [GH-1788]
   401    * provider/google: Can now do multi-region deployments without using multiple providers [GH-3258]
   402    * remote/s3: Allow canned ACLs to be set on state objects. [GH-3233]
   403    * remote/s3: Remote state is stored in S3 with `Content-Type: application/json` [GH-3385]
   404  
   405  BUG FIXES:
   406  
   407    * core: Fix problems referencing list attributes in interpolations [GH-2157]
   408    * core: don't error on computed value during input walk [GH-2988]
   409    * core: Ignore missing variables during destroy phase [GH-3393]
   410    * provider/google: Crashes with interface conversion in GCE Instance Template [GH-3027]
   411    * provider/google: Convert int to int64 when building the GKE cluster.NodeConfig struct [GH-2978]
   412    * provider/google: google_compute_instance_template.network_interface.network should be a URL [GH-3226]
   413    * provider/aws: Retry creation of `aws_ecs_service` if IAM policy isn't ready yet [GH-3061]
   414    * provider/aws: Fix issue with mixed capitalization for RDS Instances  [GH-3053]
   415    * provider/aws: Fix issue with RDS to allow major version upgrades [GH-3053]
   416    * provider/aws: Fix shard_count in `aws_kinesis_stream` [GH-2986]
   417    * provider/aws: Fix issue with `key_name` and using VPCs with spot instance requests [GH-2954]
   418    * provider/aws: Fix unresolvable diffs coming from `aws_elasticache_cluster` names being downcased
   419        by AWS [GH-3120]
   420    * provider/aws: Read instance source_dest_check and save to state [GH-3152]
   421    * provider/aws: Allow `weight = 0` in Route53 records [GH-3196]
   422    * provider/aws: Normalize aws_elasticache_cluster id to lowercase, allowing convergence. [GH-3235]
   423    * provider/aws: Fix ValidateAccountId for IAM Instance Profiles [GH-3313]
   424    * provider/aws: Update Security Group Rules to Version 2 [GH-3019]
   425    * provider/aws: Migrate KeyPair to version 1, fixing issue with using `file()` [GH-3470]
   426    * provider/aws: Fix force_delete on autoscaling groups [GH-3485]
   427    * provider/aws: Fix crash with VPC Peering connections [GH-3490]
   428    * provider/aws: fix bug with reading GSIs from dynamodb [GH-3300]
   429    * provider/docker: Fix issue preventing private images from being referenced [GH-2619]
   430    * provider/digitalocean: Fix issue causing unnecessary diffs based on droplet slugsize case [GH-3284]
   431    * provider/openstack: add state 'downloading' to list of expected states in
   432        `blockstorage_volume_v1` creation [GH-2866]
   433    * provider/openstack: remove security groups (by name) before adding security
   434        groups (by id) [GH-2008]
   435  
   436  INTERNAL IMPROVEMENTS:
   437  
   438    * core: Makefile target "plugin-dev" for building just one plugin. [GH-3229]
   439    * helper/schema: Don't allow ``Update`` func if no attributes can actually be updated, per schema. [GH-3288]
   440    * helper/schema: Default hashing function for sets [GH-3018]
   441    * helper/multierror: Remove in favor of [github.com/hashicorp/go-multierror](http://github.com/hashicorp/go-multierror). [GH-3336]
   442  
   443  ## 0.6.3 (August 11, 2015)
   444  
   445  BUG FIXES:
   446  
   447    * core: Skip all descendents after error, not just children; helps prevent confusing
   448        additional errors/crashes after initial failure [GH-2963]
   449    * core: fix deadlock possibility when both a module and a dependent resource are
   450        removed in the same run [GH-2968]
   451    * provider/aws: Fix issue with authenticating when using IAM profiles [GH-2959]
   452  
   453  ## 0.6.2 (August 6, 2015)
   454  
   455  FEATURES:
   456  
   457    * **New resource: `google_compute_instance_group_manager`** [GH-2868]
   458    * **New resource: `google_compute_autoscaler`** [GH-2868]
   459    * **New resource: `aws_s3_bucket_object`** [GH-2898]
   460  
   461  IMPROVEMENTS:
   462  
   463    * core: Add resource IDs to errors coming from `apply`/`refresh` [GH-2815]
   464    * provider/aws: Validate credentials before walking the graph [GH-2730]
   465    * provider/aws: Added website_domain for S3 buckets [GH-2210]
   466    * provider/aws: ELB names are now optional, and generated by Terraform if omitted [GH-2571]
   467    * provider/aws: Downcase RDS engine names to prevent continuous diffs [GH-2745]
   468    * provider/aws: Added `source_dest_check` attribute to the aws_network_interface [GH-2741]
   469    * provider/aws: Clean up externally removed Launch Configurations [GH-2806]
   470    * provider/aws: Allow configuration of the DynamoDB Endpoint [GH-2825]
   471    * provider/aws: Compute private ip addresses of ENIs if they are not specified [GH-2743]
   472    * provider/aws: Add `arn` attribute for DynamoDB tables [GH-2924]
   473    * provider/aws: Fail silently when account validation fails while from instance profile [GH-3001]
   474    * provider/azure: Allow `settings_file` to accept XML string [GH-2922]
   475    * provider/azure: Provide a simpler error when using a Platform Image without a
   476        Storage Service [GH-2861]
   477    * provider/google: `account_file` is now expected to be JSON. Paths are still supported for
   478        backwards compatibility. [GH-2839]
   479  
   480  BUG FIXES:
   481  
   482    * core: Prevent error duplication in `apply` [GH-2815]
   483    * core: Fix crash when  a provider validation adds a warning [GH-2878]
   484    * provider/aws: Fix issue with toggling monitoring in AWS Instances [GH-2794]
   485    * provider/aws: Fix issue with Spot Instance Requests and cancellation [GH-2805]
   486    * provider/aws: Fix issue with checking for ElastiCache cluster cache node status [GH-2842]
   487    * provider/aws: Fix issue when unable to find a Root Block Device name of an Instance Backed
   488        AMI [GH-2646]
   489    * provider/dnsimple: Domain and type should force new records [GH-2777]
   490    * provider/aws: Fix issue with IAM Server Certificates and Chains [GH-2871]
   491    * provider/aws: Fix issue with IAM Server Certificates when using `path` [GH-2871]
   492    * provider/aws: Fix issue in Security Group Rules when the Security Group is not found [GH-2897]
   493    * provider/aws: allow external ENI attachments [GH-2943]
   494    * provider/aws: Fix issue with S3 Buckets, and throwing an error when not found [GH-2925]
   495  
   496  ## 0.6.1 (July 20, 2015)
   497  
   498  FEATURES:
   499  
   500    * **New resource: `google_container_cluster`** [GH-2357]
   501    * **New resource: `aws_vpc_endpoint`** [GH-2695]
   502  
   503  IMPROVEMENTS:
   504  
   505    * connection/ssh: Print SSH bastion host details to output [GH-2684]
   506    * provider/aws: Create RDS databases from snapshots [GH-2062]
   507    * provider/aws: Add support for restoring from Redis backup stored in S3 [GH-2634]
   508    * provider/aws: Add `maintenance_window` to ElastiCache cluster [GH-2642]
   509    * provider/aws: Availability Zones are optional when specifying VPC Zone Identifiers in
   510        Auto Scaling Groups updates [GH-2724]
   511    * provider/google: Add metadata_startup_script to google_compute_instance [GH-2375]
   512  
   513  BUG FIXES:
   514  
   515    * core: Don't prompt for variables with defaults [GH-2613]
   516    * core: Return correct number of planned updates [GH-2620]
   517    * core: Fix "provider not found" error that can occur while running
   518        a destroy plan with grandchildren modules [GH-2755]
   519    * core: Fix UUID showing up in diff for computed splat (`foo.*.bar`)
   520        variables. [GH-2788]
   521    * core: Orphan modules that contain no resources (only other modules)
   522        are properly destroyed up to arbitrary depth [GH-2786]
   523    * core: Fix "attribute not available" during destroy plans in
   524        cases where the parameter is passed between modules [GH-2775]
   525    * core: Record schema version when destroy fails [GH-2923]
   526    * connection/ssh: fix issue on machines with an SSH Agent available
   527      preventing `key_file` from being read without explicitly
   528      setting `agent = false` [GH-2615]
   529    * provider/aws: Allow uppercase characters in `aws_elb.name` [GH-2580]
   530    * provider/aws: Allow underscores in `aws_db_subnet_group.name` (undocumented by AWS) [GH-2604]
   531    * provider/aws: Allow dots in `aws_db_subnet_group.name` (undocumented by AWS) [GH-2665]
   532    * provider/aws: Fix issue with pending Spot Instance requests [GH-2640]
   533    * provider/aws: Fix issue in AWS Classic environment with referencing external
   534        Security Groups [GH-2644]
   535    * provider/aws: Bump internet gateway detach timeout [GH-2669]
   536    * provider/aws: Fix issue with detecting differences in DB Parameters [GH-2728]
   537    * provider/aws: `ecs_cluster` rename (recreation) and deletion is handled correctly [GH-2698]
   538    * provider/aws: `aws_route_table` ignores routes generated for VPC endpoints [GH-2695]
   539    * provider/aws: Fix issue with Launch Configurations and enable_monitoring [GH-2735]
   540    * provider/openstack: allow empty api_key and endpoint_type [GH-2626]
   541    * provisioner/chef: Fix permission denied error with ohai hints [GH-2781]
   542  
   543  ## 0.6.0 (June 30, 2015)
   544  
   545  BACKWARDS INCOMPATIBILITIES:
   546  
   547   * command/push: If a variable is already set within Atlas, it won't be
   548       updated unless the `-overwrite` flag is present [GH-2373]
   549   * connection/ssh: The `agent` field now defaults to `true` if
   550       the `SSH_AGENT_SOCK` environment variable is present. In other words,
   551       `ssh-agent` support is now opt-out instead of opt-in functionality. [GH-2408]
   552   * provider/aws: If you were setting access and secret key to blank ("")
   553       to force Terraform to load credentials from another source such as the
   554       EC2 role, this will now error. Remove the blank lines and Terraform
   555       will load from other sources.
   556   * `concat()` has been repurposed to combine lists instead of strings (old behavior
   557       of joining strings is maintained in this version but is deprecated, strings
   558       should be combined using interpolation syntax, like "${var.foo}{var.bar}")
   559       [GH-1790]
   560  
   561  FEATURES:
   562  
   563    * **New provider: `azure`** [GH-2052, GH-2053, GH-2372, GH-2380, GH-2394, GH-2515, GH-2530, GH-2562]
   564    * **New resource: `aws_autoscaling_notification`** [GH-2197]
   565    * **New resource: `aws_autoscaling_policy`** [GH-2201]
   566    * **New resource: `aws_cloudwatch_metric_alarm`** [GH-2201]
   567    * **New resource: `aws_dynamodb_table`** [GH-2121]
   568    * **New resource: `aws_ecs_cluster`** [GH-1803]
   569    * **New resource: `aws_ecs_service`** [GH-1803]
   570    * **New resource: `aws_ecs_task_definition`** [GH-1803, GH-2402]
   571    * **New resource: `aws_elasticache_parameter_group`** [GH-2276]
   572    * **New resource: `aws_flow_log`** [GH-2384]
   573    * **New resource: `aws_iam_group_association`** [GH-2273]
   574    * **New resource: `aws_iam_policy_attachment`** [GH-2395]
   575    * **New resource: `aws_lambda_function`** [GH-2170]
   576    * **New resource: `aws_route53_delegation_set`** [GH-1999]
   577    * **New resource: `aws_route53_health_check`** [GH-2226]
   578    * **New resource: `aws_spot_instance_request`** [GH-2263]
   579    * **New resource: `cloudstack_ssh_keypair`** [GH-2004]
   580    * **New remote state backend: `swift`**: You can now store remote state in
   581       a OpenStack Swift. [GH-2254]
   582    * command/output: support display of module outputs [GH-2102]
   583    * core: `keys()` and `values()` funcs for map variables [GH-2198]
   584    * connection/ssh: SSH bastion host support and ssh-agent forwarding [GH-2425]
   585  
   586  IMPROVEMENTS:
   587  
   588    * core: HTTP remote state now accepts `skip_cert_verification`
   589        option to ignore TLS cert verification. [GH-2214]
   590    * core: S3 remote state now accepts the 'encrypt' option for SSE [GH-2405]
   591    * core: `plan` now reports sum of resources to be changed/created/destroyed [GH-2458]
   592    * core: Change string list representation so we can distinguish empty, single
   593        element lists [GH-2504]
   594    * core: Properly close provider and provisioner plugin connections [GH-2406, GH-2527]
   595    * provider/aws: AutoScaling groups now support updating Load Balancers without
   596        recreation [GH-2472]
   597    * provider/aws: Allow more in-place updates for ElastiCache cluster without recreating
   598        [GH-2469]
   599    * provider/aws: ElastiCache Subnet Groups can be updated
   600        without destroying first [GH-2191]
   601    * provider/aws: Normalize `certificate_chain` in `aws_iam_server_certificate` to
   602        prevent unnecessary replacement. [GH-2411]
   603    * provider/aws: `aws_instance` supports `monitoring' [GH-2489]
   604    * provider/aws: `aws_launch_configuration` now supports `enable_monitoring` [GH-2410]
   605    * provider/aws: Show outputs after `terraform refresh` [GH-2347]
   606    * provider/aws: Add backoff/throttling during DynamoDB creation [GH-2462]
   607    * provider/aws: Add validation for aws_vpc.cidr_block [GH-2514]
   608    * provider/aws: Add validation for aws_db_subnet_group.name [GH-2513]
   609    * provider/aws: Add validation for aws_db_instance.identifier [GH-2516]
   610    * provider/aws: Add validation for aws_elb.name [GH-2517]
   611    * provider/aws: Add validation for aws_security_group (name+description) [GH-2518]
   612    * provider/aws: Add validation for aws_launch_configuration [GH-2519]
   613    * provider/aws: Add validation for aws_autoscaling_group.name [GH-2520]
   614    * provider/aws: Add validation for aws_iam_role.name [GH-2521]
   615    * provider/aws: Add validation for aws_iam_role_policy.name [GH-2552]
   616    * provider/aws: Add validation for aws_iam_instance_profile.name [GH-2553]
   617    * provider/aws: aws_auto_scaling_group.default_cooldown no longer requires
   618        resource replacement [GH-2510]
   619    * provider/aws: add AH and ESP protocol integers [GH-2321]
   620    * provider/docker: `docker_container` has the `privileged`
   621        option. [GH-2227]
   622    * provider/openstack: allow `OS_AUTH_TOKEN` environment variable
   623        to set the openstack `api_key` field [GH-2234]
   624    * provider/openstack: Can now configure endpoint type (public, admin,
   625        internal) [GH-2262]
   626    * provider/cloudstack: `cloudstack_instance` now supports projects [GH-2115]
   627    * provisioner/chef: Added a `os_type` to specifically specify the target OS [GH-2483]
   628    * provisioner/chef: Added a `ohai_hints` option to upload hint files [GH-2487]
   629  
   630  BUG FIXES:
   631  
   632    * core: lifecycle `prevent_destroy` can be any value that can be
   633        coerced into a bool [GH-2268]
   634    * core: matching provider types in sibling modules won't override
   635        each other's config. [GH-2464]
   636    * core: computed provider configurations now properly validate [GH-2457]
   637    * core: orphan (commented out) resource dependencies are destroyed in
   638        the correct order [GH-2453]
   639    * core: validate object types in plugins are actually objects [GH-2450]
   640    * core: fix `-no-color` flag in subcommands [GH-2414]
   641    * core: Fix error of 'attribute not found for variable' when a computed
   642        resource attribute is used as a parameter to a module [GH-2477]
   643    * core: moduled orphans will properly inherit provider configs [GH-2476]
   644    * core: modules with provider aliases work properly if the parent
   645        doesn't implement those aliases [GH-2475]
   646    * core: unknown resource attributes passed in as parameters to modules
   647        now error [GH-2478]
   648    * core: better error messages for missing variables [GH-2479]
   649    * core: removed set items now properly appear in diffs and applies [GH-2507]
   650    * core: '*' will not be added as part of the variable name when you
   651        attempt multiplication without a space [GH-2505]
   652    * core: fix target dependency calculation across module boundaries [GH-2555]
   653    * command/*: fixed bug where variable input was not asked for unset
   654        vars if terraform.tfvars existed [GH-2502]
   655    * command/apply: prevent output duplication when reporting errors [GH-2267]
   656    * command/apply: destroyed orphan resources are properly counted [GH-2506]
   657    * provider/aws: loading credentials from the environment (vars, EC2 role,
   658        etc.) is more robust and will not ask for credentials from stdin [GH-1841]
   659    * provider/aws: fix panic when route has no `cidr_block` [GH-2215]
   660    * provider/aws: fix issue preventing destruction of IAM Roles [GH-2177]
   661    * provider/aws: fix issue where Security Group Rules could collide and fail
   662        to save to the state file correctly [GH-2376]
   663    * provider/aws: fix issue preventing destruction self referencing Securtity
   664       Group Rules [GH-2305]
   665    * provider/aws: fix issue causing perpetual diff on ELB listeners
   666        when non-lowercase protocol strings were used [GH-2246]
   667    * provider/aws: corrected frankfurt S3 website region [GH-2259]
   668    * provider/aws: `aws_elasticache_cluster` port is required [GH-2160]
   669    * provider/aws: Handle AMIs where RootBlockDevice does not appear in the
   670        BlockDeviceMapping, preventing root_block_device from working [GH-2271]
   671    * provider/aws: fix `terraform show` with remote state [GH-2371]
   672    * provider/aws: detect `instance_type` drift on `aws_instance` [GH-2374]
   673    * provider/aws: fix crash when `security_group_rule` referenced non-existent
   674        security group [GH-2434]
   675    * provider/aws: `aws_launch_configuration` retries if IAM instance
   676        profile is not ready yet. [GH-2452]
   677    * provider/aws: `fqdn` is populated during creation for `aws_route53_record` [GH-2528]
   678    * provider/aws: retry VPC delete on DependencyViolation due to eventual
   679        consistency [GH-2532]
   680    * provider/aws: VPC peering connections in "failed" state are deleted [GH-2544]
   681    * provider/aws: EIP deletion works if it was manually disassociated [GH-2543]
   682    * provider/aws: `elasticache_subnet_group.subnet_ids` is now a required argument [GH-2534]
   683    * provider/aws: handle nil response from VPN connection describes [GH-2533]
   684    * provider/cloudflare: manual record deletion doesn't cause error [GH-2545]
   685    * provider/digitalocean: handle case where droplet is deleted outside of
   686        terraform [GH-2497]
   687    * provider/dme: No longer an error if record deleted manually [GH-2546]
   688    * provider/docker: Fix issues when using containers with links [GH-2327]
   689    * provider/openstack: fix panic case if API returns nil network [GH-2448]
   690    * provider/template: fix issue causing "unknown variable" rendering errors
   691        when an existing set of template variables is changed [GH-2386]
   692    * provisioner/chef: improve the decoding logic to prevent parameter not found errors [GH-2206]
   693  
   694  ## 0.5.3 (June 1, 2015)
   695  
   696  IMPROVEMENTS:
   697  
   698    * **New resource: `aws_kinesis_stream`** [GH-2110]
   699    * **New resource: `aws_iam_server_certificate`** [GH-2086]
   700    * **New resource: `aws_sqs_queue`** [GH-1939]
   701    * **New resource: `aws_sns_topic`** [GH-1974]
   702    * **New resource: `aws_sns_topic_subscription`** [GH-1974]
   703    * **New resource: `aws_volume_attachment`** [GH-2050]
   704    * **New resource: `google_storage_bucket`** [GH-2060]
   705    * provider/aws: support ec2 termination protection [GH-1988]
   706    * provider/aws: support for RDS Read Replicas [GH-1946]
   707    * provider/aws: `aws_s3_bucket` add support for `policy` [GH-1992]
   708    * provider/aws: `aws_ebs_volume` add support for `tags` [GH-2135]
   709    * provider/aws: `aws_elasticache_cluster` Confirm node status before reporting
   710        available
   711    * provider/aws: `aws_network_acl` Add support for ICMP Protocol [GH-2148]
   712    * provider/aws: New `force_destroy` parameter for S3 buckets, to destroy
   713        Buckets that contain objects [GH-2007]
   714    * provider/aws: switching `health_check_type` on ASGs no longer requires
   715        resource refresh [GH-2147]
   716    * provider/aws: ignore empty `vpc_security_group_ids` on `aws_instance` [GH-2311]
   717  
   718  BUG FIXES:
   719  
   720    * provider/aws: Correctly handle AWS keypairs which no longer exist [GH-2032]
   721    * provider/aws: Fix issue with restoring an Instance from snapshot ID [GH-2120]
   722    * provider/template: store relative path in the state [GH-2038]
   723    * provisioner/chef: fix interpolation in the Chef provisioner [GH-2168]
   724    * provisioner/remote-exec: Don't prepend shebang on scripts that already
   725        have one [GH-2041]
   726  
   727  ## 0.5.2 (May 15, 2015)
   728  
   729  FEATURES:
   730  
   731    * **Chef provisioning**: You can now provision new hosts (both Linux and
   732       Windows) with [Chef](https://chef.io) using a native provisioner [GH-1868]
   733  
   734  IMPROVEMENTS:
   735  
   736    * **New config function: `formatlist`** - Format lists in a similar way to `format`.
   737      Useful for creating URLs from a list of IPs. [GH-1829]
   738    * **New resource: `aws_route53_zone_association`**
   739    * provider/aws: `aws_autoscaling_group` can wait for capacity in ELB
   740        via `min_elb_capacity` [GH-1970]
   741    * provider/aws: `aws_db_instances` supports `license_model` [GH-1966]
   742    * provider/aws: `aws_elasticache_cluster` add support for Tags [GH-1965]
   743    * provider/aws: `aws_network_acl` Network ACLs can be applied to multiple subnets [GH-1931]
   744    * provider/aws: `aws_s3_bucket` exports `hosted_zone_id` and `region` [GH-1865]
   745    * provider/aws: `aws_s3_bucket` add support for website `redirect_all_requests_to` [GH-1909]
   746    * provider/aws: `aws_route53_record` exports `fqdn` [GH-1847]
   747    * provider/aws: `aws_route53_zone` can create private hosted zones [GH-1526]
   748    * provider/google: `google_compute_instance` `scratch` attribute added [GH-1920]
   749  
   750  BUG FIXES:
   751  
   752    * core: fix "resource not found" for interpolation issues with modules
   753    * core: fix unflattenable error for orphans [GH-1922]
   754    * core: fix deadlock with create-before-destroy + modules [GH-1949]
   755    * core: fix "no roots found" error with create-before-destroy [GH-1953]
   756    * core: variables set with environment variables won't validate as
   757        not set without a default [GH-1930]
   758    * core: resources with a blank ID in the state are now assumed to not exist [GH-1905]
   759    * command/push: local vars override remote ones [GH-1881]
   760    * provider/aws: Mark `aws_security_group` description as `ForceNew` [GH-1871]
   761    * provider/aws: `aws_db_instance` ARN value is correct [GH-1910]
   762    * provider/aws: `aws_db_instance` only submit modify request if there
   763        is a change. [GH-1906]
   764    * provider/aws: `aws_elasticache_cluster` export missing information on cluster nodes [GH-1965]
   765    * provider/aws: bad AMI on a launch configuration won't block refresh [GH-1901]
   766    * provider/aws: `aws_security_group` + `aws_subnet` - destroy timeout increased
   767      to prevent DependencyViolation errors. [GH-1886]
   768    * provider/google: `google_compute_instance` Local SSDs no-longer cause crash
   769        [GH-1088]
   770    * provider/google: `google_http_health_check` Defaults now driven from Terraform,
   771        avoids errors on update [GH-1894]
   772    * provider/google: `google_compute_template` Update Instance Template network
   773        definition to match changes to Instance [GH-980]
   774    * provider/template: Fix infinite diff [GH-1898]
   775  
   776  ## 0.5.1 (never released)
   777  
   778  This version was never released since we accidentally skipped it!
   779  
   780  ## 0.5.0 (May 7, 2015)
   781  
   782  BACKWARDS INCOMPATIBILITIES:
   783  
   784    * provider/aws: Terraform now remove the default egress rule created by AWS in
   785      a new security group.
   786  
   787  FEATURES:
   788  
   789    * **Multi-provider (a.k.a multi-region)**: Multiple instances of a single
   790       provider can be configured so resources can apply to different settings.
   791       As an example, this allows Terraform to manage multiple regions with AWS.
   792    * **Environmental variables to set variables**: Environment variables can be
   793       used to set variables. The environment variables must be in the format
   794       `TF_VAR_name` and this will be checked last for a value.
   795    * **New remote state backend: `s3`**: You can now store remote state in
   796       an S3 bucket. [GH-1723]
   797    * **Automatic AWS retries**: This release includes a lot of improvement
   798       around automatic retries of transient errors in AWS. The number of
   799       retry attempts is also configurable.
   800    * **Templates**: A new `template_file` resource allows long strings needing
   801       variable interpolation to be moved into files. [GH-1778]
   802    * **Provision with WinRM**: Provisioners can now run remote commands on
   803       Windows hosts. [GH-1483]
   804  
   805  IMPROVEMENTS:
   806  
   807    * **New config function: `length`** - Get the length of a string or a list.
   808        Useful in conjunction with `split`. [GH-1495]
   809    * **New resource: `aws_app_cookie_stickiness_policy`**
   810    * **New resource: `aws_customer_gateway`**
   811    * **New resource: `aws_ebs_volume`**
   812    * **New resource: `aws_elasticache_cluster`**
   813    * **New resource: `aws_elasticache_security_group`**
   814    * **New resource: `aws_elasticache_subnet_group`**
   815    * **New resource: `aws_iam_access_key`**
   816    * **New resource: `aws_iam_group_policy`**
   817    * **New resource: `aws_iam_group`**
   818    * **New resource: `aws_iam_instance_profile`**
   819    * **New resource: `aws_iam_policy`**
   820    * **New resource: `aws_iam_role_policy`**
   821    * **New resource: `aws_iam_role`**
   822    * **New resource: `aws_iam_user_policy`**
   823    * **New resource: `aws_iam_user`**
   824    * **New resource: `aws_lb_cookie_stickiness_policy`**
   825    * **New resource: `aws_proxy_protocol_policy`**
   826    * **New resource: `aws_security_group_rule`**
   827    * **New resource: `aws_vpc_dhcp_options_association`**
   828    * **New resource: `aws_vpc_dhcp_options`**
   829    * **New resource: `aws_vpn_connection_route`**
   830    * **New resource: `google_dns_managed_zone`**
   831    * **New resource: `google_dns_record_set`**
   832    * **Migrate to upstream AWS SDK:** Migrate the AWS provider to
   833        [awslabs/aws-sdk-go](https://github.com/awslabs/aws-sdk-go),
   834        the official `awslabs` library. Previously we had forked the library for
   835        stability while `awslabs` refactored. Now that work has completed, and we've
   836        migrated back to the upstream version.
   837    * core: Improve error message on diff mismatch [GH-1501]
   838    * provisioner/file: expand `~` in source path [GH-1569]
   839    * provider/aws: Better retry logic, now retries up to 11 times by default
   840        with exponentional backoff. This number is configurable. [GH-1787]
   841    * provider/aws: Improved credential detection [GH-1470]
   842    * provider/aws: Can specify a `token` via the config file [GH-1601]
   843    * provider/aws: Added new `vpc_security_group_ids` attribute for AWS
   844        Instances. If using a VPC, you can now modify the security groups for that
   845        Instance without destroying it [GH-1539]
   846    * provider/aws: White or blacklist account IDs that can be used to
   847        protect against accidents. [GH-1595]
   848    * provider/aws: Add a subset of IAM resources [GH-939]
   849    * provider/aws: `aws_autoscaling_group` retries deletes through "in progress"
   850        errors [GH-1840]
   851    * provider/aws: `aws_autoscaling_group` waits for healthy capacity during
   852        ASG creation [GH-1839]
   853    * provider/aws: `aws_instance` supports placement groups [GH-1358]
   854    * provider/aws: `aws_eip` supports network interface attachment [GH-1681]
   855    * provider/aws: `aws_elb` supports in-place changing of listeners [GH-1619]
   856    * provider/aws: `aws_elb` supports connection draining settings [GH-1502]
   857    * provider/aws: `aws_elb` increase default idle timeout to 60s [GH-1646]
   858    * provider/aws: `aws_key_pair` name can be omitted and generated [GH-1751]
   859    * provider/aws: `aws_network_acl` improved validation for network ACL ports
   860        and protocols [GH-1798] [GH-1808]
   861    * provider/aws: `aws_route_table` can target network interfaces [GH-968]
   862    * provider/aws: `aws_route_table` can specify propagating VGWs [GH-1516]
   863    * provider/aws: `aws_route53_record` supports weighted sets [GH-1578]
   864    * provider/aws: `aws_route53_zone` exports nameservers [GH-1525]
   865    * provider/aws: `aws_s3_bucket` website support [GH-1738]
   866    * provider/aws: `aws_security_group` name becomes optional and can be
   867        automatically set to a unique identifier; this helps with
   868        `create_before_destroy` scenarios [GH-1632]
   869    * provider/aws: `aws_security_group` description becomes optional with a
   870        static default value [GH-1632]
   871    * provider/aws: automatically set the private IP as the SSH address
   872        if not specified and no public IP is available [GH-1623]
   873    * provider/aws: `aws_elb` exports `source_security_group` field [GH-1708]
   874    * provider/aws: `aws_route53_record` supports alias targeting [GH-1775]
   875    * provider/aws: Remove default AWS egress rule for newly created Security Groups [GH-1765]
   876    * provider/consul: add `scheme` configuration argument [GH-1838]
   877    * provider/docker: `docker_container` can specify links [GH-1564]
   878    * provider/google: `resource_compute_disk` supports snapshots [GH-1426]
   879    * provider/google: `resource_compute_instance` supports specifying the
   880        device name [GH-1426]
   881    * provider/openstack: Floating IP support for LBaaS [GH-1550]
   882    * provider/openstack: Add AZ to `openstack_blockstorage_volume_v1` [GH-1726]
   883  
   884  BUG FIXES:
   885  
   886    * core: Fix graph cycle issues surrounding modules [GH-1582] [GH-1637]
   887    * core: math on arbitrary variables works if first operand isn't a
   888        numeric primitive. [GH-1381]
   889    * core: avoid unnecessary cycles by pruning tainted destroys from
   890        graph if there are no tainted resources [GH-1475]
   891    * core: fix issue where destroy nodes weren't pruned in specific
   892        edge cases around matching prefixes, which could cause cycles [GH-1527]
   893    * core: fix issue causing diff mismatch errors in certain scenarios during
   894        resource replacement [GH-1515]
   895    * core: dependencies on resources with a different index work when
   896        count > 1 [GH-1540]
   897    * core: don't panic if variable default type is invalid [GH-1344]
   898    * core: fix perpetual diff issue for computed maps that are empty [GH-1607]
   899    * core: validation added to check for `self` variables in modules [GH-1609]
   900    * core: fix edge case where validation didn't pick up unknown fields
   901        if the value was computed [GH-1507]
   902    * core: Fix issue where values in sets on resources couldn't contain
   903        hyphens. [GH-1641]
   904    * core: Outputs removed from the config are removed from the state [GH-1714]
   905    * core: Validate against the worst-case graph during plan phase to catch cycles
   906        that would previously only show up during apply [GH-1655]
   907    * core: Referencing invalid module output in module validates [GH-1448]
   908    * command: remote states with uppercase types work [GH-1356]
   909    * provider/aws: Support `AWS_SECURITY_TOKEN` env var again [GH-1785]
   910    * provider/aws: Don't save "instance" for EIP if association fails [GH-1776]
   911    * provider/aws: launch configuration ID set after create success [GH-1518]
   912    * provider/aws: Fixed an issue with creating ELBs without any tags [GH-1580]
   913    * provider/aws: Fix issue in Security Groups with empty IPRanges [GH-1612]
   914    * provider/aws: manually deleted S3 buckets are refreshed properly [GH-1574]
   915    * provider/aws: only check for EIP allocation ID in VPC [GH-1555]
   916    * provider/aws: raw protocol numbers work in `aws_network_acl` [GH-1435]
   917    * provider/aws: Block devices can be encrypted [GH-1718]
   918    * provider/aws: ASG health check grace period can be updated in-place [GH-1682]
   919    * provider/aws: ELB security groups can be updated in-place [GH-1662]
   920    * provider/aws: `aws_main_route_table_association` can be deleted
   921        manually [GH-1806]
   922    * provider/docker: image can reference more complex image addresses,
   923        such as with private repos with ports [GH-1818]
   924    * provider/openstack: region config is not required [GH-1441]
   925    * provider/openstack: `enable_dhcp` for networking subnet should be bool [GH-1741]
   926    * provisioner/remote-exec: add random number to uploaded script path so
   927        that parallel provisions work [GH-1588]
   928    * provisioner/remote-exec: chmod the script to 0755 properly [GH-1796]
   929  
   930  ## 0.4.2 (April 10, 2015)
   931  
   932  BUG FIXES:
   933  
   934    * core: refresh won't remove outputs from state file [GH-1369]
   935    * core: clarify "unknown variable" error [GH-1480]
   936    * core: properly merge parent provider configs when asking for input
   937    * provider/aws: fix panic possibility if RDS DB name is empty [GH-1460]
   938    * provider/aws: fix issue detecting credentials for some resources [GH-1470]
   939    * provider/google: fix issue causing unresolvable diffs when using legacy
   940        `network` field on `google_compute_instance` [GH-1458]
   941  
   942  ## 0.4.1 (April 9, 2015)
   943  
   944  IMPROVEMENTS:
   945  
   946    * provider/aws: Route 53 records can now update `ttl` and `records` attributes
   947        without destroying/creating the record [GH-1396]
   948    * provider/aws: Support changing additional attributes of RDS databases
   949        without forcing a new resource  [GH-1382]
   950  
   951  BUG FIXES:
   952  
   953    * core: module paths in ".terraform" are consistent across different
   954        systems so copying your ".terraform" folder works. [GH-1418]
   955    * core: don't validate providers too early when nested in a module [GH-1380]
   956    * core: fix race condition in `count.index` interpolation [GH-1454]
   957    * core: properly initialize provisioners, fixing resource targeting
   958        during destroy [GH-1544]
   959    * command/push: don't ask for input if terraform.tfvars is present
   960    * command/remote-config: remove spurrious error "nil" when initializing
   961        remote state on a new configuration. [GH-1392]
   962    * provider/aws: Fix issue with Route 53 and pre-existing Hosted Zones [GH-1415]
   963    * provider/aws: Fix refresh issue in Route 53 hosted zone [GH-1384]
   964    * provider/aws: Fix issue when changing map-public-ip in Subnets #1234
   965    * provider/aws: Fix issue finding db subnets [GH-1377]
   966    * provider/aws: Fix issues with `*_block_device` attributes on instances and
   967        launch configs creating unresolvable diffs when certain optional
   968        parameters were omitted from the config [GH-1445]
   969    * provider/aws: Fix issue with `aws_launch_configuration` causing an
   970        unnecessary diff for pre-0.4 environments [GH-1371]
   971    * provider/aws: Fix several related issues with `aws_launch_configuration`
   972        causing unresolvable diffs [GH-1444]
   973    * provider/aws: Fix issue preventing launch configurations from being valid
   974        in EC2 Classic [GH-1412]
   975    * provider/aws: Fix issue in updating Route 53 records on refresh/read. [GH-1430]
   976    * provider/docker: Don't ask for `cert_path` input on every run [GH-1432]
   977    * provider/google: Fix issue causing unresolvable diff on instances with
   978        `network_interface` [GH-1427]
   979  
   980  ## 0.4.0 (April 2, 2015)
   981  
   982  BACKWARDS INCOMPATIBILITIES:
   983  
   984    * Commands `terraform push` and `terraform pull` are now nested under
   985      the `remote` command: `terraform remote push` and `terraform remote pull`.
   986      The old `remote` functionality is now at `terraform remote config`. This
   987      consolidates all remote state management under one command.
   988    * Period-prefixed configuration files are now ignored. This might break
   989      existing Terraform configurations if you had period-prefixed files.
   990    * The `block_device` attribute of `aws_instance` has been removed in favor
   991      of three more specific attributes to specify block device mappings:
   992      `root_block_device`, `ebs_block_device`, and `ephemeral_block_device`.
   993      Configurations using the old attribute will generate a validation error
   994      indicating that they must be updated to use the new fields [GH-1045].
   995  
   996  FEATURES:
   997  
   998    * **New provider: `dme` (DNSMadeEasy)** [GH-855]
   999    * **New provider: `docker` (Docker)** - Manage container lifecycle
  1000        using the standard Docker API. [GH-855]
  1001    * **New provider: `openstack` (OpenStack)** - Interact with the many resources
  1002        provided by OpenStack. [GH-924]
  1003    * **New feature: `terraform_remote_state` resource** - Reference remote
  1004        states from other Terraform runs to use Terraform outputs as inputs
  1005        into another Terraform run.
  1006    * **New command: `taint`** - Manually mark a resource as tainted, causing
  1007        a destroy and recreate on the next plan/apply.
  1008    * **New resource: `aws_vpn_gateway`** [GH-1137]
  1009    * **New resource: `aws_elastic_network_interfaces`** [GH-1149]
  1010    * **Self-variables** can be used to reference the current resource's
  1011        attributes within a provisioner. Ex. `${self.private_ip_address}` [GH-1033]
  1012    * **Continuous state** saving during `terraform apply`. The state file is
  1013        continuously updated as apply is running, meaning that the state is
  1014        less likely to become corrupt in a catastrophic case: terraform panic
  1015        or system killing Terraform.
  1016    * **Math operations** in interpolations. You can now do things like
  1017        `${count.index + 1}`. [GH-1068]
  1018    * **New AWS SDK:** Move to `aws-sdk-go` (hashicorp/aws-sdk-go),
  1019        a fork of the official `awslabs` repo. We forked for stability while
  1020        `awslabs` refactored the library, and will move back to the officially
  1021        supported version in the next release.
  1022  
  1023  IMPROVEMENTS:
  1024  
  1025    * **New config function: `format`** - Format a string using `sprintf`
  1026        format. [GH-1096]
  1027    * **New config function: `replace`** - Search and replace string values.
  1028        Search can be a regular expression. See documentation for more
  1029        info. [GH-1029]
  1030    * **New config function: `split`** - Split a value based on a delimiter.
  1031        This is useful for faking lists as parameters to modules.
  1032    * **New resource: `digitalocean_ssh_key`** [GH-1074]
  1033    * config: Expand `~` with homedir in `file()` paths [GH-1338]
  1034    * core: The serial of the state is only updated if there is an actual
  1035        change. This will lower the amount of state changing on things
  1036        like refresh.
  1037    * core: Autoload `terraform.tfvars.json` as well as `terraform.tfvars` [GH-1030]
  1038    * core: `.tf` files that start with a period are now ignored. [GH-1227]
  1039    * command/remote-config: After enabling remote state, a `pull` is
  1040        automatically done initially.
  1041    * providers/google: Add `size` option to disk blocks for instances. [GH-1284]
  1042    * providers/aws: Improve support for tagging resources.
  1043    * providers/aws: Add a short syntax for Route 53 Record names, e.g.
  1044        `www` instead of `www.example.com`.
  1045    * providers/aws: Improve dependency violation error handling, when deleting
  1046        Internet Gateways or Auto Scaling groups [GH-1325].
  1047    * provider/aws: Add non-destructive updates to AWS RDS. You can now upgrade
  1048        `engine_version`, `parameter_group_name`, and `multi_az` without forcing
  1049        a new database to be created.[GH-1341]
  1050    * providers/aws: Full support for block device mappings on instances and
  1051        launch configurations [GH-1045, GH-1364]
  1052    * provisioners/remote-exec: SSH agent support. [GH-1208]
  1053  
  1054  BUG FIXES:
  1055  
  1056    * core: module outputs can be used as inputs to other modules [GH-822]
  1057    * core: Self-referencing splat variables are no longer allowed in
  1058        provisioners. [GH-795][GH-868]
  1059    * core: Validate that `depends_on` doesn't contain interpolations. [GH-1015]
  1060    * core: Module inputs can be non-strings. [GH-819]
  1061    * core: Fix invalid plan that resulted in "diffs don't match" error when
  1062        a computed attribute was used as part of a set parameter. [GH-1073]
  1063    * core: Fix edge case where state containing both "resource" and
  1064        "resource.0" would ignore the latter completely. [GH-1086]
  1065    * core: Modules with a source of a relative file path moving up
  1066        directories work properly, i.e. "../a" [GH-1232]
  1067    * providers/aws: manually deleted VPC removes it from the state
  1068    * providers/aws: `source_dest_check` regression fixed (now works). [GH-1020]
  1069    * providers/aws: Longer wait times for DB instances.
  1070    * providers/aws: Longer wait times for route53 records (30 mins). [GH-1164]
  1071    * providers/aws: Fix support for TXT records in Route 53. [GH-1213]
  1072    * providers/aws: Fix support for wildcard records in Route 53. [GH-1222]
  1073    * providers/aws: Fix issue with ignoring the 'self' attribute of a
  1074        Security Group rule. [GH-1223]
  1075    * providers/aws: Fix issue with `sql_mode` in RDS parameter group always
  1076        causing an update. [GH-1225]
  1077    * providers/aws: Fix dependency violation with subnets and security groups
  1078        [GH-1252]
  1079    * providers/aws: Fix issue with refreshing `db_subnet_groups` causing an error
  1080        instead of updating state [GH-1254]
  1081    * providers/aws: Prevent empty string to be used as default
  1082        `health_check_type` [GH-1052]
  1083    * providers/aws: Add tags on AWS IG creation, not just on update [GH-1176]
  1084    * providers/digitalocean: Waits until droplet is ready to be destroyed [GH-1057]
  1085    * providers/digitalocean: More lenient about 404's while waiting [GH-1062]
  1086    * providers/digitalocean: FQDN for domain records in CNAME, MX, NS, etc.
  1087        Also fixes invalid updates in plans. [GH-863]
  1088    * providers/google: Network data in state was not being stored. [GH-1095]
  1089    * providers/heroku: Fix panic when config vars block was empty. [GH-1211]
  1090  
  1091  PLUGIN CHANGES:
  1092  
  1093    * New `helper/schema` fields for resources: `Deprecated` and `Removed` allow
  1094        plugins to generate warning or error messages when a given attribute is used.
  1095  
  1096  ## 0.3.7 (February 19, 2015)
  1097  
  1098  IMPROVEMENTS:
  1099  
  1100    * **New resources: `google_compute_forwarding_rule`, `google_compute_http_health_check`,
  1101        and `google_compute_target_pool`** - Together these provide network-level
  1102        load balancing. [GH-588]
  1103    * **New resource: `aws_main_route_table_association`** - Manage the main routing table
  1104        of a VPC. [GH-918]
  1105    * **New resource: `aws_vpc_peering_connection`** [GH-963]
  1106    * core: Formalized the syntax of interpolations and documented it
  1107        very heavily.
  1108    * core: Strings in interpolations can now contain further interpolations,
  1109        e.g.: `foo ${bar("${baz}")}`.
  1110    * provider/aws: Internet gateway supports tags [GH-720]
  1111    * provider/aws: Support the more standard environmental variable names
  1112        for access key and secret keys. [GH-851]
  1113    * provider/aws: The `aws_db_instance` resource no longer requires both
  1114        `final_snapshot_identifier` and `skip_final_snapshot`; the presence or
  1115        absence of the former now implies the latter. [GH-874]
  1116    * provider/aws: Avoid unnecessary update of `aws_subnet` when
  1117        `map_public_ip_on_launch` is not specified in config. [GH-898]
  1118    * provider/aws: Add `apply_method` to `aws_db_parameter_group` [GH-897]
  1119    * provider/aws: Add `storage_type` to `aws_db_instance` [GH-896]
  1120    * provider/aws: ELB can update listeners without requiring new. [GH-721]
  1121    * provider/aws: Security group support egress rules. [GH-856]
  1122    * provider/aws: Route table supports VPC peering connection on route. [GH-963]
  1123    * provider/aws: Add `root_block_device` to `aws_db_instance` [GH-998]
  1124    * provider/google: Remove "client secrets file", as it's no longer necessary
  1125        for API authentication [GH-884].
  1126    * provider/google: Expose `self_link` on `google_compute_instance` [GH-906]
  1127  
  1128  BUG FIXES:
  1129  
  1130    * core: Fixing use of remote state with plan files. [GH-741]
  1131    * core: Fix a panic case when certain invalid types were used in
  1132        the configuration. [GH-691]
  1133    * core: Escape characters `\"`, `\n`, and `\\` now work in interpolations.
  1134    * core: Fix crash that could occur when there are exactly zero providers
  1135        installed on a system. [GH-786]
  1136    * core: JSON TF configurations can configure provisioners. [GH-807]
  1137    * core: Sort `depends_on` in state to prevent unnecessary file changes. [GH-928]
  1138    * core: State containing the zero value won't cause a diff with the
  1139        lack of a value. [GH-952]
  1140    * core: If a set type becomes empty, the state will be properly updated
  1141        to remove it. [GH-952]
  1142    * core: Bare "splat" variables are not allowed in provisioners. [GH-636]
  1143    * core: Invalid configuration keys to sub-resources are now errors. [GH-740]
  1144    * command/apply: Won't try to initialize modules in some cases when
  1145        no arguments are given. [GH-780]
  1146    * command/apply: Fix regression where user variables weren't asked [GH-736]
  1147    * helper/hashcode: Update `hash.String()` to always return a positive index.
  1148        Fixes issue where specific strings would convert to a negative index
  1149        and be omitted when creating Route53 records. [GH-967]
  1150    * provider/aws: Automatically suffix the Route53 zone name on record names. [GH-312]
  1151    * provider/aws: Instance should ignore root EBS devices. [GH-877]
  1152    * provider/aws: Fix `aws_db_instance` to not recreate each time. [GH-874]
  1153    * provider/aws: ASG termination policies are synced with remote state. [GH-923]
  1154    * provider/aws: ASG launch configuration setting can now be updated in-place. [GH-904]
  1155    * provider/aws: No read error when subnet is manually deleted. [GH-889]
  1156    * provider/aws: Tags with empty values (empty string) are properly
  1157        managed. [GH-968]
  1158    * provider/aws: Fix case where route table would delete its routes
  1159        on an unrelated change. [GH-990]
  1160    * provider/google: Fix bug preventing instances with metadata from being
  1161        created [GH-884].
  1162  
  1163  PLUGIN CHANGES:
  1164  
  1165    * New `helper/schema` type: `TypeFloat` [GH-594]
  1166    * New `helper/schema` field for resources: `Exists` must point to a function
  1167        to check for the existence of a resource. This is used to properly
  1168        handle the case where the resource was manually deleted. [GH-766]
  1169    * There is a semantic change in `GetOk` where it will return `true` if
  1170        there is any value in the diff that is _non-zero_. Before, it would
  1171        return true only if there was a value in the diff.
  1172  
  1173  ## 0.3.6 (January 6, 2015)
  1174  
  1175  FEATURES:
  1176  
  1177    * **New provider: `cloudstack`**
  1178  
  1179  IMPROVEMENTS:
  1180  
  1181    * **New resource: `aws_key_pair`** - Import a public key into AWS. [GH-695]
  1182    * **New resource: `heroku_cert`** - Manage Heroku app certs.
  1183    * provider/aws: Support `eu-central-1`, `cn-north-1`, and GovCloud. [GH-525]
  1184    * provider/aws: `route_table` can have tags. [GH-648]
  1185    * provider/google: Support Ubuntu images. [GH-724]
  1186    * provider/google: Support for service accounts. [GH-725]
  1187  
  1188  BUG FIXES:
  1189  
  1190    * core: temporary/hidden files that look like Terraform configurations
  1191        are no longer loaded. [GH-548]
  1192    * core: Set types in resources now result in deterministic states,
  1193        resulting in cleaner plans. [GH-663]
  1194    * core: fix issue where "diff was not the same" would come up with
  1195        diffing lists. [GH-661]
  1196    * core: fix crash where module inputs weren't strings, and add more
  1197        validation around invalid types here. [GH-624]
  1198    * core: fix error when using a computed module output as an input to
  1199        another module. [GH-659]
  1200    * core: map overrides in "terraform.tfvars" no longer result in a syntax
  1201        error. [GH-647]
  1202    * core: Colon character works in interpolation [GH-700]
  1203    * provider/aws: Fix crash case when internet gateway is not attached
  1204        to any VPC. [GH-664]
  1205    * provider/aws: `vpc_id` is no longer required. [GH-667]
  1206    * provider/aws: `availability_zones` on ELB will contain more than one
  1207        AZ if it is set as such. [GH-682]
  1208    * provider/aws: More fields are marked as "computed" properly, resulting
  1209        in more accurate diffs for AWS instances. [GH-712]
  1210    * provider/aws: Fix panic case by using the wrong type when setting
  1211        volume size for AWS instances. [GH-712]
  1212    * provider/aws: route table ignores routes with 'EnableVgwRoutePropagation'
  1213        origin since those come from gateways. [GH-722]
  1214    * provider/aws: Default network ACL ID and default security group ID
  1215        support for `aws_vpc`. [GH-704]
  1216    * provider/aws: Tags are not marked as computed. This introduces another
  1217        issue with not detecting external tags, but this will be fixed in
  1218        the future. [GH-730]
  1219  
  1220  ## 0.3.5 (December 9, 2014)
  1221  
  1222  FEATURES:
  1223  
  1224   * **Remote State**: State files can now be stored remotely via HTTP,
  1225       Consul, or HashiCorp's Atlas.
  1226   * **New Provider: `atlas`**: Retrieve artifacts for deployment from
  1227       HashiCorp's Atlas service.
  1228   * New `element()` function to index into arrays
  1229  
  1230  IMPROVEMENTS:
  1231  
  1232    * provider/aws: Support tenancy for aws\_instance
  1233    * provider/aws: Support block devices for aws\_instance
  1234    * provider/aws: Support virtual\_name on block device
  1235    * provider/aws: Improve RDS reliability (more grace time)
  1236    * provider/aws: Added aws\_db\_parameter\_group resource
  1237    * provider/aws: Added tag support to aws\_subnet
  1238    * provider/aws: Routes in RouteTable are optional
  1239    * provider/aws: associate\_public\_ip\_address on aws\_launch\_configuration
  1240    * provider/aws: Added aws\_network\_acl
  1241    * provider/aws: Ingress rules in security groups are optional
  1242    * provider/aws: Support termination policy for ASG
  1243    * provider/digitalocean: Improved droplet size compatibility
  1244  
  1245  BUG FIXES:
  1246  
  1247    * core: Fixed issue causing double delete. [GH-555]
  1248    * core: Fixed issue with create-before-destroy not being respected in
  1249        some circumstances.
  1250    * core: Fixing issue with count expansion with non-homogenous instance
  1251        plans.
  1252    * core: Fix issue with referencing resource variables from resources
  1253        that don't exist yet within resources that do exist, or modules.
  1254    * core: Fixing depedency handling for modules
  1255    * core: Fixing output handling [GH-474]
  1256    * core: Fixing count interpolation in modules
  1257    * core: Fixing multi-var without module state
  1258    * core: Fixing HCL variable declaration
  1259    * core: Fixing resource interpolation for without state
  1260    * core: Fixing handling of computed maps
  1261    * command/init: Fixing recursion issue [GH-518]
  1262    * command: Validate config before requesting input [GH-602]
  1263    * build: Fixing GOPATHs with spaces
  1264  
  1265  MISC:
  1266  
  1267    * provider/aws: Upgraded to helper.Schema
  1268    * provider/heroku: Upgraded to helper.Schema
  1269    * provider/mailgun: Upgraded to helper.Schema
  1270    * provider/dnsimple: Upgraded to helper.Schema
  1271    * provider/cloudflare: Upgraded to helper.Schema
  1272    * provider/digitalocean: Upgraded to helper.Schema
  1273    * provider/google: Upgraded to helper.Schema
  1274  
  1275  ## 0.3.1 (October 21, 2014)
  1276  
  1277  IMPROVEMENTS:
  1278  
  1279    * providers/aws: Support tags for security groups.
  1280    * providers/google: Add "external\_address" to network attributes [GH-454]
  1281    * providers/google: External address is used as default connection host. [GH-454]
  1282    * providers/heroku: Support `locked` and `personal` booleans on organization
  1283        settings. [GH-406]
  1284  
  1285  BUG FIXES:
  1286  
  1287    * core: Remove panic case when applying with a plan that generates no
  1288        new state. [GH-403]
  1289    * core: Fix a hang that can occur with enough resources. [GH-410]
  1290    * core: Config validation will not error if the field is being
  1291        computed so the value is still unknown.
  1292    * core: If a resource fails to create and has provisioners, it is
  1293        marked as tainted. [GH-434]
  1294    * core: Set types are validated to be sets. [GH-413]
  1295    * core: String types are validated properly. [GH-460]
  1296    * core: Fix crash case when destroying with tainted resources. [GH-412]
  1297    * core: Don't execute provisioners in some cases on destroy.
  1298    * core: Inherited provider configurations will be properly interpolated. [GH-418]
  1299    * core: Refresh works properly if there are outputs that depend on resources
  1300        that aren't yet created. [GH-483]
  1301    * providers/aws: Refresh of launch configs and autoscale groups load
  1302        the correct data and don't incorrectly recreate themselves. [GH-425]
  1303    * providers/aws: Fix case where ELB would incorrectly plan to modify
  1304        listeners (with the same data) in some cases.
  1305    * providers/aws: Retry destroying internet gateway for some amount of time
  1306        if there is a dependency violation since it is probably just eventual
  1307        consistency (public facing resources being destroyed). [GH-447]
  1308    * providers/aws: Retry deleting security groups for some amount of time
  1309        if there is a dependency violation since it is probably just eventual
  1310        consistency. [GH-436]
  1311    * providers/aws: Retry deleting subnet for some amount of time if there is a
  1312        dependency violation since probably asynchronous destroy events take
  1313        place still. [GH-449]
  1314    * providers/aws: Drain autoscale groups before deleting. [GH-435]
  1315    * providers/aws: Fix crash case if launch config is manually deleted. [GH-421]
  1316    * providers/aws: Disassociate EIP before destroying.
  1317    * providers/aws: ELB treats subnets as a set.
  1318    * providers/aws: Fix case where in a destroy/create tags weren't reapplied. [GH-464]
  1319    * providers/aws: Fix incorrect/erroneous apply cases around security group
  1320        rules. [GH-457]
  1321    * providers/consul: Fix regression where `key` param changed to `keys. [GH-475]
  1322  
  1323  ## 0.3.0 (October 14, 2014)
  1324  
  1325  FEATURES:
  1326  
  1327    * **Modules**: Configuration can now be modularized. Modules can live on
  1328      GitHub, BitBucket, Git/Hg repos, HTTP URLs, and file paths. Terraform
  1329      automatically downloads/updates modules for you on request.
  1330    * **New Command: `init`**. This command initializes a Terraform configuration
  1331      from an existing Terraform module (also new in 0.3).
  1332    * **New Command: `destroy`**. This command destroys infrastructure
  1333      created with `apply`.
  1334    * Terraform will ask for user input to fill in required variables and
  1335      provider configurations if they aren't set.
  1336    * `terraform apply MODULE` can be used as a shorthand to quickly build
  1337      infrastructure from a module.
  1338    * The state file format is now JSON rather than binary. This allows for
  1339      easier machine and human read/write. Old binary state files will be
  1340      automatically upgraded.
  1341    * You can now specify `create_before_destroy` as an option for replacement
  1342      so that new resources are created before the old ones are destroyed.
  1343    * The `count` metaparameter can now contain interpolations (such as
  1344      variables).
  1345    * The current index for a resource with a `count` set can be interpolated
  1346      using `${count.index}`.
  1347    * Various paths can be interpolated with the `path.X` variables. For example,
  1348      the path to the current module can be interpolated using `${path.module}`.
  1349  
  1350  IMPROVEMENTS:
  1351  
  1352    * config: Trailing commas are now allowed for the final elements of lists.
  1353    * core: Plugins are loaded from `~/.terraform.d/plugins` (Unix) or
  1354      `%USERDATA%/terraform.d/plugins` (Windows).
  1355    * command/show: With no arguments, it will show the default state. [GH-349]
  1356    * helper/schema: Can now have default values. [GH-245]
  1357    * providers/aws: Tag support for most resources.
  1358    * providers/aws: New resource `db_subnet_group`. [GH-295]
  1359    * providers/aws: Add `map_public_ip_on_launch` for subnets. [GH-285]
  1360    * providers/aws: Add `iam_instance_profile` for instances. [GH-319]
  1361    * providers/aws: Add `internal` option for ELBs. [GH-303]
  1362    * providers/aws: Add `ssl_certificate_id` for ELB listeners. [GH-350]
  1363    * providers/aws: Add `self` option for security groups for ingress
  1364        rules with self as source. [GH-303]
  1365    * providers/aws: Add `iam_instance_profile` option to
  1366        `aws_launch_configuration`. [GH-371]
  1367    * providers/aws: Non-destructive update of `desired_capacity` for
  1368        autoscale groups.
  1369    * providers/aws: Add `main_route_table_id` attribute to VPCs. [GH-193]
  1370    * providers/consul: Support tokens. [GH-396]
  1371    * providers/google: Support `target_tags` for firewalls. [GH-324]
  1372    * providers/google: `google_compute_instance` supports `can_ip_forward` [GH-375]
  1373    * providers/google: `google_compute_disk` supports `type` to support disks
  1374        such as SSDs. [GH-351]
  1375    * provisioners/local-exec: Output from command is shown in CLI output. [GH-311]
  1376    * provisioners/remote-exec: Output from command is shown in CLI output. [GH-311]
  1377  
  1378  BUG FIXES:
  1379  
  1380    * core: Providers are validated even without a `provider` block. [GH-284]
  1381    * core: In the case of error, walk all non-dependent trees.
  1382    * core: Plugin loading from CWD works properly.
  1383    * core: Fix many edge cases surrounding the `count` meta-parameter.
  1384    * core: Strings in the configuration can escape double-quotes with the
  1385        standard `\"` syntax.
  1386    * core: Error parsing CLI config will show properly. [GH-288]
  1387    * core: More than one Ctrl-C will exit immediately.
  1388    * providers/aws: autoscaling_group can be launched into a vpc [GH-259]
  1389    * providers/aws: not an error when RDS instance is deleted manually. [GH-307]
  1390    * providers/aws: Retry deleting subnet for some time while AWS eventually
  1391        destroys dependencies. [GH-357]
  1392    * providers/aws: More robust destroy for route53 records. [GH-342]
  1393    * providers/aws: ELB generates much more correct plans without extranneous
  1394        data.
  1395    * providers/aws: ELB works properly with dynamically changing
  1396        count of instances.
  1397    * providers/aws: Terraform can handle ELBs deleted manually. [GH-304]
  1398    * providers/aws: Report errors properly if RDS fails to delete. [GH-310]
  1399    * providers/aws: Wait for launch configuration to exist after creation
  1400        (AWS eventual consistency) [GH-302]
  1401  
  1402  ## 0.2.2 (September 9, 2014)
  1403  
  1404  IMPROVEMENTS:
  1405  
  1406    * providers/amazon: Add `ebs_optimized` flag. [GH-260]
  1407    * providers/digitalocean: Handle 404 on delete
  1408    * providers/digitalocean: Add `user_data` argument for creating droplets
  1409    * providers/google: Disks can be marked `auto_delete`. [GH-254]
  1410  
  1411  BUG FIXES:
  1412  
  1413    * core: Fix certain syntax of configuration that could cause hang. [GH-261]
  1414    * core: `-no-color` flag properly disables color. [GH-250]
  1415    * core: "~" is expanded in `-var-file` flags. [GH-273]
  1416    * core: Errors with tfvars are shown in console. [GH-269]
  1417    * core: Interpolation function calls with more than two args parse. [GH-282]
  1418    * providers/aws: Refreshing EIP from pre-0.2 state file won't error. [GH-258]
  1419    * providers/aws: Creating EIP without an instance/network won't fail.
  1420    * providers/aws: Refreshing EIP manually deleted works.
  1421    * providers/aws: Retry EIP delete to allow AWS eventual consistency to
  1422        detect it isn't attached. [GH-276]
  1423    * providers/digitalocean: Handle situations when resource was destroyed
  1424        manually. [GH-279]
  1425    * providers/digitalocean: Fix a couple scenarios where the diff was
  1426        incorrect (and therefore the execution as well).
  1427    * providers/google: Attaching a disk source (not an image) works
  1428        properly. [GH-254]
  1429  
  1430  ## 0.2.1 (August 31, 2014)
  1431  
  1432  IMPROVEMENTS:
  1433  
  1434    * core: Plugins are automatically discovered in the executable directory
  1435        or pwd if named properly. [GH-190]
  1436    * providers/mailgun: domain records are now saved to state
  1437  
  1438  BUG FIXES:
  1439  
  1440    * core: Configuration parses when identifier and '=' have no space. [GH-243]
  1441    * core: `depends_on` with `count` generates the proper graph. [GH-244]
  1442    * core: Depending on a computed variable of a list type generates a
  1443        plan without failure. i.e. `${type.name.foos.0.bar}` where `foos`
  1444        is computed. [GH-247]
  1445    * providers/aws: Route53 destroys in parallel work properly. [GH-183]
  1446  
  1447  ## 0.2.0 (August 28, 2014)
  1448  
  1449  BACKWARDS INCOMPATIBILITIES:
  1450  
  1451    * We've replaced the configuration language in use from a C library to
  1452      a pure-Go reimplementation. In the process, we removed some features
  1453      of the language since it was too flexible:
  1454      * Semicolons are no longer valid at the end of lines
  1455      * Keys cannot be double-quoted strings: `"foo" = "bar"` is no longer
  1456        valid.
  1457      * JSON style maps `{ "foo": "bar" }` are no longer valid outside of JSON.
  1458        Maps must be in the format of `{ foo = "bar" }` (like other objects
  1459        in the config)
  1460    * Heroku apps now require (will not validate without) `region` and
  1461      `name` due to an upstream API change. [GH-239]
  1462  
  1463  FEATURES:
  1464  
  1465    * **New Provider: `google`**: Manage Google Compute instances, disks,
  1466        firewalls, and more.
  1467    * **New Provider: `mailgun`**: Manage mailgun domains.
  1468    * **New Function: `concat`**: Concatenate multiple strings together.
  1469      Example: `concat(var.region, "-", var.channel)`.
  1470  
  1471  IMPROVEMENTS:
  1472  
  1473    * core: "~/.terraformrc" (Unix) or "%APPDATA%/terraform.rc" (Windows)
  1474      can be used to configure custom providers and provisioners. [GH-192]
  1475    * providers/aws: EIPs now expose `allocation_id` and `public_ip`
  1476        attributes.
  1477    * providers/aws: Security group rules can be updated without a
  1478        destroy/create.
  1479    * providers/aws: You can enable and disable dns settings for VPCs. [GH-172]
  1480    * providers/aws: Can specify a private IP address for `aws_instance` [GH-217]
  1481  
  1482  BUG FIXES:
  1483  
  1484    * core: Variables are validated to not contain interpolations. [GH-180]
  1485    * core: Key files for provisioning can now contain `~` and will be expanded
  1486        to the user's home directory. [GH-179]
  1487    * core: The `file()` function can load files in sub-directories. [GH-213]
  1488    * core: Fix issue where some JSON structures didn't map properly into
  1489       Terraform structures. [GH-177]
  1490    * core: Resources with only `file()` calls will interpolate. [GH-159]
  1491    * core: Variables work in block names. [GH-234]
  1492    * core: Plugins are searched for in the same directory as the executable
  1493        before the PATH. [GH-157]
  1494    * command/apply: "tfvars" file no longer interferes with plan apply. [GH-153]
  1495    * providers/aws: Fix issues around failing to read EIPs. [GH-122]
  1496    * providers/aws: Autoscaling groups now register and export load
  1497      balancers. [GH-207]
  1498    * providers/aws: Ingress results are treated as a set, so order doesn't
  1499        matter anymore. [GH-87]
  1500    * providers/aws: Instance security groups treated as a set [GH-194]
  1501    * providers/aws: Retry Route53 requests if operation failed because another
  1502        operation is in progress [GH-183]
  1503    * providers/aws: Route53 records with multiple record values work. [GH-221]
  1504    * providers/aws: Changing AMI doesn't result in errors anymore. [GH-196]
  1505    * providers/heroku: If you delete the `config_vars` block, config vars
  1506        are properly nuked.
  1507    * providers/heroku: Domains and drains are deleted before the app.
  1508    * providers/heroku: Moved from the client library bgentry/heroku-go to
  1509        cyberdelia/heroku-go [GH-239].
  1510    * providers/heroku: Plans without a specific plan name for
  1511        heroku\_addon work. [GH-198]
  1512  
  1513  PLUGIN CHANGES:
  1514  
  1515    * **New Package:** `helper/schema`. This introduces a high-level framework
  1516      for easily writing new providers and resources. The Heroku provider has
  1517      been converted to this as an example.
  1518  
  1519  ## 0.1.1 (August 5, 2014)
  1520  
  1521  FEATURES:
  1522  
  1523    * providers/heroku: Now supports creating Heroku Drains [GH-97]
  1524  
  1525  IMPROVEMENTS:
  1526  
  1527    * providers/aws: Launch configurations accept user data [GH-94]
  1528    * providers/aws: Regions are now validated [GH-96]
  1529    * providers/aws: ELB now supports health check configurations [GH-109]
  1530  
  1531  BUG FIXES:
  1532  
  1533    * core: Default variable file "terraform.tfvars" is auto-loaded. [GH-59]
  1534    * core: Multi-variables (`foo.*.bar`) work even when `count = 1`. [GH-115]
  1535    * core: `file()` function can have string literal arg [GH-145]
  1536    * providers/cloudflare: Include the proper bins so the cloudflare
  1537        provider is compiled
  1538    * providers/aws: Engine version for RDS now properly set [GH-118]
  1539    * providers/aws: Security groups now depend on each other and
  1540    * providers/aws: DB instances now wait for destroys, have proper
  1541        dependencies and allow passing skip_final_snapshot
  1542    * providers/aws: Add associate_public_ip_address as an attribute on
  1543        the aws_instance resource [GH-85]
  1544    * providers/aws: Fix cidr blocks being updated [GH-65, GH-85]
  1545    * providers/aws: Description is now required for security groups
  1546    * providers/digitalocean: Private IP addresses are now a separate
  1547        attribute
  1548    * provisioner/all: If an SSH key is given with a password, a better
  1549        error message is shown. [GH-73]
  1550  
  1551  ## 0.1.0 (July 28, 2014)
  1552  
  1553    * Initial release