github.com/jsoriano/terraform@v0.6.7-0.20151026070445-8b70867fdd95/CHANGELOG.md (about)

     1  ## 0.6.7 (Unreleased)
     2  
     3  BUG FIXES:
     4  
     5    * `terraform remote config`: update `--help` output [GH-3632]
     6    * Google provider: Timeout when deleting large instance_group_manager [GH-3591]
     7  
     8  IMPROVEMENTS:
     9  
    10    * Google provider: Accurate Terraform Version [GH-3554]
    11    * Google provider: Simplified auth (DefaultClient support) [GH-3553]
    12  
    13  ## 0.6.6 (October 23, 2015)
    14  
    15  FEATURES:
    16  
    17    * New interpolation functions: `cidrhost`, `cidrnetmask` and `cidrsubnet` [GH-3127]
    18  
    19  IMPROVEMENTS:
    20  
    21    * "forces new resource" now highlighted in plan output [GH-3136]
    22  
    23  BUG FIXES:
    24  
    25    * helper/schema: Better error message for assigning list/map to string [GH-3009]
    26    * remote/state/atlas: Additional remote state conflict handling for semantically neutral state changes [GH-3603]
    27  
    28  ## 0.6.5 (October 21, 2015)
    29  
    30  FEATURES:
    31  
    32    * **New resources: `aws_codeploy_app` and `aws_codeploy_deployment_group`** [GH-2783]
    33    * New remote state backend: `etcd` [GH-3487]
    34    * New interpolation functions: `upper` and `lower` [GH-3558]
    35  
    36  BUG FIXES:
    37  
    38    * core: Fix remote state conflicts caused by ambiguity in ordering of deeply nested modules [GH-3573]
    39    * core: Fix remote state conflicts caused by state metadata differences [GH-3569]
    40    * core: Avoid using http.DefaultClient [GH-3532]
    41  
    42  INTERNAL IMPROVEMENTS:
    43  
    44    * provider/digitalocean: use official Go client [GH-3333]
    45    * core: extract module fetching to external library [GH-3516]
    46  
    47  ## 0.6.4 (October 15, 2015)
    48  
    49  FEATURES:
    50  
    51    * **New provider: `rundeck`** [GH-2412]
    52    * **New provider: `packet`** [GH-2260], [GH-3472]
    53    * **New provider: `vsphere`**: Initial support for a VM resource [GH-3419]
    54    * **New resource: `cloudstack_loadbalancer_rule`** [GH-2934]
    55    * **New resource: `google_compute_project_metadata`** [GH-3065]
    56    * **New resources: `aws_ami`, `aws_ami_copy`, `aws_ami_from_instance`** [GH-2784]
    57    * **New resources: `aws_cloudwatch_log_group`** [GH-2415]
    58    * **New resource: `google_storage_bucket_object`** [GH-3192]
    59    * **New resources: `google_compute_vpn_gateway`, `google_compute_vpn_tunnel`** [GH-3213]
    60    * **New resources: `google_storage_bucket_acl`, `google_storage_object_acl`** [GH-3272]
    61    * **New resource: `aws_iam_saml_provider`** [GH-3156]
    62    * **New resources: `aws_efs_file_system` and `aws_efs_mount_target`** [GH-2196]
    63    * **New resources: `aws_opsworks_*`** [GH-2162]
    64    * **New resource: `aws_elasticsearch_domain`** [GH-3443]
    65    * **New resource: `aws_directory_service_directory`** [GH-3228]
    66    * **New resource: `aws_autoscaling_lifecycle_hook`** [GH-3351]
    67    * **New resource: `aws_placement_group`** [GH-3457]
    68    * **New resource: `aws_glacier_vault`** [GH-3491]
    69    * **New lifecycle flag: `ignore_changes`** [GH-2525]
    70  
    71  IMPROVEMENTS:
    72  
    73    * core: Add a function to find the index of an element in a list. [GH-2704]
    74    * core: Print all outputs when `terraform output` is called with no arguments [GH-2920]
    75    * core: In plan output summary, count resource replacement as Add/Remove instead of Change [GH-3173]
    76    * core: Add interpolation functions for base64 encoding and decoding. [GH-3325]
    77    * core: Expose parallelism as a CLI option instead of a hard-coding the default of 10 [GH-3365]
    78    * core: Add interpolation function `compact`, to remove empty elements from a list. [GH-3239], [GH-3479]
    79    * core: Allow filtering of log output by level, using e.g. ``TF_LOG=INFO`` [GH-3380]
    80    * provider/aws: Add `instance_initiated_shutdown_behavior` to AWS Instance [GH-2887]
    81    * provider/aws: Support IAM role names (previously just ARNs) in `aws_ecs_service.iam_role` [GH-3061]
    82    * provider/aws: Add update method to RDS Subnet groups, can modify subnets without recreating  [GH-3053]
    83    * provider/aws: Paginate notifications returned for ASG Notifications [GH-3043]
    84    * provider/aws: Adds additional S3 Bucket Object inputs [GH-3265]
    85    * provider/aws: add `ses_smtp_password` to `aws_iam_access_key` [GH-3165]
    86    * provider/aws: read `iam_instance_profile` for `aws_instance` and save to state [GH-3167]
    87    * provider/aws: allow `instance` to be computed in `aws_eip` [GH-3036]
    88    * provider/aws: Add `versioning` option to `aws_s3_bucket` [GH-2942]
    89    * provider/aws: Add `configuation_endpoint` to `aws_elasticache_cluster` [GH-3250]
    90    * provider/aws: Add validation for `app_cookie_stickiness_policy.name` [GH-3277]
    91    * provider/aws: Add validation for `db_parameter_group.name` [GH-3279]
    92    * provider/aws: Set DynamoDB Table ARN after creation [GH-3500]
    93    * provider/aws: `aws_s3_bucket_object` allows interpolated content to be set with new `content` attribute. [GH-3200]
    94    * provider/aws: Allow tags for `aws_kinesis_stream` resource. [GH-3397]
    95    * provider/aws: Configurable capacity waiting duration for ASGs [GH-3191]
    96    * provider/aws: Allow non-persistent Spot Requests [GH-3311]
    97    * provider/aws: Support tags for AWS DB subnet group [GH-3138]
    98    * provider/cloudstack: Add `project` parameter to `cloudstack_vpc`, `cloudstack_network`, `cloudstack_ipaddress` and `cloudstack_disk` [GH-3035]
    99    * provider/openstack: add functionality to attach FloatingIP to Port [GH-1788]
   100    * provider/google: Can now do multi-region deployments without using multiple providers [GH-3258]
   101    * remote/s3: Allow canned ACLs to be set on state objects. [GH-3233]
   102    * remote/s3: Remote state is stored in S3 with `Content-Type: application/json` [GH-3385]
   103  
   104  BUG FIXES:
   105  
   106    * core: Fix problems referencing list attributes in interpolations [GH-2157]
   107    * core: don't error on computed value during input walk [GH-2988]
   108    * core: Ignore missing variables during destroy phase [GH-3393]
   109    * provider/google: Crashes with interface conversion in GCE Instance Template [GH-3027]
   110    * provider/google: Convert int to int64 when building the GKE cluster.NodeConfig struct [GH-2978]
   111    * provider/google: google_compute_instance_template.network_interface.network should be a URL [GH-3226]
   112    * provider/aws: Retry creation of `aws_ecs_service` if IAM policy isn't ready yet [GH-3061]
   113    * provider/aws: Fix issue with mixed capitalization for RDS Instances  [GH-3053]
   114    * provider/aws: Fix issue with RDS to allow major version upgrades [GH-3053]
   115    * provider/aws: Fix shard_count in `aws_kinesis_stream` [GH-2986]
   116    * provider/aws: Fix issue with `key_name` and using VPCs with spot instance requests [GH-2954]
   117    * provider/aws: Fix unresolvable diffs coming from `aws_elasticache_cluster` names being downcased
   118        by AWS [GH-3120]
   119    * provider/aws: Read instance source_dest_check and save to state [GH-3152]
   120    * provider/aws: Allow `weight = 0` in Route53 records [GH-3196]
   121    * provider/aws: Normalize aws_elasticache_cluster id to lowercase, allowing convergence. [GH-3235]
   122    * provider/aws: Fix ValidateAccountId for IAM Instance Profiles [GH-3313]
   123    * provider/aws: Update Security Group Rules to Version 2 [GH-3019]
   124    * provider/aws: Migrate KeyPair to version 1, fixing issue with using `file()` [GH-3470]
   125    * provider/aws: Fix force_delete on autoscaling groups [GH-3485]
   126    * provider/aws: Fix crash with VPC Peering connections [GH-3490]
   127    * provider/aws: fix bug with reading GSIs from dynamodb [GH-3300]
   128    * provider/docker: Fix issue preventing private images from being referenced [GH-2619]
   129    * provider/digitalocean: Fix issue causing unnecessary diffs based on droplet slugsize case [GH-3284]
   130    * provider/openstack: add state 'downloading' to list of expected states in
   131        `blockstorage_volume_v1` creation [GH-2866]
   132    * provider/openstack: remove security groups (by name) before adding security
   133        groups (by id) [GH-2008]
   134  
   135  INTERNAL IMPROVEMENTS:
   136  
   137    * core: Makefile target "plugin-dev" for building just one plugin. [GH-3229]
   138    * helper/schema: Don't allow ``Update`` func if no attributes can actually be updated, per schema. [GH-3288]
   139    * helper/schema: Default hashing function for sets [GH-3018]
   140    * helper/multierror: Remove in favor of [github.com/hashicorp/go-multierror](http://github.com/hashicorp/go-multierror). [GH-3336]
   141  
   142  ## 0.6.3 (August 11, 2015)
   143  
   144  BUG FIXES:
   145  
   146    * core: Skip all descendents after error, not just children; helps prevent confusing
   147        additional errors/crashes after initial failure [GH-2963]
   148    * core: fix deadlock possibility when both a module and a dependent resource are
   149        removed in the same run [GH-2968]
   150    * provider/aws: Fix issue with authenticating when using IAM profiles [GH-2959]
   151  
   152  ## 0.6.2 (August 6, 2015)
   153  
   154  FEATURES:
   155  
   156    * **New resource: `google_compute_instance_group_manager`** [GH-2868]
   157    * **New resource: `google_compute_autoscaler`** [GH-2868]
   158    * **New resource: `aws_s3_bucket_object`** [GH-2898]
   159  
   160  IMPROVEMENTS:
   161  
   162    * core: Add resource IDs to errors coming from `apply`/`refresh` [GH-2815]
   163    * provider/aws: Validate credentials before walking the graph [GH-2730]
   164    * provider/aws: Added website_domain for S3 buckets [GH-2210]
   165    * provider/aws: ELB names are now optional, and generated by Terraform if omitted [GH-2571]
   166    * provider/aws: Downcase RDS engine names to prevent continuous diffs [GH-2745]
   167    * provider/aws: Added `source_dest_check` attribute to the aws_network_interface [GH-2741]
   168    * provider/aws: Clean up externally removed Launch Configurations [GH-2806]
   169    * provider/aws: Allow configuration of the DynamoDB Endpoint [GH-2825]
   170    * provider/aws: Compute private ip addresses of ENIs if they are not specified [GH-2743]
   171    * provider/aws: Add `arn` attribute for DynamoDB tables [GH-2924]
   172    * provider/aws: Fail silently when account validation fails while from instance profile [GH-3001]
   173    * provider/azure: Allow `settings_file` to accept XML string [GH-2922]
   174    * provider/azure: Provide a simpler error when using a Platform Image without a
   175        Storage Service [GH-2861]
   176    * provider/google: `account_file` is now expected to be JSON. Paths are still supported for
   177        backwards compatibility. [GH-2839]
   178  
   179  BUG FIXES:
   180  
   181    * core: Prevent error duplication in `apply` [GH-2815]
   182    * core: Fix crash when  a provider validation adds a warning [GH-2878]
   183    * provider/aws: Fix issue with toggling monitoring in AWS Instances [GH-2794]
   184    * provider/aws: Fix issue with Spot Instance Requests and cancellation [GH-2805]
   185    * provider/aws: Fix issue with checking for ElastiCache cluster cache node status [GH-2842]
   186    * provider/aws: Fix issue when unable to find a Root Block Device name of an Instance Backed
   187        AMI [GH-2646]
   188    * provider/dnsimple: Domain and type should force new records [GH-2777]
   189    * provider/aws: Fix issue with IAM Server Certificates and Chains [GH-2871]
   190    * provider/aws: Fix issue with IAM Server Certificates when using `path` [GH-2871]
   191    * provider/aws: Fix issue in Security Group Rules when the Security Group is not found [GH-2897]
   192    * provider/aws: allow external ENI attachments [GH-2943]
   193    * provider/aws: Fix issue with S3 Buckets, and throwing an error when not found [GH-2925]
   194  
   195  ## 0.6.1 (July 20, 2015)
   196  
   197  FEATURES:
   198  
   199    * **New resource: `google_container_cluster`** [GH-2357]
   200    * **New resource: `aws_vpc_endpoint`** [GH-2695]
   201  
   202  IMPROVEMENTS:
   203  
   204    * connection/ssh: Print SSH bastion host details to output [GH-2684]
   205    * provider/aws: Create RDS databases from snapshots [GH-2062]
   206    * provider/aws: Add support for restoring from Redis backup stored in S3 [GH-2634]
   207    * provider/aws: Add `maintenance_window` to ElastiCache cluster [GH-2642]
   208    * provider/aws: Availability Zones are optional when specifying VPC Zone Identifiers in
   209        Auto Scaling Groups updates [GH-2724]
   210    * provider/google: Add metadata_startup_script to google_compute_instance [GH-2375]
   211  
   212  BUG FIXES:
   213  
   214    * core: Don't prompt for variables with defaults [GH-2613]
   215    * core: Return correct number of planned updates [GH-2620]
   216    * core: Fix "provider not found" error that can occur while running
   217        a destroy plan with grandchildren modules [GH-2755]
   218    * core: Fix UUID showing up in diff for computed splat (`foo.*.bar`)
   219        variables. [GH-2788]
   220    * core: Orphan modules that contain no resources (only other modules)
   221        are properly destroyed up to arbitrary depth [GH-2786]
   222    * core: Fix "attribute not available" during destroy plans in
   223        cases where the parameter is passed between modules [GH-2775]
   224    * core: Record schema version when destroy fails [GH-2923]
   225    * connection/ssh: fix issue on machines with an SSH Agent available
   226      preventing `key_file` from being read without explicitly
   227      setting `agent = false` [GH-2615]
   228    * provider/aws: Allow uppercase characters in `aws_elb.name` [GH-2580]
   229    * provider/aws: Allow underscores in `aws_db_subnet_group.name` (undocumented by AWS) [GH-2604]
   230    * provider/aws: Allow dots in `aws_db_subnet_group.name` (undocumented by AWS) [GH-2665]
   231    * provider/aws: Fix issue with pending Spot Instance requests [GH-2640]
   232    * provider/aws: Fix issue in AWS Classic environment with referencing external
   233        Security Groups [GH-2644]
   234    * provider/aws: Bump internet gateway detach timeout [GH-2669]
   235    * provider/aws: Fix issue with detecting differences in DB Parameters [GH-2728]
   236    * provider/aws: `ecs_cluster` rename (recreation) and deletion is handled correctly [GH-2698]
   237    * provider/aws: `aws_route_table` ignores routes generated for VPC endpoints [GH-2695]
   238    * provider/aws: Fix issue with Launch Configurations and enable_monitoring [GH-2735]
   239    * provider/openstack: allow empty api_key and endpoint_type [GH-2626]
   240    * provisioner/chef: Fix permission denied error with ohai hints [GH-2781]
   241  
   242  ## 0.6.0 (June 30, 2015)
   243  
   244  BACKWARDS INCOMPATIBILITIES:
   245  
   246   * command/push: If a variable is already set within Atlas, it won't be
   247       updated unless the `-overwrite` flag is present [GH-2373]
   248   * connection/ssh: The `agent` field now defaults to `true` if
   249       the `SSH_AGENT_SOCK` environment variable is present. In other words,
   250       `ssh-agent` support is now opt-out instead of opt-in functionality. [GH-2408]
   251   * provider/aws: If you were setting access and secret key to blank ("")
   252       to force Terraform to load credentials from another source such as the
   253       EC2 role, this will now error. Remove the blank lines and Terraform
   254       will load from other sources.
   255   * `concat()` has been repurposed to combine lists instead of strings (old behavior
   256       of joining strings is maintained in this version but is deprecated, strings
   257       should be combined using interpolation syntax, like "${var.foo}{var.bar}")
   258       [GH-1790]
   259  
   260  FEATURES:
   261  
   262    * **New provider: `azure`** [GH-2052, GH-2053, GH-2372, GH-2380, GH-2394, GH-2515, GH-2530, GH-2562]
   263    * **New resource: `aws_autoscaling_notification`** [GH-2197]
   264    * **New resource: `aws_autoscaling_policy`** [GH-2201]
   265    * **New resource: `aws_cloudwatch_metric_alarm`** [GH-2201]
   266    * **New resource: `aws_dynamodb_table`** [GH-2121]
   267    * **New resource: `aws_ecs_cluster`** [GH-1803]
   268    * **New resource: `aws_ecs_service`** [GH-1803]
   269    * **New resource: `aws_ecs_task_definition`** [GH-1803, GH-2402]
   270    * **New resource: `aws_elasticache_parameter_group`** [GH-2276]
   271    * **New resource: `aws_flow_log`** [GH-2384]
   272    * **New resource: `aws_iam_group_association`** [GH-2273]
   273    * **New resource: `aws_iam_policy_attachment`** [GH-2395]
   274    * **New resource: `aws_lambda_function`** [GH-2170]
   275    * **New resource: `aws_route53_delegation_set`** [GH-1999]
   276    * **New resource: `aws_route53_health_check`** [GH-2226]
   277    * **New resource: `aws_spot_instance_request`** [GH-2263]
   278    * **New resource: `cloudstack_ssh_keypair`** [GH-2004]
   279    * **New remote state backend: `swift`**: You can now store remote state in
   280       a OpenStack Swift. [GH-2254]
   281    * command/output: support display of module outputs [GH-2102]
   282    * core: `keys()` and `values()` funcs for map variables [GH-2198]
   283    * connection/ssh: SSH bastion host support and ssh-agent forwarding [GH-2425]
   284  
   285  IMPROVEMENTS:
   286  
   287    * core: HTTP remote state now accepts `skip_cert_verification`
   288        option to ignore TLS cert verification. [GH-2214]
   289    * core: S3 remote state now accepts the 'encrypt' option for SSE [GH-2405]
   290    * core: `plan` now reports sum of resources to be changed/created/destroyed [GH-2458]
   291    * core: Change string list representation so we can distinguish empty, single
   292        element lists [GH-2504]
   293    * core: Properly close provider and provisioner plugin connections [GH-2406, GH-2527]
   294    * provider/aws: AutoScaling groups now support updating Load Balancers without
   295        recreation [GH-2472]
   296    * provider/aws: Allow more in-place updates for ElastiCache cluster without recreating
   297        [GH-2469]
   298    * provider/aws: ElastiCache Subnet Groups can be updated
   299        without destroying first [GH-2191]
   300    * provider/aws: Normalize `certificate_chain` in `aws_iam_server_certificate` to
   301        prevent unnecessary replacement. [GH-2411]
   302    * provider/aws: `aws_instance` supports `monitoring' [GH-2489]
   303    * provider/aws: `aws_launch_configuration` now supports `enable_monitoring` [GH-2410]
   304    * provider/aws: Show outputs after `terraform refresh` [GH-2347]
   305    * provider/aws: Add backoff/throttling during DynamoDB creation [GH-2462]
   306    * provider/aws: Add validation for aws_vpc.cidr_block [GH-2514]
   307    * provider/aws: Add validation for aws_db_subnet_group.name [GH-2513]
   308    * provider/aws: Add validation for aws_db_instance.identifier [GH-2516]
   309    * provider/aws: Add validation for aws_elb.name [GH-2517]
   310    * provider/aws: Add validation for aws_security_group (name+description) [GH-2518]
   311    * provider/aws: Add validation for aws_launch_configuration [GH-2519]
   312    * provider/aws: Add validation for aws_autoscaling_group.name [GH-2520]
   313    * provider/aws: Add validation for aws_iam_role.name [GH-2521]
   314    * provider/aws: Add validation for aws_iam_role_policy.name [GH-2552]
   315    * provider/aws: Add validation for aws_iam_instance_profile.name [GH-2553]
   316    * provider/aws: aws_auto_scaling_group.default_cooldown no longer requires
   317        resource replacement [GH-2510]
   318    * provider/aws: add AH and ESP protocol integers [GH-2321]
   319    * provider/docker: `docker_container` has the `privileged`
   320        option. [GH-2227]
   321    * provider/openstack: allow `OS_AUTH_TOKEN` environment variable
   322        to set the openstack `api_key` field [GH-2234]
   323    * provider/openstack: Can now configure endpoint type (public, admin,
   324        internal) [GH-2262]
   325    * provider/cloudstack: `cloudstack_instance` now supports projects [GH-2115]
   326    * provisioner/chef: Added a `os_type` to specifically specify the target OS [GH-2483]
   327    * provisioner/chef: Added a `ohai_hints` option to upload hint files [GH-2487]
   328  
   329  BUG FIXES:
   330  
   331    * core: lifecycle `prevent_destroy` can be any value that can be
   332        coerced into a bool [GH-2268]
   333    * core: matching provider types in sibling modules won't override
   334        each other's config. [GH-2464]
   335    * core: computed provider configurations now properly validate [GH-2457]
   336    * core: orphan (commented out) resource dependencies are destroyed in
   337        the correct order [GH-2453]
   338    * core: validate object types in plugins are actually objects [GH-2450]
   339    * core: fix `-no-color` flag in subcommands [GH-2414]
   340    * core: Fix error of 'attribute not found for variable' when a computed
   341        resource attribute is used as a parameter to a module [GH-2477]
   342    * core: moduled orphans will properly inherit provider configs [GH-2476]
   343    * core: modules with provider aliases work properly if the parent
   344        doesn't implement those aliases [GH-2475]
   345    * core: unknown resource attributes passed in as parameters to modules
   346        now error [GH-2478]
   347    * core: better error messages for missing variables [GH-2479]
   348    * core: removed set items now properly appear in diffs and applies [GH-2507]
   349    * core: '*' will not be added as part of the variable name when you
   350        attempt multiplication without a space [GH-2505]
   351    * core: fix target dependency calculation across module boundaries [GH-2555]
   352    * command/*: fixed bug where variable input was not asked for unset
   353        vars if terraform.tfvars existed [GH-2502]
   354    * command/apply: prevent output duplication when reporting errors [GH-2267]
   355    * command/apply: destroyed orphan resources are properly counted [GH-2506]
   356    * provider/aws: loading credentials from the environment (vars, EC2 role,
   357        etc.) is more robust and will not ask for credentials from stdin [GH-1841]
   358    * provider/aws: fix panic when route has no `cidr_block` [GH-2215]
   359    * provider/aws: fix issue preventing destruction of IAM Roles [GH-2177]
   360    * provider/aws: fix issue where Security Group Rules could collide and fail
   361        to save to the state file correctly [GH-2376]
   362    * provider/aws: fix issue preventing destruction self referencing Securtity
   363       Group Rules [GH-2305]
   364    * provider/aws: fix issue causing perpetual diff on ELB listeners
   365        when non-lowercase protocol strings were used [GH-2246]
   366    * provider/aws: corrected frankfurt S3 website region [GH-2259]
   367    * provider/aws: `aws_elasticache_cluster` port is required [GH-2160]
   368    * provider/aws: Handle AMIs where RootBlockDevice does not appear in the
   369        BlockDeviceMapping, preventing root_block_device from working [GH-2271]
   370    * provider/aws: fix `terraform show` with remote state [GH-2371]
   371    * provider/aws: detect `instance_type` drift on `aws_instance` [GH-2374]
   372    * provider/aws: fix crash when `security_group_rule` referenced non-existent
   373        security group [GH-2434]
   374    * provider/aws: `aws_launch_configuration` retries if IAM instance
   375        profile is not ready yet. [GH-2452]
   376    * provider/aws: `fqdn` is populated during creation for `aws_route53_record` [GH-2528]
   377    * provider/aws: retry VPC delete on DependencyViolation due to eventual
   378        consistency [GH-2532]
   379    * provider/aws: VPC peering connections in "failed" state are deleted [GH-2544]
   380    * provider/aws: EIP deletion works if it was manually disassociated [GH-2543]
   381    * provider/aws: `elasticache_subnet_group.subnet_ids` is now a required argument [GH-2534]
   382    * provider/aws: handle nil response from VPN connection describes [GH-2533]
   383    * provider/cloudflare: manual record deletion doesn't cause error [GH-2545]
   384    * provider/digitalocean: handle case where droplet is deleted outside of
   385        terraform [GH-2497]
   386    * provider/dme: No longer an error if record deleted manually [GH-2546]
   387    * provider/docker: Fix issues when using containers with links [GH-2327]
   388    * provider/openstack: fix panic case if API returns nil network [GH-2448]
   389    * provider/template: fix issue causing "unknown variable" rendering errors
   390        when an existing set of template variables is changed [GH-2386]
   391    * provisioner/chef: improve the decoding logic to prevent parameter not found errors [GH-2206]
   392  
   393  ## 0.5.3 (June 1, 2015)
   394  
   395  IMPROVEMENTS:
   396  
   397    * **New resource: `aws_kinesis_stream`** [GH-2110]
   398    * **New resource: `aws_iam_server_certificate`** [GH-2086]
   399    * **New resource: `aws_sqs_queue`** [GH-1939]
   400    * **New resource: `aws_sns_topic`** [GH-1974]
   401    * **New resource: `aws_sns_topic_subscription`** [GH-1974]
   402    * **New resource: `aws_volume_attachment`** [GH-2050]
   403    * **New resource: `google_storage_bucket`** [GH-2060]
   404    * provider/aws: support ec2 termination protection [GH-1988]
   405    * provider/aws: support for RDS Read Replicas [GH-1946]
   406    * provider/aws: `aws_s3_bucket` add support for `policy` [GH-1992]
   407    * provider/aws: `aws_ebs_volume` add support for `tags` [GH-2135]
   408    * provider/aws: `aws_elasticache_cluster` Confirm node status before reporting
   409        available
   410    * provider/aws: `aws_network_acl` Add support for ICMP Protocol [GH-2148]
   411    * provider/aws: New `force_destroy` parameter for S3 buckets, to destroy
   412        Buckets that contain objects [GH-2007]
   413    * provider/aws: switching `health_check_type` on ASGs no longer requires
   414        resource refresh [GH-2147]
   415    * provider/aws: ignore empty `vpc_security_group_ids` on `aws_instance` [GH-2311]
   416  
   417  BUG FIXES:
   418  
   419    * provider/aws: Correctly handle AWS keypairs which no longer exist [GH-2032]
   420    * provider/aws: Fix issue with restoring an Instance from snapshot ID [GH-2120]
   421    * provider/template: store relative path in the state [GH-2038]
   422    * provisioner/chef: fix interpolation in the Chef provisioner [GH-2168]
   423    * provisioner/remote-exec: Don't prepend shebang on scripts that already
   424        have one [GH-2041]
   425  
   426  ## 0.5.2 (May 15, 2015)
   427  
   428  FEATURES:
   429  
   430    * **Chef provisioning**: You can now provision new hosts (both Linux and
   431       Windows) with [Chef](https://chef.io) using a native provisioner [GH-1868]
   432  
   433  IMPROVEMENTS:
   434  
   435    * **New config function: `formatlist`** - Format lists in a similar way to `format`.
   436      Useful for creating URLs from a list of IPs. [GH-1829]
   437    * **New resource: `aws_route53_zone_association`**
   438    * provider/aws: `aws_autoscaling_group` can wait for capacity in ELB
   439        via `min_elb_capacity` [GH-1970]
   440    * provider/aws: `aws_db_instances` supports `license_model` [GH-1966]
   441    * provider/aws: `aws_elasticache_cluster` add support for Tags [GH-1965]
   442    * provider/aws: `aws_network_acl` Network ACLs can be applied to multiple subnets [GH-1931]
   443    * provider/aws: `aws_s3_bucket` exports `hosted_zone_id` and `region` [GH-1865]
   444    * provider/aws: `aws_s3_bucket` add support for website `redirect_all_requests_to` [GH-1909]
   445    * provider/aws: `aws_route53_record` exports `fqdn` [GH-1847]
   446    * provider/aws: `aws_route53_zone` can create private hosted zones [GH-1526]
   447    * provider/google: `google_compute_instance` `scratch` attribute added [GH-1920]
   448  
   449  BUG FIXES:
   450  
   451    * core: fix "resource not found" for interpolation issues with modules
   452    * core: fix unflattenable error for orphans [GH-1922]
   453    * core: fix deadlock with create-before-destroy + modules [GH-1949]
   454    * core: fix "no roots found" error with create-before-destroy [GH-1953]
   455    * core: variables set with environment variables won't validate as
   456        not set without a default [GH-1930]
   457    * core: resources with a blank ID in the state are now assumed to not exist [GH-1905]
   458    * command/push: local vars override remote ones [GH-1881]
   459    * provider/aws: Mark `aws_security_group` description as `ForceNew` [GH-1871]
   460    * provider/aws: `aws_db_instance` ARN value is correct [GH-1910]
   461    * provider/aws: `aws_db_instance` only submit modify request if there
   462        is a change. [GH-1906]
   463    * provider/aws: `aws_elasticache_cluster` export missing information on cluster nodes [GH-1965]
   464    * provider/aws: bad AMI on a launch configuration won't block refresh [GH-1901]
   465    * provider/aws: `aws_security_group` + `aws_subnet` - destroy timeout increased
   466      to prevent DependencyViolation errors. [GH-1886]
   467    * provider/google: `google_compute_instance` Local SSDs no-longer cause crash
   468        [GH-1088]
   469    * provider/google: `google_http_health_check` Defaults now driven from Terraform,
   470        avoids errors on update [GH-1894]
   471    * provider/google: `google_compute_template` Update Instance Template network
   472        definition to match changes to Instance [GH-980]
   473    * provider/template: Fix infinite diff [GH-1898]
   474  
   475  ## 0.5.1 (never released)
   476  
   477  This version was never released since we accidentally skipped it!
   478  
   479  ## 0.5.0 (May 7, 2015)
   480  
   481  BACKWARDS INCOMPATIBILITIES:
   482  
   483    * provider/aws: Terraform now remove the default egress rule created by AWS in
   484      a new security group.
   485  
   486  FEATURES:
   487  
   488    * **Multi-provider (a.k.a multi-region)**: Multiple instances of a single
   489       provider can be configured so resources can apply to different settings.
   490       As an example, this allows Terraform to manage multiple regions with AWS.
   491    * **Environmental variables to set variables**: Environment variables can be
   492       used to set variables. The environment variables must be in the format
   493       `TF_VAR_name` and this will be checked last for a value.
   494    * **New remote state backend: `s3`**: You can now store remote state in
   495       an S3 bucket. [GH-1723]
   496    * **Automatic AWS retries**: This release includes a lot of improvement
   497       around automatic retries of transient errors in AWS. The number of
   498       retry attempts is also configurable.
   499    * **Templates**: A new `template_file` resource allows long strings needing
   500       variable interpolation to be moved into files. [GH-1778]
   501    * **Provision with WinRM**: Provisioners can now run remote commands on
   502       Windows hosts. [GH-1483]
   503  
   504  IMPROVEMENTS:
   505  
   506    * **New config function: `length`** - Get the length of a string or a list.
   507        Useful in conjunction with `split`. [GH-1495]
   508    * **New resource: `aws_app_cookie_stickiness_policy`**
   509    * **New resource: `aws_customer_gateway`**
   510    * **New resource: `aws_ebs_volume`**
   511    * **New resource: `aws_elasticache_cluster`**
   512    * **New resource: `aws_elasticache_security_group`**
   513    * **New resource: `aws_elasticache_subnet_group`**
   514    * **New resource: `aws_iam_access_key`**
   515    * **New resource: `aws_iam_group_policy`**
   516    * **New resource: `aws_iam_group`**
   517    * **New resource: `aws_iam_instance_profile`**
   518    * **New resource: `aws_iam_policy`**
   519    * **New resource: `aws_iam_role_policy`**
   520    * **New resource: `aws_iam_role`**
   521    * **New resource: `aws_iam_user_policy`**
   522    * **New resource: `aws_iam_user`**
   523    * **New resource: `aws_lb_cookie_stickiness_policy`**
   524    * **New resource: `aws_proxy_protocol_policy`**
   525    * **New resource: `aws_security_group_rule`**
   526    * **New resource: `aws_vpc_dhcp_options_association`**
   527    * **New resource: `aws_vpc_dhcp_options`**
   528    * **New resource: `aws_vpn_connection_route`**
   529    * **New resource: `google_dns_managed_zone`**
   530    * **New resource: `google_dns_record_set`**
   531    * **Migrate to upstream AWS SDK:** Migrate the AWS provider to
   532        [awslabs/aws-sdk-go](https://github.com/awslabs/aws-sdk-go),
   533        the official `awslabs` library. Previously we had forked the library for
   534        stability while `awslabs` refactored. Now that work has completed, and we've
   535        migrated back to the upstream version.
   536    * core: Improve error message on diff mismatch [GH-1501]
   537    * provisioner/file: expand `~` in source path [GH-1569]
   538    * provider/aws: Better retry logic, now retries up to 11 times by default
   539        with exponentional backoff. This number is configurable. [GH-1787]
   540    * provider/aws: Improved credential detection [GH-1470]
   541    * provider/aws: Can specify a `token` via the config file [GH-1601]
   542    * provider/aws: Added new `vpc_security_group_ids` attribute for AWS
   543        Instances. If using a VPC, you can now modify the security groups for that
   544        Instance without destroying it [GH-1539]
   545    * provider/aws: White or blacklist account IDs that can be used to
   546        protect against accidents. [GH-1595]
   547    * provider/aws: Add a subset of IAM resources [GH-939]
   548    * provider/aws: `aws_autoscaling_group` retries deletes through "in progress"
   549        errors [GH-1840]
   550    * provider/aws: `aws_autoscaling_group` waits for healthy capacity during
   551        ASG creation [GH-1839]
   552    * provider/aws: `aws_instance` supports placement groups [GH-1358]
   553    * provider/aws: `aws_eip` supports network interface attachment [GH-1681]
   554    * provider/aws: `aws_elb` supports in-place changing of listeners [GH-1619]
   555    * provider/aws: `aws_elb` supports connection draining settings [GH-1502]
   556    * provider/aws: `aws_elb` increase default idle timeout to 60s [GH-1646]
   557    * provider/aws: `aws_key_pair` name can be omitted and generated [GH-1751]
   558    * provider/aws: `aws_network_acl` improved validation for network ACL ports
   559        and protocols [GH-1798] [GH-1808]
   560    * provider/aws: `aws_route_table` can target network interfaces [GH-968]
   561    * provider/aws: `aws_route_table` can specify propagating VGWs [GH-1516]
   562    * provider/aws: `aws_route53_record` supports weighted sets [GH-1578]
   563    * provider/aws: `aws_route53_zone` exports nameservers [GH-1525]
   564    * provider/aws: `aws_s3_bucket` website support [GH-1738]
   565    * provider/aws: `aws_security_group` name becomes optional and can be
   566        automatically set to a unique identifier; this helps with
   567        `create_before_destroy` scenarios [GH-1632]
   568    * provider/aws: `aws_security_group` description becomes optional with a
   569        static default value [GH-1632]
   570    * provider/aws: automatically set the private IP as the SSH address
   571        if not specified and no public IP is available [GH-1623]
   572    * provider/aws: `aws_elb` exports `source_security_group` field [GH-1708]
   573    * provider/aws: `aws_route53_record` supports alias targeting [GH-1775]
   574    * provider/aws: Remove default AWS egress rule for newly created Security Groups [GH-1765]
   575    * provider/consul: add `scheme` configuration argument [GH-1838]
   576    * provider/docker: `docker_container` can specify links [GH-1564]
   577    * provider/google: `resource_compute_disk` supports snapshots [GH-1426]
   578    * provider/google: `resource_compute_instance` supports specifying the
   579        device name [GH-1426]
   580    * provider/openstack: Floating IP support for LBaaS [GH-1550]
   581    * provider/openstack: Add AZ to `openstack_blockstorage_volume_v1` [GH-1726]
   582  
   583  BUG FIXES:
   584  
   585    * core: Fix graph cycle issues surrounding modules [GH-1582] [GH-1637]
   586    * core: math on arbitrary variables works if first operand isn't a
   587        numeric primitive. [GH-1381]
   588    * core: avoid unnecessary cycles by pruning tainted destroys from
   589        graph if there are no tainted resources [GH-1475]
   590    * core: fix issue where destroy nodes weren't pruned in specific
   591        edge cases around matching prefixes, which could cause cycles [GH-1527]
   592    * core: fix issue causing diff mismatch errors in certain scenarios during
   593        resource replacement [GH-1515]
   594    * core: dependencies on resources with a different index work when
   595        count > 1 [GH-1540]
   596    * core: don't panic if variable default type is invalid [GH-1344]
   597    * core: fix perpetual diff issue for computed maps that are empty [GH-1607]
   598    * core: validation added to check for `self` variables in modules [GH-1609]
   599    * core: fix edge case where validation didn't pick up unknown fields
   600        if the value was computed [GH-1507]
   601    * core: Fix issue where values in sets on resources couldn't contain
   602        hyphens. [GH-1641]
   603    * core: Outputs removed from the config are removed from the state [GH-1714]
   604    * core: Validate against the worst-case graph during plan phase to catch cycles
   605        that would previously only show up during apply [GH-1655]
   606    * core: Referencing invalid module output in module validates [GH-1448]
   607    * command: remote states with uppercase types work [GH-1356]
   608    * provider/aws: Support `AWS_SECURITY_TOKEN` env var again [GH-1785]
   609    * provider/aws: Don't save "instance" for EIP if association fails [GH-1776]
   610    * provider/aws: launch configuration ID set after create success [GH-1518]
   611    * provider/aws: Fixed an issue with creating ELBs without any tags [GH-1580]
   612    * provider/aws: Fix issue in Security Groups with empty IPRanges [GH-1612]
   613    * provider/aws: manually deleted S3 buckets are refreshed properly [GH-1574]
   614    * provider/aws: only check for EIP allocation ID in VPC [GH-1555]
   615    * provider/aws: raw protocol numbers work in `aws_network_acl` [GH-1435]
   616    * provider/aws: Block devices can be encrypted [GH-1718]
   617    * provider/aws: ASG health check grace period can be updated in-place [GH-1682]
   618    * provider/aws: ELB security groups can be updated in-place [GH-1662]
   619    * provider/aws: `aws_main_route_table_association` can be deleted
   620        manually [GH-1806]
   621    * provider/docker: image can reference more complex image addresses,
   622        such as with private repos with ports [GH-1818]
   623    * provider/openstack: region config is not required [GH-1441]
   624    * provider/openstack: `enable_dhcp` for networking subnet should be bool [GH-1741]
   625    * provisioner/remote-exec: add random number to uploaded script path so
   626        that parallel provisions work [GH-1588]
   627    * provisioner/remote-exec: chmod the script to 0755 properly [GH-1796]
   628  
   629  ## 0.4.2 (April 10, 2015)
   630  
   631  BUG FIXES:
   632  
   633    * core: refresh won't remove outputs from state file [GH-1369]
   634    * core: clarify "unknown variable" error [GH-1480]
   635    * core: properly merge parent provider configs when asking for input
   636    * provider/aws: fix panic possibility if RDS DB name is empty [GH-1460]
   637    * provider/aws: fix issue detecting credentials for some resources [GH-1470]
   638    * provider/google: fix issue causing unresolvable diffs when using legacy
   639        `network` field on `google_compute_instance` [GH-1458]
   640  
   641  ## 0.4.1 (April 9, 2015)
   642  
   643  IMPROVEMENTS:
   644  
   645    * provider/aws: Route 53 records can now update `ttl` and `records` attributes
   646        without destroying/creating the record [GH-1396]
   647    * provider/aws: Support changing additional attributes of RDS databases
   648        without forcing a new resource  [GH-1382]
   649  
   650  BUG FIXES:
   651  
   652    * core: module paths in ".terraform" are consistent across different
   653        systems so copying your ".terraform" folder works. [GH-1418]
   654    * core: don't validate providers too early when nested in a module [GH-1380]
   655    * core: fix race condition in `count.index` interpolation [GH-1454]
   656    * core: properly initialize provisioners, fixing resource targeting
   657        during destroy [GH-1544]
   658    * command/push: don't ask for input if terraform.tfvars is present
   659    * command/remote-config: remove spurrious error "nil" when initializing
   660        remote state on a new configuration. [GH-1392]
   661    * provider/aws: Fix issue with Route 53 and pre-existing Hosted Zones [GH-1415]
   662    * provider/aws: Fix refresh issue in Route 53 hosted zone [GH-1384]
   663    * provider/aws: Fix issue when changing map-public-ip in Subnets #1234
   664    * provider/aws: Fix issue finding db subnets [GH-1377]
   665    * provider/aws: Fix issues with `*_block_device` attributes on instances and
   666        launch configs creating unresolvable diffs when certain optional
   667        parameters were omitted from the config [GH-1445]
   668    * provider/aws: Fix issue with `aws_launch_configuration` causing an
   669        unnecessary diff for pre-0.4 environments [GH-1371]
   670    * provider/aws: Fix several related issues with `aws_launch_configuration`
   671        causing unresolvable diffs [GH-1444]
   672    * provider/aws: Fix issue preventing launch configurations from being valid
   673        in EC2 Classic [GH-1412]
   674    * provider/aws: Fix issue in updating Route 53 records on refresh/read. [GH-1430]
   675    * provider/docker: Don't ask for `cert_path` input on every run [GH-1432]
   676    * provider/google: Fix issue causing unresolvable diff on instances with
   677        `network_interface` [GH-1427]
   678  
   679  ## 0.4.0 (April 2, 2015)
   680  
   681  BACKWARDS INCOMPATIBILITIES:
   682  
   683    * Commands `terraform push` and `terraform pull` are now nested under
   684      the `remote` command: `terraform remote push` and `terraform remote pull`.
   685      The old `remote` functionality is now at `terraform remote config`. This
   686      consolidates all remote state management under one command.
   687    * Period-prefixed configuration files are now ignored. This might break
   688      existing Terraform configurations if you had period-prefixed files.
   689    * The `block_device` attribute of `aws_instance` has been removed in favor
   690      of three more specific attributes to specify block device mappings:
   691      `root_block_device`, `ebs_block_device`, and `ephemeral_block_device`.
   692      Configurations using the old attribute will generate a validation error
   693      indicating that they must be updated to use the new fields [GH-1045].
   694  
   695  FEATURES:
   696  
   697    * **New provider: `dme` (DNSMadeEasy)** [GH-855]
   698    * **New provider: `docker` (Docker)** - Manage container lifecycle
   699        using the standard Docker API. [GH-855]
   700    * **New provider: `openstack` (OpenStack)** - Interact with the many resources
   701        provided by OpenStack. [GH-924]
   702    * **New feature: `terraform_remote_state` resource** - Reference remote
   703        states from other Terraform runs to use Terraform outputs as inputs
   704        into another Terraform run.
   705    * **New command: `taint`** - Manually mark a resource as tainted, causing
   706        a destroy and recreate on the next plan/apply.
   707    * **New resource: `aws_vpn_gateway`** [GH-1137]
   708    * **New resource: `aws_elastic_network_interfaces`** [GH-1149]
   709    * **Self-variables** can be used to reference the current resource's
   710        attributes within a provisioner. Ex. `${self.private_ip_address}` [GH-1033]
   711    * **Continuous state** saving during `terraform apply`. The state file is
   712        continuously updated as apply is running, meaning that the state is
   713        less likely to become corrupt in a catastrophic case: terraform panic
   714        or system killing Terraform.
   715    * **Math operations** in interpolations. You can now do things like
   716        `${count.index + 1}`. [GH-1068]
   717    * **New AWS SDK:** Move to `aws-sdk-go` (hashicorp/aws-sdk-go),
   718        a fork of the official `awslabs` repo. We forked for stability while
   719        `awslabs` refactored the library, and will move back to the officially
   720        supported version in the next release.
   721  
   722  IMPROVEMENTS:
   723  
   724    * **New config function: `format`** - Format a string using `sprintf`
   725        format. [GH-1096]
   726    * **New config function: `replace`** - Search and replace string values.
   727        Search can be a regular expression. See documentation for more
   728        info. [GH-1029]
   729    * **New config function: `split`** - Split a value based on a delimiter.
   730        This is useful for faking lists as parameters to modules.
   731    * **New resource: `digitalocean_ssh_key`** [GH-1074]
   732    * config: Expand `~` with homedir in `file()` paths [GH-1338]
   733    * core: The serial of the state is only updated if there is an actual
   734        change. This will lower the amount of state changing on things
   735        like refresh.
   736    * core: Autoload `terraform.tfvars.json` as well as `terraform.tfvars` [GH-1030]
   737    * core: `.tf` files that start with a period are now ignored. [GH-1227]
   738    * command/remote-config: After enabling remote state, a `pull` is
   739        automatically done initially.
   740    * providers/google: Add `size` option to disk blocks for instances. [GH-1284]
   741    * providers/aws: Improve support for tagging resources.
   742    * providers/aws: Add a short syntax for Route 53 Record names, e.g.
   743        `www` instead of `www.example.com`.
   744    * providers/aws: Improve dependency violation error handling, when deleting
   745        Internet Gateways or Auto Scaling groups [GH-1325].
   746    * provider/aws: Add non-destructive updates to AWS RDS. You can now upgrade
   747        `engine_version`, `parameter_group_name`, and `multi_az` without forcing
   748        a new database to be created.[GH-1341]
   749    * providers/aws: Full support for block device mappings on instances and
   750        launch configurations [GH-1045, GH-1364]
   751    * provisioners/remote-exec: SSH agent support. [GH-1208]
   752  
   753  BUG FIXES:
   754  
   755    * core: module outputs can be used as inputs to other modules [GH-822]
   756    * core: Self-referencing splat variables are no longer allowed in
   757        provisioners. [GH-795][GH-868]
   758    * core: Validate that `depends_on` doesn't contain interpolations. [GH-1015]
   759    * core: Module inputs can be non-strings. [GH-819]
   760    * core: Fix invalid plan that resulted in "diffs don't match" error when
   761        a computed attribute was used as part of a set parameter. [GH-1073]
   762    * core: Fix edge case where state containing both "resource" and
   763        "resource.0" would ignore the latter completely. [GH-1086]
   764    * core: Modules with a source of a relative file path moving up
   765        directories work properly, i.e. "../a" [GH-1232]
   766    * providers/aws: manually deleted VPC removes it from the state
   767    * providers/aws: `source_dest_check` regression fixed (now works). [GH-1020]
   768    * providers/aws: Longer wait times for DB instances.
   769    * providers/aws: Longer wait times for route53 records (30 mins). [GH-1164]
   770    * providers/aws: Fix support for TXT records in Route 53. [GH-1213]
   771    * providers/aws: Fix support for wildcard records in Route 53. [GH-1222]
   772    * providers/aws: Fix issue with ignoring the 'self' attribute of a
   773        Security Group rule. [GH-1223]
   774    * providers/aws: Fix issue with `sql_mode` in RDS parameter group always
   775        causing an update. [GH-1225]
   776    * providers/aws: Fix dependency violation with subnets and security groups
   777        [GH-1252]
   778    * providers/aws: Fix issue with refreshing `db_subnet_groups` causing an error
   779        instead of updating state [GH-1254]
   780    * providers/aws: Prevent empty string to be used as default
   781        `health_check_type` [GH-1052]
   782    * providers/aws: Add tags on AWS IG creation, not just on update [GH-1176]
   783    * providers/digitalocean: Waits until droplet is ready to be destroyed [GH-1057]
   784    * providers/digitalocean: More lenient about 404's while waiting [GH-1062]
   785    * providers/digitalocean: FQDN for domain records in CNAME, MX, NS, etc.
   786        Also fixes invalid updates in plans. [GH-863]
   787    * providers/google: Network data in state was not being stored. [GH-1095]
   788    * providers/heroku: Fix panic when config vars block was empty. [GH-1211]
   789  
   790  PLUGIN CHANGES:
   791  
   792    * New `helper/schema` fields for resources: `Deprecated` and `Removed` allow
   793        plugins to generate warning or error messages when a given attribute is used.
   794  
   795  ## 0.3.7 (February 19, 2015)
   796  
   797  IMPROVEMENTS:
   798  
   799    * **New resources: `google_compute_forwarding_rule`, `google_compute_http_health_check`,
   800        and `google_compute_target_pool`** - Together these provide network-level
   801        load balancing. [GH-588]
   802    * **New resource: `aws_main_route_table_association`** - Manage the main routing table
   803        of a VPC. [GH-918]
   804    * **New resource: `aws_vpc_peering_connection`** [GH-963]
   805    * core: Formalized the syntax of interpolations and documented it
   806        very heavily.
   807    * core: Strings in interpolations can now contain further interpolations,
   808        e.g.: `foo ${bar("${baz}")}`.
   809    * provider/aws: Internet gateway supports tags [GH-720]
   810    * provider/aws: Support the more standard environmental variable names
   811        for access key and secret keys. [GH-851]
   812    * provider/aws: The `aws_db_instance` resource no longer requires both
   813        `final_snapshot_identifier` and `skip_final_snapshot`; the presence or
   814        absence of the former now implies the latter. [GH-874]
   815    * provider/aws: Avoid unnecessary update of `aws_subnet` when
   816        `map_public_ip_on_launch` is not specified in config. [GH-898]
   817    * provider/aws: Add `apply_method` to `aws_db_parameter_group` [GH-897]
   818    * provider/aws: Add `storage_type` to `aws_db_instance` [GH-896]
   819    * provider/aws: ELB can update listeners without requiring new. [GH-721]
   820    * provider/aws: Security group support egress rules. [GH-856]
   821    * provider/aws: Route table supports VPC peering connection on route. [GH-963]
   822    * provider/aws: Add `root_block_device` to `aws_db_instance` [GH-998]
   823    * provider/google: Remove "client secrets file", as it's no longer necessary
   824        for API authentication [GH-884].
   825    * provider/google: Expose `self_link` on `google_compute_instance` [GH-906]
   826  
   827  BUG FIXES:
   828  
   829    * core: Fixing use of remote state with plan files. [GH-741]
   830    * core: Fix a panic case when certain invalid types were used in
   831        the configuration. [GH-691]
   832    * core: Escape characters `\"`, `\n`, and `\\` now work in interpolations.
   833    * core: Fix crash that could occur when there are exactly zero providers
   834        installed on a system. [GH-786]
   835    * core: JSON TF configurations can configure provisioners. [GH-807]
   836    * core: Sort `depends_on` in state to prevent unnecessary file changes. [GH-928]
   837    * core: State containing the zero value won't cause a diff with the
   838        lack of a value. [GH-952]
   839    * core: If a set type becomes empty, the state will be properly updated
   840        to remove it. [GH-952]
   841    * core: Bare "splat" variables are not allowed in provisioners. [GH-636]
   842    * core: Invalid configuration keys to sub-resources are now errors. [GH-740]
   843    * command/apply: Won't try to initialize modules in some cases when
   844        no arguments are given. [GH-780]
   845    * command/apply: Fix regression where user variables weren't asked [GH-736]
   846    * helper/hashcode: Update `hash.String()` to always return a positive index.
   847        Fixes issue where specific strings would convert to a negative index
   848        and be omitted when creating Route53 records. [GH-967]
   849    * provider/aws: Automatically suffix the Route53 zone name on record names. [GH-312]
   850    * provider/aws: Instance should ignore root EBS devices. [GH-877]
   851    * provider/aws: Fix `aws_db_instance` to not recreate each time. [GH-874]
   852    * provider/aws: ASG termination policies are synced with remote state. [GH-923]
   853    * provider/aws: ASG launch configuration setting can now be updated in-place. [GH-904]
   854    * provider/aws: No read error when subnet is manually deleted. [GH-889]
   855    * provider/aws: Tags with empty values (empty string) are properly
   856        managed. [GH-968]
   857    * provider/aws: Fix case where route table would delete its routes
   858        on an unrelated change. [GH-990]
   859    * provider/google: Fix bug preventing instances with metadata from being
   860        created [GH-884].
   861  
   862  PLUGIN CHANGES:
   863  
   864    * New `helper/schema` type: `TypeFloat` [GH-594]
   865    * New `helper/schema` field for resources: `Exists` must point to a function
   866        to check for the existence of a resource. This is used to properly
   867        handle the case where the resource was manually deleted. [GH-766]
   868    * There is a semantic change in `GetOk` where it will return `true` if
   869        there is any value in the diff that is _non-zero_. Before, it would
   870        return true only if there was a value in the diff.
   871  
   872  ## 0.3.6 (January 6, 2015)
   873  
   874  FEATURES:
   875  
   876    * **New provider: `cloudstack`**
   877  
   878  IMPROVEMENTS:
   879  
   880    * **New resource: `aws_key_pair`** - Import a public key into AWS. [GH-695]
   881    * **New resource: `heroku_cert`** - Manage Heroku app certs.
   882    * provider/aws: Support `eu-central-1`, `cn-north-1`, and GovCloud. [GH-525]
   883    * provider/aws: `route_table` can have tags. [GH-648]
   884    * provider/google: Support Ubuntu images. [GH-724]
   885    * provider/google: Support for service accounts. [GH-725]
   886  
   887  BUG FIXES:
   888  
   889    * core: temporary/hidden files that look like Terraform configurations
   890        are no longer loaded. [GH-548]
   891    * core: Set types in resources now result in deterministic states,
   892        resulting in cleaner plans. [GH-663]
   893    * core: fix issue where "diff was not the same" would come up with
   894        diffing lists. [GH-661]
   895    * core: fix crash where module inputs weren't strings, and add more
   896        validation around invalid types here. [GH-624]
   897    * core: fix error when using a computed module output as an input to
   898        another module. [GH-659]
   899    * core: map overrides in "terraform.tfvars" no longer result in a syntax
   900        error. [GH-647]
   901    * core: Colon character works in interpolation [GH-700]
   902    * provider/aws: Fix crash case when internet gateway is not attached
   903        to any VPC. [GH-664]
   904    * provider/aws: `vpc_id` is no longer required. [GH-667]
   905    * provider/aws: `availability_zones` on ELB will contain more than one
   906        AZ if it is set as such. [GH-682]
   907    * provider/aws: More fields are marked as "computed" properly, resulting
   908        in more accurate diffs for AWS instances. [GH-712]
   909    * provider/aws: Fix panic case by using the wrong type when setting
   910        volume size for AWS instances. [GH-712]
   911    * provider/aws: route table ignores routes with 'EnableVgwRoutePropagation'
   912        origin since those come from gateways. [GH-722]
   913    * provider/aws: Default network ACL ID and default security group ID
   914        support for `aws_vpc`. [GH-704]
   915    * provider/aws: Tags are not marked as computed. This introduces another
   916        issue with not detecting external tags, but this will be fixed in
   917        the future. [GH-730]
   918  
   919  ## 0.3.5 (December 9, 2014)
   920  
   921  FEATURES:
   922  
   923   * **Remote State**: State files can now be stored remotely via HTTP,
   924       Consul, or HashiCorp's Atlas.
   925   * **New Provider: `atlas`**: Retrieve artifacts for deployment from
   926       HashiCorp's Atlas service.
   927   * New `element()` function to index into arrays
   928  
   929  IMPROVEMENTS:
   930  
   931    * provider/aws: Support tenancy for aws\_instance
   932    * provider/aws: Support block devices for aws\_instance
   933    * provider/aws: Support virtual\_name on block device
   934    * provider/aws: Improve RDS reliability (more grace time)
   935    * provider/aws: Added aws\_db\_parameter\_group resource
   936    * provider/aws: Added tag support to aws\_subnet
   937    * provider/aws: Routes in RouteTable are optional
   938    * provider/aws: associate\_public\_ip\_address on aws\_launch\_configuration
   939    * provider/aws: Added aws\_network\_acl
   940    * provider/aws: Ingress rules in security groups are optional
   941    * provider/aws: Support termination policy for ASG
   942    * provider/digitalocean: Improved droplet size compatibility
   943  
   944  BUG FIXES:
   945  
   946    * core: Fixed issue causing double delete. [GH-555]
   947    * core: Fixed issue with create-before-destroy not being respected in
   948        some circumstances.
   949    * core: Fixing issue with count expansion with non-homogenous instance
   950        plans.
   951    * core: Fix issue with referencing resource variables from resources
   952        that don't exist yet within resources that do exist, or modules.
   953    * core: Fixing depedency handling for modules
   954    * core: Fixing output handling [GH-474]
   955    * core: Fixing count interpolation in modules
   956    * core: Fixing multi-var without module state
   957    * core: Fixing HCL variable declaration
   958    * core: Fixing resource interpolation for without state
   959    * core: Fixing handling of computed maps
   960    * command/init: Fixing recursion issue [GH-518]
   961    * command: Validate config before requesting input [GH-602]
   962    * build: Fixing GOPATHs with spaces
   963  
   964  MISC:
   965  
   966    * provider/aws: Upgraded to helper.Schema
   967    * provider/heroku: Upgraded to helper.Schema
   968    * provider/mailgun: Upgraded to helper.Schema
   969    * provider/dnsimple: Upgraded to helper.Schema
   970    * provider/cloudflare: Upgraded to helper.Schema
   971    * provider/digitalocean: Upgraded to helper.Schema
   972    * provider/google: Upgraded to helper.Schema
   973  
   974  ## 0.3.1 (October 21, 2014)
   975  
   976  IMPROVEMENTS:
   977  
   978    * providers/aws: Support tags for security groups.
   979    * providers/google: Add "external\_address" to network attributes [GH-454]
   980    * providers/google: External address is used as default connection host. [GH-454]
   981    * providers/heroku: Support `locked` and `personal` booleans on organization
   982        settings. [GH-406]
   983  
   984  BUG FIXES:
   985  
   986    * core: Remove panic case when applying with a plan that generates no
   987        new state. [GH-403]
   988    * core: Fix a hang that can occur with enough resources. [GH-410]
   989    * core: Config validation will not error if the field is being
   990        computed so the value is still unknown.
   991    * core: If a resource fails to create and has provisioners, it is
   992        marked as tainted. [GH-434]
   993    * core: Set types are validated to be sets. [GH-413]
   994    * core: String types are validated properly. [GH-460]
   995    * core: Fix crash case when destroying with tainted resources. [GH-412]
   996    * core: Don't execute provisioners in some cases on destroy.
   997    * core: Inherited provider configurations will be properly interpolated. [GH-418]
   998    * core: Refresh works properly if there are outputs that depend on resources
   999        that aren't yet created. [GH-483]
  1000    * providers/aws: Refresh of launch configs and autoscale groups load
  1001        the correct data and don't incorrectly recreate themselves. [GH-425]
  1002    * providers/aws: Fix case where ELB would incorrectly plan to modify
  1003        listeners (with the same data) in some cases.
  1004    * providers/aws: Retry destroying internet gateway for some amount of time
  1005        if there is a dependency violation since it is probably just eventual
  1006        consistency (public facing resources being destroyed). [GH-447]
  1007    * providers/aws: Retry deleting security groups for some amount of time
  1008        if there is a dependency violation since it is probably just eventual
  1009        consistency. [GH-436]
  1010    * providers/aws: Retry deleting subnet for some amount of time if there is a
  1011        dependency violation since probably asynchronous destroy events take
  1012        place still. [GH-449]
  1013    * providers/aws: Drain autoscale groups before deleting. [GH-435]
  1014    * providers/aws: Fix crash case if launch config is manually deleted. [GH-421]
  1015    * providers/aws: Disassociate EIP before destroying.
  1016    * providers/aws: ELB treats subnets as a set.
  1017    * providers/aws: Fix case where in a destroy/create tags weren't reapplied. [GH-464]
  1018    * providers/aws: Fix incorrect/erroneous apply cases around security group
  1019        rules. [GH-457]
  1020    * providers/consul: Fix regression where `key` param changed to `keys. [GH-475]
  1021  
  1022  ## 0.3.0 (October 14, 2014)
  1023  
  1024  FEATURES:
  1025  
  1026    * **Modules**: Configuration can now be modularized. Modules can live on
  1027      GitHub, BitBucket, Git/Hg repos, HTTP URLs, and file paths. Terraform
  1028      automatically downloads/updates modules for you on request.
  1029    * **New Command: `init`**. This command initializes a Terraform configuration
  1030      from an existing Terraform module (also new in 0.3).
  1031    * **New Command: `destroy`**. This command destroys infrastructure
  1032      created with `apply`.
  1033    * Terraform will ask for user input to fill in required variables and
  1034      provider configurations if they aren't set.
  1035    * `terraform apply MODULE` can be used as a shorthand to quickly build
  1036      infrastructure from a module.
  1037    * The state file format is now JSON rather than binary. This allows for
  1038      easier machine and human read/write. Old binary state files will be
  1039      automatically upgraded.
  1040    * You can now specify `create_before_destroy` as an option for replacement
  1041      so that new resources are created before the old ones are destroyed.
  1042    * The `count` metaparameter can now contain interpolations (such as
  1043      variables).
  1044    * The current index for a resource with a `count` set can be interpolated
  1045      using `${count.index}`.
  1046    * Various paths can be interpolated with the `path.X` variables. For example,
  1047      the path to the current module can be interpolated using `${path.module}`.
  1048  
  1049  IMPROVEMENTS:
  1050  
  1051    * config: Trailing commas are now allowed for the final elements of lists.
  1052    * core: Plugins are loaded from `~/.terraform.d/plugins` (Unix) or
  1053      `%USERDATA%/terraform.d/plugins` (Windows).
  1054    * command/show: With no arguments, it will show the default state. [GH-349]
  1055    * helper/schema: Can now have default values. [GH-245]
  1056    * providers/aws: Tag support for most resources.
  1057    * providers/aws: New resource `db_subnet_group`. [GH-295]
  1058    * providers/aws: Add `map_public_ip_on_launch` for subnets. [GH-285]
  1059    * providers/aws: Add `iam_instance_profile` for instances. [GH-319]
  1060    * providers/aws: Add `internal` option for ELBs. [GH-303]
  1061    * providers/aws: Add `ssl_certificate_id` for ELB listeners. [GH-350]
  1062    * providers/aws: Add `self` option for security groups for ingress
  1063        rules with self as source. [GH-303]
  1064    * providers/aws: Add `iam_instance_profile` option to
  1065        `aws_launch_configuration`. [GH-371]
  1066    * providers/aws: Non-destructive update of `desired_capacity` for
  1067        autoscale groups.
  1068    * providers/aws: Add `main_route_table_id` attribute to VPCs. [GH-193]
  1069    * providers/consul: Support tokens. [GH-396]
  1070    * providers/google: Support `target_tags` for firewalls. [GH-324]
  1071    * providers/google: `google_compute_instance` supports `can_ip_forward` [GH-375]
  1072    * providers/google: `google_compute_disk` supports `type` to support disks
  1073        such as SSDs. [GH-351]
  1074    * provisioners/local-exec: Output from command is shown in CLI output. [GH-311]
  1075    * provisioners/remote-exec: Output from command is shown in CLI output. [GH-311]
  1076  
  1077  BUG FIXES:
  1078  
  1079    * core: Providers are validated even without a `provider` block. [GH-284]
  1080    * core: In the case of error, walk all non-dependent trees.
  1081    * core: Plugin loading from CWD works properly.
  1082    * core: Fix many edge cases surrounding the `count` meta-parameter.
  1083    * core: Strings in the configuration can escape double-quotes with the
  1084        standard `\"` syntax.
  1085    * core: Error parsing CLI config will show properly. [GH-288]
  1086    * core: More than one Ctrl-C will exit immediately.
  1087    * providers/aws: autoscaling_group can be launched into a vpc [GH-259]
  1088    * providers/aws: not an error when RDS instance is deleted manually. [GH-307]
  1089    * providers/aws: Retry deleting subnet for some time while AWS eventually
  1090        destroys dependencies. [GH-357]
  1091    * providers/aws: More robust destroy for route53 records. [GH-342]
  1092    * providers/aws: ELB generates much more correct plans without extranneous
  1093        data.
  1094    * providers/aws: ELB works properly with dynamically changing
  1095        count of instances.
  1096    * providers/aws: Terraform can handle ELBs deleted manually. [GH-304]
  1097    * providers/aws: Report errors properly if RDS fails to delete. [GH-310]
  1098    * providers/aws: Wait for launch configuration to exist after creation
  1099        (AWS eventual consistency) [GH-302]
  1100  
  1101  ## 0.2.2 (September 9, 2014)
  1102  
  1103  IMPROVEMENTS:
  1104  
  1105    * providers/amazon: Add `ebs_optimized` flag. [GH-260]
  1106    * providers/digitalocean: Handle 404 on delete
  1107    * providers/digitalocean: Add `user_data` argument for creating droplets
  1108    * providers/google: Disks can be marked `auto_delete`. [GH-254]
  1109  
  1110  BUG FIXES:
  1111  
  1112    * core: Fix certain syntax of configuration that could cause hang. [GH-261]
  1113    * core: `-no-color` flag properly disables color. [GH-250]
  1114    * core: "~" is expanded in `-var-file` flags. [GH-273]
  1115    * core: Errors with tfvars are shown in console. [GH-269]
  1116    * core: Interpolation function calls with more than two args parse. [GH-282]
  1117    * providers/aws: Refreshing EIP from pre-0.2 state file won't error. [GH-258]
  1118    * providers/aws: Creating EIP without an instance/network won't fail.
  1119    * providers/aws: Refreshing EIP manually deleted works.
  1120    * providers/aws: Retry EIP delete to allow AWS eventual consistency to
  1121        detect it isn't attached. [GH-276]
  1122    * providers/digitalocean: Handle situations when resource was destroyed
  1123        manually. [GH-279]
  1124    * providers/digitalocean: Fix a couple scenarios where the diff was
  1125        incorrect (and therefore the execution as well).
  1126    * providers/google: Attaching a disk source (not an image) works
  1127        properly. [GH-254]
  1128  
  1129  ## 0.2.1 (August 31, 2014)
  1130  
  1131  IMPROVEMENTS:
  1132  
  1133    * core: Plugins are automatically discovered in the executable directory
  1134        or pwd if named properly. [GH-190]
  1135    * providers/mailgun: domain records are now saved to state
  1136  
  1137  BUG FIXES:
  1138  
  1139    * core: Configuration parses when identifier and '=' have no space. [GH-243]
  1140    * core: `depends_on` with `count` generates the proper graph. [GH-244]
  1141    * core: Depending on a computed variable of a list type generates a
  1142        plan without failure. i.e. `${type.name.foos.0.bar}` where `foos`
  1143        is computed. [GH-247]
  1144    * providers/aws: Route53 destroys in parallel work properly. [GH-183]
  1145  
  1146  ## 0.2.0 (August 28, 2014)
  1147  
  1148  BACKWARDS INCOMPATIBILITIES:
  1149  
  1150    * We've replaced the configuration language in use from a C library to
  1151      a pure-Go reimplementation. In the process, we removed some features
  1152      of the language since it was too flexible:
  1153      * Semicolons are no longer valid at the end of lines
  1154      * Keys cannot be double-quoted strings: `"foo" = "bar"` is no longer
  1155        valid.
  1156      * JSON style maps `{ "foo": "bar" }` are no longer valid outside of JSON.
  1157        Maps must be in the format of `{ foo = "bar" }` (like other objects
  1158        in the config)
  1159    * Heroku apps now require (will not validate without) `region` and
  1160      `name` due to an upstream API change. [GH-239]
  1161  
  1162  FEATURES:
  1163  
  1164    * **New Provider: `google`**: Manage Google Compute instances, disks,
  1165        firewalls, and more.
  1166    * **New Provider: `mailgun`**: Manage mailgun domains.
  1167    * **New Function: `concat`**: Concatenate multiple strings together.
  1168      Example: `concat(var.region, "-", var.channel)`.
  1169  
  1170  IMPROVEMENTS:
  1171  
  1172    * core: "~/.terraformrc" (Unix) or "%APPDATA%/terraform.rc" (Windows)
  1173      can be used to configure custom providers and provisioners. [GH-192]
  1174    * providers/aws: EIPs now expose `allocation_id` and `public_ip`
  1175        attributes.
  1176    * providers/aws: Security group rules can be updated without a
  1177        destroy/create.
  1178    * providers/aws: You can enable and disable dns settings for VPCs. [GH-172]
  1179    * providers/aws: Can specify a private IP address for `aws_instance` [GH-217]
  1180  
  1181  BUG FIXES:
  1182  
  1183    * core: Variables are validated to not contain interpolations. [GH-180]
  1184    * core: Key files for provisioning can now contain `~` and will be expanded
  1185        to the user's home directory. [GH-179]
  1186    * core: The `file()` function can load files in sub-directories. [GH-213]
  1187    * core: Fix issue where some JSON structures didn't map properly into
  1188       Terraform structures. [GH-177]
  1189    * core: Resources with only `file()` calls will interpolate. [GH-159]
  1190    * core: Variables work in block names. [GH-234]
  1191    * core: Plugins are searched for in the same directory as the executable
  1192        before the PATH. [GH-157]
  1193    * command/apply: "tfvars" file no longer interferes with plan apply. [GH-153]
  1194    * providers/aws: Fix issues around failing to read EIPs. [GH-122]
  1195    * providers/aws: Autoscaling groups now register and export load
  1196      balancers. [GH-207]
  1197    * providers/aws: Ingress results are treated as a set, so order doesn't
  1198        matter anymore. [GH-87]
  1199    * providers/aws: Instance security groups treated as a set [GH-194]
  1200    * providers/aws: Retry Route53 requests if operation failed because another
  1201        operation is in progress [GH-183]
  1202    * providers/aws: Route53 records with multiple record values work. [GH-221]
  1203    * providers/aws: Changing AMI doesn't result in errors anymore. [GH-196]
  1204    * providers/heroku: If you delete the `config_vars` block, config vars
  1205        are properly nuked.
  1206    * providers/heroku: Domains and drains are deleted before the app.
  1207    * providers/heroku: Moved from the client library bgentry/heroku-go to
  1208        cyberdelia/heroku-go [GH-239].
  1209    * providers/heroku: Plans without a specific plan name for
  1210        heroku\_addon work. [GH-198]
  1211  
  1212  PLUGIN CHANGES:
  1213  
  1214    * **New Package:** `helper/schema`. This introduces a high-level framework
  1215      for easily writing new providers and resources. The Heroku provider has
  1216      been converted to this as an example.
  1217  
  1218  ## 0.1.1 (August 5, 2014)
  1219  
  1220  FEATURES:
  1221  
  1222    * providers/heroku: Now supports creating Heroku Drains [GH-97]
  1223  
  1224  IMPROVEMENTS:
  1225  
  1226    * providers/aws: Launch configurations accept user data [GH-94]
  1227    * providers/aws: Regions are now validated [GH-96]
  1228    * providers/aws: ELB now supports health check configurations [GH-109]
  1229  
  1230  BUG FIXES:
  1231  
  1232    * core: Default variable file "terraform.tfvars" is auto-loaded. [GH-59]
  1233    * core: Multi-variables (`foo.*.bar`) work even when `count = 1`. [GH-115]
  1234    * core: `file()` function can have string literal arg [GH-145]
  1235    * providers/cloudflare: Include the proper bins so the cloudflare
  1236        provider is compiled
  1237    * providers/aws: Engine version for RDS now properly set [GH-118]
  1238    * providers/aws: Security groups now depend on each other and
  1239    * providers/aws: DB instances now wait for destroys, have proper
  1240        dependencies and allow passing skip_final_snapshot
  1241    * providers/aws: Add associate_public_ip_address as an attribute on
  1242        the aws_instance resource [GH-85]
  1243    * providers/aws: Fix cidr blocks being updated [GH-65, GH-85]
  1244    * providers/aws: Description is now required for security groups
  1245    * providers/digitalocean: Private IP addresses are now a separate
  1246        attribute
  1247    * provisioner/all: If an SSH key is given with a password, a better
  1248        error message is shown. [GH-73]
  1249  
  1250  ## 0.1.0 (July 28, 2014)
  1251  
  1252    * Initial release