github.com/markdia/terraform@v0.5.1-0.20150508012022-f1ae920aa970/CHANGELOG.md (about)

     1  ## 0.5.1 (unreleased)
     2  
     3  
     4  
     5  ## 0.5.0 (May 7, 2015)
     6  
     7  FEATURES:
     8  
     9    * **Multi-provider (a.k.a multi-region)**: Multiple instances of a single
    10       provider can be configured so resources can apply to different settings.
    11       As an example, this allows Terraform to manage multiple regions with AWS.
    12    * **Environmental variables to set variables**: Environment variables can be
    13       used to set variables. The environment variables must be in the format
    14       `TF_VAR_name` and this will be checked last for a value.
    15    * **New remote state backend: `s3`**: You can now store remote state in
    16       an S3 bucket. [GH-1723]
    17    * **Automatic AWS retries**: This release includes a lot of improvement
    18       around automatic retries of transient errors in AWS. The number of
    19       retry attempts is also configurable.
    20    * **Templates**: A new `template_file` resource allows long strings needing
    21       variable interpolation to be moved into files. [GH-1778]
    22    * **Provision with WinRM**: Provisioners can now run remote commands on
    23       Windows hosts. [GH-1483]
    24  
    25  IMPROVEMENTS:
    26  
    27    * **New config function: `length`** - Get the length of a string or a list.
    28        Useful in conjunction with `split`. [GH-1495]
    29    * **New resource: `aws_app_cookie_stickiness_policy`**
    30    * **New resource: `aws_customer_gateway`**
    31    * **New resource: `aws_ebs_volume`**
    32    * **New resource: `aws_elasticache_cluster`**
    33    * **New resource: `aws_elasticache_security_group`**
    34    * **New resource: `aws_elasticache_subnet_group`**
    35    * **New resource: `aws_iam_access_key`**
    36    * **New resource: `aws_iam_group_policy`**
    37    * **New resource: `aws_iam_group`**
    38    * **New resource: `aws_iam_instance_profile`**
    39    * **New resource: `aws_iam_policy`**
    40    * **New resource: `aws_iam_role_policy`**
    41    * **New resource: `aws_iam_role`**
    42    * **New resource: `aws_iam_user_policy`**
    43    * **New resource: `aws_iam_user`**
    44    * **New resource: `aws_lb_cookie_stickiness_policy`**
    45    * **New resource: `aws_proxy_protocol_policy`**
    46    * **New resource: `aws_security_group_rule`**
    47    * **New resource: `aws_vpc_dhcp_options_association`**
    48    * **New resource: `aws_vpc_dhcp_options`**
    49    * **New resource: `aws_vpn_connection_route`**
    50    * **New resource: `google_dns_managed_zone`**
    51    * **New resource: `google_dns_record_set`**
    52    * **Migrate to upstream AWS SDK:** Migrate the AWS provider to
    53        [awslabs/aws-sdk-go](https://github.com/awslabs/aws-sdk-go),
    54        the offical `awslabs` library. Previously we had forked the library for
    55        stability while `awslabs` refactored. Now that work has completed, and we've
    56        migrated back to the upstream version.
    57    * core: Improve error message on diff mismatch [GH-1501]
    58    * provisioner/file: expand `~` in source path [GH-1569]
    59    * provider/aws: Better retry logic, now retries up to 11 times by default
    60        with exponentional backoff. This number is configurable. [GH-1787]
    61    * provider/aws: Improved credential detection [GH-1470]
    62    * provider/aws: Can specify a `token` via the config file [GH-1601]
    63    * provider/aws: Added new `vpc_security_group_ids` attribute for AWS
    64        Instances. If using a VPC, you can now modify the security groups for that
    65        Instance without destroying it [GH-1539]
    66    * provider/aws: White or blacklist account IDs that can be used to
    67        protect against accidents. [GH-1595]
    68    * provider/aws: Add a subset of IAM resources [GH-939]
    69    * provider/aws: `aws_autoscaling_group` retries deletes through "in progress"
    70        errors [GH-1840]
    71    * provider/aws: `aws_autoscaling_group` waits for healthy capacity during
    72        ASG creation [GH-1839]
    73    * provider/aws: `aws_instance` supports placement groups [GH-1358]
    74    * provider/aws: `aws_eip` supports network interface attachment [GH-1681]
    75    * provider/aws: `aws_elb` supports in-place changing of listeners [GH-1619]
    76    * provider/aws: `aws_elb` supports connection draining settings [GH-1502]
    77    * provider/aws: `aws_elb` increase default idle timeout to 60s [GH-1646]
    78    * provider/aws: `aws_key_pair` name can be omitted and generated [GH-1751]
    79    * provider/aws: `aws_network_acl` improved validation for network ACL ports
    80        and protocols [GH-1798] [GH-1808]
    81    * provider/aws: `aws_route_table` can target network interfaces [GH-968]
    82    * provider/aws: `aws_route_table` can specify propogating VGWs [GH-1516]
    83    * provider/aws: `aws_route53_record` supports weighted sets [GH-1578]
    84    * provider/aws: `aws_route53_zone` exports nameservers [GH-1525]
    85    * provider/aws: `aws_s3_bucket` website support [GH-1738]
    86    * provider/aws: `aws_security_group` name becomes optional and can be
    87        automatically set to a unique identifier; this helps with
    88        `create_before_destroy` scenarios [GH-1632]
    89    * provider/aws: `aws_security_group` description becomes optional with a
    90        static default value [GH-1632]
    91    * provider/aws: automatically set the private IP as the SSH address
    92        if not specified and no public IP is available [GH-1623]
    93    * provider/aws: `aws_elb` exports `source_security_group` field [GH-1708]
    94    * provider/aws: `aws_route53_record` supports alias targeting [GH-1775]
    95    * provider/aws: Remove default AWS egress rule for newly created Security Groups [GH-1765]
    96    * provider/consul: add `scheme` configuration argument [GH-1838]
    97    * provider/docker: `docker_container` can specify links [GH-1564]
    98    * provider/google: `resource_compute_disk` supports snapshots [GH-1426]
    99    * provider/google: `resource_compute_instance` supports specifying the
   100        device name [GH-1426]
   101    * provider/openstack: Floating IP support for LBaaS [GH-1550]
   102    * provider/openstack: Add AZ to `openstack_blockstorage_volume_v1` [GH-1726]
   103  
   104  BUG FIXES:
   105  
   106    * core: Fix graph cycle issues surrounding modules [GH-1582] [GH-1637]
   107    * core: math on arbitrary variables works if first operand isn't a
   108        numeric primitive. [GH-1381]
   109    * core: avoid unnecessary cycles by pruning tainted destroys from
   110        graph if there are no tainted resources [GH-1475]
   111    * core: fix issue where destroy nodes weren't pruned in specific
   112        edge cases around matching prefixes, which could cause cycles [GH-1527]
   113    * core: fix issue causing diff mismatch errors in certain scenarios during
   114        resource replacement [GH-1515]
   115    * core: dependencies on resources with a different index work when
   116        count > 1 [GH-1540]
   117    * core: don't panic if variable default type is invalid [GH-1344]
   118    * core: fix perpetual diff issue for computed maps that are empty [GH-1607]
   119    * core: validation added to check for `self` variables in modules [GH-1609]
   120    * core: fix edge case where validation didn't pick up unknown fields
   121        if the value was computed [GH-1507]
   122    * core: Fix issue where values in sets on resources couldn't contain
   123        hyphens. [GH-1641]
   124    * core: Outputs removed from the config are removed from the state [GH-1714]
   125    * core: Validate against the worst-case graph during plan phase to catch cycles
   126        that would previously only show up during apply [GH-1655]
   127    * core: Referencing invalid module output in module validates [GH-1448]
   128    * command: remote states with uppercase types work [GH-1356]
   129    * provider/aws: Support `AWS_SECURITY_TOKEN` env var again [GH-1785]
   130    * provider/aws: Don't save "instance" for EIP if association fails [GH-1776]
   131    * provider/aws: launch configuration ID set after create success [GH-1518]
   132    * provider/aws: Fixed an issue with creating ELBs without any tags [GH-1580]
   133    * provider/aws: Fix issue in Security Groups with empty IPRanges [GH-1612]
   134    * provider/aws: manually deleted S3 buckets are refreshed properly [GH-1574]
   135    * provider/aws: only check for EIP allocation ID in VPC [GH-1555]
   136    * provider/aws: raw protocol numbers work in `aws_network_acl` [GH-1435]
   137    * provider/aws: Block devices can be encrypted [GH-1718]
   138    * provider/aws: ASG health check grace period can be updated in-place [GH-1682]
   139    * provider/aws: ELB security groups can be updated in-place [GH-1662]
   140    * provider/aws: `aws_main_route_table_association` can be deleted
   141        manually [GH-1806]
   142    * provider/docker: image can reference more complex image addresses,
   143        such as with private repos with ports [GH-1818]
   144    * provider/openstack: region config is not required [GH-1441]
   145    * provider/openstack: `enable_dhcp` for networking subnet should be bool [GH-1741]
   146    * provisioner/remote-exec: add random number to uploaded script path so
   147        that parallel provisions work [GH-1588]
   148    * provisioner/remote-exec: chmod the script to 0755 properly [GH-1796]
   149  
   150  ## 0.4.2 (April 10, 2015)
   151  
   152  BUG FIXES:
   153  
   154    * core: refresh won't remove outputs from state file [GH-1369]
   155    * core: clarify "unknown variable" error [GH-1480]
   156    * core: properly merge parent provider configs when asking for input
   157    * provider/aws: fix panic possibility if RDS DB name is empty [GH-1460]
   158    * provider/aws: fix issue detecting credentials for some resources [GH-1470]
   159    * provider/google: fix issue causing unresolvable diffs when using legacy
   160        `network` field on `google_compute_instance` [GH-1458]
   161  
   162  ## 0.4.1 (April 9, 2015)
   163  
   164  IMPROVEMENTS:
   165  
   166    * provider/aws: Route 53 records can now update `ttl` and `records` attributes
   167        without destroying/creating the record [GH-1396]
   168    * provider/aws: Support changing additional attributes of RDS databases
   169        without forcing a new resource  [GH-1382]
   170  
   171  BUG FIXES:
   172  
   173    * core: module paths in ".terraform" are consistent across different
   174        systems so copying your ".terraform" folder works. [GH-1418]
   175    * core: don't validate providers too early when nested in a module [GH-1380]
   176    * core: fix race condition in `count.index` interpolation [GH-1454]
   177    * core: properly initialize provisioners, fixing resource targeting
   178        during destroy [GH-1544]
   179    * command/push: don't ask for input if terraform.tfvars is present
   180    * command/remote-config: remove spurrious error "nil" when initializing
   181        remote state on a new configuration. [GH-1392]
   182    * provider/aws: Fix issue with Route 53 and pre-existing Hosted Zones [GH-1415]
   183    * provider/aws: Fix refresh issue in Route 53 hosted zone [GH-1384]
   184    * provider/aws: Fix issue when changing map-public-ip in Subnets #1234
   185    * provider/aws: Fix issue finding db subnets [GH-1377]
   186    * provider/aws: Fix issues with `*_block_device` attributes on instances and
   187        launch configs creating unresolvable diffs when certain optional
   188        parameters were omitted from the config [GH-1445]
   189    * provider/aws: Fix issue with `aws_launch_configuration` causing an
   190        unnecessary diff for pre-0.4 environments [GH-1371]
   191    * provider/aws: Fix several related issues with `aws_launch_configuration`
   192        causing unresolvable diffs [GH-1444]
   193    * provider/aws: Fix issue preventing launch configurations from being valid
   194        in EC2 Classic [GH-1412]
   195    * provider/aws: Fix issue in updating Route 53 records on refresh/read. [GH-1430]
   196    * provider/docker: Don't ask for `cert_path` input on every run [GH-1432]
   197    * provider/google: Fix issue causing unresolvable diff on instances with
   198        `network_interface` [GH-1427]
   199  
   200  ## 0.4.0 (April 2, 2015)
   201  
   202  BACKWARDS INCOMPATIBILITIES:
   203  
   204    * Commands `terraform push` and `terraform pull` are now nested under
   205      the `remote` command: `terraform remote push` and `terraform remote pull`.
   206      The old `remote` functionality is now at `terraform remote config`. This
   207      consolidates all remote state management under one command.
   208    * Period-prefixed configuration files are now ignored. This might break
   209      existing Terraform configurations if you had period-prefixed files.
   210    * The `block_device` attribute of `aws_instance` has been removed in favor
   211      of three more specific attributes to specify block device mappings:
   212      `root_block_device`, `ebs_block_device`, and `ephemeral_block_device`.
   213      Configurations using the old attribute will generate a validation error
   214      indicating that they must be updated to use the new fields [GH-1045].
   215  
   216  FEATURES:
   217  
   218    * **New provider: `dme` (DNSMadeEasy)** [GH-855]
   219    * **New provider: `docker` (Docker)** - Manage container lifecycle
   220        using the standard Docker API. [GH-855]
   221    * **New provider: `openstack` (OpenStack)** - Interact with the many resources
   222        provided by OpenStack. [GH-924]
   223    * **New feature: `terraform_remote_state` resource** - Reference remote
   224        states from other Terraform runs to use Terraform outputs as inputs
   225        into another Terraform run.
   226    * **New command: `taint`** - Manually mark a resource as tainted, causing
   227        a destroy and recreate on the next plan/apply.
   228    * **New resource: `aws_vpn_gateway`** [GH-1137]
   229    * **New resource: `aws_elastic_network_interfaces`** [GH-1149]
   230    * **Self-variables** can be used to reference the current resource's
   231        attributes within a provisioner. Ex. `${self.private_ip_address}` [GH-1033]
   232    * **Continuous state** saving during `terraform apply`. The state file is
   233        continuously updated as apply is running, meaning that the state is
   234        less likely to become corrupt in a catastrophic case: terraform panic
   235        or system killing Terraform.
   236    * **Math operations** in interpolations. You can now do things like
   237        `${count.index+1}`. [GH-1068]
   238    * **New AWS SDK:** Move to `aws-sdk-go` (hashicorp/aws-sdk-go),
   239        a fork of the offical `awslabs` repo. We forked for stability while
   240        `awslabs` refactored the library, and will move back to the officially
   241        supported version in the next release.
   242  
   243  IMPROVEMENTS:
   244  
   245    * **New config function: `format`** - Format a string using `sprintf`
   246        format. [GH-1096]
   247    * **New config function: `replace`** - Search and replace string values.
   248        Search can be a regular expression. See documentation for more
   249        info. [GH-1029]
   250    * **New config function: `split`** - Split a value based on a delimiter.
   251        This is useful for faking lists as parameters to modules.
   252    * **New resource: `digitalocean_ssh_key`** [GH-1074]
   253    * config: Expand `~` with homedir in `file()` paths [GH-1338]
   254    * core: The serial of the state is only updated if there is an actual
   255        change. This will lower the amount of state changing on things
   256        like refresh.
   257    * core: Autoload `terraform.tfvars.json` as well as `terraform.tfvars` [GH-1030]
   258    * core: `.tf` files that start with a period are now ignored. [GH-1227]
   259    * command/remote-config: After enabling remote state, a `pull` is
   260        automatically done initially.
   261    * providers/google: Add `size` option to disk blocks for instances. [GH-1284]
   262    * providers/aws: Improve support for tagging resources.
   263    * providers/aws: Add a short syntax for Route 53 Record names, e.g.
   264        `www` instead of `www.example.com`.
   265    * providers/aws: Improve dependency violation error handling, when deleting
   266        Internet Gateways or Auto Scaling groups [GH-1325].
   267    * provider/aws: Add non-destructive updates to AWS RDS. You can now upgrade
   268        `egine_version`, `parameter_group_name`, and `multi_az` without forcing
   269        a new database to be created.[GH-1341]
   270    * providers/aws: Full support for block device mappings on instances and
   271        launch configurations [GH-1045, GH-1364]
   272    * provisioners/remote-exec: SSH agent support. [GH-1208]
   273  
   274  BUG FIXES:
   275  
   276    * core: module outputs can be used as inputs to other modules [GH-822]
   277    * core: Self-referencing splat variables are no longer allowed in
   278        provisioners. [GH-795][GH-868]
   279    * core: Validate that `depends_on` doesn't contain interpolations. [GH-1015]
   280    * core: Module inputs can be non-strings. [GH-819]
   281    * core: Fix invalid plan that resulted in "diffs don't match" error when
   282        a computed attribute was used as part of a set parameter. [GH-1073]
   283    * core: Fix edge case where state containing both "resource" and
   284        "resource.0" would ignore the latter completely. [GH-1086]
   285    * core: Modules with a source of a relative file path moving up
   286        directories work properly, i.e. "../a" [GH-1232]
   287    * providers/aws: manually deleted VPC removes it from the state
   288    * providers/aws: `source_dest_check` regression fixed (now works). [GH-1020]
   289    * providers/aws: Longer wait times for DB instances.
   290    * providers/aws: Longer wait times for route53 records (30 mins). [GH-1164]
   291    * providers/aws: Fix support for TXT records in Route 53. [GH-1213]
   292    * providers/aws: Fix support for wildcard records in Route 53. [GH-1222]
   293    * providers/aws: Fix issue with ignoring the 'self' attribute of a
   294        Security Group rule. [GH-1223]
   295    * providers/aws: Fix issue with `sql_mode` in RDS parameter group always
   296        causing an update. [GH-1225]
   297    * providers/aws: Fix dependency violation with subnets and security groups
   298        [GH-1252]
   299    * providers/aws: Fix issue with refreshing `db_subnet_groups` causing an error
   300        instead of updating state [GH-1254]
   301    * providers/aws: Prevent empty string to be used as default
   302        `health_check_type` [GH-1052]
   303    * providers/aws: Add tags on AWS IG creation, not just on update [GH-1176]
   304    * providers/digitalocean: Waits until droplet is ready to be destroyed [GH-1057]
   305    * providers/digitalocean: More lenient about 404's while waiting [GH-1062]
   306    * providers/digitalocean: FQDN for domain records in CNAME, MX, NS, etc.
   307        Also fixes invalid updates in plans. [GH-863]
   308    * providers/google: Network data in state was not being stored. [GH-1095]
   309    * providers/heroku: Fix panic when config vars block was empty. [GH-1211]
   310  
   311  PLUGIN CHANGES:
   312  
   313    * New `helper/schema` fields for resources: `Deprecated` and `Removed` allow
   314        plugins to generate warning or error messages when a given attribute is used.
   315  
   316  ## 0.3.7 (February 19, 2015)
   317  
   318  IMPROVEMENTS:
   319  
   320    * **New resources: `google_compute_forwarding_rule`, `google_compute_http_health_check`,
   321        and `google_compute_target_pool`** - Together these provide network-level
   322        load balancing. [GH-588]
   323    * **New resource: `aws_main_route_table_association`** - Manage the main routing table
   324        of a VPC. [GH-918]
   325    * **New resource: `aws_vpc_peering_connection`** [GH-963]
   326    * core: Formalized the syntax of interpolations and documented it
   327        very heavily.
   328    * core: Strings in interpolations can now contain further interpolations,
   329        e.g.: `foo ${bar("${baz}")}`.
   330    * provider/aws: Internet gateway supports tags [GH-720]
   331    * provider/aws: Support the more standard environmental variable names
   332        for access key and secret keys. [GH-851]
   333    * provider/aws: The `aws_db_instance` resource no longer requires both
   334        `final_snapshot_identifier` and `skip_final_snapshot`; the presence or
   335        absence of the former now implies the latter. [GH-874]
   336    * provider/aws: Avoid unnecessary update of `aws_subnet` when
   337        `map_public_ip_on_launch` is not specified in config. [GH-898]
   338    * provider/aws: Add `apply_method` to `aws_db_parameter_group` [GH-897]
   339    * provider/aws: Add `storage_type` to `aws_db_instance` [GH-896]
   340    * provider/aws: ELB can update listeners without requiring new. [GH-721]
   341    * provider/aws: Security group support egress rules. [GH-856]
   342    * provider/aws: Route table supports VPC peering connection on route. [GH-963]
   343    * provider/aws: Add `root_block_device` to `aws_db_instance` [GH-998]
   344    * provider/google: Remove "client secrets file", as it's no longer necessary
   345        for API authentication [GH-884].
   346    * provider/google: Expose `self_link` on `google_compute_instance` [GH-906]
   347  
   348  BUG FIXES:
   349  
   350    * core: Fixing use of remote state with plan files. [GH-741]
   351    * core: Fix a panic case when certain invalid types were used in
   352        the configuration. [GH-691]
   353    * core: Escape characters `\"`, `\n`, and `\\` now work in interpolations.
   354    * core: Fix crash that could occur when there are exactly zero providers
   355        installed on a system. [GH-786]
   356    * core: JSON TF configurations can configure provisioners. [GH-807]
   357    * core: Sort `depends_on` in state to prevent unnecessary file changes. [GH-928]
   358    * core: State containing the zero value won't cause a diff with the
   359        lack of a value. [GH-952]
   360    * core: If a set type becomes empty, the state will be properly updated
   361        to remove it. [GH-952]
   362    * core: Bare "splat" variables are not allowed in provisioners. [GH-636]
   363    * core: Invalid configuration keys to sub-resources are now errors. [GH-740]
   364    * command/apply: Won't try to initialize modules in some cases when
   365        no arguments are given. [GH-780]
   366    * command/apply: Fix regression where user variables weren't asked [GH-736]
   367    * helper/hashcode: Update `hash.String()` to always return a positive index.
   368        Fixes issue where specific strings would convert to a negative index
   369        and be omitted when creating Route53 records. [GH-967]
   370    * provider/aws: Automatically suffix the Route53 zone name on record names. [GH-312]
   371    * provider/aws: Instance should ignore root EBS devices. [GH-877]
   372    * provider/aws: Fix `aws_db_instance` to not recreate each time. [GH-874]
   373    * provider/aws: ASG termination policies are synced with remote state. [GH-923]
   374    * provider/aws: ASG launch configuration setting can now be updated in-place. [GH-904]
   375    * provider/aws: No read error when subnet is manually deleted. [GH-889]
   376    * provider/aws: Tags with empty values (empty string) are properly
   377        managed. [GH-968]
   378    * provider/aws: Fix case where route table would delete its routes
   379        on an unrelated change. [GH-990]
   380    * provider/google: Fix bug preventing instances with metadata from being
   381        created [GH-884].
   382  
   383  PLUGIN CHANGES:
   384  
   385    * New `helper/schema` type: `TypeFloat` [GH-594]
   386    * New `helper/schema` field for resources: `Exists` must point to a function
   387        to check for the existence of a resource. This is used to properly
   388        handle the case where the resource was manually deleted. [GH-766]
   389    * There is a semantic change in `GetOk` where it will return `true` if
   390        there is any value in the diff that is _non-zero_. Before, it would
   391        return true only if there was a value in the diff.
   392  
   393  ## 0.3.6 (January 6, 2015)
   394  
   395  FEATURES:
   396  
   397    * **New provider: `cloudstack`**
   398  
   399  IMPROVEMENTS:
   400  
   401    * **New resource: `aws_key_pair`** - Import a public key into AWS. [GH-695]
   402    * **New resource: `heroku_cert`** - Manage Heroku app certs.
   403    * provider/aws: Support `eu-central-1`, `cn-north-1`, and GovCloud. [GH-525]
   404    * provider/aws: `route_table` can have tags. [GH-648]
   405    * provider/google: Support Ubuntu images. [GH-724]
   406    * provider/google: Support for service accounts. [GH-725]
   407  
   408  BUG FIXES:
   409  
   410    * core: temporary/hidden files that look like Terraform configurations
   411        are no longer loaded. [GH-548]
   412    * core: Set types in resources now result in deterministic states,
   413        resulting in cleaner plans. [GH-663]
   414    * core: fix issue where "diff was not the same" would come up with
   415        diffing lists. [GH-661]
   416    * core: fix crash where module inputs weren't strings, and add more
   417        validation around invalid types here. [GH-624]
   418    * core: fix error when using a computed module output as an input to
   419        another module. [GH-659]
   420    * core: map overrides in "terraform.tfvars" no longer result in a syntax
   421        error. [GH-647]
   422    * core: Colon character works in interpolation [GH-700]
   423    * provider/aws: Fix crash case when internet gateway is not attached
   424        to any VPC. [GH-664]
   425    * provider/aws: `vpc_id` is no longer required. [GH-667]
   426    * provider/aws: `availability_zones` on ELB will contain more than one
   427        AZ if it is set as such. [GH-682]
   428    * provider/aws: More fields are marked as "computed" properly, resulting
   429        in more accurate diffs for AWS instances. [GH-712]
   430    * provider/aws: Fix panic case by using the wrong type when setting
   431        volume size for AWS instances. [GH-712]
   432    * provider/aws: route table ignores routes with 'EnableVgwRoutePropagation'
   433        origin since those come from gateways. [GH-722]
   434    * provider/aws: Default network ACL ID and default security group ID
   435        support for `aws_vpc`. [GH-704]
   436    * provider/aws: Tags are not marked as computed. This introduces another
   437        issue with not detecting external tags, but this will be fixed in
   438        the future. [GH-730]
   439  
   440  ## 0.3.5 (December 9, 2014)
   441  
   442  FEATURES:
   443  
   444   * **Remote State**: State files can now be stored remotely via HTTP,
   445       Consul, or HashiCorp's Atlas.
   446   * **New Provider: `atlas`**: Retrieve artifacts for deployment from
   447       HashiCorp's Atlas service.
   448   * New `element()` function to index into arrays
   449  
   450  IMPROVEMENTS:
   451  
   452    * provider/aws: Support tenancy for aws\_instance
   453    * provider/aws: Support block devices for aws\_instance
   454    * provider/aws: Support virtual\_name on block device
   455    * provider/aws: Improve RDS reliability (more grace time)
   456    * provider/aws: Added aws\_db\_parameter\_group resource
   457    * provider/aws: Added tag support to aws\_subnet
   458    * provider/aws: Routes in RouteTable are optional
   459    * provider/aws: associate\_public\_ip\_address on aws\_launch\_configuration
   460    * provider/aws: Added aws\_network\_acl
   461    * provider/aws: Ingress rules in security groups are optional
   462    * provider/aws: Support termination policy for ASG
   463    * provider/digitalocean: Improved droplet size compatibility
   464  
   465  BUG FIXES:
   466  
   467    * core: Fixed issue causing double delete. [GH-555]
   468    * core: Fixed issue with create-before-destroy not being respected in
   469        some circumstances.
   470    * core: Fixing issue with count expansion with non-homogenous instance
   471        plans.
   472    * core: Fix issue with referencing resource variables from resources
   473        that don't exist yet within resources that do exist, or modules.
   474    * core: Fixing depedency handling for modules
   475    * core: Fixing output handling [GH-474]
   476    * core: Fixing count interpolation in modules
   477    * core: Fixing multi-var without module state
   478    * core: Fixing HCL variable declaration
   479    * core: Fixing resource interpolation for without state
   480    * core: Fixing handling of computed maps
   481    * command/init: Fixing recursion issue [GH-518]
   482    * command: Validate config before requesting input [GH-602]
   483    * build: Fixing GOPATHs with spaces
   484  
   485  MISC:
   486  
   487    * provider/aws: Upgraded to helper.Schema
   488    * provider/heroku: Upgraded to helper.Schema
   489    * provider/mailgun: Upgraded to helper.Schema
   490    * provider/dnsimple: Upgraded to helper.Schema
   491    * provider/cloudflare: Upgraded to helper.Schema
   492    * provider/digitalocean: Upgraded to helper.Schema
   493    * provider/google: Upgraded to helper.Schema
   494  
   495  ## 0.3.1 (October 21, 2014)
   496  
   497  IMPROVEMENTS:
   498  
   499    * providers/aws: Support tags for security groups.
   500    * providers/google: Add "external\_address" to network attributes [GH-454]
   501    * providers/google: External address is used as default connection host. [GH-454]
   502    * providers/heroku: Support `locked` and `personal` booleans on organization
   503        settings. [GH-406]
   504  
   505  BUG FIXES:
   506  
   507    * core: Remove panic case when applying with a plan that generates no
   508        new state. [GH-403]
   509    * core: Fix a hang that can occur with enough resources. [GH-410]
   510    * core: Config validation will not error if the field is being
   511        computed so the value is still unknown.
   512    * core: If a resource fails to create and has provisioners, it is
   513        marked as tainted. [GH-434]
   514    * core: Set types are validated to be sets. [GH-413]
   515    * core: String types are validated properly. [GH-460]
   516    * core: Fix crash case when destroying with tainted resources. [GH-412]
   517    * core: Don't execute provisioners in some cases on destroy.
   518    * core: Inherited provider configurations will be properly interpolated. [GH-418]
   519    * core: Refresh works properly if there are outputs that depend on resources
   520        that aren't yet created. [GH-483]
   521    * providers/aws: Refresh of launch configs and autoscale groups load
   522        the correct data and don't incorrectly recreate themselves. [GH-425]
   523    * providers/aws: Fix case where ELB would incorrectly plan to modify
   524        listeners (with the same data) in some cases.
   525    * providers/aws: Retry destroying internet gateway for some amount of time
   526        if there is a dependency violation since it is probably just eventual
   527        consistency (public facing resources being destroyed). [GH-447]
   528    * providers/aws: Retry deleting security groups for some amount of time
   529        if there is a dependency violation since it is probably just eventual
   530        consistency. [GH-436]
   531    * providers/aws: Retry deleting subnet for some amount of time if there is a
   532        dependency violation since probably asynchronous destroy events take
   533        place still. [GH-449]
   534    * providers/aws: Drain autoscale groups before deleting. [GH-435]
   535    * providers/aws: Fix crash case if launch config is manually deleted. [GH-421]
   536    * providers/aws: Disassociate EIP before destroying.
   537    * providers/aws: ELB treats subnets as a set.
   538    * providers/aws: Fix case where in a destroy/create tags weren't reapplied. [GH-464]
   539    * providers/aws: Fix incorrect/erroneous apply cases around security group
   540        rules. [GH-457]
   541    * providers/consul: Fix regression where `key` param changed to `keys. [GH-475]
   542  
   543  ## 0.3.0 (October 14, 2014)
   544  
   545  FEATURES:
   546  
   547    * **Modules**: Configuration can now be modularized. Modules can live on
   548      GitHub, BitBucket, Git/Hg repos, HTTP URLs, and file paths. Terraform
   549      automatically downloads/updates modules for you on request.
   550    * **New Command: `init`**. This command initializes a Terraform configuration
   551      from an existing Terraform module (also new in 0.3).
   552    * **New Command: `destroy`**. This command destroys infrastructure
   553      created with `apply`.
   554    * Terraform will ask for user input to fill in required variables and
   555      provider configurations if they aren't set.
   556    * `terraform apply MODULE` can be used as a shorthand to quickly build
   557      infrastructure from a module.
   558    * The state file format is now JSON rather than binary. This allows for
   559      easier machine and human read/write. Old binary state files will be
   560      automatically upgraded.
   561    * You can now specify `create_before_destroy` as an option for replacement
   562      so that new resources are created before the old ones are destroyed.
   563    * The `count` metaparameter can now contain interpolations (such as
   564      variables).
   565    * The current index for a resource with a `count` set can be interpolated
   566      using `${count.index}`.
   567    * Various paths can be interpolated with the `path.X` variables. For example,
   568      the path to the current module can be interpolated using `${path.module}`.
   569  
   570  IMPROVEMENTS:
   571  
   572    * config: Trailing commas are now allowed for the final elements of lists.
   573    * core: Plugins are loaded from `~/.terraform.d/plugins` (Unix) or
   574      `%USERDATA%/terraform.d/plugins` (Windows).
   575    * command/show: With no arguments, it will show the default state. [GH-349]
   576    * helper/schema: Can now have default values. [GH-245]
   577    * providers/aws: Tag support for most resources.
   578    * providers/aws: New resource `db_subnet_group`. [GH-295]
   579    * providers/aws: Add `map_public_ip_on_launch` for subnets. [GH-285]
   580    * providers/aws: Add `iam_instance_profile` for instances. [GH-319]
   581    * providers/aws: Add `internal` option for ELBs. [GH-303]
   582    * providers/aws: Add `ssl_certificate_id` for ELB listeners. [GH-350]
   583    * providers/aws: Add `self` option for security groups for ingress
   584        rules with self as source. [GH-303]
   585    * providers/aws: Add `iam_instance_profile` option to
   586        `aws_launch_configuration`. [GH-371]
   587    * providers/aws: Non-destructive update of `desired_capacity` for
   588        autoscale groups.
   589    * providers/aws: Add `main_route_table_id` attribute to VPCs. [GH-193]
   590    * providers/consul: Support tokens. [GH-396]
   591    * providers/google: Support `target_tags` for firewalls. [GH-324]
   592    * providers/google: `google_compute_instance` supports `can_ip_forward` [GH-375]
   593    * providers/google: `google_compute_disk` supports `type` to support disks
   594        such as SSDs. [GH-351]
   595    * provisioners/local-exec: Output from command is shown in CLI output. [GH-311]
   596    * provisioners/remote-exec: Output from command is shown in CLI output. [GH-311]
   597  
   598  BUG FIXES:
   599  
   600    * core: Providers are validated even without a `provider` block. [GH-284]
   601    * core: In the case of error, walk all non-dependent trees.
   602    * core: Plugin loading from CWD works properly.
   603    * core: Fix many edge cases surrounding the `count` meta-parameter.
   604    * core: Strings in the configuration can escape double-quotes with the
   605        standard `\"` syntax.
   606    * core: Error parsing CLI config will show properly. [GH-288]
   607    * core: More than one Ctrl-C will exit immediately.
   608    * providers/aws: autoscaling_group can be launched into a vpc [GH-259]
   609    * providers/aws: not an error when RDS instance is deleted manually. [GH-307]
   610    * providers/aws: Retry deleting subnet for some time while AWS eventually
   611        destroys dependencies. [GH-357]
   612    * providers/aws: More robust destroy for route53 records. [GH-342]
   613    * providers/aws: ELB generates much more correct plans without extranneous
   614        data.
   615    * providers/aws: ELB works properly with dynamically changing
   616        count of instances.
   617    * providers/aws: Terraform can handle ELBs deleted manually. [GH-304]
   618    * providers/aws: Report errors properly if RDS fails to delete. [GH-310]
   619    * providers/aws: Wait for launch configuration to exist after creation
   620        (AWS eventual consistency) [GH-302]
   621  
   622  ## 0.2.2 (September 9, 2014)
   623  
   624  IMPROVEMENTS:
   625  
   626    * providers/amazon: Add `ebs_optimized` flag. [GH-260]
   627    * providers/digitalocean: Handle 404 on delete
   628    * providers/digitalocean: Add `user_data` argument for creating droplets
   629    * providers/google: Disks can be marked `auto_delete`. [GH-254]
   630  
   631  BUG FIXES:
   632  
   633    * core: Fix certain syntax of configuration that could cause hang. [GH-261]
   634    * core: `-no-color` flag properly disables color. [GH-250]
   635    * core: "~" is expanded in `-var-file` flags. [GH-273]
   636    * core: Errors with tfvars are shown in console. [GH-269]
   637    * core: Interpolation function calls with more than two args parse. [GH-282]
   638    * providers/aws: Refreshing EIP from pre-0.2 state file won't error. [GH-258]
   639    * providers/aws: Creating EIP without an instance/network won't fail.
   640    * providers/aws: Refreshing EIP manually deleted works.
   641    * providers/aws: Retry EIP delete to allow AWS eventual consistency to
   642        detect it isn't attached. [GH-276]
   643    * providers/digitalocean: Handle situations when resource was destroyed
   644        manually. [GH-279]
   645    * providers/digitalocean: Fix a couple scenarios where the diff was
   646        incorrect (and therefore the execution as well).
   647    * providers/google: Attaching a disk source (not an image) works
   648        properly. [GH-254]
   649  
   650  ## 0.2.1 (August 31, 2014)
   651  
   652  IMPROVEMENTS:
   653  
   654    * core: Plugins are automatically discovered in the executable directory
   655        or pwd if named properly. [GH-190]
   656    * providers/mailgun: domain records are now saved to state
   657  
   658  BUG FIXES:
   659  
   660    * core: Configuration parses when identifier and '=' have no space. [GH-243]
   661    * core: `depends_on` with `count` generates the proper graph. [GH-244]
   662    * core: Depending on a computed variable of a list type generates a
   663        plan without failure. i.e. `${type.name.foos.0.bar}` where `foos`
   664        is computed. [GH-247]
   665    * providers/aws: Route53 destroys in parallel work properly. [GH-183]
   666  
   667  ## 0.2.0 (August 28, 2014)
   668  
   669  BACKWARDS INCOMPATIBILITIES:
   670  
   671    * We've replaced the configuration language in use from a C library to
   672      a pure-Go reimplementation. In the process, we removed some features
   673      of the language since it was too flexible:
   674      * Semicolons are no longer valid at the end of lines
   675      * Keys cannot be double-quoted strings: `"foo" = "bar"` is no longer
   676        valid.
   677      * JSON style maps `{ "foo": "bar" }` are no longer valid outside of JSON.
   678        Maps must be in the format of `{ foo = "bar" }` (like other objects
   679        in the config)
   680    * Heroku apps now require (will not validate without) `region` and
   681      `name` due to an upstream API change. [GH-239]
   682  
   683  FEATURES:
   684  
   685    * **New Provider: `google`**: Manage Google Compute instances, disks,
   686        firewalls, and more.
   687    * **New Provider: `mailgun`**: Manage mailgun domains.
   688    * **New Function: `concat`**: Concatenate multiple strings together.
   689      Example: `concat(var.region, "-", var.channel)`.
   690  
   691  IMPROVEMENTS:
   692  
   693    * core: "~/.terraformrc" (Unix) or "%APPDATA%/terraform.rc" (Windows)
   694      can be used to configure custom providers and provisioners. [GH-192]
   695    * providers/aws: EIPs now expose `allocation_id` and `public_ip`
   696        attributes.
   697    * providers/aws: Security group rules can be updated without a
   698        destroy/create.
   699    * providers/aws: You can enable and disable dns settings for VPCs. [GH-172]
   700    * providers/aws: Can specify a private IP address for `aws_instance` [GH-217]
   701  
   702  BUG FIXES:
   703  
   704    * core: Variables are validated to not contain interpolations. [GH-180]
   705    * core: Key files for provisioning can now contain `~` and will be expanded
   706        to the user's home directory. [GH-179]
   707    * core: The `file()` function can load files in sub-directories. [GH-213]
   708    * core: Fix issue where some JSON structures didn't map properly into
   709       Terraform structures. [GH-177]
   710    * core: Resources with only `file()` calls will interpolate. [GH-159]
   711    * core: Variables work in block names. [GH-234]
   712    * core: Plugins are searched for in the same directory as the executable
   713        before the PATH. [GH-157]
   714    * command/apply: "tfvars" file no longer interferes with plan apply. [GH-153]
   715    * providers/aws: Fix issues around failing to read EIPs. [GH-122]
   716    * providers/aws: Autoscaling groups now register and export load
   717      balancers. [GH-207]
   718    * providers/aws: Ingress results are treated as a set, so order doesn't
   719        matter anymore. [GH-87]
   720    * providers/aws: Instance security groups treated as a set [GH-194]
   721    * providers/aws: Retry Route53 requests if operation failed because another
   722        operation is in progress [GH-183]
   723    * providers/aws: Route53 records with multiple record values work. [GH-221]
   724    * providers/aws: Changing AMI doesn't result in errors anymore. [GH-196]
   725    * providers/heroku: If you delete the `config_vars` block, config vars
   726        are properly nuked.
   727    * providers/heroku: Domains and drains are deleted before the app.
   728    * providers/heroku: Moved from the client library bgentry/heroku-go to
   729        cyberdelia/heroku-go [GH-239].
   730    * providers/heroku: Plans without a specific plan name for
   731        heroku\_addon work. [GH-198]
   732  
   733  PLUGIN CHANGES:
   734  
   735    * **New Package:** `helper/schema`. This introduces a high-level framework
   736      for easily writing new providers and resources. The Heroku provider has
   737      been converted to this as an example.
   738  
   739  ## 0.1.1 (August 5, 2014)
   740  
   741  FEATURES:
   742  
   743    * providers/heroku: Now supports creating Heroku Drains [GH-97]
   744  
   745  IMPROVEMENTS:
   746  
   747    * providers/aws: Launch configurations accept user data [GH-94]
   748    * providers/aws: Regions are now validated [GH-96]
   749    * providers/aws: ELB now supports health check configurations [GH-109]
   750  
   751  BUG FIXES:
   752  
   753    * core: Default variable file "terraform.tfvars" is auto-loaded. [GH-59]
   754    * core: Multi-variables (`foo.*.bar`) work even when `count = 1`. [GH-115]
   755    * core: `file()` function can have string literal arg [GH-145]
   756    * providers/cloudflare: Include the proper bins so the cloudflare
   757        provider is compiled
   758    * providers/aws: Engine version for RDS now properly set [GH-118]
   759    * providers/aws: Security groups now depend on each other and
   760    * providers/aws: DB instances now wait for destroys, have proper
   761        dependencies and allow passing skip_final_snapshot
   762    * providers/aws: Add associate_public_ip_address as an attribute on
   763        the aws_instance resource [GH-85]
   764    * providers/aws: Fix cidr blocks being updated [GH-65, GH-85]
   765    * providers/aws: Description is now required for security groups
   766    * providers/digitalocean: Private IP addresses are now a separate
   767        attribute
   768    * provisioner/all: If an SSH key is given with a password, a better
   769        error message is shown. [GH-73]
   770  
   771  ## 0.1.0 (July 28, 2014)
   772  
   773    * Initial release
   774  
   775