github.com/markdia/terraform@v0.5.1-0.20150508012022-f1ae920aa970/CHANGELOG.md (about) 1 ## 0.5.1 (unreleased) 2 3 4 5 ## 0.5.0 (May 7, 2015) 6 7 FEATURES: 8 9 * **Multi-provider (a.k.a multi-region)**: Multiple instances of a single 10 provider can be configured so resources can apply to different settings. 11 As an example, this allows Terraform to manage multiple regions with AWS. 12 * **Environmental variables to set variables**: Environment variables can be 13 used to set variables. The environment variables must be in the format 14 `TF_VAR_name` and this will be checked last for a value. 15 * **New remote state backend: `s3`**: You can now store remote state in 16 an S3 bucket. [GH-1723] 17 * **Automatic AWS retries**: This release includes a lot of improvement 18 around automatic retries of transient errors in AWS. The number of 19 retry attempts is also configurable. 20 * **Templates**: A new `template_file` resource allows long strings needing 21 variable interpolation to be moved into files. [GH-1778] 22 * **Provision with WinRM**: Provisioners can now run remote commands on 23 Windows hosts. [GH-1483] 24 25 IMPROVEMENTS: 26 27 * **New config function: `length`** - Get the length of a string or a list. 28 Useful in conjunction with `split`. [GH-1495] 29 * **New resource: `aws_app_cookie_stickiness_policy`** 30 * **New resource: `aws_customer_gateway`** 31 * **New resource: `aws_ebs_volume`** 32 * **New resource: `aws_elasticache_cluster`** 33 * **New resource: `aws_elasticache_security_group`** 34 * **New resource: `aws_elasticache_subnet_group`** 35 * **New resource: `aws_iam_access_key`** 36 * **New resource: `aws_iam_group_policy`** 37 * **New resource: `aws_iam_group`** 38 * **New resource: `aws_iam_instance_profile`** 39 * **New resource: `aws_iam_policy`** 40 * **New resource: `aws_iam_role_policy`** 41 * **New resource: `aws_iam_role`** 42 * **New resource: `aws_iam_user_policy`** 43 * **New resource: `aws_iam_user`** 44 * **New resource: `aws_lb_cookie_stickiness_policy`** 45 * **New resource: `aws_proxy_protocol_policy`** 46 * **New resource: `aws_security_group_rule`** 47 * **New resource: `aws_vpc_dhcp_options_association`** 48 * **New resource: `aws_vpc_dhcp_options`** 49 * **New resource: `aws_vpn_connection_route`** 50 * **New resource: `google_dns_managed_zone`** 51 * **New resource: `google_dns_record_set`** 52 * **Migrate to upstream AWS SDK:** Migrate the AWS provider to 53 [awslabs/aws-sdk-go](https://github.com/awslabs/aws-sdk-go), 54 the offical `awslabs` library. Previously we had forked the library for 55 stability while `awslabs` refactored. Now that work has completed, and we've 56 migrated back to the upstream version. 57 * core: Improve error message on diff mismatch [GH-1501] 58 * provisioner/file: expand `~` in source path [GH-1569] 59 * provider/aws: Better retry logic, now retries up to 11 times by default 60 with exponentional backoff. This number is configurable. [GH-1787] 61 * provider/aws: Improved credential detection [GH-1470] 62 * provider/aws: Can specify a `token` via the config file [GH-1601] 63 * provider/aws: Added new `vpc_security_group_ids` attribute for AWS 64 Instances. If using a VPC, you can now modify the security groups for that 65 Instance without destroying it [GH-1539] 66 * provider/aws: White or blacklist account IDs that can be used to 67 protect against accidents. [GH-1595] 68 * provider/aws: Add a subset of IAM resources [GH-939] 69 * provider/aws: `aws_autoscaling_group` retries deletes through "in progress" 70 errors [GH-1840] 71 * provider/aws: `aws_autoscaling_group` waits for healthy capacity during 72 ASG creation [GH-1839] 73 * provider/aws: `aws_instance` supports placement groups [GH-1358] 74 * provider/aws: `aws_eip` supports network interface attachment [GH-1681] 75 * provider/aws: `aws_elb` supports in-place changing of listeners [GH-1619] 76 * provider/aws: `aws_elb` supports connection draining settings [GH-1502] 77 * provider/aws: `aws_elb` increase default idle timeout to 60s [GH-1646] 78 * provider/aws: `aws_key_pair` name can be omitted and generated [GH-1751] 79 * provider/aws: `aws_network_acl` improved validation for network ACL ports 80 and protocols [GH-1798] [GH-1808] 81 * provider/aws: `aws_route_table` can target network interfaces [GH-968] 82 * provider/aws: `aws_route_table` can specify propogating VGWs [GH-1516] 83 * provider/aws: `aws_route53_record` supports weighted sets [GH-1578] 84 * provider/aws: `aws_route53_zone` exports nameservers [GH-1525] 85 * provider/aws: `aws_s3_bucket` website support [GH-1738] 86 * provider/aws: `aws_security_group` name becomes optional and can be 87 automatically set to a unique identifier; this helps with 88 `create_before_destroy` scenarios [GH-1632] 89 * provider/aws: `aws_security_group` description becomes optional with a 90 static default value [GH-1632] 91 * provider/aws: automatically set the private IP as the SSH address 92 if not specified and no public IP is available [GH-1623] 93 * provider/aws: `aws_elb` exports `source_security_group` field [GH-1708] 94 * provider/aws: `aws_route53_record` supports alias targeting [GH-1775] 95 * provider/aws: Remove default AWS egress rule for newly created Security Groups [GH-1765] 96 * provider/consul: add `scheme` configuration argument [GH-1838] 97 * provider/docker: `docker_container` can specify links [GH-1564] 98 * provider/google: `resource_compute_disk` supports snapshots [GH-1426] 99 * provider/google: `resource_compute_instance` supports specifying the 100 device name [GH-1426] 101 * provider/openstack: Floating IP support for LBaaS [GH-1550] 102 * provider/openstack: Add AZ to `openstack_blockstorage_volume_v1` [GH-1726] 103 104 BUG FIXES: 105 106 * core: Fix graph cycle issues surrounding modules [GH-1582] [GH-1637] 107 * core: math on arbitrary variables works if first operand isn't a 108 numeric primitive. [GH-1381] 109 * core: avoid unnecessary cycles by pruning tainted destroys from 110 graph if there are no tainted resources [GH-1475] 111 * core: fix issue where destroy nodes weren't pruned in specific 112 edge cases around matching prefixes, which could cause cycles [GH-1527] 113 * core: fix issue causing diff mismatch errors in certain scenarios during 114 resource replacement [GH-1515] 115 * core: dependencies on resources with a different index work when 116 count > 1 [GH-1540] 117 * core: don't panic if variable default type is invalid [GH-1344] 118 * core: fix perpetual diff issue for computed maps that are empty [GH-1607] 119 * core: validation added to check for `self` variables in modules [GH-1609] 120 * core: fix edge case where validation didn't pick up unknown fields 121 if the value was computed [GH-1507] 122 * core: Fix issue where values in sets on resources couldn't contain 123 hyphens. [GH-1641] 124 * core: Outputs removed from the config are removed from the state [GH-1714] 125 * core: Validate against the worst-case graph during plan phase to catch cycles 126 that would previously only show up during apply [GH-1655] 127 * core: Referencing invalid module output in module validates [GH-1448] 128 * command: remote states with uppercase types work [GH-1356] 129 * provider/aws: Support `AWS_SECURITY_TOKEN` env var again [GH-1785] 130 * provider/aws: Don't save "instance" for EIP if association fails [GH-1776] 131 * provider/aws: launch configuration ID set after create success [GH-1518] 132 * provider/aws: Fixed an issue with creating ELBs without any tags [GH-1580] 133 * provider/aws: Fix issue in Security Groups with empty IPRanges [GH-1612] 134 * provider/aws: manually deleted S3 buckets are refreshed properly [GH-1574] 135 * provider/aws: only check for EIP allocation ID in VPC [GH-1555] 136 * provider/aws: raw protocol numbers work in `aws_network_acl` [GH-1435] 137 * provider/aws: Block devices can be encrypted [GH-1718] 138 * provider/aws: ASG health check grace period can be updated in-place [GH-1682] 139 * provider/aws: ELB security groups can be updated in-place [GH-1662] 140 * provider/aws: `aws_main_route_table_association` can be deleted 141 manually [GH-1806] 142 * provider/docker: image can reference more complex image addresses, 143 such as with private repos with ports [GH-1818] 144 * provider/openstack: region config is not required [GH-1441] 145 * provider/openstack: `enable_dhcp` for networking subnet should be bool [GH-1741] 146 * provisioner/remote-exec: add random number to uploaded script path so 147 that parallel provisions work [GH-1588] 148 * provisioner/remote-exec: chmod the script to 0755 properly [GH-1796] 149 150 ## 0.4.2 (April 10, 2015) 151 152 BUG FIXES: 153 154 * core: refresh won't remove outputs from state file [GH-1369] 155 * core: clarify "unknown variable" error [GH-1480] 156 * core: properly merge parent provider configs when asking for input 157 * provider/aws: fix panic possibility if RDS DB name is empty [GH-1460] 158 * provider/aws: fix issue detecting credentials for some resources [GH-1470] 159 * provider/google: fix issue causing unresolvable diffs when using legacy 160 `network` field on `google_compute_instance` [GH-1458] 161 162 ## 0.4.1 (April 9, 2015) 163 164 IMPROVEMENTS: 165 166 * provider/aws: Route 53 records can now update `ttl` and `records` attributes 167 without destroying/creating the record [GH-1396] 168 * provider/aws: Support changing additional attributes of RDS databases 169 without forcing a new resource [GH-1382] 170 171 BUG FIXES: 172 173 * core: module paths in ".terraform" are consistent across different 174 systems so copying your ".terraform" folder works. [GH-1418] 175 * core: don't validate providers too early when nested in a module [GH-1380] 176 * core: fix race condition in `count.index` interpolation [GH-1454] 177 * core: properly initialize provisioners, fixing resource targeting 178 during destroy [GH-1544] 179 * command/push: don't ask for input if terraform.tfvars is present 180 * command/remote-config: remove spurrious error "nil" when initializing 181 remote state on a new configuration. [GH-1392] 182 * provider/aws: Fix issue with Route 53 and pre-existing Hosted Zones [GH-1415] 183 * provider/aws: Fix refresh issue in Route 53 hosted zone [GH-1384] 184 * provider/aws: Fix issue when changing map-public-ip in Subnets #1234 185 * provider/aws: Fix issue finding db subnets [GH-1377] 186 * provider/aws: Fix issues with `*_block_device` attributes on instances and 187 launch configs creating unresolvable diffs when certain optional 188 parameters were omitted from the config [GH-1445] 189 * provider/aws: Fix issue with `aws_launch_configuration` causing an 190 unnecessary diff for pre-0.4 environments [GH-1371] 191 * provider/aws: Fix several related issues with `aws_launch_configuration` 192 causing unresolvable diffs [GH-1444] 193 * provider/aws: Fix issue preventing launch configurations from being valid 194 in EC2 Classic [GH-1412] 195 * provider/aws: Fix issue in updating Route 53 records on refresh/read. [GH-1430] 196 * provider/docker: Don't ask for `cert_path` input on every run [GH-1432] 197 * provider/google: Fix issue causing unresolvable diff on instances with 198 `network_interface` [GH-1427] 199 200 ## 0.4.0 (April 2, 2015) 201 202 BACKWARDS INCOMPATIBILITIES: 203 204 * Commands `terraform push` and `terraform pull` are now nested under 205 the `remote` command: `terraform remote push` and `terraform remote pull`. 206 The old `remote` functionality is now at `terraform remote config`. This 207 consolidates all remote state management under one command. 208 * Period-prefixed configuration files are now ignored. This might break 209 existing Terraform configurations if you had period-prefixed files. 210 * The `block_device` attribute of `aws_instance` has been removed in favor 211 of three more specific attributes to specify block device mappings: 212 `root_block_device`, `ebs_block_device`, and `ephemeral_block_device`. 213 Configurations using the old attribute will generate a validation error 214 indicating that they must be updated to use the new fields [GH-1045]. 215 216 FEATURES: 217 218 * **New provider: `dme` (DNSMadeEasy)** [GH-855] 219 * **New provider: `docker` (Docker)** - Manage container lifecycle 220 using the standard Docker API. [GH-855] 221 * **New provider: `openstack` (OpenStack)** - Interact with the many resources 222 provided by OpenStack. [GH-924] 223 * **New feature: `terraform_remote_state` resource** - Reference remote 224 states from other Terraform runs to use Terraform outputs as inputs 225 into another Terraform run. 226 * **New command: `taint`** - Manually mark a resource as tainted, causing 227 a destroy and recreate on the next plan/apply. 228 * **New resource: `aws_vpn_gateway`** [GH-1137] 229 * **New resource: `aws_elastic_network_interfaces`** [GH-1149] 230 * **Self-variables** can be used to reference the current resource's 231 attributes within a provisioner. Ex. `${self.private_ip_address}` [GH-1033] 232 * **Continuous state** saving during `terraform apply`. The state file is 233 continuously updated as apply is running, meaning that the state is 234 less likely to become corrupt in a catastrophic case: terraform panic 235 or system killing Terraform. 236 * **Math operations** in interpolations. You can now do things like 237 `${count.index+1}`. [GH-1068] 238 * **New AWS SDK:** Move to `aws-sdk-go` (hashicorp/aws-sdk-go), 239 a fork of the offical `awslabs` repo. We forked for stability while 240 `awslabs` refactored the library, and will move back to the officially 241 supported version in the next release. 242 243 IMPROVEMENTS: 244 245 * **New config function: `format`** - Format a string using `sprintf` 246 format. [GH-1096] 247 * **New config function: `replace`** - Search and replace string values. 248 Search can be a regular expression. See documentation for more 249 info. [GH-1029] 250 * **New config function: `split`** - Split a value based on a delimiter. 251 This is useful for faking lists as parameters to modules. 252 * **New resource: `digitalocean_ssh_key`** [GH-1074] 253 * config: Expand `~` with homedir in `file()` paths [GH-1338] 254 * core: The serial of the state is only updated if there is an actual 255 change. This will lower the amount of state changing on things 256 like refresh. 257 * core: Autoload `terraform.tfvars.json` as well as `terraform.tfvars` [GH-1030] 258 * core: `.tf` files that start with a period are now ignored. [GH-1227] 259 * command/remote-config: After enabling remote state, a `pull` is 260 automatically done initially. 261 * providers/google: Add `size` option to disk blocks for instances. [GH-1284] 262 * providers/aws: Improve support for tagging resources. 263 * providers/aws: Add a short syntax for Route 53 Record names, e.g. 264 `www` instead of `www.example.com`. 265 * providers/aws: Improve dependency violation error handling, when deleting 266 Internet Gateways or Auto Scaling groups [GH-1325]. 267 * provider/aws: Add non-destructive updates to AWS RDS. You can now upgrade 268 `egine_version`, `parameter_group_name`, and `multi_az` without forcing 269 a new database to be created.[GH-1341] 270 * providers/aws: Full support for block device mappings on instances and 271 launch configurations [GH-1045, GH-1364] 272 * provisioners/remote-exec: SSH agent support. [GH-1208] 273 274 BUG FIXES: 275 276 * core: module outputs can be used as inputs to other modules [GH-822] 277 * core: Self-referencing splat variables are no longer allowed in 278 provisioners. [GH-795][GH-868] 279 * core: Validate that `depends_on` doesn't contain interpolations. [GH-1015] 280 * core: Module inputs can be non-strings. [GH-819] 281 * core: Fix invalid plan that resulted in "diffs don't match" error when 282 a computed attribute was used as part of a set parameter. [GH-1073] 283 * core: Fix edge case where state containing both "resource" and 284 "resource.0" would ignore the latter completely. [GH-1086] 285 * core: Modules with a source of a relative file path moving up 286 directories work properly, i.e. "../a" [GH-1232] 287 * providers/aws: manually deleted VPC removes it from the state 288 * providers/aws: `source_dest_check` regression fixed (now works). [GH-1020] 289 * providers/aws: Longer wait times for DB instances. 290 * providers/aws: Longer wait times for route53 records (30 mins). [GH-1164] 291 * providers/aws: Fix support for TXT records in Route 53. [GH-1213] 292 * providers/aws: Fix support for wildcard records in Route 53. [GH-1222] 293 * providers/aws: Fix issue with ignoring the 'self' attribute of a 294 Security Group rule. [GH-1223] 295 * providers/aws: Fix issue with `sql_mode` in RDS parameter group always 296 causing an update. [GH-1225] 297 * providers/aws: Fix dependency violation with subnets and security groups 298 [GH-1252] 299 * providers/aws: Fix issue with refreshing `db_subnet_groups` causing an error 300 instead of updating state [GH-1254] 301 * providers/aws: Prevent empty string to be used as default 302 `health_check_type` [GH-1052] 303 * providers/aws: Add tags on AWS IG creation, not just on update [GH-1176] 304 * providers/digitalocean: Waits until droplet is ready to be destroyed [GH-1057] 305 * providers/digitalocean: More lenient about 404's while waiting [GH-1062] 306 * providers/digitalocean: FQDN for domain records in CNAME, MX, NS, etc. 307 Also fixes invalid updates in plans. [GH-863] 308 * providers/google: Network data in state was not being stored. [GH-1095] 309 * providers/heroku: Fix panic when config vars block was empty. [GH-1211] 310 311 PLUGIN CHANGES: 312 313 * New `helper/schema` fields for resources: `Deprecated` and `Removed` allow 314 plugins to generate warning or error messages when a given attribute is used. 315 316 ## 0.3.7 (February 19, 2015) 317 318 IMPROVEMENTS: 319 320 * **New resources: `google_compute_forwarding_rule`, `google_compute_http_health_check`, 321 and `google_compute_target_pool`** - Together these provide network-level 322 load balancing. [GH-588] 323 * **New resource: `aws_main_route_table_association`** - Manage the main routing table 324 of a VPC. [GH-918] 325 * **New resource: `aws_vpc_peering_connection`** [GH-963] 326 * core: Formalized the syntax of interpolations and documented it 327 very heavily. 328 * core: Strings in interpolations can now contain further interpolations, 329 e.g.: `foo ${bar("${baz}")}`. 330 * provider/aws: Internet gateway supports tags [GH-720] 331 * provider/aws: Support the more standard environmental variable names 332 for access key and secret keys. [GH-851] 333 * provider/aws: The `aws_db_instance` resource no longer requires both 334 `final_snapshot_identifier` and `skip_final_snapshot`; the presence or 335 absence of the former now implies the latter. [GH-874] 336 * provider/aws: Avoid unnecessary update of `aws_subnet` when 337 `map_public_ip_on_launch` is not specified in config. [GH-898] 338 * provider/aws: Add `apply_method` to `aws_db_parameter_group` [GH-897] 339 * provider/aws: Add `storage_type` to `aws_db_instance` [GH-896] 340 * provider/aws: ELB can update listeners without requiring new. [GH-721] 341 * provider/aws: Security group support egress rules. [GH-856] 342 * provider/aws: Route table supports VPC peering connection on route. [GH-963] 343 * provider/aws: Add `root_block_device` to `aws_db_instance` [GH-998] 344 * provider/google: Remove "client secrets file", as it's no longer necessary 345 for API authentication [GH-884]. 346 * provider/google: Expose `self_link` on `google_compute_instance` [GH-906] 347 348 BUG FIXES: 349 350 * core: Fixing use of remote state with plan files. [GH-741] 351 * core: Fix a panic case when certain invalid types were used in 352 the configuration. [GH-691] 353 * core: Escape characters `\"`, `\n`, and `\\` now work in interpolations. 354 * core: Fix crash that could occur when there are exactly zero providers 355 installed on a system. [GH-786] 356 * core: JSON TF configurations can configure provisioners. [GH-807] 357 * core: Sort `depends_on` in state to prevent unnecessary file changes. [GH-928] 358 * core: State containing the zero value won't cause a diff with the 359 lack of a value. [GH-952] 360 * core: If a set type becomes empty, the state will be properly updated 361 to remove it. [GH-952] 362 * core: Bare "splat" variables are not allowed in provisioners. [GH-636] 363 * core: Invalid configuration keys to sub-resources are now errors. [GH-740] 364 * command/apply: Won't try to initialize modules in some cases when 365 no arguments are given. [GH-780] 366 * command/apply: Fix regression where user variables weren't asked [GH-736] 367 * helper/hashcode: Update `hash.String()` to always return a positive index. 368 Fixes issue where specific strings would convert to a negative index 369 and be omitted when creating Route53 records. [GH-967] 370 * provider/aws: Automatically suffix the Route53 zone name on record names. [GH-312] 371 * provider/aws: Instance should ignore root EBS devices. [GH-877] 372 * provider/aws: Fix `aws_db_instance` to not recreate each time. [GH-874] 373 * provider/aws: ASG termination policies are synced with remote state. [GH-923] 374 * provider/aws: ASG launch configuration setting can now be updated in-place. [GH-904] 375 * provider/aws: No read error when subnet is manually deleted. [GH-889] 376 * provider/aws: Tags with empty values (empty string) are properly 377 managed. [GH-968] 378 * provider/aws: Fix case where route table would delete its routes 379 on an unrelated change. [GH-990] 380 * provider/google: Fix bug preventing instances with metadata from being 381 created [GH-884]. 382 383 PLUGIN CHANGES: 384 385 * New `helper/schema` type: `TypeFloat` [GH-594] 386 * New `helper/schema` field for resources: `Exists` must point to a function 387 to check for the existence of a resource. This is used to properly 388 handle the case where the resource was manually deleted. [GH-766] 389 * There is a semantic change in `GetOk` where it will return `true` if 390 there is any value in the diff that is _non-zero_. Before, it would 391 return true only if there was a value in the diff. 392 393 ## 0.3.6 (January 6, 2015) 394 395 FEATURES: 396 397 * **New provider: `cloudstack`** 398 399 IMPROVEMENTS: 400 401 * **New resource: `aws_key_pair`** - Import a public key into AWS. [GH-695] 402 * **New resource: `heroku_cert`** - Manage Heroku app certs. 403 * provider/aws: Support `eu-central-1`, `cn-north-1`, and GovCloud. [GH-525] 404 * provider/aws: `route_table` can have tags. [GH-648] 405 * provider/google: Support Ubuntu images. [GH-724] 406 * provider/google: Support for service accounts. [GH-725] 407 408 BUG FIXES: 409 410 * core: temporary/hidden files that look like Terraform configurations 411 are no longer loaded. [GH-548] 412 * core: Set types in resources now result in deterministic states, 413 resulting in cleaner plans. [GH-663] 414 * core: fix issue where "diff was not the same" would come up with 415 diffing lists. [GH-661] 416 * core: fix crash where module inputs weren't strings, and add more 417 validation around invalid types here. [GH-624] 418 * core: fix error when using a computed module output as an input to 419 another module. [GH-659] 420 * core: map overrides in "terraform.tfvars" no longer result in a syntax 421 error. [GH-647] 422 * core: Colon character works in interpolation [GH-700] 423 * provider/aws: Fix crash case when internet gateway is not attached 424 to any VPC. [GH-664] 425 * provider/aws: `vpc_id` is no longer required. [GH-667] 426 * provider/aws: `availability_zones` on ELB will contain more than one 427 AZ if it is set as such. [GH-682] 428 * provider/aws: More fields are marked as "computed" properly, resulting 429 in more accurate diffs for AWS instances. [GH-712] 430 * provider/aws: Fix panic case by using the wrong type when setting 431 volume size for AWS instances. [GH-712] 432 * provider/aws: route table ignores routes with 'EnableVgwRoutePropagation' 433 origin since those come from gateways. [GH-722] 434 * provider/aws: Default network ACL ID and default security group ID 435 support for `aws_vpc`. [GH-704] 436 * provider/aws: Tags are not marked as computed. This introduces another 437 issue with not detecting external tags, but this will be fixed in 438 the future. [GH-730] 439 440 ## 0.3.5 (December 9, 2014) 441 442 FEATURES: 443 444 * **Remote State**: State files can now be stored remotely via HTTP, 445 Consul, or HashiCorp's Atlas. 446 * **New Provider: `atlas`**: Retrieve artifacts for deployment from 447 HashiCorp's Atlas service. 448 * New `element()` function to index into arrays 449 450 IMPROVEMENTS: 451 452 * provider/aws: Support tenancy for aws\_instance 453 * provider/aws: Support block devices for aws\_instance 454 * provider/aws: Support virtual\_name on block device 455 * provider/aws: Improve RDS reliability (more grace time) 456 * provider/aws: Added aws\_db\_parameter\_group resource 457 * provider/aws: Added tag support to aws\_subnet 458 * provider/aws: Routes in RouteTable are optional 459 * provider/aws: associate\_public\_ip\_address on aws\_launch\_configuration 460 * provider/aws: Added aws\_network\_acl 461 * provider/aws: Ingress rules in security groups are optional 462 * provider/aws: Support termination policy for ASG 463 * provider/digitalocean: Improved droplet size compatibility 464 465 BUG FIXES: 466 467 * core: Fixed issue causing double delete. [GH-555] 468 * core: Fixed issue with create-before-destroy not being respected in 469 some circumstances. 470 * core: Fixing issue with count expansion with non-homogenous instance 471 plans. 472 * core: Fix issue with referencing resource variables from resources 473 that don't exist yet within resources that do exist, or modules. 474 * core: Fixing depedency handling for modules 475 * core: Fixing output handling [GH-474] 476 * core: Fixing count interpolation in modules 477 * core: Fixing multi-var without module state 478 * core: Fixing HCL variable declaration 479 * core: Fixing resource interpolation for without state 480 * core: Fixing handling of computed maps 481 * command/init: Fixing recursion issue [GH-518] 482 * command: Validate config before requesting input [GH-602] 483 * build: Fixing GOPATHs with spaces 484 485 MISC: 486 487 * provider/aws: Upgraded to helper.Schema 488 * provider/heroku: Upgraded to helper.Schema 489 * provider/mailgun: Upgraded to helper.Schema 490 * provider/dnsimple: Upgraded to helper.Schema 491 * provider/cloudflare: Upgraded to helper.Schema 492 * provider/digitalocean: Upgraded to helper.Schema 493 * provider/google: Upgraded to helper.Schema 494 495 ## 0.3.1 (October 21, 2014) 496 497 IMPROVEMENTS: 498 499 * providers/aws: Support tags for security groups. 500 * providers/google: Add "external\_address" to network attributes [GH-454] 501 * providers/google: External address is used as default connection host. [GH-454] 502 * providers/heroku: Support `locked` and `personal` booleans on organization 503 settings. [GH-406] 504 505 BUG FIXES: 506 507 * core: Remove panic case when applying with a plan that generates no 508 new state. [GH-403] 509 * core: Fix a hang that can occur with enough resources. [GH-410] 510 * core: Config validation will not error if the field is being 511 computed so the value is still unknown. 512 * core: If a resource fails to create and has provisioners, it is 513 marked as tainted. [GH-434] 514 * core: Set types are validated to be sets. [GH-413] 515 * core: String types are validated properly. [GH-460] 516 * core: Fix crash case when destroying with tainted resources. [GH-412] 517 * core: Don't execute provisioners in some cases on destroy. 518 * core: Inherited provider configurations will be properly interpolated. [GH-418] 519 * core: Refresh works properly if there are outputs that depend on resources 520 that aren't yet created. [GH-483] 521 * providers/aws: Refresh of launch configs and autoscale groups load 522 the correct data and don't incorrectly recreate themselves. [GH-425] 523 * providers/aws: Fix case where ELB would incorrectly plan to modify 524 listeners (with the same data) in some cases. 525 * providers/aws: Retry destroying internet gateway for some amount of time 526 if there is a dependency violation since it is probably just eventual 527 consistency (public facing resources being destroyed). [GH-447] 528 * providers/aws: Retry deleting security groups for some amount of time 529 if there is a dependency violation since it is probably just eventual 530 consistency. [GH-436] 531 * providers/aws: Retry deleting subnet for some amount of time if there is a 532 dependency violation since probably asynchronous destroy events take 533 place still. [GH-449] 534 * providers/aws: Drain autoscale groups before deleting. [GH-435] 535 * providers/aws: Fix crash case if launch config is manually deleted. [GH-421] 536 * providers/aws: Disassociate EIP before destroying. 537 * providers/aws: ELB treats subnets as a set. 538 * providers/aws: Fix case where in a destroy/create tags weren't reapplied. [GH-464] 539 * providers/aws: Fix incorrect/erroneous apply cases around security group 540 rules. [GH-457] 541 * providers/consul: Fix regression where `key` param changed to `keys. [GH-475] 542 543 ## 0.3.0 (October 14, 2014) 544 545 FEATURES: 546 547 * **Modules**: Configuration can now be modularized. Modules can live on 548 GitHub, BitBucket, Git/Hg repos, HTTP URLs, and file paths. Terraform 549 automatically downloads/updates modules for you on request. 550 * **New Command: `init`**. This command initializes a Terraform configuration 551 from an existing Terraform module (also new in 0.3). 552 * **New Command: `destroy`**. This command destroys infrastructure 553 created with `apply`. 554 * Terraform will ask for user input to fill in required variables and 555 provider configurations if they aren't set. 556 * `terraform apply MODULE` can be used as a shorthand to quickly build 557 infrastructure from a module. 558 * The state file format is now JSON rather than binary. This allows for 559 easier machine and human read/write. Old binary state files will be 560 automatically upgraded. 561 * You can now specify `create_before_destroy` as an option for replacement 562 so that new resources are created before the old ones are destroyed. 563 * The `count` metaparameter can now contain interpolations (such as 564 variables). 565 * The current index for a resource with a `count` set can be interpolated 566 using `${count.index}`. 567 * Various paths can be interpolated with the `path.X` variables. For example, 568 the path to the current module can be interpolated using `${path.module}`. 569 570 IMPROVEMENTS: 571 572 * config: Trailing commas are now allowed for the final elements of lists. 573 * core: Plugins are loaded from `~/.terraform.d/plugins` (Unix) or 574 `%USERDATA%/terraform.d/plugins` (Windows). 575 * command/show: With no arguments, it will show the default state. [GH-349] 576 * helper/schema: Can now have default values. [GH-245] 577 * providers/aws: Tag support for most resources. 578 * providers/aws: New resource `db_subnet_group`. [GH-295] 579 * providers/aws: Add `map_public_ip_on_launch` for subnets. [GH-285] 580 * providers/aws: Add `iam_instance_profile` for instances. [GH-319] 581 * providers/aws: Add `internal` option for ELBs. [GH-303] 582 * providers/aws: Add `ssl_certificate_id` for ELB listeners. [GH-350] 583 * providers/aws: Add `self` option for security groups for ingress 584 rules with self as source. [GH-303] 585 * providers/aws: Add `iam_instance_profile` option to 586 `aws_launch_configuration`. [GH-371] 587 * providers/aws: Non-destructive update of `desired_capacity` for 588 autoscale groups. 589 * providers/aws: Add `main_route_table_id` attribute to VPCs. [GH-193] 590 * providers/consul: Support tokens. [GH-396] 591 * providers/google: Support `target_tags` for firewalls. [GH-324] 592 * providers/google: `google_compute_instance` supports `can_ip_forward` [GH-375] 593 * providers/google: `google_compute_disk` supports `type` to support disks 594 such as SSDs. [GH-351] 595 * provisioners/local-exec: Output from command is shown in CLI output. [GH-311] 596 * provisioners/remote-exec: Output from command is shown in CLI output. [GH-311] 597 598 BUG FIXES: 599 600 * core: Providers are validated even without a `provider` block. [GH-284] 601 * core: In the case of error, walk all non-dependent trees. 602 * core: Plugin loading from CWD works properly. 603 * core: Fix many edge cases surrounding the `count` meta-parameter. 604 * core: Strings in the configuration can escape double-quotes with the 605 standard `\"` syntax. 606 * core: Error parsing CLI config will show properly. [GH-288] 607 * core: More than one Ctrl-C will exit immediately. 608 * providers/aws: autoscaling_group can be launched into a vpc [GH-259] 609 * providers/aws: not an error when RDS instance is deleted manually. [GH-307] 610 * providers/aws: Retry deleting subnet for some time while AWS eventually 611 destroys dependencies. [GH-357] 612 * providers/aws: More robust destroy for route53 records. [GH-342] 613 * providers/aws: ELB generates much more correct plans without extranneous 614 data. 615 * providers/aws: ELB works properly with dynamically changing 616 count of instances. 617 * providers/aws: Terraform can handle ELBs deleted manually. [GH-304] 618 * providers/aws: Report errors properly if RDS fails to delete. [GH-310] 619 * providers/aws: Wait for launch configuration to exist after creation 620 (AWS eventual consistency) [GH-302] 621 622 ## 0.2.2 (September 9, 2014) 623 624 IMPROVEMENTS: 625 626 * providers/amazon: Add `ebs_optimized` flag. [GH-260] 627 * providers/digitalocean: Handle 404 on delete 628 * providers/digitalocean: Add `user_data` argument for creating droplets 629 * providers/google: Disks can be marked `auto_delete`. [GH-254] 630 631 BUG FIXES: 632 633 * core: Fix certain syntax of configuration that could cause hang. [GH-261] 634 * core: `-no-color` flag properly disables color. [GH-250] 635 * core: "~" is expanded in `-var-file` flags. [GH-273] 636 * core: Errors with tfvars are shown in console. [GH-269] 637 * core: Interpolation function calls with more than two args parse. [GH-282] 638 * providers/aws: Refreshing EIP from pre-0.2 state file won't error. [GH-258] 639 * providers/aws: Creating EIP without an instance/network won't fail. 640 * providers/aws: Refreshing EIP manually deleted works. 641 * providers/aws: Retry EIP delete to allow AWS eventual consistency to 642 detect it isn't attached. [GH-276] 643 * providers/digitalocean: Handle situations when resource was destroyed 644 manually. [GH-279] 645 * providers/digitalocean: Fix a couple scenarios where the diff was 646 incorrect (and therefore the execution as well). 647 * providers/google: Attaching a disk source (not an image) works 648 properly. [GH-254] 649 650 ## 0.2.1 (August 31, 2014) 651 652 IMPROVEMENTS: 653 654 * core: Plugins are automatically discovered in the executable directory 655 or pwd if named properly. [GH-190] 656 * providers/mailgun: domain records are now saved to state 657 658 BUG FIXES: 659 660 * core: Configuration parses when identifier and '=' have no space. [GH-243] 661 * core: `depends_on` with `count` generates the proper graph. [GH-244] 662 * core: Depending on a computed variable of a list type generates a 663 plan without failure. i.e. `${type.name.foos.0.bar}` where `foos` 664 is computed. [GH-247] 665 * providers/aws: Route53 destroys in parallel work properly. [GH-183] 666 667 ## 0.2.0 (August 28, 2014) 668 669 BACKWARDS INCOMPATIBILITIES: 670 671 * We've replaced the configuration language in use from a C library to 672 a pure-Go reimplementation. In the process, we removed some features 673 of the language since it was too flexible: 674 * Semicolons are no longer valid at the end of lines 675 * Keys cannot be double-quoted strings: `"foo" = "bar"` is no longer 676 valid. 677 * JSON style maps `{ "foo": "bar" }` are no longer valid outside of JSON. 678 Maps must be in the format of `{ foo = "bar" }` (like other objects 679 in the config) 680 * Heroku apps now require (will not validate without) `region` and 681 `name` due to an upstream API change. [GH-239] 682 683 FEATURES: 684 685 * **New Provider: `google`**: Manage Google Compute instances, disks, 686 firewalls, and more. 687 * **New Provider: `mailgun`**: Manage mailgun domains. 688 * **New Function: `concat`**: Concatenate multiple strings together. 689 Example: `concat(var.region, "-", var.channel)`. 690 691 IMPROVEMENTS: 692 693 * core: "~/.terraformrc" (Unix) or "%APPDATA%/terraform.rc" (Windows) 694 can be used to configure custom providers and provisioners. [GH-192] 695 * providers/aws: EIPs now expose `allocation_id` and `public_ip` 696 attributes. 697 * providers/aws: Security group rules can be updated without a 698 destroy/create. 699 * providers/aws: You can enable and disable dns settings for VPCs. [GH-172] 700 * providers/aws: Can specify a private IP address for `aws_instance` [GH-217] 701 702 BUG FIXES: 703 704 * core: Variables are validated to not contain interpolations. [GH-180] 705 * core: Key files for provisioning can now contain `~` and will be expanded 706 to the user's home directory. [GH-179] 707 * core: The `file()` function can load files in sub-directories. [GH-213] 708 * core: Fix issue where some JSON structures didn't map properly into 709 Terraform structures. [GH-177] 710 * core: Resources with only `file()` calls will interpolate. [GH-159] 711 * core: Variables work in block names. [GH-234] 712 * core: Plugins are searched for in the same directory as the executable 713 before the PATH. [GH-157] 714 * command/apply: "tfvars" file no longer interferes with plan apply. [GH-153] 715 * providers/aws: Fix issues around failing to read EIPs. [GH-122] 716 * providers/aws: Autoscaling groups now register and export load 717 balancers. [GH-207] 718 * providers/aws: Ingress results are treated as a set, so order doesn't 719 matter anymore. [GH-87] 720 * providers/aws: Instance security groups treated as a set [GH-194] 721 * providers/aws: Retry Route53 requests if operation failed because another 722 operation is in progress [GH-183] 723 * providers/aws: Route53 records with multiple record values work. [GH-221] 724 * providers/aws: Changing AMI doesn't result in errors anymore. [GH-196] 725 * providers/heroku: If you delete the `config_vars` block, config vars 726 are properly nuked. 727 * providers/heroku: Domains and drains are deleted before the app. 728 * providers/heroku: Moved from the client library bgentry/heroku-go to 729 cyberdelia/heroku-go [GH-239]. 730 * providers/heroku: Plans without a specific plan name for 731 heroku\_addon work. [GH-198] 732 733 PLUGIN CHANGES: 734 735 * **New Package:** `helper/schema`. This introduces a high-level framework 736 for easily writing new providers and resources. The Heroku provider has 737 been converted to this as an example. 738 739 ## 0.1.1 (August 5, 2014) 740 741 FEATURES: 742 743 * providers/heroku: Now supports creating Heroku Drains [GH-97] 744 745 IMPROVEMENTS: 746 747 * providers/aws: Launch configurations accept user data [GH-94] 748 * providers/aws: Regions are now validated [GH-96] 749 * providers/aws: ELB now supports health check configurations [GH-109] 750 751 BUG FIXES: 752 753 * core: Default variable file "terraform.tfvars" is auto-loaded. [GH-59] 754 * core: Multi-variables (`foo.*.bar`) work even when `count = 1`. [GH-115] 755 * core: `file()` function can have string literal arg [GH-145] 756 * providers/cloudflare: Include the proper bins so the cloudflare 757 provider is compiled 758 * providers/aws: Engine version for RDS now properly set [GH-118] 759 * providers/aws: Security groups now depend on each other and 760 * providers/aws: DB instances now wait for destroys, have proper 761 dependencies and allow passing skip_final_snapshot 762 * providers/aws: Add associate_public_ip_address as an attribute on 763 the aws_instance resource [GH-85] 764 * providers/aws: Fix cidr blocks being updated [GH-65, GH-85] 765 * providers/aws: Description is now required for security groups 766 * providers/digitalocean: Private IP addresses are now a separate 767 attribute 768 * provisioner/all: If an SSH key is given with a password, a better 769 error message is shown. [GH-73] 770 771 ## 0.1.0 (July 28, 2014) 772 773 * Initial release 774 775