Update Terraform aws to v6 - #5
Open
renovate[bot] wants to merge 1 commit into
Open
Conversation
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 5, 2025 08:06
b4041cd to
783cce6
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 12, 2025 23:56
783cce6 to
ac842dc
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 20, 2025 15:56
ac842dc to
1220d98
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
August 8, 2025 07:11
0231be6 to
1385f7a
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
August 15, 2025 19:49
1385f7a to
1a3fc03
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
August 23, 2025 23:45
1a3fc03 to
ccf798c
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
September 5, 2025 07:23
f248203 to
5fcfb1f
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
September 19, 2025 07:35
17fb63b to
7434205
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
October 10, 2025 03:50
5f0589c to
a6a1082
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
October 17, 2025 00:02
a6a1082 to
14bb7e1
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
October 25, 2025 04:14
14bb7e1 to
d6f19ff
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
November 1, 2025 15:38
d6f19ff to
349e063
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
November 9, 2025 07:56
349e063 to
59f2e86
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
November 21, 2025 20:14
dd68017 to
6810a2d
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
December 4, 2025 20:12
71a7045 to
ed8e422
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
December 11, 2025 16:13
e68d1e0 to
55de5e9
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
December 19, 2025 04:07
55de5e9 to
ddd301f
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
January 9, 2026 15:49
ddd301f to
27e3e59
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
January 30, 2026 12:01
a1db353 to
e0e90a9
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
February 5, 2026 08:04
e0e90a9 to
29b585c
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
February 19, 2026 12:01
4c1ad4e to
e52f6bf
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
March 8, 2026 07:51
a846e3c to
5f6401f
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
March 14, 2026 18:16
5f6401f to
b229a96
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
March 31, 2026 11:14
b229a96 to
fc34620
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
April 19, 2026 03:43
3d6aec2 to
8456119
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
May 2, 2026 07:00
1d4c173 to
b513ab6
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
May 14, 2026 08:01
f5b0051 to
eb1ce47
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
May 28, 2026 04:15
6c11138 to
3698f64
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
June 6, 2026 16:01
c9b4d80 to
e698517
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
June 12, 2026 14:53
e698517 to
1c90708
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
June 27, 2026 03:13
1fd800d to
d8ee679
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 4, 2026 03:32
d8ee679 to
a7022fc
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 16, 2026 03:50
a7022fc to
d14c869
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 25, 2026 07:06
d14c869 to
6910828
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
August 7, 2026 03:11
f6e7a6c to
9dfb530
Compare
renovate
Bot
force-pushed
the
renovate/aws-6.x
branch
from
August 16, 2026 04:11
9dfb530 to
e84c032
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
~> 5.90→~> 6.60Release Notes
hashicorp/terraform-provider-aws (aws)
v6.60.0Compare Source
FEATURES:
aws_db_parameter_group(#49418)aws_resiliencehubv2_input_source(#48327)aws_resiliencehubv2_input_source(#48327)ENHANCEMENTS:
BUG FIXES:
Missing Resource Identity After Readerrors. This fixes a regression introduced in v6.59.0 (#49470)v6.59.0Compare Source
FEATURES:
aws_rds_snapshots(#49259)aws_resiliencehubv2_policy(#48324)aws_resiliencehubv2_service(#48326)aws_resiliencehubv2_system(#48325)aws_vpclattice_service_network_service_associations(#42680)aws_backup_plan(#49329)aws_backup_selection(#49283)aws_backup_vault(#49423)aws_bedrockagentcore_gateway_rule(#48804)aws_mailmanager_ingress_point(#49322)aws_neptunegraph_private_graph_endpoint(#45929)aws_networkfirewall_container_association(#49321)aws_pinpointsmsvoicev2_resource_policy(#48771)aws_pinpointsmsvoicev2_sender_id(#46472)aws_resiliencehubv2_service(#48323)aws_resiliencehubv2_system(#48322)aws_ssm_patch_baseline(#49332)aws_bedrockagentcore_gateway_rule(#48804)aws_mailmanager_ingress_point(#49322)aws_neptunegraph_private_graph_endpoint(#45929)aws_networkfirewall_container_association(#49321)aws_pinpointsmsvoicev2_resource_policy(#48771)aws_pinpointsmsvoicev2_sender_id(#46472)aws_resiliencehubv2_service(#48323)aws_resiliencehubv2_system(#48322)ENHANCEMENTS:
kube_api_server_config,kube_controller_manager_config, andkube_scheduler_configattributes (#49420)control_plane_component_configandcontrol_plane_scaling_tiersattributes (#49421)step.aurora_provisioned_scaling_config,step.aurora_serverless_scaling_config,step.neptune_global_database_config, andstep.lambda_event_source_mapping_configarguments (#48392)report_configurationandreport_configuration.report_output.s3_configurationto a single block each (#46758)target_configuration.mcp.mcp_server.mcp_tool_schemaconfiguration block andtarget_configuration.mcp.mcp_server.resource_priorityargument (#48703)memory_actual(#49383)memory.disabled(#49334)memory.managed_memory_configuration(#49285)policy_details.parameters.exclude_data_volume_tagsargument (#45113)transit_gateway_attachment_idattribute (#49274)target_vpc_subnet_idto Optional (#49274)timeoutsvalues to30m(#49274)kube_api_server_config,kube_controller_manager_config, andkube_scheduler_configarguments (#49412)exporterconfiguration block with OpenSearch exporter support (#49346)pre_parse_text_transformationargument tobyte_match_statement,regex_match_statement,regex_pattern_set_reference_statement,size_constraint_statement,sqli_match_statement, andxss_match_statementrule statements (#49381)pre_parse_text_transformationargument tobyte_match_statement,regex_match_statement,regex_pattern_set_reference_statement,size_constraint_statement,sqli_match_statement, andxss_match_statementrule statements (#49381)BUG FIXES:
reading MQ Broker (...) shared resourceserrors when reading RabbitMQ brokers in partitions wheremq:DescribeSharedResourcesis unavailable, such as AWS GovCloud (US) (#49340)metadata_configurationrequest and response headers (#49374)CREATE_PENDING_AUTHandUPDATE_PENDING_AUTHstatuses as successful terminal states (#48703)reading MQ Broker (...) shared resourceserrors when reading RabbitMQ brokers in partitions wheremq:DescribeSharedResourcesis unavailable, such as AWS GovCloud (US) (#49340)InvalidParameterCombinationerror whenengine_versionis updated externally (#49396)UpdateDomainContactPrivacybeing incorrectly triggered whenbilling_contactchanges (#49314)namewith a leading slash and no other slashes was stripping the leading slash. (#49339)v6.58.0Compare Source
FEATURES:
aws_mailmanager_rule_set(#49257)aws_prometheus_anomaly_detector(#49139)aws_prometheus_scraper(#47466)aws_prometheus_scraper_logging_configuration(#47466)aws_resiliencehubv2_policy(#48321)aws_mailmanager_rule_set(#49257)aws_prometheus_anomaly_detector(#49139)aws_prometheus_scraper_logging_configuration(#47466)aws_resiliencehubv2_policy(#48321)ENHANCEMENTS:
stateattribute (#42150)RESERVEDas a valid value formanaged_instances_provider.instance_launch_template.capacity_option_type(#48816)local_storage_configurationattribute tomanaged_instances_provider.instance_launch_template(#47513)managed_instances_provider.instance_launch_template.capacity_reservationsargument (#48816)configuration.compaction_configurationargument (#43868)destination.cloudwatchconfiguration block for CloudWatch Metrics destination support (#49088)BUG FIXES:
BadRequestException: There is already an update in progresserrors (#49205)embed_host_domainsnot being sent to the AWS API on update, which caused a permanent plan diff when the argument was added or changed on an existing stack (#49015)bedrock_data_automation_configurationwhenparsing_strategy = "BEDROCK_DATA_AUTOMATION", a regression introduced in v6.56.0 (#49111):(colon) in thematch_value_stringandmatch_value_string_listattributes ofauthorizer_configuration.custom_jwt_authorizer.custom_claim.authorizing_claim_match_value.claim_match_value(#48437)Value Conversion Error ... Received null value, however the target type cannot handle null valueserrors (#49188)too many results: wanted 1, got 2error when creating or updating a strategy on a memory that already has another strategy of a different type (#49250)configuration.consolidation,configuration.extraction, orconfiguration.reflectionblocks are removed (#49188)sigint_rollbackfalsely rolling back healthy deployments duringwait_for_steady_state(#49077)apply_immediately = false) (#48246)InvalidInputException: StorageDescriptor is not allowederror when creating or updating ATHENA-dialect views (#49156)InvalidInputExceptionerror when creating or updating SPARK-dialect views without an explicitstorage_descriptorblock (#49156)view_definition.representationsfields (validation_connection,view_original_text,view_expanded_text) that AWS Glue does not echo back for validated ATHENA views (#49156)v6.57.1Compare Source
NOTES:
memory_execution_role_arnattribute has been deprecated. This attribute should be removed from configurations (#49140)namespacesattribute has been deprecated. All configurations usingnamespacesshould be updated to use thenamespace_templatesattribute instead (#49140)FEATURES:
aws_eks_access_policies(#49090)aws_bedrock_evaluation_job(#49044)aws_eks_access_entry(#49090)aws_eks_access_policy_association(#49121)aws_eks_node_group(#49073)aws_flow_log(#49086)aws_mailmanager_traffic_policy(#49043)aws_osis_pipeline(#49157)aws_osis_pipeline_endpoint(#44383)aws_osis_resource_policy(#44383)aws_rekognition_collection(#49135)aws_bedrock_evaluation_job(#49044)aws_cloudwatch_log_storage_tier_policy(#49076)aws_mailmanager_traffic_policy(#49043)aws_osis_pipeline_endpoint(#44383)aws_osis_resource_policy(#44383)ENHANCEMENTS:
ena_queue_countattribute tonetwork_interfacesconfiguration block (#48892)typeattribute (#46414)external_secret_rotation_metadataandexternal_secret_rotation_role_arnattributes (#46414)ipv6_cidr_block_associations. (#46918)ipv6_association_idandipv6_cidr_block. (#46918)reservations-then-balancedvalid value foravailability_zone_distribution.capacity_distribution_strategy(#48934)timeouts.updatewith a default value of30m(#49140)configuration.reflectionconfiguration block forEPISODIC_OVERRIDEstrategy type (#49140)namespace_templatesargument (#49140)reflection_configurationconfiguration block forEPISODICstrategy type (#49140)timeoutsvalues to45m(#49140)stage.action.commandsandstage.action.output_artifacts_for_compute_actionarguments to support Compute action types (#42507)stage.action.output_artifacts_for_compute_actionandstage.action.output_artifactsnow conflict (#42507)policyargument to support inline session policies (#48869)MultiRegionClustersas a value foraction.target.key(#48781)ena_queue_countargument tonetwork_interfacesconfiguration block (#48892)typeargument in support of managed external secrets (#46414)external_secret_rotation_metadataandexternal_secret_rotation_role_arnarguments in support of managed external secrets (#46414)BUG FIXES:
warm_throughputvalues (#49032)v6.57.0Compare Source
v6.56.0Compare Source
FEATURES:
aws_elasticache_apply_service_update(#48963)aws_elasticache_service_update_actions(#48958)aws_s3_buckets(#48965)aws_eks_addon(#49067)aws_s3_bucket_notification(#48974)aws_secretsmanager_secret_policy(#49058)ENHANCEMENTS:
warm_pool_configattribute (#48977)bootstrap_brokers_ipv6,bootstrap_brokers_sasl_iam_ipv6,bootstrap_brokers_sasl_scram_ipv6, andbootstrap_brokers_tls_ipv6attributes to expose IPv6 bootstrap broker URLs (#48975)iam_federation_optionsblock (#48495)iam_identity_center_optionsblock (#48495)TF_AWS_WEB_IDENTITY_TOKENenvironment variable. Any value configured viaassume_role_with_web_identity.web_identity_tokentakes precedence (#48736)instance_lifecycle_policyconfiguration block (#48973)data_source_configuration.managed_knowledge_base_connector_configurationblock (#48904)timeouts.updatewith a default value of30m(#48904)vector_knowledge_base_configuration.bedrock_embedding_model_configuration.audioandvector_knowledge_base_configuration.bedrock_embedding_model_configuration.videoconfiguration blocks (#48538)type = "MANAGED") withmanaged_knowledge_base_configurationblock (#48904)@source.logas a valid value foremit_system_fields(#48956)warm_pool_configconfiguration block (#48977)tag_field_specificationconfiguration block (#48913)AI_PROTECTIONandAI_ANALYSTfeature names (#48972)AI_PROTECTIONandAI_ANALYSTfeature names (#48972)bootstrap_brokers_ipv6,bootstrap_brokers_sasl_iam_ipv6,bootstrap_brokers_sasl_scram_ipv6, andbootstrap_brokers_tls_ipv6attributes to expose IPv6 bootstrap broker URLs (#48975)iam_federation_optionsconfiguration block (#48495)iam_identity_center_optionsconfiguration block (#48495)metadata.iceberg.propertiesargument (#48635)BUG FIXES:
assume_role_with_web_identity.0.web_identity_token,assume_role_with_web_identity.0.web_identity_token_filemust be specified" errors, allowing anyAWS_WEB_IDENTITY_TOKEN_FILEenvironment variable value to be used (#48736)FAILEDstate (#48904)AccessDeniedExceptionerror when deleting (#48516)data_read_cache_configuration.sizewhensizing_modeisPROPORTIONAL_TO_THROUGHPUT_CAPACITYandsizeis not specified (#49023)shared_resourcesdiffs for ActiveMQ brokers (#48962)ConflictException: Configuration ID [...] is in useerrors on delete (#48962)Cannot create already existing endpointerror when retrying creation. (#48966)v6.55.0Compare Source
6.55.0 (July 15, 2026)
FEATURES:
aws_elasticache_service_updates(#44608)aws_autoscaling_group(#48928)aws_cloudwatch_log_stream(#48878)aws_kinesis_firehose_delivery_stream(#48946)aws_network_interface(#48887)aws_rds_cluster(#48948)aws_sfn_state_machine(#48840)ENHANCEMENTS:
updated_atattribute (#48881)allowed_workload_configuration,private_endpoint, andprivate_endpoint_overridesconfiguration blocks toauthorizer_configuration.custom_jwt_authorizer, and the read-onlyrequire_service_s3_endpointattribute tonetwork_configuration.network_mode_config(#48654)allowed_workload_configuration,private_endpoint, andprivate_endpoint_overridesconfiguration blocks toauthorizer_configuration.custom_jwt_authorizer(#48654)allowed_workload_configuration,private_endpoint, andprivate_endpoint_overridesconfiguration blocks toauthorizer_configuration.custom_jwt_authorizer(#48654)require_service_s3_endpointargument tonetwork_configuration.network_mode_config(#48654)allowed_workload_configuration,private_endpoint, andprivate_endpoint_overridesconfiguration blocks toauthorizer_configuration.custom_jwt_authorizer(#48654)consumer_group_offset_sync_modeattribute toconsumer_group_replicationblock (#47670)BUG FIXES:
Unsupported Typeerrors when nomemoryis configured (#48654)interface conversion: interface {} is nil, not *configservice.DescribeOrganizationConfigRuleStatusesOutputpanics on delete (#48845)v6.54.0Compare Source
NOTES:
capacity_reservation_config, it is best effort and we ask for community help in testing (#45926)FEATURES:
aws_route53profiles_profile(#48780)aws_bedrockagentcore_browser_profile(#46862)aws_codepipeline(#48808)aws_lambda_function_scaling_config(#48229)aws_scheduler_schedule(#48828)aws_ssoadmin_region(#48126)aws_workspaces_pool(#42678)aws_bedrockagentcore_browser_profile(#46862)aws_lambda_function_scaling_config(#48229)aws_ssoadmin_region(#48126)aws_workspaces_pool(#42678)ENHANCEMENTS:
host_kernel_overrideargument (#48777)resource_share_arnsandshared_resourcesattributes (#48729)tagsandtags_allattributes (#48458)host_kernelargument to theenvironmentconfiguration block (#48777)use_resource_timeout_for_propagationargument (#46405)10mforcreateandupdate,5mfordelete. (#46405)use_resource_timeout_for_propagationargument (#46405)5mforcreate,read, anddelete. (#46405)resource_share_arnsargument andshared_resourcesattribute (#48729)out_of_order_time_window_in_secondsandrule_query_offset_in_secondsarguments (#48659)auto_minor_version_upgradeargument (#42472)production_variants.capacity_reservation_configandshadow_production_variants.capacity_reservation_configconfiguration blocks (#45926)BUG FIXES:
content_policy_configblock. (#48772)topic_policy_configblock. (#48772)content_policy_config.filters_config.input_modalitiesvalues. (#48772)content_policy_config.filters_config.output_modalitiesvalues. (#48772)etagon Import. (#48782)etagwhen onlytagsupdated. (#48782)UnsupportedOperationExceptionerror when readingenable_directory_data_accessin regions where Directory Service Data is not available (e.g. GovCloud) (#47660)v6.53.0Compare Source
BREAKING CHANGES:
opt_out_list_nameandtwo_way_channel_enabledin favor of AWS server-side defaults (Defaultandfalserespectively). Configurations that omit these attributes will now show(known after apply)on first plan instead of the previous static value; the post-apply state is unchanged. This change mitigates persistent drift when the phone number is managed by anaws_pinpointsmsvoicev2_pool. (#48414)NOTES:
bedrock-agentcorenamespace to theagent-registrynamespace. Theaws_bedrockagentcore_browserresource will continue to work until September 17, 2026 (#48693)bedrock-agentcorenamespace to theagent-registrynamespace. Theaws_bedrockagentcore_browserresource will continue to work until September 17, 2026 (#48693)aws_ecs_cluster_capacity_providers, add areplace_triggered_bylifecycle rule to the association so the old capacity provider is detached before it is deleted (#48156)FEATURES:
aws_bedrock_foundation_model_agreement_offers(#47665)aws_bedrock_use_case_for_model_access(#47665)aws_ec2_capacity_block_reservation(#48185)aws_pinpointsmsvoicev2_pool(#48414)aws_bedrock_foundation_model_agreement(#47665)aws_bedrock_use_case_for_model_access(#47665)aws_pinpointsmsvoicev2_pool(#48414)ENHANCEMENTS:
security_policyandendpoint_access_modeattributes (#47973)customer_action_statusattribute (#48536)security_policyandendpoint_access_modearguments (#47973)browser_signing,certificate, andenterprise_policyconfiguration blocks (#47816)certificateargument (#47817)rule_definition(#48679)rule_stateto Optional and Computed (#48679)resource_arnandtemplate_name(#48679)customer_action_statusattribute (#48536)force_disassociateargument (#48414)idin favor ofarn(#48636)idin favor ofarn(#48636)idin favor ofarn(#48636)BUG FIXES:
authorization_tokenas sensitive (#48577)resource_arn,tagsandtemplate_nameasForceNew(#48679)importblock orterraform import(#47590)InvalidActionerrors in partitions where access key cleanup operations are not supported ([#48473](https://redConfiguration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.