Releases: hashicorp/terraform-provider-google-beta
v6.14.0
FEATURES:
- New Resource:
google_network_security_intercept_deployment_group(#8859) - New Resource:
google_network_security_intercept_deployment(#8876) - New Resource:
google_network_security_authz_policy(#8847) - New Resource:
google_network_services_authz_extension(#8847)
IMPROVEMENTS:
- compute:
google_compute_instanceis no longer recreated when changingboot_disk.auto_delete(#8837) - compute: added
CA_ENTERPRISE_ANNUALoption for fieldcloud_armor_tieringoogle_compute_project_cloud_armor_tierresource (#8848) - compute: added
network_tierfield togoogle_compute_global_forwarding_ruleresource (#8838) - compute: made
metadata_startup_scriptable to be updated via graceful switch ingoogle_compute_instance(#8888) - firebasehosting: added
headersfield ingoogle_firebase_hosting_versionresource (beta) (#8887) - identityplatform: marked
quota.0.sign_up_quota_configsubfields conditionally required ingoogle_identity_platform_configto move errors from apply time up to plan time, and clarified the rule in documentation (#8869) - networkconnectivity: added support for updating
linked_vpn_tunnels.include_import_ranges,linked_interconnect_attachments.include_import_ranges,linked_router_appliance_instances. instancesandlinked_router_appliance_instances.include_import_rangesingoogle_network_connectivity_spoke(#8883) - orgpolicy: added
parametersfields togoogle_org_policy_policyresource (beta) (#8881) - storage: added
hdfs_data_sourcefield togoogle_storage_transfer_jobresource (#8839) - tpuv2: added
network_configsandnetwork_config.queue_countfields togoogle_tpu_v2_vmresource (#8865)
BUG FIXES:
- accesscontextmanager: fixed an update bug in
google_access_context_manager_perimeterby removing the broken output-onlyetagfield ingoogle_access_context_manager_perimeterandgoogle_access_context_manager_perimeters(#8891) - compute: fixed permadiff on the
recaptcha_optionsfield forgoogle_compute_security_policyresource (#8861) - compute: fixed issue where updating labels on
resource_google_compute_resource_policywould fail because of a patch error withguest_flush(#8874) - networkconnectivity: fixed
linked_router_appliance_instances.instances.virtual_machineandlinked_router_appliance_instances.instances.ip_addressattributes ingoogle_network_connectivity_spoketo be correctly marked as required. Otherwise the request to create the resource will fail. (#8883) - privateca: fixed an issue which causes error when updating labels for activated sub-CA (#8872)
- sql: fixed permadiff when 'settings.data_cache_config' is set to false for 'google_sql_database_instance' resource (#8889)
v6.13.0
NOTES:
- New ephemeral resources
google_service_account_access_token,google_service_account_id_token,google_service_account_jwt,google_service_account_keynow support ephemeral values.
DEPRECATIONS: - gkehub: deprecated
configmanagement.config_sync.metrics_gcp_service_account_emailingoogle_gke_hub_feature_membershipresource (#8827)
FEATURES:
- New Ephemeral Resource:
google_service_account_access_token(#20542) - New Ephemeral Resource:
google_service_account_id_token(#20542) - New Ephemeral Resource:
google_service_account_jwt(#20542) - New Ephemeral Resource:
google_service_account_key(#20542) - New Data Source:
google_backup_dr_backup_vault(#8775) - New Data Source:
google_backup_dr_backup(#8762) - New Resource:
google_gemini_code_repository_index(#8781) - New Resource:
google_gemini_repository_group_iam_binding(#8824) - New Resource:
google_gemini_repository_group_iam_member(#8824) - New Resource:
google_gemini_repository_group_iam_policy(#8824) - New Resource:
google_gemini_repository_group(#8824) - New Resource:
google_iam_projects_policy_binding(#8756) - New Resource:
google_network_security_mirroring_deployment(#8791) - New Resource:
google_network_security_mirroring_deployment_group(#8791) - New Resource:
google_network_security_mirroring_endpoint_group_association(#8791) - New Resource:
google_network_security_mirroring_endpoint_group(#8791) - New Resource:
google_tpu_v2_queued_resource(#8760)
IMPROVEMENTS:
-
accesscontextmanager: added
etagtogoogle_access_context_manager_service_perimeterandgoogle_access_context_manager_service_perimeters(#8767) -
alloydb: increased default timeout on
google_alloydb_clusterto 120m from 30m (#8820) -
bigtable: added
row_affinityfield togoogle_bigtable_app_profileresource (#8753) -
cloudbuild: added
private_service_connectfield togoogle_cloudbuild_worker_poolresource (#8827) -
clouddeploy: added
associated_entitiesfield togoogle_clouddeploy_targetresource (#8827) -
clouddeploy: added
serial_pipeline.strategy.canary.runtime_config.kubernetes.gateway_service_mesh.route_destinationsfield togoogle_clouddeploy_delivery_pipelineresource (#8827) -
cloudidentity: added
create_timefield togoogle_cloud_identity_group_membershipdata source (#8711) -
compute:
google_compute_instance,google_compute_instance_template,google_compute_region_instance_templatenow supportsadvanced_machine_features.enable_uefi_networkingfield (#8805) -
compute: added
MRDMAandIRDMAoptions to the settingnic_typein thegoogle_compute_instanceandgoogle_compute_instance_templateresources (#8706) -
compute:
google_compute_instance,google_compute_instance_templateandgoogle_compute_region_instance_templatenow supportadvanced_machine_features.performance_monitoring_unit(#8710) -
compute: added support for specifying storage pool with name or partial url (#8794)
-
compute: added
numeric_idto thegoogle_compute_networkdata source (#8821) -
compute: added
threshold_configsfield togoogle_compute_security_policyresource (#8818) -
compute: added server generated id as
forwarding_rule_idtogoogle_compute_global_forwarding_rule(#8736) -
compute: added server generated id as
health_check_idtogoogle_region_health_check(#8736) -
compute: added server generated id as
instance_group_manager_idtogoogle_instance_group_manager(#8736) -
compute: added server generated id as
instance_group_manager_idtogoogle_region_instance_group_manager(#8736) -
compute: added server generated id as
network_endpoint_idtogoogle_region_network_endpoint(#8736) -
compute: added server generated id as
subnetwork_idtogoogle_subnetwork(#8736) -
compute: added the
psc_datafield to thegoogle_compute_region_network_endpoint_groupresource (#8766) -
container: added
enterprise_configfield togoogle_container_clusterresource (#8808) -
container: added
node_pool_autoconfig.linux_node_config.cgroup_modefield togoogle_container_clusterresource (#8771) -
dataproc: added
autotuning_configandcohortfields togoogle_dataproc_batch(#8740) -
dataproc: added
cluster_config.preemptible_worker_config.instance_flexibility_policy.provisioning_model_mixfield togoogle_dataproc_clusterresource (#8732) -
dataproc: added
confidential_instance_configfield togoogle_dataproc_clusterresource (#8790) -
discoveryengine: added
HEALTHCARE_FHIRtoindustry_verticalfield ingoogle_discovery_engine_search_engine(#8778) -
gkehub: added
configmanagement.config_sync.stop_syncingfield togoogle_gke_hub_feature_membershipresource (#8827) -
monitoring: added
disable_metric_validationfield togoogle_monitoring_alert_policyresource (#8817) -
oracledatabase: added
deletion_protectionfield togoogle_oracle_database_autonomous_database(#8787) -
oracledatabase: added
deletion_protectionfield togoogle_oracle_database_cloud_exadata_infrastructure(#8788) -
oracledatabase: added
deletion_protectionfield togoogle_oracle_database_cloud_vm_cluster(#8730) -
parallelstore: added
deployment_typetogoogle_parallelstore_instance(#8769) -
redis: added the
cross_cluster_replication_configfield to thegoogle_redis_clusterresource (#8721) -
resourcemanager: made
google_service_accountemailandmemberfields available during plan (#8799)
BUG FIXES:
v6.12.0
FEATURES:
- New Data Source:
google_access_context_manager_access_policy(#8676) - New Data Source:
google_backup_dr_data_source(#8641) - New Resource:
google_dataproc_gdc_spark_application(#8662) - New Resource:
google_iam_folders_policy_binding(#8677) - New Resource:
google_iam_organizations_policy_binding(#8679)
IMPROVEMENTS:
- artifactregistry: added
common_repositoryfield togoogle_artifact_registry_repositoryresource (#8681) - backupdr: added
access_restrictionfield togoogle_backup_dr_backup_vaultresource (beta) (#8656) - cloudrunv2: added
urlsoutput field togoogle_cloud_run_v2_serviceresource (#8686) - compute: added
IDPFas a possible value for thenetwork_interface.nic_typefield ingoogle_compute_instanceresource (#8664) - compute: added
IDPFas a possible value for theguest_os_features.typefield ingoogle_compute_imageresource (#8664) - compute: added
replica_namesfield tosql_database_instanceresource (#8637) - filestore: added
performance_configfield togoogle_filestore_instanceresource (#8647) - redis: added
persistence_configtogoogle_redis_cluster. (#8643) - securesourcemanager: added
workforce_identity_federation_configfield togoogle_secure_source_manager_instanceresource (#8670) - spanner: added
default_backup_schedule_typefield togoogle_spanner_instance(#8644) - sql: added
psc_auto_connectionsfields togoogle_sql_database_instanceresource (#8682)
BUG FIXES:
- accesscontextmanager: fixed permadiff in perimeter
google_access_context_manager_service_perimeter_ingress_policyandgoogle_access_context_manager_service_perimeter_egress_policyresources when there are duplicate resources in the rules (#8675) - accesscontextmanager: fixed comparison of
identity_typeiningress_fromandegress_fromwhen theIDENTITY_TYPE_UNSPECIFIEDis set (#8648) - compute: fixed permadiff on attempted
typefield updates ingoogle_computer_security_policy, updating this field will now force recreation of the resource (#8689) - identityplatform: fixed perma-diff in
google_identity_platform_config(#8663)
v6.11.2
v6.11.1
v6.11.0
NOTES:
- compute: migrated
google_compute_firewall_policy_rulefrom DCL engine to MMv1 engine. (#8604)
BREAKING CHANGES:
- looker: made
oauth_configa required field ingoogle_looker_instance, as creating this resource without that field always triggers an API error (#8633)
DEPRECATIONS:
- backupdr: deprecated
force_deleteongoogle_backup_dr_backup_vault. Useignore_inactive_datasourcesinstead (#8616)
FEATURES:
- New Data Source:
google_backup_dr_backup_plan_association(#8632) - New Data Source:
google_backup_dr_backup_plan(#8603) - New Data Source:
google_spanner_database(#8568) - New Resource:
google_apigee_api(#8567) - New Resource:
google_backup_dr_backup_plan_association(#8632) - New Resource:
google_backup_dr_backup_plan(#8603) - New Resource:
google_compute_region_resize_request(#8588) - New Resource:
google_dataproc_gdc_application_environment(#8609) - New Resource:
google_dataproc_gdc_service_instance(#8591) - New Resource:
google_iam_principal_access_boundary_policy(#8634) - New Resource:
google_network_management_vpc_flow_logs_config(#8623)
IMPROVEMENTS:
- apigee: added in-place update support for
google_apigee_env_references(#8621) - apigee: added in-place update support for
google_apigee_environmentresource (#8627) - backupdr: added
ignore_inactive_datasourcesandignore_backup_plan_referencesfields togoogle_backup_dr_backup_vaultresource (#8616) - bigquery: added
external_catalog_dataset_optionsfields togoogle_bigquery_datasetresource (#8558) - cloudrunv2: added
gcs.mount_optionstogoogle_cloud_run_v2_serviceandgoogle_cloud_run_v2_job(#8613) - compute: added
rulesproperty togoogle_compute_region_security_policyresource (#8574) - compute: added
disksfield togoogle_compute_node_templateresource (#8620) - compute: added
replica_namesfield tosql_database_instanceresource (#8637) - compute: added new field
instance_flexibility_policyto resourcegoogle_compute_region_instance_group_manager(#8581) - compute: increased
google_compute_security_policytimeouts from 20 minutes to 30 minutes (#8589) - container: added
control_plane_endpoints_configfield togoogle_container_clusterresource. (#8630) - container: added
parallelstore_csi_driver_configfield togoogle_container_clusterresource. (#8607) - container: added
user_managed_keys_configfield togoogle_container_clusterresource. (#8562) - firestore: allowed single field indexes to support
__name__ DESCindexes ingoogle_firestore_indexresources (#8576) - privateca: added support for sub-CA to be activated into STAGED state (#8560)
- spanner: added
default_backup_schedule_typefield togoogle_spanner_instance(#8644) - vertexai: added
traffic_split,private_service_connect_config,predict_request_response_logging_config,dedicated_endpoint_enabled, anddedicated_endpoint_dnsfields togoogle_vertex_ai_endpointresource (#8619) - workflows: added
deletion_protectionfield togoogle_workflows_workflowresource (#8563)
BUG FIXES:
- compute: fixed a diff based on server-side reordering of
match.src_address_groupsandmatch.dest_address_groupsingoogle_compute_network_firewall_policy_rule(#8592) - compute: fixed permadiff on the
preconfigured_waf_configfield forgoogle_compute_security_policyresource (#8622) - container: fixed in-place updates for
node_config.containerd_configingoogle_container_clusterandgoogle_container_node_pool(#8566)
v5.45.0
NOTES:
- 5.45.0 is a backport release, responding to a new Spanner feature that may result in creation of unwanted backups for users. The changes in this release will be available in 6.11.0 and users upgrading to 6.X should upgrade to that version or higher.
IMPROVEMENTS:
- spanner: added
default_backup_schedule_typefield togoogle_spanner_instance(#8644)
v6.10.0
FEATURES:
- New Data Source:
google_compute_instance_guest_attributes(#8556) - New Data Source:
google_service_accounts(#8532) - New Resource:
google_iap_settings(#8548)
IMPROVEMENTS:
- apphub: added
GLOBALenum value toscope.typefield ingoogle_apphub_applicationresource (#8504) - assuredworkloads: added
workload_optionsfield togoogle_assured_workloads_workloadresource (#8495) - backupdr: marked
networksfield optional ingoogle_backup_dr_management_serverresource (#8594) - bigquery: added
external_catalog_dataset_optionsfields togoogle_bigquery_datasetresource (beta) (#8558) - bigquery: added descriptive validation errors for missing required fields in
google_bigquery_jobdestination table configuration (#8542) - compute:
desired_statuson google_compute_instance can now be set toTERMINATEDorSUSPENDEDon instance creation (#8515) - compute: added
header_actionandredirect_optionsfields togoogle_compute_security_policy_ruleresource (#8544) - compute: added
interface.ipv6-addressfield ingoogle_compute_external_vpn_gatewayresource (#8552) - compute: added plan-time validation to
nameongoogle_compute_instance(#8520) - compute: added support for
advanced_machine_features.turbo_modetogoogle_compute_instance,google_compute_instance_template, andgoogle_compute_region_instance_template(#8551) - container: added in-place update support for
labels,resource_manager_tagsandworkload_metadata_configingoogle_container_cluster.node_config(#8522) - memorystore: added
modeflag togoogle_memorystore_instance(#8498) - resourcemanager: added
disabledtogoogle_service_accountdatasource (#8518) - spanner: added
asymmetric_autoscaling_optionsfield togoogle_spanner_instance(#8503) - sql: removed the client-side default of
ENTERPRISEforeditioningoogle_sql_database_instanceso thateditionis determined by the API when unset. This will cause new instances to useENTERPRISE_PLUSas the default for POSTGRES_16. (#8490) - vmwareengine: added
autoscaling_settingstogoogle_vmwareengine_private_cloudresource (#8529)
BUG FIXES:
- accesscontextmanager: fixed permadiff for perimeter ingress / egress rule resources (#8526)
- compute: fixed an error in
google_compute_region_security_policy_rulethat prevented updating the default rule (#8535) - compute: fixed an error in
google_compute_security_policy_rulethat prevented updating the default rule (#8535) - container: fixed missing in-place updates for some
google_container_cluster.node_configsubfields (#8522)
v6.9.0
DEPRECATIONS:
- containerattached: deprecated
security_posture_configfield ingoogle_container_attached_clusterresource (#8446)
FEATURES:
- New Data Source:
google_oracle_database_autonomous_database(#8440) - New Data Source:
google_oracle_database_autonomous_databases(#8438) - New Data Source:
google_oracle_database_cloud_exadata_infrastructures(#8430) - New Data Source:
google_oracle_database_cloud_vm_clusters(#8437) - New Resource:
google_apigee_app_group(#8451) - New Resource:
google_apigee_developer(#8445) - New Resource:
google_network_connectivity_group(#8439)
IMPROVEMENTS:
- compute:
google_compute_network_firewall_policy_associationnow uses MMv1 engine instead of DCL. (#8489) - compute:
google_compute_region_network_firewall_policy_associationnow uses MMv1 engine instead of DCL. (#8489) - compute: added
creation_timestampfield togoogle_compute_instance,google_compute_instance_template,google_compute_region_instance_template(#8442) - compute: added
key_revocation_action_typetogoogle_compute_instanceand related resources (#8473) - looker: added
deletion_policytogoogle_looker_instanceto allow force-destroying instances with nested resources by settingdeletion_policy = FORCE(#8453) - monitoring: added
alert_strategy.notification_promptsfield togoogle_monitoring_alert_policy(#8457) - storage: added
hierarchical_namespacetogoogle_storage_bucketresource (#8428) - sql: removed the client-side default of
ENTERPRISEforeditioningoogle_sql_database_instanceso thateditionis determined by the API when unset. This will cause new instances to useENTERPRISE_PLUSas the default for POSTGRES_16. (#8490) - vmwareengine: added
autoscaling_settingstogoogle_vmwareengine_clusterresource (#8477) - workstations: added
max_usable_workstationsfield togoogle_workstations_workstation_configresource. (#8421)
BUG FIXES:
- compute: fixed an issue where immutable
distribution_zoneswas incorrectly sent to the API when updatingdistribution_policy_target_shapeingoogle_compute_region_instance_group_managerresource (#8470) - container: fixed a crash in
google_container_node_poolcaused by an occasional nil pointer (#8452) - essentialcontacts: fixed
google_essential_contacts_contactimport to include required parent field. (#8423) - sql: made
google_sql_database_instance.0.settings.0.data_cache_configaccept server-side changes when unset. When unset, no diffs will be created when instances change ineditionand the feature is enabled or disabled as a result. (#8485) - storage: removed retry on 404s during refresh for
google_storage_bucket, preventing hanging when refreshing deleted buckets (#8478)
v6.8.0
FEATURES:
- New Data Source:
google_oracle_database_cloud_exadata_infrastructure(#8407) - New Data Source:
google_oracle_database_cloud_vm_cluster(#8410) - New Data Source:
google_oracle_database_db_nodes(#8420) - New Data Source:
google_oracle_database_db_servers(#8389) - New Resource:
google_oracle_database_autonomous_database(#8411) - New Resource:
google_oracle_database_cloud_exadata_infrastructure(#8371) - New Resource:
google_oracle_database_cloud_vm_cluster(#8397) - New Resource:
google_transcoder_job_template(#8406) - New Resource:
google_transcoder_job(#8406)
IMPROVEMENTS:
- cloudfunctions: increased the timeouts to 20 minutes for
google_cloudfunctions_functionresource (#8372) - cloudrunv2: added
invoker_iam_disabledfield togoogle_cloud_run_v2_service(#8395) - compute: made
google_compute_network_firewall_policy_ruleuse MMv1 engine instead of DCL. (#8412) - compute: made
google_compute_region_network_firewall_policy_ruleuse MMv1 engine instead of DCL. (#8412) - compute: added
ip_address_selection_policyfield togoogle_compute_backend_serviceandgoogle_compute_region_backend_service. (#8413) - compute: added
provisioned_throughputfield togoogle_compute_instance_templateresource (#8405) - compute: added
provisioned_throughputfield togoogle_compute_region_instance_templateresource (#8405) - container:
google_container_clusterwill now accept server-specified values fornode_pool_auto_config.0.node_kubelet_configwhen it is not defined in configuration and will not detect drift. Note that this means that removing the value from configuration will now preserve old settings instead of reverting the old settings. (#8385) - container: added support for additional values
KCP_CONNECTION, andKCP_SSHDingoogle_container_cluster.logging_config(#8381) - dialogflowcx: added
advanced_settings.logging_settingsandadvanced_settings.speech_settingstogoogle_dialogflow_cx_agentandgoogle_dialogflow_cx_flow(#8374) - networkconnectivity: added
linked_producer_vpc_networkfield togoogle_network_connectivity_spokeresource (#8376) - secretmanager: added
is_secret_data_base64field togoogle_secret_manager_secret_versionandgoogle_secret_manager_secret_version_accessdatasources (#8394) - secretmanager: added
is_secret_data_base64field togoogle_secret_manager_regional_secret_versionandgoogle_secret_manager_regional_secret_version_accessdatasources (#8394) - spanner: added
kms_key_namestoencryption_configingoogle_spanner_database(#8403) - workstations: added
max_usable_workstationsfield togoogle_workstations_workstation_configresource (#8421) - workstations: added field
allowed_portstogoogle_workstations_workstation_config(#8402)
BUG FIXES:
- bigquery: fixed a regression that caused
google_bigquery_dataset_iam_*resources to attempt to set deleted IAM members, thereby triggering an API error (#8408) - compute: fixed an issue in
google_compute_backend_serviceandgoogle_compute_region_backend_serviceto allow sendingfalseforiap.enabled(#8369) - container:
node_config.linux_node_config,node_config.workload_metadata_configandnode_config.kubelet_configwill now successfully send empty messages to the API whenterraform planindicates they are being removed, rather than null, which caused an error. The sole reliable case isnode_config.linux_node_configwhen the block is removed, where there will still be a permadiff, but the update request that's triggered will no longer error and other changes displayed in the plan should go through. (#8400)