You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
New List Resource: azurerm_web_application_firewall_policy (#31758)
ENHANCEMENTS:
dependencies: go update to 1.25.5
dependencies: go-azure-sdk - update to v0.20260212.1143955
azurerm_managed_redis - sku_name can now be updated (#31203)
azurerm_managed_redis - default_database must be specified when creating a new resource (#31724)
azurerm_point_to_site_vpn_gateway - connection_configuration.x.internet_security_enabled can now be updated (#31733)
azurerm_security_center_storage_defender - update to API version 2025-06-01 (#31759)
BUG FIXES:
azurerm_managed_redis_geo_replication - fix an issue that prevented linking 3 or more clusters (#31385)
azurerm_signalr_service - fix setting default values into state, preventing diffs on import for connectivity_logs_enabled, http_request_logs_enabled, and messaging_logs_enabled (#31566)
New Data Source: azurerm_cognitive_account_project (#31605)
New Data Source: azurerm_managed_redis_access_policy_assignment (#30980)
New Data Source: azurerm_oracle_database_system_versions (#31001)
New Resource: azurerm_api_management_workspace_named_value (#31299)
New List Resource: azurerm_cognitive_account (#31624)
New Resource: azurerm_data_factory_linked_service_sql_managed_instance (#30896)
New Resource: azurerm_managed_redis_access_policy_assignment (#30980)
New List Resource: azurerm_mysql_flexible_database, azurerm_mysql_flexible_server_firewall_rule, azurerm_mysql_flexible_server_configuration - includes addition of Identity (#31646) (#31646)
dependencies: containerinstance - update to API version 2025-09-01 (#31640)
dependencies: storagemover - update to API version 2025-07-01 (#31587)
Data Source: azurerm_container_app - add support for the read_secrets property allowing users to skip secret retrieval that may trigger authorization errors (#31199)
azurerm_application_gateway - add support for 2.2 to waf_configuration.rule_set_version (#31674)
azurerm_application_gateway - add support for MS-ThreatIntel-XSS to waf_configuration.disabled_rule_group.rule_group_name (#31674)
azurerm_express_route_port - add support for GcmAesXpn128 and GcmAesXpn256 ciphers to link*.macsec_cipher (#30240)
azurerm_postgresql_flexible_server - add support for cluster (#31315)
azurerm_web_application_firewall_policy - add support for 2.2 to managed_rules.managed_rule_set.version and managed_rules.exclusion.excluded_rule_set.version (#31674)
azurerm_web_application_firewall_policy - add support for MS-ThreatIntel-XSS to managed_rules.managed_rule_set.rule_group_override.rule_group_name and managed_rules.exclusion.excluded_rule_set.rule_group.rule_group_name (#31674)
provider: the subscription_id property can now be populated based on the az CLI (#30251)
BUG FIXES:
azurerm_express_route_port - fix an issue that caused identity to be removed when updating unrelated properties (#30240)
azurerm_federated_identity_credential - the id is now built using the resource group name segment from the parent_id preventing unexpected 404 statuses (#30860)
azurerm_kubernetes_cluster - fixed capacity_reservation_group_id loss during node pool cycling (#30654)
azurerm_monitor_aad_diagnostic_setting - add polling as a workaround to an eventual consistency issue (#31123)
list.azurerm_private_dns_zone - fix context handling resolving an issue where this list resources never returned results (#31719)
dependencies: go-azure-sdk - update to v0.20260129.1200123 (#31621)
azurerm_automation_runbook - add support for the runtime_environment_name property (#30992)
azurerm_kusto_eventgrid_data_connection - update validation for eventhub_consumer_group_name to allow $Default as input (#31551)
azurerm_linux_function_app - add support for 3.14 to site_config.application_stack.python_version (#31195)
azurerm_linux_function_app_slot - add support for 3.14 to site_config.application_stack.python_version (#31195)
azurerm_netapp_volume_group_sap_hana_resource - add support for zone, encryption_key_source, key_vault_private_endpoint_id, and network_features (#31603)
azurerm_user_assigned_identity - add support for the isolation_scope property (#31216)
BUG FIXES:
azurerm_kubernetes_cluster - thenetwork_policy property now allows updating from calico to cilium (#31627)
azurerm_logic_app_trigger_http_request - fix an issue that prevented importing existing resources due to empty trigger inputs (#31433)
azurerm_mssql_database - fix validation for min_capacity and auto_pause_delay_in_minutes (#31690)
New Data Source: azurerm_network_security_perimeter (#31356)
New Data Source: azurerm_network_security_perimeter_profile (#31356)
New Resource: azurerm_network_security_perimeter (#31356)
New Resource: azurerm_network_security_perimeter_access_rule (#31356)
New Resource: azurerm_network_security_perimeter_association (#31356)
New Resource: azurerm_network_security_perimeter_profile (#31356)
New List Resource: azurerm_resource_group (#31270)
ENHANCEMENTS:
dependencies: go-azure-sdk - update to v0.20251219.1184026 (#31397)
azurerm_backup_policy_file_share - add support for backup_tier and snapshot_retention_in_days (#29243)
azurerm_cosmosdb_cassandra_cluster - version now supports 4.1 and 5.0 (#31424)
azurerm_function_app_flex_consumption - the maximum_instance_count property now allows values from 1 - 1000 (#31392)
azurerm_kubernetes_cluster - network_data_plane and network_policy now support updating to cilium (#30958)
azurerm_kusto_eventhub_data_connection - add support for retrieval_start_date (#31445)
azurerm_kusto_iothub_data_connection - add support for retrieval_start_date (#31413)
azurerm_kusto_script - add support for script_level and principal_permissions_action (#31403)
azurerm_linux_function_app - add support for 24 to site_config.application_stack.node_version (#31098)
azurerm_linux_function_app_slot - add support for 24 to site_config.application_stack.node_version (#31098)
azurerm_linux_web_app - add support for 24-lts to site_config.application_stack.node_version (#31098)
azurerm_linux_web_app_slot - add support for 24-lts to site_config.application_stack.node_version (#31098)
azurerm_mssql_managed_instance - increase storage_size_in_gb maximum to 32768 (#31387)
azurerm_netapp_volume_group_oracle - service_level now supports Flexible (#31508)
azurerm_netapp_volume_group_sap_hana - service_level now supports Flexible (#31508)
azurerm_network_manager_routing_configuration - add support for the route_table_usage_mode property (#31463)
azurerm_windows_function_app - add support for ~24 to site_config.application_stack.node_version (#31248)
azurerm_windows_function_app_slot - add support for ~24 to site_config.application_stack.node_version (#31248)
data.azurerm_container_registry - admin_password is now sensitive (#31428)
BUG FIXES:
azurerm_api_management - fix an issue that prevented updates to hostname_configuration.*.key_vault_certificate_id (#31534)
azurerm_api_management_custom_domain - fix an issue that prevented updates to [management|portal|developer_portal|scm|gateway].key_vault_certificate_id (#31534)
azurerm_container_app_custom_domain - no longer error during read when container app is deleted outside of Terraform (#31523)
azurerm_databricks_workspace - removed a legacy workaround that prevented apply operations from succeeding when managed_disk_cmk_rotation_to_latest_version_enabled and tags were updated simultaneously (#31509)
azurerm_storage_account - can now update a Storage Standard ZRS account (#31431)
clients - fix correlation id across many clients (#31368)
dependencies: healthbot - update to API version 2025-05-25 (#31328)
dependencies: terraform-plugin-testing - update to v1.14.0 (#31334)
Data Source: azurerm_cognitive_account - add support for new attributes (#30778)
azurerm_cognitive_account - add support for the kind property to rollback or upgrade from OpenAI to AIServices (#31063)
azurerm_databricks_workspace_root_dbfs_customer_managed_key - the key_vault_key_id property now supports keys from Managed HSM Vaults (#31336)
azurerm_databricks_workspace_root_dbfs_customer_managed_key - the key_vault_key_id property now supports versionless keys (#31336)
azurerm_healthbot - add support for the C1 and PES SKUs (#31328)
azurerm_lb fix ignore_changes behaviour in updatable properties (#31318)
azurerm_network_manager_network_group - add support for the member_type property [GH-30672
azurerm_network_manager_static_member - add support for using a subnet as the target resource (#30672)
azurerm_virtual_network_gateway - add support for the ErGwScale SKU (#31082)
BUG FIXES:
azurerm_container_app_environment_certificate - fix an issue that prevented creating the resource with an empty value for certificate_password (#31335)
azurerm_databricks_workspace_root_dbfs_customer_managed_key - fix a panic that occurred when the customer managed key was removed from the workspace outside of Terraform (#31336)
azurerm_databricks_workspace_root_dbfs_customer_managed_key - fix the timeout for the delete operation (#31336)
azurerm_storage_blob_inventory_policy - fix setting Resource Identity data (#31313)
New Data Source: azurerm_api_management_workspace (#30241)
New Resource: azurerm_cognitive_account_project (#30916)
New Resource: azurerm_log_analytics_workspace_table_custom_log (#30800)
New Resource: azurerm_mongo_cluster_user (#31205)
New Resource: azurerm_palo_alto_next_generation_firewall_virtual_hub_strata_cloud_manager (#30613)
New Resource: azurerm_palo_alto_next_generation_firewall_virtual_network_strata_cloud_manager (#30613)
New List Resource: azurerm_private_dns_zone (#31157)
ENHANCEMENTS:
dependencies: containerregistry - update to API version 2025-04-01 (#30205)
dependencies: go-azure-helpers - update to v0.75.1 (#31148)
dependencies: go-azure-sdk - update to v0.20251202.1181053 (#31253)
dependencies: managedidentity - upgrade API version to 2024-11-30 (#30535)
dependencies: postgres - update to API version 2025-08-01 (#31162)
azurerm_cognitive_account - update validation for customer_managed_key.key_vault_key_id to allow managed HSM keys as input (#31147)
azurerm_container_app_environment - extend validation for workload_profile_type for additional supported SKUs (#30738)
azurerm_container_app_environment_certificate - add support for the certificate_key_vault block (#30510)
azurerm_data_factory - update validation for customer_managed_key_id to allow managed HSM keys as input (#31146)
azurerm_mongo_cluster - support for new properties customer_managed_key, data_api_mode_enabled, identity, restore, authentication_methods and storage_type (#31100)
azurerm_mysql_flexible_server - add support for MySQL version 8.4 (#31099)
azurerm_oracle_autonomous_database - the admin_password property is no longer ForceNew (#30966)
azurerm_postgresql_flexible_server - update validation for customer_managed_key.key_vault_key_id and customer_managed_key.geo_backup_key_vault_key_id to allow managed HSM keys as input (#31148)
azurerm_postgresql_flexible_server - add support for PostgreSQL version 18 (#31162)
azurerm_storage_encryption_scope - update validation for key_vault_key_id to allow managed HSM keys as input (#31145)
BUG FIXES:
Data Source: azurerm_ssh_public_key - fix normalisation for public_key to avoid removing a literal EOT from the base64 encoded content (#31249)
azurerm_data_protection_backup_vault - poll delete request for completion (#31202)
azurerm_function_app_hybrid_connection - remove validation preventing resource import when using an elastic service plan SKU (#31134)
azurerm_key_vault_key - not_before_date and expiration_date are now set into state when empty, fixing an issue where drift was not detected (#31192)
azurerm_key_vault_secret - not_before_date and expiration_date are now set into state when empty, fixing an issue where drift was not detected (#31192)
azurerm_kubernetes_cluster - fix drift on azure_policy_enabled when updating cluster (#30917)
azurerm_kubernetes_fleet_update_run - fix a nil pointer dereference to prevent panics (#31213)
azurerm_lb_nat_rule - fix an issue that prevented changing floating_ip_enabled and tcp_reset_enabled from true to false (#31244)
azurerm_lb_outbound_rule - fix an issue that prevented changing tcp_reset_enabled from true to false (#31244)
azurerm_lb_rule - fix an issue that prevented changing floating_ip_enabled and tcp_reset_enabled from true to false (#31244)
azurerm_private_endpoint - ensure Resource Identity data is set on create to avoid Missing Resource Identity After Create errors (#31246)
azurerm_resource_group - fix poller for the prevent_deletion_if_contains_resources feature, resolving an Azure eventual consistency issue (#31253)
azurerm_storage_account - ensure Resource Identity data is set on create to avoid Missing Resource Identity After Create errors (#31246)
azurerm_traffic_manager_profile - fix an issue that prevented changing traffic_view_enabled from true to false (#31066)
dependencies: go-azure-sdk - update to v0.20251107.1191907 (#31095)
Data Source: azurerm_container_app - add support for the template.cooldown_period_in_seconds and template.polling_interval_in_seconds properties (#29426)
azurerm_container_app - add support for the template.cooldown_period_in_seconds and template.polling_interval_in_seconds properties (#29426)
azurerm_linux_function_app - add support for dotnet_version10.0 (#31007)
azurerm_linux_function_app_slot - add support for dotnet_version10.0 (#31007)
azurerm_linux_web_app - add support for dotnet_version10.0 (#31007)
azurerm_linux_web_app_slot - add support for dotnet_version10.0 (#31007)
azurerm_managed_redis - add support for persistence_append_only_file_backup_frequency and persistence_redis_database_backup_frequency properties (#30964)
azurerm_resource_group - refactored from legacy SDK to use go-azure-sdk (#30616)
azurerm_service_plan - suppress casing difference on sku_name (#30907)
azurerm_storage_share_directory - Deprecate storage_share_id in favour of storage_share_url (#28457)
azurerm_storage_share_file - Deprecate storage_share_id in favour of storage_share_url (#28457)
azurerm_windows_function_app - add support for dotnet_versionv10.0 (#31007)
azurerm_windows_function_app_slot - add support for dotnet_versionv10.0 (#31007)
azurerm_windows_web_app - add support for dotnet_versionv10.0 (#31007)
azurerm_windows_web_app_slot - add support for dotnet_versionv10.0 (#31007)
BUG FIXES:
azurerm_orchestrated_virtual_machine_scale_set - Fix issue when using a specialized image (#30889)
azurerm_virtual_network - remove RO values from update to avoid issues with API payload size limitation (#30945)
azurerm_virtual_network_gateway - fix validation for policy_group.name and vpn_client_configuration.virtual_network_gateway_client_connection.policy_group_names (#30454)
New Data Source: azurerm_oracle_resource_anchor (#30823)
New Resource: azurerm_network_manager_routing_rule (#30439)
New Resource: azurerm_oracle_resource_anchor (#30823)
ENHANCEMENTS:
dependencies: dashboard - update to API version 2025-08-01 (#30972)
dependencies: go-azure-sdk - update to v0.20251024.1223440 (#30952)
dependencies: network - update to API version 2025-01-01 (#30904)
azurerm_cognitive_account - add TextAnalytics to allowed kind validation for network_acls.bypass (#30887)
azurerm_subnet_service_endpoint_storage_policy - add support for the /services/Azure/Databricks value in the definition.service_resources property (#30762)
BUG FIXES:
Data Source: azurerm_managed_redis - fix a panic caused by a nested field access on a pointer without nil checking (#30978)
New Resource: azurerm_managed_redis_geo_replication (#30060)
ENHANCEMENTS:
dependencies: go-azure-sdk update to v0.20251016.1163854 (#30883)
dependencies: oracle - update to API version 2025-09-01 (#30796)
Data Source: azurerm_container_app_environment - add support for the public_network_access property (#30817)
azurerm_container_app_environment - add support for the public_network_access property (#30817)
azurerm_mssql_job_target_group - the job_target.job_credential_id property is no longer required when database_name is not set to allow for authentication using a managed identity (#30898)
azurerm_netapp_volume_resource - support for Cross Zone Region replication through the data_protection_replication block (#30872)
azurerm_search_service - implement plan time error when local_authentication_enabled = false and authentication_failure_mode is set (#30882)
BUG FIXES:
azurerm_mssql_database - allow existing zero or null value for auto_pause_delay_in_minutes and min_capacity of non-serverless database (#30924)
New Data Source: azurerm_oracle_autonomous_database_clone_from_backup (#29633)
New Data Source: azurerm_oracle_autonomous_database_clone_from_database (#29633)
New Resource: azurerm_oracle_autonomous_database_clone_from_backup (#29633)
New Resource: azurerm_oracle_autonomous_database_clone_from_database (#29633)
ENHANCEMENTS:
dependencies: containerapps - update to API version 2025-07-01 (#30801)
dependencies: containerservice - update to API version 2025-07-01 (#30719)
dependencies: go-azure-sdk - update to v0.20251007.1195632 (#30799)
dependencies: guestconfiguration - update to API version 2024-04-05 (#30642)
dependencies: search - update to API version 2025-05-01 (#30314)
azurerm_kubernetes_cluster - add support for AzureLinux3 and Ubuntu2204 to the default_node_pool.os_sku property (#30719)
azurerm_kubernetes_cluster - add support for the ai_toolchain_operator_enabled property (#30713)
azurerm_kubernetes_cluster_node_pool - add support for AzureLinux3 and Ubuntu2204 to the os_sku property (#30719)
azurerm_linux_virtual_machine_scale_set - add support for the resilient_vm_creation_enabled and resilient_vm_deletion_enabled properties (#30204)
azurerm_network_watcher_flow_log - changing the target_resource_id property no longer forces the resource to be replaced (#30776)
azurerm_notification_hub_namespace - add support for replication_region and zone_redundancy_enabled (#30531)
azurerm_windows_virtual_machine_scale_set - add support for the resilient_vm_creation_enabled and resilient_vm_deletion_enabled properties (#30204)
BUG FIXES:
azurerm_eventhub_namespace - maximum_throughput_units can be set to 0 when auto_inflate_enabled is disabled (#30777)
azurerm_log_analytics_workspace - fix the default value for local_authentication_enabled (#30759)
azurerm_mssql_database - add validation to ensure that min_capacity and auto_pause_delay_in_minutes can only be set on serverless dbs (#30790)
azurerm_mssql_server - the azuread_administrator block now updates in place rather than being deleted/recreated (#30742)
azurerm_network_watcher_flow_log - the target_resource_id property is now included in the update request payload resolving an issue where changing it failed to recreate or update the resource (#30776)
azurerm_pim_eligible_role_assignment - improve filter used during List requests to prevent timeouts (#30705)
azurerm_postgresql_flexible_server_virtual_endpoint - fix read error when in replica set in failover state (#30789)
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
4.44.0→4.61.0Release Notes
hashicorp/terraform-provider-azurerm (azurerm)
v4.61.0Compare Source
FEATURES:
azurerm_application_gateway(#31749)azurerm_application_security_group(#31742)azurerm_firewallandazurerm_firewall_policy(#31734)azurerm_firewall_policy_rule_collection_group(#31741)azurerm_ip_group(#31740)azurerm_mssql_database(#31735)azurerm_mssql_job_agent(#31738)azurerm_mssql_server(#31650)azurerm_nat_gatway(#31764)azurerm_network_security_rule(#31748)azurerm_public_ip(#31762)azurerm_web_application_firewall_policy(#31758)ENHANCEMENTS:
goupdate to1.25.5go-azure-sdk- update tov0.20260212.1143955azurerm_managed_redis-sku_namecan now be updated (#31203)azurerm_managed_redis-default_databasemust be specified when creating a new resource (#31724)azurerm_point_to_site_vpn_gateway-connection_configuration.x.internet_security_enabledcan now be updated (#31733)azurerm_security_center_storage_defender- update to API version2025-06-01(#31759)BUG FIXES:
azurerm_managed_redis_geo_replication- fix an issue that prevented linking 3 or more clusters (#31385)azurerm_signalr_service- fix setting default values into state, preventing diffs on import forconnectivity_logs_enabled,http_request_logs_enabled, andmessaging_logs_enabled(#31566)v4.60.0Compare Source
FEATURES:
azurerm_cognitive_account_project(#31605)azurerm_managed_redis_access_policy_assignment(#30980)azurerm_oracle_database_system_versions(#31001)azurerm_api_management_workspace_named_value(#31299)azurerm_cognitive_account(#31624)azurerm_data_factory_linked_service_sql_managed_instance(#30896)azurerm_managed_redis_access_policy_assignment(#30980)azurerm_mysql_flexible_database,azurerm_mysql_flexible_server_firewall_rule,azurerm_mysql_flexible_server_configuration- includes addition of Identity (#31646) (#31646)azurerm_service_plan(#31610)ENHANCEMENTS:
containerinstance- update to API version2025-09-01(#31640)storagemover- update to API version2025-07-01(#31587)azurerm_container_app- add support for theread_secretsproperty allowing users to skip secret retrieval that may trigger authorization errors (#31199)azurerm_application_gateway- add support for2.2towaf_configuration.rule_set_version(#31674)azurerm_application_gateway- add support forMS-ThreatIntel-XSStowaf_configuration.disabled_rule_group.rule_group_name(#31674)azurerm_express_route_port- add support forGcmAesXpn128andGcmAesXpn256ciphers tolink*.macsec_cipher(#30240)azurerm_postgresql_flexible_server- add support forcluster(#31315)azurerm_web_application_firewall_policy- add support for2.2tomanaged_rules.managed_rule_set.versionandmanaged_rules.exclusion.excluded_rule_set.version(#31674)azurerm_web_application_firewall_policy- add support forMS-ThreatIntel-XSStomanaged_rules.managed_rule_set.rule_group_override.rule_group_nameandmanaged_rules.exclusion.excluded_rule_set.rule_group.rule_group_name(#31674)subscription_idproperty can now be populated based on theazCLI (#30251)BUG FIXES:
azurerm_express_route_port- fix an issue that causedidentityto be removed when updating unrelated properties (#30240)azurerm_federated_identity_credential- theidis now built using the resource group name segment from theparent_idpreventing unexpected 404 statuses (#30860)azurerm_kubernetes_cluster- fixedcapacity_reservation_group_idloss during node pool cycling (#30654)azurerm_monitor_aad_diagnostic_setting- add polling as a workaround to an eventual consistency issue (#31123)list.azurerm_private_dns_zone- fix context handling resolving an issue where this list resources never returned results (#31719)v4.59.0Compare Source
ENHANCEMENTS:
go-azure-sdk- update tov0.20260129.1200123(#31621)azurerm_automation_runbook- add support for theruntime_environment_nameproperty (#30992)azurerm_kusto_eventgrid_data_connection- update validation foreventhub_consumer_group_nameto allow$Defaultas input (#31551)azurerm_linux_function_app- add support for3.14tosite_config.application_stack.python_version(#31195)azurerm_linux_function_app_slot- add support for3.14tosite_config.application_stack.python_version(#31195)azurerm_netapp_volume_group_sap_hana_resource- add support forzone,encryption_key_source,key_vault_private_endpoint_id, andnetwork_features(#31603)azurerm_user_assigned_identity- add support for theisolation_scopeproperty (#31216)BUG FIXES:
azurerm_kubernetes_cluster- thenetwork_policyproperty now allows updating fromcalicotocilium(#31627)azurerm_logic_app_trigger_http_request- fix an issue that prevented importing existing resources due to empty trigger inputs (#31433)azurerm_mssql_database- fix validation formin_capacityandauto_pause_delay_in_minutes(#31690)v4.58.0Compare Source
FEATURES:
azurerm_network_security_perimeter(#31356)azurerm_network_security_perimeter_profile(#31356)azurerm_network_security_perimeter(#31356)azurerm_network_security_perimeter_access_rule(#31356)azurerm_network_security_perimeter_association(#31356)azurerm_network_security_perimeter_profile(#31356)azurerm_resource_group(#31270)ENHANCEMENTS:
go-azure-sdk- update tov0.20251219.1184026(#31397)azurerm_backup_policy_file_share- add support forbackup_tierandsnapshot_retention_in_days(#29243)azurerm_cosmosdb_cassandra_cluster-versionnow supports4.1and5.0(#31424)azurerm_function_app_flex_consumption- themaximum_instance_countproperty now allows values from1-1000(#31392)azurerm_kubernetes_cluster-network_data_planeandnetwork_policynow support updating tocilium(#30958)azurerm_kusto_eventhub_data_connection- add support forretrieval_start_date(#31445)azurerm_kusto_iothub_data_connection- add support forretrieval_start_date(#31413)azurerm_kusto_script- add support forscript_levelandprincipal_permissions_action(#31403)azurerm_linux_function_app- add support for24tosite_config.application_stack.node_version(#31098)azurerm_linux_function_app_slot- add support for24tosite_config.application_stack.node_version(#31098)azurerm_linux_web_app- add support for24-ltstosite_config.application_stack.node_version(#31098)azurerm_linux_web_app_slot- add support for24-ltstosite_config.application_stack.node_version(#31098)azurerm_mssql_managed_instance- increasestorage_size_in_gbmaximum to32768(#31387)azurerm_netapp_volume_group_oracle-service_levelnow supportsFlexible(#31508)azurerm_netapp_volume_group_sap_hana-service_levelnow supportsFlexible(#31508)azurerm_network_manager_routing_configuration- add support for theroute_table_usage_modeproperty (#31463)azurerm_windows_function_app- add support for~24tosite_config.application_stack.node_version(#31248)azurerm_windows_function_app_slot- add support for~24tosite_config.application_stack.node_version(#31248)data.azurerm_container_registry-admin_passwordis now sensitive (#31428)BUG FIXES:
azurerm_api_management- fix an issue that prevented updates tohostname_configuration.*.key_vault_certificate_id(#31534)azurerm_api_management_custom_domain- fix an issue that prevented updates to[management|portal|developer_portal|scm|gateway].key_vault_certificate_id(#31534)azurerm_container_app_custom_domain- no longer error during read when container app is deleted outside of Terraform (#31523)azurerm_databricks_workspace- removed a legacy workaround that prevented apply operations from succeeding whenmanaged_disk_cmk_rotation_to_latest_version_enabledandtagswere updated simultaneously (#31509)azurerm_storage_account- can now update a Storage Standard ZRS account (#31431)clients- fix correlation id across many clients (#31368)v4.57.0Compare Source
NOTE: This release removes the Mobile Network (
azurerm_mobile_network*) resources and data sources due to Azure having retired the serviceFEATURES:
azurerm_automation_runtime_environment(#30991)ENHANCEMENTS:
azurerm_data_protection_backup_vault_customer_managed_key- thekey_vault_key_idproperty now supports keys from a Managed HSM vault (#31365)azurerm_kubernetes_cluster- support for thenode_provisioning_profileblock (#30517)azurerm_log_analytics_cluster_customer_managed_key- thekey_vault_key_idproperty now supports keys from a Managed HSM vault (#31375)azurerm_mssql_database- thetransparent_data_encryption_key_vault_key_idproperty now supports keys from a Managed HSM vault (#31373)BUG FIXES:
azurerm_data_factory- fix ID parsing errors whencustomer_managed_key_identity_idis an empty string (#28621)azurerm_eventhub-partition_countcan now be updated for dedicated clusters (#30993)azurerm_linux_function_app- fix panic when deployed without all required permissions (#31344)v4.56.0Compare Source
ENHANCEMENTS:
healthbot- update to API version2025-05-25(#31328)terraform-plugin-testing- update tov1.14.0(#31334)azurerm_cognitive_account- add support for new attributes (#30778)azurerm_cognitive_account- add support for thekindproperty to rollback or upgrade fromOpenAItoAIServices(#31063)azurerm_databricks_workspace_root_dbfs_customer_managed_key- thekey_vault_key_idproperty now supports keys from Managed HSM Vaults (#31336)azurerm_databricks_workspace_root_dbfs_customer_managed_key- thekey_vault_key_idproperty now supports versionless keys (#31336)azurerm_healthbot- add support for theC1andPESSKUs (#31328)azurerm_lbfixignore_changesbehaviour in updatable properties (#31318)azurerm_network_manager_network_group- add support for themember_typeproperty [GH-30672azurerm_network_manager_static_member- add support for using a subnet as the target resource (#30672)azurerm_virtual_network_gateway- add support for theErGwScaleSKU (#31082)BUG FIXES:
azurerm_container_app_environment_certificate- fix an issue that prevented creating the resource with an empty value forcertificate_password(#31335)azurerm_databricks_workspace_root_dbfs_customer_managed_key- fix a panic that occurred when the customer managed key was removed from the workspace outside of Terraform (#31336)azurerm_databricks_workspace_root_dbfs_customer_managed_key- fix the timeout for the delete operation (#31336)azurerm_storage_blob_inventory_policy- fix setting Resource Identity data (#31313)v4.55.0Compare Source
FEATURES:
azurerm_api_management_workspace(#30241)azurerm_cognitive_account_project(#30916)azurerm_log_analytics_workspace_table_custom_log(#30800)azurerm_mongo_cluster_user(#31205)azurerm_palo_alto_next_generation_firewall_virtual_hub_strata_cloud_manager(#30613)azurerm_palo_alto_next_generation_firewall_virtual_network_strata_cloud_manager(#30613)azurerm_private_dns_zone(#31157)ENHANCEMENTS:
containerregistry- update to API version2025-04-01(#30205)go-azure-helpers- update tov0.75.1(#31148)go-azure-sdk- update tov0.20251202.1181053(#31253)managedidentity- upgrade API version to2024-11-30(#30535)postgres- update to API version2025-08-01(#31162)azurerm_cognitive_account- update validation forcustomer_managed_key.key_vault_key_idto allow managed HSM keys as input (#31147)azurerm_container_app_environment- extend validation forworkload_profile_typefor additional supported SKUs (#30738)azurerm_container_app_environment_certificate- add support for thecertificate_key_vaultblock (#30510)azurerm_data_factory- update validation forcustomer_managed_key_idto allow managed HSM keys as input (#31146)azurerm_mongo_cluster- support for new propertiescustomer_managed_key,data_api_mode_enabled,identity,restore,authentication_methodsandstorage_type(#31100)azurerm_mysql_flexible_server- add support for MySQL version8.4(#31099)azurerm_oracle_autonomous_database- theadmin_passwordproperty is no longerForceNew(#30966)azurerm_postgresql_flexible_server- update validation forcustomer_managed_key.key_vault_key_idandcustomer_managed_key.geo_backup_key_vault_key_idto allow managed HSM keys as input (#31148)azurerm_postgresql_flexible_server- add support for PostgreSQL version18(#31162)azurerm_storage_encryption_scope- update validation forkey_vault_key_idto allow managed HSM keys as input (#31145)BUG FIXES:
azurerm_ssh_public_key- fix normalisation forpublic_keyto avoid removing a literalEOTfrom the base64 encoded content (#31249)azurerm_data_protection_backup_vault- poll delete request for completion (#31202)azurerm_function_app_hybrid_connection- remove validation preventing resource import when using an elastic service plan SKU (#31134)azurerm_key_vault_key-not_before_dateandexpiration_dateare now set into state when empty, fixing an issue where drift was not detected (#31192)azurerm_key_vault_secret-not_before_dateandexpiration_dateare now set into state when empty, fixing an issue where drift was not detected (#31192)azurerm_kubernetes_cluster- fix drift onazure_policy_enabledwhen updating cluster (#30917)azurerm_kubernetes_fleet_update_run- fix a nil pointer dereference to prevent panics (#31213)azurerm_lb_nat_rule- fix an issue that prevented changingfloating_ip_enabledandtcp_reset_enabledfromtruetofalse(#31244)azurerm_lb_outbound_rule- fix an issue that prevented changingtcp_reset_enabledfromtruetofalse(#31244)azurerm_lb_rule- fix an issue that prevented changingfloating_ip_enabledandtcp_reset_enabledfromtruetofalse(#31244)azurerm_private_endpoint- ensure Resource Identity data is set on create to avoidMissing Resource Identity After Createerrors (#31246)azurerm_resource_group- fix poller for theprevent_deletion_if_contains_resourcesfeature, resolving an Azure eventual consistency issue (#31253)azurerm_storage_account- ensure Resource Identity data is set on create to avoidMissing Resource Identity After Createerrors (#31246)azurerm_traffic_manager_profile- fix an issue that prevented changingtraffic_view_enabledfromtruetofalse(#31066)v4.54.0Compare Source
FEATURES:
azurerm_cdn_front_door_cache_purge(#30765)azurerm_data_protection_backup_instance_protect(#31085)azurerm_managed_redis_databases_flush(#31132)azurerm_mssql_execute_job(#31095)azurerm_network_interface(#31012)azurerm_network_profile(#31127)azurerm_network_security_group(#31014)azurerm_route_table(#31015)ENHANCEMENTS:
go-azure-sdk- update tov0.20251107.1191907(#31095)azurerm_container_app- add support for thetemplate.cooldown_period_in_secondsandtemplate.polling_interval_in_secondsproperties (#29426)azurerm_container_app- add support for thetemplate.cooldown_period_in_secondsandtemplate.polling_interval_in_secondsproperties (#29426)azurerm_linux_function_app- add support fordotnet_version10.0(#31007)azurerm_linux_function_app_slot- add support fordotnet_version10.0(#31007)azurerm_linux_web_app- add support fordotnet_version10.0(#31007)azurerm_linux_web_app_slot- add support fordotnet_version10.0(#31007)azurerm_managed_redis- add support forpersistence_append_only_file_backup_frequencyandpersistence_redis_database_backup_frequencyproperties (#30964)azurerm_resource_group- refactored from legacy SDK to usego-azure-sdk(#30616)azurerm_service_plan- suppress casing difference onsku_name(#30907)azurerm_storage_share_directory- Deprecatestorage_share_idin favour ofstorage_share_url(#28457)azurerm_storage_share_file- Deprecatestorage_share_idin favour ofstorage_share_url(#28457)azurerm_windows_function_app- add support fordotnet_versionv10.0(#31007)azurerm_windows_function_app_slot- add support fordotnet_versionv10.0(#31007)azurerm_windows_web_app- add support fordotnet_versionv10.0(#31007)azurerm_windows_web_app_slot- add support fordotnet_versionv10.0(#31007)BUG FIXES:
azurerm_orchestrated_virtual_machine_scale_set- Fix issue when using a specialized image (#30889)azurerm_virtual_network- remove RO values from update to avoid issues with API payload size limitation (#30945)v4.53.0Compare Source
FEATURES:
azurerm_api_management_workspace_certificate(#30628)azurerm_mongo_cluster_firewall_rule(#31062)ENHANCEMENTS:
automation- update to API version2024-10-23(#30890)go-azure-sdk- update tov0.20251029.1173336(#31051)managedredis- update to API Version2025-07-01(#31051)mongocluster- update to API version2025-09-01(#30982)azurerm_api_management_backend- add support for thecircuit_breaker_ruleblock (#30471)azurerm_dynatrace_monitor- support for theYEARLYvalue in thebilling_cycleproperty (#31078)azurerm_kubernetes_cluster_node_pool- support for theundrainable_node_behaviorandmax_unavailableproperties (#30563)azurerm_managed_disk- support expanding Ultra Disks and Premium SSD v2 disk without downtime (#30593)azurerm_managed_redis- add support forpublic_network_access(#31051)azurerm_storage_table_entity- resource is now removed from state if it no longer exists in Azure (#31064)azurerm_synapse_spark_pool- add support forspark_version3.5(#30900)data.azurerm_postgresql_flexible_server- add support forzoneandhigh_availability(#31034)BUG FIXES:
azurerm_dynatrace_monitor- thephone_numberandcountryproperties are no longer Required (#31077)azurerm_dynatrace_tag_rules- thelog_rule.filtering_tagproperty is no longer required (#31065)azurerm_dynatrace_tag_rules- themetric_rule.filtering_tagproperty is no longer required (#31065)azurerm_kubernetes_cluster- fix crash in use ofazure_active_directory_role_based_access_control(#31101)azurerm_logic_app_workflow- fix inaccurate error messages (#30963)azurerm_virtual_network_gateway- fix validation forpolicy_group.nameandvpn_client_configuration.virtual_network_gateway_client_connection.policy_group_names(#30454)v4.52.0Compare Source
NOTE: This release removes the
azurerm_spatial_anchors_accountresource and data source due to Azure having retired the serviceFEATURES:
azurerm_api_management_workspace_api_version_set(#30498)ENHANCEMENTS:
Goupdated tov1.25.3(#31020)azurerm_application_gateway- add support for thebackend_http_settings.dedicated_backend_connection_enabledproperty (#31033)azurerm_application_gateway- add support for thebackend_http_settings.dedicated_backend_connection_enabledproperty (#31033)azurerm_machine_learning_datastore_blobstorage- improve validation forstorage_container_id(#31002)azurerm_machine_learning_datastore_datalake_gen2- improve validation forstorage_container_id(#31002)azurerm_windows_web_app- add support for thevirtual_network_image_pull_enabledproperty (#30920)azurerm_windows_web_app_slot- add support for thevirtual_network_image_pull_enabledproperty (#30920)BUG FIXES:
azurerm_container_registry_task- prevent a panic by adding a nil check (#31043)v4.51.0Compare Source
FEATURES:
azurerm_oracle_resource_anchor(#30823)azurerm_network_manager_routing_rule(#30439)azurerm_oracle_resource_anchor(#30823)ENHANCEMENTS:
dashboard- update to API version2025-08-01(#30972)go-azure-sdk- update tov0.20251024.1223440(#30952)network- update to API version2025-01-01(#30904)azurerm_cognitive_account- addTextAnalyticsto allowedkindvalidation fornetwork_acls.bypass(#30887)azurerm_subnet_service_endpoint_storage_policy- add support for the/services/Azure/Databricksvalue in thedefinition.service_resourcesproperty (#30762)BUG FIXES:
azurerm_managed_redis- fix a panic caused by a nested field access on a pointer without nil checking (#30978)v4.50.0Compare Source
FEATURES:
azurerm_managed_redis(#30060)azurerm_managed_redis(#30060)azurerm_managed_redis_geo_replication(#30060)ENHANCEMENTS:
go-azure-sdkupdate tov0.20251016.1163854(#30883)oracle- update to API version2025-09-01(#30796)azurerm_container_app_environment- add support for thepublic_network_accessproperty (#30817)azurerm_container_app_environment- add support for thepublic_network_accessproperty (#30817)azurerm_mssql_job_target_group- thejob_target.job_credential_idproperty is no longer required whendatabase_nameis not set to allow for authentication using a managed identity (#30898)azurerm_netapp_volume_resource- support for Cross Zone Region replication through thedata_protection_replicationblock (#30872)azurerm_search_service- implement plan time error whenlocal_authentication_enabled = falseandauthentication_failure_modeis set (#30882)BUG FIXES:
azurerm_mssql_database- allow existing zero or null value forauto_pause_delay_in_minutesandmin_capacityof non-serverless database (#30924)v4.49.0Compare Source
FEATURES:
azurerm_graph_services_account(#30697)azurerm_oracle_exascale_database_storage_vault(#30043)azurerm_api_management_workspace_policy_fragment(#30678)azurerm_oracle_exascale_database_storage_vault(#30043)ENHANCEMENTS:
azurerm_data_protection_backup_vault- add support for theidentity.identity_idsproperty (#29061)azurerm_consumption_budget_management_group- remove the maximum count validation for thenotificationblock (#29200)azurerm_consumption_budget_resource_group- remove the maximum count validation for thenotificationblock (#29200)azurerm_consumption_budget_subscription- remove the maximum count validation for thenotificationblock (#29200)azurerm_data_protection_backup_vault- add support for theidentity.identity_idsproperty (#29061)azurerm_data_protection_backup_vault- add support forUserAssignedandSystemAssigned, UserAssignedvalues to theidentity.typeproperty (#29061)azurerm_monitor_data_collection_rule- improve validation fordata_sources.*.name(#30851)azurerm_search_service- support upgrading theskubased on tier (#30842)azurerm_storage_queue- support migrating fromstorage_account_nametostorage_account_id(#30836)BUG FIXES:
azurerm_application_insights- fix an issue that causedtagsto be removed when other properties were updated (#30758)azurerm_container_registry- fix thenamelength validation to allow 50 rather than 49 (#30858)azurerm_function_app_flex_consumption- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)azurerm_linux_function_app- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)azurerm_linux_function_app_slot- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)azurerm_linux_web_app- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)azurerm_linux_web_app_slot- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)azurerm_mssql_database- fix validation formin_capacityandauto_pause_delay_in_minutesbeing set on non-serverless SKUs (#30856)azurerm_signalr_service_custom_certificate- remove unnecessary API requests and checks that could lead to a panic (#30412)azurerm_windows_function_app- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)azurerm_windows_function_app_slot- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)azurerm_windows_web_app- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)azurerm_windows_web_app_slot- theauth_settingsblock contents are now set into state whenauth_settings.enabledis set tofalse(#30781)v4.48.0Compare Source
FEATURES:
azurerm_oracle_autonomous_database_clone_from_backup(#29633)azurerm_oracle_autonomous_database_clone_from_database(#29633)azurerm_oracle_autonomous_database_clone_from_backup(#29633)azurerm_oracle_autonomous_database_clone_from_database(#29633)ENHANCEMENTS:
containerapps- update to API version2025-07-01(#30801)containerservice- update to API version2025-07-01(#30719)go-azure-sdk- update tov0.20251007.1195632(#30799)guestconfiguration- update to API version2024-04-05(#30642)search- update to API version2025-05-01(#30314)azurerm_kubernetes_cluster- add support forAzureLinux3andUbuntu2204to thedefault_node_pool.os_skuproperty (#30719)azurerm_kubernetes_cluster- add support for theai_toolchain_operator_enabledproperty (#30713)azurerm_kubernetes_cluster_node_pool- add support forAzureLinux3andUbuntu2204to theos_skuproperty (#30719)azurerm_linux_virtual_machine_scale_set- add support for theresilient_vm_creation_enabledandresilient_vm_deletion_enabledproperties (#30204)azurerm_network_watcher_flow_log- changing thetarget_resource_idproperty no longer forces the resource to be replaced (#30776)azurerm_notification_hub_namespace- add support forreplication_regionandzone_redundancy_enabled(#30531)azurerm_windows_virtual_machine_scale_set- add support for theresilient_vm_creation_enabledandresilient_vm_deletion_enabledproperties (#30204)BUG FIXES:
azurerm_eventhub_namespace-maximum_throughput_unitscan be set to0whenauto_inflate_enabledis disabled (#30777)azurerm_log_analytics_workspace- fix the default value forlocal_authentication_enabled(#30759)azurerm_mssql_database- add validation to ensure thatmin_capacityandauto_pause_delay_in_minutescan only be set on serverless dbs (#30790)azurerm_mssql_server- theazuread_administratorblock now updates in place rather than being deleted/recreated (#30742)azurerm_network_watcher_flow_log- thetarget_resource_idproperty is now included in the update request payload resolving an issue where changing it failed to recreate or update the resource (#30776)azurerm_pim_eligible_role_assignment- improve filter used during List requests to prevent timeouts (#30705)azurerm_postgresql_flexible_server_virtual_endpoint- fix read error when in replica set in failover state (#30789)v4.47.0Compare Source
FEATURES:
azurerm_api_management_workspace_policy(#30547)ENHANCEMENTS:
go-azure-sdk- update tov0.20250924.1155608(#30693)azurerm_cognitive_account- add support for valueAIServicestokindproperty ([#30423](https://redirect.github.com/hashicorp/Configuration
📅 Schedule: Branch creation - "after 7am and before 11am every weekday" in timezone Europe/London, Automerge - At any time (no schedule defined).
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.