Update Terraform aws to v6.61.0 - #102
Open
citygeo-bot[bot] wants to merge 1 commit into
Open
Conversation
Terraform plan output for
|
Terraform plan output for
|
Terraform plan output for
|
Terraform plan output for
|
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
February 18, 2026 21:20
a9f0d04 to
24d16cd
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
February 25, 2026 23:16
24d16cd to
f4d34da
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
March 4, 2026 21:16
f4d34da to
01ef5e0
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
March 5, 2026 20:03
01ef5e0 to
7ff32eb
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
March 11, 2026 20:17
7ff32eb to
8b5e532
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
March 18, 2026 21:19
8b5e532 to
295cc11
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
March 25, 2026 21:19
295cc11 to
f8c719a
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
April 1, 2026 21:23
f8c719a to
7d863e5
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
April 8, 2026 23:21
7d863e5 to
c887cd6
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
April 15, 2026 20:26
c887cd6 to
efa6249
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
April 23, 2026 16:46
179f158 to
e1f205b
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
2 times, most recently
from
June 17, 2026 21:20
ece1ad9 to
e6aadfc
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
June 24, 2026 19:08
e6aadfc to
fc11612
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 1, 2026 17:20
fc11612 to
ebb01b4
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 8, 2026 20:35
ebb01b4 to
31ae749
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 15, 2026 18:32
31ae749 to
dfcf528
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 22, 2026 22:27
dfcf528 to
5f04c8f
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 29, 2026 11:49
5f04c8f to
77f486f
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 29, 2026 15:42
77f486f to
8171516
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
July 29, 2026 20:26
8171516 to
956d254
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
August 5, 2026 14:53
956d254 to
7042104
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
August 12, 2026 19:28
7042104 to
449a475
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
August 13, 2026 19:27
449a475 to
87f27f9
Compare
citygeo-bot
Bot
force-pushed
the
renovate/aws-6.x
branch
from
August 19, 2026 22:09
87f27f9 to
94871e6
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
6.31.0→6.61.0Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Release Notes
hashicorp/terraform-provider-aws (aws)
v6.61.0Compare Source
FEATURES:
aws_odb_iam_role_association(#46794)aws_ec2_ami_launch_permission(#49461)aws_iam_instance_profile(#49576)aws_lambdacore_network_connector(#49387)aws_mailmanager_relay(#49394)aws_resiliencehubv2_assertion(#48329)aws_resiliencehubv2_service_function(#48328)aws_resiliencehubv2_user_journey(#48330)aws_dsql_cluster_policy(#47748)aws_lambdacore_network_connector(#49387)aws_lambdamicrovms_image(#48950)aws_mailmanager_relay(#49394)aws_odb_iam_role_association(#46794)aws_resiliencehubv2_assertion(#48329)aws_resiliencehubv2_service_function(#48328)aws_resiliencehubv2_user_journey(#48330)aws_securityhub_feature_v2(#49503)ENHANCEMENTS:
network_typeattribute (#49512)network_typeattribute (#49514)condition.source_ip.ip_address_typeattribute (#49476)associated_systemattribute (#49498)idle_timeout_secondsattribute (#49540)environment_actual(#48815)network_typeargument (#49512)network_typeargument (#49513)network_typeargument (#49514)condition.source_ip.ip_address_typeargument (#49476)condition.source_ip.valuesto Optional (#49476)encryption_scopeargument to thelogs_encryption_configurationconfiguration block (#49563)statusattribute (#49485)wait_for_activeargument to allowcreateandupdateto return without waiting for the phone number to reachACTIVEstatus. Number types gated on carrier or registration approval (for exampleTEN_DLC,TOLL_FREE, or any number submitted withregistration_id) can remainPENDINGfor days to weeks, which previously causedterraform applyto time out (#49485)associated_systemconfiguration block (#49498)idle_timeout_secondsargument (#49540)BUG FIXES:
Provider produced inconsistent result after applyerror forenvironment(#48815)FAILEDas a pending state while an ingress point is deleting (#49502)secondary_private_ip_address_countin-place for private NAT gateways (#47477)couldn't find resource (21 retries)errors on delete if enrichment has never been started in the Region (#49502)NOT_STARTEDas a target state while the resource is deleting (#49502)v6.60.0Compare Source
FEATURES:
aws_db_parameter_group(#49418)aws_resiliencehubv2_input_source(#48327)aws_resiliencehubv2_input_source(#48327)ENHANCEMENTS:
BUG FIXES:
Missing Resource Identity After Readerrors. This fixes a regression introduced in v6.59.0 (#49470)v6.59.0Compare Source
FEATURES:
aws_rds_snapshots(#49259)aws_resiliencehubv2_policy(#48324)aws_resiliencehubv2_service(#48326)aws_resiliencehubv2_system(#48325)aws_vpclattice_service_network_service_associations(#42680)aws_backup_plan(#49329)aws_backup_selection(#49283)aws_backup_vault(#49423)aws_bedrockagentcore_gateway_rule(#48804)aws_mailmanager_ingress_point(#49322)aws_neptunegraph_private_graph_endpoint(#45929)aws_networkfirewall_container_association(#49321)aws_pinpointsmsvoicev2_resource_policy(#48771)aws_pinpointsmsvoicev2_sender_id(#46472)aws_resiliencehubv2_service(#48323)aws_resiliencehubv2_system(#48322)aws_ssm_patch_baseline(#49332)aws_bedrockagentcore_gateway_rule(#48804)aws_mailmanager_ingress_point(#49322)aws_neptunegraph_private_graph_endpoint(#45929)aws_networkfirewall_container_association(#49321)aws_pinpointsmsvoicev2_resource_policy(#48771)aws_pinpointsmsvoicev2_sender_id(#46472)aws_resiliencehubv2_service(#48323)aws_resiliencehubv2_system(#48322)ENHANCEMENTS:
kube_api_server_config,kube_controller_manager_config, andkube_scheduler_configattributes (#49420)control_plane_component_configandcontrol_plane_scaling_tiersattributes (#49421)step.aurora_provisioned_scaling_config,step.aurora_serverless_scaling_config,step.neptune_global_database_config, andstep.lambda_event_source_mapping_configarguments (#48392)report_configurationandreport_configuration.report_output.s3_configurationto a single block each (#46758)target_configuration.mcp.mcp_server.mcp_tool_schemaconfiguration block andtarget_configuration.mcp.mcp_server.resource_priorityargument (#48703)memory_actual(#49383)memory.disabled(#49334)memory.managed_memory_configuration(#49285)policy_details.parameters.exclude_data_volume_tagsargument (#45113)transit_gateway_attachment_idattribute (#49274)target_vpc_subnet_idto Optional (#49274)timeoutsvalues to30m(#49274)kube_api_server_config,kube_controller_manager_config, andkube_scheduler_configarguments (#49412)exporterconfiguration block with OpenSearch exporter support (#49346)pre_parse_text_transformationargument tobyte_match_statement,regex_match_statement,regex_pattern_set_reference_statement,size_constraint_statement,sqli_match_statement, andxss_match_statementrule statements (#49381)pre_parse_text_transformationargument tobyte_match_statement,regex_match_statement,regex_pattern_set_reference_statement,size_constraint_statement,sqli_match_statement, andxss_match_statementrule statements (#49381)BUG FIXES:
reading MQ Broker (...) shared resourceserrors when reading RabbitMQ brokers in partitions wheremq:DescribeSharedResourcesis unavailable, such as AWS GovCloud (US) (#49340)metadata_configurationrequest and response headers (#49374)CREATE_PENDING_AUTHandUPDATE_PENDING_AUTHstatuses as successful terminal states (#48703)reading MQ Broker (...) shared resourceserrors when reading RabbitMQ brokers in partitions wheremq:DescribeSharedResourcesis unavailable, such as AWS GovCloud (US) (#49340)InvalidParameterCombinationerror whenengine_versionis updated externally (#49396)UpdateDomainContactPrivacybeing incorrectly triggered whenbilling_contactchanges (#49314)namewith a leading slash and no other slashes was stripping the leading slash. (#49339)v6.58.0Compare Source
FEATURES:
aws_mailmanager_rule_set(#49257)aws_prometheus_anomaly_detector(#49139)aws_prometheus_scraper(#47466)aws_prometheus_scraper_logging_configuration(#47466)aws_resiliencehubv2_policy(#48321)aws_mailmanager_rule_set(#49257)aws_prometheus_anomaly_detector(#49139)aws_prometheus_scraper_logging_configuration(#47466)aws_resiliencehubv2_policy(#48321)ENHANCEMENTS:
stateattribute (#42150)RESERVEDas a valid value formanaged_instances_provider.instance_launch_template.capacity_option_type(#48816)local_storage_configurationattribute tomanaged_instances_provider.instance_launch_template(#47513)managed_instances_provider.instance_launch_template.capacity_reservationsargument (#48816)configuration.compaction_configurationargument (#43868)destination.cloudwatchconfiguration block for CloudWatch Metrics destination support (#49088)BUG FIXES:
BadRequestException: There is already an update in progresserrors (#49205)embed_host_domainsnot being sent to the AWS API on update, which caused a permanent plan diff when the argument was added or changed on an existing stack (#49015)bedrock_data_automation_configurationwhenparsing_strategy = "BEDROCK_DATA_AUTOMATION", a regression introduced in v6.56.0 (#49111):(colon) in thematch_value_stringandmatch_value_string_listattributes ofauthorizer_configuration.custom_jwt_authorizer.custom_claim.authorizing_claim_match_value.claim_match_value(#48437)Value Conversion Error ... Received null value, however the target type cannot handle null valueserrors (#49188)too many results: wanted 1, got 2error when creating or updating a strategy on a memory that already has another strategy of a different type (#49250)configuration.consolidation,configuration.extraction, orconfiguration.reflectionblocks are removed (#49188)sigint_rollbackfalsely rolling back healthy deployments duringwait_for_steady_state(#49077)apply_immediately = false) (#48246)InvalidInputException: StorageDescriptor is not allowederror when creating or updating ATHENA-dialect views (#49156)InvalidInputExceptionerror when creating or updating SPARK-dialect views without an explicitstorage_descriptorblock (#49156)view_definition.representationsfields (validation_connection,view_original_text,view_expanded_text) that AWS Glue does not echo back for validated ATHENA views (#49156)v6.57.1Compare Source
NOTES:
memory_execution_role_arnattribute has been deprecated. Use thememory_execution_role_arnattribute on theaws_bedrockagentcore_memoryresource instead (#49140)namespacesattribute has been deprecated. All configurations usingnamespacesshould be updated to use thenamespace_templatesattribute instead (#49140)FEATURES:
aws_eks_access_policies(#49090)aws_bedrock_evaluation_job(#49044)aws_eks_access_entry(#49090)aws_eks_access_policy_association(#49121)aws_eks_node_group(#49073)aws_flow_log(#49086)aws_mailmanager_traffic_policy(#49043)aws_osis_pipeline(#49157)aws_osis_pipeline_endpoint(#44383)aws_osis_resource_policy(#44383)aws_rekognition_collection(#49135)aws_bedrock_evaluation_job(#49044)aws_cloudwatch_log_storage_tier_policy(#49076)aws_mailmanager_traffic_policy(#49043)aws_osis_pipeline_endpoint(#44383)aws_osis_resource_policy(#44383)ENHANCEMENTS:
ena_queue_countattribute tonetwork_interfacesconfiguration block (#48892)typeattribute (#46414)external_secret_rotation_metadataandexternal_secret_rotation_role_arnattributes (#46414)ipv6_cidr_block_associations. (#46918)ipv6_association_idandipv6_cidr_block. (#46918)reservations-then-balancedvalid value foravailability_zone_distribution.capacity_distribution_strategy(#48934)timeouts.updatewith a default value of30m(#49140)configuration.reflectionconfiguration block forEPISODIC_OVERRIDEstrategy type (#49140)namespace_templatesargument (#49140)reflection_configurationconfiguration block forEPISODICstrategy type (#49140)timeoutsvalues to45m(#49140)stage.action.commandsandstage.action.output_artifacts_for_compute_actionarguments to support Compute action types (#42507)stage.action.output_artifacts_for_compute_actionandstage.action.output_artifactsnow conflict (#42507)policyargument to support inline session policies (#48869)MultiRegionClustersas a value foraction.target.key(#48781)ena_queue_countargument tonetwork_interfacesconfiguration block (#48892)typeargument in support of managed external secrets (#46414)external_secret_rotation_metadataandexternal_secret_rotation_role_arnarguments in support of managed external secrets (#46414)BUG FIXES:
warm_throughputvalues (#49032)v6.56.0Compare Source
FEATURES:
aws_elasticache_apply_service_update(#48963)aws_elasticache_service_update_actions(#48958)aws_s3_buckets(#48965)aws_eks_addon(#49067)aws_s3_bucket_notification(#48974)aws_secretsmanager_secret_policy(#49058)ENHANCEMENTS:
warm_pool_configattribute (#48977)bootstrap_brokers_ipv6,bootstrap_brokers_sasl_iam_ipv6,bootstrap_brokers_sasl_scram_ipv6, andbootstrap_brokers_tls_ipv6attributes to expose IPv6 bootstrap broker URLs (#48975)iam_federation_optionsblock (#48495)iam_identity_center_optionsblock (#48495)TF_AWS_WEB_IDENTITY_TOKENenvironment variable. Any value configured viaassume_role_with_web_identity.web_identity_tokentakes precedence (#48736)instance_lifecycle_policyconfiguration block (#48973)data_source_configuration.managed_knowledge_base_connector_configurationblock (#48904)timeouts.updatewith a default value of30m(#48904)vector_knowledge_base_configuration.bedrock_embedding_model_configuration.audioandvector_knowledge_base_configuration.bedrock_embedding_model_configuration.videoconfiguration blocks (#48538)type = "MANAGED") withmanaged_knowledge_base_configurationblock (#48904)@source.logas a valid value foremit_system_fields(#48956)warm_pool_configconfiguration block (#48977)tag_field_specificationconfiguration block (#48913)AI_PROTECTIONandAI_ANALYSTfeature names (#48972)AI_PROTECTIONandAI_ANALYSTfeature names (#48972)bootstrap_brokers_ipv6,bootstrap_brokers_sasl_iam_ipv6,bootstrap_brokers_sasl_scram_ipv6, andbootstrap_brokers_tls_ipv6attributes to expose IPv6 bootstrap broker URLs (#48975)iam_federation_optionsconfiguration block (#48495)iam_identity_center_optionsconfiguration block (#48495)metadata.iceberg.propertiesargument (#48635)BUG FIXES:
assume_role_with_web_identity.0.web_identity_token,assume_role_with_web_identity.0.web_identity_token_filemust be specified" errors, allowing anyAWS_WEB_IDENTITY_TOKEN_FILEenvironment variable value to be used (#48736)FAILEDstate (#48904)AccessDeniedExceptionerror when deleting (#48516)data_read_cache_configuration.sizewhensizing_modeisPROPORTIONAL_TO_THROUGHPUT_CAPACITYandsizeis not specified (#49023)shared_resourcesdiffs for ActiveMQ brokers (#48962)ConflictException: Configuration ID [...] is in useerrors on delete (#48962)Cannot create already existing endpointerror when retrying creation. (#48966)v6.55.0Compare Source
FEATURES:
aws_elasticache_service_updates(#44608)aws_autoscaling_group(#48928)aws_cloudwatch_log_stream(#48878)aws_kinesis_firehose_delivery_stream(#48946)aws_network_interface(#48887)aws_rds_cluster(#48948)aws_sfn_state_machine(#48840)ENHANCEMENTS:
updated_atattribute (#48881)allowed_workload_configuration,private_endpoint, andprivate_endpoint_overridesconfiguration blocks toauthorizer_configuration.custom_jwt_authorizer, and the read-onlyrequire_service_s3_endpointattribute tonetwork_configuration.network_mode_config(#48654)allowed_workload_configuration,private_endpoint, andprivate_endpoint_overridesconfiguration blocks toauthorizer_configuration.custom_jwt_authorizer(#48654)allowed_workload_configuration,private_endpoint, andprivate_endpoint_overridesconfiguration blocks toauthorizer_configuration.custom_jwt_authorizer(#48654)require_service_s3_endpointargument tonetwork_configuration.network_mode_config(#48654)allowed_workload_configuration,private_endpoint, andprivate_endpoint_overridesconfiguration blocks toauthorizer_configuration.custom_jwt_authorizer(#48654)consumer_group_offset_sync_modeattribute toconsumer_group_replicationblock (#47670)BUG FIXES:
Unsupported Typeerrors when nomemoryis configured (#48654)interface conversion: interface {} is nil, not *configservice.DescribeOrganizationConfigRuleStatusesOutputpanics on delete (#48845)v6.54.0Compare Source
NOTES:
capacity_reservation_config, it is best effort and we ask for community help in testing (#45926)FEATURES:
aws_route53profiles_profile(#48780)aws_bedrockagentcore_browser_profile(#46862)aws_codepipeline(#48808)aws_lambda_function_scaling_config(#48229)aws_scheduler_schedule(#48828)aws_ssoadmin_region(#48126)aws_workspaces_pool(#42678)aws_bedrockagentcore_browser_profile(#46862)aws_lambda_function_scaling_config(#48229)aws_ssoadmin_region(#48126)aws_workspaces_pool(#42678)ENHANCEMENTS:
host_kernel_overrideargument (#48777)resource_share_arnsandshared_resourcesattributes (#48729)tagsandtags_allattributes (#48458)host_kernelargument to theenvironmentconfiguration block (#48777)use_resource_timeout_for_propagationargument (#46405)10mforcreateandupdate,5mfordelete. (#46405)use_resource_timeout_for_propagationargument (#46405)5mforcreate,read, anddelete. (#46405)resource_share_arnsargument andshared_resourcesattribute (#48729)out_of_order_time_window_in_secondsandrule_query_offset_in_secondsarguments (#48659)auto_minor_version_upgradeargument (#42472)production_variants.capacity_reservation_configandshadow_production_variants.capacity_reservation_configconfiguration blocks (#45926)BUG FIXES:
content_policy_configblock. (#48772)topic_policy_configblock. (#48772)content_policy_config.filters_config.input_modalitiesvalues. (#48772)content_policy_config.filters_config.output_modalitiesvalues. (#48772)etagon Import. (#48782)etagwhen onlytagsupdated. ([#̴Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate CLI.