Skip to content

build(deps): bump the terraform-minor-patch group across 3 directories with 4 updates#98

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot-terraform-infrastructure-modules-iam-terraform-minor-patch-1b4185fa0e
Open

build(deps): bump the terraform-minor-patch group across 3 directories with 4 updates#98
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot-terraform-infrastructure-modules-iam-terraform-minor-patch-1b4185fa0e

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 25, 2026

Copy link
Copy Markdown
Contributor

Bumps the terraform-minor-patch group with 2 updates in the /infrastructure/modules/iam directory: hashicorp/aws and terraform-aws-modules/iam/aws.
Bumps the terraform-minor-patch group with 2 updates in the /infrastructure/modules/lambda directory: hashicorp/aws and terraform-aws-modules/lambda/aws.
Bumps the terraform-minor-patch group with 2 updates in the /infrastructure/modules/s3-bucket directory: hashicorp/aws and terraform-aws-modules/s3-bucket/aws.

Updates hashicorp/aws from 6.50.0 to 6.51.0

Release notes

Sourced from hashicorp/aws's releases.

v6.51.0

6.51.0 (June 17, 2026)

NOTES:

  • resource/aws_cloudfront_distribution_tenant: When using managed_certificate_request, managed certificate issuance uses a fixed 3-hour timeout regardless of the configured resource timeout. This behavior will be updated in a future major version. (#47839)
  • resource/aws_dms_s3_endpoint: The kms_key_arn attribute has been deprecated. All configurations using kms_key_arn should be updated to use the server_side_encryption_kms_key_id attribute instead. (#48441)
  • resource/aws_eks_cluster: Because we cannot easily test the behavior of outpost_config, the changes are best effort and we ask for community help in testing (#48367)

FEATURES:

  • New List Resource: aws_acm_certificate (#48283)
  • New List Resource: aws_bedrockagentcore_evaluator (#47964)
  • New List Resource: aws_sagemaker_hub_content_reference (#48379)
  • New Resource: aws_bedrockagentcore_evaluator (#47964)
  • New Resource: aws_sagemaker_hub_content_reference (#48379)

ENHANCEMENTS:

  • data-source/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement attributes (#48367)
  • resource/aws_cloudfront_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_cloudfront_multitenant_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_detective_graph: Add Resource Identity support (#48383)
  • resource/aws_detective_organization_configuration: Add Resource Identity support (#48383)
  • resource/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement arguments (#48367)
  • resource/aws_eks_cluster: Change outpost_config.control_plane_placement.group_name to Optional (#48367)
  • resource/aws_elasticache_replication_group: Add durability argument (#48254)
  • resource/aws_elasticache_serverless_cache: Add network_type argument (#48371)
  • resource/aws_msk_replicator: Add Resource Identity support (#48338)
  • resource/aws_observabilityadmin_centralization_rule_for_organization: Add destination_metrics_configuration and source_metrics_configuration blocks (#48303)
  • resource/aws_opensearchserverless_collection: Add vector_options.serverless_vector_acceleration argument (#47018)

BUG FIXES:

  • resource/aws_acm_certificate: Correctly updates subject_alternative_names for Imported certificates (#48362)
  • resource/aws_acmpca_certificate_authority: Prevents hang when trying to create resources over the quota limit. (#48365)
  • resource/aws_cloudfront_distribution_tenant: Configured operation timeouts are now correctly honored, preventing potential indefinite hangs (#47839)
  • resource/aws_dms_s3_endpoint: Fix perpetual diff when kms_key_arn is set but not returned by the API for S3 engine endpoints. (#48441)
  • resource/aws_elasticache_replication_group: Fix error when adding a log_delivery_configuration with log_type = "slow-log" while simultaneously upgrading the engine from Redis 5 to Redis 6 or Valkey 7 (#46526)
  • resource/aws_kinesis_firehose_delivery_stream: Fix InvalidArgumentException errors when creating or updating extended_s3_configuration in AWS partitions that report unsupported custom_time_zone and file_extension attributes in a combined error message (#48369)
  • resource/aws_lakeformation_opt_in: Fix handling of out-of-band deletion of linked resource (#48416)
  • resource/aws_lakeformation_opt_in: Prevent crash by making the principal block required (#48416)
  • resource/aws_lakeformation_resource_lf_tag: Prevent crash when processing null tag values during read operations (#48417)
  • resource/aws_msk_replicator: Fix runtime error: index out of range [0] with length 0 panic when importing a replicator with no replication configurations (#48338)
  • resource/aws_ses_domain_mail_from: Correctly detect resources deleted outside of Terraform when refreshing state (#48387)
Changelog

Sourced from hashicorp/aws's changelog.

6.51.0 (June 17, 2026)

NOTES:

  • resource/aws_cloudfront_distribution_tenant: When using managed_certificate_request, managed certificate issuance uses a fixed 3-hour timeout regardless of the configured resource timeout. This behavior will be updated in a future major version. (#47839)
  • resource/aws_dms_s3_endpoint: The kms_key_arn attribute has been deprecated. All configurations using kms_key_arn should be updated to use the server_side_encryption_kms_key_id attribute instead. (#48441)
  • resource/aws_eks_cluster: Because we cannot easily test the behavior of outpost_config, the changes are best effort and we ask for community help in testing (#48367)

FEATURES:

  • New List Resource: aws_acm_certificate (#48283)
  • New List Resource: aws_bedrockagentcore_evaluator (#47964)
  • New List Resource: aws_sagemaker_hub_content_reference (#48379)
  • New Resource: aws_bedrockagentcore_evaluator (#47964)
  • New Resource: aws_sagemaker_hub_content_reference (#48379)

ENHANCEMENTS:

  • data-source/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement attributes (#48367)
  • resource/aws_cloudfront_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_cloudfront_multitenant_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_detective_graph: Add Resource Identity support (#48383)
  • resource/aws_detective_organization_configuration: Add Resource Identity support (#48383)
  • resource/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement arguments (#48367)
  • resource/aws_eks_cluster: Change outpost_config.control_plane_placement.group_name to Optional (#48367)
  • resource/aws_elasticache_replication_group: Add durability argument (#48254)
  • resource/aws_elasticache_serverless_cache: Add network_type argument (#48371)
  • resource/aws_msk_replicator: Add Resource Identity support (#48338)
  • resource/aws_observabilityadmin_centralization_rule_for_organization: Add destination_metrics_configuration and source_metrics_configuration blocks (#48303)
  • resource/aws_opensearchserverless_collection: Add vector_options.serverless_vector_acceleration argument (#47018)

BUG FIXES:

  • resource/aws_acm_certificate: Correctly updates subject_alternative_names for Imported certificates (#48362)
  • resource/aws_acmpca_certificate_authority: Prevents hang when trying to create resources over the quota limit. (#48365)
  • resource/aws_cloudfront_distribution_tenant: Configured operation timeouts are now correctly honored, preventing potential indefinite hangs (#47839)
  • resource/aws_dms_s3_endpoint: Fix perpetual diff when kms_key_arn is set but not returned by the API for S3 engine endpoints. (#48441)
  • resource/aws_elasticache_replication_group: Fix error when adding a log_delivery_configuration with log_type = "slow-log" while simultaneously upgrading the engine from Redis 5 to Redis 6 or Valkey 7 (#46526)
  • resource/aws_kinesis_firehose_delivery_stream: Fix InvalidArgumentException errors when creating or updating extended_s3_configuration in AWS partitions that report unsupported custom_time_zone and file_extension attributes in a combined error message (#48369)
  • resource/aws_lakeformation_opt_in: Fix handling of out-of-band deletion of linked resource (#48416)
  • resource/aws_lakeformation_opt_in: Prevent crash by making the principal block required (#48416)
  • resource/aws_lakeformation_resource_lf_tag: Prevent crash when processing null tag values during read operations (#48417)
  • resource/aws_msk_replicator: Fix runtime error: index out of range [0] with length 0 panic when importing a replicator with no replication configurations (#48338)
  • resource/aws_ses_domain_mail_from: Correctly detect resources deleted outside of Terraform when refreshing state (#48387)
Commits

Updates terraform-aws-modules/iam/aws from 6.6.0 to 6.6.1

Release notes

Sourced from terraform-aws-modules/iam/aws's releases.

v6.6.1

6.6.1 (2026-05-28)

Bug Fixes

  • Add missing ec2:DescribeSecurityGroups IPv4 VPC CNI IRSA permissions (#646) (10161bc)
Changelog

Sourced from terraform-aws-modules/iam/aws's changelog.

6.6.1 (2026-05-28)

Bug Fixes

  • Add missing ec2:DescribeSecurityGroups IPv4 VPC CNI IRSA permissions (#646) (10161bc)
Commits
  • 5b962b1 chore(release): version 6.6.1 [skip ci]
  • 10161bc fix: Add missing ec2:DescribeSecurityGroups IPv4 VPC CNI IRSA permissions (...
  • See full diff in compare view

Updates hashicorp/aws from 6.50.0 to 6.52.0

Release notes

Sourced from hashicorp/aws's releases.

v6.51.0

6.51.0 (June 17, 2026)

NOTES:

  • resource/aws_cloudfront_distribution_tenant: When using managed_certificate_request, managed certificate issuance uses a fixed 3-hour timeout regardless of the configured resource timeout. This behavior will be updated in a future major version. (#47839)
  • resource/aws_dms_s3_endpoint: The kms_key_arn attribute has been deprecated. All configurations using kms_key_arn should be updated to use the server_side_encryption_kms_key_id attribute instead. (#48441)
  • resource/aws_eks_cluster: Because we cannot easily test the behavior of outpost_config, the changes are best effort and we ask for community help in testing (#48367)

FEATURES:

  • New List Resource: aws_acm_certificate (#48283)
  • New List Resource: aws_bedrockagentcore_evaluator (#47964)
  • New List Resource: aws_sagemaker_hub_content_reference (#48379)
  • New Resource: aws_bedrockagentcore_evaluator (#47964)
  • New Resource: aws_sagemaker_hub_content_reference (#48379)

ENHANCEMENTS:

  • data-source/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement attributes (#48367)
  • resource/aws_cloudfront_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_cloudfront_multitenant_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_detective_graph: Add Resource Identity support (#48383)
  • resource/aws_detective_organization_configuration: Add Resource Identity support (#48383)
  • resource/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement arguments (#48367)
  • resource/aws_eks_cluster: Change outpost_config.control_plane_placement.group_name to Optional (#48367)
  • resource/aws_elasticache_replication_group: Add durability argument (#48254)
  • resource/aws_elasticache_serverless_cache: Add network_type argument (#48371)
  • resource/aws_msk_replicator: Add Resource Identity support (#48338)
  • resource/aws_observabilityadmin_centralization_rule_for_organization: Add destination_metrics_configuration and source_metrics_configuration blocks (#48303)
  • resource/aws_opensearchserverless_collection: Add vector_options.serverless_vector_acceleration argument (#47018)

BUG FIXES:

  • resource/aws_acm_certificate: Correctly updates subject_alternative_names for Imported certificates (#48362)
  • resource/aws_acmpca_certificate_authority: Prevents hang when trying to create resources over the quota limit. (#48365)
  • resource/aws_cloudfront_distribution_tenant: Configured operation timeouts are now correctly honored, preventing potential indefinite hangs (#47839)
  • resource/aws_dms_s3_endpoint: Fix perpetual diff when kms_key_arn is set but not returned by the API for S3 engine endpoints. (#48441)
  • resource/aws_elasticache_replication_group: Fix error when adding a log_delivery_configuration with log_type = "slow-log" while simultaneously upgrading the engine from Redis 5 to Redis 6 or Valkey 7 (#46526)
  • resource/aws_kinesis_firehose_delivery_stream: Fix InvalidArgumentException errors when creating or updating extended_s3_configuration in AWS partitions that report unsupported custom_time_zone and file_extension attributes in a combined error message (#48369)
  • resource/aws_lakeformation_opt_in: Fix handling of out-of-band deletion of linked resource (#48416)
  • resource/aws_lakeformation_opt_in: Prevent crash by making the principal block required (#48416)
  • resource/aws_lakeformation_resource_lf_tag: Prevent crash when processing null tag values during read operations (#48417)
  • resource/aws_msk_replicator: Fix runtime error: index out of range [0] with length 0 panic when importing a replicator with no replication configurations (#48338)
  • resource/aws_ses_domain_mail_from: Correctly detect resources deleted outside of Terraform when refreshing state (#48387)
Changelog

Sourced from hashicorp/aws's changelog.

6.51.0 (June 17, 2026)

NOTES:

  • resource/aws_cloudfront_distribution_tenant: When using managed_certificate_request, managed certificate issuance uses a fixed 3-hour timeout regardless of the configured resource timeout. This behavior will be updated in a future major version. (#47839)
  • resource/aws_dms_s3_endpoint: The kms_key_arn attribute has been deprecated. All configurations using kms_key_arn should be updated to use the server_side_encryption_kms_key_id attribute instead. (#48441)
  • resource/aws_eks_cluster: Because we cannot easily test the behavior of outpost_config, the changes are best effort and we ask for community help in testing (#48367)

FEATURES:

  • New List Resource: aws_acm_certificate (#48283)
  • New List Resource: aws_bedrockagentcore_evaluator (#47964)
  • New List Resource: aws_sagemaker_hub_content_reference (#48379)
  • New Resource: aws_bedrockagentcore_evaluator (#47964)
  • New Resource: aws_sagemaker_hub_content_reference (#48379)

ENHANCEMENTS:

  • data-source/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement attributes (#48367)
  • resource/aws_cloudfront_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_cloudfront_multitenant_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_detective_graph: Add Resource Identity support (#48383)
  • resource/aws_detective_organization_configuration: Add Resource Identity support (#48383)
  • resource/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement arguments (#48367)
  • resource/aws_eks_cluster: Change outpost_config.control_plane_placement.group_name to Optional (#48367)
  • resource/aws_elasticache_replication_group: Add durability argument (#48254)
  • resource/aws_elasticache_serverless_cache: Add network_type argument (#48371)
  • resource/aws_msk_replicator: Add Resource Identity support (#48338)
  • resource/aws_observabilityadmin_centralization_rule_for_organization: Add destination_metrics_configuration and source_metrics_configuration blocks (#48303)
  • resource/aws_opensearchserverless_collection: Add vector_options.serverless_vector_acceleration argument (#47018)

BUG FIXES:

  • resource/aws_acm_certificate: Correctly updates subject_alternative_names for Imported certificates (#48362)
  • resource/aws_acmpca_certificate_authority: Prevents hang when trying to create resources over the quota limit. (#48365)
  • resource/aws_cloudfront_distribution_tenant: Configured operation timeouts are now correctly honored, preventing potential indefinite hangs (#47839)
  • resource/aws_dms_s3_endpoint: Fix perpetual diff when kms_key_arn is set but not returned by the API for S3 engine endpoints. (#48441)
  • resource/aws_elasticache_replication_group: Fix error when adding a log_delivery_configuration with log_type = "slow-log" while simultaneously upgrading the engine from Redis 5 to Redis 6 or Valkey 7 (#46526)
  • resource/aws_kinesis_firehose_delivery_stream: Fix InvalidArgumentException errors when creating or updating extended_s3_configuration in AWS partitions that report unsupported custom_time_zone and file_extension attributes in a combined error message (#48369)
  • resource/aws_lakeformation_opt_in: Fix handling of out-of-band deletion of linked resource (#48416)
  • resource/aws_lakeformation_opt_in: Prevent crash by making the principal block required (#48416)
  • resource/aws_lakeformation_resource_lf_tag: Prevent crash when processing null tag values during read operations (#48417)
  • resource/aws_msk_replicator: Fix runtime error: index out of range [0] with length 0 panic when importing a replicator with no replication configurations (#48338)
  • resource/aws_ses_domain_mail_from: Correctly detect resources deleted outside of Terraform when refreshing state (#48387)
Commits

Updates hashicorp/aws from 6.50.0 to 6.52.0

Release notes

Sourced from hashicorp/aws's releases.

v6.51.0

6.51.0 (June 17, 2026)

NOTES:

  • resource/aws_cloudfront_distribution_tenant: When using managed_certificate_request, managed certificate issuance uses a fixed 3-hour timeout regardless of the configured resource timeout. This behavior will be updated in a future major version. (#47839)
  • resource/aws_dms_s3_endpoint: The kms_key_arn attribute has been deprecated. All configurations using kms_key_arn should be updated to use the server_side_encryption_kms_key_id attribute instead. (#48441)
  • resource/aws_eks_cluster: Because we cannot easily test the behavior of outpost_config, the changes are best effort and we ask for community help in testing (#48367)

FEATURES:

  • New List Resource: aws_acm_certificate (#48283)
  • New List Resource: aws_bedrockagentcore_evaluator (#47964)
  • New List Resource: aws_sagemaker_hub_content_reference (#48379)
  • New Resource: aws_bedrockagentcore_evaluator (#47964)
  • New Resource: aws_sagemaker_hub_content_reference (#48379)

ENHANCEMENTS:

  • data-source/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement attributes (#48367)
  • resource/aws_cloudfront_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_cloudfront_multitenant_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_detective_graph: Add Resource Identity support (#48383)
  • resource/aws_detective_organization_configuration: Add Resource Identity support (#48383)
  • resource/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement arguments (#48367)
  • resource/aws_eks_cluster: Change outpost_config.control_plane_placement.group_name to Optional (#48367)
  • resource/aws_elasticache_replication_group: Add durability argument (#48254)
  • resource/aws_elasticache_serverless_cache: Add network_type argument (#48371)
  • resource/aws_msk_replicator: Add Resource Identity support (#48338)
  • resource/aws_observabilityadmin_centralization_rule_for_organization: Add destination_metrics_configuration and source_metrics_configuration blocks (#48303)
  • resource/aws_opensearchserverless_collection: Add vector_options.serverless_vector_acceleration argument (#47018)

BUG FIXES:

  • resource/aws_acm_certificate: Correctly updates subject_alternative_names for Imported certificates (#48362)
  • resource/aws_acmpca_certificate_authority: Prevents hang when trying to create resources over the quota limit. (#48365)
  • resource/aws_cloudfront_distribution_tenant: Configured operation timeouts are now correctly honored, preventing potential indefinite hangs (#47839)
  • resource/aws_dms_s3_endpoint: Fix perpetual diff when kms_key_arn is set but not returned by the API for S3 engine endpoints. (#48441)
  • resource/aws_elasticache_replication_group: Fix error when adding a log_delivery_configuration with log_type = "slow-log" while simultaneously upgrading the engine from Redis 5 to Redis 6 or Valkey 7 (#46526)
  • resource/aws_kinesis_firehose_delivery_stream: Fix InvalidArgumentException errors when creating or updating extended_s3_configuration in AWS partitions that report unsupported custom_time_zone and file_extension attributes in a combined error message (#48369)
  • resource/aws_lakeformation_opt_in: Fix handling of out-of-band deletion of linked resource (#48416)
  • resource/aws_lakeformation_opt_in: Prevent crash by making the principal block required (#48416)
  • resource/aws_lakeformation_resource_lf_tag: Prevent crash when processing null tag values during read operations (#48417)
  • resource/aws_msk_replicator: Fix runtime error: index out of range [0] with length 0 panic when importing a replicator with no replication configurations (#48338)
  • resource/aws_ses_domain_mail_from: Correctly detect resources deleted outside of Terraform when refreshing state (#48387)
Changelog

Sourced from hashicorp/aws's changelog.

6.51.0 (June 17, 2026)

NOTES:

  • resource/aws_cloudfront_distribution_tenant: When using managed_certificate_request, managed certificate issuance uses a fixed 3-hour timeout regardless of the configured resource timeout. This behavior will be updated in a future major version. (#47839)
  • resource/aws_dms_s3_endpoint: The kms_key_arn attribute has been deprecated. All configurations using kms_key_arn should be updated to use the server_side_encryption_kms_key_id attribute instead. (#48441)
  • resource/aws_eks_cluster: Because we cannot easily test the behavior of outpost_config, the changes are best effort and we ask for community help in testing (#48367)

FEATURES:

  • New List Resource: aws_acm_certificate (#48283)
  • New List Resource: aws_bedrockagentcore_evaluator (#47964)
  • New List Resource: aws_sagemaker_hub_content_reference (#48379)
  • New Resource: aws_bedrockagentcore_evaluator (#47964)
  • New Resource: aws_sagemaker_hub_content_reference (#48379)

ENHANCEMENTS:

  • data-source/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement attributes (#48367)
  • resource/aws_cloudfront_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_cloudfront_multitenant_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_detective_graph: Add Resource Identity support (#48383)
  • resource/aws_detective_organization_configuration: Add Resource Identity support (#48383)
  • resource/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement arguments (#48367)
  • resource/aws_eks_cluster: Change outpost_config.control_plane_placement.group_name to Optional (#48367)
  • resource/aws_elasticache_replication_group: Add durability argument (#48254)
  • resource/aws_elasticache_serverless_cache: Add network_type argument (#48371)
  • resource/aws_msk_replicator: Add Resource Identity support (#48338)
  • resource/aws_observabilityadmin_centralization_rule_for_organization: Add destination_metrics_configuration and source_metrics_configuration blocks (#48303)
  • resource/aws_opensearchserverless_collection: Add vector_options.serverless_vector_acceleration argument (#47018)

BUG FIXES:

  • resource/aws_acm_certificate: Correctly updates subject_alternative_names for Imported certificates (#48362)
  • resource/aws_acmpca_certificate_authority: Prevents hang when trying to create resources over the quota limit. (#48365)
  • resource/aws_cloudfront_distribution_tenant: Configured operation timeouts are now correctly honored, preventing potential indefinite hangs (#47839)
  • resource/aws_dms_s3_endpoint: Fix perpetual diff when kms_key_arn is set but not returned by the API for S3 engine endpoints. (#48441)
  • resource/aws_elasticache_replication_group: Fix error when adding a log_delivery_configuration with log_type = "slow-log" while simultaneously upgrading the engine from Redis 5 to Redis 6 or Valkey 7 (#46526)
  • resource/aws_kinesis_firehose_delivery_stream: Fix InvalidArgumentException errors when creating or updating extended_s3_configuration in AWS partitions that report unsupported custom_time_zone and file_extension attributes in a combined error message (#48369)
  • resource/aws_lakeformation_opt_in: Fix handling of out-of-band deletion of linked resource (#48416)
  • resource/aws_lakeformation_opt_in: Prevent crash by making the principal block required (#48416)
  • resource/aws_lakeformation_resource_lf_tag: Prevent crash when processing null tag values during read operations (#48417)
  • resource/aws_msk_replicator: Fix runtime error: index out of range [0] with length 0 panic when importing a replicator with no replication configurations (#48338)
  • resource/aws_ses_domain_mail_from: Correctly detect resources deleted outside of Terraform when refreshing state (#48387)
Commits

Updates hashicorp/aws from 6.50.0 to 6.51.0

Release notes

Sourced from hashicorp/aws's releases.

v6.51.0

6.51.0 (June 17, 2026)

NOTES:

  • resource/aws_cloudfront_distribution_tenant: When using managed_certificate_request, managed certificate issuance uses a fixed 3-hour timeout regardless of the configured resource timeout. This behavior will be updated in a future major version. (#47839)
  • resource/aws_dms_s3_endpoint: The kms_key_arn attribute has been deprecated. All configurations using kms_key_arn should be updated to use the server_side_encryption_kms_key_id attribute instead. (#48441)
  • resource/aws_eks_cluster: Because we cannot easily test the behavior of outpost_config, the changes are best effort and we ask for community help in testing (#48367)

FEATURES:

  • New List Resource: aws_acm_certificate (#48283)
  • New List Resource: aws_bedrockagentcore_evaluator (#47964)
  • New List Resource: aws_sagemaker_hub_content_reference (#48379)
  • New Resource: aws_bedrockagentcore_evaluator (#47964)
  • New Resource: aws_sagemaker_hub_content_reference (#48379)

ENHANCEMENTS:

  • data-source/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement attributes (#48367)
  • resource/aws_cloudfront_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_cloudfront_multitenant_distribution: Add origin.custom_origin_config.origin_mtls_config argument (#46421)
  • resource/aws_detective_graph: Add Resource Identity support (#48383)
  • resource/aws_detective_organization_configuration: Add Resource Identity support (#48383)
  • resource/aws_eks_cluster: Add outpost_config.control_plane_placement.spread_level, outpost_config.etcd_instance_type, and outpost_config.etcd_placement arguments (#48367)
  • resource/aws_eks_cluster: Change outpost_config.control_plane_placement.group_name to Optional (#48367)
  • resource/aws_elasticache_replication_group: Add durability argument (#48254)
  • resource/aws_elasticache_serverless_cache: Add network_type argument (#48371)
  • resource/aws_msk_replicator: Add Resource Identity support (#48338)
  • resource/aws_observabilityadmin_centralization_rule_for_organization: Add destination_metrics_configuration and source_metrics_configuration blocks (#48303)
  • resource/aws_opensearchserverless_collection: Add vector_options.serverless_vector_acceleration argument (#47018)

BUG FIXES:

  • resource/aws_acm_certificate: Correctly updates subject_alternative_names for Imported certificates (#48362)
  • resource/aws_acmpca_certificate_authority: Prevents hang when trying to create resources over the quota limit. (#48365)
  • resource/aws_cloudfront_distribution_tenant: Configured operation timeouts are now correctly honored, preventing potential indefinite hangs (#47839)
  • resource/aws_dms_s3_endpoint: Fix perpetual diff when kms_key_arn is set but not returned by the API for S3 engine endpoints. (#48441)
  • resource/aws_elasticache_replication_group: Fix error when adding a log_delivery_configuration with log_type = "slow-log" while simultaneously upgrading the engine from Redis 5 to Redis 6 or Valkey 7 (#46526)
  • resource/aws_kinesis_firehose_delivery_stream: Fix InvalidArgumentException errors when creating or updating extended_s3_configuration in AWS partitions that report unsupported custom_time_zone and file_extension attributes in a combined error message (#48369)
  • resource/aws_lakeformation_opt_in: Fix handling of out-of-band deletion of linked resource (#48416)
  • resource/aws_lakeformation_opt_in: Prevent crash by making the principal block required (#48416)
  • resource/aws_lakeformation_resource_lf_tag: Prevent crash when processing null tag values during read operations (#48417)
  • resource/aws_msk_replicator: Fix runtime error: index out of range [0] with length 0 panic when importing a replicator with no replication configurations (#48338)
  • resource/aws_ses_domain_mail_from: Correctly detect resources deleted outside of Terraform when refreshing state (#48387)
Changelog

Sourced from hashicorp/aws's changelog.

6.51.0 (June 17, 2026)

NOTES:

  • resource/aws_cloudfront_distribution_tenant: When using manage...

    Description has been truncated

…s with 4 updates

Bumps the terraform-minor-patch group with 2 updates in the /infrastructure/modules/iam directory: [hashicorp/aws](https://github.com/hashicorp/terraform-provider-aws) and [terraform-aws-modules/iam/aws](https://github.com/terraform-aws-modules/terraform-aws-iam).
Bumps the terraform-minor-patch group with 2 updates in the /infrastructure/modules/lambda directory: [hashicorp/aws](https://github.com/hashicorp/terraform-provider-aws) and [terraform-aws-modules/lambda/aws](https://github.com/terraform-aws-modules/terraform-aws-lambda).
Bumps the terraform-minor-patch group with 2 updates in the /infrastructure/modules/s3-bucket directory: [hashicorp/aws](https://github.com/hashicorp/terraform-provider-aws) and [terraform-aws-modules/s3-bucket/aws](https://github.com/terraform-aws-modules/terraform-aws-s3-bucket).


Updates `hashicorp/aws` from 6.50.0 to 6.51.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `terraform-aws-modules/iam/aws` from 6.6.0 to 6.6.1
- [Release notes](https://github.com/terraform-aws-modules/terraform-aws-iam/releases)
- [Changelog](https://github.com/terraform-aws-modules/terraform-aws-iam/blob/master/CHANGELOG.md)
- [Commits](terraform-aws-modules/terraform-aws-iam@v6.6.0...v6.6.1)

Updates `hashicorp/aws` from 6.50.0 to 6.52.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `hashicorp/aws` from 6.50.0 to 6.52.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `hashicorp/aws` from 6.50.0 to 6.51.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `hashicorp/aws` from 6.50.0 to 6.52.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `terraform-aws-modules/lambda/aws` from 8.7.0 to 8.8.0
- [Release notes](https://github.com/terraform-aws-modules/terraform-aws-lambda/releases)
- [Changelog](https://github.com/terraform-aws-modules/terraform-aws-lambda/blob/master/CHANGELOG.md)
- [Commits](terraform-aws-modules/terraform-aws-lambda@v8.7.0...v8.8.0)

Updates `hashicorp/aws` from 6.50.0 to 6.52.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `hashicorp/aws` from 6.50.0 to 6.51.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `hashicorp/aws` from 6.50.0 to 6.52.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `hashicorp/aws` from 6.50.0 to 6.52.0
- [Release notes](https://github.com/hashicorp/terraform-provider-aws/releases)
- [Changelog](https://github.com/hashicorp/terraform-provider-aws/blob/main/CHANGELOG.md)
- [Commits](hashicorp/terraform-provider-aws@v6.50.0...v6.51.0)

Updates `terraform-aws-modules/s3-bucket/aws` from 5.13.0 to 5.14.0
- [Release notes](https://github.com/terraform-aws-modules/terraform-aws-s3-bucket/releases)
- [Changelog](https://github.com/terraform-aws-modules/terraform-aws-s3-bucket/blob/master/CHANGELOG.md)
- [Commits](terraform-aws-modules/terraform-aws-s3-bucket@v5.13.0...v5.14.0)

---
updated-dependencies:
- dependency-name: hashicorp/aws
  dependency-version: 6.51.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: terraform-aws-modules/iam/aws
  dependency-version: 6.6.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: terraform-minor-patch
- dependency-name: hashicorp/aws
  dependency-version: 6.52.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: hashicorp/aws
  dependency-version: 6.52.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: hashicorp/aws
  dependency-version: 6.51.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: hashicorp/aws
  dependency-version: 6.52.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: terraform-aws-modules/lambda/aws
  dependency-version: 8.8.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: hashicorp/aws
  dependency-version: 6.52.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: hashicorp/aws
  dependency-version: 6.51.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: hashicorp/aws
  dependency-version: 6.52.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: hashicorp/aws
  dependency-version: 6.52.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
- dependency-name: terraform-aws-modules/s3-bucket/aws
  dependency-version: 5.14.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: terraform-minor-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Jun 25, 2026
@dependabot dependabot Bot requested review from a team as code owners June 25, 2026 14:05
@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Jun 25, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants