Releases: cloudflare/terraform-provider-cloudflare
v4.52.0
Note
This is the last regular release in the 4.x line. 4.x is no longer under active development.
ENHANCEMENTS:
- resource/cloudflare_waiting_room: add support for Turnstile fields (#4952)
- resource/cloudflare_zero_trust_gateway_policy: allow configuring isolate rules with BISO admin control V2 settings (#4962)
- resource/snippets-rules: make terraform consistent with the API and do not require "enabled" and "description" fields
- resource/snippets: use list instead of set
- resource/cloud_connector_rules: use list instead of set (#4787)
BUG FIXES:
- resource/cloudflare_device_posture_integration: fix bug where
custom_s2s
andtanium_s2s
was not included in the type validation for s2s posture integrations. (#4933)
DEPENDENCIES:
v5.0.0
Warning
v5.x
of this provider is a ground-up rewrite of the SDK, using code generation from our OpenAPI spec.
There are backwards incompatible changes which are documented and outlined in the migration guide
however, we offer codemods to assist as well as the manual steps if you prefer.
Note
v4.x will no longer be in active development per our support policy and all feature
development and improvements will land in v5.x.
Migration guide (including changelog)
https://registry.terraform.io/providers/cloudflare/cloudflare/latest/docs/guides/version-5-upgrade
v4.51.0
NOTES:
- resource/cloudflare_ruleset: remove deprecated
http_request_sbfm
phase (#4860)
ENHANCEMENTS:
- resource/cloudflare_access_application: add private destination fields to access application (#4892)
- resource/cloudflare_zero_trust_gateway_policy: allow configuring resolver rules with internal DNS (#4918)
BUG FIXES:
- resource/cloudflare_api_shield_operation: fixed a bug when using variable names other than
var1 ... varN
in endpoint definitions causing these resources to be recreated when nothing has changed.
If this affects you, after upgrading to this version, the resource has to be recreated once more to fix the state, after which the bug is fixed. (#4894) - resource/cloudflare_teams_location: Fix import failures on teams locations (#4859)
- resource/cloudflare_zero_trust_device_posture_rule: Fix 'last_seen' not being written to the state file (#4855)
INTERNAL:
- resource/cloudflare_api_shield_operation: migrated to the
terraform-plugin-framework
. (#4894)
DEPENDENCIES:
v5.0.0-rc1
v5.0.0-rc1
v4.50.0
ENHANCEMENTS:
- cloudflare_teams_location: support endpoints + BYOIPv6 + DNS IPv4 destinations (#4805)
- resource/cloudflare_zone_settings_override: Add support for
aegis
(#4820) - resource/cloudflare_zone_settings_override: add support for
ssl_automatic_mode
(#4465)
BUG FIXES:
- resource/cloudflare_access_application: Fix access application saas apps attributes crashing provider when no changes were made to those (#4843)
DEPENDENCIES:
v4.49.1
Functionally the same as v4.49.0 but retagged to fix the Terraform Registry having a bad checksum due to a failed build asset being used.
v4.49.0
- resource/cloudflare_teams_location: remove unusable
policy_ids
attribute (#4817)
FEATURES:
- New Resource:
cloudflare_content_scanning_expression
(#4734) - New Resource:
cloudflare_content_scanning
(#4719)
ENHANCEMENTS:
- resource/access_application: support multi-valued + Access service token authentication for SCIM provisioning to Access applications (#4743)
BUG FIXES:
- resource/cloudflare_ruleset: handle when
disable_stale_while_updating
is an empty object but not nil (#4814)
DEPENDENCIES:
- provider: bump github.com/cloudflare/cloudflare-go from 0.111.0 to 0.112.0 (#4803)
- provider: bump github.com/hashicorp/terraform-plugin-framework-validators from 0.15.0 to 0.16.0 (#4762)
- provider: bump golang.org/x/crypto from 0.21.0 to 0.31.0 in /tools (#4755)
- provider: bump golang.org/x/crypto from 0.30.0 to 0.31.0 (#4756)
- provider: bump golang.org/x/net from 0.32.0 to 0.33.0 (#4802)
v4.48.0
NOTES:
- resource/cloudflare_ruleset: rules must now be given an explicit
ref
to avoid their IDs changing across ruleset updates, see https://developers.cloudflare.com/terraform/troubleshooting/rule-id-changes/ (#4697)
FEATURES:
- New Resource:
cloudflare_leaked_credential_check
(#4674) - New Resource:
cloudflare_leaked_credential_check_rule
(#4676) - New Resource:
cloudflare_snippet
(#4565) - New Resource:
cloudflare_snippet_rules
(#4565)
ENHANCEMENTS:
- resource/access_application: add support for destinations and domain_type (#4661)
- resource/access_identity_provider: document scim_config fields (#4721)
- resource/cloudflare_access_policy: adds support for Access infrastructure
allow_email_alias
connection rule flag (#4665) - resource/cloudflare_ruleset: improve diffs when only some rules are changed (#4697)
- resource/cloudflare_teams_list: use PUT call to update list items (#4737)
- resource/cloudflare_zero_trust_access_policy: adds support for Access infrastructure
allow_email_alias
connection rule flag (#4665)
BUG FIXES:
- resource/cloudflare_authenticated_origin_pulls: Fix issue where resources are disabled instead of being destroyed on
tf destroy
(#4649) - resource/cloudflare_leaked_credential_check_rule: Fix bug in update method (#4741)
DEPENDENCIES:
v4.47.0
ENHANCEMENTS:
- resource/cloudflare_access_application: support SCIM schema strictness setting for outbound provisioning (#4419)
- resource/cloudflare_access_identity_provider: Adds identity update behavior field in SCIM configuration (#4602)
- resource/cloudflare_notification_policy: Added support for D1 in the
cloudflare_notification_policy
resource and data source. (#4615) - resource/cloudflare_notification_policy: add support for
image_resizing_notification
alert type (#4588) - resource/cloudflare_r2_bucket: Added support for Oceania region in location hints. (#4660)
BUG FIXES:
- resource/cloudflare_logpush_job: add dlp_forensic_copies to allowed dataset values (#4598)
- resource/cloudflare_zero_trust_access_policy: make gsuite parameters required (#4597)
DEPENDENCIES:
v4.46.0
ENHANCEMENTS:
- resource/cloudflare_waiting_room: add "bg-BG", "hr-HR", "cs-CZ", "da-DK", "fi-FI", "lt-LT", "ms-MY", "nb-NO", "ro-RO", "el-GR", "he-IL" "hi-IN", "hu-HU", "sr-BA", "sk-SK", "sl-SI", "sv-SE", "tl-PH", "th-TH", "uk-UA", and "vi-VN" to default_template_language field (#4509)
BUG FIXES:
- resource/cloudflare_certificate_pack: Fix importing existing resources issue due to 3 ignored required fields in importer (#4544)
- resource/cloudflare_list: Don't read list items if there are none configured (#4511)
- resource/cloudflare_zero_trust_list: Consider
items_with_description
when updating a ZT list (#4477) - resource/turnstile: Force recreate on region update (#4496)
DEPENDENCIES:
- provider: bump github.com/cloudflare/cloudflare-go from 0.108.0 to 0.109.0 (#4523)
- provider: bump github.com/hashicorp/terraform-plugin-framework-validators from 0.14.0 to 0.15.0 (#4492)
- provider: bump github.com/hashicorp/terraform-plugin-go from 0.24.0 to 0.25.0 (#4483)
- provider: bump github.com/hashicorp/terraform-plugin-mux from 0.16.0 to 0.17.0 (#4484)
- provider: bump github.com/hashicorp/terraform-plugin-sdk/v2 from 2.34.0 to 2.35.0 (#4491)
- provider: bump golang.org/x/net from 0.30.0 to 0.31.0 (#4541)
- provider: bump goreleaser/goreleaser-action from 6.0.0 to 6.1.0 (#4531)