UPGRADE NOTES:
If you are upgrading from Terraform v1.7 or earlier, please refer to the Terraform v1.8 Upgrade Guide.
- backend/s3: The
use_legacy_workflow
argument has been removed to encourage consistency with the AWS SDKs. The backend will now search for credentials in the same order as the default provider chain in the AWS SDKs and AWS CLI.
NEW FEATURES:
- Providers can now implement functions which can be used from within the Terraform configuration language. The syntax for calling a provider supplied function is
provider::provider_name::function_name()
. (#34394) - Providers can now implement move operations between resource types, both from resource types defined by the provider and defined by other providers. Check provider documentation for supported cross-resource-type moves.
issensitive
function added to detect if a value is marked as sensitive
ENHANCEMENTS:
-
terraform show
's JSON rendering of a plan now includes two explicit flags"applyable"
and"complete"
, which both summarize characteristics of a plan that were previously only inferrable by consumers replicating some of Terraform Core's own logic. (#34642)"applyable"
means that it makes sense for a wrapping automation to offer to apply this plan."complete"
means that applying this plan is expected to achieve convergence between desired and actual state. If this flag is present and set tofalse
then wrapping automations should ideally encourage an operator to run another plan/apply round to continue making progress toward convergence. -
Improved plan diff rendering for lists to display item-level differences on lists with unchanged length.
-
terraform provider lock
accepts a new boolean option-enable-plugin-cache
. If specified, and if a global plugin cache is configured Terraform will use the cache in the provider lock process. (#34632) -
terraform test
: File-level variables can now reference global variables. (#34699) -
In import-generated code represent JSON values in HCL instead of as strings
-
built-in "terraform" provider: new
tfvarsdecode
,tfvarsencode
, andexprencode
functions, for unusual situations where it's helpful to manually generate or read from Terraform's "tfvars" format. (#34718)
BUG FIXES:
- core: Sensitive values will now be tracked more accurately in state and plans, preventing unexpected updates with no apparent changes (#34567)
- core: Fix incorrect error message when using in invalid iterator within a dynamic block (#34751)
- core: Fixed edge-case bug that could cause loss of floating point precision when round-tripping due to incorrectly using a MessagePack integer to represent a large non-integral number (#24576)
- config: Converting from an unknown map value to an object type now correctly handles the situation where the map element type disagrees with an optional attribute of the target type, since when a map value is unknown we don't yet know which keys it has and thus cannot predict what subset of the elements will get converted as attributes in the resulting object (#34756)
- cloud: Fixed unparsed color codes in policy failure error messages (#34473)
For information on prior major and minor releases, see their changelogs: