NOTES:
id attribute has changed to prevent inconsistent parsing which resulted in provider crashes under certain conditions. The new format is a comma-delimited string combining group_arn and resource_arn in their entirety. Configuarations relying on the previous format may need to be updated to continue functioning correctly. (#40579)FEATURES:
aws_servicecatalogappregistry_attribute_group_associations (#38306)aws_api_gateway_domain_name_access_association (#40566)aws_cloudfront_vpc_origin (#40239)aws_memorydb_multi_region_cluster (#40376)aws_networkmanager_dx_gateway_attachment (#40546)aws_rds_cluster_snapshot_copy (#40398)ENHANCEMENTS:
arn attribute (#40546)statement sid is valid, including on alphanumeric characters (#40562)service_region attribute (#40583)agent_collaboration attribute to configure agent collaboration role (#40543)origin.vpc_origin_config argument (#40239)name_prefix argument (#40622)arn attribute (#40546)efa_enabled argument (#40381)advertise_trust_store_ca_names attribute to the mutual_authentication configuration block (#40550)multi_region_cluster_name argument (#40376)edge_locations attribute (#40546)service_region argument (#40583)BUG FIXES:
AccessDeniedException: ... is not authorized to perform: acm-pca:GetCertificateAuthorityCsr on resource: ... errors for RAM-shared CAs (#39952)setting entitlements: Invalid address to set: []string{"entitlements", "0", "overage"} errors (#40621)certificate_settings when updating. (#40589)certificate_settings.type to CUSTOM. (#40589)ValidationException when setting certificate_settings.type to AMPLIFY_MANAGED. (#40589)certificate_settings not set. (#40589)certificate_settings is not set during update. (#40589)arn for private custom domain names (#40566)vpc_configuration.tls_certificate as Optional (#40574)at_rest_encryption_enabled when engine is valkey. (#40514)IAMPrincipals principal group (#38600)permissions and permissions_with_grant_option attributes (#38047)result attribute when changing input attribute, for lifecycle scope "CRUD" (#34263)teletext_destination_settings. (#33797)allocated_storage (#40601)force_destroy = true can now delete objects with non-XML-safe keys (#40537)force_destroy = true can now delete objects with non-XML-safe keys (#40537)automatically_after_days was not being set properly when schedule_expression had been set previously (#34295)InvalidRequestException: A previous rotation isn't complete. That rotation will be reattempted. (#34295)redrive_allow_policy diffs (#40604)Fetched April 8, 2026