v0.15.0
🤖 Automatic Updates
Replace Makefile with atmos.yaml @osterman (#79)
## what - Remove `Makefile` - Add `atmos.yaml`why
- Replace build-harnesswithatmosfor readme genration
References
- DEV-3229 Migrate from build-harness to atmos
Migrate new test account @osterman (#76)
## what - Update `.github/settings.yml` - Update `.github/chatops.yml` fileswhy
- Re-apply .github/settings.ymlfrom org level to getterratestenvironment
- Migrate to new testaccount
References
- DEV-388 Automate clean up of test account in new organization
- DEV-387 Update terratest to work on a shared workflow instead of a dispatch action
- DEV-386 Update terratest to use new testing account with GitHub OIDC
Update .github/settings.yml @osterman (#75)
## what - Update `.github/settings.yml` - Drop `.github/auto-release.yml` fileswhy
- Re-apply .github/settings.ymlfrom org level
- Use organization level auto-release settings
references
- DEV-1242 Add protected tags with Repository Rulesets on GitHub
chore(deps): update terraform cloudposse/vpc/aws to v2.2.0 @[renovate[bot]](https://github.com/apps/renovate) (#59)
This PR contains the following updates:| Package | Type | Update | Change | 
|---|---|---|---|
| cloudposse/vpc/aws (source) | module | minor | 2.1.0->2.2.0 | 
Release Notes
cloudposse/terraform-aws-vpc (cloudposse/vpc/aws)
v2.2.0
v2.1.1
Add support for network address usage metrics @lanzrein (#124)
what
This PR adds support for Network Address Usage Metrics on the VPC.
AWS documentation : https://docs.aws.amazon.com/vpc/latest/userguide/network-address-usage.html
Terraform documentation : https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/vpc#enable_network_address_usage_metrics
why
Network Address Usage metrics can help monitor the growth of a VPC and would be useful for any user.
Enable this after creating a VPC does not trigger recreation of the VPC.
references
closes #115
Sync github @max-lobur (#120)
Rebuild github dir from the template
🤖 Automatic Updates
Update README.md and docs @cloudpossebot (#125)
what
This is an auto-generated PR that updates the README.md and docs
why
To have most recent changes of README.md and doc from origin templates
Bump the go_modules group in /test/src with 5 updates @[dependabot[bot]](https://github.com/apps/dependabot) (#73)
Bumps the go_modules group in /test/src with 5 updates:| Package | From | To | 
|---|---|---|
| github.com/hashicorp/go-getter | 1.7.1 | 1.7.5 | 
| golang.org/x/crypto | 0.1.0 | 0.17.0 | 
| golang.org/x/net | 0.8.0 | 0.10.0 | 
| google.golang.org/grpc | 1.51.0 | 1.56.3 | 
| google.golang.org/protobuf | 1.31.0 | 1.33.0 | 
Updates github.com/hashicorp/go-getter from 1.7.1 to 1.7.5
Release notes
Sourced from github.com/hashicorp/go-getter's releases.
v1.7.5
What's Changed
- Prevent Git Config Alteration on Git Update by
@dduzgun-securityin hashicorp/go-getter#497New Contributors
@dduzgun-securitymade their first contribution in hashicorp/go-getter#497Full Changelog: hashicorp/go-getter@v1.7.4...v1.7.5
v1.7.4
What's Changed
- Escape user-provided strings in
gitcommands hashicorp/go-getter#483- Fixed a bug in
.netrchandling if the file does not exist hashicorp/go-getter#433Full Changelog: hashicorp/go-getter@v1.7.3...v1.7.4
v1.7.3
What's Changed
- SEC-090: Automated trusted workflow pinning (2023-04-21) by
@hashicorp-tsccrin hashicorp/go-getter#432- SEC-090: Automated trusted workflow pinning (2023-09-11) by
@hashicorp-tsccrin hashicorp/go-getter#454- SEC-090: Automated trusted workflow pinning (2023-09-18) by
@hashicorp-tsccrin hashicorp/go-getter#458- don't change GIT_SSH_COMMAND when there is no sshKeyFile by
@jbardinin hashicorp/go-getter#459New Contributors
@hashicorp-tsccrmade their first contribution in hashicorp/go-getter#432Full Changelog: hashicorp/go-getter@v1.7.2...v1.7.3
v1.7.2
What's Changed
- Don't override
GIT_SSH_COMMANDwhen not needed by@nl-brett-stimehashicorp/go-getter#300Full Changelog: hashicorp/go-getter@v1.7.1...v1.7.2
Commits
- 5a63fd9Merge pull request #497 from hashicorp/fix-git-update
- 5b7ec5ffetch tags on update and fix tests
- 9906874recreate git config during update to prevent config alteration
- 268c11cescape user provide string to git (#483)
- 975961fMerge pull request #433 from adrian-bl/netrc-fix
- 0298a22Merge pull request #459 from hashicorp/jbardin/setup-git-env
- c70d9c9don't change GIT_SSH_COMMAND if there's no keyfile
- 3d5770fMerge pull request #458 from hashicorp/tsccr-auto-pinning/trusted/2023-09-18
- 0688979Result of tsccr-helper -log-level=info -pin-all-workflows .
- e66f244Merge pull request #454 from hashicorp/tsccr-auto-pinning/trusted/2023-09-11
- Additional commits viewable in compare view
Updates golang.org/x/crypto from 0.1.0 to 0.17.0
Commits
- 9d2ee97ssh: implement strict KEX protocol changes
- 4e5a261ssh: close net.Conn on all NewServerConn errors
- 152cdb1x509roots/fallback: update bundle
- fdfe1f8ssh: defer channel window adjustment
- b8ffc16blake2b: drop Go 1.6, Go 1.8 compatibility
- 7e6fbd8ssh: wrap errors from client handshake
- bda2f3fargon2: avoid clobbering BP
- 325b735ssh/test: skip TestSSHCLIAuth on Windows
- 1eadac5go.mod: update golang.org/x dependencies
- b2d7c26ssh: add (*Client).DialContext method
- Additional commits viewable in compare view
Updates golang.org/x/net from 0.8.0 to 0.10.0
Commits
- daac0cego.mod: update golang.org/x dependencies
- 82780d6http2: don't reuse connections that are experiencing errors
- 0bfab66ipv4, ipv6: drop redundant skip checks based on GOOS
- 938ff15ipv4, ipv6, nettest: skip unsupported tests on wasip1
- eb1572chtml: another shot at security doc
- 9001ca7nettest: re-enable unixpacket tests on netbsd/386
- 3d5a8eeinternal/socks: permit authenticating with an empty password
- 694cff8go.mod: update golang.org/x dependencies
- 6960703http2: log the correct error when retrying in (*Transport).RoundTripOpt
- 9f24bb4http2: properly discard data received after request/response body is closed
- Additional commits viewable in compare view
Updates google.golang.org/grpc from 1.51.0 to 1.56.3
Release notes
Sourced from google.golang.org/grpc's releases.
Release 1.56.3
Security
server: prohibit more than MaxConcurrentStreams handlers from running at once (CVE-2023-44487)
In addition to this change, applications should ensure they do not leave running tasks behind related to the RPC before returning from method handlers, or should enforce appropriate limits on any such work.
Release 1.56.2
- status: To fix a panic,
status.FromErrornow returns an error withcodes.Unknownwhen the error implements theGRPCStatus()method, and callingGRPCStatus()returnsnil. (#6374)Release 1.56.1
- client: handle empty address lists correctly in addrConn.updateAddrs
Release 1.56.0
New Features
- client: support channel idleness using
WithIdleTimeoutdial option (#6263)
- This feature is currently disabled by default, but will be enabled with a 30 minute default in the future.
- client: when using pickfirst, keep channel state in TRANSIENT_FAILURE until it becomes READY (gRFC A62) (#6306)
- xds: Add support for Custom LB Policies (gRFC A52) (#6224)
- xds: support pick_first Custom LB policy (gRFC A62) (#6314) (#6317)
- client: add support for pickfirst address shuffling (gRFC A62) (#6311)
- xds: Add support for String Matcher Header Matcher in RDS (#6313)
- xds/outlierdetection: Add Channelz Logger to Outlier Detection LB (#6145)
- Special Thanks:
@s-matyukevich- xds: enable RLS in xDS by default (#6343)
- orca: add support for application_utilization field and missing range checks on several metrics setters
- balancer/weightedroundrobin: add new LB policy for balancing between backends based on their load reports (gRFC A58) (#6241)
- authz: add conversion of json to RBAC Audit Logging config (#6192)
- authz: add support for stdout logger (#6230 and #6298)
- authz: support customizable audit functionality for authorization policy (#6192 #6230 #6298 #6158 #6304 and #6225)
Bug Fixes
- orca: fix a race at startup of out-of-band metric subscriptions that would cause the report interval to request 0 (#6245)
- xds/xdsresource: Fix Outlier Detection Config Handling and correctly set xDS Defaults (#6361)
- xds/outlierdetection: Fix Outlier Detection Config Handling by setting defaults in ParseConfig() (#6361)
API Changes
- orca: allow a ServerMetricsProvider to be passed to the ORCA service and ServerOption (#6223)
Release 1.55.1
- status: To fix a panic,
status.FromErrornow returns an error withcodes.Unknownwhen the error implements theGRPCStatus()method, and callingGRPCStatus()returnsnil. (#6374)Release 1.55.0
Behavior Changes
... (truncated)
Commits
- 1055b48Update version.go to 1.56.3 (#6713)
- 5efd7bdserver: prohibit more than MaxConcurrentStreams handlers from running at once...
- bd1f038Upgrade version.go to 1.56.3-dev (#6434)
- faab873Update version.go to v1.56.2 (#6432)
- 6b0b291status: fix panic when servers return a wrapped error with status OK (#6374) ...
- ed56401[PSM interop] Don't fail target if sub-target already failed (#6390) (#6405)
- cd6a794Update version.go to v1.56.2-dev (#6387)
- 5b67e5eUpdate version.go to v1.56.1 (#6386)
- d0f5150client: handle empty address lists correctly in addrConn.updateAddrs (#6354) ...
- 997c1eaChange version to 1.56.1-dev (#6345)
- Additional commits viewable in compare view
Updates google.golang.org/protobuf from 1.31.0 to 1.33.0
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- @dependabot rebasewill rebase this PR
- @dependabot recreatewill recreate this PR, overwriting any edits that have been made to it
- @dependabot mergewill merge this PR after your CI passes on it
- @dependabot squash and mergewill squash and merge this PR after your CI passes on it
- @dependabot cancel mergewill cancel a previously requested merge and block automerging
- @dependabot reopenwill reopen this PR if it is closed
- @dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- @dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency
- @dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
- @dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
- @dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
- @dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency
- @dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions
 You can disable automated security fix PRs for this repo from the Security Alerts page.