Skip to content

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Sep 1, 2025

This PR contains the following updates:

Package Type Update Change
terraform-aws-modules/iam/aws (source) module major 5.17.0 -> 6.2.1

Release Notes

terraform-aws-modules/terraform-aws-iam (terraform-aws-modules/iam/aws)

v6.2.1

Compare Source

Bug Fixes

v6.2.0

Compare Source

Features

v6.1.2

Compare Source

Bug Fixes
  • Modify BitBucket provider URL extraction to be more robust when none or multiple URLs are provided (#​605) (e3e724d)

v6.1.1

Compare Source

Bug Fixes
  • Remove any secretsmanager:* permissions if no secret ARNs are provided to IRSA external-secrets permissions (#​599) (d610954)

v6.1.0

Compare Source

Features
  • Add default IRSA policy name, fix incorrect policy attachment for iam-user (#​594) (f111832)

v6.0.1

Compare Source

Bug Fixes
  • Remove broken IRSA migrations.tf; add default IRSA policy descriptions for backwards compat (#​592) (e56f84d)

v6.0.0

Compare Source

⚠ BREAKING CHANGES
  • Upgrade AWS provider and min required Terraform version to 6.0 and 1.5.7 respectively (#​585)
Features
  • Upgrade AWS provider and min required Terraform version to 6.0 and 1.5.7 respectively (#​585) (31b31d7)

v5.60.0

Compare Source

Features
  • Add ssm:GetParametersByPath for external secrets (#​583) (8e4541d)

v5.59.0

Compare Source

Features
  • Update EBS CSI IAM policy to match current upstream project (#​575) (49efa8c)

v5.58.0

Compare Source

Features

v5.57.0

Compare Source

Features

v5.56.0

Compare Source

Features
  • Update AWS Load Balancer controller policy to match v2.13 of the upstream project (#​573) (4ce604e)

v5.55.0

Compare Source

Features
  • Allow removing KMS and SSM permissions from EKS IRSA external secrets policy (#​550) (bfaa70d)

v5.54.1

Compare Source

Bug Fixes

v5.54.0

Compare Source

Features
  • Update IAM permissions for load balancer controller v2.12.0 (#​555) (d2d8ad4)

v5.53.0

Compare Source

Features
  • Add support for custom trust policy conditions on iam-github-oidc-role (#​547) (3eca351)

v5.52.2

Compare Source

Bug Fixes

v5.52.1

Compare Source

Bug Fixes

v5.52.0

Compare Source

Features

v5.51.0

Compare Source

Features

v5.50.0

Compare Source

Features

v5.49.0

Compare Source

Features

v5.48.0

Compare Source

Features
  • Add ec2:GetSecurityGroupsForVpc for AWS LB Controller v2.10.0 (#​536) (9cfab4a)

v5.47.1

Compare Source

Bug Fixes

v5.47.0

Compare Source

Features
Bug Fixes

v5.46.0

Compare Source

Features
  • Update IAM policy for AWS Load Balancer Controller to support Listener Attributes (#​525) (966c4f8)

v5.45.0

Compare Source

Features
  • Allow modifying the iam-github-oidc-role subject condition (#​523) (f2ade86)

v5.44.2

Compare Source

Bug Fixes
  • Add required S3 PutObjectTagging permission to Velero IRSA policy (#​517) (f0e65a7)

v5.44.1

Compare Source

Bug Fixes

v5.44.0

Compare Source

Features

v5.43.0

Compare Source

Features

v5.42.0

Compare Source

Features
  • Add cloudwatch logs policy to vpc-cni for networkpolicy logging (#​504) (88ee443)

v5.41.0

Compare Source

Features
  • Adding sse-kms support for Mountpoint S3 CSI driver EKS IRSA (#​493) (5039e10)

v5.40.0

Compare Source

Features

v5.39.1

Compare Source

Bug Fixes
  • Fixed trust condition in modules/iam-github-oidc-role to be https (#​490) (ecaed18)

v5.39.0

Compare Source

Features

v5.38.0

Compare Source

Features
  • EBS fast snapshot restores persmission for EKS IRSA (#​469) (9ea77ca)

v5.37.2

Compare Source

Bug Fixes
  • Allow user to change own password when no MFA is present (#​470) (ef0056b)

v5.37.1

Compare Source

Bug Fixes
  • Update CI workflow versions to remove deprecated runtime warnings (#​465) (82348df)

v5.37.0

Compare Source

Features
  • Extend self-management policy to read account summary (iam-group-with-policies) (#​462) (0bedaf4)

v5.36.0

Compare Source

Features
  • Add support for Mountpoint S3 CSI driver to EKS IRSA (#​459) (21fb8d9)

v5.35.0

Compare Source

Features
  • Allow users to set and read own access keys description (iam-group-with-policies) (#​461) (c80cd10)

v5.34.0

Compare Source

Features
5.33.1 (2024-01-18)
Bug Fixes
  • Skip retrieving EKS cluster data when not creating the role (#​436) (bcdf554)

v5.33.1

Compare Source

v5.33.0

Compare Source

Features
  • Add support for Amazon CloudWatch Observability IRSA role (#​446) (25e2bf9)
5.32.1 (2023-12-11)
Bug Fixes
  • Remove unused TLS provider in iam-github-oidc-role (#​439) (2ce3885)

v5.32.1

Compare Source

v5.32.0

Compare Source

Features

v5.31.0

Compare Source

Features
  • Allow users to change own password in iam-group-with-policies module (#​435) (eb5b218)
5.30.2 (2023-11-10)
Bug Fixes
5.30.1 (2023-11-04)
Bug Fixes
  • Direct policy attachment of iam-policy-created resources (#​428) (543f101)

v5.30.2

Compare Source

v5.30.1

Compare Source

v5.30.0

Compare Source

Features
  • Add create_custom_role_trust_policy to control when a custom_role_trust_policy should be used (#​321) (481095e)
5.29.2 (2023-08-30)
Bug Fixes
  • Expand Permissions for external-secrets IRSA Policy towards AWS Secrets Manager (#​416) (fa74a18)
5.29.1 (2023-08-30)
Bug Fixes
  • Add missing condition role_session_name when assuming a role (#​418) (89d011e)

v5.29.2

Compare Source

v5.29.1

Compare Source

v5.29.0

Compare Source

Features
  • Add variable for adding statement for secretsmanager:CreateSecret (#​414) (24996cd)

v5.28.0

Compare Source

Features
  • Added direct policy attachment in iam-user module (#​387) (9fa481f)

v5.27.0

Compare Source

Features

v5.26.0

Compare Source

Features

v5.25.0

Compare Source

Features
  • Added variable load_balancer_controller_targetgroup_arns in iam-role-for-service-accounts-eks module (#​402) (61a5dbe)

v5.24.0

Compare Source

Features
5.23.1 (2023-06-29)
Bug Fixes

v5.23.1

Compare Source

v5.23.0

Compare Source

Features
  • Added variable trusted_role_actions to sub modules as a "Action of STS" (#​393) (5702679)

v5.22.0

Compare Source

Features

v5.21.0

Compare Source

Features
  • Added permissions to list zone tags in iam-role-for-service-accounts-eks module (#​394) (740945f)

v5.20.0

Compare Source

Features
  • Add support for AWS Gateway controller (VPC Lattice) to IRSA module (#​378) (fdee003)

v5.19.0

Compare Source

Features
  • Add support for condition role_session_name when assuming a role (#​379) (5aabe67)

v5.18.0

Compare Source

Features
  • iam-eks-role: Add variable to allow change of IAM assume role condition test operator (#​367) (542fc5a)
5.17.1 (2023-05-05)
Bug Fixes
  • Remove "autoscaling:UpdateAutoScalingGroup" permission from cluster-autoscaler IRSA (#​357) (aeb5d7f)

v5.17.1

Compare Source


Configuration

📅 Schedule: Branch creation - Between 12:00 AM and 03:59 AM, only on Monday ( * 0-3 * * 1 ) (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants