Skip to content

Update Terraform cloudflare to v5#21

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/cloudflare-5.x
Open

Update Terraform cloudflare to v5#21
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/cloudflare-5.x

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate Bot commented Sep 13, 2025

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Type Update Change
cloudflare (source) required_provider major 4.52.45.19.1
cloudflare (source) required_provider major 4.38.05.19.1

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

cloudflare/terraform-provider-cloudflare (cloudflare)

v5.19.1

Compare Source

Full Changelog: v5.19.0...v5.19.1

Features
  • add user_group and user_group_members acceptance tests + custom delete (7f2420e)
Bug Fixes
  • iam: tokens migrations (52c5675)
  • list_item: ambigous schema while upgrade (8d75670)
  • zero_trust_access_group: fix v4 migration of same name (918f9b6)
Chores
  • unskip rate limited test for future (5f785f9)
  • zone_settings: document available settings (26711da)
  • zone_settings: document available settings dynamically (a885ddc)

v5.19.0

Compare Source

Full Changelog: v5.18.0...v5.19.0

New Resources
  • cloudflare_ai_gateway: Manage AI Gateway instances (e8d7f3b)
  • cloudflare_certificate_authorities_hostname_associations: Manage mTLS certificate hostname associations (97df6f2)
  • cloudflare_custom_page_asset: Manage custom page assets (8b71d20)
  • cloudflare_pipeline: Manage Cloudflare Pipelines (de21a25)
  • cloudflare_r2_data_catalog: Manage R2 Data Catalog (e8d7f3b)
  • cloudflare_user_group: Manage user groups (4cf8755)
  • cloudflare_user_group_members: Manage user group memberships (4cf8755)
  • cloudflare_vulnerability_scanner_credential: Manage vulnerability scanner credentials (4cf8755)
  • cloudflare_vulnerability_scanner_credential_set: Manage vulnerability scanner credential sets (4cf8755)
  • cloudflare_vulnerability_scanner_target_environment: Manage vulnerability scanner target environments (4cf8755)
  • cloudflare_workers_observability_destination: Manage Workers Observability destinations (312d3af)
  • cloudflare_zero_trust_device_ip_profile: Manage Zero Trust device IP profiles (7b251d2)
  • cloudflare_zero_trust_device_subnet: Manage Zero Trust device subnets (ebb8216)
  • cloudflare_zero_trust_dlp_settings: Manage Zero Trust DLP settings (4cf8755)
Features
  • account: state upgrader for v4 to v5 migration (82ee06e)
  • account_member: state upgrader for v4 to v5 migration (62d0ea7)
  • account_token: state upgrader for v4 to v5 migration (a0469d7)
  • authenticated_origin_pulls: state upgrader for v4 to v5 migration (c4054b7)
  • authenticated_origin_pulls_hostname_certificate: state upgrader for v4 to v5 migration (c4054b7)
  • byo_ip_prefix: state upgrader for v4 to v5 migration (8d58cab)
  • custom_hostname: state upgrader for v4 to v5 migration (24e4f0e)
  • custom_ssl: state upgrader for v4 to v5 migration (ada4f8f)
  • leaked_credential_check: state upgrader for v4 to v5 migration (9372a7d)
  • leaked_credential_check_rule: state upgrader for v4 to v5 migration (745f1e2)
  • logpush_ownership_challenge: state upgrader for v4 to v5 migration (25785268)
  • mtls_certificate: state upgrader for v4 to v5 migration (70d46e0)
  • observatory_scheduled_test: state upgrader for v4 to v5 migration (a2883c9)
  • pages_domain: state upgrader for v4 to v5 migration (91c6024)
  • regional_tiered_cache: state upgrader for v4 to v5 migration (430edbd)
  • ruleset: add content_converter and redirects_for_ai_training support to configuration rules (726b8e7)
  • turnstile_widget: state upgrader for v4 to v5 migration (94b9515)
  • workers_custom_domain: state upgrader for v4 to v5 migration (6a40c69)
  • zero_trust_device_custom_profile: state upgrader for v4 to v5 migration (77090dc)
  • zero_trust_device_default_profile: state upgrader for v4 to v5 migration (77090dc)
  • zero_trust_device_posture_integration: state upgrader for v4 to v5 migration (32bc328)
  • zero_trust_gateway_certificate: state upgrader for v4 to v5 migration (ceff5a4)
  • zero_trust_gateway_settings: state upgrader for v4 to v5 migration (3dae4a3)
  • zero_trust_gateway_logging: make importable (c5d144b)
  • zero_trust_organization: state upgrader for v4 to v5 migration (9eb3a25)
  • zero_trust_tunnel_cloudflared_virtual_network: state upgrader for v4 to v5 migration (1f0f135)
  • zone_setting: state upgrader for v4 to v5 migration (7ba7600)
  • add browser rendering devtools methods (7f83203)
  • bump go sdk version (070ea0b)
  • enable treeshaking and client options for setting zone and account IDs (43b90cb)
  • promote AI Gateway Terraform config from staging to main (75baa04)
Bug Fixes
  • account_member: add UseStateForUnknown to status field to prevent drift (841d6f9)
  • ai_search_instance: restore original defaults for cache and cache_threshold (d28ee6b)
  • apijson: return empty object from MarshalForPatch when no fields are serialisable (270fe86)
  • authenticated_origin_pulls_settings: fix no prior schema and no-op upgrade (9804de7)
  • certificate_pack: initialize empty lists instead of null in state upgrader to prevent drift (2017a43)
  • client_certificate: fix CSR drift with normalization (a755419)
  • custom_hostname: allow ssl as null (6e17010)
  • custom_hostname_fallback_origin: eventual consistency (d55a74a)
  • custom_origin_trust_store: fix certificate drift with normalization (42de890)
  • custom_ssl: fix patch cert replacement and send bundle_method (bebe53b)
  • dlp_predefined_profile: eliminate perpetual entries and enabled_entries drift (92dcfc0)
  • dns_record: avoid unnecessary drift for ipv4_only and ipv6_only attributes (3df5e03)
  • dns_record: remove private_routing default value (ada77b4)
  • drift: preserve prior state for optional fields not returned by API (access_rule, gateway_policy, gateway_settings, zone_dnssec, dlp_predefined_profile) (b717f4d)
  • leaked_credential_check_rule: handle empty ID from v4 provider state migration (70f0337)
  • list_item: remove context (69f751d)
  • logpush_job: update model for migration (b789273)
  • logpush_job: fix acceptance tests failing due to destination re-validation on PUT (87243a1)
  • managed_transforms: remove unavailable rule and fix nil pointer in state upgrade (d14644e)
  • migrations: handle ambiguous schema_version state for v4/v5 coexistence (2b6246f)
  • page_rule: properly encode automatic_https_rewrites (47ebbf4)
  • provider credential fields marked sensitive and validation regex updated (5f6ff4f)
  • r2: add degraded-response handling to the R2 custom domain resource (c8d0e0f)
  • ruleset: restore phase-entrypoint fallbacks (b92500b)
  • ruleset: add redirects_for_ai_training to v4 action parameters model (16470fa)
  • tokens: change from set to list for token policies (9937847)
  • tokens: handle revoked and expired tokens (63319ed)
  • UpgradeFromV0 handles both v4 and early-v5 state formats (b09f658)
  • use raw JSON deserialization in UpgradeState handlers (0e93ea6)
  • workers_custom_domain: handle HTTP 200 no content header (ea0ca97)
  • workers_script: add missing ratelimit binding type to schema validator (30c49a6)
  • workers_script: model drift (5ae89c4)
  • zero_trust_access_identity_provider: boolean drifts (421bb50)
  • zero_trust_access_policy: nil pointer panic in state upgrader (ebe2b68)
  • zero_trust_access_policy: normalize transforms and use raw JSON deserialization for state upgrade (18c2ae3)
  • zero_trust_device_managed_networks: upgrade resource state (7c14bf5)
  • zero_trust_device_posture_rule: schema default removed intentionally (eef56df)
  • zero_trust_gateway_policy: make filters Computed+Optional to prevent drift (8f52f45)
  • zero_trust_gateway_settings: breaking changes and reset to clean defaults (b5ca509)
  • zero_trust_tunnel_cloudflared_config: dont use init (090ff6a)
Chores
  • api: update composite API spec (db5b37e)
  • cmd/migrate: deprecated in favor of tf-migrate; will be removed in a future release (#​7062)
  • docs: caveats and callouts (31c0d88)
  • internal: codegen related update (4cf8755)
  • update tf-migrate version (d023e25)
Documentation
  • remove TBD wording from deprecation timeline (bce670f)

v5.18.0

Compare Source

Full Changelog: v5.17.0...v5.18.0

Features
  • access_rule: support state upgraders for migration (67fd741)
  • api_shield_operation: state upgrader (ecd51d4)
  • api_token: state upgrader (ac5eb62)
  • authenticated_origin_pulls_certificate: v4 to v5 migration (8d9930d)
  • bot_management: state upgrader (4d9ee27)
  • chore: clean up removed endpoint from config (52f120d)
  • chore: update cloudflare-go dependency to next (c92a4cb)
  • chore: use Go SDK v6.8.0 for release (b695914)
  • feat: GIN-1439: Add gateway PAC files (9de415f)
  • feat(client_certificate): enable terraform for client_certificates (58f6a08)
  • feat(custom_origin_trust_store): enable custom_origin_trust_store (1c0f313)
  • feat(stainless): AUTH-7071 Complete Access Users endpoint (2d4101d)
  • fix: add 'rdp' as an initialism (9aa6e67)
  • list_item: state upgrader (70b70c5)
  • list: state upgrader (41def2f)
  • logpull_retention: support state upgrader #​6754 (78409e1)
  • logpush_job: support state upgrader (275efd5)
  • managed_transforms: state upgrader (8de2938)
  • notication_policy: state upgrader (dbcbda8)
  • regional_hostname: state upgrader (ed98d9e)
  • ruleset: add new actions for http_response_cache_settings phase (beeb49e)
  • snippet_rules: use state upgrade (91a7d1a)
  • snippet: use state upgrade (dbc8107)
  • spectrum_application: state upgrader (0957f09)
  • state upgrader (bbd68e0)
  • url_normalization_settings: state upgrader (f933791)
  • workers_kv_namespace: add state upgrader logic (695a1e1)
  • workers_route: implement state upgrader (cef2a35)
  • workers_script: implement state upgrader and move state (f7e20f8)
  • zero_trust_access_application: state upgrader (5427fd9)
  • zero_trust_access_group: add state upgrader logic and tests (5d0c09f)
  • zero_trust_access_identity_provider: state upgraders (c8c88f0)
  • zero_trust_access_mtls_certificate: state upgraders (15c5b8e)
  • zero_trust_access_mtls_hostname_settings: state upgraders (fe7a900)
  • zero_trust_device_managed_networks: state upgrader (0ee822f)
  • zero_trust_device_posture_rule: state upgrader (e4bdf6b)
  • zero_trust_dex_test: state upgrader (4b61d73)
  • zero_trust_dlp_custom_profile: state upgrader (ca47a4d)
  • zero_trust_dlp_entries: feat no-op state upgraders (808c706)
  • zero_trust_dlp_predefined_profile: state upgrader (71278f0)
  • zero_trust_gateway_policy: state upgrader (cb4ff67)
  • zero_trust_list: implement state upgrader (5134e5c)
  • zero_trust_tunnel_cloudflared_config: support state upgrader (a79e6ea)
  • zero_trust_tunnel_cloudflared_route: state upgrader (40289a3)
  • zone_dnssec: add state upgrader logic (1103393)
  • zone_subscription: add state upgraders for zone_subscription (3512262)
  • zone: add resource state migrations (049e9a9)
Bug Fixes
  • authenticated_origin_pulls_certificate and authenticated_origin_pulls_hostname_certificate model and schema (8287f8a)
  • custom_ssl: 'deploy' default removed due to entitlements requirement (267abd5)
  • docs: v5 migration for authenticated_origin_pulls (zone and hostname) (917dc79)
  • docs: v5 migration for authenticated_origin_pulls certs (zone and hostname) (502766d)
  • handling case where directory is null (72f78a7)
  • list: published version (4f695aa)
  • load_balancer: improve recurring drift in origins attribute (248c746)
  • migrations: use local provider for v5 migration tests (de0b294)
  • queue: migration model (c9f3274)
  • revert snippet_rules data source deletion (f489eb8)
  • spectrum_application: ips are computed optional (9281cdb)
  • spectrum_application: update 'ips' type and configurability in the model (f8742f3)
  • workers_script: include the original migration which existed (10b1b41)
  • workers_script: placement in union schema (53ee900)
  • workers_script: schema and model after merge conflict? (892c0d0)
  • zero_trust_access_group: normalization for include, exclude and require (ec84aaf)
  • zero_trust_device_posture_rule: model schema parity and gate (f18d0a8)
  • zero_trust_dlp_custom_profile: migration model (dae6782)
  • zero_trust_dlp_custom_profile: schema model parity (adda119)
  • zero_trust_organization: remove default values from attributes causing drift (d408f2e)
Chores
  • api: update composite API spec (ff602e7)
  • api: update composite API spec (e767186)
  • api: update composite API spec (81aacfa)
  • api: update composite API spec (776c452)
  • api: update composite API spec (efbdf3f)
  • api: update composite API spec (2d79225)
  • api: update composite API spec (565a842)
  • api: update composite API spec (259a7bd)
  • api: update composite API spec (deadfa0)
  • api: update composite API spec (1e91bbe)
  • api: update composite API spec (d09e587)
  • api: update composite API spec (239b2b6)
  • api: update composite API spec (cc8abe5)
  • api: update composite API spec (424518f)
  • api: update composite API spec (d444521)
  • api: update composite API spec (404b7b2)
  • api: update composite API spec (9a9324f)
  • api: update composite API spec (ec1d34e)
  • api: update composite API spec (1bf0f08)
  • custom_pages: add state upgraders logic (8feda78)
  • docs: update documentation (968a766)
  • docs: update example and doc (9ea618c)
  • internal: codegen related update (d39697f)
  • internal: codegen related update (86e94df)
  • internal: codegen related update (f212c64)
  • internal: codegen related update (bbe88b6)
  • internal: codegen related update (938118d)
  • internal: codegen related update (d2b1e8d)
  • internal: codegen related update (2129377)
  • internal: codegen related update (ce10e25)
  • internal: codegen related update (4c2f9b0)
  • internal: codegen related update (0d936f6)
  • internal: codegen related update (5b18851)
  • internal: codegen related update (02f6d57)
  • internal: codegen related update (bd4f014)
  • internal: codegen related update (5142372)
  • internal: codegen related update (7b6808b)
  • internal: codegen related update (2ca23ba)
  • internal: codegen related update (285a90d)
  • internal: codegen related update (4b0cdeb)
  • internal: codegen related update (c84470e)
  • internal: codegen related update (a992736)
  • internal: codegen related update (4ae01ef)
  • internal: codegen related update (e37a7e7)
  • internal: codegen related update (3553499)
  • internal: codegen related update (bba5c6f)
  • internal: codegen related update (85859b2)
  • internal: codegen related update (90ffea1)
  • load_balancer_monitor: implement v4->v5 state migration (ae47e9c)
  • load_balancer: implement v4->v5 state migration (14fb2e5)
  • notification_policy_webhooks: support state upgrader (1f223f6)
  • queue_consumer: support state upgraders (c28386e)
  • queue_consumer: support state upgraders (67c546d)
  • queue: support state upgraders (109c401)
  • resources: don't trigger upgrade (92d92bc)
  • snippets: clean up unused funcs (c8fdb9a)
  • workers_kv: adjust for state upgraders logic (493975f)
  • zero_trust_access_group: enable cross resource dependent test (7798310)
  • zero_trust_dlp_custom_profile: cleanup (de457ca)
  • zero_trust_dlp_predefined_profile: cleanup (10c57a5)
  • zone_subscription: update test (8d58520)
  • zone: add test cases (f227117)
Documentation
  • update docs again for v5.18.0 (6b459d5)
  • update docs for v5.18.0 (d98474e)
Refactors
  • zero_trust_access_policy: match directory structure (43f639a)

v5.17.0

Compare Source

Full Changelog: v5.16.0...v5.17.0

Features
  • account: add RequiresReplace modifier to unit.id field (7cbb327)
  • bump schema verion in prep for state upgraders (a721535)
  • bump schema verion in prep for state upgraders (a721535)
  • chore: bump cloudflare-go dependency for TF (3b4de30)
  • chore: skip codegen in authenticated_origin_pulls_certificate (22d11ab)
  • chore: skip codegen in authenticated_origin_pulls_hostname_certificate (0fdd92e)
  • chore: skip codegen in hostnames authenticated_origin_pulls (82aab9d)
  • chore: skip codegen in mtls_certificates (1b14224)
  • chore: use 'next' branch of Go SDK in Terraform (809a3f3)
  • custom_hostname_fallback_origin: add comprehensive lifecycle test (054611a)
  • custom_hostname_fallback_origin: add migration tests and state upgrader logic (855ef8a)
  • custom_hostname_fallback_origin: add v4 to v5 migration tests (0542720)
  • feat(api): RAG-586: enable terraform for AI Search instances and tokens (fe5239d)
  • feat(radar): add BGP RPKI ASPA endpoints and fix SDK casings (e6a03b6)
  • fix: authenticated_origin_pulls_settings missing id configuration (abe9087)
  • fix(total_tls): use upsert pattern for singleton zone setting (1a79609)
  • leaked_credential_check: add import functionality. add tests for import (76e44f0)
  • pages_project: use state upgraders (db96be7)
  • refactor(terraform): restructure origin_tls_client_auth to peer subresources (6c12fea)
  • state upgrader (deee33f)
  • state upgrader (d8e4529)
  • tiered caching state upgrader (d9d2c74)
  • tiered caching state upgrader (d9d2c74)
  • tiered_cache: use state upgraders (8cb061c)
  • turstile_widget: add v4 to v5 migration tests (a1e27af)
  • zero_trust_organization: add migration test (1032e4e)
Bug Fixes
  • account: map managed_by.parent_org_id to unid.id in unmarshall and add acctests (a282d8e)
  • address PR review comments (62598d7)
  • authenticated_origin_pulls_certificate: add certificate normalization to prevent drift (9fa8e39)
  • authenticated_origin_pulls_hostname_certificate resource and tests (3380cf9)
  • authenticated_origin_pulls: handle array response and implement full lifecycle (e4c82b8)
  • byo_ip_prefix: skip LOA tests (892bce0)
  • changelog: update changelog to reflect reality (519c85e)
  • cloudflare_zero_trust_device_posture_rule: update tests to match API (b2aad0d)
  • mtls_certificates resource and test (fc44f27)
  • prevent unnecessary diffs on consecutive applies for hyperdrive_config (8755bf9)
  • skip tests requiring account creation (f6d48e9)
  • upgrade scenario (e3831be)
  • workers_script: add support for placement mode/status (1bc17fa)
  • workers_script: schema and migration model (a9a0e05)
  • zero_trust_access_application: update v4 version on migration tests (45a825e)
  • zero_trust_organization: fix plan issues (f6a9369)
Reverts
  • pages_project: "fix(pages_project) build_config to computed optional" (b9c13c9)
Chores

Note

PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about these updates again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@samcday samcday force-pushed the main branch 2 times, most recently from a832da4 to 90c515d Compare September 15, 2025 05:50
@renovate renovate Bot changed the title chore(deps): update terraform cloudflare to v5 Update Terraform cloudflare to v5 Sep 16, 2025
@renovate renovate Bot changed the title Update Terraform cloudflare to v5 chore(deps): update terraform cloudflare to v5 Sep 17, 2025
@samcday samcday force-pushed the main branch 2 times, most recently from 6b59765 to 56d9ad4 Compare September 17, 2025 10:47
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from e2b27b9 to 5654222 Compare September 17, 2025 12:15
@samcday samcday force-pushed the main branch 5 times, most recently from b4a8782 to d843f3c Compare September 17, 2025 12:47
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 5654222 to 8850bf1 Compare September 17, 2025 23:03
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 8850bf1 to 99a74a3 Compare September 17, 2025 23:04
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 99a74a3 to 6692cad Compare September 17, 2025 23:06
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 6692cad to 8b05d16 Compare September 17, 2025 23:07
@samcday samcday force-pushed the main branch 11 times, most recently from 28095d3 to 2bc0131 Compare September 18, 2025 11:02
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 18ad05f to b403522 Compare November 21, 2025 12:01
@samcday samcday force-pushed the main branch 3 times, most recently from 0e58f85 to 4640da7 Compare November 22, 2025 04:12
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from b403522 to 0a224b1 Compare November 25, 2025 16:55
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 0a224b1 to 494fa56 Compare December 6, 2025 03:45
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 494fa56 to da351b0 Compare December 20, 2025 06:14
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from da351b0 to 9d275e3 Compare January 21, 2026 04:53
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 9d275e3 to 42fff28 Compare February 12, 2026 15:05
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch 3 times, most recently from 96ec9e6 to f2bbbf5 Compare February 27, 2026 14:51
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from f2bbbf5 to 51da24e Compare March 1, 2026 21:47
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch 5 times, most recently from 00853bb to 5005924 Compare March 19, 2026 05:58
@renovate renovate Bot changed the title chore(deps): update terraform cloudflare to v5 Update Terraform cloudflare to v5 Mar 27, 2026
@renovate renovate Bot changed the title Update Terraform cloudflare to v5 chore(deps): update terraform cloudflare to v5 Mar 27, 2026
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from 5005924 to a893d1e Compare April 16, 2026 15:17
@renovate renovate Bot changed the title chore(deps): update terraform cloudflare to v5 Update Terraform cloudflare to v5 Apr 21, 2026
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch 3 times, most recently from 29efd32 to b6572f0 Compare April 30, 2026 16:42
@renovate renovate Bot force-pushed the renovate/cloudflare-5.x branch from b6572f0 to 833e34d Compare May 1, 2026 05:28
@renovate renovate Bot changed the title Update Terraform cloudflare to v5 chore(deps): update terraform cloudflare to v5 May 8, 2026
@renovate renovate Bot changed the title chore(deps): update terraform cloudflare to v5 Update Terraform cloudflare to v5 May 14, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants