Releases: aws-samples/aws-secure-environment-accelerator
Release v1.6.1
This release includes updates to the tooling to support an in-place upgrade of ASEA to LZA. There are no functional changes to ASEA between version v1.6.0 and v1.6.1 other than those needed to support the upgrade.
The documentation for the ASEA to LZA upgrade is available in the AWS Secure Environment Accelerator guide on GitHub pages and the upgrade tools are available in the reference-artifacts/Custom-Scripts/lza-upgrade folder of this repository.
- only add vpcflowlog filter if in asea config (#1252) (4ca1855)
- Lza upgrade doc ASEA v1.6.1 (#1251) (101ad14)
- feat(convert-config): adding lza vpcflowlog log group pattern to dynamic-parition (#1250) (775f39c)
- fix(convert-config): Remove warning for ssm-remediation with nested ous in convert-config (#1249) (23192ef)
- fix: improve nested stack check by using physical ids patterns instead of stack name based pattern (#1247) (5dd1c64)
- fix(resourcemapping): added compare and next token for list stack (#1248) (82ab1ce)
- lza-upgrade: Improve network drift detection script (#1245) (cd011af)
- fix(upgrade): disable ASEA subscription filter rules in the asea-prep step (#1244) (c818f69)
- Bump cross-spawn in /reference-artifacts/Custom-Scripts/lza-upgrade (#1242) (f11f080)
- Bump micromatch in /reference-artifacts/Custom-Scripts/lza-upgrade (#1241) (6317011)
- Updating package to 1.6.0 (69159bf)
Release v1.6.0
This release includes the tooling to support an in-place upgrade of ASEA to LZA. There are no functional changes to ASEA between version v1.5.11 and v1.6.0 other than those needed to support the upgrade.
The documentation for the ASEA to LZA upgrade is available in the AWS Secure Environment Accelerator guide on GitHub pages and the upgrade tools are available in the reference-artifacts/Custom-Scripts/lza-upgrade folder of this repository.
Release v1.5.11
Release v1.5.10
NOTES
-
Customers MUST use Landing Zone Accelerator on AWS (LZA) for new deployments
-
Customers MUST update their ASEA installer stack with the provided CloudFormation template for this release.
- This release includes important runtime and bug fix updates that customers should install. This release focuses on stability and preparing for the end of support.
- It's recommend customers on older versions upgrade to v1.5.9-b first before moving to v1.5.10.
- Upgrade testing for future releases will only be for upgrades from v1.5.10 or higher
- ASEA is currently in maintenance with no new features or enhancements planned. It's expected that a future Release will help customers upgrade from ASEA to LZA.
- End of support is expected in Q2 2025. Upgrades from ASEA to LZA will occur over the few quarters.
FEATURES
- code changes to support use of ca-west-1 (Canada West) region.
- enables opt-in region for guardduty logging (#1222) (2102ceb)
- ca-west-1 config sample and documentation (#1225) (1ed3ea3)
FIXES
Release v1.5.9-b
NOTES
-
Customers MUST use Landing Zone Accelerator on AWS (LZA) for new deployments
-
Customers MUST update their ASEA installer stack with the provided CloudFormation template for this release.
- This release includes important runtime and bug fix updates that customers should install. This release focuses on stability and preparing for the end of support.
- It's recommend customers on older versions upgrade to v1.5.8-d first before moving to v1.5.9-b.
- Upgrade testing for future releases will only be for upgrades from v1.5.9-b or higher
- ASEA is currently in maintenance with no new features or enhancements planned. It's expected that a future Release will help customers upgrade from ASEA to LZA.
- End of support is expected in Q2 2025. Upgrades from ASEA to LZA will occur over the few quarters.
FEATURES
- None
FIXES
- Fix for cross-account Security Group rules using dynamic cidr ranges (#1220) (b31529a)
- Add ca-west-1 (#1218) (63ca3b3)
- Added latest proxy-agent version (#1215) (76b4e8f)
- Removed strict flag (#1216) (e0eb93e)
- Removed proxy-agent dependency (#1209) (32ee10c)
- Update retry logic to match error (#1208) (8a62515)
- Increase memory size for ALB IP forwarding lambdas (#1204) (9c17165)
- Fix cannot find module 'aws-sdk' on custom config rule lambdas (#1207) (1660d5c)
Release v1.5.8-d
NOTES
-
Customers MUST use Landing Zone Accelerator on AWS (LZA) for new deployments
-
Customers MUST update their ASEA installer stack with the provided CloudFormation template for this release.
- This release includes important runtime and bug fix updates that customers should install. This release focuses on stability and preparing for the end of support.
- It's recommend customers on older versions upgrade to 1.5.7-b first before moving to v1.5.8-d.
- Upgrade testing for future releases will only be for upgrades from v1.5.8-d or higher
- ASEA is currently in maintenance with no new features or enhancements planned. It's expected that a future Release will help customers upgrade from ASEA to LZA.
- End of support is expected in Q2 2025. Upgrades from ASEA to LZA will occur over the few quarters.
FEATURES
- None
FIXES
Release v1.5.8-c
NOTES
-
Customers MUST use Landing Zone Accelerator on AWS (LZA) for new deployments
-
Customers MUST update their ASEA installer stack with the provided CloudFormation template for this release.
- This release includes important runtime and bug fix updates that customers should install. This release focuses on stability and preparing for the end of support.
- It's recommend customers on older versions upgrade to 1.5.7-b first before moving to v1.5.8-c.
- Upgrade testing for future releases will only be for upgrades from v1.5.8-c or higher
- ASEA is currently in maintenance with no new features or enhancements planned. It's expected that a future Release will help customers upgrade from ASEA to LZA.
- End of support is expected in Q2 2025. Upgrades from ASEA to LZA will occur over the few quarters.
FEATURES
- None
FIXES
Release v1.5.8-b
NOTES
-
Customers MUST use Landing Zone Accelerator on AWS (LZA) for new deployments
-
Customers MUST update their ASEA installer stack with the provided CloudFormation template for this release.
- This release includes important runtime and bug fix updates that customers should install. This release focuses on stability and preparing for the end of support.
- It's recommend customers on older versions upgrade to 1.5.7-b first before moving to v1.5.8-b.
- Upgrade testing for future releases will only be for upgrades from v1.5.8-b or higher
- ASEA is currently in maintenance with no new features or enhancements planned. It's expected that a future Release will help customers upgrade from ASEA to LZA.
- End of support is expected in Q2 2025. Upgrades from ASEA to LZA will occur over the few quarters.
FEATURES
- None
FIXES
Release v1.5.8
NOTES
-
Customers MUST use Landing Zone Accelerator on AWS (LZA) for new deployments
-
Customers MUST update their ASEA installer stack with the provided CloudFormation template for this release.
- This release includes important runtime and bug fix updates that customers should install. This release focuses on stability and preparing for the end of support.
- It's recommend customers on older versions upgrade to 1.5.7-b first before moving to v1.5.8.
- Upgrade testing for future releases will only be for upgrades from v1.5.8 or higher
- ASEA is currently in maintenance with no new features or enhancements planned. It's expected that a future Release will help customers upgrade from ASEA to LZA.
- End of support is expected in Q2 2025. Upgrades from ASEA to LZA will occur over the few quarters.
FEATURES
- None
FIXES
Release v1.5.7-b
NOTES
- Customers MUST use Landing Zone Accelerator on AWS (LZA) for new deployments
- Upgrade testing for future releases will only be for upgrades from v1.5.7-b or higher
- ASEA is currently in maintenance with no new features or enhancements planned. It's expected that a future Release will help customers upgrade from ASEA to LZA.
- End of support is expected in Q4 2024. Upgrades from ASEA to LZA will occur over the next year.
- Note that the Organization SCPs (in Reference Artifacts) have multiple changes to address AWS service changes, etc. Customers should review and reconcile differences between these reference artifacts and the SCPs they currently have in place.
FEATURES
- Configuration and docs to enable SSM Quick Setup patch policies (centralized patching) (#1157) (9478471)
- Implement versioning on ASEA Docs site (#1128) (7655c29)
FIXES
- Cloudwatch Logs customer subscription filters being removed (#1172) (10d3790)
- Policy changes rule must only revert SCPs; not backup or tag policies (#1169) (b363bf5)
- Multiple Organizations SCP updates (#1167) (30e9be4)
- Add support for EC2 IMDSv2 (#1161) (4e72dec)
- Fix sfn deployment (#1158) (caee051)
- Support for EC2 Launch templates (#1156) (e571cf2)
- Fix for EventBridge notifications sent to SNS (#1132) (4df28a9)
- Node 16 ASEA update (#1149) (d628fd8)