Skip to content

chore(deps): update terraform google to ~> 7.25.0#580

Open
red-hat-konflux[bot] wants to merge 1 commit intorelease-1.2from
konflux/mintmaker/release-1.2/google-7.x
Open

chore(deps): update terraform google to ~> 7.25.0#580
red-hat-konflux[bot] wants to merge 1 commit intorelease-1.2from
konflux/mintmaker/release-1.2/google-7.x

Conversation

@red-hat-konflux
Copy link
Copy Markdown

@red-hat-konflux red-hat-konflux bot commented Feb 10, 2026

This PR contains the following updates:

Package Type Update Change
google (source) provider minor ~> 7.18.0 -> ~> 7.25.0

Warning

Some dependencies could not be looked up. Check the warning logs for more information.


Release Notes

hashicorp/terraform-provider-google (google)

v7.25.0

Compare Source

FEATURES:

  • New Data Source: google_compute_network_endpoint_groups (#​26515)
  • New Resource: google_dialogflow_environment (#​26489)
  • New Resource: google_kms_project_autokey_config (#​26501)

IMPROVEMENTS:

  • backupdr: added disk_backup_plan_properties field to google_backup_dr_backup_plan resource (#​26497)
  • backupdr: made backup_rules optional in google_backup_dr_backup_plan resource (#​26494)
  • blockchainnodeengine: added ethereum_details.validator_config.beacon_fee_recipient field to google_blockchain_node_engine_blockchain_nodes resource (#​26499)
  • ces: added custom_headers field to MCP toolset in CES google_ces_toolset resource (#​26473)
  • compute: added expr field to google_compute_organization_security_policy_rule resource (#​26506)
  • compute: added location field to google_network_services_tls_route resource (#​26514)
  • compute: added target_proxies field to google_network_services_tls_route resource (#​26516)
  • compute: made backend_service field optional for resource google_compute_target_tcp_proxy (#​26519)
  • compute: made backend_service field optional for resource google_compute_region_target_tcp_proxy (#​26493)
  • iamworkforcepool: added detailed_audit_logging field to google_iam_workforce_pool_provider resource (#​26500)
  • kms: added key_project_resolution_mode field to google_kms_autokey_config resource (#​26501)
  • lustre: added maintenance_policy field to google_lustre_instance resource (#​26512)
  • sql: added point_in_time_restore_context.region field to google_sql_database_instance resource (#​26510)
  • vertexai: added deletion_policy field to resource_vertex_ai_reasoning_engine resource (#​26518)

BUG FIXES:

  • vertexai: fixed permadiff on spec field in google_vertex_ai_reasoning_engine resource (#​26470)

v7.24.0

Compare Source

DEPRECATIONS:

  • iamworkforcepool: deprecated extended_attributes_oauth2_client on google_iam_workforce_pool_provider. Use scim_usage instead. (#​26388)

FEATURES:

  • New Resource: google_biglake_iceberg_table (#​26394)
  • New Resource: google_contact_center_insights_auto_labeling_rule (#​26426)
  • New Resource: google_observability_trace_scope (#​26428)
  • New Resource: google_sql_provision_script (#​26432)

IMPROVEMENTS:

  • ces: added Service Account OAuth scopes fields to google_ces_toolset resource (#​26368)
  • cloudrunv2: added DISK fields to google_cloud_run_v2_service resource (#​26418)
  • cloudsql: added max_custom_on_demand_retention_days field to sqladmin resource (#​26407)
  • compute: added ForwardProxy field in google_compute_region_backend_service resource (#​26449)
  • compute: added accelerator_topology_mode field to google_compute_resource_policy resource (#​26383)
  • compute: added target_type and target_forwarding_rules on google_compute_region_network_firewall_policy_rule resource (#​26369)
  • compute: promoted the endpoint_url field in google_compute_service_attachment to GA (#​26434)
  • container: marked subnetwork as settable in google_container_node_pool (#​26416)
  • container: added disruption_budget field to google_container_cluster resource (#​26425)
  • discoveryengine: added search_engine_config.required_subscription_tier field to google_discovery_engine_search_engine resource (#​26398)
  • discoveryengine: marked content_config as optional field in google_discovery_engine_data_store (#​26398)
  • memorystore: added server_ca_mode and server_ca_pool fields to google_memorystore_instance resource (#​26437)
  • networkservices: relaxed authority validation in google_network_services_authz_extension for different target types (#​26386)
  • redis: added server_ca_mode and server_ca_pool fields to google_redis_cluster resource (#​26437)
  • sql: added clone_context.source_project field to google_sql_database_instance resource to support cross project clone (beta) (#​26384)
  • transport: added automatic retry for GCE 403 errors with reason CONCURRENT_OPERATIONS_QUOTA_EXCEEDED (#​26417)

BUG FIXES:

  • compute: fixed perpetual diff for oauth2_client_id in iap block of google_compute_backend_service and google_compute_region_backend_service when disabling IAP (#​26385)
  • datastream: fixed an issue in google_datastream_stream where source_config.mysql_source_config.binary_log_position would show a diff when unset (#​26435)
  • workbench: marked install-nvidia-driver metadata key as settable for google_workbench_instance (#​26402)

v7.23.0

Compare Source

DEPRECATIONS:

  • notebooks: google_notebooks_environment is deprecated and will be removed in a future major release. Use google_workbench_instance instead (#​26288)
  • provider: google_*_iam_* resources and datasources will now show deprecation messages when their parent resource has been deprecated (#​26288)

FEATURES:

  • New Data Source: google_oracle_database_odb_network (#​26290)
  • New Data Source: google_oracle_database_odb_subnet (#​26290)
  • New Resource: google_vector_search_collection (#​26353)

IMPROVEMENTS:

  • alloydb: added dataplex_config field to google_alloydb_cluster resource (#​26304)
  • biglake: added primary_location to google_biglake_iceberg_catalog resource (#​26307)
  • compute: added params field to google_compute_external_vpn_gateway resource (#​26348)
  • compute: added params field to google_compute_ha_vpn_gateway resource (#​26348)
  • compute: added params field to google_compute_vpn_gateway resource (#​26348)
  • compute: added params field to google_compute_vpn_tunnel resource (#​26348)
  • compute: added storage_pool support to google_compute_instance_template and google_compute_region_instance_template disks (#​26347)
  • container: added control_plane_disk_encryption_key_versions field to user_managed_keys_config in google_container_cluster resource (#​26289)
  • dataproc: added cluster_type to google_dataproc_cluster resource (#​26350)
  • dlp: added actions.publish_to_scc, actions.publish_to_chronicle, actions.export_data.sample_findings_table and targets.big_query_target.filter.table_reference.project_id fields to google_data_loss_prevention_discovery_config resource (#​26281)
  • gkebackup: added protected_namespace_count field to google_gke_backup_backup_plan resource (#​26283)
  • netapp: added mode field to google_netapp_storage_pool resource (#​26319)
  • osconfig: added patch_config.skip_unpatchable_vms field to google_os_config_patch_deployment resource (#​26282)
  • pubsub: added text_config field to google_pubsub_subscription resource (#​26329)

BUG FIXES:

  • tags: fixed iam read-after-write consistency issue with conditions in google_tags_tag_key_iam_member resource (#​26330)

v7.22.0

Compare Source

DEPRECATIONS:

  • dataplex: deprecated google_dataplex_data_asset. Use google_dataplex_data_product_data_asset instead. (#​26256)

FEATURES:

  • New Resource: google_compute_organization_security_policy_rule (#​26202)
  • New Resource: google_hypercomputecluster_cluster (#​26180)

IMPROVEMENTS:

  • compute: initialize_params.size is now updatable in-place in the google_compute_instance resource (#​26195)
  • compute: added dest_network_context, src_network_context and src_networks fields to google_compute_firewall_policy_rule resource (#​26227)
  • compute: added dest_network_context, src_network_context and src_networks fields to google_compute_network_firewall_policy_rule resource (#​26227)
  • compute: added dest_network_context, src_network_context and src_networks fields to google_compute_region_network_firewall_policy_rule resource (#​26227)
  • container: promoted sandbox_config field in google_container_cluster and google_container_node_pool resources to GA (#​26247)
  • developerconnect: added http_config field to google_developer_connect_connection resource (#​26232)
  • filestore: added source_backupdr_backup field to google_filestore_instance resource (#​26238)
  • gkehub2: added field spec.workloadidentity to resource google_gke_hub_feature (#​26259)
  • iam: added AZURE_AD_GROUPS_DISPLAY_NAME enum value to extra_attributes_oauth2_client.attribute-type field in google_iam_workforce_pool_provider resource (#​26226)
  • kms: added a KMS AutokeyConfig-specific 10s post-create/post-update (#​26236)
  • networksecurity: added url_filtering_profile field to google_network_security_security_profile_group resource (#​26266)
  • networksecurity: added url_filtering_profile field to google_network_security_security_profile resource (#​26266)
  • networkservices: added support for use of multiple ports for google_network_services_gateway resources of type SECURE_WEB_GATEWAY (#​26265)
  • sql: added auto_upgrade_enabled field to google_sql_database_instance resource. (#​26205)
  • sql: added data_api_access field to google_sql_database_instance resource (#​26217)
  • sql: added enhanced_query_insights_enabled field to google_sql_database_instance resource (#​26244)

BUG FIXES:

  • datastream: fixed permadiff where google_datastream_connection_profile.salesforce_profile.oauth2_client_credentials.client_id is not read properly from the API (#​26201)
  • servicenetworking: added retry when creating google_service_networking_connection if it looks like the service account permissions haven't yet propagated (#​26220)

v7.21.0

Compare Source

FEATURES:

  • New Data Source: google_vmwareengine_announcements (#​26145)
  • New Data Source: google_vmwareengine_upgrades (#​26174)
  • New Resource: google_compute_region_backend_bucket (#​26144)
  • New Resource: google_hypercomputecluster_cluster (#​26180)
  • New Resource: google_network_services_agent_gateway (beta) (#​26140)

IMPROVEMENTS:

  • beyondcorp: added logging field to google_beyondcorp_security_gateway resource (#​26159)
  • cloudfunctions2: added direct_vpc_network_interface and direct_vpc_egress fields to google_cloudfunctions2_function resource. Users who directly enabled DirectVPC on the underlying Cloud Run service will see a diff as a result of this update. (#​26142)
  • cloudrunv2: added the iap_enabled field to google_cloud_run_v2_service resource (#​26161)
  • dataproc: added wait_for_completion to google_dataproc_job resource (#​26177)
  • discoveryengine: added disable_analytics field to google_discovery_engine_search_engine resource (#​26171)
  • dlp: added targets.cloud_storage_target.filter.collection.include_tags block to google_data_loss_prevention_discovery_config resource (#​26178)
  • iap: added client_id, client_secret, and client_secret_sha256 fields to google_iap_settings resource (#​26170)
  • networksecurity: added mirroring_deployment_groups and mirroring_endpoint_group_type fields to google_network_security_security_profile resource (#​26137)

BUG FIXES:

  • cloudrun: fixed perma-diff on http_target.uri_override.query_override in google_cloud_tasks_queue (#​26172)
  • storage: fixed a bug in google_storage_bucket where force_destroy = true would fail to delete buckets with large number of objects due to missing pagination (#​26164)

v7.20.0

Compare Source

FEATURES:

  • New Data Source: google_access_context_manager_supported_service (#​26092)
  • New Data Source: google_access_context_manager_supported_services (#​26092)
  • New Data Source: google_backup_dr_data_sources (#​26080)
  • New Data Source: google_kms_secret_asymmetric (#​26096)
  • New Data Source: google_storage_bucket_object_contents (#​26054)
  • New Resource: google_biglake_iceberg_namespace (#​26076)
  • New Resource: google_compute_rollout_plan (#​26093)
  • New Resource: google_oracle_database_exadb_vm_cluster (#​26021)
  • New Resource: google_vector_search_collection (#​26098)

IMPROVEMENTS:

  • alloydb: added write-only support for initial_user.password_wo to google_alloydb_cluster (#​26074)
  • ces: added mcp_toolset field to google_ces_toolset resource (#​26025)
  • compute: added allow_subnet_cidr_routes_overlap field to google_compute_subnetwork resource (#​26019)
  • compute: added write-only support for private_key to google_compute_region_ssl_certificate resource (#​26072)
  • compute: added write-only support for private_key to google_compute_ssl_certificate resource (#​26072)
  • compute: added enable field to google_compute_packet_mirroring resource (#​26064)
  • compute: added params field to google_compute_external_vpn_gateway resource (#​26089)
  • compute: added params field to google_compute_ha_vpn_gateway resource (#​26089)
  • compute: added params field to google_compute_interconnect_attachment resource (#​26042)
  • compute: added params field to google_compute_vpn_gateway resource (#​26089)
  • compute: added params field to google_compute_vpn_tunnel resource (#​26089)
  • compute: added slice_controller_config field to google_container_cluster resource (#​26023)
  • container: added additional_ip_ranges_config.status to google_container_cluster resource (#​26061)
  • dataproc: added instance_flexibility_policy to master_config and worker_config in google_dataproc_cluster resource (#​26058)
  • developerconnect: added target_projects field to google_developer_connect_insights_config resource (#​26073)
  • filestore: added replica_action to google_filestore_instance resource (#​26082)
  • networksecurity: added policy_profile, http_rules.0.to.0.operations.0.mcp to google_network_security_authz_policy resource (#​26090)
  • networkservices: added ull_multicast_domain field to google_network_services_multicast_domain resource (#​26071)
  • networkservices: relaxed load_balancing_scheme validation to support non-Backend Service targets in google_network_services_authz_extension (#​26090)
  • spanner: added support for user_project_override in google_spanner_database_iam and google_spanner_instance_iam resources (#​26052)
  • vmwareengine: added datastore_mount_config field to google_vmwareengine_cluster resource (#​26083)

BUG FIXES:

  • bigquery: fixed permadiff with the collation field in google_bigquery_table.schema when it inherits the value from google_bigquery_dataset.default_collation (#​26065)
  • bigqueryanalyticshub: fixed update failure for replica_locations in google_bigquery_analytics_hub_listing (#​26046)
  • iam: fixed an issue where iam resources not retry on error 409 concurrent policy changes (#​26095)
  • publicca: fixed mac_key fields not being properly set in google_public_ca_external_account_key (#​26099)

v7.19.0

Compare Source

DEPRECATIONS:

  • backupdr: google_backupdr_restore_workload.name is deprecated and will be removed in a future major release. The backup is identified by the parameters (location, backup_vault_id, data_source_id, backup_id). (#​25986)
  • publicca: google_public_ca_external_account_key.b64url_mac_key is deprecated and will be removed in a future major release. Use mac_key instead. (#​25964)

FEATURES:

  • New Resource: google_network_security_mirroring_endpoint (#​25988)
  • New Resource: google_network_security_mirroring_endpoint_group (#​25988)
  • New Resource: google_backup_dr_restore_workload (#​26013)

IMPROVEMENTS:

  • compute: added network_pass_through_lb_traffic_policy field to google_compute_region_backend_service resource (#​25994)
  • compute: added RDMA_FALCON_POLICY and ULL_POLICY values to policy_type field in google_compute_region_network_firewall_policy, google_compute_region_network_firewall_policy_with_rules (#​25985)
  • compute: added support for network_interface.network_attachment to google_compute_instance_template (#​25995)
  • compute: added support for network_interface.network_attachment to google_compute_region_instance_template (#​25995)
  • compute: added support for network_interface.vlan to google_compute_instance_template, enabling dynamic NIC (#​25995)
  • compute: added support for network_interface.vlan to google_compute_instance, enabling dynamic NIC. Creating and deleting from an existing instance is not yet supported. (#​25995)
  • compute: added support for network_interface.vlan to google_compute_region_instance_template, enabling dynamic NIC (#​25995)
  • discoveryengine: added knowledge_graph_config field to google_discovery_engine_search_engine resource (#​25980)
  • firestore: added firestore_data_access_mode, mongodb_compatible_data_acess_mode, and realtime_updates_mode fields to the google_firestore_database resource (#​26000)
  • firestore: added deletion_policy virtual field to google_firestore_index resource (#​25984)
  • monitoring: added write-only variants (auth_token_wo + auth_token_wo_version, password_wo + password_wo_version, service_key_wo + service_key_wo_version) for google_monitoring_notification_channel.sensitive_labels (#​25983)
  • networkconnectivity: added support for update operation on google_network_connectivity_gateway_advertised_route resource (#​25945)
  • provider: added a configurable poll_interval field to the provider for rare cases where it is being used in latency-sensitive situations. This can be set to a custom duration to change operation polling intervals. The default is unchanged, at 10s. (#​26008)
  • publicca: added mac_key to google_public_ca_external_account_key (#​25964)
  • run: added readiness_probe field to google_cloud_run_v2_service resource (#​26003)
  • vertexai: added support for developer_connect_source to spec.source_code_spec in google_vertex_ai_reasoning_engine (#​26011)

BUG FIXES:

  • compute: fixed issue where it wasn't possible to set both ssl_certificates and certificate_map in google_compute_target_ssl_proxy (#​26012)
  • container: fixed an issue when toggling default_compute_class_enabled in google_container_cluster with Autopilot enabled (#​25966)
  • firebaseailogic: fixed bug in google_firebase_ai_logic_config.generative_language_config.api_key_wo where the value set wouldn't be sent to the API. (#​25983)
  • publicca: fixed b64url_mac_key sometimes being empty in google_public_ca_external_account_key (#​25964)

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

To execute skipped test pipelines write comment /ok-to-test.


Documentation

Find out how to configure dependency updates in MintMaker documentation or see all available configuration options in Renovate documentation.

@red-hat-konflux red-hat-konflux bot changed the title chore(deps): update terraform google to ~> 7.19.0 chore(deps): update terraform google to ~> 7.20.0 Feb 17, 2026
@red-hat-konflux red-hat-konflux bot force-pushed the konflux/mintmaker/release-1.2/google-7.x branch 2 times, most recently from f4dd080 to c8a9c44 Compare February 24, 2026 21:32
@red-hat-konflux red-hat-konflux bot changed the title chore(deps): update terraform google to ~> 7.20.0 chore(deps): update terraform google to ~> 7.21.0 Feb 24, 2026
@red-hat-konflux red-hat-konflux bot force-pushed the konflux/mintmaker/release-1.2/google-7.x branch from c8a9c44 to 964a8cb Compare March 3, 2026 22:27
@red-hat-konflux red-hat-konflux bot changed the title chore(deps): update terraform google to ~> 7.21.0 chore(deps): update terraform google to ~> 7.22.0 Mar 3, 2026
@red-hat-konflux red-hat-konflux bot force-pushed the konflux/mintmaker/release-1.2/google-7.x branch from 964a8cb to 235f6dc Compare March 10, 2026 22:56
@red-hat-konflux red-hat-konflux bot changed the title chore(deps): update terraform google to ~> 7.22.0 chore(deps): update terraform google to ~> 7.23.0 Mar 10, 2026
@red-hat-konflux red-hat-konflux bot force-pushed the konflux/mintmaker/release-1.2/google-7.x branch from 235f6dc to da7b97e Compare March 17, 2026 18:32
@red-hat-konflux red-hat-konflux bot changed the title chore(deps): update terraform google to ~> 7.23.0 chore(deps): update terraform google to ~> 7.24.0 Mar 17, 2026
Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
@red-hat-konflux red-hat-konflux bot force-pushed the konflux/mintmaker/release-1.2/google-7.x branch from da7b97e to 952a209 Compare March 24, 2026 22:27
@red-hat-konflux red-hat-konflux bot changed the title chore(deps): update terraform google to ~> 7.24.0 chore(deps): update terraform google to ~> 7.25.0 Mar 24, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants