- SAPHanaSR
-
- SAPHanaSR-monitor not reporting correctly
(bsc#1192963)
add patch:
0001-bsc-1192963.patch
- Version bump to 0.161.1_BF
- add the required 'xmllint' to the package
(bsc#1201945)
- changes to the demote_clone function of the resource agent:
if the role is '1:P' (topology agent run into timeouts) the
function fail with rc=1, to get the managed resource stopped
changes to the stop_clone function of the topology agent:
call landscapeHostConfiguration.py and set the roles as they were
reported. If the command timed out, set the role to '1:P' and
return 1 to get the node fenced.
The used timeout for the landscapeHostConfiguration.py call can
be configured by the cluster action timeout, if needed. It will
be 50% of the action timeout or the minimum of 300s.
(bsc#1198127)
- add new HA/DR provider hook susChkSrv
(jsc#PED-1241, jsc#PED-1240)
- add new tool SAPHanaSR-manageProvider to show, add and delete
HA/DR provider sections in the global.ini of SAP HANA.
- update suse icon to new branding
- Version bump to 0.160.1
- fix HANA_CALL function to support MCOS environments again
(bsc#1198780)
- fix SAPHanaSR-replay-archive to handle hb_report archives again
(bsc#1198897)
- add HANA_CALL_TIMEOUT parameter back to the resource agents and
read the setting from the cluster configuration, if available.
Defaults to '60'.
Related to github issue#36
- add new HA/DR provider hook susTkOver
(jsc#SLE-16347)
- add new hook script for SAP HANA System Replication Scale-Up Cost
Optimized Scenario.
(jsc#SLE-18613)
- add a new instance parameter 'REMOVE_SAP_SOCKETS'.
It is an optional parameter and defaults to 'true'. Now you can
control, if the RA should remove the unix domain sockets related
to sapstartsrv before (re-)start sapstartsrv or if it should try
to adjust the permissions and ownership of these files instead.
- aaa_base
-
- Drop patches (bsc#1199926 and bsc#1199927)
git-34-9a1bc15517d6da56d75182338c0f1bc4518b2b75.patch
git-35-91f496b1f65af29832192bad949685a7bc25da0a.patch
git-40-d004657a244d75b372a107c4f6097b42ba1992d5.patch
ping broke in sle15 and sle15sp1 when adding
the sysctl setting for ping_group_range
- Add patch git-46-78b2a0b29381c16bec6b2a8fc7eabaa9925782d7.patch
* The wrapper rootsh is not a restricted shell (bsc#1199492)
- aws-cli
-
- Update to version 1.24.4 (bsc#1199716)
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.24.4/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.24.1
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.24.1/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.23.11
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.23.11/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.23.1
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.23.1/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.22.87
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.22.87/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.22.65
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.22.65/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.22.46
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.22.46/CHANGELOG.rst
- Add missing python-rpm-macros to BuildRequires
- Update Requires in spec file from setup.py
- Update to version 1.22.35
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.22.35/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.22.28
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.22.28/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.22.24
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.22.24/CHANGELOG.rst
- Update Requires in spec file from setup.py
- Update to version 1.21.6
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.21.6/CHANGELOG.rst
- Relax upper version dependency for python-docutils in Requires
- Update Requires in spec file from setup.py
- Update to version 1.20.32
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.20.32/CHANGELOG.rst
- Fix rpmlint warnings
+ use defattr for default permissions
+ mark zsh completion file as a config file
- Use github download url as a Source0
- Update Requires in spec file from setup.py
- Update to version 1.20.7
+ For detailed changes see
https://github.com/aws/aws-cli/blob/1.20.7/CHANGELOG.rst
- Update Requires in spec file from setup.py
- bind
-
- Security Fixes:
* Previously, there was no limit to the number of database lookups
performed while processing large delegations, which could be abused
to severely impact the performance of named running as a recursive
resolver. This has been fixed.
[bsc#1203614, CVE-2022-2795, bind-CVE-2022-2795.patch]
* A memory leak was fixed that could be externally triggered in the
DNSSEC verification code for the ECDSA algorithm.
[bsc#1203619, CVE-2022-38177, bind-CVE-2022-38177.patch]
* Memory leaks were fixed that could be externally triggered in the
DNSSEC verification code for the EdDSA algorithm.
[bsc#1203620, CVE-2022-38178, bind-CVE-2022-38178.patch]
- ca-certificates-mozilla
-
- Updated to 2.56 state of Mozilla SSL root CAs (bsc#1202868)
Added:
- Certainly Root E1
- Certainly Root R1
- DigiCert SMIME ECC P384 Root G5
- DigiCert SMIME RSA4096 Root G5
- DigiCert TLS ECC P384 Root G5
- DigiCert TLS RSA4096 Root G5
- E-Tugra Global Root CA ECC v3
- E-Tugra Global Root CA RSA v3
Removed:
- Hellenic Academic and Research Institutions RootCA 2011
- Updated to 2.54 state of Mozilla SSL root CAs (bsc#1199079)
Added:
- Autoridad de Certificacion Firmaprofesional CIF A62634068
- D-TRUST BR Root CA 1 2020
- D-TRUST EV Root CA 1 2020
- GlobalSign ECC Root CA R4
- GTS Root R1
- GTS Root R2
- GTS Root R3
- GTS Root R4
- HiPKI Root CA - G1
- ISRG Root X2
- Telia Root CA v2
- vTrus ECC Root CA
- vTrus Root CA
Removed:
- Cybertrust Global Root
- DST Root CA X3
- DigiNotar PKIoverheid CA Organisatie - G2
- GlobalSign ECC Root CA R4
- GlobalSign Root CA R2
- GTS Root R1
- GTS Root R2
- GTS Root R3
- GTS Root R4
- updated to 2.50 state of the Mozilla NSS Certificate store (bsc#1188006)
- Added CAs:
+ HARICA Client ECC Root CA 2021
+ HARICA Client RSA Root CA 2021
+ HARICA TLS ECC Root CA 2021
+ HARICA TLS RSA Root CA 2021
+ TunTrust Root CA
- Updated to 2.46 state of the Mozilla NSS Certificate store (bsc#1181994)
- Added new root CAs:
- NAVER Global Root Certification Authority
- Removed old root CA:
- GeoTrust Global CA
- GeoTrust Primary Certification Authority
- GeoTrust Primary Certification Authority - G3
- GeoTrust Universal CA
- GeoTrust Universal CA 2
- thawte Primary Root CA
- thawte Primary Root CA - G2
- thawte Primary Root CA - G3
- VeriSign Class 3 Public Primary Certification Authority - G4
- VeriSign Class 3 Public Primary Certification Authority - G5
- cifs-utils
-
- CVE-2022-29869: mount.cifs: fix verbose messages on option parsing
(bsc#1198976, CVE-2022-29869)
* add cifs-utils-CVE-2022-29869.patch
- cloud-regionsrv-client
-
- Follow up fix to 10.0.4 (bsc#1202706)
- While the source code was updated to support SLE Micro the spec file
was not updated for the new locations of the cache and the certs.
Update the spec file to be consistent with the code implementation.
- Update to version 10.0.5 (bsc#1201612)
- Handle exception when trying to deregister a system form the server
- Update to version 10.0.4 (bsc#1199668)
- Store the update server certs in the /etc path instead of /usr to
accomodate read only setup of SLE-Micro
- crmsh
-
- Update to version 4.3.1+20220610.733357e2:
* Dev: crm report: put info/warning/debug messages into stdout
* Fix: crm report: use sudo when under non root and hacluster user (bsc#1199634)
* Fix: utils: wait4dc: Make change since output of 'crmadmin -S' changed(bsc#1199412)
* Fix: bootstrap: stop and disable csync2.socket on removed node (bsc#1199325)
- cups
-
- cups-branch-2.2-commit-3e4dd41459dabc5d18edbe06eb5b81291885204b.diff
is 'git show 3e4dd41459dabc5d18edbe06eb5b81291885204b' for
https://github.com/apple/cups/commit/3e4dd41459dabc5d18edbe06eb5b81291885204b
(except the not needed hunk for patching CHANGES.md which fails)
that fixes handling of MaxJobTime 0 (Issue #5438) in the CUPS 2.2 branch
bsc#1201511:
Stuck print jobs being cancelled immediately, despite MaxJobTime being set to 0
- curl
-
- Security Fix: [bsc#1204383, CVE-2022-32221]
* POST following PUT confusion
* Add curl-CVE-2022-32221.patch
- Security fix: [bsc#1202593, CVE-2022-35252]
* Control codes in cookie denial of service
* Add curl-CVE-2022-35252.patch
- cyrus-sasl
-
- bsc#1159635 VUL-0: CVE-2019-19906: cyrus-sasl: cyrus-sasl
has an out-of-bounds write leading to unauthenticated remote
denial-of-service in OpenLDAP via a malformed LDAP packet
o apply upstream patch
- 0001-Fix-587.patch
- cyrus-sasl-saslauthd
-
- bsc#1159635 VUL-0: CVE-2019-19906: cyrus-sasl: cyrus-sasl
has an out-of-bounds write leading to unauthenticated remote
denial-of-service in OpenLDAP via a malformed LDAP packet
o apply upstream patch
- 0001-Fix-587.patch
- dbus-1
-
- Fix a potential crash that could be triggered by an invalid signature.
(CVE-2022-42010, bsc#1204111)
* fix-upstream-CVE-2022-42010.patch
- Fix an out of bounds read caused by a fixed length array (CVE-2022-42011,
bsc#1204112)
* fix-upstream-CVE-2022-42011.patch
- A message in non-native endianness with out-of-band Unix file descriptors
would cause a use-after-free and possible memory corruption CVE-2022-42012,
bsc#1204113)
* fix-upstream-CVE-2022-42012.patch
- Disable asserts (bsc#1087072)
- Refreshed patches
* fix-upstream-CVE-2020-35512.patch
- docker
-
- Backport <https://github.com/containerd/fifo/pull/32> to fix a crash-on-start
issue with dockerd. bsc#1200022
+ 0007-bsc1200022-fifo.Close-prevent-possible-panic-if-fifo.patch
- dracut
-
- Update to version 049.1+suse.238.gd8dbb075:
* fix(nfs): /var is not mounted during the transactional-update run (bsc#1184970)
* fix(nfs): give /run/rpcbind ownership to rpc user (bsc#1177461)
- expat
-
- Security fix:
* (CVE-2022-43680, bsc#1204708) use-after free caused by overeager
destruction of a shared DTD in XML_ExternalEntityParserCreate in
out-of-memory situations
- Added patch expat-CVE-2022-43680.patch
- Security fix:
* (CVE-2022-40674, bsc#1203438) use-after-free in the doContent
function in xmlparse.c
- Added patch expat-CVE-2022-40674.patch
- fence-agents
-
- Azure fence agent doesn’t work correctly on SLES15 SP3 - fence_azure_arm
fails with error 'MSIAuthentication' object has no attribute 'get_token' - SFSC00334437
(bsc#1195891)
- Apply proposed patch
0001-fix_support_for_sovereign_clouds_and_MSI-439.patch
- freetype2
-
- disable brotli linkage / WOFF2 support for now to keep dependencies
as before.
- Added patches:
* CVE-2022-27404.patch
+ fixes bsc#1198830, CVE-2022-27404: Buffer Overflow
* CVE-2022-27405.patch
+ fixes bsc#1198832, CVE-2022-27405: Segmentation Fault
* CVE-2022-27406.patch
+ fixes bsc#1198823, CVE-2022-27406: Segmentation violation
- Update to version 2.10.4
* Fix a heap buffer overflow has been found in the handling of
embedded PNG bitmaps, introduced in FreeType version 2.6
(CVE-2020-15999 bsc#1177914)
* Minor improvements to the B/W rasterizer.
* Auto-hinter support for Medefaidrin script.
* Fix various memory leaks (mainly for CFF) and other issues that
might cause crashes in rare circumstances.
- Update to version 2.10.2
* Support for WOFF2 fonts, add BR on pkgconfig(libbrotlidec)
* Function `FT_Get_Var_Axis_Flags' returned random data for Type 1
MM fonts.
* Type 1 fonts with non-integer metrics are now supported by the new
(CFF) engine introduced in FreeType 2.9.
* Drop support for Python 2 in Freetype's API reference generator
* Auto-hinter support for Hanifi Rohingya
* Document the `FT2_KEEP_ALIVE' debugging environment variable.
- gdk-pixbuf
-
- Add gdk-pixbuf-CVE_2021-44648.patch: check for maximum LZW code
size (boo#1194633 CVE-2021-44648). Also add
gdk_pixbuf_new_tests.tar.xz for some new gif tests.
- Add gdk-pixbuf-CVE-2021-46829.patch: check for overflow when
compositing or clearing frames (boo#1201826 CVE-2021-46829).
- gnutls
-
- Security fix: [bsc#1202020, CVE-2022-2509]
* Fixed double free during verification of pkcs7 signatures
* Add gnutls-CVE-2022-2509.patch
- gpg2
-
- Security fix [CVE-2022-34903, bsc#1201225]
- Vulnerable to status injection
- Added patch gnupg-CVE-2022-34903.patch
- harfbuzz
-
- Add harfbuzz-CVE-2022-33068.patch: sbix: limit glyph extents
(boo#1200900 CVE-2022-33068).
- icu
-
- Backport icu-CVE-2020-21913.patch: backport commit 727505bdd
from upstream, use LocalMemory for cmd to prevent use after free
(bsc#1193951 CVE-2020-21913).
- ipmitool
-
- When really starting the daemon, in lib/helper.c::ipmi_start_daemon()
stdin/stdout/stderr are redirected to /dev/null and this is checked
but the check for stderr tests for STDOUT_FILENO. This is, most
likely, a copy-paste error.
[bsc#1175328, 0007-bsc#1175328-check-for-correct-fd.patch]
- Do not append the device number to the PIDFILE pathname
as this will confuse systemd.
[bsc#1181063, 0008-bsc#1181063-dont-parametrize-pidfile-name.patch]
- iputils
-
- Add fix for ICMP datagram socket ping6-Fix-device-binding.patch
(bsc#1196840, bsc#1199918, bsc#1199926, bsc#1199927).
- java-1_8_0-ibm
-
- Update to Java 8.0 Service Refresh 7 Fix Pack 11 [bsc#1202427]
[bsc#1201684, CVE-2022-34169] [bsc#1201692, CVE-2022-21541]
[bsc#1201685, CVE-2022-21549] [bsc#1201694, CVE-2022-21540]
* Defect Fixes:
- Java Virtual Machine: Long dely in AttachAPI
- Update to Java 8.0 Service Refresh 7 Fix Pack 10 [bsc#1201643]
[bsc#1198671, CVE-2022-21476] [bsc#1198670, CVE-2022-21449]
[bsc#1198673, CVE-2022-21496] [bsc#1198674, CVE-2022-21434]
[bsc#1198672, CVE-2022-21426] [bsc#1198675, CVE-2022-21443]
[bsc#1191912, CVE-2021-35561] [bsc#1194931, CVE-2022-21299]
* Class Libraries:
- BigDecimal gives incorrect arithmetic results for the add
and subtract operations on the result of a divide
* Java Virtual Machine:
- jstacktrace sub-option of xtrace doesn't print java stack
while doing method trace
* Security:
- 8217633: Configurable Extensions with system properties
- 8241248: NullPointerException in com.ibm.jsse2.ssl.HKDF.extract
- 8270344: Session resumption errors
- 8277967: Validate the SSLLogger object in KeyShareExtension
- JVM crashes computing Diffie-Hellman shared secrets and JNI
errors while creating elliptic curve public key using IBMJCEPlus
- Key Certificate Manager authority key identifier value incorrect
- SSLv2Hello property value is ignored if specified in
jdk.tls.disabledAlgorithms and SSLv2Hello is set by
setEnabledProtocols()
- There is a memory growth observed during digest operations
using IBMJCEPlus as the provider.
- Update to Java 8.0 Service Refresh 7 Fix Pack 6
* Java Virtual Machine: Crash while generating javacore, or
javacore contains 'Unable to walk in-flight data on call stack'
instead of java stack
* JIT Compiler:
- Java JIT, bad field reference from a tenured object into
the nursery
- JIT compiler crash with vmstate=0x0005ff04
* XML: Fix security vulnerability CVE-2022-21299
- kernel-default
-
- wifi: cfg80211: avoid nontransmitted BSS list corruption
(CVE-2022-42721 bsc#1204060).
- commit ad43041
- wifi: mac80211: fix MBSSID parsing use-after-free
(CVE-2022-42719 bsc#1204051).
- commit 561b313
- wifi: mac80211: refactor elements parsing with parameter struct
(CVE-2022-42719 bsc#1204051).
- commit 7b3171e
- mac80211: fix memory leaks with element parsing (CVE-2022-42719
bsc#1204051).
- mac80211: always allocate struct ieee802_11_elems
(CVE-2022-42719 bsc#1204051).
- commit 1d0e42c
- wifi: cfg80211: fix BSS refcounting bugs (CVE-2022-42720
bsc#1204059).
- cfg80211: hold bss_lock while updating nontrans_list
(CVE-2022-42719 bsc#1204051).
- mac80211: mlme: find auth challenge directly (CVE-2022-42719
bsc#1204051).
- mac80211: move CRC into struct ieee802_11_elems (CVE-2022-42719
bsc#1204051).
- mac80211: don't re-parse elems in ieee80211_assoc_success()
(CVE-2022-42719 bsc#1204051).
- commit 36cb3f6
- Add CVE reference on lightnvm removal patch
modified:
- patches.drivers/lightnvm-remove-lightnvm-implemenation.patch
- commit 6251214
- Guard out the mana driver update
The patches were not ready yet, I accidentally picked them up too
early. Guard them out until they have been properly backported.
Note: this means that despite what the changelog suggests,
jsc#PED-529 is NOT implemented yet.
- commit 4de885b
- char: pcmcia: synclink_cs: Fix use-after-free in mgslpc_ops
(CVE-2022-41848 bsc#1203987).
- commit c6f643b
- fbdev: smscufx: Fix use-after-free in ufx_ops_open()
(CVE-2022-41849 bsc#1203992).
- commit 1b1c9cc
- net: mana: Add support of XDP_REDIRECT action (bug#1201310, jsc#PED-529).
- commit d4f48f2
- net: mana: Add the Linux MANA PF driver (bug#1201309, jsc#PED-529).
- commit 8429558
- wifi: cfg80211: ensure length byte is present before access
(CVE-2022-41674 bsc#1203770).
- wifi: cfg80211/mac80211: reject bad MBSSID elements
(CVE-2022-41674 bsc#1203770).
- wifi: cfg80211: fix u8 overflow in
cfg80211_update_notlisted_nontrans() (CVE-2022-41674
bsc#1203770).
- commit a878ee7
- mm/mremap: hold the rmap lock in write mode when moving page
table entries (CVE-2022-41222 bsc#1203622).
- commit 07909f0
- ALSA: pcm: oss: Fix race at SNDCTL_DSP_SYNC (CVE-2022-3303
bsc#1203769).
- commit aa1dc74
- Move upstreamed patches into sorted section
- commit 8fc0f8a
- media: dvb-core: Fix UAF due to refcount races at releasing
(CVE-2022-41218 bsc#1202960).
- commit 260d985
- media: em28xx: initialize refcount before kref_get
(CVE-2022-3239 bsc#1203552).
- commit b9d53ba
- dm verity: set DM_TARGET_IMMUTABLE feature flag (CVE-2022-2503,
bsc#1202677).
- commit cb91fc5
- x86/bugs: Reenable retbleed=off
While for older kernels the return thunks are statically built in and
cannot be dynamically patched out, retbleed=off should still work so
that it can be disabled.
- Update
patches.suse/x86-bugs-Add-AMD-retbleed-boot-parameter.patch
(bsc#1199657 CVE-2022-29900 CVE-2022-29901 bsc#1203271).
- Update patches.suse/x86-bugs-Enable-STIBP-for-JMP2RET.patch
(bsc#1199657 CVE-2022-29900 CVE-2022-29901 bsc#1203271).
- commit eb85c2d
- Update references:
- patches.kabi/kabi-return-type-change-of-secure_ipv-46-_port_ephem.patch
- patches.suse/secure_seq-use-the-64-bits-of-the-siphash-for-port-o.patch
- patches.suse/tcp-add-small-random-increments-to-the-source-port.patch
- patches.suse/tcp-drop-the-hash_32-part-from-the-index-calculation.patch
- patches.suse/tcp-dynamically-allocate-the-perturb-table-used-by-s.patch
- patches.suse/tcp-increase-source-port-perturb-table-to-2-16.patch
- patches.suse/tcp-resalt-the-secret-every-10-seconds.patch
- patches.suse/tcp-use-different-parts-of-the-port_offset-for-index.patch
(add CVE-2022-32296 bsc#1200288)
- commit d9e9e6c
- mmc: block: fix read single on recovery logic (CVE-2022-20008
bsc#1199564).
- commit de3f02b
- dccp: don't duplicate ccid when cloning dccp sock
(CVE-2020-16119 bsc#1177471).
- commit 7c77568
- netfilter: nf_tables: do not allow RULE_ID to refer to another
chain (CVE-2022-2586 bsc#1202095).
- netfilter: nf_tables: do not allow SET_ID to refer to another
table (CVE-2022-2586 bsc#1202095).
- commit 9335568
- mm: pagewalk: Fix race between unmap and page walker (git-fixes,
bsc#1203159).
- commit 173564a
- mm: Force TLB flush for PFNMAP mappings before unlink_file_vma()
(CVE-2022-39188, bsc#1203107).
- commit 84aac57
- netfilter: nf_conntrack_irc: Tighten matching on DCC message
(CVE-2022-2663 bsc#1202097).
- netfilter: nf_conntrack_irc: Fix forged IP logic (CVE-2022-2663
bsc#1202097).
- commit a949534
- mm/rmap: Fix anon_vma->degree ambiguity leading to double-reuse
(git-fixes, bsc#1203098).
kABI: Fix kABI after "/mm/rmap: Fix anon_vma->degree ambiguity
leading to double-reuse"/ (git-fixes, bsc#1203098).
- commit cfac9ee
- rpm/kernel-source.spec.in: simplify finding of broken symlinks
"/find -xtype l"/ will report them, so use that to make the search a bit
faster (without using shell).
- commit 13bbc51
- mkspec: eliminate @NOSOURCE@ macro
This should be alsways used with @SOURCES@, just include the content
there.
- commit 403d89f
- kernel-source: include the kernel signature file
We assume that the upstream tarball is used for released kernels.
Then we can also include the signature file and keyring in the
kernel-source src.rpm.
Because of mkspec code limitation exclude the signature and keyring from
binary packages always - mkspec does not parse spec conditionals.
- commit e76c4ca
- kernel-binary: move @NOSOURCE@ to @SOURCES@ as in other packages
- commit 4b42fb2
- dtb: Do not include sources in src.rpm - refer to kernel-source
Same as other kernel binary packages there is no need to carry duplicate
sources in dtb packages.
- commit 1bd288c
- af_key: Do not call xfrm_probe_algs in parallel (bsc#1202898
CVE-2022-3028).
- commit 50479c7
- Update patch reference for USB gadget fix (CVE-2020-27784 bsc#1202895)
- commit 8033d12
- xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like
fallocate (bsc#1194272 CVE-2021-4155).
- commit 049d5e6
- bpf: Don't use tnum_range on array range checking for poke
descriptors (bsc#1202564 bsc#1202860 CVE-2022-2905).
- commit c59b8fc
- tpm: fix reference counting for struct tpm_chip (CVE-2022-2977
bsc#1202672).
- commit b71aab0
- cifs: fix uninitialized pointer in error case in
dfs_cache_get_tgt_share (bsc#1188944).
- commit 6366996
- cifs: skip trailing separators of prefix paths (bsc#1188944).
- commit 6e6a2e7
- fuse: handle kABI change in struct sock (bsc#1194535
CVE-2021-4203).
- commit 53bc420
- af_unix: fix races in sk_peer_pid and sk_peer_cred accesses
(bsc#1194535 CVE-2021-4203).
- commit 603bd9d
- net_sched: cls_route: disallow handle of 0 (bsc#1202393).
- net_sched: cls_route: remove from list when handle is 0
(CVE-2022-2588 bsc#1202096).
- commit b08a235
- lightnvm: Remove lightnvm implemenation (bsc#1191881 bsc#1201420
ZDI-CAN-17325).
- commit 1b534db
- ext4: Fix check for block being out of directory size
(bsc#1198577 CVE-2022-1184).
- commit e41d129
- ext4: make sure ext4_append() always allocates new block
(bsc#1198577 CVE-2022-1184).
- commit 5c3a0a2
- ext4: check if directory block is within i_size (bsc#1198577
CVE-2022-1184).
- commit d289dcd
- Update config files (bsc#1201361 bsc#1192968 https://github.com/rear/rear/issues/2554).
ppc64: NVRAM=y
- commit dc3f9b9
- Refresh
patches.suse/x86-speculation-Add-RSB-VM-Exit-protections.patch.
- Updated
patches.suse/x86-speculation-change-fill_return_buffer-to-work-with-objtool.patch.
Add missing objtool annotations from upstream commits and update the latter
patch to fix bsc#1202396.
- commit 377da7c
- objtool: Add support for intra-function calls (bsc#1202396).
- commit a72253f
- objtool: Remove INSN_STACK (bsc#1202396).
- commit c38cd13
- objtool: Make handle_insn_ops() unconditional (bsc#1202396).
- commit 493d9e5
- objtool: Rework allocating stack_ops on decode (bsc#1202396).
- commit 8697c43
- objtool: Support multiple stack_op per instruction
(bsc#1202396).
- Refresh
patches.suse/objtool-allow-no-op-cfi-ops-in-alternatives.patch.
- Refresh
patches.suse/objtool-fix-cfi-insn_state-propagation.patch.
- Refresh patches.suse/objtool-fix-orc-vs-alternatives.patch.
- Refresh patches.suse/objtool-rename-struct-cfi_state.patch.
- commit db13a33
- kabi: return type change of secure_ipv_port_ephemeral()
(CVE-2022-1012 bsc#1199482).
- tcp: drop the hash_32() part from the index calculation
(CVE-2022-1012 bsc#1199482).
- tcp: increase source port perturb table to 2^16 (CVE-2022-1012
bsc#1199482).
- tcp: dynamically allocate the perturb table used by source ports
(CVE-2022-1012 bsc#1199482).
- tcp: add small random increments to the source port
(CVE-2022-1012 bsc#1199482).
- tcp: resalt the secret every 10 seconds (CVE-2022-1012
bsc#1199482).
- tcp: use different parts of the port_offset for index and offset
(CVE-2022-1012 bsc#1199482).
- secure_seq: use the 64 bits of the siphash for port offset
calculation (CVE-2022-1012 bsc#1199482).
- tcp: add some entropy in __inet_hash_connect() (bsc#1180153).
- tcp: change source port randomizarion at connect() time
(bsc#1180153).
- commit 11d737c
- rpm/kernel-binary.spec.in: move vdso to a separate package (bsc#1202385)
We do the move only on 15.5+.
- commit 9c7ade3
- rpm/kernel-binary.spec.in: simplify find for usrmerged
The type test and print line are the same for both cases. The usrmerged
case only ignores more, so refactor it to make it more obvious.
- commit 583c9be
- xfrm: xfrm_policy: fix a possible double xfrm_pols_put()
in xfrm_bundle_lookup() (CVE-2022-36879 bsc#1201948).
- commit 97b83f0
- net/packet: fix slab-out-of-bounds access in packet_recvmsg()
(CVE-2022-20368 bsc#1202346).
- commit e8bbbca
- media: v4l2-mem2mem: Apply DST_QUEUE_OFF_BASE on MMAP buffers
across ioctls (bsc#1202347 CVE-2022-20369).
- commit 36d8575
- md/bitmap: don't set sb values if can't pass sanity check
(bsc#1197158).
- commit 5acc079
- x86/speculation: Add LFENCE to RSB fill sequence (bsc#1201726
CVE-2022-26373).
- commit 470f698
- x86/speculation: Add RSB VM Exit protections (bsc#1201726
CVE-2022-26373).
- commit 93929be
- acpi: Disable APEI error injection if the kernel is locked down
(bsc#1023051, CVE-2016-3695).
- commit 80750a7
- x86/speculation: Change FILL_RETURN_BUFFER to work with objtool
(bsc#1201726 CVE-2022-26373).
- commit 29edec0
- openvswitch: fix OOB access in reserve_sfa_size() (CVE-2022-2639
bsc#1202154).
- commit bfc6551
- ipv4: avoid using shared IP generator for connected sockets
(CVE-2020-36516 bsc#1196616).
- ipv4: tcp: send zero IPID in SYNACK messages (CVE-2020-36516
bsc#1196616).
- commit 6c53c05
- Fix parsing of rpm/macros.kernel-source on SLE12 (bsc#1201019).
- commit 9816878
- netfilter: nf_queue: do not allow packet truncation below
transport header offset (bsc#1201940 CVE-2022-36946).
- commit f4f33cd
- KVM: emulate: do not adjust size of fastop and setcc subroutines
(bsc#1201930).
- commit c66c17b
- kvm/emulate: Fix SETcc emulation function offsets with SLS
(bsc#1201930).
- Refresh
patches.suse/x86-kvm-Fix-SETcc-emulation-for-return-thunks.patch.
- commit 46a6214
- Refresh
patches.suse/x86-prepare-asm-files-for-straight-line-speculation.patch.
- commit f2664df
- Update
patches.suse/netfilter-nf_tables-disallow-non-stateful-expression.patch
references (add CVE-2022-32250).
- commit 8871b3f
- net/sched: cls_u32: fix netns refcount changes in u32_change()
(CVE-2022-29581 bsc#1199665).
- commit e1d6992
- fsnotify: invalidate dcache before IN_DELETE event
(bsc#1195478i bsc#1200905).
- commit 7cf8b1d
- kABI workaround for including mm.h in fs/sysfs/file.c
(bsc#1200598 cve-2022-20166).
- commit 29d7d8a
- Update patches.suse/vt-vt_ioctl-fix-race-in-VT_RESIZEX.patch
(git-fixes bsc#1200910 CVE-2020-36558).
Add references.
- commit d84e9d7
- Fix 1201644, 1201664, 1201672, 1201673, 1201676
All are reports of the same problem - the IBRS_* regs push/popping was
wrong but it needs
1b331eeea7b8 ("/x86/entry: Remove skip_r11rcx"/)
too.
- commit 161f935
- Update
patches.suse/vt-vt_ioctl-fix-VT_DISALLOCATE-freeing-in-use-virtua.patch
(git-fixes bsc#1201429 CVE-2020-36557).
Add references.
- commit 76ab189
- lockdown: Fix kexec lockdown bypass with ima policy
(CVE-2022-21505 bsc#1201458).
- commit 5806b46
- x86/entry: Remove skip_r11rcx (bsc#1201644).
- Refresh
patches.suse/x86-entry-Add-kernel-IBRS-implementation.patch.
- commit 2479e4a
- x86/bugs: Remove apostrophe typo (bsc#1114648).
- commit 783ffdb
- Sort in RETbleed backport into the sorted section
Now that it is upstream...
- Refresh
patches.suse/KVM-VMX-Convert-launched-argument-to-flags.patch.
- Refresh
patches.suse/KVM-VMX-Fix-IBRS-handling-after-vmexit.patch.
- Refresh patches.suse/KVM-VMX-Flatten-__vmx_vcpu_run.patch.
- Refresh
patches.suse/KVM-VMX-Prevent-RSB-underflow-before-vmenter.patch.
- Refresh
patches.suse/KVM-VMX-Prevent-guest-RSB-poisoning-attacks-with-eIBRS.patch.
- Refresh
patches.suse/KVM-x86-speculation-Disable-Fill-buffer-clear-within-guests.patch.
- Refresh
patches.suse/documentation-hw-vuln-update-spectre-doc.patch.
- Refresh
patches.suse/intel_idle-Disable-IBRS-during-long-idle.patch.
- Refresh patches.suse/x86-Add-magic-AMD-return-thunk.patch.
- Refresh patches.suse/x86-Undo-return-thunk-damage.patch.
- Refresh patches.suse/x86-Use-return-thunk-in-asm-code.patch.
- Refresh patches.suse/x86-bpf-Use-alternative-RET-encoding.patch.
- Refresh
patches.suse/x86-bugs-Add-AMD-retbleed-boot-parameter.patch.
- Refresh patches.suse/x86-bugs-Add-retbleed-ibpb.patch.
- Refresh
patches.suse/x86-bugs-Do-IBPB-fallback-check-only-once.patch.
- Refresh
patches.suse/x86-bugs-Do-not-enable-IBPB-on-entry-when-IBPB-is-not-supp.patch.
- Refresh patches.suse/x86-bugs-Enable-STIBP-for-JMP2RET.patch.
- Refresh
patches.suse/x86-bugs-Group-MDS-TAA-Processor-MMIO-Stale-Data-mitigations.patch.
- Refresh
patches.suse/x86-bugs-Keep-a-per-CPU-IA32_SPEC_CTRL-value.patch.
- Refresh
patches.suse/x86-bugs-Optimize-SPEC_CTRL-MSR-writes.patch.
- Refresh
patches.suse/x86-bugs-Report-AMD-retbleed-vulnerability.patch.
- Refresh
patches.suse/x86-bugs-Report-Intel-retbleed-vulnerability.patch.
- Refresh
patches.suse/x86-bugs-Split-spectre_v2_select_mitigation-and-spectre_v2.patch.
- Refresh
patches.suse/x86-common-Stamp-out-the-stepping-madness.patch.
- Refresh patches.suse/x86-cpu-amd-Add-Spectral-Chicken.patch.
- Refresh patches.suse/x86-cpu-amd-Enumerate-BTC_NO.patch.
- Refresh
patches.suse/x86-cpufeatures-Move-RETPOLINE-flags-to-word-11.patch.
- Refresh
patches.suse/x86-entry-Add-kernel-IBRS-implementation.patch.
- Refresh
patches.suse/x86-kvm-Fix-SETcc-emulation-for-return-thunks.patch.
- Refresh patches.suse/x86-retpoline-Use-mfunction-return.patch.
- Refresh
patches.suse/x86-sev-Avoid-using-__x86_return_thunk.patch.
- Refresh
patches.suse/x86-speculation-Add-a-common-function-for-MD_CLEAR-mitigation-update.patch.
- Refresh
patches.suse/x86-speculation-Add-spectre_v2-ibrs-option-to-support-Kern.patch.
- Refresh
patches.suse/x86-speculation-Fill-RSB-on-vmexit-for-IBRS.patch.
- Refresh
patches.suse/x86-speculation-Fix-SPEC_CTRL-write-on-SMT-state-change.patch.
- Refresh
patches.suse/x86-speculation-Fix-firmware-entry-SPEC_CTRL-handling.patch.
- Refresh
patches.suse/x86-speculation-Remove-x86_spec_ctrl_mask.patch.
- Refresh
patches.suse/x86-speculation-Use-cached-host-SPEC_CTRL-value-for-guest-.patch.
- Refresh
patches.suse/x86-speculation-add-eibrs-retpoline-options.patch.
- Refresh
patches.suse/x86-speculation-include-unprivileged-ebpf-status-in-spectre-v2-mitigation-reporting.patch.
- Refresh
patches.suse/x86-speculation-mmio-Add-mitigation-for-Processor-MMIO-Stale-Data.patch.
- Refresh
patches.suse/x86-speculation-mmio-Add-sysfs-reporting-for-Processor-MMIO-Stale-Data.patch.
- Refresh
patches.suse/x86-speculation-mmio-Enable-CPU-Fill-buffer-clearing-on-idle.patch.
- Refresh
patches.suse/x86-speculation-mmio-Enumerate-Processor-MMIO-Stale-Data-bug.patch.
- Refresh
patches.suse/x86-speculation-mmio-Reuse-SRBDS-mitigation-for-SBDS.patch.
- Refresh
patches.suse/x86-speculation-rename-retpoline_amd-to-retpoline_lfence.patch.
- Refresh
patches.suse/x86-speculation-srbds-Update-SRBDS-mitigation-selection.patch.
- Refresh
patches.suse/x86-speculation-use-generic-retpoline-by-default-on-amd.patch.
- Refresh
patches.suse/x86-vsyscall_emu-64-Don-t-use-RET-in-vsyscall-emulation.patch.
- Refresh patches.suse/x86-xen-Rename-SYS-entry-points.patch.
- commit 43fbd8f
- Refresh
patches.suse/x86-bugs-Do-not-enable-IBPB-on-entry-when-IBPB-is-not-supp.patch.
- commit 648f79b
- kernel-obs-build: include qemu_fw_cfg (boo#1201705)
- commit e2263d4
- mm: and drivers core: Convert hugetlb_report_node_meminfo to
sysfs_emit (bsc#1200598 cve-2022-20166).
- commit 6f05f26
- drivers core: Miscellaneous changes for sysfs_emit (bsc#1200598
cve-2022-20166).
- commit 6ff7ebb
- drivers core: Remove strcat uses around sysfs_emit and neaten
(bsc#1200598 cve-2022-20166).
- commit 4cafd1f
- vt: drop old FONT ioctls (bsc#1201636 CVE-2021-33656).
- commit bcf7213
- drivers core: Use sysfs_emit and sysfs_emit_at for show(device
* ...) functions (bsc#1200598 cve-2022-20166).
- commit 747b6a7
- sysfs: Add sysfs_emit and sysfs_emit_at to format sysfs output
(bsc#1200598 cve-2022-20166).
- commit 4aaf7f0
- fbmem: Check virtual screen sizes in fb_set_var()
(CVE-2021-33655 bsc#1201635).
- fbcon: Prevent that screen size is smaller than font size
(CVE-2021-33655 bsc#1201635).
- fbcon: Disallow setting font bigger than screen size
(CVE-2021-33655 bsc#1201635).
- commit a7693d8
- rpm/kernel-binary.spec.in: Require dwarves >= 1.22 on SLE15-SP3 or newer
Dwarves 1.22 or newer is required to build kernels with BTF information
embedded in modules.
- commit ee19e9d
- pty: do tty_flip_buffer_push without port->lock in pty_write
(bsc#1198829 CVE-2022-1462).
- commit ce8f318
- tty: use new tty_insert_flip_string_and_push_buffer() in
pty_write() (bsc#1198829 CVE-2022-1462).
- tty: extract tty_flip_buffer_commit() from
tty_flip_buffer_push() (bsc#1198829 CVE-2022-1462).
- commit cbf8ad3
- io_uring: fix fs->users overflow (CVE-2022-1116, bsc#1199647).
- commit e8dfed6
- net: rose: fix UAF bugs caused by timer handler (CVE-2022-2318
bsc#1201251).
- commit 84c7e09
- xen/netfront: force data bouncing when backend is untrusted
(bsc#1200762, CVE-2022-33741, XSA-403).
- commit 7daee4f
- xen/netfront: fix leaking data in shared pages (bsc#1200762,
CVE-2022-33740, XSA-403).
- commit bfb8cc2
- xen/blkfront: force data bouncing when backend is untrusted
(bsc#1200762, CVE-2022-33742, XSA-403).
- commit 9c6c1df
- xen/blkfront: fix leaking data in shared pages (bsc#1200762,
CVE-2022-26365, XSA-403).
- commit 7095954
- Add dtb-starfive
- commit 85335b1
- dma: kABI: Add back removed exports (bsc#1196472 ltc#192278).
- commit bddf636
- powerpc: dma: kABI workaround for moving around dma_bypass bit
(bsc#1196472 ltc#192278).
- commit bd1c9b6
- dma-mapping: move the remaining DMA API calls out of line
(bsc#1196472 ltc#192278).
- commit 504fce8
- powerpc/pseries/iommu: Update call to ibm, query-pe-dma-windows
(bsc#1196472 ltc#192278).
- powerpc/pseries/iommu: Create defines for operations in ibm,
ddw-applicable (bsc#1196472 ltc#192278).
- commit cde6266
- powerpc/pseries/iommu: Fix window size for direct mapping with
pmem (bsc#1196472 ltc#192278).
- powerpc/dma: Fallback to dma_ops when persistent memory present
(bsc#1196472 ltc#192278).
Update config files.
- dma-mapping: Allow mixing bypass and mapped DMA operation
(bsc#1196472 ltc#192278).
- dma-direct: Fix potential NULL pointer dereference (bsc#1196472
ltc#192278).
- commit c5ebdbd
- Add dtb-microchip
- commit c797107
- rpm/kernel-source.spec.in: temporary workaround for a build failure
Upstream c6x architecture removal left a dangling link behind which
triggers openSUSE post-build check in kernel-source, failing
kernel-source build.
A fix deleting the danglink link has been submitted but it did not make
it into 5.12-rc1. Unfortunately we cannot add it as a patch as patch
utility does not handle symlink removal. Add a temporary band-aid which
deletes all dangling symlinks after unpacking the kernel source tarball.
[jslaby] It's not that temporary as we are dragging this for quite some
time in master. The reason is that this can happen any time again, so
let's have this in packaging instead.
- commit 52a1ad7
- powerpc: use the generic dma_ops_bypass mode (bsc#1196472 ltc#192278).
- Refresh patches.suse/powerpc-dma-Fix-dma_map_ops-get_required_mask.patch
- Update config files.
- commit 865c59d
- dma-mapping: add a dma_ops_bypass flag to struct device (bsc#1196472 ltc#192278).
- Refresh patches.suse/0003-kabi-Add-placeholders-to-a-couple-of-important-struc.patch.
- blacklist.conf: Remove f1565c24b596 powerpc: use the generic dma_ops_bypass mode
- commit 9b4bd0f
- libassuan
-
- update to 2.5.5:
* Fix a crash in the logging code
* Upgrade autoconf
- update to 2.5.4:
* Fix some minor build annoyances
- Update to 2.5.3:
* Add a timeout for writing to a SOCKS5 proxy.
* Add workaround for a problem with LD_LIBRARY_PATH on newer systems.
- qemu-disable-fdpassing-test.patch: remove
-Update to 2.5.2:
* configure.ac: Bump LT version to C8/A8/R2
* include libassuan.pc in the spec file
- libjpeg-turbo
-
fix CVE-2020-35538 [bsc#1202915], Null pointer dereference in jcopy_sample_rows() function
+ libjpeg-turbo-CVE-2020-35538.patch
- security update
- added patches
- libjpeg62-turbo
-
fix CVE-2020-35538 [bsc#1202915], Null pointer dereference in jcopy_sample_rows() function
+ libjpeg-turbo-CVE-2020-35538.patch
- security update
- added patches
- libksba
-
- Security fix: [bsc#1204357, CVE-2022-3515]
* Detect a possible overflow directly in the TLV parser.
* Add libksba-CVE-2022-3515.patch
- libtasn1
-
- Add libtasn1-CVE-2021-46848.patch: Fixed off-by-one array size check
that affects asn1_encode_simple_der (CVE-2021-46848, bsc#1204690).
- libtirpc
-
- fix CVE-2021-46828: libtirpc: DoS vulnerability with lots of
connections (bsc#1201680)
- backport 0001-Fix-DoS-vulnerability-in-libtirpc.patch
- exclude ipv6 addresses in client protocol 2 code (bsc#1200800)
- update 0001-rpcb_clnt.c-config-to-try-protocolversion-2-first.patch
- fix memory leak in params.r_addr assignement (bsc#1198752)
- add 0001-fix-parms.r_addr-memory-leak.patch
- libxml2
-
- Security fixes:
* [CVE-2022-40303, bsc#1204366] Fix integer overflows with
XML_PARSE_HUGE
+ Added patch libxml2-CVE-2022-40303.patch
* [CVE-2022-40304, bsc#1204367] Fix dict corruption caused by
entity reference cycles
+ Added patch libxml2-CVE-2022-40304.patch
- Security fix: [bsc#1201978, CVE-2016-3709]
* Cross-site scripting vulnerability after commit 960f0e2
* Add libxml2-CVE-2016-3709.patch
- libyajl
-
- add libyajl-CVE-2022-24795.patch (CVE-2022-24795, bsc#1198405)
- libzypp
-
- Resolver: Fix missing --[no]-recommends initialization in
update (fixes #openSUSE/zypper#459, bsc#1201972)
- Log ONLY_NAMESPACE_RECOMMENDED because this is what corresponds
to --[no]-recommends.
- version 17.31.2 (22)
- UsrEtc: Store logrotate files in %{_distconfdir} if defined
(fixes #402)
- Log backtrace on SIGABRT too.
- Need to explicitly enable building experimental code. Otherwise
an old Notcurses++ package which happens to be present in the
buildenv breaks the build (fixes #412).
- Work around libyui/libyui#78 on code 15.4 and older.
- Stop using std::*ary_function; deprecated and removed in c++17.
- Don't expose header files which use types not available in
c++11. In 15.3 and older, YAST and PK compile with -std=c++11.
- Remove no longer needed %post code (bsc#1203649)
- Enable zck support for SLE15-SP4 and newer. On Leap it is enabled
since 15.1 (bsc#1189282)
- version 17.31.1 (22)
- Add PoolItem::statusReinit to reset the status it's initial
state in the ResPool (might help bsc#1199895)
This may either be 'KEEP_STATE bySOLVER' or 'LOCKED byUSER' if
the PoolItem matched a hard lock defined in /etc/zypp/locks.
- Fix building with GCC 13 on i586 (fixes #407, fixes #396)
- Be prepared to receive exceptions from curl_easy_cleanup
(bsc#1201092)
- Don't auto-flag kernel-firmware as 'reboot-needed' (bsc#1200993)
- Remove Medianetwork and dependend code.
This commit removes the MediaNetwork tech preview and all related
code. First reason for this is that MediaNetwork was just meant
as a way to test the new CURL based downloader and second: since
the Provide API is going to completely replace the current media
backend it would be extra work to ensure that changes on the
Downloader do not break MediaNetwork.
- version 17.31.0 (22)
- Fix building with GCC 12.x release (#396)
- version 17.30.3 (22)
- appdata plugin: Pass path to the repodata/ directory inside the
cache (bsc#1197684)
- zypp-rpm: flush rpm script output buffer before sending
endOfScriptTag.
- version 17.30.2 (22)
- PluginRepoverification: initial version hooked into
repo::Downloader and repo refresh.
- Immediately start monitoring the download.transfer_timeout.
Do not wait until the first data arrived. (bsc#1199042)
- singletrans: no dry-run commit if doing just download-only.
- Work around cases where sat repo.start points to an invalid
solvable. May happen if (wrong arch) solvables were removed
at the beginning of the repo.
- fix misplaced #endif SINGLE_RPMTRANS_AS_DEFAULT_FOR_ZYPPER
(fixes #388)
- version 17.30.1 (22)
- logrotate
-
- Security fix: (bsc#1192449) related to (bsc#1191281, CVE-2021-3864)
* enforce stricter parsing to avoid CVE-2021-3864
* Added patch logrotate-enforce-stricter-parsing-and-extra-tests.patch
- Fix "/logrotate emits unintended warning: keyword size not properly
separated, found 0x3d"/ (bsc#1200278, bsc#1200802):
* Added patch logrotate-dont_warn_on_size=_syntax.patch
- mozilla-nspr
-
- update to version 4.34.1
* add file descriptor sanity checks in the NSPR poll function.
- update to version 4.34
* add an API that returns a preferred loopback IP on hosts that
have two IP stacks available.
- update to 4.33:
* fixes to build system and export of private symbols
- mozilla-nss
-
- Require libjitter only for SLE15-SP4 and greater
- update to NSS 3.79.2 (bsc#1204729)
* bmo#1785846 - Bump minimum NSPR version to 4.34.1.
* bmo#1777672 - Gracefully handle null nickname in CERT_GetCertNicknameWithValidity.
- Add nss-allow-slow-tests.patch, which allows a timed test to run
longer than 1s. This avoids turning slow builds into broken
builds.
- Update nss-fips-approved-crypto-non-ec.patch to allow the use of
DSA keys (verification only) (bsc#1201298).
- Update nss-fips-constructor-self-tests.patch to add
sftk_FIPSRepeatIntegrityCheck() to softoken's .def file
(bsc#1198980).
- Update nss-fips-approved-crypto-non-ec.patch to allow the use of
longer symmetric keys via the service level indicator
(bsc#1191546).
- Update nss-fips-constructor-self-tests.patch to hopefully export
sftk_FIPSRepeatIntegrityCheck() correctly (bsc#1198980).
- Update nss-fips-approved-crypto-non-ec.patch to prevent sessions
from getting flagged as non-FIPS (bsc#1191546).
- Mark DSA keygen unapproved (bsc#1191546, bsc#1201298).
- Enable nss-fips-drbg-libjitter.patch now that we have a patched
libjitter to build with (bsc#1202870).
- Update nss-fips-approved-crypto-non-ec.patch to prevent keys
from getting flagged as non-FIPS and add remaining TLS mechanisms.
- Add nss-fips-drbg-libjitter.patch to use libjitterentropy for
entropy. This is disabled until we can avoid the inline assembler
in the latter's header file that relies on GNU extensions.
- Update nss-fips-constructor-self-tests.patch to fix an abort()
when both NSS_FIPS and /proc FIPS mode are enabled.
- update to NSS 3.79.1 (bsc#1202645)
* bmo#1366464 - compare signature and signatureAlgorithm fields in legacy certificate verifier.
* bmo#1771498 - Uninitialized value in cert_ComputeCertType.
* bmo#1759794 - protect SFTKSlot needLogin with slotLock.
* bmo#1760998 - avoid data race on primary password change.
* bmo#1330271 - check for null template in sec_asn1{d,e}_push_state.
- Update nss-fips-approved-crypto-non-ec.patch to unapprove the
rest of the DSA ciphers, keeping signature verification only
(bsc#1201298).
- Update nss-fips-constructor-self-tests.patch to fix compiler
warning.
- Update nss-fips-constructor-self-tests.patch to add on-demand
integrity tests through sftk_FIPSRepeatIntegrityCheck()
(bsc#1198980).
- Update nss-fips-approved-crypto-non-ec.patch to mark algorithms
as approved/non-approved according to security policy
(bsc#1191546, bsc#1201298).
- Update nss-fips-approved-crypto-non-ec.patch to remove hard
disabling of unapproved algorithms. This requirement is now
fulfilled by the service level indicator (bsc#1200325).
- Remove nss-fips-tls-allow-md5-prf.patch, since we no longer need
the workaround in FIPS mode (bsc#1200325).
- Remove nss-fips-tests-skip.patch. This is no longer needed since
we removed the code to short-circuit broken hashes and moved to
using the SLI.
- Remove upstreamed patches:
* nss-fips-version-indicators.patch
* nss-fips-tests-pin-paypalee-cert.patch
- update to NSS 3.79
- bmo#205717 - Use PK11_GetSlotInfo instead of raw C_GetSlotInfo calls.
- bmo#1766907 - Update mercurial in clang-format docker image.
- bmo#1454072 - Use of uninitialized pointer in lg_init after alloc fail.
- bmo#1769295 - selfserv and tstclnt should use PR_GetPrefLoopbackAddrInfo.
- bmo#1753315 - Add SECMOD_LockedModuleHasRemovableSlots.
- bmo#1387919 - Fix secasn1d parsing of indefinite SEQUENCE inside indefinite GROUP.
- bmo#1765753 - Added RFC8422 compliant TLS <= 1.2 undefined/compressed ECPointFormat extension alerts.
- bmo#1765753 - TLS 1.3 Server: Send protocol_version alert on unsupported ClientHello.legacy_version.
- bmo#1764788 - Correct invalid record inner and outer content type alerts.
- bmo#1757075 - NSS does not properly import or export pkcs12 files with large passwords and pkcs5v2 encoding.
- bmo#1766978 - improve error handling after nssCKFWInstance_CreateObjectHandle.
- bmo#1767590 - Initialize pointers passed to NSS_CMSDigestContext_FinishMultiple.
- bmo#1769302 - NSS 3.79 should depend on NSPR 4.34
- update to NSS 3.78.1
* bmo#1767590 - Initialize pointers passed to
NSS_CMSDigestContext_FinishMultiple
- update to NSS 3.78
bmo#1755264 - Added TLS 1.3 zero-length inner plaintext checks and tests, zero-length record/fragment handling tests.
bmo#1294978 - Reworked overlong record size checks and added TLS1.3 specific boundaries.
bmo#1763120 - Add ECH Grease Support to tstclnt
bmo#1765003 - Add a strict variant of moz::pkix::CheckCertHostname.
bmo#1166338 - Change SSL_REUSE_SERVER_ECDHE_KEY default to false.
bmo#1760813 - Make SEC_PKCS12EnableCipher succeed
bmo#1762489 - Update zlib in NSS to 1.2.12.
- update to NSS 3.77
* Bug 1762244 - resolve mpitests build failure on Windows.
* bmo#1761779 - Fix link to TLS page on wireshark wiki
* bmo#1754890 - Add two D-TRUST 2020 root certificates.
* bmo#1751298 - Add Telia Root CA v2 root certificate.
* bmo#1751305 - Remove expired explicitly distrusted certificates
from certdata.txt.
* bmo#1005084 - support specific RSA-PSS parameters in mozilla::pkix
* bmo#1753535 - Remove obsolete stateEnd check in SEC_ASN1DecoderUpdate.
* bmo#1756271 - Remove token member from NSSSlot struct.
* bmo#1602379 - Provide secure variants of mpp_pprime and mpp_make_prime.
* bmo#1757279 - Support UTF-8 library path in the module spec string.
* bmo#1396616 - Update nssUTF8_Length to RFC 3629 and fix buffer overrun.
* bmo#1760827 - Add a CI Target for gcc-11.
* bmo#1760828 - Change to makefiles for gcc-4.8.
* bmo#1741688 - Update googletest to 1.11.0
* bmo#1759525 - Add SetTls13GreaseEchSize to experimental API.
* bmo#1755264 - TLS 1.3 Illegal legacy_version handling/alerts.
* bmo#1755904 - Fix calculation of ECH HRR Transcript.
* bmo#1758741 - Allow ld path to be set as environment variable.
* bmo#1760653 - Ensure we don't read uninitialized memory in ssl gtests.
* bmo#1758478 - Fix DataBuffer Move Assignment.
* bmo#1552254 - internal_error alert on Certificate Request with
sha1+ecdsa in TLS 1.3
* bmo#1755092 - rework signature verification in mozilla::pkix
- Require nss-util in nss.pc and subsequently remove -lnssutil3
- update to NSS 3.76.1
NSS 3.76.1
* bmo#1756271 - Remove token member from NSSSlot struct.
NSS 3.76
* bmo#1755555 - Hold tokensLock through nssToken_GetSlot calls in
nssTrustDomain_GetActiveSlots.
* bmo#1370866 - Check return value of PK11Slot_GetNSSToken.
* bmo#1747957 - Use Wycheproof JSON for RSASSA-PSS
* bmo#1679803 - Add SHA256 fingerprint comments to old
certdata.txt entries.
* bmo#1753505 - Avoid truncating files in nss-release-helper.py.
* bmo#1751157 - Throw illegal_parameter alert for illegal extensions
in handshake message.
- Add nss-util pkgconfig and config files (copied from RH/Fedora)
- update to NSS 3.75
* bmo#1749030 - This patch adds gcc-9 and gcc-10 to the CI.
* bmo#1749794 - Make DottedOIDToCode.py compatible with python3.
* bmo#1749475 - Avoid undefined shift in SSL_CERT_IS while fuzzing.
* bmo#1748386 - Remove redundant key type check.
* bmo#1749869 - Update ABI expectations to match ECH changes.
* bmo#1748386 - Enable CKM_CHACHA20.
* bmo#1747327 - check return on NSS_NoDB_Init and NSS_Shutdown.
* bmo#1747310 - real move assignment operator.
* bmo#1748245 - Run ECDSA test vectors from bltest as part of the CI tests.
* bmo#1743302 - Add ECDSA test vectors to the bltest command line tool.
* bmo#1747772 - Allow to build using clang's integrated assembler.
* bmo#1321398 - Allow to override python for the build.
* bmo#1747317 - test HKDF output rather than input.
* bmo#1747316 - Use ASSERT macros to end failed tests early.
* bmo#1747310 - move assignment operator for DataBuffer.
* bmo#1712879 - Add test cases for ECH compression and unexpected
extensions in SH.
* bmo#1725938 - Update tests for ECH-13.
* bmo#1725938 - Tidy up error handling.
* bmo#1728281 - Add tests for ECH HRR Changes.
* bmo#1728281 - Server only sends GREASE HRR extension if enabled
by preference.
* bmo#1725938 - Update generation of the Associated Data for ECH-13.
* bmo#1712879 - When ECH is accepted, reject extensions which were
only advertised in the Outer Client Hello.
* bmo#1712879 - Allow for compressed, non-contiguous, extensions.
* bmo#1712879 - Scramble the PSK extension in CHOuter.
* bmo#1712647 - Split custom extension handling for ECH.
* bmo#1728281 - Add ECH-13 HRR Handling.
* bmo#1677181 - Client side ECH padding.
* bmo#1725938 - Stricter ClientHelloInner Decompression.
* bmo#1725938 - Remove ECH_inner extension, use new enum format.
* bmo#1725938 - Update the version number for ECH-13 and adjust
the ECHConfig size.
- update to NSS 3.74
* bmo#966856 - mozilla::pkix: support SHA-2 hashes in CertIDs in
OCSP responses
* bmo#1553612 - Ensure clients offer consistent ciphersuites after HRR
* bmo#1721426 - NSS does not properly restrict server keys based on policy
* bmo#1733003 - Set nssckbi version number to 2.54
* bmo#1735407 - Replace Google Trust Services LLC (GTS) R4 root certificate
* bmo#1735407 - Replace Google Trust Services LLC (GTS) R3 root certificate
* bmo#1735407 - Replace Google Trust Services LLC (GTS) R2 root certificate
* bmo#1735407 - Replace Google Trust Services LLC (GTS) R1 root certificate
* bmo#1735407 - Replace GlobalSign ECC Root CA R4
* bmo#1733560 - Remove Expired Root Certificates - DST Root CA X3
* bmo#1740807 - Remove Expiring Cybertrust Global Root and GlobalSign root
certificates
* bmo#1741930 - Add renewed Autoridad de Certificacion Firmaprofesional
CIF A62634068 root certificate
* bmo#1740095 - Add iTrusChina ECC root certificate
* bmo#1740095 - Add iTrusChina RSA root certificate
* bmo#1738805 - Add ISRG Root X2 root certificate
* bmo#1733012 - Add Chunghwa Telecom's HiPKI Root CA - G1 root certificate
* bmo#1738028 - Avoid a clang 13 unused variable warning in opt build
* bmo#1735028 - Check for missing signedData field
* bmo#1737470 - Ensure DER encoded signatures are within size limits
- enable key logging option (boo#1195040)
- update to NSS 3.73.1:
* Add SHA-2 support to mozilla::pkix's OSCP implementation
- update to NSS 3.73
* bmo#1735028 - check for missing signedData field.
* bmo#1737470 - Ensure DER encoded signatures are within size limits.
* bmo#1729550 - NSS needs FiPS 140-3 version indicators.
* bmo#1692132 - pkix_CacheCert_Lookup doesn't return cached certs
* bmo#1738600 - sunset Coverity from NSS
MFSA 2021-51 (bsc#1193170)
* CVE-2021-43527 (bmo#1737470)
Memory corruption via DER-encoded DSA and RSA-PSS signatures
- update to NSS 3.72
* Remove newline at the end of coreconf.dep
* bmo#1731911 - Fix nsinstall parallel failure.
* bmo#1729930 - Increase KDF cache size to mitigate perf
regression in about:logins
- update to NSS 3.71
* bmo#1717716 - Set nssckbi version number to 2.52.
* bmo#1667000 - Respect server requirements of tlsfuzzer/test-tls13-signature-algorithms.py
* bmo#1373716 - Import of PKCS#12 files with Camellia encryption is not supported
* bmo#1717707 - Add HARICA Client ECC Root CA 2021.
* bmo#1717707 - Add HARICA Client RSA Root CA 2021.
* bmo#1717707 - Add HARICA TLS ECC Root CA 2021.
* bmo#1717707 - Add HARICA TLS RSA Root CA 2021.
* bmo#1728394 - Add TunTrust Root CA certificate to NSS.
- update to NSS 3.70
* bmo#1726022 - Update test case to verify fix.
* bmo#1714579 - Explicitly disable downgrade check in TlsConnectStreamTls13.EchOuterWith12Max
* bmo#1714579 - Explicitly disable downgrade check in TlsConnectTest.DisableFalseStartOnFallback
* bmo#1681975 - Avoid using a lookup table in nssb64d.
* bmo#1724629 - Use HW accelerated SHA2 on AArch64 Big Endian.
* bmo#1714579 - Change default value of enableHelloDowngradeCheck to true.
* bmo#1726022 - Cache additional PBE entries.
* bmo#1709750 - Read HPKE vectors from official JSON.
- Update to NSS 3.69.1
* bmo#1722613 (Backout) - Disable DTLS 1.0 and 1.1 by default
* bmo#1720226 (Backout) - integrity checks in key4.db not happening
on private components with AES_CBC
NSS 3.69
* bmo#1722613 - Disable DTLS 1.0 and 1.1 by default (backed out again)
* bmo#1720226 - integrity checks in key4.db not happening on private
components with AES_CBC (backed out again)
* bmo#1720235 - SSL handling of signature algorithms ignores
environmental invalid algorithms.
* bmo#1721476 - sqlite 3.34 changed it's open semantics, causing
nss failures.
(removed obsolete nss-btrfs-sqlite.patch)
* bmo#1720230 - Gtest update changed the gtest reports, losing gtest
details in all.sh reports.
* bmo#1720228 - NSS incorrectly accepting 1536 bit DH primes in FIPS mode
* bmo#1720232 - SQLite calls could timeout in starvation situations.
* bmo#1720225 - Coverity/cpp scanner errors found in nss 3.67
* bmo#1709817 - Import the NSS documentation from MDN in nss/doc.
* bmo#1720227 - NSS using a tempdir to measure sql performance not active
- add nss-fips-stricter-dh.patch
- updated existing patches with latest SLE
- Mozilla NSS 3.68.4 (bsc#1200027)
* Initialize pointers passed to NSS_CMSDigestContext_FinishMultiple.
(bmo#1767590)
- Update nss-fips-constructor-self-tests.patch to scan
LD_LIBRARY_PATH for external libraries to be checksummed.
- Run test suite at build time, and make it pass (bsc#1198486).
Based on work by Marcus Meissner.
- Add nss-fips-tests-skip.patch to skip algorithms that are hard
disabled in FIPS mode.
- Add nss-fips-tests-pin-paypalee-cert.patch to prevent expired
PayPalEE cert from failing the tests.
- Add nss-fips-tests-enable-fips.patch, which enables FIPS during
test certificate creation and disables the library checksum
validation during same.
- Update nss-fips-constructor-self-tests.patch to allow
checksumming to be disabled, but only if we entered FIPS mode
due to NSS_FIPS being set, not if it came from /proc.
- Add nss-fips-pbkdf-kat-compliance.patch (bsc#1192079). This
makes the PBKDF known answer test compliant with NIST SP800-132.
- Update FIPS validation string to version-release format.
- Update nss-fips-approved-crypto-non-ec.patch to remove XCBC MAC
from list of FIPS approved algorithms.
- Enable NSS_ENABLE_FIPS_INDICATORS and set NSS_FIPS_MODULE_ID
for build.
- Update nss-fips-approved-crypto-non-ec.patch to claim 3DES
unapproved in FIPS mode (bsc#1192080).
- Update nss-fips-constructor-self-tests.patch to allow testing
of unapproved algorithms (bsc#1192228).
- Add nss-fips-version-indicators.patch (bmo#1729550, bsc#1192086).
This adds FIPS version indicators.
- Add nss-fips-180-3-csp-clearing.patch (bmo#1697303, bsc#1192087).
Most of the relevant changes are already upstream since NSS 3.60.
- ncurses
-
- Add patch ncurses-bnc1198627.patch
* Fix bsc#1198627: CVE-2022-29458: ncurses: segfaulting OOB read
- openldap2
-
- bsc#1198341 - Prevent memory reuse which may lead to instability
* 0243-Change-malloc-to-use-calloc-to-prevent-memory-reuse-.patch
- openssl-1_1
-
- Added openssl-1_1-paramgen-default_to_rfc7919.patch
* bsc#1180995
* Default to RFC7919 groups when generating ECDH parameters
using 'genpkey' or 'dhparam' in FIPS mode.
- Fix memory leaks introduced by openssl-1.1.1-fips.patch [bsc#1203046]
* Add patch openssl-1.1.1-fips-fix-memory-leaks.patch
- pacemaker
-
- scheduler: do not enforce resource stop if any new probe/monitor indicates the resource was not running on the target of a failed migrate_to (bsc#1196340)
* bsc#1196340-0009-Test-scheduler-do-not-enforce-resource-stop-if-any-n.patch
- scheduler: do not enforce resource stop on a rejoined node that was the target of a failed migrate_to (bsc#1196340)
* bsc#1196340-0008-Test-scheduler-do-not-enforce-resource-stop-on-a-rej.patch
- scheduler: do not enforce resource stop if any new probe/monitor indicates the resource was not running on the target of a failed migrate_to (bsc#1196340)
* bsc#1196340-0007-Fix-scheduler-do-not-enforce-resource-stop-if-any-ne.patch
- scheduler: find_lrm_op() to be able to check against a specified target_rc (bsc#1196340)
* bsc#1196340-0006-Refactor-scheduler-find_lrm_op-to-be-able-to-check-a.patch
- cts-scheduler: fix on_node attribute of lrm_rsc_op entries in the tests (bsc#1196340)
* bsc#1196340-0005-Test-cts-scheduler-fix-on_node-attribute-of-lrm_rsc_.patch
- scheduler: is_newer_op() to be able to compare lrm_rsc_op entries from different nodes (bsc#1196340)
* bsc#1196340-0004-Refactor-scheduler-is_newer_op-to-be-able-to-compare.patch
- scheduler: compare ids of lrm_rsc_op entries case-sensitively (bsc#1196340)
* bsc#1196340-0003-Fix-scheduler-compare-ids-of-lrm_rsc_op-entries-case.patch
- scheduler: functionize comparing which lrm_rsc_op is newer (bsc#1196340)
* bsc#1196340-0002-Refactor-scheduler-functionize-comparing-which-lrm_r.patch
- scheduler: do not enforce resource stop on a rejoined node that was the target of a failed migrate_to (bsc#1196340)
* bsc#1196340-0001-Fix-scheduler-do-not-enforce-resource-stop-on-a-rejo.patch
- OCF: controld: Give warning when no-quorum-policy not set as freeze while using DLM (bsc#1129707)
* bsc#1129707-0001-OCF-controld-Give-warning-when-no-quorum-policy-not-.patch
- Pacemaker high resolution timestamps (bsc#1197668)
* 0001-Log-all-use-high-resolution-timestamps-in-detail-log.patch
- pam
-
- Update pam_motd to the most current version. This fixes various issues
and adds support for mot.d directories [jsc#PED-1712].
* Added: pam-ped1712-pam_motd-directory-feature.patch
- pciutils
-
- Add "/pciutils-Add-PCIe-5.0-data-rate-32-GT-s-support.patch"/ and
"/pciutils-Add-PCIe-6.0-data-rate-64-GT-s-support.patch"/ to fix
LnkCap speed recognition in lspci for multi PCIe ports such as
the ML110 Gen11. [bsc#1192862]
- pcre2
-
- Added pcre2-bsc1199235-CVE-2022-1587.patch
* CVE-2022-1587 / bsc#1199235
* Fix out-of-bounds read due to bug in recursions
* Sourced from:
- https://github.com/PCRE2Project/pcre2/commit/03654e751e7f0700693526b67dfcadda6b42c9d0
- Added pcre2-Fix_crash_when_X_is_used_without_UTF_in_JIT.patch
* CVE-2019-20454 / bsc#1164384
* Fix crash when X is used in non-UTF mode on certain inputs.
* Sourced from:
- https://github.com/PCRE2Project/pcre2/commit/342c16ecd31bd12fc350ee31d2dcc041832ebb3f
- https://github.com/PCRE2Project/pcre2/commit/e118e60a68f03f38dd2ff3d16ca2e2e0d800e1d9
- perl-HTTP-Daemon
-
- Fix request smuggling in HTTP::Daemon
(CVE-2022-31081, bsc#1201157)
* CVE-2022-31081.patch
* CVE-2022-31081-2.patch
* CVE-2022-31081-Add-new-test-for-Content-Length-issues.patch
- permissions
-
* Revert "/drop ping capabilities in favor of ICMP_PROTO sockets"/. Older
SLE-15 versions don't properly support this feature yet (bsc#1204137)
- Update to version 20181225:
* fix regression introduced by backport of security fix (bsc#1203911)
- Update to version 20181225:
* chkstat: also consider group controlled paths (bsc#1203018, CVE-2022-31252)
- Update to version 20181225:
- procps
-
- Add the patches
* procps-3.3.17-library-bsc1181475.patch
* procps-3.3.17-top-bsc1181475.patch
which are backports of current newlib tree to solve bug bsc#1181475
* 'free' command reports misleading "/used"/ value
- protobuf
-
- Fix a potential DoS issue in protobuf-cpp and protobuf-python,
CVE-2022-1941, bsc#1203681
* Add protobuf-CVE-2022-1941.patch
- Fix a potential DoS issue when parsing with binary data in
protobuf-java, CVE-2022-3171, bsc#1204256
* Add protobuf-CVE-2022-3171.patch
- Refresh protobuf-CVE-2021-22570.patch
- Backport changes from 3.16.x tree for apply recent CVE patches
* Add protobuf-51026d922970e06475f005b39287963594134b96.patch
* Add protobuf-6ee16a9c60e734104aeb738503fe3f411c97bd88.patch
* Add protobuf-73e0d748b9acdc40b693f2879ce82ecb1a849b81.patch
* Add protobuf-7bff8393cab939bfbb9b5c69b3fe76b4d83c41ee.patch
* Add protobuf-4f02f056b5cea99052bfdfb6698afe47a3cf2964.patch
* Add protobuf-763c3588740b97e8e80b1b1a1a2dc4f417647133.patch
* Add protobuf-6c92f9dff1807c142edf6780d775b58a3b078591.patch
* Add protobuf-4e93585e8bb234efeacb7737b8d080968c5ab91e.patch
* Add protobuf-58d4420e2dd8a3cd354fff9db0052881c25369ce.patch
- Reorganize patch set ordering
- Fix potential Denial of Service in protobuf-java in the parsing procedure
for binary data, CVE-2021-22569, bsc#1194530
* Add protobuf-improve-performance-of-parsing-unknown-fields-in-Java.patch
- python-M2Crypto
-
- Add CVE-2020-25657-Bleichenbacher-attack.patch (CVE-2020-25657,
bsc#1178829), which mitigates the Bleichenbacher timing attacks
in the RSA decryption API.
- Add python-M2Crypto.keyring to verify GPG signature of tarball.
- python-base
-
- Add patch CVE-2021-28861-double-slash-path.patch:
* BaseHTTPServer: Fix an open redirection vulnerability in the HTTP server
when an URI path starts with //. (bsc#1202624, CVE-2021-28861)
- python-boto3
-
- Update to version 1.23.4 (bsc#1199716)
* api-change:``gamesparks``: [``botocore``] This release adds an optional DeploymentResult field in
the responses of GetStageDeploymentIntegrationTests and ListStageDeploymentIntegrationTests APIs.
* enhancement:StreamingBody: [``botocore``] Allow StreamingBody to be used as a context manager
* api-change:``lookoutmetrics``: [``botocore``] In this release we added SnsFormat to
SNSConfiguration to support human readable alert.
- from version 1.23.3
* api-change:``greengrassv2``: [``botocore``] This release adds the new DeleteDeployment API
operation that you can use to delete deployment resources. This release also adds support for
discontinued AWS-provided components, so AWS can communicate when a component has any issues that
you should consider before you deploy it.
* api-change:``quicksight``: [``botocore``] API UpdatePublicSharingSettings enables IAM admins to
enable/disable account level setting for public access of dashboards. When enabled,
owners/co-owners for dashboards can enable public access on their dashboards. These dashboards can
only be accessed through share link or embedding.
* api-change:``appmesh``: [``botocore``] This release updates the existing Create and Update APIs
for meshes and virtual nodes by adding a new IP preference field. This new IP preference field can
be used to control the IP versions being used with the mesh and allows for IPv6 support within App
Mesh.
* api-change:``batch``: [``botocore``] Documentation updates for AWS Batch.
* api-change:``iotevents-data``: [``botocore``] Introducing new API for deleting detectors:
BatchDeleteDetector.
* api-change:``transfer``: [``botocore``] AWS Transfer Family now supports SetStat server
configuration option, which provides the ability to ignore SetStat command issued by file transfer
clients, enabling customers to upload files without any errors.
- from version 1.23.2
* api-change:``kms``: [``botocore``] Add HMAC best practice tip, annual rotation of AWS managed
keys.
* api-change:``glue``: [``botocore``] This release adds a new optional parameter called
codeGenNodeConfiguration to CRUD job APIs that allows users to manage visual jobs via APIs. The
updated CreateJob and UpdateJob will create jobs that can be viewed in Glue Studio as a visual
graph. GetJob can be used to get codeGenNodeConfiguration.
- Remove unnecessary version constraint for python3-pytest in BuildRequires
- Update BuildRequires and Requires from setup.py
- Update to version 1.23.1
* api-change:``resiliencehub``: [``botocore``] In this release, we are introducing support for
Amazon Elastic Container Service, Amazon Route 53, AWS Elastic Disaster Recovery, AWS Backup in
addition to the existing supported Services. This release also supports Terraform file input from
S3 and scheduling daily assessments
* api-change:``servicecatalog``: [``botocore``] Updated the descriptions for the
ListAcceptedPortfolioShares API description and the PortfolioShareType parameters.
* api-change:``discovery``: [``botocore``] Add Migration Evaluator Collector details to the
GetDiscoverySummary API response
* api-change:``sts``: [``botocore``] Documentation updates for AWS Security Token Service.
* api-change:``workspaces-web``: [``botocore``] Amazon WorkSpaces Web now supports Administrator
timeout control
* api-change:``rekognition``: [``botocore``] Documentation updates for Amazon Rekognition.
* api-change:``cloudfront``: [``botocore``] Introduced a new error
(TooLongCSPInResponseHeadersPolicy) that is returned when the value of the Content-Security-Policy
header in a response headers policy exceeds the maximum allowed length.
- from version 1.23.0
* feature:Loaders: [``botocore``] Support for loading gzip compressed model files.
* api-change:``grafana``: [``botocore``] This release adds APIs for creating and deleting API keys
in an Amazon Managed Grafana workspace.
- from version 1.22.13
* api-change:``ivschat``: [``botocore``] Documentation-only updates for IVS Chat API Reference.
* api-change:``lambda``: [``botocore``] Lambda releases NodeJs 16 managed runtime to be available
in all commercial regions.
* api-change:``kendra``: [``botocore``] Amazon Kendra now provides a data source connector for
Jira. For more information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-jira.html
* api-change:``transfer``: [``botocore``] AWS Transfer Family now accepts ECDSA keys for server
host keys
* api-change:``iot``: [``botocore``] Documentation update for China region ListMetricValues for IoT
* api-change:``workspaces``: [``botocore``] Increased the character limit of the login message from
600 to 850 characters.
* api-change:``finspace-data``: [``botocore``] We've now deprecated CreateSnapshot permission for
creating a data view, instead use CreateDataView permission.
* api-change:``lightsail``: [``botocore``] This release adds support to include inactive database
bundles in the response of the GetRelationalDatabaseBundles request.
* api-change:``outposts``: [``botocore``] Documentation updates for AWS Outposts.
* api-change:``ec2``: [``botocore``] This release introduces a target type Gateway Load Balancer
Endpoint for mirrored traffic. Customers can now specify GatewayLoadBalancerEndpoint option during
the creation of a traffic mirror target.
* api-change:``ssm-incidents``: [``botocore``] Adding support for dynamic SSM Runbook parameter
values. Updating validation pattern for engagements. Adding ConflictException to
UpdateReplicationSet API contract.
- from version 1.22.12
* api-change:``secretsmanager``: [``botocore``] Doc only update for Secrets Manager that fixes
several customer-reported issues.
* api-change:``ec2``: [``botocore``] This release updates AWS PrivateLink APIs to support IPv6 for
PrivateLink Services and Endpoints of type 'Interface'.
- Update BuildRequires and Requires from setup.py
- Update to version 1.22.11
* api-change:``migration-hub-refactor-spaces``: [``botocore``] AWS Migration Hub Refactor Spaces
documentation only update to fix a formatting issue.
* api-change:``ec2``: [``botocore``] Added support for using NitroTPM and UEFI Secure Boot on EC2
instances.
* api-change:``emr``: [``botocore``] Update emr client to latest version
* api-change:``compute-optimizer``: [``botocore``] Documentation updates for Compute Optimizer
* api-change:``eks``: [``botocore``] Adds BOTTLEROCKET_ARM_64_NVIDIA and BOTTLEROCKET_x86_64_NVIDIA
AMI types to EKS managed nodegroups
- from version 1.22.10
* api-change:``evidently``: [``botocore``] Add detail message inside GetExperimentResults API
response to indicate experiment result availability
* api-change:``ssm-contacts``: [``botocore``] Fixed an error in the DescribeEngagement example for
AWS Incident Manager.
* api-change:``cloudcontrol``: [``botocore``] SDK release for Cloud Control API to include
paginators for Python SDK.
- from version 1.22.9
* api-change:``rds``: [``botocore``] Various documentation improvements.
* api-change:``redshift``: [``botocore``] Introduces new field 'LoadSampleData' in CreateCluster
operation. Customers can now specify 'LoadSampleData' option during creation of a cluster, which
results in loading of sample data in the cluster that is created.
* api-change:``ec2``: [``botocore``] Add new state values for IPAMs, IPAM Scopes, and IPAM Pools.
* api-change:``mediapackage``: [``botocore``] This release adds Dvb Dash 2014 as an available
profile option for Dash Origin Endpoints.
* api-change:``securityhub``: [``botocore``] Documentation updates for Security Hub API reference
* api-change:``location``: [``botocore``] Amazon Location Service now includes a MaxResults
parameter for ListGeofences requests.
- from version 1.22.8
* api-change:``ec2``: [``botocore``] Amazon EC2 I4i instances are powered by 3rd generation Intel
Xeon Scalable processors and feature up to 30 TB of local AWS Nitro SSD storage
* api-change:``kendra``: [``botocore``] AWS Kendra now supports hierarchical facets for a query.
For more information, see https://docs.aws.amazon.com/kendra/latest/dg/filtering.html
* api-change:``iot``: [``botocore``] AWS IoT Jobs now allows you to create up to 100,000 active
continuous and snapshot jobs by using concurrency control.
* api-change:``datasync``: [``botocore``] AWS DataSync now supports a new ObjectTags Task API
option that can be used to control whether Object Tags are transferred.
- from version 1.22.7
* api-change:``ssm``: [``botocore``] This release adds the TargetMaps parameter in SSM State
Manager API.
* api-change:``backup``: [``botocore``] Adds support to 2 new filters about job complete time for 3
list jobs APIs in AWS Backup
* api-change:``lightsail``: [``botocore``] Documentation updates for Lightsail
* api-change:``iotsecuretunneling``: [``botocore``] This release introduces a new API
RotateTunnelAccessToken that allow revoking the existing tokens and generate new tokens
- from version 1.22.6
* api-change:``ec2``: [``botocore``] Adds support for allocating Dedicated Hosts on AWS Outposts.
The AllocateHosts API now accepts an OutpostArn request parameter, and the DescribeHosts API now
includes an OutpostArn response parameter.
* api-change:``s3``: [``botocore``] Documentation only update for doc bug fixes for the S3 API docs.
* api-change:``kinesisvideo``: [``botocore``] Add support for multiple image feature related APIs
for configuring image generation and notification of a video stream. Add "/GET_IMAGES"/ to the list
of supported API names for the GetDataEndpoint API.
* api-change:``sagemaker``: [``botocore``] SageMaker Autopilot adds new metrics for all candidate
models generated by Autopilot experiments; RStudio on SageMaker now allows users to bring your own
development environment in a custom image.
* api-change:``kinesis-video-archived-media``: [``botocore``] Add support for GetImages API for
retrieving images from a video stream
- from version 1.22.5
* api-change:``organizations``: [``botocore``] This release adds the INVALID_PAYMENT_INSTRUMENT as
a fail reason and an error message.
* api-change:``synthetics``: [``botocore``] CloudWatch Synthetics has introduced a new feature to
provide customers with an option to delete the underlying resources that Synthetics canary creates
when the user chooses to delete the canary.
* api-change:``outposts``: [``botocore``] This release adds a new API called ListAssets to the
Outposts SDK, which lists the hardware assets in an Outpost.
- from version 1.22.4
* api-change:``rds``: [``botocore``] Feature - Adds support for Internet Protocol Version 6 (IPv6)
on RDS database instances.
* api-change:``codeguru-reviewer``: [``botocore``] Amazon CodeGuru Reviewer now supports
suppressing recommendations from being generated on specific files and directories.
* api-change:``ssm``: [``botocore``] Update the StartChangeRequestExecution, adding TargetMaps to
the Runbook parameter
* api-change:``mediaconvert``: [``botocore``] AWS Elemental MediaConvert SDK nows supports creation
of Dolby Vision profile 8.1, the ability to generate black frames of video, and introduces
audio-only DASH and CMAF support.
* api-change:``wafv2``: [``botocore``] You can now inspect all request headers and all cookies. You
can now specify how to handle oversize body contents in your rules that inspect the body.
- from version 1.22.3
* api-change:``auditmanager``: [``botocore``] This release adds documentation updates for Audit
Manager. We provided examples of how to use the Custom_ prefix for the keywordValue attribute. We
also provided more details about the DeleteAssessmentReport operation.
* api-change:``network-firewall``: [``botocore``] AWS Network Firewall adds support for stateful
threat signature AWS managed rule groups.
* api-change:``ec2``: [``botocore``] This release adds support to query the public key and creation
date of EC2 Key Pairs. Additionally, the format (pem or ppk) of a key pair can be specified when
creating a new key pair.
* api-change:``braket``: [``botocore``] This release enables Braket Hybrid Jobs with Embedded
Simulators to have multiple instances.
* api-change:``guardduty``: [``botocore``] Documentation update for API description.
* api-change:``connect``: [``botocore``] This release introduces an API for changing the current
agent status of a user in Connect.
- from version 1.22.2
* api-change:``rekognition``: [``botocore``] This release adds support to configure
stream-processor resources for label detections on streaming-videos. UpateStreamProcessor API is
also launched with this release, which could be used to update an existing stream-processor.
* api-change:``cloudtrail``: [``botocore``] Increases the retention period maximum to 2557 days.
Deprecates unused fields of the ListEventDataStores API response. Updates documentation.
* api-change:``lookoutequipment``: [``botocore``] This release adds the following new features: 1)
Introduces an option for automatic schema creation 2) Now allows for Ingestion of data containing
most common errors and allows automatic data cleaning 3) Introduces new API ListSensorStatistics
that gives further information about the ingested data
* api-change:``iotwireless``: [``botocore``] Add list support for event configurations, allow to
get and update event configurations by resource type, support LoRaWAN events; Make
NetworkAnalyzerConfiguration as a resource, add List, Create, Delete API support; Add FCntStart
attribute support for ABP WirelessDevice.
* api-change:``amplify``: [``botocore``] Documentation only update to support the Amplify GitHub
App feature launch
* api-change:``chime-sdk-media-pipelines``: [``botocore``] For Amazon Chime SDK meetings, the
Amazon Chime Media Pipelines SDK allows builders to capture audio, video, and content share
streams. You can also capture meeting events, live transcripts, and data messages. The pipelines
save the artifacts to an Amazon S3 bucket that you designate.
* api-change:``sagemaker``: [``botocore``] Amazon SageMaker Autopilot adds support for custom
validation dataset and validation ratio through the CreateAutoMLJob and DescribeAutoMLJob APIs.
- Update BuildRequires and Requires from setup.py
- Update to version 1.22.1
* api-change:``lightsail``: [``botocore``] This release adds support for Lightsail load balancer
HTTP to HTTPS redirect and TLS policy configuration.
* api-change:``sagemaker``: [``botocore``] SageMaker Inference Recommender now accepts customer KMS
key ID for encryption of endpoints and compilation outputs created during inference recommendation.
* api-change:``pricing``: [``botocore``] Documentation updates for Price List API
* api-change:``glue``: [``botocore``] This release adds documentation for the APIs to create, read,
delete, list, and batch read of AWS Glue custom patterns, and for Lake Formation configuration
settings in the AWS Glue crawler.
* api-change:``cloudfront``: [``botocore``] CloudFront now supports the Server-Timing header in
HTTP responses sent from CloudFront. You can use this header to view metrics that help you gain
insights about the behavior and performance of CloudFront. To use this header, enable it in a
response headers policy.
* api-change:``ivschat``: [``botocore``] Adds new APIs for IVS Chat, a feature for building
interactive chat experiences alongside an IVS broadcast.
* api-change:``network-firewall``: [``botocore``] AWS Network Firewall now enables customers to use
a customer managed AWS KMS key for the encryption of their firewall resources.
- from version 1.22.0
* api-change:``gamelift``: [``botocore``] Documentation updates for Amazon GameLift.
* api-change:``mq``: [``botocore``] This release adds the CRITICAL_ACTION_REQUIRED broker state and
the ActionRequired API property. CRITICAL_ACTION_REQUIRED informs you when your broker is degraded.
ActionRequired provides you with a code which you can use to find instructions in the Developer
Guide on how to resolve the issue.
* feature:IMDS: [``botocore``] Added resiliency mechanisms to IMDS Credential Fetcher
* api-change:``securityhub``: [``botocore``] Security Hub now lets you opt-out of auto-enabling the
defaults standards (CIS and FSBP) in accounts that are auto-enabled with Security Hub via Security
Hub's integration with AWS Organizations.
* api-change:``connect``: [``botocore``] This release adds SearchUsers API which can be used to
search for users with a Connect Instance
* api-change:``rds-data``: [``botocore``] Support to receive SQL query results in the form of a
simplified JSON string. This enables developers using the new JSON string format to more easily
convert it to an object using popular JSON string parsing libraries.
- from version 1.21.46
* api-change:``chime-sdk-meetings``: [``botocore``] Include additional exceptions types.
* api-change:``ec2``: [``botocore``] Adds support for waiters that automatically poll for a deleted
NAT Gateway until it reaches the deleted state.
- from version 1.21.45
* api-change:``wisdom``: [``botocore``] This release updates the GetRecommendations API to include
a trigger event list for classifying and grouping recommendations.
* api-change:``elasticache``: [``botocore``] Doc only update for ElastiCache
* api-change:``iottwinmaker``: [``botocore``] General availability (GA) for AWS IoT TwinMaker. For
more information, see https://docs.aws.amazon.com/iot-twinmaker/latest/apireference/Welcome.html
* api-change:``secretsmanager``: [``botocore``] Documentation updates for Secrets Manager
* api-change:``mediatailor``: [``botocore``] This release introduces tiered channels and adds
support for live sources. Customers using a STANDARD channel can now create programs using live
sources.
* api-change:``storagegateway``: [``botocore``] This release adds support for minimum of 5
character length virtual tape barcodes.
* api-change:``lookoutmetrics``: [``botocore``] Added DetectMetricSetConfig API for detecting
configuration required for creating metric set from provided S3 data source.
* api-change:``iotsitewise``: [``botocore``] This release adds 3 new batch data query APIs :
BatchGetAssetPropertyValue, BatchGetAssetPropertyValueHistory and BatchGetAssetPropertyAggregates
* api-change:``glue``: [``botocore``] This release adds APIs to create, read, delete, list, and
batch read of Glue custom entity types
- from version 1.21.44
* api-change:``macie2``: [``botocore``] Sensitive data findings in Amazon Macie now indicate how
Macie found the sensitive data that produced a finding (originType).
* api-change:``rds``: [``botocore``] Added a new cluster-level attribute to set the capacity range
for Aurora Serverless v2 instances.
* api-change:``mgn``: [``botocore``] Removed required annotation from input fields in Describe
operations requests. Added quotaValue to ServiceQuotaExceededException
* api-change:``connect``: [``botocore``] This release adds APIs to search, claim, release, list,
update, and describe phone numbers. You can also use them to associate and disassociate contact
flows to phone numbers.
- from version 1.21.43
* api-change:``textract``: [``botocore``] This release adds support for specifying and extracting
information from documents using the Queries feature within Analyze Document API
* api-change:``worklink``: [``botocore``] Amazon WorkLink is no longer supported. This will be
removed in a future version of the SDK.
* api-change:``ssm``: [``botocore``] Added offset support for specifying the number of days to wait
after the date and time specified by a CRON expression when creating SSM association.
* api-change:``autoscaling``: [``botocore``] EC2 Auto Scaling now adds default instance warm-up
times for all scaling activities, health check replacements, and other replacement events in the
Auto Scaling instance lifecycle.
* api-change:``personalize``: [``botocore``] Adding StartRecommender and StopRecommender APIs for
Personalize.
* api-change:``kendra``: [``botocore``] Amazon Kendra now provides a data source connector for
Quip. For more information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-quip.html
* api-change:``polly``: [``botocore``] Amazon Polly adds new Austrian German voice - Hannah. Hannah
is available as Neural voice only.
* api-change:``transfer``: [``botocore``] This release contains corrected HomeDirectoryMappings
examples for several API functions: CreateAccess, UpdateAccess, CreateUser, and UpdateUser,.
* api-change:``kms``: [``botocore``] Adds support for KMS keys and APIs that generate and verify
HMAC codes
* api-change:``redshift``: [``botocore``] Introduces new fields for LogDestinationType and
LogExports on EnableLogging requests and Enable/Disable/DescribeLogging responses. Customers can
now select CloudWatch Logs as a destination for their Audit Logs.
- from version 1.21.42
* api-change:``lightsail``: [``botocore``] This release adds support to describe the
synchronization status of the account-level block public access feature for your Amazon Lightsail
buckets.
* api-change:``rds``: [``botocore``] Removes Amazon RDS on VMware with the deletion of APIs related
to Custom Availability Zones and Media installation
* api-change:``athena``: [``botocore``] This release adds subfields, ErrorMessage, Retryable, to
the AthenaError response object in the GetQueryExecution API when a query fails.
- from version 1.21.41
* api-change:``batch``: [``botocore``] Enables configuration updates for compute environments with
BEST_FIT_PROGRESSIVE and SPOT_CAPACITY_OPTIMIZED allocation strategies.
* api-change:``ec2``: [``botocore``] Documentation updates for Amazon EC2.
* api-change:``cloudwatch``: [``botocore``] Update cloudwatch client to latest version
* api-change:``appstream``: [``botocore``] Includes updates for create and update fleet APIs to
manage the session scripts locations for Elastic fleets.
* api-change:``glue``: [``botocore``] Auto Scaling for Glue version 3.0 and later jobs to
dynamically scale compute resources. This SDK change provides customers with the auto-scaled DPU
usage
* api-change:``appflow``: [``botocore``] Enables users to pass custom token URL parameters for
Oauth2 authentication during create connector profile
- from version 1.21.40
* api-change:``cloudwatch``: [``botocore``] Update cloudwatch client to latest version
* api-change:``fsx``: [``botocore``] This release adds support for deploying FSx for ONTAP file
systems in a single Availability Zone.
- from version 1.21.39
* api-change:``ec2``: [``botocore``] X2idn and X2iedn instances are powered by 3rd generation Intel
Xeon Scalable processors with an all-core turbo frequency up to 3.5 GHzAmazon EC2. C6a instances
are powered by 3rd generation AMD EPYC processors.
* api-change:``devops-guru``: [``botocore``] This release adds new APIs DeleteInsight to deletes
the insight along with the associated anomalies, events and recommendations.
* api-change:``efs``: [``botocore``] Update efs client to latest version
* api-change:``iottwinmaker``: [``botocore``] This release adds the following new features: 1)
ListEntities API now supports search using ExternalId. 2) BatchPutPropertyValue and
GetPropertyValueHistory API now allows users to represent time in sub-second level precisions.
- from version 1.21.38
* api-change:``amplifyuibuilder``: [``botocore``] In this release, we have added the ability to
bind events to component level actions.
* api-change:``apprunner``: [``botocore``] This release adds tracing for App Runner services with
X-Ray using AWS Distro for OpenTelemetry. New APIs: CreateObservabilityConfiguration,
DescribeObservabilityConfiguration, ListObservabilityConfigurations, and
DeleteObservabilityConfiguration. Updated APIs: CreateService and UpdateService.
* api-change:``workspaces``: [``botocore``] Added API support that allows customers to create
GPU-enabled WorkSpaces using EC2 G4dn instances.
- from version 1.21.37
* api-change:``mediaconvert``: [``botocore``] AWS Elemental MediaConvert SDK has added support for
the pass-through of WebVTT styling to WebVTT outputs, pass-through of KLV metadata to supported
formats, and improved filter support for processing 444/RGB content.
* api-change:``wafv2``: [``botocore``] Add a new CurrentDefaultVersion field to
ListAvailableManagedRuleGroupVersions API response; add a new VersioningSupported boolean to each
ManagedRuleGroup returned from ListAvailableManagedRuleGroups API response.
* api-change:``mediapackage-vod``: [``botocore``] This release adds ScteMarkersSource as an
available field for Dash Packaging Configurations. When set to MANIFEST, MediaPackage will source
the SCTE-35 markers from the manifest. When set to SEGMENTS, MediaPackage will source the SCTE-35
markers from the segments.
- from version 1.21.36
* api-change:``apigateway``: [``botocore``] ApiGateway CLI command get-usage now includes
usagePlanId, startDate, and endDate fields in the output to match documentation.
* api-change:``personalize``: [``botocore``] This release provides tagging support in AWS
Personalize.
* api-change:``pi``: [``botocore``] Adds support for DocumentDB to the Performance Insights API.
* api-change:``events``: [``botocore``] Update events client to latest version
* api-change:``docdb``: [``botocore``] Added support to enable/disable performance insights when
creating or modifying db instances
* api-change:``sagemaker``: [``botocore``] Amazon Sagemaker Notebook Instances now supports G5
instance types
- from version 1.21.35
* bugfix:Proxy: [``botocore``] Fix failure case for IP proxy addresses using TLS-in-TLS.
`boto/botocore#2652 <https://github.com/boto/botocore/pull/2652>`__
* api-change:``config``: [``botocore``] Add resourceType enums for AWS::EMR::SecurityConfiguration
and AWS::SageMaker::CodeRepository
* api-change:``panorama``: [``botocore``] Added Brand field to device listings.
* api-change:``lambda``: [``botocore``] This release adds new APIs for creating and managing Lambda
Function URLs and adds a new FunctionUrlAuthType parameter to the AddPermission API. Customers can
use Function URLs to create built-in HTTPS endpoints on their functions.
* api-change:``kendra``: [``botocore``] Amazon Kendra now provides a data source connector for Box.
For more information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-box.html
- from version 1.21.34
* api-change:``securityhub``: [``botocore``] Added additional ASFF details for RdsSecurityGroup
AutoScalingGroup, ElbLoadBalancer, CodeBuildProject and RedshiftCluster.
* api-change:``fsx``: [``botocore``] Provide customers more visibility into file system status by
adding new "/Misconfigured Unavailable"/ status for Amazon FSx for Windows File Server.
* api-change:``s3control``: [``botocore``] Documentation-only update for doc bug fixes for the S3
Control API docs.
* api-change:``datasync``: [``botocore``] AWS DataSync now supports Amazon FSx for OpenZFS
locations.
- from version 1.21.33
* api-change:``iot``: [``botocore``] AWS IoT - AWS IoT Device Defender adds support to list metric
datapoints collected for IoT devices through the ListMetricValues API
* api-change:``servicecatalog``: [``botocore``] This release adds ProvisioningArtifictOutputKeys to
DescribeProvisioningParameters to reference the outputs of a Provisioned Product and deprecates
ProvisioningArtifactOutputs.
* api-change:``sms``: [``botocore``] Revised product update notice for SMS console deprecation.
* api-change:``proton``: [``botocore``] SDK release to support tagging for AWS Proton Repository
resource
* enhancement:AWSCRT: [``botocore``] Upgrade awscrt version to 0.13.8
- Update BuildRequires and Requires from setup.py
- Update to version 1.21.32
* api-change:``connect``: [``botocore``] This release updates these APIs: UpdateInstanceAttribute,
DescribeInstanceAttribute and ListInstanceAttributes. You can use it to programmatically
enable/disable multi-party conferencing using attribute type MULTI_PARTY_CONFERENCING on the
specified Amazon Connect instance.
- from version 1.21.31
* api-change:``cloudcontrol``: [``botocore``] SDK release for Cloud Control API in Amazon Web
Services China (Beijing) Region, operated by Sinnet, and Amazon Web Services China (Ningxia)
Region, operated by NWCD
* api-change:``pinpoint-sms-voice-v2``: [``botocore``] Amazon Pinpoint now offers a version 2.0
suite of SMS and voice APIs, providing increased control over sending and configuration. This
release is a new SDK for sending SMS and voice messages called PinpointSMSVoiceV2.
* api-change:``workspaces``: [``botocore``] Added APIs that allow you to customize the logo, login
message, and help links in the WorkSpaces client login page. To learn more, visit
https://docs.aws.amazon.com/workspaces/latest/adminguide/customize-branding.html
* api-change:``route53-recovery-cluster``: [``botocore``] This release adds a new API
"/ListRoutingControls"/ to list routing control states using the highly reliable Route 53 ARC data
plane endpoints.
* api-change:``databrew``: [``botocore``] This AWS Glue Databrew release adds feature to support
ORC as an input format.
* api-change:``auditmanager``: [``botocore``] This release adds documentation updates for Audit
Manager. The updates provide data deletion guidance when a customer deregisters Audit Manager or
deregisters a delegated administrator.
* api-change:``grafana``: [``botocore``] This release adds tagging support to the Managed Grafana
service. New APIs: TagResource, UntagResource and ListTagsForResource. Updates: add optional field
tags to support tagging while calling CreateWorkspace.
- from version 1.21.30
* api-change:``iot-data``: [``botocore``] Update the default AWS IoT Core Data Plane endpoint from
VeriSign signed to ATS signed. If you have firewalls with strict egress rules, configure the rules
to grant you access to data-ats.iot.[region].amazonaws.com or
data-ats.iot.[region].amazonaws.com.cn.
* api-change:``ec2``: [``botocore``] This release simplifies the auto-recovery configuration
process enabling customers to set the recovery behavior to disabled or default
* api-change:``fms``: [``botocore``] AWS Firewall Manager now supports the configuration of
third-party policies that can use either the centralized or distributed deployment models.
* api-change:``fsx``: [``botocore``] This release adds support for modifying throughput capacity
for FSx for ONTAP file systems.
* api-change:``iot``: [``botocore``] Doc only update for IoT that fixes customer-reported issues.
- from version 1.21.29
* api-change:``organizations``: [``botocore``] This release provides the new CloseAccount API that
enables principals in the management account to close any member account within an organization.
- from version 1.21.28
* api-change:``medialive``: [``botocore``] This release adds support for selecting a maintenance
window.
* api-change:``acm-pca``: [``botocore``] Updating service name entities
- from version 1.21.27
* api-change:``ec2``: [``botocore``] This is release adds support for Amazon VPC Reachability
Analyzer to analyze path through a Transit Gateway.
* api-change:``ssm``: [``botocore``] This Patch Manager release supports creating, updating, and
deleting Patch Baselines for Rocky Linux OS.
* api-change:``batch``: [``botocore``] Bug Fix: Fixed a bug where shapes were marked as unboxed and
were not serialized and sent over the wire, causing an API error from the service.
- from version 1.21.26
* api-change:``lambda``: [``botocore``] Adds support for increased ephemeral storage (/tmp) up to
10GB for Lambda functions. Customers can now provision up to 10 GB of ephemeral storage per
function instance, a 20x increase over the previous limit of 512 MB.
* api-change:``config``: [``botocore``] Added new APIs GetCustomRulePolicy and
GetOrganizationCustomRulePolicy, and updated existing APIs PutConfigRule, DescribeConfigRule,
DescribeConfigRuleEvaluationStatus, PutOrganizationConfigRule, DescribeConfigRule to support a new
feature for building AWS Config rules with AWS CloudFormation Guard
* api-change:``transcribe``: [``botocore``] This release adds an additional parameter for
subtitling with Amazon Transcribe batch jobs: outputStartIndex.
- from version 1.21.25
* api-change:``redshift``: [``botocore``] This release adds a new [--encrypted | --no-encrypted]
field in restore-from-cluster-snapshot API. Customers can now restore an unencrypted snapshot to a
cluster encrypted with AWS Managed Key or their own KMS key.
* api-change:``ebs``: [``botocore``] Increased the maximum supported value for the Timeout
parameter of the StartSnapshot API from 60 minutes to 4320 minutes. Changed the HTTP error code
for ConflictException from 503 to 409.
* api-change:``gamesparks``: [``botocore``] Released the preview of Amazon GameSparks, a fully
managed AWS service that provides a multi-service backend for game developers.
* api-change:``elasticache``: [``botocore``] Doc only update for ElastiCache
* api-change:``transfer``: [``botocore``] Documentation updates for AWS Transfer Family to describe
how to remove an associated workflow from a server.
* api-change:``auditmanager``: [``botocore``] This release updates 1 API parameter, the SnsArn
attribute. The character length and regex pattern for the SnsArn attribute have been updated, which
enables you to deselect an SNS topic when using the UpdateSettings operation.
* api-change:``ssm``: [``botocore``] Update AddTagsToResource, ListTagsForResource, and
RemoveTagsFromResource APIs to reflect the support for tagging Automation resources. Includes other
minor documentation updates.
- from version 1.21.24
* api-change:``location``: [``botocore``] Amazon Location Service now includes a MaxResults
parameter for GetDevicePositionHistory requests.
* api-change:``polly``: [``botocore``] Amazon Polly adds new Catalan voice - Arlet. Arlet is
available as Neural voice only.
* api-change:``lakeformation``: [``botocore``] The release fixes the incorrect permissions called
out in the documentation - DESCRIBE_TAG, ASSOCIATE_TAG, DELETE_TAG, ALTER_TAG. This trebuchet
release fixes the corresponding SDK and documentation.
* api-change:``ecs``: [``botocore``] Documentation only update to address tickets
* api-change:``ce``: [``botocore``] Added three new APIs to support tagging and resource-level
authorization on Cost Explorer resources: TagResource, UntagResource, ListTagsForResource. Added
optional parameters to CreateCostCategoryDefinition, CreateAnomalySubscription and
CreateAnomalyMonitor APIs to support Tag On Create.
- from version 1.21.23
* api-change:``ram``: [``botocore``] Document improvements to the RAM API operations and parameter
descriptions.
* api-change:``ecr``: [``botocore``] This release includes a fix in the DescribeImageScanFindings
paginated output.
* api-change:``quicksight``: [``botocore``] AWS QuickSight Service Features - Expand public API
support for group management.
* api-change:``chime-sdk-meetings``: [``botocore``] Add support for media replication to link
multiple WebRTC media sessions together to reach larger and global audiences. Participants
connected to a replica session can be granted access to join the primary session and can switch
sessions with their existing WebRTC connection
* api-change:``mediaconnect``: [``botocore``] This release adds support for selecting a maintenance
window.
- from version 1.21.22
* enhancement:jmespath: [``botocore``] Add env markers to get working version of jmespath for
python 3.6
* api-change:``glue``: [``botocore``] Added 9 new APIs for AWS Glue Interactive Sessions:
ListSessions, StopSession, CreateSession, GetSession, DeleteSession, RunStatement, GetStatement,
ListStatements, CancelStatement
- from version 1.21.21
* enhancement:Dependency: [``botocore``] Added support for jmespath 1.0
* api-change:``amplifybackend``: [``botocore``] Adding the ability to customize Cognito
verification messages for email and SMS in CreateBackendAuth and UpdateBackendAuth. Adding
deprecation documentation for ForgotPassword in CreateBackendAuth and UpdateBackendAuth
* api-change:``acm-pca``: [``botocore``] AWS Certificate Manager (ACM) Private Certificate
Authority (CA) now supports customizable certificate subject names and extensions.
* api-change:``ssm-incidents``: [``botocore``] Removed incorrect validation pattern for
IncidentRecordSource.invokedBy
* enhancement:Dependency: Added support for jmespath 1.0
* api-change:``billingconductor``: [``botocore``] This is the initial SDK release for AWS Billing
Conductor. The AWS Billing Conductor is a customizable billing service, allowing you to customize
your billing data to match your desired business structure.
* api-change:``s3outposts``: [``botocore``] S3 on Outposts is releasing a new API,
ListSharedEndpoints, that lists all endpoints associated with S3 on Outpost, that has been shared
by Resource Access Manager (RAM).
- from version 1.21.20
* api-change:``robomaker``: [``botocore``] This release deprecates ROS, Ubuntu and Gazbeo from
RoboMaker Simulation Service Software Suites in favor of user-supplied containers and Relaxed
Software Suites.
* api-change:``dataexchange``: [``botocore``] This feature enables data providers to use the
RevokeRevision operation to revoke subscriber access to a given revision. Subscribers are unable to
interact with assets within a revoked revision.
* api-change:``ec2``: [``botocore``] Adds the Cascade parameter to the DeleteIpam API. Customers
can use this parameter to automatically delete their IPAM, including non-default scopes, pools,
cidrs, and allocations. There mustn't be any pools provisioned in the default public scope to use
this parameter.
* api-change:``cognito-idp``: [``botocore``] Updated EmailConfigurationType and
SmsConfigurationType to reflect that you can now choose Amazon SES and Amazon SNS resources in the
same Region.
* enhancement:AWSCRT: [``botocore``] Upgrade awscrt extra to 0.13.5
* api-change:``location``: [``botocore``] New HERE style "/VectorHereExplore"/ and
"/VectorHereExploreTruck"/.
* api-change:``ecs``: [``botocore``] Documentation only update to address tickets
* api-change:``keyspaces``: [``botocore``] Fixing formatting issues in CLI and SDK documentation
* api-change:``rds``: [``botocore``] Various documentation improvements
- from version 1.21.19
* api-change:``kendra``: [``botocore``] Amazon Kendra now provides a data source connector for
Slack. For more information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-slack.html
* api-change:``timestream-query``: [``botocore``] Amazon Timestream Scheduled Queries now support
Timestamp datatype in a multi-measure record.
* enhancement:Stubber: [``botocore``] Added support for modeled exception fields when adding errors
to a client stub. Implements boto/boto3`#3178 <https://github.com/boto/botocore/issues/3178>`__.
* api-change:``elasticache``: [``botocore``] Doc only update for ElastiCache
* api-change:``config``: [``botocore``] Add resourceType enums for AWS::ECR::PublicRepository and
AWS::EC2::LaunchTemplate
- from version 1.21.18
* api-change:``outposts``: [``botocore``] This release adds address filters for listSites
* api-change:``lambda``: [``botocore``] Adds PrincipalOrgID support to AddPermission API. Customers
can use it to manage permissions to lambda functions at AWS Organizations level.
* api-change:``secretsmanager``: [``botocore``] Documentation updates for Secrets Manager.
* api-change:``connect``: [``botocore``] This release adds support for enabling Rich Messaging when
starting a new chat session via the StartChatContact API. Rich Messaging enables the following
formatting options: bold, italics, hyperlinks, bulleted lists, and numbered lists.
* api-change:``chime``: [``botocore``] Chime VoiceConnector Logging APIs will now support
MediaMetricLogs. Also CreateMeetingDialOut now returns AccessDeniedException.
- from version 1.21.17
* api-change:``transcribe``: [``botocore``] Documentation fix for API
`StartMedicalTranscriptionJobRequest`, now showing min sample rate as 16khz
* api-change:``transfer``: [``botocore``] Adding more descriptive error types for managed workflows
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models client to latest version
- from version 1.21.16
* api-change:``comprehend``: [``botocore``] Amazon Comprehend now supports extracting the sentiment
associated with entities such as brands, products and services from text documents.
- from version 1.21.15
* api-change:``eks``: [``botocore``] Introducing a new enum for NodeGroup error code:
Ec2SubnetMissingIpv6Assignment
* api-change:``keyspaces``: [``botocore``] Adding link to CloudTrail section in Amazon Keyspaces
Developer Guide
* api-change:``mediaconvert``: [``botocore``] AWS Elemental MediaConvert SDK has added support for
reading timecode from AVCHD sources and now provides the ability to segment WebVTT at the same
interval as the video and audio in HLS packages.
- from version 1.21.14
* api-change:``chime-sdk-meetings``: [``botocore``] Adds support for Transcribe language
identification feature to the StartMeetingTranscription API.
* api-change:``ecs``: [``botocore``] Amazon ECS UpdateService API now supports additional
parameters: loadBalancers, propagateTags, enableECSManagedTags, and serviceRegistries
* api-change:``migration-hub-refactor-spaces``: [``botocore``] AWS Migration Hub Refactor Spaces
documentation update.
- from version 1.21.13
* api-change:``synthetics``: [``botocore``] Allow custom handler function.
* api-change:``transfer``: [``botocore``] Add waiters for server online and offline.
* api-change:``devops-guru``: [``botocore``] Amazon DevOps Guru now integrates with Amazon CodeGuru
Profiler. You can view CodeGuru Profiler recommendations for your AWS Lambda function in DevOps
Guru. This feature is enabled by default for new customers as of 3/4/2022. Existing customers can
enable this feature with UpdateEventSourcesConfig.
* api-change:``macie``: [``botocore``] Amazon Macie Classic (macie) has been discontinued and is no
longer available. A new Amazon Macie (macie2) is now available with significant design improvements
and additional features.
* api-change:``ec2``: [``botocore``] Documentation updates for Amazon EC2.
* api-change:``sts``: [``botocore``] Documentation updates for AWS Security Token Service.
* api-change:``connect``: [``botocore``] This release updates the *InstanceStorageConfig APIs so
they support a new ResourceType: REAL_TIME_CONTACT_ANALYSIS_SEGMENTS. Use this resource type to
enable streaming for real-time contact analysis and to associate the Kinesis stream where real-time
contact analysis segments will be published.
- from version 1.21.12
* api-change:``greengrassv2``: [``botocore``] Doc only update that clarifies Create Deployment
section.
* api-change:``fsx``: [``botocore``] This release adds support for data repository associations to
use root ("//"/) as the file system path
* api-change:``kendra``: [``botocore``] Amazon Kendra now suggests spell corrections for a query.
For more information, see https://docs.aws.amazon.com/kendra/latest/dg/query-spell-check.html
* api-change:``appflow``: [``botocore``] Launching Amazon AppFlow Marketo as a destination
connector SDK.
* api-change:``timestream-query``: [``botocore``] Documentation only update for SDK and CLI
- from version 1.21.11
* api-change:``gamelift``: [``botocore``] Minor updates to address errors.
* api-change:``cloudtrail``: [``botocore``] Add bytesScanned field into responses of DescribeQuery
and GetQueryResults.
* api-change:``athena``: [``botocore``] This release adds support for S3 Object Ownership by
allowing the S3 bucket owner full control canned ACL to be set when Athena writes query results to
S3 buckets.
* api-change:``keyspaces``: [``botocore``] This release adds support for data definition language
(DDL) operations
* api-change:``ecr``: [``botocore``] This release adds support for tracking images
lastRecordedPullTime.
- Update BuildRequires and Requires from setup.py
- Update to version 1.21.10
* api-change:``mediapackage``: [``botocore``] This release adds Hybridcast as an available profile
option for Dash Origin Endpoints.
* api-change:``rds``: [``botocore``] Documentation updates for Multi-AZ DB clusters.
* api-change:``mgn``: [``botocore``] Add support for GP3 and IO2 volume types. Add bootMode to
LaunchConfiguration object (and as a parameter to UpdateLaunchConfigurationRequest).
* api-change:``kafkaconnect``: [``botocore``] Adds operation for custom plugin deletion
(DeleteCustomPlugin) and adds new StateDescription field to DescribeCustomPlugin and
DescribeConnector responses to return errors from asynchronous resource creation.
- from version 1.21.9
* api-change:``finspace-data``: [``botocore``] Add new APIs for managing Users and Permission
Groups.
* api-change:``amplify``: [``botocore``] Add repositoryCloneMethod field for hosting an Amplify
app. This field shows what authorization method is used to clone the repo: SSH, TOKEN, or SIGV4.
* api-change:``fsx``: [``botocore``] This release adds support for the following FSx for OpenZFS
features: snapshot lifecycle transition messages, force flag for deleting file systems with child
resources, LZ4 data compression, custom record sizes, and unsetting volume quotas and reservations.
* api-change:``fis``: [``botocore``] This release adds logging support for AWS Fault Injection
Simulator experiments. Experiment templates can now be configured to send experiment activity logs
to Amazon CloudWatch Logs or to an S3 bucket.
* api-change:``route53-recovery-cluster``: [``botocore``] This release adds a new API option to
enable overriding safety rules to allow routing control state updates.
* api-change:``amplifyuibuilder``: [``botocore``] We are adding the ability to configure workflows
and actions for components.
* api-change:``athena``: [``botocore``] This release adds support for updating an existing named
query.
* api-change:``ec2``: [``botocore``] This release adds support for new AMI property
'lastLaunchedTime'
* api-change:``servicecatalog-appregistry``: [``botocore``] AppRegistry is deprecating Application
and Attribute-Group Name update feature. In this release, we are marking the name attributes for
Update APIs as deprecated to give a heads up to our customers.
- from version 1.21.8
* api-change:``elasticache``: [``botocore``] Doc only update for ElastiCache
* api-change:``panorama``: [``botocore``] Added NTP server configuration parameter to
ProvisionDevice operation. Added alternate software fields to DescribeDevice response
- from version 1.21.7
* api-change:``route53``: [``botocore``] SDK doc update for Route 53 to update some parameters with
new information.
* api-change:``databrew``: [``botocore``] This AWS Glue Databrew release adds feature to merge job
outputs into a max number of files for S3 File output type.
* api-change:``transfer``: [``botocore``] Support automatic pagination when listing AWS Transfer
Family resources.
* api-change:``s3control``: [``botocore``] Amazon S3 Batch Operations adds support for new
integrity checking capabilities in Amazon S3.
* api-change:``s3``: [``botocore``] This release adds support for new integrity checking
capabilities in Amazon S3. You can choose from four supported checksum algorithms for data
integrity checking on your upload and download requests. In addition, AWS SDK can automatically
calculate a checksum as it streams data into S3
* api-change:``fms``: [``botocore``] AWS Firewall Manager now supports the configuration of AWS
Network Firewall policies with either centralized or distributed deployment models. This release
also adds support for custom endpoint configuration, where you can choose which Availability Zones
to create firewall endpoints in.
* api-change:``lightsail``: [``botocore``] This release adds support to delete and create Lightsail
default key pairs that you can use with Lightsail instances.
* api-change:``autoscaling``: [``botocore``] You can now hibernate instances in a warm pool to stop
instances without deleting their RAM contents. You can now also return instances to the warm pool
on scale in, instead of always terminating capacity that you will need later.
- from version 1.21.6
* api-change:``transfer``: [``botocore``] The file input selection feature provides the ability to
use either the originally uploaded file or the output file from the previous workflow step,
enabling customers to make multiple copies of the original file while keeping the source file
intact for file archival.
* api-change:``lambda``: [``botocore``] Lambda releases .NET 6 managed runtime to be available in
all commercial regions.
* api-change:``textract``: [``botocore``] Added support for merged cells and column header for
table response.
- from version 1.21.5
* api-change:``translate``: [``botocore``] This release enables customers to use translation
settings for formality customization in their synchronous translation output.
* api-change:``wafv2``: [``botocore``] Updated descriptions for logging configuration.
* api-change:``apprunner``: [``botocore``] AWS App Runner adds a Java platform (Corretto 8,
Corretto 11 runtimes) and a Node.js 14 runtime.
- from version 1.21.4
* api-change:``imagebuilder``: [``botocore``] This release adds support to enable faster launching
for Windows AMIs created by EC2 Image Builder.
* api-change:``customer-profiles``: [``botocore``] This release introduces apis
CreateIntegrationWorkflow, DeleteWorkflow, ListWorkflows, GetWorkflow and GetWorkflowSteps. These
apis are used to manage and view integration workflows.
* api-change:``dynamodb``: [``botocore``] DynamoDB ExecuteStatement API now supports Limit as a
request parameter to specify the maximum number of items to evaluate. If specified, the service
will process up to the Limit and the results will include a LastEvaluatedKey value to continue the
read in a subsequent operation.
- from version 1.21.3
* api-change:``transfer``: [``botocore``] Properties for Transfer Family used with SFTP, FTP, and
FTPS protocols. Display Banners are bodies of text that can be displayed before and/or after a user
authenticates onto a server using one of the previously mentioned protocols.
* api-change:``gamelift``: [``botocore``] Increase string list limit from 10 to 100.
* api-change:``budgets``: [``botocore``] This change introduces
DescribeBudgetNotificationsForAccount API which returns budget notifications for the specified
account
- from version 1.21.2
* api-change:``iam``: [``botocore``] Documentation updates for AWS Identity and Access Management
(IAM).
* api-change:``redshift``: [``botocore``] SDK release for Cross region datasharing and cost-control
for cross region datasharing
* api-change:``evidently``: [``botocore``] Add support for filtering list of experiments and
launches by status
* api-change:``backup``: [``botocore``] AWS Backup add new S3_BACKUP_OBJECT_FAILED and
S3_RESTORE_OBJECT_FAILED event types in BackupVaultNotifications events list.
- from version 1.21.1
* api-change:``ec2``: [``botocore``] Documentation updates for EC2.
* api-change:``budgets``: [``botocore``] Adds support for auto-adjusting budgets, a new budget
method alongside fixed and planned. Auto-adjusting budgets introduces new metadata to configure a
budget limit baseline using a historical lookback average or current period forecast.
* api-change:``ce``: [``botocore``] AWS Cost Anomaly Detection now supports SNS FIFO topic
subscribers.
* api-change:``glue``: [``botocore``] Support for optimistic locking in UpdateTable
* api-change:``ssm``: [``botocore``] Assorted ticket fixes and updates for AWS Systems Manager.
- Update BuildRequires and Requires from setup.py
- actually does not require python-mock for build
- Update to version 1.21.0
* api-change:``appflow``: [``botocore``] Launching Amazon AppFlow SAP as a destination connector
SDK.
* feature:Parser: [``botocore``] Adding support for parsing int/long types in rest-json response
headers.
* api-change:``rds``: [``botocore``] Adds support for determining which Aurora PostgreSQL versions
support Babelfish.
* api-change:``athena``: [``botocore``] This release adds a subfield, ErrorType, to the AthenaError
response object in the GetQueryExecution API when a query fails.
- from version 1.20.54
* api-change:``ssm``: [``botocore``] Documentation updates for AWS Systems Manager.
- from version 1.20.53
* api-change:``cloudformation``: [``botocore``] This SDK release adds AWS CloudFormation Hooks
HandlerErrorCodes
* api-change:``lookoutvision``: [``botocore``] This release makes CompilerOptions in Lookout for
Vision's StartModelPackagingJob's Configuration object optional.
* api-change:``pinpoint``: [``botocore``] This SDK release adds a new paramater creation date for
GetApp and GetApps Api call
* api-change:``sns``: [``botocore``] Customer requested typo fix in API documentation.
* api-change:``wafv2``: [``botocore``] Adds support for AWS WAF Fraud Control account takeover
prevention (ATP), with configuration options for the new managed rule group
AWSManagedRulesATPRuleSet and support for application integration SDKs for Android and iOS mobile
apps.
- from version 1.20.52
* api-change:``cloudformation``: [``botocore``] This SDK release is for the feature launch of AWS
CloudFormation Hooks.
- from version 1.20.51
* api-change:``kendra``: [``botocore``] Amazon Kendra now provides a data source connector for
Amazon FSx. For more information, see
https://docs.aws.amazon.com/kendra/latest/dg/data-source-fsx.html
* api-change:``apprunner``: [``botocore``] This release adds support for App Runner to route
outbound network traffic of a service through an Amazon VPC. New API: CreateVpcConnector,
DescribeVpcConnector, ListVpcConnectors, and DeleteVpcConnector. Updated API: CreateService,
DescribeService, and UpdateService.
* api-change:``s3control``: [``botocore``] This release adds support for S3 Batch Replication.
Batch Replication lets you replicate existing objects, already replicated objects to new
destinations, and objects that previously failed to replicate. Customers will receive object-level
visibility of progress and a detailed completion report.
* api-change:``sagemaker``: [``botocore``] Autopilot now generates an additional report with
information on the performance of the best model, such as a Confusion matrix and Area under the
receiver operating characteristic (AUC-ROC). The path to the report can be found in
CandidateArtifactLocations.
- from version 1.20.50
* api-change:``auditmanager``: [``botocore``] This release updates 3 API parameters.
UpdateAssessmentFrameworkControlSet now requires the controls attribute, and
CreateAssessmentFrameworkControl requires the id attribute. Additionally, UpdateAssessmentFramework
now has a minimum length constraint for the controlSets attribute.
* api-change:``synthetics``: [``botocore``] Adding names parameters to the Describe APIs.
* api-change:``ssm-incidents``: [``botocore``] Update RelatedItem enum to support SSM Automation
* api-change:``events``: [``botocore``] Update events client to latest version
* enhancement:Lambda Request Header: [``botocore``] Adding request header for Lambda recursion
detection.
- from version 1.20.49
* api-change:``athena``: [``botocore``] You can now optionally specify the account ID that you
expect to be the owner of your query results output location bucket in Athena. If the account ID of
the query results bucket owner does not match the specified account ID, attempts to output to the
bucket will fail with an S3 permissions error.
* api-change:``rds``: [``botocore``] updates for RDS Custom for Oracle 12.1 support
* api-change:``lakeformation``: [``botocore``] Add support for calling Update Table Objects without
a TransactionId.
- from version 1.20.48
* api-change:``ec2``: [``botocore``] adds support for AMIs in Recycle Bin
* api-change:``robomaker``: [``botocore``] The release deprecates the use various APIs of RoboMaker
Deployment Service in favor of AWS IoT GreenGrass v2.0.
* api-change:``meteringmarketplace``: [``botocore``] Add CustomerAWSAccountId to ResolveCustomer
API response and increase UsageAllocation limit to 2500.
* api-change:``rbin``: [``botocore``] Add EC2 Image recycle bin support.
- from version 1.20.47
* api-change:``emr``: [``botocore``] Update emr client to latest version
* api-change:``personalize``: [``botocore``] Adding minRecommendationRequestsPerSecond attribute to
recommender APIs.
* enhancement:Request headers: [``botocore``] Adding request headers with retry information.
* api-change:``appflow``: [``botocore``] Launching Amazon AppFlow Custom Connector SDK.
* api-change:``dynamodb``: [``botocore``] Documentation update for DynamoDB Java SDK.
* api-change:``iot``: [``botocore``] This release adds support for configuring AWS IoT logging
level per client ID, source IP, or principal ID.
* api-change:``comprehend``: [``botocore``] Amazon Comprehend now supports sharing and importing
custom trained models from one AWS account to another within the same region.
* api-change:``ce``: [``botocore``] Doc-only update for Cost Explorer API that adds
INVOICING_ENTITY dimensions
* api-change:``fis``: [``botocore``] Added GetTargetResourceType and ListTargetResourceTypesAPI
actions. These actions return additional details about resource types and parameters that can be
targeted by FIS actions. Added a parameters field for the targets that can be specified in
experiment templates.
* api-change:``es``: [``botocore``] Allows customers to get progress updates for blue/green
deployments
* api-change:``glue``: [``botocore``] Launch Protobuf support for AWS Glue Schema Registry
* api-change:``elasticache``: [``botocore``] Documentation update for AWS ElastiCache
- Update BuildRequires and Requires from setup.py
- Update to version 1.20.46
* api-change:``appconfigdata``: [``botocore``] Documentation updates for AWS AppConfig Data.
* api-change:``athena``: [``botocore``] This release adds a field, AthenaError, to the
GetQueryExecution response object when a query fails.
* api-change:``appconfig``: [``botocore``] Documentation updates for AWS AppConfig
* api-change:``cognito-idp``: [``botocore``] Doc updates for Cognito user pools API Reference.
* api-change:``secretsmanager``: [``botocore``] Feature are ready to release on Jan 28th
* api-change:``sagemaker``: [``botocore``] This release added a new NNA accelerator compilation
support for Sagemaker Neo.
- from version 1.20.45
* api-change:``ec2``: [``botocore``] X2ezn instances are powered by Intel Cascade Lake CPUs that
deliver turbo all core frequency of up to 4.5 GHz and up to 100 Gbps of networking bandwidth
* api-change:``kafka``: [``botocore``] Amazon MSK has updated the CreateCluster and
UpdateBrokerStorage API that allows you to specify volume throughput during cluster creation and
broker volume updates.
* api-change:``connect``: [``botocore``] This release adds support for configuring a custom chat
duration when starting a new chat session via the StartChatContact API. The default value for chat
duration is 25 hours, minimum configurable value is 1 hour (60 minutes) and maximum configurable
value is 7 days (10,080 minutes).
* api-change:``amplify``: [``botocore``] Doc only update to the description of basicauthcredentials
to describe the required encoding and format.
* api-change:``opensearch``: [``botocore``] Allows customers to get progress updates for blue/green
deployments
- from version 1.20.44
* api-change:``frauddetector``: [``botocore``] Added new APIs for viewing past predictions and
obtaining prediction metadata including prediction explanations: ListEventPredictions and
GetEventPredictionMetadata
* api-change:``ebs``: [``botocore``] Documentation updates for Amazon EBS Direct APIs.
* api-change:``codeguru-reviewer``: [``botocore``] Added failure state and adjusted timeout in
waiter
* api-change:``securityhub``: [``botocore``] Adding top level Sample boolean field
* api-change:``sagemaker``: [``botocore``] API changes relating to Fail steps in model building
pipeline and add PipelineExecutionFailureReason in PipelineExecutionSummary.
- from version 1.20.43
* api-change:``fsx``: [``botocore``] This release adds support for growing SSD storage capacity and
growing/shrinking SSD IOPS for FSx for ONTAP file systems.
* api-change:``efs``: [``botocore``] Update efs client to latest version
* api-change:``connect``: [``botocore``] This release adds support for custom vocabularies to be
used with Contact Lens. Custom vocabularies improve transcription accuracy for one or more specific
words.
* api-change:``guardduty``: [``botocore``] Amazon GuardDuty expands threat detection coverage to
protect Amazon Elastic Kubernetes Service (EKS) workloads.
- from version 1.20.42
* api-change:``route53-recovery-readiness``: [``botocore``] Updated documentation for Route53
Recovery Readiness APIs.
- from version 1.20.41
* enhancement:Exceptions: [``botocore``] ProxyConnectionError previously provided the full proxy
URL. User info will now be appropriately masked if needed.
* api-change:``mediaconvert``: [``botocore``] AWS Elemental MediaConvert SDK has added support for
4K AV1 output resolutions & 10-bit AV1 color, the ability to ingest sidecar Dolby Vision XML
metadata files, and the ability to flag WebVTT and IMSC tracks for accessibility in HLS.
* api-change:``transcribe``: [``botocore``] Add support for granular PIIEntityTypes when using
Batch ContentRedaction.
- Update to version 1.20.40
* api-change:``guardduty``: [``botocore``] Amazon GuardDuty findings now include
remoteAccountDetails under AwsApiCallAction section if instance credential is exfiltrated.
* api-change:``connect``: [``botocore``] This release adds tagging support for UserHierarchyGroups
resource.
* api-change:``mediatailor``: [``botocore``] This release adds support for multiple Segment
Delivery Configurations. Users can provide a list of names and URLs when creating or editing a
source location. When retrieving content, users can send a header to choose which URL should be
used to serve content.
* api-change:``fis``: [``botocore``] Added action startTime and action endTime timestamp fields to
the ExperimentAction object
* api-change:``ec2``: [``botocore``] C6i, M6i and R6i instances are powered by a third-generation
Intel Xeon Scalable processor (Ice Lake) delivering all-core turbo frequency of 3.5 GHz
- from version 1.20.39
* api-change:``macie2``: [``botocore``] This release of the Amazon Macie API introduces stricter
validation of requests to create custom data identifiers.
* api-change:``ec2-instance-connect``: [``botocore``] Adds support for ED25519 keys.
PushSSHPublicKey Availability Zone parameter is now optional. Adds EC2InstanceStateInvalidException
for instances that are not running. This was previously a service exception, so this may require
updating your code to handle this new exception.
- from version 1.20.38
* api-change:``ivs``: [``botocore``] This release adds support for the new Thumbnail Configuration
property for Recording Configurations. For more information see
https://docs.aws.amazon.com/ivs/latest/userguide/record-to-s3.html
* api-change:``storagegateway``: [``botocore``] Documentation update for adding bandwidth
throttling support for S3 File Gateways.
* api-change:``location``: [``botocore``] This release adds the CalculateRouteMatrix API which
calculates routes for the provided departure and destination positions. The release also deprecates
the use of pricing plan across all verticals.
* api-change:``cloudtrail``: [``botocore``] This release fixes a documentation bug in the
description for the readOnly field selector in advanced event selectors. The description now
clarifies that users omit the readOnly field selector to select both Read and Write management
events.
* api-change:``ec2``: [``botocore``] Add support for AWS Client VPN client login banner and session
timeout.
- from version 1.20.37
* enhancement:Configuration: [``botocore``] Adding support for `defaults_mode` configuration. The
`defaults_mode` will be used to determine how certain default configuration options are resolved in
the SDK.
- from version 1.20.36
* api-change:``config``: [``botocore``] Update ResourceType enum with values for CodeDeploy, EC2
and Kinesis resources
* api-change:``application-insights``: [``botocore``] Application Insights support for Active
Directory and SharePoint
* api-change:``honeycode``: [``botocore``] Added read and write api support for multi-select
picklist. And added errorcode field to DescribeTableDataImportJob API output, when import job fails.
* api-change:``ram``: [``botocore``] This release adds the ListPermissionVersions API which lists
the versions for a given permission.
* api-change:``lookoutmetrics``: [``botocore``] This release adds a new DeactivateAnomalyDetector
API operation.
- Update BuildRequires and Requires from setup.py
- Update to version 1.20.35
* api-change:``pinpoint``: [``botocore``] Adds JourneyChannelSettings to WriteJourneyRequest
* api-change:``lexv2-runtime``: [``botocore``] Update lexv2-runtime client to latest version
* api-change:``nimble``: [``botocore``] Amazon Nimble Studio now supports validation for Launch
Profiles. Launch Profiles now report static validation results after create/update to detect errors
in network or active directory configuration.
* api-change:``glue``: [``botocore``] This SDK release adds support to pass run properties when
starting a workflow run
* api-change:``ssm``: [``botocore``] AWS Systems Manager adds category support for DescribeDocument
API
* api-change:``elasticache``: [``botocore``] AWS ElastiCache for Redis has added a new Engine Log
LogType in LogDelivery feature. You can now publish the Engine Log from your Amazon ElastiCache for
Redis clusters to Amazon CloudWatch Logs and Amazon Kinesis Data Firehose.
- from version 1.20.34
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models client to latest version
* api-change:``elasticache``: [``botocore``] Doc only update for ElastiCache
* api-change:``honeycode``: [``botocore``] Honeycode is releasing new APIs to allow user to create,
delete and list tags on resources.
* api-change:``ec2``: [``botocore``] Hpc6a instances are powered by a third-generation AMD EPYC
processors (Milan) delivering all-core turbo frequency of 3.4 GHz
* api-change:``fms``: [``botocore``] Shield Advanced policies for Amazon CloudFront resources now
support automatic application layer DDoS mitigation. The max length for SecurityServicePolicyData
ManagedServiceData is now 8192 characters, instead of 4096.
* api-change:``pi``: [``botocore``] This release adds three Performance Insights APIs. Use
ListAvailableResourceMetrics to get available metrics, GetResourceMetadata to get feature metadata,
and ListAvailableResourceDimensions to list available dimensions. The AdditionalMetrics field in
DescribeDimensionKeys retrieves per-SQL metrics.
- from version 1.20.33
* api-change:``finspace-data``: [``botocore``] Documentation updates for FinSpace.
* api-change:``rds``: [``botocore``] This release adds the db-proxy event type to support
subscribing to RDS Proxy events.
* api-change:``ce``: [``botocore``] Doc only update for Cost Explorer API that fixes missing
clarifications for MatchOptions definitions
* api-change:``kendra``: [``botocore``] Amazon Kendra now supports advanced query language and
query-less search.
* api-change:``workspaces``: [``botocore``] Introducing new APIs for Workspaces audio optimization
with Amazon Connect: CreateConnectClientAddIn, DescribeConnectClientAddIns,
UpdateConnectClientAddIn and DeleteConnectClientAddIn.
* api-change:``iotevents-data``: [``botocore``] This release provides documentation updates for
Timer.timestamp in the IoT Events API Reference Guide.
* api-change:``ec2``: [``botocore``] EC2 Capacity Reservations now supports RHEL instance platforms
(RHEL with SQL Server Standard, RHEL with SQL Server Enterprise, RHEL with SQL Server Web, RHEL
with HA, RHEL with HA and SQL Server Standard, RHEL with HA and SQL Server Enterprise)
- from version 1.20.32
* api-change:``ec2``: [``botocore``] New feature: Updated EC2 API to support faster launching for
Windows images. Optimized images are pre-provisioned, using snapshots to launch instances up to 65%
faster.
* api-change:``compute-optimizer``: [``botocore``] Adds support for new Compute Optimizer
capability that makes it easier for customers to optimize their EC2 instances by leveraging
multiple CPU architectures.
* api-change:``lookoutmetrics``: [``botocore``] This release adds FailureType in the response of
DescribeAnomalyDetector.
* api-change:``databrew``: [``botocore``] This SDK release adds support for specifying a Bucket
Owner for an S3 location.
* api-change:``transcribe``: [``botocore``] Documentation updates for Amazon Transcribe.
- from version 1.20.31
* api-change:``medialive``: [``botocore``] This release adds support for selecting the Program Date
Time (PDT) Clock source algorithm for HLS outputs.
- from version 1.20.30
* api-change:``ec2``: [``botocore``] This release introduces On-Demand Capacity Reservation support
for Cluster Placement Groups, adds Tags on instance Metadata, and includes documentation updates
for Amazon EC2.
* api-change:``mediatailor``: [``botocore``] This release adds support for filler slate when
updating MediaTailor channels that use the linear playback mode.
* api-change:``opensearch``: [``botocore``] Amazon OpenSearch Service adds support for Fine Grained
Access Control for existing domains running Elasticsearch version 6.7 and above
* api-change:``iotwireless``: [``botocore``] Downlink Queue Management feature provides APIs for
customers to manage the queued messages destined to device inside AWS IoT Core for LoRaWAN.
Customer can view, delete or purge the queued message(s). It allows customer to preempt the queued
messages and let more urgent messages go through.
* api-change:``es``: [``botocore``] Amazon OpenSearch Service adds support for Fine Grained Access
Control for existing domains running Elasticsearch version 6.7 and above
* api-change:``mwaa``: [``botocore``] This release adds a "/Source"/ field that provides the
initiator of an update, such as due to an automated patch from AWS or due to modification via
Console or API.
* api-change:``appsync``: [``botocore``] AppSync: AWS AppSync now supports configurable batching
sizes for AWS Lambda resolvers, Direct AWS Lambda resolvers and pipeline functions
- from version 1.20.29
* api-change:``cloudtrail``: [``botocore``] This release adds support for CloudTrail Lake, a new
feature that lets you run SQL-based queries on events that you have aggregated into event data
stores. New APIs have been added for creating and managing event data stores, and creating,
running, and managing queries in CloudTrail Lake.
* api-change:``iot``: [``botocore``] This release adds an automatic retry mechanism for AWS IoT
Jobs. You can now define a maximum number of retries for each Job rollout, along with the criteria
to trigger the retry for FAILED/TIMED_OUT/ALL(both FAILED an TIMED_OUT) job.
* api-change:``ec2``: [``botocore``] This release adds a new API called
ModifyVpcEndpointServicePayerResponsibility which allows VPC endpoint service owners to take payer
responsibility of their VPC Endpoint connections.
* api-change:``snowball``: [``botocore``] Updating validation rules for interfaces used in the
Snowball API to tighten security of service.
* api-change:``lakeformation``: [``botocore``] Add new APIs for 3rd Party Support for Lake Formation
* api-change:``appstream``: [``botocore``] Includes APIs for App Entitlement management regarding
entitlement and entitled application association.
* api-change:``eks``: [``botocore``] Amazon EKS now supports running applications using IPv6
address space
* api-change:``quicksight``: [``botocore``] Multiple Doc-only updates for Amazon QuickSight.
* api-change:``ecs``: [``botocore``] Documentation update for ticket fixes.
* api-change:``sagemaker``: [``botocore``] Amazon SageMaker now supports running training jobs on
ml.g5 instance types.
* api-change:``glue``: [``botocore``] Add Delta Lake target support for Glue Crawler and 3rd Party
Support for Lake Formation
- Update BuildRequires and Requires from setup.py
- Update to version 1.20.28
* api-change:``rekognition``: [``botocore``] This release introduces a new field
IndexFacesModelVersion, which is the version of the face detect and storage model that was used
when indexing the face vector.
* api-change:``s3``: [``botocore``] Minor doc-based updates based on feedback bugs received.
* enhancement:JSONFileCache: [``botocore``] Add support for __delitem__ in JSONFileCache
* api-change:``s3control``: [``botocore``] Documentation updates for the renaming of Glacier to
Glacier Flexible Retrieval.
- from version 1.20.27
* api-change:``sagemaker``: [``botocore``] The release allows users to pass pipeline definitions as
Amazon S3 locations and control the pipeline execution concurrency using ParallelismConfiguration.
It also adds support of EMR jobs as pipeline steps.
* api-change:``rds``: [``botocore``] Multiple doc-only updates for Relational Database Service (RDS)
* api-change:``mediaconvert``: [``botocore``] AWS Elemental MediaConvert SDK has added strength
levels to the Sharpness Filter and now permits OGG files to be specified as sidecar audio inputs.
* api-change:``greengrassv2``: [``botocore``] This release adds the API operations to manage the
Greengrass role associated with your account and to manage the core device connectivity
information. Greengrass V2 customers can now depend solely on Greengrass V2 SDK for all the API
operations needed to manage their fleets.
* api-change:``detective``: [``botocore``] Added and updated API operations to support the
Detective integration with AWS Organizations. New actions are used to manage the delegated
administrator account and the integration configuration.
- from version 1.20.26
* api-change:``nimble``: [``botocore``] Amazon Nimble Studio adds support for users to upload files
during a streaming session using NICE DCV native client or browser.
* api-change:``chime-sdk-messaging``: [``botocore``] The Amazon Chime SDK now supports updating
message attributes via channel flows
* api-change:``imagebuilder``: [``botocore``] Added a note to infrastructure configuration actions
and data types concerning delivery of Image Builder event messages to encrypted SNS topics. The key
that's used to encrypt the SNS topic must reside in the account that Image Builder runs under.
* api-change:``workmail``: [``botocore``] This release allows customers to change their email
monitoring configuration in Amazon WorkMail.
* api-change:``transfer``: [``botocore``] Property for Transfer Family used with the FTPS protocol.
TLS Session Resumption provides a mechanism to resume or share a negotiated secret key between the
control and data connection for an FTPS session.
* api-change:``lookoutmetrics``: [``botocore``] This release adds support for Causal Relationships.
Added new ListAnomalyGroupRelatedMetrics API operation and InterMetricImpactDetails API data type
* api-change:``mediaconnect``: [``botocore``] You can now use the Fujitsu-QoS protocol for your
MediaConnect sources and outputs to transport content to and from Fujitsu devices.
* api-change:``qldb``: [``botocore``] Amazon QLDB now supports journal exports in JSON and Ion
Binary formats. This release adds an optional OutputFormat parameter to the ExportJournalToS3 API.
- from version 1.20.25
* api-change:``customer-profiles``: [``botocore``] This release adds an optional parameter,
ObjectTypeNames to the PutIntegration API to support multiple object types per integration option.
Besides, this release introduces Standard Order Objects which contain data from third party systems
and each order object belongs to a specific profile.
* api-change:``sagemaker``: [``botocore``] This release adds a new ContentType field in
AutoMLChannel for SageMaker CreateAutoMLJob InputDataConfig.
* api-change:``forecast``: [``botocore``] Adds ForecastDimensions field to the
DescribeAutoPredictorResponse
* api-change:``securityhub``: [``botocore``] Added new resource details objects to ASFF, including
resources for Firewall, and RuleGroup, FirewallPolicy Added additional details for
AutoScalingGroup, LaunchConfiguration, and S3 buckets.
* api-change:``location``: [``botocore``] Making PricingPlan optional as part of create resource
API.
* api-change:``redshift``: [``botocore``] This release adds API support for managed Redshift
datashares. Customers can now interact with a Redshift datashare that is managed by a different
service, such as AWS Data Exchange.
* api-change:``apigateway``: [``botocore``] Documentation updates for Amazon API Gateway
* api-change:``devops-guru``: [``botocore``] Adds Tags support to
DescribeOrganizationResourceCollectionHealth
* api-change:``imagebuilder``: [``botocore``] This release adds support for importing and exporting
VM Images as part of the Image Creation workflow via EC2 VM Import/Export.
* api-change:``datasync``: [``botocore``] AWS DataSync now supports FSx Lustre Locations.
* api-change:``finspace-data``: [``botocore``] Make dataset description optional and allow s3
export for dataviews
- Update BuildRequires and Requires from setup.py
- Update to version 1.20.24
* api-change:``secretsmanager``: [``botocore``] Documentation updates for Secrets Manager
- from version 1.20.23
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models client to latest version
* api-change:``network-firewall``: [``botocore``] This release adds support for managed rule groups.
* api-change:``route53-recovery-control-config``: [``botocore``] This release adds tagging supports
to Route53 Recovery Control Configuration. New APIs: TagResource, UntagResource and
ListTagsForResource. Updates: add optional field `tags` to support tagging while calling
CreateCluster, CreateControlPanel and CreateSafetyRule.
* api-change:``ec2``: [``botocore``] Adds waiters support for internet gateways.
* api-change:``sms``: [``botocore``] This release adds SMS discontinuation information to the API
and CLI references.
* api-change:``route53domains``: [``botocore``] Amazon Route 53 domain registration APIs now
support filtering and sorting in the ListDomains API, deleting a domain by using the DeleteDomain
API and getting domain pricing information by using the ListPrices API.
* api-change:``savingsplans``: [``botocore``] Adds the ability to specify Savings Plans hourly
commitments using five digits after the decimal point.
- from version 1.20.22
* api-change:``lookoutvision``: [``botocore``] This release adds new APIs for packaging an Amazon
Lookout for Vision model as an AWS IoT Greengrass component.
* api-change:``sagemaker``: [``botocore``] This release added a new Ambarella device(amba_cv2)
compilation support for Sagemaker Neo.
* api-change:``comprehendmedical``: [``botocore``] This release adds a new set of APIs (synchronous
and batch) to support the SNOMED-CT ontology.
* api-change:``health``: [``botocore``] Documentation updates for AWS Health
* api-change:``logs``: [``botocore``] This release adds AWS Organizations support as condition key
in destination policy for cross account Subscriptions in CloudWatch Logs.
* api-change:``outposts``: [``botocore``] This release adds the UpdateOutpost API.
* api-change:``support``: [``botocore``] Documentation updates for AWS Support.
* api-change:``iot``: [``botocore``] This release allows customer to enable caching of custom
authorizer on HTTP protocol for clients that use persistent or Keep-Alive connection in order to
reduce the number of Lambda invocations.
- from version 1.20.21
* api-change:``location``: [``botocore``] This release adds support for Accuracy position
filtering, position metadata and autocomplete for addresses and points of interest based on partial
or misspelled free-form text.
* api-change:``appsync``: [``botocore``] AWS AppSync now supports custom domain names, allowing you
to associate a domain name that you own with an AppSync API in your account.
* api-change:``route53``: [``botocore``] Add PriorRequestNotComplete exception to
UpdateHostedZoneComment API
- from version 1.20.20
* api-change:``rekognition``: [``botocore``] This release added new KnownGender types for Celebrity
Recognition.
- from version 1.20.19
* api-change:``ram``: [``botocore``] This release adds the ability to use the new
ResourceRegionScope parameter on List operations that return lists of resources or resource types.
This new parameter filters the results by letting you differentiate between global or regional
resource types.
* api-change:``networkmanager``: [``botocore``] This release adds API support for AWS Cloud WAN.
* api-change:``amplifyuibuilder``: [``botocore``] This release introduces the actions and data
types for the new Amplify UI Builder API. The Amplify UI Builder API provides a programmatic
interface for creating and configuring user interface (UI) component libraries and themes for use
in Amplify applications.
- from version 1.20.18
* api-change:``sagemaker``: [``botocore``] This release enables - 1/ Inference endpoint
configuration recommendations and ability to run custom load tests to meet performance needs. 2/
Deploy serverless inference endpoints. 3/ Query, filter and retrieve end-to-end ML lineage graph,
and incorporate model quality/bias detection in ML workflow.
* api-change:``kendra``: [``botocore``] Experience Builder allows customers to build search
applications without writing code. Analytics Dashboard provides quality and usability metrics for
Kendra indexes. Custom Document Enrichment allows customers to build a custom ingestion pipeline to
pre-process documents and generate metadata.
* api-change:``directconnect``: [``botocore``] Adds SiteLink support to private and transit virtual
interfaces. SiteLink is a new Direct Connect feature that allows routing between Direct Connect
points of presence.
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models client to latest version
* api-change:``ec2``: [``botocore``] This release adds support for Amazon VPC IP Address Manager
(IPAM), which enables you to plan, track, and monitor IP addresses for your workloads. This release
also adds support for VPC Network Access Analyzer, which enables you to analyze network access to
resources in your Virtual Private Clouds.
* api-change:``shield``: [``botocore``] This release adds API support for Automatic Application
Layer DDoS Mitigation for AWS Shield Advanced. Customers can now enable automatic DDoS mitigation
in count or block mode for layer 7 protected resources.
* api-change:``sagemaker-runtime``: [``botocore``] Update sagemaker-runtime client to latest version
* api-change:``devops-guru``: [``botocore``] DevOps Guru now provides detailed, database-specific
analyses of performance issues and recommends corrective actions for Amazon Aurora database
instances with Performance Insights turned on. You can also use AWS tags to choose which resources
to analyze and define your applications.
* api-change:``dynamodb``: [``botocore``] Add support for Table Classes and introduce the Standard
Infrequent Access table class.
- from version 1.20.17
* api-change:``s3``: [``botocore``] Introduce Amazon S3 Glacier Instant Retrieval storage class and
a new setting in S3 Object Ownership to disable ACLs for bucket and the objects in it.
* api-change:``backup-gateway``: [``botocore``] Initial release of AWS Backup gateway which enables
you to centralize and automate protection of on-premises VMware and VMware Cloud on AWS workloads
using AWS Backup.
* api-change:``iot``: [``botocore``] Added the ability to enable/disable IoT Fleet Indexing for
Device Defender and Named Shadow information, and search them through IoT Fleet Indexing APIs.
* api-change:``ec2``: [``botocore``] This release adds support for Is4gen and Im4gn instances. This
release also adds a new subnet attribute, enableLniAtDeviceIndex, to support local network
interfaces, which are logical networking components that connect an EC2 instance to your
on-premises network.
* api-change:``outposts``: [``botocore``] This release adds the SupportedHardwareType parameter to
CreateOutpost.
* api-change:``storagegateway``: [``botocore``] Added gateway type VTL_SNOW. Added new SNOWBALL
HostEnvironment for gateways running on a Snowball device. Added new field HostEnvironmentId to
serve as an identifier for the HostEnvironment on which the gateway is running.
* api-change:``kinesis``: [``botocore``] Amazon Kinesis Data Streams now supports on demand streams.
* api-change:``glue``: [``botocore``] Support for DataLake transactions
* api-change:``accessanalyzer``: [``botocore``] AWS IAM Access Analyzer now supports policy
validation for resource policies attached to S3 buckets and access points. You can run additional
policy checks by specifying the S3 resource type you want to attach to your resource policy.
* api-change:``lakeformation``: [``botocore``] This release adds support for row and cell-based
access control in Lake Formation. It also adds support for Lake Formation Governed Tables, which
support ACID transactions and automatic storage optimizations.
* api-change:``kafka``: [``botocore``] This release adds three new V2 APIs. CreateClusterV2 for
creating both provisioned and serverless clusters. DescribeClusterV2 for getting information about
provisioned and serverless clusters and ListClustersV2 for listing all clusters (both provisioned
and serverless) in your account.
* api-change:``redshift-data``: [``botocore``] Data API now supports serverless queries.
* api-change:``snowball``: [``botocore``] Tapeball is to integrate tape gateway onto snowball, it
enables customer to transfer local data on the tape to snowball,and then ingest the data into tape
gateway on the cloud.
* api-change:``workspaces-web``: [``botocore``] This is the initial SDK release for Amazon
WorkSpaces Web. Amazon WorkSpaces Web is a low-cost, fully managed WorkSpace built to deliver
secure web-based workloads and software-as-a-service (SaaS) application access to users within
existing web browsers.
* api-change:``iottwinmaker``: [``botocore``] AWS IoT TwinMaker makes it faster and easier to
create, visualize and monitor digital twins of real-world systems like buildings, factories and
industrial equipment to optimize operations. Learn more:
https://docs.aws.amazon.com/iot-twinmaker/latest/apireference/Welcome.html (New Service) (Preview)
* api-change:``fsx``: [``botocore``] This release adds support for the FSx for OpenZFS file system
type, FSx for Lustre file systems with the Persistent_2 deployment type, and FSx for Lustre file
systems with Amazon S3 data repository associations and automatic export policies.
- from version 1.20.16
* api-change:``s3``: [``botocore``] Amazon S3 Event Notifications adds Amazon EventBridge as a
destination and supports additional event types. The PutBucketNotificationConfiguration API can now
skip validation of Amazon SQS, Amazon SNS and AWS Lambda destinations.
* api-change:``wellarchitected``: [``botocore``] This update provides support for Well-Architected
API users to use custom lens features.
* api-change:``rum``: [``botocore``] This is the first public release of CloudWatch RUM
* api-change:``rbin``: [``botocore``] This release adds support for Recycle Bin.
* api-change:``iotsitewise``: [``botocore``] AWS IoT SiteWise now supports retention configuration
for the hot tier storage.
* api-change:``compute-optimizer``: [``botocore``] Adds support for the enhanced infrastructure
metrics paid feature. Also adds support for two new sets of resource efficiency metrics, including
savings opportunity metrics and performance improvement opportunity metrics.
* api-change:``ecr``: [``botocore``] This release adds supports for pull through cache rules and
enhanced scanning.
* api-change:``evidently``: [``botocore``] Introducing Amazon CloudWatch Evidently. This is the
first public release of Amazon CloudWatch Evidently.
* api-change:``inspector2``: [``botocore``] This release adds support for the new Amazon Inspector
API. The new Amazon Inspector can automatically discover and scan Amazon EC2 instances and Amazon
ECR container images for software vulnerabilities and unintended network exposure, and report
centralized findings across multiple AWS accounts.
* api-change:``ssm``: [``botocore``] Added two new attributes to DescribeInstanceInformation called
SourceId and SourceType along with new string filters SourceIds and SourceTypes to filter instance
records.
* api-change:``ec2``: [``botocore``] This release adds support for G5g and M6a instances. This
release also adds support for Amazon EBS Snapshots Archive, a feature that enables you to archive
your EBS snapshots; and Recycle Bin, a feature that enables you to protect your EBS snapshots
against accidental deletion.
* api-change:``dataexchange``: [``botocore``] This release enables providers and subscribers to use
Data Set, Job, and Asset operations to work with API assets from Amazon API Gateway. In addition,
this release enables subscribers to use the SendApiAsset operation to invoke a provider's Amazon
API Gateway API that they are entitled to.
- from version 1.20.15
* api-change:``migration-hub-refactor-spaces``: [``botocore``] This is the initial SDK release for
AWS Migration Hub Refactor Spaces
* api-change:``textract``: [``botocore``] This release adds support for synchronously analyzing
identity documents through a new API: AnalyzeID
* api-change:``personalize-runtime``: [``botocore``] This release adds inference support for
Recommenders.
* api-change:``personalize``: [``botocore``] This release adds API support for Recommenders and
BatchSegmentJobs.
- from version 1.20.14
* api-change:``autoscaling``: [``botocore``] Documentation updates for Amazon EC2 Auto Scaling.
* api-change:``mgn``: [``botocore``] Application Migration Service now supports an additional
replication method that does not require agent installation on each source server. This option is
available for source servers running on VMware vCenter versions 6.7 and 7.0.
* api-change:``ec2``: [``botocore``] Documentation updates for EC2.
* api-change:``iotdeviceadvisor``: [``botocore``] Documentation update for Device Advisor
GetEndpoint API
* api-change:``pinpoint``: [``botocore``] Added a One-Time Password (OTP) management feature. You
can use the Amazon Pinpoint API to generate OTP codes and send them to your users as SMS messages.
Your apps can then call the API to verify the OTP codes that your users input
* api-change:``outposts``: [``botocore``] This release adds new APIs for working with Outpost sites
and orders.
- from version 1.20.13
* api-change:``timestream-query``: [``botocore``] Releasing Amazon Timestream Scheduled Queries. It
makes real-time analytics more performant and cost-effective for customers by calculating and
storing frequently accessed aggregates, and other computations, typically used in operational
dashboards, business reports, and other analytics applications
* api-change:``elasticache``: [``botocore``] Doc only update for ElastiCache
* api-change:``proton``: [``botocore``] This release adds APIs for getting the outputs and
provisioned stacks for Environments, Pipelines, and ServiceInstances. You can now add tags to
EnvironmentAccountConnections. It also adds APIs for working with PR-based provisioning. Also, it
adds APIs for syncing templates with a git repository.
* api-change:``translate``: [``botocore``] This release enables customers to use translation
settings to mask profane words and phrases in their translation output.
* api-change:``lambda``: [``botocore``] Remove Lambda function url apis
* api-change:``imagebuilder``: [``botocore``] This release adds support for sharing AMIs with
Organizations within an EC2 Image Builder Distribution Configuration.
* api-change:``customer-profiles``: [``botocore``] This release introduces a new auto-merging
feature for profile matching. The auto-merging configurations can be set via CreateDomain API or
UpdateDomain API. You can use GetIdentityResolutionJob API and ListIdentityResolutionJobs API to
fetch job status.
* api-change:``autoscaling``: [``botocore``] Customers can now configure predictive scaling
policies to proactively scale EC2 Auto Scaling groups based on any CloudWatch metrics that more
accurately represent the load on the group than the four predefined metrics. They can also use math
expressions to further customize the metrics.
* api-change:``timestream-write``: [``botocore``] This release adds support for multi-measure
records and magnetic store writes. Multi-measure records allow customers to store multiple measures
in a single table row. Magnetic store writes enable customers to write late arrival data (data with
timestamp in the past) directly into the magnetic store.
* api-change:``iotsitewise``: [``botocore``] AWS IoT SiteWise now accepts data streams that aren't
associated with any asset properties. You can organize data by updating data stream associations.
- from version 1.20.12
* api-change:``redshift``: [``botocore``] This release adds support for reserved node exchange with
restore/resize
* api-change:``elasticache``: [``botocore``] Adding support for r6gd instances for Redis with data
tiering. In a cluster with data tiering enabled, when available memory capacity is exhausted, the
least recently used data is automatically tiered to solid state drives for cost-effective capacity
scaling with minimal performance impact.
* api-change:``opensearch``: [``botocore``] This release adds an optional parameter dry-run for the
UpdateDomainConfig API to perform basic validation checks, and detect the deployment type that will
be required for the configuration change, without actually applying the change.
* api-change:``backup``: [``botocore``] This release adds new opt-in settings for advanced features
for DynamoDB backups
* api-change:``iot``: [``botocore``] This release introduces a new feature, Managed Job Template,
for AWS IoT Jobs Service. Customers can now use service provided managed job templates to easily
create jobs for supported standard job actions.
* api-change:``iotwireless``: [``botocore``] Two new APIs, GetNetworkAnalyzerConfiguration and
UpdateNetworkAnalyzerConfiguration, are added for the newly released Network Analyzer feature which
enables customers to view real-time frame information and logs from LoRaWAN devices and gateways.
* api-change:``workspaces``: [``botocore``] Documentation updates for Amazon WorkSpaces
* api-change:``s3``: [``botocore``] Introduce two new Filters to S3 Lifecycle configurations -
ObjectSizeGreaterThan and ObjectSizeLessThan. Introduce a new way to trigger actions on noncurrent
versions by providing the number of newer noncurrent versions along with noncurrent days.
* api-change:``elbv2``: [``botocore``] Update elbv2 client to latest version
* api-change:``macie2``: [``botocore``] Documentation updates for Amazon Macie
* api-change:``ec2``: [``botocore``] This release adds a new parameter ipv6Native to the allow
creation of IPv6-only subnets using the CreateSubnet operation, and the operation
ModifySubnetAttribute includes new parameters to modify subnet attributes to use resource-based
naming and enable DNS resolutions for Private DNS name.
* api-change:``sqs``: [``botocore``] Amazon SQS adds a new queue attribute, SqsManagedSseEnabled,
which enables server-side queue encryption using SQS owned encryption keys.
* api-change:``ecs``: [``botocore``] Documentation update for ARM support on Amazon ECS.
* api-change:``sts``: [``botocore``] Documentation updates for AWS Security Token Service.
* api-change:``finspace-data``: [``botocore``] Update documentation for createChangeset API.
* api-change:``dynamodb``: [``botocore``] DynamoDB PartiQL now supports ReturnConsumedCapacity,
which returns capacity units consumed by PartiQL APIs if the request specified
returnConsumedCapacity parameter. PartiQL APIs include ExecuteStatement, BatchExecuteStatement, and
ExecuteTransaction.
* api-change:``lambda``: [``botocore``] Release Lambda event source filtering for SQS, Kinesis
Streams, and DynamoDB Streams.
* api-change:``iotdeviceadvisor``: [``botocore``] This release introduces a new feature for Device
Advisor: ability to execute multiple test suites in parallel for given customer account. You can
use GetEndpoint API to get the device-level test endpoint and call StartSuiteRun with
"/parallelRun=true"/ to run suites in parallel.
* api-change:``rds``: [``botocore``] Adds support for Multi-AZ DB clusters for RDS for MySQL and
RDS for PostgreSQL.
- from version 1.20.11
* api-change:``connect``: [``botocore``] This release adds support for UpdateContactFlowMetadata,
DeleteContactFlow and module APIs. For details, see the Release Notes in the Amazon Connect
Administrator Guide.
* api-change:``dms``: [``botocore``] Added new S3 endpoint settings to allow to convert the current
UTC time into a specified time zone when a date partition folder is created. Using with
'DatePartitionedEnabled'.
* api-change:``es``: [``botocore``] This release adds an optional parameter dry-run for the
UpdateElasticsearchDomainConfig API to perform basic validation checks, and detect the deployment
type that will be required for the configuration change, without actually applying the change.
* api-change:``ssm``: [``botocore``] Adds new parameter to CreateActivation API . This parameter is
for "/internal use only"/.
* api-change:``chime-sdk-meetings``: [``botocore``] Added new APIs for enabling Echo Reduction with
Voice Focus.
* api-change:``eks``: [``botocore``] Adding missing exceptions to RegisterCluster operation
* api-change:``quicksight``: [``botocore``] Add support for Exasol data source, 1 click enterprise
embedding and email customization.
* api-change:``cloudformation``: [``botocore``] This release include SDK changes for the feature
launch of Stack Import to Service Managed StackSet.
* api-change:``rds``: [``botocore``] Adds local backup support to Amazon RDS on AWS Outposts.
* api-change:``braket``: [``botocore``] This release adds support for Amazon Braket Hybrid Jobs.
* api-change:``s3control``: [``botocore``] Added Amazon CloudWatch publishing option for S3 Storage
Lens metrics.
* api-change:``finspace-data``: [``botocore``] Add new APIs for managing Datasets, Changesets, and
Dataviews.
- from version 1.20.10
* api-change:``lexv2-runtime``: [``botocore``] Update lexv2-runtime client to latest version
* api-change:``cloudformation``: [``botocore``] The StackSets ManagedExecution feature will allow
concurrency for non-conflicting StackSet operations and queuing the StackSet operations that
conflict at a given time for later execution.
* api-change:``redshift``: [``botocore``] Added support of default IAM role for CreateCluster,
RestoreFromClusterSnapshot and ModifyClusterIamRoles APIs
* api-change:``lambda``: [``botocore``] Add support for Lambda Function URLs. Customers can use
Function URLs to create built-in HTTPS endpoints on their functions.
* api-change:``appstream``: [``botocore``] Includes APIs for managing resources for Elastic fleets:
applications, app blocks, and application-fleet associations.
* api-change:``medialive``: [``botocore``] This release adds support for specifying a SCTE-35 PID
on input. MediaLive now supports SCTE-35 PID selection on inputs containing one or more active
SCTE-35 PIDs.
* api-change:``batch``: [``botocore``] Documentation updates for AWS Batch.
* api-change:``application-insights``: [``botocore``] Application Insights now supports monitoring
for HANA
- from version 1.20.9
* api-change:``ivs``: [``botocore``] Add APIs for retrieving stream session information and support
for filtering live streams by health. For more information, see
https://docs.aws.amazon.com/ivs/latest/userguide/stream-health.html
* api-change:``lambda``: [``botocore``] Added support for CLIENT_CERTIFICATE_TLS_AUTH and
SERVER_ROOT_CA_CERTIFICATE as SourceAccessType for MSK and Kafka event source mappings.
* api-change:``chime``: [``botocore``] Adds new Transcribe API parameters to
StartMeetingTranscription, including support for content identification and redaction (PII & PHI),
partial results stabilization, and custom language models.
* api-change:``chime-sdk-meetings``: [``botocore``] Adds new Transcribe API parameters to
StartMeetingTranscription, including support for content identification and redaction (PII & PHI),
partial results stabilization, and custom language models.
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models client to latest version
* api-change:``cloudwatch``: [``botocore``] Update cloudwatch client to latest version
* api-change:``auditmanager``: [``botocore``] This release introduces a new feature for Audit
Manager: Dashboard views. You can now view insights data for your active assessments, and quickly
identify non-compliant evidence that needs to be remediated.
* api-change:``databrew``: [``botocore``] This SDK release adds the following new features: 1) PII
detection in profile jobs, 2) Data quality rules, enabling validation of data quality in profile
jobs, 3) SQL query-based datasets for Amazon Redshift and Snowflake data sources, and 4) Connecting
DataBrew datasets with Amazon AppFlow flows.
* api-change:``redshift-data``: [``botocore``] Rolling back Data API serverless features until
dependencies are live.
* api-change:``kafka``: [``botocore``] Amazon MSK has added a new API that allows you to update the
connectivity settings for an existing cluster to enable public accessibility.
* api-change:``forecast``: [``botocore``] NEW CreateExplanability API that helps you understand how
attributes such as price, promotion, etc. contributes to your forecasted values; NEW
CreateAutoPredictor API that trains up to 40% more accurate forecasting model, saves up to 50% of
retraining time, and provides model level explainability.
* api-change:``appconfig``: [``botocore``] Add Type to support feature flag configuration profiles
- from version 1.20.8
* api-change:``appconfigdata``: [``botocore``] AWS AppConfig Data is a new service that allows you
to retrieve configuration deployed by AWS AppConfig. See the AppConfig user guide for more details
on getting started. https://docs.aws.amazon.com/appconfig/latest/userguide/what-is-appconfig.html
* api-change:``drs``: [``botocore``] Introducing AWS Elastic Disaster Recovery (AWS DRS), a new
service that minimizes downtime and data loss with fast, reliable recovery of on-premises and
cloud-based applications using affordable storage, minimal compute, and point-in-time recovery.
* api-change:``apigateway``: [``botocore``] Documentation updates for Amazon API Gateway.
* api-change:``sns``: [``botocore``] Amazon SNS introduces the PublishBatch API, which enables
customers to publish up to 10 messages per API request. The new API is valid for Standard and FIFO
topics.
* api-change:``redshift-data``: [``botocore``] Data API now supports serverless requests.
* api-change:``amplifybackend``: [``botocore``] New APIs to support the Amplify Storage category.
Add and manage file storage in your Amplify app backend.
- from version 1.20.7
* api-change:``location``: [``botocore``] This release adds the support for Relevance, Distance,
Time Zone, Language and Interpolated Address for Geocoding and Reverse Geocoding.
* api-change:``cloudtrail``: [``botocore``] CloudTrail Insights now supports ApiErrorRateInsight,
which enables customers to identify unusual activity in their AWS account based on API error codes
and their rate.
- from version 1.20.6
* api-change:``migrationhubstrategy``: [``botocore``] AWS SDK for Migration Hub Strategy
Recommendations. It includes APIs to start the portfolio assessment, import portfolio data for
assessment, and to retrieve recommendations. For more information, see the AWS Migration Hub
documentation at https://docs.aws.amazon.com/migrationhub/index.html
* api-change:``ec2``: [``botocore``] Adds a new VPC Subnet attribute "/EnableDns64."/ When enabled on
IPv6 Subnets, the Amazon-Provided DNS Resolver returns synthetic IPv6 addresses for IPv4-only
destinations.
* api-change:``wafv2``: [``botocore``] Your options for logging web ACL traffic now include Amazon
CloudWatch Logs log groups and Amazon S3 buckets.
* api-change:``dms``: [``botocore``] Add Settings in JSON format for the source GCP MySQL endpoint
* api-change:``ssm``: [``botocore``] Adds support for Session Reason and Max Session Duration for
Systems Manager Session Manager.
* api-change:``appstream``: [``botocore``] This release includes support for images of AmazonLinux2
platform type.
* api-change:``eks``: [``botocore``] Adding Tags support to Cluster Registrations.
* api-change:``transfer``: [``botocore``] AWS Transfer Family now supports integrating a custom
identity provider using AWS Lambda
- from version 1.20.5
* api-change:``ec2``: [``botocore``] C6i instances are powered by a third-generation Intel Xeon
Scalable processor (Ice Lake) delivering all-core turbo frequency of 3.5 GHz. G5 instances feature
up to 8 NVIDIA A10G Tensor Core GPUs and second generation AMD EPYC processors.
* api-change:``ssm``: [``botocore``] This Patch Manager release supports creating Patch Baselines
for RaspberryPi OS (formerly Raspbian)
* api-change:``devops-guru``: [``botocore``] Add support for cross account APIs.
* api-change:``connect``: [``botocore``] This release adds APIs for creating and managing scheduled
tasks. Additionally, adds APIs to describe and update a contact and list associated references.
* api-change:``mediaconvert``: [``botocore``] AWS Elemental MediaConvert SDK has added automatic
modes for GOP configuration and added the ability to ingest screen recordings generated by Safari
on MacOS 12 Monterey.
- from version 1.20.4
* api-change:``dynamodb``: [``botocore``] Updated Help section for "/dynamodb
update-contributor-insights"/ API
* api-change:``ec2``: [``botocore``] This release provides an additional route target for the VPC
route table.
* api-change:``translate``: [``botocore``] This release enables customers to import
Multi-Directional Custom Terminology and use Multi-Directional Custom Terminology in both real-time
translation and asynchronous batch translation.
- from version 1.20.3
* api-change:``backup``: [``botocore``] AWS Backup SDK provides new options when scheduling
backups: select supported services and resources that are assigned to a particular tag, linked to a
combination of tags, or can be identified by a partial tag value, and exclude resources from their
assignments.
* api-change:``ecs``: [``botocore``] This release adds support for container instance health.
* api-change:``resiliencehub``: [``botocore``] Initial release of AWS Resilience Hub, a managed
service that enables you to define, validate, and track the resilience of your applications on AWS
- from version 1.20.2
* api-change:``batch``: [``botocore``] Adds support for scheduling policy APIs.
* api-change:``health``: [``botocore``] Documentation updates for AWS Health.
* api-change:``greengrassv2``: [``botocore``] This release adds support for Greengrass core devices
running Windows. You can now specify name of a Windows user to run a component.
- from version 1.20.1
* bugfix:urllib3: [``botocore``] Fix NO_OP_TICKET import bug in older versions of urllib3
- from version 1.20.0
* feature:EndpointResolver: [``botocore``] Adding support for resolving modeled FIPS and Dualstack
endpoints.
* feature:``six``: [``botocore``] Updated vendored version of ``six`` from 1.10.0 to 1.16.0
* api-change:``sagemaker``: [``botocore``] SageMaker CreateEndpoint and UpdateEndpoint APIs now
support additional deployment configuration to manage traffic shifting options and automatic
rollback monitoring. DescribeEndpoint now shows new in-progress deployment details with stage
status.
* api-change:``chime-sdk-meetings``: [``botocore``] Updated format validation for ids and regions.
* api-change:``wafv2``: [``botocore``] You can now configure rules to run a CAPTCHA check against
web requests and, as needed, send a CAPTCHA challenge to the client.
* api-change:``ec2``: [``botocore``] This release adds internal validation on the
GatewayAssociationState field
- from version 1.19.12
* api-change:``ec2``: [``botocore``] DescribeInstances now returns customer-owned IP addresses for
instances running on an AWS Outpost.
* api-change:``translate``: [``botocore``] This release enable customers to use their own KMS keys
to encrypt output files when they submit a batch transform job.
* api-change:``resourcegroupstaggingapi``: [``botocore``] Documentation updates and improvements.
- from version 1.19.11
* api-change:``chime-sdk-meetings``: [``botocore``] The Amazon Chime SDK Meetings APIs allow
software developers to create meetings and attendees for interactive audio, video, screen and
content sharing in custom meeting applications which use the Amazon Chime SDK.
* api-change:``sagemaker``: [``botocore``] ListDevices and DescribeDevice now show Edge Manager
agent version.
* api-change:``connect``: [``botocore``] This release adds CRUD operation support for Security
profile resource in Amazon Connect
* api-change:``iotwireless``: [``botocore``] Adding APIs for the FUOTA (firmware update over the
air) and multicast for LoRaWAN devices and APIs to support event notification opt-in feature for
Sidewalk related events. A few existing APIs need to be modified for this new feature.
* api-change:``ec2``: [``botocore``] This release adds a new instance replacement strategy for EC2
Fleet, Spot Fleet. Now you can select an action to perform when your instance gets a rebalance
notification. EC2 Fleet, Spot Fleet can launch a replacement then terminate the instance that
received notification after a termination delay
- from version 1.19.10
* api-change:``finspace``: [``botocore``] Adds superuser and data-bundle parameters to
CreateEnvironment API
* api-change:``connectparticipant``: [``botocore``] This release adds a new boolean attribute -
Connect Participant - to the CreateParticipantConnection API, which can be used to mark the
participant as connected.
* api-change:``datasync``: [``botocore``] AWS DataSync now supports Hadoop Distributed File System
(HDFS) Locations
* api-change:``macie2``: [``botocore``] This release adds support for specifying the severity of
findings that a custom data identifier produces, based on the number of occurrences of text that
matches the detection criteria.
- from version 1.19.9
* api-change:``cloudfront``: [``botocore``] CloudFront now supports response headers policies to
add HTTP headers to the responses that CloudFront sends to viewers. You can use these policies to
add CORS headers, control browser caching, and more, without modifying your origin or writing any
code.
* api-change:``connect``: [``botocore``] Amazon Connect Chat now supports real-time message
streaming.
* api-change:``nimble``: [``botocore``] Amazon Nimble Studio adds support for users to stop and
start streaming sessions.
- from version 1.19.8
* api-change:``rekognition``: [``botocore``] This Amazon Rekognition Custom Labels release
introduces the management of datasets with projects
* api-change:``networkmanager``: [``botocore``] This release adds API support to aggregate
resources, routes, and telemetry data across a Global Network.
* api-change:``lightsail``: [``botocore``] This release adds support to enable access logging for
buckets in the Lightsail object storage service.
* api-change:``neptune``: [``botocore``] Adds support for major version upgrades to ModifyDbCluster
API
- from version 1.19.7
* api-change:``transcribe``: [``botocore``] Transcribe and Transcribe Call Analytics now support
automatic language identification along with custom vocabulary, vocabulary filter, custom language
model and PII redaction.
* api-change:``application-insights``: [``botocore``] Added Monitoring support for SQL Server
Failover Cluster Instance. Additionally, added a new API to allow one-click monitoring of
containers resources.
* api-change:``rekognition``: [``botocore``] This release added new attributes to Rekognition Video
GetCelebrityRecognition API operations.
* api-change:``connect``: [``botocore``] Amazon Connect Chat now supports real-time message
streaming.
* api-change:``ec2``: [``botocore``] Support added for AMI sharing with organizations and
organizational units in ModifyImageAttribute API
- Update BuildRequires and Requires from setup.py
- Update to version 1.19.6
* api-change:``gamelift``: [``botocore``] Added support for Arm-based AWS
Graviton2 instances, such as M6g, C6g, and R6g.
* api-change:``ecs``: [``botocore``] Amazon ECS now supports running Fargate
tasks on Windows Operating Systems Families which includes Windows Server
2019 Core and Windows Server 2019 Full.
* api-change:``sagemaker``: [``botocore``] This release adds support for
RStudio on SageMaker.
* api-change:``connectparticipant``: [``botocore``] This release adds a new
boolean attribute - Connect Participant - to the CreateParticipantConnection
API, which can be used to mark the participant as connected.
* api-change:``ec2``: [``botocore``] Added new read-only DenyAllIGWTraffic
network interface attribute. Added support for DL1 24xlarge instances
powered by Habana Gaudi Accelerators for deep learning model training
workloads
* api-change:``ssm-incidents``: [``botocore``] Updating documentation, adding
new field to ConflictException to indicate earliest retry timestamp for some
operations, increase maximum length of nextToken fields
- from version 1.19.5
* api-change:``autoscaling``: [``botocore``] This release adds support for
attribute-based instance type selection, a new EC2 Auto Scaling feature
that lets customers express their instance requirements as a set of attributes,
such as vCPU, memory, and storage.
* api-change:``ec2``: [``botocore``] This release adds: attribute-based instance
type selection for EC2 Fleet, Spot Fleet, a feature that lets customers express
instance requirements as attributes like vCPU, memory, and storage; and Spot
placement score, a feature that helps customers identify an optimal location
to run Spot workloads.
* enhancement:Session: Added `get_partition_for_region` to lookup partition for
a given region_name
* api-change:``eks``: [``botocore``] EKS managed node groups now support
BOTTLEROCKET_x86_64 and BOTTLEROCKET_ARM_64 AMI types.
* api-change:``sagemaker``: [``botocore``] This release allows customers to
describe one or more versioned model packages through BatchDescribeModelPackage,
update project via UpdateProject, modify and read customer metadata properties
using Create, Update and Describe ModelPackage and enables cross account
registration of model packages.
* enhancement:Session: [``botocore``] Added `get_partition_for_region` allowing
partition lookup by region name.
* api-change:``textract``: [``botocore``] This release adds support for asynchronously
analyzing invoice and receipt documents through two new APIs: StartExpenseAnalysis
and GetExpenseAnalysis
* enchancement:``s3``: TransferConfig now supports the `max_bandwidth` argument.
- from version 1.19.4
* api-change:``emr-containers``: [``botocore``] This feature enables auto-generation
of certificate to secure the managed-endpoint and removes the need for customer
provided certificate-arn during managed-endpoint setup.
* api-change:``chime-sdk-messaging``: [``botocore``] The Amazon Chime SDK now supports
push notifications through Amazon Pinpoint
* api-change:``chime-sdk-identity``: [``botocore``] The Amazon Chime SDK now supports
push notifications through Amazon Pinpoint
- from version 1.19.3
* api-change:``rds``: [``botocore``] This release adds support for Amazon RDS Custom,
which is a new RDS management type that gives you full access to your database and
operating system.
For more information, see https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/rds-custom.html
* api-change:``auditmanager``: [``botocore``] This release introduces a new feature for
Audit Manager: Custom framework sharing. You can now share your custom frameworks with
another AWS account, or replicate them into another AWS Region under your own account.
* api-change:``ec2``: [``botocore``] This release adds support to create a VPN Connection
that is not attached to a Gateway at the time of creation. Use this to create VPNs
associated with Core Networks, or modify your VPN and attach a gateway using the modify
API after creation.
* api-change:``route53resolver``: [``botocore``] New API for ResolverConfig, which allows
autodefined rules for reverse DNS resolution to be disabled for a VPC
- from version 1.19.2
* api-change:``quicksight``: [``botocore``] Added QSearchBar option for
GenerateEmbedUrlForRegisteredUser ExperienceConfiguration to support
Q search bar embedding
* api-change:``auditmanager``: [``botocore``] This release introduces character restrictions
for ControlSet names. We updated regex patterns for the following attributes: ControlSet,
CreateAssessmentFrameworkControlSet, and UpdateAssessmentFrameworkControlSet.
* api-change:``chime``: [``botocore``] Chime VoiceConnector and VoiceConnectorGroup
APIs will now return an ARN.
- from version 1.19.1
* api-change:``connect``: [``botocore``] Released Amazon Connect hours of operation API
for general availability (GA). This API also supports AWS CloudFormation. For more
information, see Amazon Connect Resource Type Reference in the AWS CloudFormation
User Guide.
- from version 1.19.0
* api-change:``appflow``: [``botocore``] Feature to add support for JSON-L format
for S3 as a source.
* api-change:``mediapackage-vod``: [``botocore``] MediaPackage passes through digital
video broadcasting (DVB) subtitles into the output.
* api-change:``mediaconvert``: [``botocore``] AWS Elemental MediaConvert SDK has added
support for specifying caption time delta in milliseconds and the ability to apply
color range legalization to source content other than AVC video.
* api-change:``mediapackage``: [``botocore``] When enabled, MediaPackage passes through
digital video broadcasting (DVB) subtitles into the output.
* api-change:``panorama``: [``botocore``] General availability for AWS Panorama. AWS
SDK for Panorama includes APIs to manage your devices and nodes, and deploy computer
vision applications to the edge. For more information, see the AWS Panorama
documentation at http://docs.aws.amazon.com/panorama
* feature:Serialization: [``botocore``] rest-json serialization defaults
aligned across AWS SDKs
* api-change:``directconnect``: [``botocore``] This release adds 4 new APIS,
which needs to be public able
* api-change:``securityhub``: [``botocore``] Added support for cross-Region finding
aggregation, which replicates findings from linked Regions to a single aggregation
Region. Added operations to view, enable, update, and delete the finding aggregation.
- from version 1.18.65
* api-change:``dataexchange``: [``botocore``] This release adds support for our public
preview of AWS Data Exchange for Amazon Redshift. This enables data providers to list
products including AWS Data Exchange datashares for Amazon Redshift, giving subscribers
read-only access to provider data in Amazon Redshift.
* api-change:``chime-sdk-messaging``: [``botocore``] The Amazon Chime SDK now allows
developers to execute business logic on in-flight messages before they are delivered
to members of a messaging channel with channel flows.
- from version 1.18.64
* api-change:``quicksight``: [``botocore``] AWS QuickSight Service Features - Add IP
Restriction UI and public APIs support.
* enchancement:AWSCRT: [``botocore``] Upgrade awscrt extra to 0.12.5
* api-change:``ivs``: [``botocore``] Bug fix: remove unsupported maxResults and
nextToken pagination parameters from ListTagsForResource
- from version 1.18.63
* api-change:``efs``: [``botocore``] Update efs client to latest version
* api-change:``glue``: [``botocore``] Enable S3 event base crawler API.
- from version 1.18.62
* api-change:``elbv2``: [``botocore``] Update elbv2 client to latest version
* api-change:``autoscaling``: [``botocore``] Amazon EC2 Auto Scaling now supports
filtering describe Auto Scaling groups API using tags
* api-change:``sagemaker``: [``botocore``] This release updates the provisioning
artifact ID to an optional parameter in CreateProject API. The provisioning
artifact ID defaults to the latest provisioning artifact ID of the product
if you don't provide one.
* api-change:``robomaker``: [``botocore``] Adding support to GPU simulation jobs
as well as non-ROS simulation jobs.
- from version 1.18.61
* api-change:``config``: [``botocore``] Adding Config support for AWS::OpenSearch::Domain
* api-change:``ec2``: [``botocore``] This release adds support for additional
VPC Flow Logs delivery options to S3, such as Apache Parquet formatted files,
Hourly partitions and Hive-compatible S3 prefixes
* api-change:``storagegateway``: [``botocore``] Adding support for Audit Logs
on NFS shares and Force Closing Files on SMB shares.
* api-change:``workmail``: [``botocore``] This release adds APIs for adding,
removing and retrieving details of mail domains
* api-change:``kinesisanalyticsv2``: [``botocore``] Support for Apache Flink 1.13
in Kinesis Data Analytics. Changed the required status of some Update properties
to better fit the corresponding Create properties.
- from version 1.18.60
* api-change:``cloudsearch``: [``botocore``] Adds an additional validation exception
for Amazon CloudSearch configuration APIs for better error handling.
* api-change:``ecs``: [``botocore``] Documentation only update to address tickets.
* api-change:``mediatailor``: [``botocore``] MediaTailor now supports ad prefetching.
* api-change:``ec2``: [``botocore``] EncryptionSupport for InstanceStorageInfo added
to DescribeInstanceTypes API
- from version 1.18.59
* api-change:``elbv2``: [``botocore``] Update elbv2 client to latest version
* bugfix:Signing: [``botocore``] SigV4QueryAuth and CrtSigV4QueryAuth now properly
respect AWSRequest.params while signing boto/botocore (#2521)
* api-change:``medialive``: [``botocore``] This release adds support for Transport
Stream files as an input type to MediaLive encoders.
* api-change:``ec2``: [``botocore``] Documentation update for Amazon EC2.
* api-change:``frauddetector``: [``botocore``] New model type: Transaction Fraud
Insights, which is optimized for online transaction fraud. Stored Events, which
allows customers to send and store data directly within Amazon Fraud Detector.
Batch Import, which allows customers to upload a CSV file of historic event
data for processing and storage
- from version 1.18.58
* api-change:``lexv2-runtime``: [``botocore``] Update lexv2-runtime client to latest version
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models client to latest version
* api-change:``secretsmanager``: [``botocore``] Documentation updates for Secrets Manager
* api-change:``securityhub``: [``botocore``] Added new resource details objects to
ASFF, including resources for WAF rate-based rules, EC2 VPC endpoints, ECR repositories,
EKS clusters, X-Ray encryption, and OpenSearch domains. Added additional details for
CloudFront distributions, CodeBuild projects, ELB V2 load balancers, and S3 buckets.
* api-change:``mediaconvert``: [``botocore``] AWS Elemental MediaConvert has added the
ability to set account policies which control access restrictions for HTTP, HTTPS,
and S3 content sources.
* api-change:``ec2``: [``botocore``] This release removes a requirement for filters
on SearchLocalGatewayRoutes operations.
- from version 1.18.57
* api-change:``kendra``: [``botocore``] Amazon Kendra now supports indexing and
querying documents in different languages.
* api-change:``grafana``: [``botocore``] Initial release of the SDK for Amazon
Managed Grafana API.
* api-change:``firehose``: [``botocore``] Allow support for Amazon Opensearch
Service(successor to Amazon Elasticsearch Service) as a Kinesis Data Firehose
delivery destination.
* api-change:``backup``: [``botocore``] Launch of AWS Backup Vault Lock, which protects
your backups from malicious and accidental actions, works with existing backup policies,
and helps you meet compliance requirements.
* api-change:``schemas``: [``botocore``] Removing unused request/response objects.
* api-change:``chime``: [``botocore``] This release enables customers to configure
Chime MediaCapturePipeline via API.
- from version 1.18.56
* api-change:``sagemaker``: [``botocore``] This release adds a new TrainingInputMode
FastFile for SageMaker Training APIs.
* api-change:``amplifybackend``: [``botocore``] Adding a new field 'AmplifyFeatureFlags'
to the response of the GetBackend operation. It will return a stringified version of
the cli.json file for the given Amplify project.
* api-change:``fsx``: [``botocore``] This release adds support for Lustre 2.12 to FSx for Lustre.
* api-change:``kendra``: [``botocore``] Amazon Kendra now supports integration with AWS SSO
- from version 1.18.55
* api-change:``workmail``: [``botocore``] This release allows customers to change their
inbound DMARC settings in Amazon WorkMail.
* api-change:``location``: [``botocore``] Add support for PositionFiltering.
* api-change:``application-autoscaling``: [``botocore``] With this release, Application
Auto Scaling adds support for Amazon Neptune. Customers can now automatically add or
remove Read Replicas of their Neptune clusters to keep the average CPU Utilization at
the target value specified by the customers.
* api-change:``ec2``: [``botocore``] Released Capacity Reservation Fleet, a feature of
Amazon EC2 Capacity Reservations, which provides a way to manage reserved capacity
across instance types.
For more information: https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/cr-fleets.html
* api-change:``glue``: [``botocore``] This release adds tag as an input of CreateConnection
* api-change:``backup``: [``botocore``] AWS Backup Audit Manager framework report.
- from version 1.18.54
* api-change:``codebuild``: [``botocore``] CodeBuild now allows you to select how batch
build statuses are sent to the source provider for a project.
* api-change:``efs``: [``botocore``] Update efs client to latest version
* api-change:``kms``: [``botocore``] Added SDK examples for ConnectCustomKeyStore,
CreateCustomKeyStore, CreateKey, DeleteCustomKeyStore, DescribeCustomKeyStores,
DisconnectCustomKeyStore, GenerateDataKeyPair, GenerateDataKeyPairWithoutPlaintext,
GetPublicKey, ReplicateKey, Sign, UpdateCustomKeyStore and Verify APIs
- from version 1.18.53
* api-change:``synthetics``: [``botocore``] CloudWatch Synthetics now enables customers
to choose a customer managed AWS KMS key or an Amazon S3-managed key instead of an
AWS managed key (default) for the encryption of artifacts that the canary stores
in Amazon S3. CloudWatch Synthetics also supports artifact S3 location updation now.
* api-change:``ssm``: [``botocore``] When "/AutoApprovable"/ is true for a Change Template,
then specifying --auto-approve (boolean) in Start-Change-Request-Execution will create
a change request that bypasses approver review. (except for change calendar restrictions)
* api-change:``apprunner``: [``botocore``] This release contains several minor bug fixes.
- from version 1.18.52
* api-change:``network-firewall``: [``botocore``] This release adds support for strict
ordering for stateful rule groups. Using strict ordering, stateful rules are evaluated
in the exact order in which you provide them.
* api-change:``dataexchange``: [``botocore``] This release enables subscribers to set up
automatic exports of newly published revisions using the new EventAction API.
* api-change:``workmail``: [``botocore``] This release adds support for mobile device
access overrides management in Amazon WorkMail.
* api-change:``account``: [``botocore``] This release of the Account Management API enables
customers to manage the alternate contacts for their AWS accounts.
For more information, see https://docs.aws.amazon.com/accounts/latest/reference/accounts-welcome.html
* api-change:``workspaces``: [``botocore``] Added CreateUpdatedWorkspaceImage API to update
WorkSpace images with latest software and drivers. Updated DescribeWorkspaceImages API to
display if there are updates available for WorkSpace images.
* api-change:``cloudcontrol``: [``botocore``] Initial release of the SDK for AWS Cloud Control API
* api-change:``macie2``: [``botocore``] Amazon S3 bucket metadata now indicates whether an
error or a bucket's permissions settings prevented Amazon Macie from retrieving data about
the bucket or the bucket's objects.
- from version 1.18.51
* api-change:``lambda``: [``botocore``] Adds support for Lambda functions powered by AWS Graviton2
processors. Customers can now select the CPU architecture for their functions.
* api-change:``sesv2``: [``botocore``] This release includes the ability to use 2048 bits RSA key
pairs for DKIM in SES, either with Easy DKIM or Bring Your Own DKIM.
* api-change:``amp``: [``botocore``] This release adds alert manager and rule group namespace APIs
- from version 1.18.50
* api-change:``transfer``: [``botocore``] Added changes for managed workflows feature APIs.
* api-change:``imagebuilder``: [``botocore``] Fix description for AmiDistributionConfiguration
Name property, which actually refers to the output AMI name. Also updated for consistent
terminology to use "/base"/ image, and another update to fix description text.
- from version 1.18.49
* api-change:``appintegrations``: [``botocore``] The Amazon AppIntegrations service enables you
to configure and reuse connections to external applications.
* api-change:``wisdom``: [``botocore``] Released Amazon Connect Wisdom, a feature of Amazon Connect,
which provides real-time recommendations and search functionality in general availability (GA).
For more information, see https://docs.aws.amazon.com/wisdom/latest/APIReference/Welcome.html.
* api-change:``pinpoint``: [``botocore``] Added support for journey with contact center activity
* api-change:``voice-id``: [``botocore``] Released the Amazon Voice ID SDK, for usage with the
Amazon Connect Voice ID feature released for Amazon Connect.
* api-change:``connect``: [``botocore``] This release updates a set of APIs: CreateIntegrationAssociation,
ListIntegrationAssociations, CreateUseCase, and StartOutboundVoiceContact. You can use it to create
integrations with Amazon Pinpoint for the Amazon Connect Campaigns use case, Amazon Connect Voice ID,
and Amazon Connect Wisdom.
* api-change:``elbv2``: [``botocore``] Update elbv2 client to latest version
- from version 1.18.48
* api-change:``license-manager``: [``botocore``] AWS License Manager now allows customers to get
the LicenseArn in the Checkout API Response.
* api-change:``ec2``: [``botocore``] DescribeInstances now returns Platform Details, Usage Operation,
and Usage Operation Update Time.
- from version 1.18.47
* api-change:``mediaconvert``: [``botocore``] This release adds style and positioning support for
caption or subtitle burn-in from rich text sources such as TTML. This release also introduces
configurable image-based trick play track generation.
* api-change:``appsync``: [``botocore``] Documented the new OpenSearchServiceDataSourceConfig data
type. Added deprecation notes to the ElasticsearchDataSourceConfig data type.
* api-change:``ssm``: [``botocore``] Added cutoff behavior support for preventing new task invocations
from starting when the maintenance window cutoff time is reached.
- from version 1.18.46
* api-change:``imagebuilder``: [``botocore``] This feature adds support for specifying GP3 volume
throughput and configuring instance metadata options for instances launched by EC2 Image Builder.
* api-change:``wafv2``: [``botocore``] Added the regex match rule statement, for matching web requests
against a single regular expression.
* api-change:``mediatailor``: [``botocore``] This release adds support to configure logs
for playback configuration.
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models client to latest version
* api-change:``iam``: [``botocore``] Added changes to OIDC API about not using port
numbers in the URL.
* api-change:``license-manager``: [``botocore``] AWS License Manager now allows customers to change
their Windows Server or SQL license types from Bring-Your-Own-License (BYOL) to License Included
or vice-versa (using the customer's media).
* api-change:``mediapackage-vod``: [``botocore``] MediaPackage VOD will now return the current
processing statuses of an asset's endpoints. The status can be QUEUED, PROCESSING, PLAYABLE,
or FAILED.
- from version 1.18.45
* api-change:``comprehend``: [``botocore``] Amazon Comprehend now supports versioning of custom
models, improved training with ONE_DOC_PER_FILE text documents for custom entity recognition,
ability to provide specific test sets during training, and live migration to new model endpoints.
* api-change:``iot``: [``botocore``] This release adds support for verifying, viewing and filtering
AWS IoT Device Defender detect violations with four verification states.
* api-change:``ecr``: [``botocore``] This release adds additional support for repository replication
* api-change:``ec2``: [``botocore``] This update adds support for downloading configuration templates
using new APIs (GetVpnConnectionDeviceTypes and GetVpnConnectionDeviceSampleConfiguration) and
Internet Key Exchange version 2 (IKEv2) parameters for many popular CGW devices.
- from version 1.18.44
* api-change:``opensearch``: [``botocore``] This release adds an optional parameter in the
ListDomainNames API to filter domains based on the engine type (OpenSearch/Elasticsearch).
* api-change:``es``: [``botocore``] This release adds an optional parameter in the ListDomainNames API
to filter domains based on the engine type (OpenSearch/Elasticsearch).
* api-change:``dms``: [``botocore``] Optional flag force-planned-failover added to
reboot-replication-instance API call. This flag can be used to test a planned failover
scenario used during some maintenance operations.
- from version 1.18.43
* api-change:``kafkaconnect``: [``botocore``] This is the initial SDK release for Amazon
Managed Streaming for Apache Kafka Connect (MSK Connect).
* api-change:``macie2``: [``botocore``] This release adds support for specifying which
managed data identifiers are used by a classification job, and retrieving a list of
managed data identifiers that are available.
* api-change:``robomaker``: [``botocore``] Adding support to create container based
Robot and Simulation applications by introducing an environment field
* api-change:``s3``: [``botocore``] Add support for access point arn filtering in
S3 CW Request Metrics
* api-change:``transcribe``: [``botocore``] This release adds support for subtitling
with Amazon Transcribe batch jobs.
* api-change:``sagemaker``: [``botocore``] Add API for users to retry a failed pipeline
execution or resume a stopped one.
* api-change:``pinpoint``: [``botocore``] This SDK release adds a new feature for
Pinpoint campaigns, in-app messaging.
- from versionm 1.18.42
* api-change:``sagemaker``: [``botocore``] This release adds support for "/Project Search"/
* api-change:``ec2``: [``botocore``] This release adds support for vt1 3xlarge, 6xlarge
and 24xlarge instances powered by Xilinx Alveo U30 Media Accelerators for video
transcoding workloads
* api-change:``wafv2``: [``botocore``] This release adds support for including rate
based rules in a rule group.
* api-change:``chime``: [``botocore``] Adds support for SipHeaders parameter for
CreateSipMediaApplicationCall.
* api-change:``comprehend``: [``botocore``] Amazon Comprehend now allows you to train
and run PDF and Word documents for custom entity recognition. With PDF and Word formats,
you can extract information from documents containing headers, lists and tables.
- from version 1.18.41
* api-change:``iot``: [``botocore``] AWS IoT Rules Engine adds OpenSearch action. The
OpenSearch rule action lets you stream data from IoT sensors and applications to Amazon
OpenSearch Service which is a successor to Amazon Elasticsearch Service.
* api-change:``ec2``: [``botocore``] Adds support for T3 instances on Amazon EC2 Dedicated Hosts.
* enhancement:Tagged Unions: [``botocore``] Introducing support for the `union` trait
on structures in request and response objects.
- from version 1.18.40
* api-change:``cloudformation``: [``botocore``] Doc only update for CloudFormation that
fixes several customer-reported issues.
* api-change:``rds``: [``botocore``] This release adds support for providing a custom timeout
value for finding a scaling point during autoscaling in Aurora Serverless v1.
* api-change:``ecr``: [``botocore``] This release updates terminology around KMS keys.
* api-change:``sagemaker``: [``botocore``] This release adds support for
"/Lifecycle Configurations"/ to SageMaker Studio
* api-change:``transcribe``: [``botocore``] This release adds an API option for
startTranscriptionJob and startMedicalTranscriptionJob that allows the user to
specify encryption context key value pairs for batch jobs.
* api-change:``quicksight``: [``botocore``] Add new data source type for Amazon
OpenSearch (successor to Amazon ElasticSearch).
- from version 1.18.39
* api-change:``emr``: [``botocore``] Update emr client to latest version
* api-change:``codeguru-reviewer``: [``botocore``] The Amazon CodeGuru Reviewer API
now includes the RuleMetadata data object and a Severity attribute on a
RecommendationSummary object. A RuleMetadata object contains information about a
rule that generates a recommendation. Severity indicates how severe the issue
associated with a recommendation is.
* api-change:``lookoutequipment``: [``botocore``] Added OffCondition parameter to CreateModel API
- from version 1.18.38
* api-change:``opensearch``: [``botocore``] Updated Configuration APIs for Amazon
OpenSearch Service (successor to Amazon Elasticsearch Service)
* api-change:``ram``: [``botocore``] A minor text-only update that fixes several
customer issues.
* api-change:``kafka``: [``botocore``] Amazon MSK has added a new API that allows
you to update the encrypting and authentication settings for an existing cluster.
- from version 1.18.37
* api-change:``elasticache``: [``botocore``] Doc only update for ElastiCache
* api-change:``amp``: [``botocore``] This release adds tagging support for
Amazon Managed Service for Prometheus workspace.
* api-change:``forecast``: [``botocore``] Predictor creation now supports selecting
an accuracy metric to optimize in AutoML and hyperparameter optimization. This
release adds additional accuracy metrics for predictors - AverageWeightedQuantileLoss,
MAPE and MASE.
* api-change:``xray``: [``botocore``] Updated references to AWS KMS keys and customer
managed keys to reflect current terminology.
* api-change:``ssm-contacts``: [``botocore``] Added SDK examples for SSM-Contacts.
* api-change:``mediapackage``: [``botocore``] SPEKE v2 support for live CMAF packaging
type. SPEKE v2 is an upgrade to the existing SPEKE API to support multiple encryption
keys, it supports live DASH currently.
* api-change:``eks``: [``botocore``] Adding RegisterCluster and DeregisterCluster operations,
to support connecting external clusters to EKS.
- from version 1.18.36
* api-change:``chime-sdk-identity``: [``botocore``] Documentation updates for Chime
* api-change:``chime-sdk-messaging``: [``botocore``] Documentation updates for Chime
* api-change:``outposts``: [``botocore``] This release adds a new API CreateOrder.
* api-change:``frauddetector``: [``botocore``] Enhanced GetEventPrediction API response
to include risk scores from imported SageMaker models
* api-change:``codeguru-reviewer``: [``botocore``] Added support for CodeInconsistencies
detectors
- from version 1.18.35
* api-change:``acm-pca``: [``botocore``] Private Certificate Authority Service now allows
customers to enable an online certificate status protocol (OCSP) responder service on
their private certificate authorities. Customers can also optionally configure a custom
CNAME for their OCSP responder.
* api-change:``s3control``: [``botocore``] S3 Multi-Region Access Points provide a single
global endpoint to access a data set that spans multiple S3 buckets in different AWS Regions.
* api-change:``accessanalyzer``: [``botocore``] Updates service API, documentation, and
paginators to support multi-region access points from Amazon S3.
* api-change:``schemas``: [``botocore``] This update include the support for Schema Discoverer
to discover the events sent to the bus from another account. The feature will be enabled by
default when discoverer is created or updated but can also be opt-in or opt-out by specifying
the value for crossAccount.
* api-change:``securityhub``: [``botocore``] New ASFF Resources: AwsAutoScalingLaunchConfiguration,
AwsEc2VpnConnection, AwsEcrContainerImage. Added KeyRotationStatus to AwsKmsKey. Added
AccessControlList, BucketLoggingConfiguration,BucketNotificationConfiguration and
BucketNotificationConfiguration to AwsS3Bucket.
* enhancement:s3: [``botocore``] Added support for S3 Multi-Region Access Points
* api-change:``efs``: [``botocore``] Update efs client to latest version
* api-change:``transfer``: [``botocore``] AWS Transfer Family introduces Managed Workflows
for creating, executing, monitoring, and standardizing post file transfer processing
* api-change:``ebs``: [``botocore``] Documentation updates for Amazon EBS direct APIs.
* api-change:``quicksight``: [``botocore``] This release adds support for referencing parent
datasets as sources in a child dataset.
* api-change:``fsx``: [``botocore``] Announcing Amazon FSx for NetApp ONTAP, a new service
that provides fully managed shared storage in the AWS Cloud with the data access and
management capabilities of ONTAP.
* enhancement:Signers: [``botocore``] Added support for Sigv4a Signing Algorithm
* api-change:``lex-models``: [``botocore``] Lex now supports Korean (ko-KR) locale.
- from version 1.18.34
* api-change:``ec2``: [``botocore``] Added LaunchTemplate support for the IMDS IPv6 endpoint
* api-change:``cloudtrail``: [``botocore``] Documentation updates for CloudTrail
* api-change:``mediatailor``: [``botocore``] This release adds support for wall
clock programs in LINEAR channels.
* api-change:``config``: [``botocore``] Documentation updates for config
* api-change:``servicecatalog-appregistry``: [``botocore``] Introduction of
GetAssociatedResource API and GetApplication response extension for Resource
Groups support.
- Switch tests from nose to pytest
- Update BuildRequires and Requires from setup.py
- Update to version 1.18.33
* sync python-botocore dependency with setup.py
* api-change:``iot``: [``botocore``] Added
Create/Update/Delete/Describe/List APIs for a new IoT resource named
FleetMetric. Added a new Fleet Indexing query API named
GetBucketsAggregation. Added a new field named DisconnectedReason in
Fleet Indexing query response. Updated their related documentations.
* api-change:``polly``: [``botocore``] Amazon Polly adds new South
African English voice - Ayanda. Ayanda is available as Neural voice
only.
* api-change:``compute-optimizer``: [``botocore``] Documentation
updates for Compute Optimizer
* api-change:``sqs``: [``botocore``] Amazon SQS adds a new queue
attribute, RedriveAllowPolicy, which includes the dead-letter queue
redrive permission parameters. It defines which source queues can
specify dead-letter queues as a JSON object.
* api-change:``memorydb``: [``botocore``] Documentation updates for
MemoryDB
- from version 1.18.32
* api-change:``codebuild``: [``botocore``] Documentation updates for
CodeBuild
* api-change:``firehose``: [``botocore``] This release adds the
Dynamic Partitioning feature to Kinesis Data Firehose service for S3
destinations.
* api-change:``kms``: [``botocore``] This release has changes to KMS
nomenclature to remove the word master from both the "/Customer master
key"/ and "/CMK"/ abbreviation and replace those naming conventions with
"/KMS key"/.
* api-change:``cloudformation``: [``botocore``] AWS CloudFormation
allows you to iteratively develop your applications when failures are
encountered without rolling back successfully provisioned resources.
By specifying stack failure options, you can troubleshoot resources in
a CREATE_FAILED or UPDATE_FAILED status.
- from version 1.18.31
* api-change:``s3``: [``botocore``] Documentation updates for Amazon
S3.
* api-change:``emr``: [``botocore``] Update emr client to latest
version
* api-change:``ec2``: [``botocore``] This release adds the BootMode
flag to the ImportImage API and showing the detected BootMode of an
ImportImage task.
- from version 1.18.30
* api-change:``transcribe``: [``botocore``] This release adds support
for batch transcription in six new languages - Afrikaans, Danish,
Mandarin Chinese (Taiwan), New Zealand English, South African English,
and Thai.
* api-change:``rekognition``: [``botocore``] This release added new
attributes to Rekognition RecognizeCelebities and GetCelebrityInfo API
operations.
* api-change:``ec2``: [``botocore``] Support added for resizing VPC
prefix lists
* api-change:``compute-optimizer``: [``botocore``] Adds support for 1)
the AWS Graviton (AWS_ARM64) recommendation preference for Amazon EC2
instance and Auto Scaling group recommendations, and 2) the ability to
get the enrollment statuses for all member accounts of an
organization.
- from version 1.18.29
* api-change:``fms``: [``botocore``] AWS Firewall Manager now supports
triggering resource cleanup workflow when account or resource goes out
of policy scope for AWS WAF, Security group, AWS Network Firewall, and
Amazon Route 53 Resolver DNS Firewall policies.
* api-change:``ec2``: [``botocore``] Support added for IMDS IPv6
endpoint
* api-change:``datasync``: [``botocore``] Added include filters to
CreateTask and UpdateTask, and added exclude filters to
StartTaskExecution, giving customers more granular control over how
DataSync transfers files, folders, and objects.
* api-change:``events``: [``botocore``] AWS CWEvents adds an enum of
EXTERNAL for EcsParameters LaunchType for PutTargets API
- from version 1.18.28
* api-change:``mediaconvert``: [``botocore``] AWS Elemental
MediaConvert SDK has added MBAFF encoding support for AVC video and
the ability to pass encryption context from the job settings to S3.
* api-change:``polly``: [``botocore``] Amazon Polly adds new New
Zealand English voice - Aria. Aria is available as Neural voice only.
* api-change:``transcribe``: [``botocore``] This release adds support
for feature tagging with Amazon Transcribe batch jobs.
* api-change:``ssm``: [``botocore``] Updated Parameter Store property
for logging improvements.
* api-change:``iot-data``: [``botocore``] Updated Publish with support
for new Retain flag and added two new API operations:
GetRetainedMessage, ListRetainedMessages.
- from version 1.18.27
* api-change:``dms``: [``botocore``] Amazon AWS DMS service now
support Redis target endpoint migration. Now S3 endpoint setting is
capable to setup features which are used to be configurable only in
extract connection attributes.
* api-change:``frauddetector``: [``botocore``] Updated an element of
the DescribeModelVersion API response (LogitMetrics -> logOddsMetrics)
for clarity. Added new exceptions to several APIs to protect against
unlikely scenarios.
* api-change:``iotsitewise``: [``botocore``] Documentation updates for
AWS IoT SiteWise
* api-change:``dlm``: [``botocore``] Added AMI deprecation support for
Amazon Data Lifecycle Manager EBS-backed AMI policies.
* api-change:``glue``: [``botocore``] Add support for Custom
Blueprints
* api-change:``apigateway``: [``botocore``] Adding some of the pending
releases (1) Adding WAF Filter to GatewayResponseType enum (2)
Ensuring consistent error model for all operations (3) Add missing BRE
to GetVpcLink operation
* api-change:``backup``: [``botocore``] AWS Backup - Features:
Evaluate your backup activity and generate audit reports.
- from version 1.18.26
* api-change:``eks``: [``botocore``] Adds support for EKS add-ons
"/preserve"/ flag, which allows customers to maintain software on their
EKS clusters after removing it from EKS add-ons management.
* api-change:``comprehend``: [``botocore``] Add tagging support for
Comprehend async inference job.
* api-change:``robomaker``: [``botocore``] Documentation updates for
RoboMaker
* api-change:``ec2``: [``botocore``] encryptionInTransitSupported
added to DescribeInstanceTypes API
- from version 1.18.25
* api-change:``ec2``: [``botocore``] The ImportImage API now supports
the ability to create AMIs with AWS-managed licenses for Microsoft SQL
Server for both Windows and Linux.
* api-change:``memorydb``: [``botocore``] AWS MemoryDB SDK now
supports all APIs for newly launched MemoryDB service.
* api-change:``application-autoscaling``: [``botocore``] This release
extends Application Auto Scaling support for replication group of
Amazon ElastiCache Redis clusters. Auto Scaling monitors and
automatically expands node group count and number of replicas per node
group when a critical usage threshold is met or according to customer-
defined schedule.
* api-change:``appflow``: [``botocore``] This release adds support for
SAPOData connector and extends Veeva connector for document
extraction.
- from version 1.18.24
* api-change:``codebuild``: [``botocore``] CodeBuild now allows you to
make the build results for your build projects available to the public
without requiring access to an AWS account.
* api-change:``route53``: [``botocore``] Documentation updates for
route53
* api-change:``sagemaker-runtime``: [``botocore``] Update sagemaker-
runtime client to latest version
* api-change:``route53resolver``: [``botocore``] Documentation updates
for Route 53 Resolver
* api-change:``sagemaker``: [``botocore``] Amazon SageMaker now
supports Asynchronous Inference endpoints. Adds PlatformIdentifier
field that allows Notebook Instance creation with different platform
selections. Increases the maximum number of containers in multi-
container endpoints to 15. Adds more instance types to InstanceType
field.
- from version 1.18.23
* api-change:``cloud9``: [``botocore``] Added DryRun parameter to
CreateEnvironmentEC2 API. Added ManagedCredentialsActions parameter to
UpdateEnvironment API
* api-change:``ec2``: [``botocore``] This release adds support for EC2
ED25519 key pairs for authentication
* api-change:``clouddirectory``: [``botocore``] Documentation updates
for clouddirectory
* api-change:``ce``: [``botocore``] This release is a new feature for
Cost Categories: Split charge rules. Split charge rules enable you to
allocate shared costs between your cost category values.
* api-change:``logs``: [``botocore``] Documentation-only update for
CloudWatch Logs
- from version 1.18.22
* api-change:``iotsitewise``: [``botocore``] AWS IoT SiteWise added
query window for the interpolation interval. AWS IoT SiteWise computes
each interpolated value by using data points from the timestamp of
each interval minus the window to the timestamp of each interval plus
the window.
* api-change:``s3``: [``botocore``] Documentation updates for Amazon
S3
* api-change:``codebuild``: [``botocore``] CodeBuild now allows you to
select how batch build statuses are sent to the source provider for a
project.
* api-change:``ds``: [``botocore``] This release adds support for
describing client authentication settings.
* api-change:``config``: [``botocore``] Update ResourceType enum with
values for Backup Plan, Selection, Vault, RecoveryPoint; ECS Cluster,
Service, TaskDefinition; EFS AccessPoint, FileSystem; EKS Cluster; ECR
Repository resources
* api-change:``license-manager``: [``botocore``] AWS License Manager
now allows end users to call CheckoutLicense API using new
CheckoutType PERPETUAL. Perpetual checkouts allow sellers to check out
a quantity of entitlements to be drawn down for consumption.
- from version 1.18.21
* api-change:``quicksight``: [``botocore``] Documentation updates for
QuickSight.
* api-change:``emr``: [``botocore``] Update emr client to latest
version
* api-change:``customer-profiles``: [``botocore``] This release
introduces Standard Profile Objects, namely Asset and Case which
contain values populated by data from third party systems and belong
to a specific profile. This release adds an optional parameter,
ObjectFilter to the ListProfileObjects API in order to search for
these Standard Objects.
* api-change:``elasticache``: [``botocore``] This release adds
ReplicationGroupCreateTime field to ReplicationGroup which indicates
the UTC time when ElastiCache ReplicationGroup is created
- from version 1.18.20
* api-change:``sagemaker``: [``botocore``] Amazon SageMaker Autopilot
adds new metrics for all candidate models generated by Autopilot
experiments.
* api-change:``apigatewayv2``: [``botocore``] Adding support for ACM
imported or private CA certificates for mTLS enabled domain names
* api-change:``apigateway``: [``botocore``] Adding support for ACM
imported or private CA certificates for mTLS enabled domain names
* api-change:``databrew``: [``botocore``] This SDK release adds
support for the output of a recipe job results to Tableau Hyper
format.
* api-change:``lambda``: [``botocore``] Lambda Python 3.9 runtime
launch
- from version 1.18.19
* api-change:``snow-device-management``: [``botocore``] AWS Snow
Family customers can remotely monitor and operate their connected AWS
Snowcone devices.
* api-change:``ecs``: [``botocore``] Documentation updates for ECS.
* api-change:``nimble``: [``botocore``] Add new attribute 'ownedBy' in
Streaming Session APIs. 'ownedBy' represents the AWS SSO Identity
Store User ID of the owner of the Streaming Session resource.
* api-change:``codebuild``: [``botocore``] CodeBuild now allows you to
make the build results for your build projects available to the public
without requiring access to an AWS account.
* api-change:``ebs``: [``botocore``] Documentation updates for Amazon
EBS direct APIs.
* api-change:``route53``: [``botocore``] Documentation updates for
route53
- from version 1.18.18
* api-change:``chime``: [``botocore``] Add support for "/auto"/ in
Region field of StartMeetingTranscription API request.
* enchancement:Client: [``botocore``] Improve client performance by
caching _alias_event_name on EventAliaser
- from version 1.18.17
* api-change:``wafv2``: [``botocore``] This release adds APIs to
support versioning feature of AWS WAF Managed rule groups
* api-change:``rekognition``: [``botocore``] This release adds support
for four new types of segments (opening credits, content segments,
slates, and studio logos), improved accuracy for credits and shot
detection and new filters to control black frame detection.
* api-change:``ssm``: [``botocore``] Documentation updates for AWS
Systems Manager.
- from version 1.18.16
* api-change:``synthetics``: [``botocore``] Documentation updates for
Visual Monitoring feature and other doc ticket fixes.
* api-change:``chime-sdk-identity``: [``botocore``] The Amazon Chime
SDK Identity APIs allow software developers to create and manage
unique instances of their messaging applications.
* api-change:``chime-sdk-messaging``: [``botocore``] The Amazon Chime
SDK Messaging APIs allow software developers to send and receive
messages in custom messaging applications.
* api-change:``connect``: [``botocore``] This release adds support for
agent status and hours of operation. For details, see the Release
Notes in the Amazon Connect Administrator Guide.
* api-change:``lightsail``: [``botocore``] This release adds support
to track when a bucket access key was last used.
* api-change:``athena``: [``botocore``] Documentation updates for
Athena.
- from version 1.18.15
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models
client to latest version
* api-change:``autoscaling``: [``botocore``] EC2 Auto Scaling adds
configuration checks and Launch Template validation to Instance
Refresh.
- from version 1.18.14
* api-change:``rds``: [``botocore``] This release adds
AutomaticRestartTime to the DescribeDBInstances and DescribeDBClusters
operations. AutomaticRestartTime indicates the time when a stopped DB
instance or DB cluster is restarted automatically.
* api-change:``imagebuilder``: [``botocore``] Updated list actions to
include a list of valid filters that can be used in the request.
* api-change:``transcribe``: [``botocore``] This release adds support
for call analytics (batch) within Amazon Transcribe.
* api-change:``events``: [``botocore``] Update events client to latest
version
* api-change:``ssm-incidents``: [``botocore``] Documentation updates
for Incident Manager.
- from version 1.18.13
* api-change:``redshift``: [``botocore``] API support for Redshift
Data Sharing feature.
* api-change:``iotsitewise``: [``botocore``] My AWS Service
(placeholder) - This release introduces custom Intervals and offset
for tumbling window in metric for AWS IoT SiteWise.
* api-change:``glue``: [``botocore``] Add
ConcurrentModificationException to create-table, delete-table, create-
database, update-database, delete-database
* api-change:``mediaconvert``: [``botocore``] AWS Elemental
MediaConvert SDK has added control over the passthrough of XDS
captions metadata to outputs.
* api-change:``proton``: [``botocore``] Docs only add idempotent
create apis
- from version 1.18.12
* api-change:``ssm-contacts``: [``botocore``] Added new attribute in
AcceptCode API. AcceptCodeValidation takes in two values - ENFORCE,
IGNORE. ENFORCE forces validation of accept code and IGNORE ignores it
which is also the default behavior; Corrected TagKeyList length from
200 to 50
* api-change:``greengrassv2``: [``botocore``] This release adds
support for component system resource limits and idempotent Create
operations. You can now specify the maximum amount of CPU and memory
resources that each component can use.
- from version 1.18.11
* api-change:``appsync``: [``botocore``] AWS AppSync now supports a
new authorization mode allowing you to define your own authorization
logic using an AWS Lambda function.
* api-change:``elbv2``: [``botocore``] Update elbv2 client to latest
version
* api-change:``secretsmanager``: [``botocore``] Add support for
KmsKeyIds in the ListSecretVersionIds API response
* api-change:``sagemaker``: [``botocore``] API changes with respect to
Lambda steps in model building pipelines. Adds several waiters to
async Sagemaker Image APIs. Add more instance types to AppInstanceType
field
- from version 1.18.10
* api-change:``savingsplans``: [``botocore``] Documentation update for
valid Savings Plans offering ID pattern
* api-change:``ec2``: [``botocore``] This release adds support for
G4ad xlarge and 2xlarge instances powered by AMD Radeon Pro V520 GPUs
and AMD 2nd Generation EPYC processors
* api-change:``chime``: [``botocore``] Adds support for live
transcription of meetings with Amazon Transcribe and Amazon Transcribe
Medical. The new APIs, StartMeetingTranscription and
StopMeetingTranscription, control the generation of user-attributed
transcriptions sent to meeting clients via Amazon Chime SDK data
messages.
* api-change:``iotsitewise``: [``botocore``] Added support for AWS IoT
SiteWise Edge. You can now create an AWS IoT SiteWise gateway that
runs on AWS IoT Greengrass V2. With the gateway, you can collect
local server and equipment data, process the data, and export the
selected data from the edge to the AWS Cloud.
* api-change:``iot``: [``botocore``] Increase maximum credential
duration of role alias to 12 hours.
- from version 1.18.9
* api-change:``sso-admin``: [``botocore``] Documentation updates for
arn:aws:trebuchet:::service:v1:03a2216d-1cda-4696-9ece-1387cb6f6952
* api-change:``cloudformation``: [``botocore``] SDK update to support
Importing existing Stacks to new/existing Self Managed StackSet -
Stack Import feature.
- from version 1.18.8
* api-change:``route53``: [``botocore``] This release adds support for
the RECOVERY_CONTROL health check type to be used in conjunction with
Route53 Application Recovery Controller.
* api-change:``iotwireless``: [``botocore``] Add
SidewalkManufacturingSn as an identifier to allow Customer to query
WirelessDevice, in the response, AmazonId is added in the case that
Sidewalk device is return.
* api-change:``route53-recovery-control-config``: [``botocore``]
Amazon Route 53 Application Recovery Controller's routing control -
Routing Control Configuration APIs help you create and delete
clusters, control panels, routing controls and safety rules. State
changes (On/Off) of routing controls are not part of configuration
APIs.
* api-change:``route53-recovery-readiness``: [``botocore``] Amazon
Route 53 Application Recovery Controller's readiness check capability
continually monitors resource quotas, capacity, and network routing
policies to ensure that the recovery environment is scaled and
configured to take over when needed.
* api-change:``quicksight``: [``botocore``] Add support to use row-
level security with tags when embedding dashboards for users not
provisioned in QuickSight
* api-change:``iotanalytics``: [``botocore``] IoT Analytics now
supports creating a dataset resource with IoT SiteWise
MultiLayerStorage data stores, enabling customers to query industrial
data within the service. This release includes adding JOIN
functionality for customers to query multiple data sources in a
dataset.
* api-change:``shield``: [``botocore``] Change name of DDoS Response
Team (DRT) to Shield Response Team (SRT)
* api-change:``lexv2-models``: [``botocore``] Update lexv2-models
client to latest version
* api-change:``redshift-data``: [``botocore``] Added structures to
support new Data API operation BatchExecuteStatement, used to execute
multiple SQL statements within a single transaction.
* api-change:``route53-recovery-cluster``: [``botocore``] Amazon Route
53 Application Recovery Controller's routing control - Routing Control
Data Plane APIs help you update the state (On/Off) of the routing
controls to reroute traffic across application replicas in a 100%
available manner.
* api-change:``batch``: [``botocore``] Add support for ListJob filters
- python-botocore
-
- Update to 1.26.4 (bsc#1199716)
* api-change:``gamesparks``: This release adds an optional DeploymentResult field in the responses
of GetStageDeploymentIntegrationTests and ListStageDeploymentIntegrationTests APIs.
* enhancement:StreamingBody: Allow StreamingBody to be used as a context manager
* api-change:``lookoutmetrics``: In this release we added SnsFormat to SNSConfiguration to support
human readable alert.
- from version 1.26.3
* api-change:``greengrassv2``: This release adds the new DeleteDeployment API operation that you
can use to delete deployment resources. This release also adds support for discontinued
AWS-provided components, so AWS can communicate when a component has any issues that you should
consider before you deploy it.
* api-change:``quicksight``: API UpdatePublicSharingSettings enables IAM admins to enable/disable
account level setting for public access of dashboards. When enabled, owners/co-owners for
dashboards can enable public access on their dashboards. These dashboards can only be accessed
through share link or embedding.
* api-change:``appmesh``: This release updates the existing Create and Update APIs for meshes and
virtual nodes by adding a new IP preference field. This new IP preference field can be used to
control the IP versions being used with the mesh and allows for IPv6 support within App Mesh.
* api-change:``batch``: Documentation updates for AWS Batch.
* api-change:``iotevents-data``: Introducing new API for deleting detectors: BatchDeleteDetector.
* api-change:``transfer``: AWS Transfer Family now supports SetStat server configuration option,
which provides the ability to ignore SetStat command issued by file transfer clients, enabling
customers to upload files without any errors.
- from version 1.26.2
* api-change:``kms``: Add HMAC best practice tip, annual rotation of AWS managed keys.
* api-change:``glue``: This release adds a new optional parameter called codeGenNodeConfiguration
to CRUD job APIs that allows users to manage visual jobs via APIs. The updated CreateJob and
UpdateJob will create jobs that can be viewed in Glue Studio as a visual graph. GetJob can be used
to get codeGenNodeConfiguration.
- Update to 1.26.1
* api-change:``resiliencehub``: In this release, we are introducing support for Amazon Elastic
Container Service, Amazon Route 53, AWS Elastic Disaster Recovery, AWS Backup in addition to the
existing supported Services. This release also supports Terraform file input from S3 and
scheduling daily assessments
* api-change:``servicecatalog``: Updated the descriptions for the ListAcceptedPortfolioShares API
description and the PortfolioShareType parameters.
* api-change:``discovery``: Add Migration Evaluator Collector details to the GetDiscoverySummary
API response
* api-change:``sts``: Documentation updates for AWS Security Token Service.
* api-change:``workspaces-web``: Amazon WorkSpaces Web now supports Administrator timeout control
* api-change:``rekognition``: Documentation updates for Amazon Rekognition.
* api-change:``cloudfront``: Introduced a new error (TooLongCSPInResponseHeadersPolicy) that is
returned when the value of the Content-Security-Policy header in a response headers policy exceeds
the maximum allowed length.
- from version 1.26.0
* feature:Loaders: Support for loading gzip compressed model files.
* api-change:``grafana``: This release adds APIs for creating and deleting API keys in an Amazon
Managed Grafana workspace.
- from version 1.25.13
* api-change:``ivschat``: Documentation-only updates for IVS Chat API Reference.
* api-change:``lambda``: Lambda releases NodeJs 16 managed runtime to be available in all
commercial regions.
* api-change:``kendra``: Amazon Kendra now provides a data source connector for Jira. For more
information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-jira.html
* api-change:``transfer``: AWS Transfer Family now accepts ECDSA keys for server host keys
* api-change:``iot``: Documentation update for China region ListMetricValues for IoT
* api-change:``workspaces``: Increased the character limit of the login message from 600 to 850
characters.
* api-change:``finspace-data``: We've now deprecated CreateSnapshot permission for creating a data
view, instead use CreateDataView permission.
* api-change:``lightsail``: This release adds support to include inactive database bundles in the
response of the GetRelationalDatabaseBundles request.
* api-change:``outposts``: Documentation updates for AWS Outposts.
* api-change:``ec2``: This release introduces a target type Gateway Load Balancer Endpoint for
mirrored traffic. Customers can now specify GatewayLoadBalancerEndpoint option during the creation
of a traffic mirror target.
* api-change:``ssm-incidents``: Adding support for dynamic SSM Runbook parameter values. Updating
validation pattern for engagements. Adding ConflictException to UpdateReplicationSet API contract.
- from version 1.25.12
* api-change:``secretsmanager``: Doc only update for Secrets Manager that fixes several
customer-reported issues.
* api-change:``ec2``: This release updates AWS PrivateLink APIs to support IPv6 for PrivateLink
Services and Endpoints of type 'Interface'.
- Update to 1.25.11
* api-change:``migration-hub-refactor-spaces``: AWS Migration Hub Refactor Spaces documentation
only update to fix a formatting issue.
* api-change:``ec2``: Added support for using NitroTPM and UEFI Secure Boot on EC2 instances.
* api-change:``emr``: Update emr client to latest version
* api-change:``compute-optimizer``: Documentation updates for Compute Optimizer
* api-change:``eks``: Adds BOTTLEROCKET_ARM_64_NVIDIA and BOTTLEROCKET_x86_64_NVIDIA AMI types to
EKS managed nodegroups
- from version 1.25.10
* api-change:``evidently``: Add detail message inside GetExperimentResults API response to indicate
experiment result availability
* api-change:``ssm-contacts``: Fixed an error in the DescribeEngagement example for AWS Incident
Manager.
* api-change:``cloudcontrol``: SDK release for Cloud Control API to include paginators for Python
SDK.
- from version 1.25.9
* api-change:``rds``: Various documentation improvements.
* api-change:``redshift``: Introduces new field 'LoadSampleData' in CreateCluster operation.
Customers can now specify 'LoadSampleData' option during creation of a cluster, which results in
loading of sample data in the cluster that is created.
* api-change:``ec2``: Add new state values for IPAMs, IPAM Scopes, and IPAM Pools.
* api-change:``mediapackage``: This release adds Dvb Dash 2014 as an available profile option for
Dash Origin Endpoints.
* api-change:``securityhub``: Documentation updates for Security Hub API reference
* api-change:``location``: Amazon Location Service now includes a MaxResults parameter for
ListGeofences requests.
- from version 1.25.8
* api-change:``ec2``: Amazon EC2 I4i instances are powered by 3rd generation Intel Xeon Scalable
processors and feature up to 30 TB of local AWS Nitro SSD storage
* api-change:``kendra``: AWS Kendra now supports hierarchical facets for a query. For more
information, see https://docs.aws.amazon.com/kendra/latest/dg/filtering.html
* api-change:``iot``: AWS IoT Jobs now allows you to create up to 100,000 active continuous and
snapshot jobs by using concurrency control.
* api-change:``datasync``: AWS DataSync now supports a new ObjectTags Task API option that can be
used to control whether Object Tags are transferred.
- from version 1.25.7
* api-change:``ssm``: This release adds the TargetMaps parameter in SSM State Manager API.
* api-change:``backup``: Adds support to 2 new filters about job complete time for 3 list jobs APIs
in AWS Backup
* api-change:``lightsail``: Documentation updates for Lightsail
* api-change:``iotsecuretunneling``: This release introduces a new API RotateTunnelAccessToken that
allow revoking the existing tokens and generate new tokens
- from version 1.25.6
* api-change:``ec2``: Adds support for allocating Dedicated Hosts on AWS Outposts. The
AllocateHosts API now accepts an OutpostArn request parameter, and the DescribeHosts API now
includes an OutpostArn response parameter.
* api-change:``s3``: Documentation only update for doc bug fixes for the S3 API docs.
* api-change:``kinesisvideo``: Add support for multiple image feature related APIs for configuring
image generation and notification of a video stream. Add "/GET_IMAGES"/ to the list of supported API
names for the GetDataEndpoint API.
* api-change:``sagemaker``: SageMaker Autopilot adds new metrics for all candidate models generated
by Autopilot experiments; RStudio on SageMaker now allows users to bring your own development
environment in a custom image.
* api-change:``kinesis-video-archived-media``: Add support for GetImages API for retrieving images
from a video stream
- from version 1.25.5
* api-change:``organizations``: This release adds the INVALID_PAYMENT_INSTRUMENT as a fail reason
and an error message.
* api-change:``synthetics``: CloudWatch Synthetics has introduced a new feature to provide
customers with an option to delete the underlying resources that Synthetics canary creates when the
user chooses to delete the canary.
* api-change:``outposts``: This release adds a new API called ListAssets to the Outposts SDK, which
lists the hardware assets in an Outpost.
- from version 1.25.4
* api-change:``rds``: Feature - Adds support for Internet Protocol Version 6 (IPv6) on RDS database
instances.
* api-change:``codeguru-reviewer``: Amazon CodeGuru Reviewer now supports suppressing
recommendations from being generated on specific files and directories.
* api-change:``ssm``: Update the StartChangeRequestExecution, adding TargetMaps to the Runbook
parameter
* api-change:``mediaconvert``: AWS Elemental MediaConvert SDK nows supports creation of Dolby
Vision profile 8.1, the ability to generate black frames of video, and introduces audio-only DASH
and CMAF support.
* api-change:``wafv2``: You can now inspect all request headers and all cookies. You can now
specify how to handle oversize body contents in your rules that inspect the body.
- from version 1.25.3
* api-change:``auditmanager``: This release adds documentation updates for Audit Manager. We
provided examples of how to use the Custom_ prefix for the keywordValue attribute. We also provided
more details about the DeleteAssessmentReport operation.
* api-change:``network-firewall``: AWS Network Firewall adds support for stateful threat signature
AWS managed rule groups.
* api-change:``ec2``: This release adds support to query the public key and creation date of EC2
Key Pairs. Additionally, the format (pem or ppk) of a key pair can be specified when creating a new
key pair.
* api-change:``braket``: This release enables Braket Hybrid Jobs with Embedded Simulators to have
multiple instances.
* api-change:``guardduty``: Documentation update for API description.
* api-change:``connect``: This release introduces an API for changing the current agent status of a
user in Connect.
- from version 1.25.2
* api-change:``rekognition``: This release adds support to configure stream-processor resources for
label detections on streaming-videos. UpateStreamProcessor API is also launched with this release,
which could be used to update an existing stream-processor.
* api-change:``cloudtrail``: Increases the retention period maximum to 2557 days. Deprecates unused
fields of the ListEventDataStores API response. Updates documentation.
* api-change:``lookoutequipment``: This release adds the following new features: 1) Introduces an
option for automatic schema creation 2) Now allows for Ingestion of data containing most common
errors and allows automatic data cleaning 3) Introduces new API ListSensorStatistics that gives
further information about the ingested data
* api-change:``iotwireless``: Add list support for event configurations, allow to get and update
event configurations by resource type, support LoRaWAN events; Make NetworkAnalyzerConfiguration as
a resource, add List, Create, Delete API support; Add FCntStart attribute support for ABP
WirelessDevice.
* api-change:``amplify``: Documentation only update to support the Amplify GitHub App feature launch
* api-change:``chime-sdk-media-pipelines``: For Amazon Chime SDK meetings, the Amazon Chime Media
Pipelines SDK allows builders to capture audio, video, and content share streams. You can also
capture meeting events, live transcripts, and data messages. The pipelines save the artifacts to an
Amazon S3 bucket that you designate.
* api-change:``sagemaker``: Amazon SageMaker Autopilot adds support for custom validation dataset
and validation ratio through the CreateAutoMLJob and DescribeAutoMLJob APIs.
- Update to 1.25.1
* api-change:``lightsail``: This release adds support for Lightsail load balancer HTTP to HTTPS
redirect and TLS policy configuration.
* api-change:``sagemaker``: SageMaker Inference Recommender now accepts customer KMS key ID for
encryption of endpoints and compilation outputs created during inference recommendation.
* api-change:``pricing``: Documentation updates for Price List API
* api-change:``glue``: This release adds documentation for the APIs to create, read, delete, list,
and batch read of AWS Glue custom patterns, and for Lake Formation configuration settings in the
AWS Glue crawler.
* api-change:``cloudfront``: CloudFront now supports the Server-Timing header in HTTP responses
sent from CloudFront. You can use this header to view metrics that help you gain insights about the
behavior and performance of CloudFront. To use this header, enable it in a response headers policy.
* api-change:``ivschat``: Adds new APIs for IVS Chat, a feature for building interactive chat
experiences alongside an IVS broadcast.
* api-change:``network-firewall``: AWS Network Firewall now enables customers to use a customer
managed AWS KMS key for the encryption of their firewall resources.
- from version 1.25.0
* api-change:``gamelift``: Documentation updates for Amazon GameLift.
* api-change:``mq``: This release adds the CRITICAL_ACTION_REQUIRED broker state and the
ActionRequired API property. CRITICAL_ACTION_REQUIRED informs you when your broker is degraded.
ActionRequired provides you with a code which you can use to find instructions in the Developer
Guide on how to resolve the issue.
* feature:IMDS: Added resiliency mechanisms to IMDS Credential Fetcher
* api-change:``securityhub``: Security Hub now lets you opt-out of auto-enabling the defaults
standards (CIS and FSBP) in accounts that are auto-enabled with Security Hub via Security Hub's
integration with AWS Organizations.
* api-change:``connect``: This release adds SearchUsers API which can be used to search for users
with a Connect Instance
* api-change:``rds-data``: Support to receive SQL query results in the form of a simplified JSON
string. This enables developers using the new JSON string format to more easily convert it to an
object using popular JSON string parsing libraries.
- from version 1.24.46
* api-change:``chime-sdk-meetings``: Include additional exceptions types.
* api-change:``ec2``: Adds support for waiters that automatically poll for a deleted NAT Gateway
until it reaches the deleted state.
- from version 1.24.45
* api-change:``wisdom``: This release updates the GetRecommendations API to include a trigger event
list for classifying and grouping recommendations.
* api-change:``elasticache``: Doc only update for ElastiCache
* api-change:``iottwinmaker``: General availability (GA) for AWS IoT TwinMaker. For more
information, see https://docs.aws.amazon.com/iot-twinmaker/latest/apireference/Welcome.html
* api-change:``secretsmanager``: Documentation updates for Secrets Manager
* api-change:``mediatailor``: This release introduces tiered channels and adds support for live
sources. Customers using a STANDARD channel can now create programs using live sources.
* api-change:``storagegateway``: This release adds support for minimum of 5 character length
virtual tape barcodes.
* api-change:``lookoutmetrics``: Added DetectMetricSetConfig API for detecting configuration
required for creating metric set from provided S3 data source.
* api-change:``iotsitewise``: This release adds 3 new batch data query APIs :
BatchGetAssetPropertyValue, BatchGetAssetPropertyValueHistory and BatchGetAssetPropertyAggregates
* api-change:``glue``: This release adds APIs to create, read, delete, list, and batch read of Glue
custom entity types
- from version 1.24.44
* api-change:``macie2``: Sensitive data findings in Amazon Macie now indicate how Macie found the
sensitive data that produced a finding (originType).
* api-change:``rds``: Added a new cluster-level attribute to set the capacity range for Aurora
Serverless v2 instances.
* api-change:``mgn``: Removed required annotation from input fields in Describe operations
requests. Added quotaValue to ServiceQuotaExceededException
* api-change:``connect``: This release adds APIs to search, claim, release, list, update, and
describe phone numbers. You can also use them to associate and disassociate contact flows to phone
numbers.
- from version 1.24.43
* api-change:``textract``: This release adds support for specifying and extracting information from
documents using the Queries feature within Analyze Document API
* api-change:``worklink``: Amazon WorkLink is no longer supported. This will be removed in a future
version of the SDK.
* api-change:``ssm``: Added offset support for specifying the number of days to wait after the date
and time specified by a CRON expression when creating SSM association.
* api-change:``autoscaling``: EC2 Auto Scaling now adds default instance warm-up times for all
scaling activities, health check replacements, and other replacement events in the Auto Scaling
instance lifecycle.
* api-change:``personalize``: Adding StartRecommender and StopRecommender APIs for Personalize.
* api-change:``kendra``: Amazon Kendra now provides a data source connector for Quip. For more
information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-quip.html
* api-change:``polly``: Amazon Polly adds new Austrian German voice - Hannah. Hannah is available
as Neural voice only.
* api-change:``transfer``: This release contains corrected HomeDirectoryMappings examples for
several API functions: CreateAccess, UpdateAccess, CreateUser, and UpdateUser,.
* api-change:``kms``: Adds support for KMS keys and APIs that generate and verify HMAC codes
* api-change:``redshift``: Introduces new fields for LogDestinationType and LogExports on
EnableLogging requests and Enable/Disable/DescribeLogging responses. Customers can now select
CloudWatch Logs as a destination for their Audit Logs.
- from version 1.24.42
* api-change:``lightsail``: This release adds support to describe the synchronization status of the
account-level block public access feature for your Amazon Lightsail buckets.
* api-change:``rds``: Removes Amazon RDS on VMware with the deletion of APIs related to Custom
Availability Zones and Media installation
* api-change:``athena``: This release adds subfields, ErrorMessage, Retryable, to the AthenaError
response object in the GetQueryExecution API when a query fails.
- from version 1.24.41
* api-change:``batch``: Enables configuration updates for compute environments with
BEST_FIT_PROGRESSIVE and SPOT_CAPACITY_OPTIMIZED allocation strategies.
* api-change:``ec2``: Documentation updates for Amazon EC2.
* api-change:``cloudwatch``: Update cloudwatch client to latest version
* api-change:``appstream``: Includes updates for create and update fleet APIs to manage the session
scripts locations for Elastic fleets.
* api-change:``glue``: Auto Scaling for Glue version 3.0 and later jobs to dynamically scale
compute resources. This SDK change provides customers with the auto-scaled DPU usage
* api-change:``appflow``: Enables users to pass custom token URL parameters for Oauth2
authentication during create connector profile
- from version 1.24.40
* api-change:``cloudwatch``: Update cloudwatch client to latest version
* api-change:``fsx``: This release adds support for deploying FSx for ONTAP file systems in a
single Availability Zone.
- from version 1.24.39
* api-change:``ec2``: X2idn and X2iedn instances are powered by 3rd generation Intel Xeon Scalable
processors with an all-core turbo frequency up to 3.5 GHzAmazon EC2. C6a instances are powered by
3rd generation AMD EPYC processors.
* api-change:``devops-guru``: This release adds new APIs DeleteInsight to deletes the insight along
with the associated anomalies, events and recommendations.
* api-change:``efs``: Update efs client to latest version
* api-change:``iottwinmaker``: This release adds the following new features: 1) ListEntities API
now supports search using ExternalId. 2) BatchPutPropertyValue and GetPropertyValueHistory API now
allows users to represent time in sub-second level precisions.
- from version 1.24.38
* api-change:``amplifyuibuilder``: In this release, we have added the ability to bind events to
component level actions.
* api-change:``apprunner``: This release adds tracing for App Runner services with X-Ray using AWS
Distro for OpenTelemetry. New APIs: CreateObservabilityConfiguration,
DescribeObservabilityConfiguration, ListObservabilityConfigurations, and
DeleteObservabilityConfiguration. Updated APIs: CreateService and UpdateService.
* api-change:``workspaces``: Added API support that allows customers to create GPU-enabled
WorkSpaces using EC2 G4dn instances.
- from version 1.24.37
* api-change:``mediaconvert``: AWS Elemental MediaConvert SDK has added support for the
pass-through of WebVTT styling to WebVTT outputs, pass-through of KLV metadata to supported
formats, and improved filter support for processing 444/RGB content.
* api-change:``wafv2``: Add a new CurrentDefaultVersion field to
ListAvailableManagedRuleGroupVersions API response; add a new VersioningSupported boolean to each
ManagedRuleGroup returned from ListAvailableManagedRuleGroups API response.
* api-change:``mediapackage-vod``: This release adds ScteMarkersSource as an available field for
Dash Packaging Configurations. When set to MANIFEST, MediaPackage will source the SCTE-35 markers
from the manifest. When set to SEGMENTS, MediaPackage will source the SCTE-35 markers from the
segments.
- from version 1.24.36
* api-change:``apigateway``: ApiGateway CLI command get-usage now includes usagePlanId, startDate,
and endDate fields in the output to match documentation.
* api-change:``personalize``: This release provides tagging support in AWS Personalize.
* api-change:``pi``: Adds support for DocumentDB to the Performance Insights API.
* api-change:``events``: Update events client to latest version
* api-change:``docdb``: Added support to enable/disable performance insights when creating or
modifying db instances
* api-change:``sagemaker``: Amazon Sagemaker Notebook Instances now supports G5 instance types
- from version 1.24.35
* bugfix:Proxy: Fix failure case for IP proxy addresses using TLS-in-TLS. `boto/botocore#2652
<https://github.com/boto/botocore/pull/2652>`__
* api-change:``config``: Add resourceType enums for AWS::EMR::SecurityConfiguration and
AWS::SageMaker::CodeRepository
* api-change:``panorama``: Added Brand field to device listings.
* api-change:``lambda``: This release adds new APIs for creating and managing Lambda Function URLs
and adds a new FunctionUrlAuthType parameter to the AddPermission API. Customers can use Function
URLs to create built-in HTTPS endpoints on their functions.
* api-change:``kendra``: Amazon Kendra now provides a data source connector for Box. For more
information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-box.html
- from version 1.24.34
* api-change:``securityhub``: Added additional ASFF details for RdsSecurityGroup AutoScalingGroup,
ElbLoadBalancer, CodeBuildProject and RedshiftCluster.
* api-change:``fsx``: Provide customers more visibility into file system status by adding new
"/Misconfigured Unavailable"/ status for Amazon FSx for Windows File Server.
* api-change:``s3control``: Documentation-only update for doc bug fixes for the S3 Control API docs.
* api-change:``datasync``: AWS DataSync now supports Amazon FSx for OpenZFS locations.
- from version 1.24.33
* api-change:``iot``: AWS IoT - AWS IoT Device Defender adds support to list metric datapoints
collected for IoT devices through the ListMetricValues API
* api-change:``servicecatalog``: This release adds ProvisioningArtifictOutputKeys to
DescribeProvisioningParameters to reference the outputs of a Provisioned Product and deprecates
ProvisioningArtifactOutputs.
* api-change:``sms``: Revised product update notice for SMS console deprecation.
* api-change:``proton``: SDK release to support tagging for AWS Proton Repository resource
* enhancement:AWSCRT: Upgrade awscrt version to 0.13.8
- Update to 1.24.32
* api-change:``connect``: This release updates these APIs: UpdateInstanceAttribute,
DescribeInstanceAttribute and ListInstanceAttributes. You can use it to programmatically
enable/disable multi-party conferencing using attribute type MULTI_PARTY_CONFERENCING on the
specified Amazon Connect instance.
- from version 1.24.31
* api-change:``cloudcontrol``: SDK release for Cloud Control API in Amazon Web Services China
(Beijing) Region, operated by Sinnet, and Amazon Web Services China (Ningxia) Region, operated by
NWCD
* api-change:``pinpoint-sms-voice-v2``: Amazon Pinpoint now offers a version 2.0 suite of SMS and
voice APIs, providing increased control over sending and configuration. This release is a new SDK
for sending SMS and voice messages called PinpointSMSVoiceV2.
* api-change:``workspaces``: Added APIs that allow you to customize the logo, login message, and
help links in the WorkSpaces client login page. To learn more, visit
https://docs.aws.amazon.com/workspaces/latest/adminguide/customize-branding.html
* api-change:``route53-recovery-cluster``: This release adds a new API "/ListRoutingControls"/ to
list routing control states using the highly reliable Route 53 ARC data plane endpoints.
* api-change:``databrew``: This AWS Glue Databrew release adds feature to support ORC as an input
format.
* api-change:``auditmanager``: This release adds documentation updates for Audit Manager. The
updates provide data deletion guidance when a customer deregisters Audit Manager or deregisters a
delegated administrator.
* api-change:``grafana``: This release adds tagging support to the Managed Grafana service. New
APIs: TagResource, UntagResource and ListTagsForResource. Updates: add optional field tags to
support tagging while calling CreateWorkspace.
- from version 1.24.30
* api-change:``iot-data``: Update the default AWS IoT Core Data Plane endpoint from VeriSign signed
to ATS signed. If you have firewalls with strict egress rules, configure the rules to grant you
access to data-ats.iot.[region].amazonaws.com or data-ats.iot.[region].amazonaws.com.cn.
* api-change:``ec2``: This release simplifies the auto-recovery configuration process enabling
customers to set the recovery behavior to disabled or default
* api-change:``fms``: AWS Firewall Manager now supports the configuration of third-party policies
that can use either the centralized or distributed deployment models.
* api-change:``fsx``: This release adds support for modifying throughput capacity for FSx for ONTAP
file systems.
* api-change:``iot``: Doc only update for IoT that fixes customer-reported issues.
- from version 1.24.29
* api-change:``organizations``: This release provides the new CloseAccount API that enables
principals in the management account to close any member account within an organization.
- from version 1.24.28
* api-change:``medialive``: This release adds support for selecting a maintenance window.
* api-change:``acm-pca``: Updating service name entities
- from version 1.24.27
* api-change:``ec2``: This is release adds support for Amazon VPC Reachability Analyzer to analyze
path through a Transit Gateway.
* api-change:``ssm``: This Patch Manager release supports creating, updating, and deleting Patch
Baselines for Rocky Linux OS.
* api-change:``batch``: Bug Fix: Fixed a bug where shapes were marked as unboxed and were not
serialized and sent over the wire, causing an API error from the service.
- from version 1.24.26
* api-change:``lambda``: Adds support for increased ephemeral storage (/tmp) up to 10GB for Lambda
functions. Customers can now provision up to 10 GB of ephemeral storage per function instance, a
20x increase over the previous limit of 512 MB.
* api-change:``config``: Added new APIs GetCustomRulePolicy and GetOrganizationCustomRulePolicy,
and updated existing APIs PutConfigRule, DescribeConfigRule, DescribeConfigRuleEvaluationStatus,
PutOrganizationConfigRule, DescribeConfigRule to support a new feature for building AWS Config
rules with AWS CloudFormation Guard
* api-change:``transcribe``: This release adds an additional parameter for subtitling with Amazon
Transcribe batch jobs: outputStartIndex.
- from version 1.24.25
* api-change:``redshift``: This release adds a new [--encrypted | --no-encrypted] field in
restore-from-cluster-snapshot API. Customers can now restore an unencrypted snapshot to a cluster
encrypted with AWS Managed Key or their own KMS key.
* api-change:``ebs``: Increased the maximum supported value for the Timeout parameter of the
StartSnapshot API from 60 minutes to 4320 minutes. Changed the HTTP error code for
ConflictException from 503 to 409.
* api-change:``gamesparks``: Released the preview of Amazon GameSparks, a fully managed AWS service
that provides a multi-service backend for game developers.
* api-change:``elasticache``: Doc only update for ElastiCache
* api-change:``transfer``: Documentation updates for AWS Transfer Family to describe how to remove
an associated workflow from a server.
* api-change:``auditmanager``: This release updates 1 API parameter, the SnsArn attribute. The
character length and regex pattern for the SnsArn attribute have been updated, which enables you to
deselect an SNS topic when using the UpdateSettings operation.
* api-change:``ssm``: Update AddTagsToResource, ListTagsForResource, and RemoveTagsFromResource
APIs to reflect the support for tagging Automation resources. Includes other minor documentation
updates.
- from version 1.24.24
* api-change:``location``: Amazon Location Service now includes a MaxResults parameter for
GetDevicePositionHistory requests.
* api-change:``polly``: Amazon Polly adds new Catalan voice - Arlet. Arlet is available as Neural
voice only.
* api-change:``lakeformation``: The release fixes the incorrect permissions called out in the
documentation - DESCRIBE_TAG, ASSOCIATE_TAG, DELETE_TAG, ALTER_TAG. This trebuchet release fixes
the corresponding SDK and documentation.
* api-change:``ecs``: Documentation only update to address tickets
* api-change:``ce``: Added three new APIs to support tagging and resource-level authorization on
Cost Explorer resources: TagResource, UntagResource, ListTagsForResource. Added optional
parameters to CreateCostCategoryDefinition, CreateAnomalySubscription and CreateAnomalyMonitor APIs
to support Tag On Create.
- from version 1.24.23
* api-change:``ram``: Document improvements to the RAM API operations and parameter descriptions.
* api-change:``ecr``: This release includes a fix in the DescribeImageScanFindings paginated output.
* api-change:``quicksight``: AWS QuickSight Service Features - Expand public API support for group
management.
* api-change:``chime-sdk-meetings``: Add support for media replication to link multiple WebRTC
media sessions together to reach larger and global audiences. Participants connected to a replica
session can be granted access to join the primary session and can switch sessions with their
existing WebRTC connection
* api-change:``mediaconnect``: This release adds support for selecting a maintenance window.
- Update to 1.24.22
* enhancement:jmespath: Add env markers to get working version of jmespath for python 3.6
* api-change:``glue``: Added 9 new APIs for AWS Glue Interactive Sessions: ListSessions,
StopSession, CreateSession, GetSession, DeleteSession, RunStatement, GetStatement, ListStatements,
CancelStatement
- from version 1.24.21
* enhancement:Dependency: Added support for jmespath 1.0
* api-change:``amplifybackend``: Adding the ability to customize Cognito verification messages for
email and SMS in CreateBackendAuth and UpdateBackendAuth. Adding deprecation documentation for
ForgotPassword in CreateBackendAuth and UpdateBackendAuth
* api-change:``acm-pca``: AWS Certificate Manager (ACM) Private Certificate Authority (CA) now
supports customizable certificate subject names and extensions.
* api-change:``ssm-incidents``: Removed incorrect validation pattern for
IncidentRecordSource.invokedBy
* api-change:``billingconductor``: This is the initial SDK release for AWS Billing Conductor. The
AWS Billing Conductor is a customizable billing service, allowing you to customize your billing
data to match your desired business structure.
* api-change:``s3outposts``: S3 on Outposts is releasing a new API, ListSharedEndpoints, that lists
all endpoints associated with S3 on Outpost, that has been shared by Resource Access Manager (RAM).
- from version 1.24.20
* api-change:``robomaker``: This release deprecates ROS, Ubuntu and Gazbeo from RoboMaker
Simulation Service Software Suites in favor of user-supplied containers and Relaxed Software Suites.
* api-change:``dataexchange``: This feature enables data providers to use the RevokeRevision
operation to revoke subscriber access to a given revision. Subscribers are unable to interact with
assets within a revoked revision.
* api-change:``ec2``: Adds the Cascade parameter to the DeleteIpam API. Customers can use this
parameter to automatically delete their IPAM, including non-default scopes, pools, cidrs, and
allocations. There mustn't be any pools provisioned in the default public scope to use this
parameter.
* api-change:``cognito-idp``: Updated EmailConfigurationType and SmsConfigurationType to reflect
that you can now choose Amazon SES and Amazon SNS resources in the same Region.
* enhancement:AWSCRT: Upgrade awscrt extra to 0.13.5
* api-change:``location``: New HERE style "/VectorHereExplore"/ and "/VectorHereExploreTruck"/.
* api-change:``ecs``: Documentation only update to address tickets
* api-change:``keyspaces``: Fixing formatting issues in CLI and SDK documentation
* api-change:``rds``: Various documentation improvements
- from version 1.24.19
* api-change:``kendra``: Amazon Kendra now provides a data source connector for Slack. For more
information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-slack.html
* api-change:``timestream-query``: Amazon Timestream Scheduled Queries now support Timestamp
datatype in a multi-measure record.
* enhancement:Stubber: Added support for modeled exception fields when adding errors to a client
stub. Implements boto/boto3`#3178 <https://github.com/boto/botocore/issues/3178>`__.
* api-change:``elasticache``: Doc only update for ElastiCache
* api-change:``config``: Add resourceType enums for AWS::ECR::PublicRepository and
AWS::EC2::LaunchTemplate
- from version 1.24.18
* api-change:``outposts``: This release adds address filters for listSites
* api-change:``lambda``: Adds PrincipalOrgID support to AddPermission API. Customers can use it to
manage permissions to lambda functions at AWS Organizations level.
* api-change:``secretsmanager``: Documentation updates for Secrets Manager.
* api-change:``connect``: This release adds support for enabling Rich Messaging when starting a new
chat session via the StartChatContact API. Rich Messaging enables the following formatting options:
bold, italics, hyperlinks, bulleted lists, and numbered lists.
* api-change:``chime``: Chime VoiceConnector Logging APIs will now support MediaMetricLogs. Also
CreateMeetingDialOut now returns AccessDeniedException.
- from version 1.24.17
* api-change:``transcribe``: Documentation fix for API `StartMedicalTranscriptionJobRequest`, now
showing min sample rate as 16khz
* api-change:``transfer``: Adding more descriptive error types for managed workflows
* api-change:``lexv2-models``: Update lexv2-models client to latest version
- from version 1.24.16
* api-change:``comprehend``: Amazon Comprehend now supports extracting the sentiment associated
with entities such as brands, products and services from text documents.
- from version 1.24.15
* api-change:``eks``: Introducing a new enum for NodeGroup error code:
Ec2SubnetMissingIpv6Assignment
* api-change:``keyspaces``: Adding link to CloudTrail section in Amazon Keyspaces Developer Guide
* api-change:``mediaconvert``: AWS Elemental MediaConvert SDK has added support for reading
timecode from AVCHD sources and now provides the ability to segment WebVTT at the same interval as
the video and audio in HLS packages.
- from version 1.24.14
* api-change:``chime-sdk-meetings``: Adds support for Transcribe language identification feature to
the StartMeetingTranscription API.
* api-change:``ecs``: Amazon ECS UpdateService API now supports additional parameters:
loadBalancers, propagateTags, enableECSManagedTags, and serviceRegistries
* api-change:``migration-hub-refactor-spaces``: AWS Migration Hub Refactor Spaces documentation
update.
- from version 1.24.13
* api-change:``synthetics``: Allow custom handler function.
* api-change:``transfer``: Add waiters for server online and offline.
* api-change:``devops-guru``: Amazon DevOps Guru now integrates with Amazon CodeGuru Profiler. You
can view CodeGuru Profiler recommendations for your AWS Lambda function in DevOps Guru. This
feature is enabled by default for new customers as of 3/4/2022. Existing customers can enable this
feature with UpdateEventSourcesConfig.
* api-change:``macie``: Amazon Macie Classic (macie) has been discontinued and is no longer
available. A new Amazon Macie (macie2) is now available with significant design improvements and
additional features.
* api-change:``ec2``: Documentation updates for Amazon EC2.
* api-change:``sts``: Documentation updates for AWS Security Token Service.
* api-change:``connect``: This release updates the *InstanceStorageConfig APIs so they support a
new ResourceType: REAL_TIME_CONTACT_ANALYSIS_SEGMENTS. Use this resource type to enable streaming
for real-time contact analysis and to associate the Kinesis stream where real-time contact analysis
segments will be published.
- from version 1.24.12
* api-change:``greengrassv2``: Doc only update that clarifies Create Deployment section.
* api-change:``fsx``: This release adds support for data repository associations to use root ("//"/)
as the file system path
* api-change:``kendra``: Amazon Kendra now suggests spell corrections for a query. For more
information, see https://docs.aws.amazon.com/kendra/latest/dg/query-spell-check.html
* api-change:``appflow``: Launching Amazon AppFlow Marketo as a destination connector SDK.
* api-change:``timestream-query``: Documentation only update for SDK and CLI
- from version 1.24.11
* api-change:``gamelift``: Minor updates to address errors.
* api-change:``cloudtrail``: Add bytesScanned field into responses of DescribeQuery and
GetQueryResults.
* api-change:``athena``: This release adds support for S3 Object Ownership by allowing the S3
bucket owner full control canned ACL to be set when Athena writes query results to S3 buckets.
* api-change:``keyspaces``: This release adds support for data definition language (DDL) operations
* api-change:``ecr``: This release adds support for tracking images lastRecordedPullTime.
- Version update to 1.24.10
* api-change:``mediapackage``: This release adds Hybridcast as an available profile option for Dash
Origin Endpoints.
* api-change:``rds``: Documentation updates for Multi-AZ DB clusters.
* api-change:``mgn``: Add support for GP3 and IO2 volume types. Add bootMode to LaunchConfiguration
object (and as a parameter to UpdateLaunchConfigurationRequest).
* api-change:``kafkaconnect``: Adds operation for custom plugin deletion (DeleteCustomPlugin) and
adds new StateDescription field to DescribeCustomPlugin and DescribeConnector responses to return
errors from asynchronous resource creation.
- from version 1.24.9
* api-change:``finspace-data``: Add new APIs for managing Users and Permission Groups.
* api-change:``amplify``: Add repositoryCloneMethod field for hosting an Amplify app. This field
shows what authorization method is used to clone the repo: SSH, TOKEN, or SIGV4.
* api-change:``fsx``: This release adds support for the following FSx for OpenZFS features:
snapshot lifecycle transition messages, force flag for deleting file systems with child resources,
LZ4 data compression, custom record sizes, and unsetting volume quotas and reservations.
* api-change:``fis``: This release adds logging support for AWS Fault Injection Simulator
experiments. Experiment templates can now be configured to send experiment activity logs to Amazon
CloudWatch Logs or to an S3 bucket.
* api-change:``route53-recovery-cluster``: This release adds a new API option to enable overriding
safety rules to allow routing control state updates.
* api-change:``amplifyuibuilder``: We are adding the ability to configure workflows and actions for
components.
* api-change:``athena``: This release adds support for updating an existing named query.
* api-change:``ec2``: This release adds support for new AMI property 'lastLaunchedTime'
* api-change:``servicecatalog-appregistry``: AppRegistry is deprecating Application and
Attribute-Group Name update feature. In this release, we are marking the name attributes for Update
APIs as deprecated to give a heads up to our customers.
- from version 1.24.8
* api-change:``elasticache``: Doc only update for ElastiCache
* api-change:``panorama``: Added NTP server configuration parameter to ProvisionDevice operation.
Added alternate software fields to DescribeDevice response
- from version 1.24.7
* api-change:``route53``: SDK doc update for Route 53 to update some parameters with new
information.
* api-change:``databrew``: This AWS Glue Databrew release adds feature to merge job outputs into a
max number of files for S3 File output type.
* api-change:``transfer``: Support automatic pagination when listing AWS Transfer Family resources.
* api-change:``s3control``: Amazon S3 Batch Operations adds support for new integrity checking
capabilities in Amazon S3.
* api-change:``s3``: This release adds support for new integrity checking capabilities in Amazon
S3. You can choose from four supported checksum algorithms for data integrity checking on your
upload and download requests. In addition, AWS SDK can automatically calculate a checksum as it
streams data into S3
* api-change:``fms``: AWS Firewall Manager now supports the configuration of AWS Network Firewall
policies with either centralized or distributed deployment models. This release also adds support
for custom endpoint configuration, where you can choose which Availability Zones to create firewall
endpoints in.
* api-change:``lightsail``: This release adds support to delete and create Lightsail default key
pairs that you can use with Lightsail instances.
* api-change:``autoscaling``: You can now hibernate instances in a warm pool to stop instances
without deleting their RAM contents. You can now also return instances to the warm pool on scale
in, instead of always terminating capacity that you will need later.
- from version 1.24.6
* api-change:``transfer``: The file input selection feature provides the ability to use either the
originally uploaded file or the output file from the previous workflow step, enabling customers to
make multiple copies of the original file while keeping the source file intact for file archival.
* api-change:``lambda``: Lambda releases .NET 6 managed runtime to be available in all commercial
regions.
* api-change:``textract``: Added support for merged cells and column header for table response.
- from version 1.24.5
* api-change:``translate``: This release enables customers to use translation settings for
formality customization in their synchronous translation output.
* api-change:``wafv2``: Updated descriptions for logging configuration.
* api-change:``apprunner``: AWS App Runner adds a Java platform (Corretto 8, Corretto 11 runtimes)
and a Node.js 14 runtime.
- from version 1.24.4
* api-change:``imagebuilder``: This release adds support to enable faster launching for Windows
AMIs created by EC2 Image Builder.
* api-change:``customer-profiles``: This release introduces apis CreateIntegrationWorkflow,
DeleteWorkflow, ListWorkflows, GetWorkflow and GetWorkflowSteps. These apis are used to manage and
view integration workflows.
* api-change:``dynamodb``: DynamoDB ExecuteStatement API now supports Limit as a request parameter
to specify the maximum number of items to evaluate. If specified, the service will process up to
the Limit and the results will include a LastEvaluatedKey value to continue the read in a
subsequent operation.
- from version 1.24.3
* api-change:``transfer``: Properties for Transfer Family used with SFTP, FTP, and FTPS protocols.
Display Banners are bodies of text that can be displayed before and/or after a user authenticates
onto a server using one of the previously mentioned protocols.
* api-change:``gamelift``: Increase string list limit from 10 to 100.
* api-change:``budgets``: This change introduces DescribeBudgetNotificationsForAccount API which
returns budget notifications for the specified account
- from version 1.24.2
* api-change:``iam``: Documentation updates for AWS Identity and Access Management (IAM).
* api-change:``redshift``: SDK release for Cross region datasharing and cost-control for cross
region datasharing
* api-change:``evidently``: Add support for filtering list of experiments and launches by status
* api-change:``backup``: AWS Backup add new S3_BACKUP_OBJECT_FAILED and S3_RESTORE_OBJECT_FAILED
event types in BackupVaultNotifications events list.
- from version 1.24.1
* api-change:``ec2``: Documentation updates for EC2.
* api-change:``budgets``: Adds support for auto-adjusting budgets, a new budget method alongside
fixed and planned. Auto-adjusting budgets introduces new metadata to configure a budget limit
baseline using a historical lookback average or current period forecast.
* api-change:``ce``: AWS Cost Anomaly Detection now supports SNS FIFO topic subscribers.
* api-change:``glue``: Support for optimistic locking in UpdateTable
* api-change:``ssm``: Assorted ticket fixes and updates for AWS Systems Manager.
- Version update to 1.24.0
* api-change:``appflow``: Launching Amazon AppFlow SAP as a destination connector SDK.
* feature:Parser: Adding support for parsing int/long types in rest-json response headers.
* api-change:``rds``: Adds support for determining which Aurora PostgreSQL versions support
Babelfish.
* api-change:``athena``: This release adds a subfield, ErrorType, to the AthenaError response
object in the GetQueryExecution API when a query fails.
- from version 1.23.54
* api-change:``ssm``: Documentation updates for AWS Systems Manager.
- from version 1.23.53
* api-change:``cloudformation``: This SDK release adds AWS CloudFormation Hooks HandlerErrorCodes
* api-change:``lookoutvision``: This release makes CompilerOptions in Lookout for Vision's
StartModelPackagingJob's Configuration object optional.
* api-change:``pinpoint``: This SDK release adds a new paramater creation date for GetApp and
GetApps Api call
* api-change:``sns``: Customer requested typo fix in API documentation.
* api-change:``wafv2``: Adds support for AWS WAF Fraud Control account takeover prevention (ATP),
with configuration options for the new managed rule group AWSManagedRulesATPRuleSet and support for
application integration SDKs for Android and iOS mobile apps.
- from version 1.23.52
* api-change:``cloudformation``: This SDK release is for the feature launch of AWS CloudFormation
Hooks.
- from version 1.23.51
* api-change:``kendra``: Amazon Kendra now provides a data source connector for Amazon FSx. For
more information, see https://docs.aws.amazon.com/kendra/latest/dg/data-source-fsx.html
* api-change:``apprunner``: This release adds support for App Runner to route outbound network
traffic of a service through an Amazon VPC. New API: CreateVpcConnector, DescribeVpcConnector,
ListVpcConnectors, and DeleteVpcConnector. Updated API: CreateService, DescribeService, and
UpdateService.
* api-change:``s3control``: This release adds support for S3 Batch Replication. Batch Replication
lets you replicate existing objects, already replicated objects to new destinations, and objects
that previously failed to replicate. Customers will receive object-level visibility of progress and
a detailed completion report.
* api-change:``sagemaker``: Autopilot now generates an additional report with information on the
performance of the best model, such as a Confusion matrix and Area under the receiver operating
characteristic (AUC-ROC). The path to the report can be found in CandidateArtifactLocations.
- from version 1.23.50
* api-change:``auditmanager``: This release updates 3 API parameters.
UpdateAssessmentFrameworkControlSet now requires the controls attribute, and
CreateAssessmentFrameworkControl requires the id attribute. Additionally, UpdateAssessmentFramework
now has a minimum length constraint for the controlSets attribute.
* api-change:``synthetics``: Adding names parameters to the Describe APIs.
* api-change:``ssm-incidents``: Update RelatedItem enum to support SSM Automation
* api-change:``events``: Update events client to latest version
* enhancement:Lambda Request Header: Adding request header for Lambda recursion detection.
- from version 1.23.49
* api-change:``athena``: You can now optionally specify the account ID that you expect to be the
owner of your query results output location bucket in Athena. If the account ID of the query
results bucket owner does not match the specified account ID, attempts to output to the bucket will
fail with an S3 permissions error.
* api-change:``rds``: updates for RDS Custom for Oracle 12.1 support
* api-change:``lakeformation``: Add support for calling Update Table Objects without a
TransactionId.
- from version 1.23.48
* api-change:``ec2``: adds support for AMIs in Recycle Bin
* api-change:``robomaker``: The release deprecates the use various APIs of RoboMaker Deployment
Service in favor of AWS IoT GreenGrass v2.0.
* api-change:``meteringmarketplace``: Add CustomerAWSAccountId to ResolveCustomer API response and
increase UsageAllocation limit to 2500.
* api-change:``rbin``: Add EC2 Image recycle bin support.
- from version 1.23.47
* api-change:``emr``: Update emr client to latest version
* api-change:``personalize``: Adding minRecommendationRequestsPerSecond attribute to recommender
APIs.
* enhancement:Request headers: Adding request headers with retry information.
* api-change:``appflow``: Launching Amazon AppFlow Custom Connector SDK.
* api-change:``dynamodb``: Documentation update for DynamoDB Java SDK.
* api-change:``iot``: This release adds support for configuring AWS IoT logging level per client
ID, source IP, or principal ID.
* api-change:``comprehend``: Amazon Comprehend now supports sharing and importing custom trained
models from one AWS account to another within the same region.
* api-change:``ce``: Doc-only update for Cost Explorer API that adds INVOICING_ENTITY dimensions
* api-change:``fis``: Added GetTargetResourceType and ListTargetResourceTypesAPI actions. These
actions return additional details about resource types and parameters that can be targeted by FIS
actions. Added a parameters field for the targets that can be specified in experiment templates.
* api-change:``es``: Allows customers to get progress updates for blue/green deployments
* api-change:``glue``: Launch Protobuf support for AWS Glue Schema Registry
* api-change:``elasticache``: Documentation update for AWS ElastiCache
- Version update to 1.23.46
* api-change:``appconfigdata``: Documentation updates for AWS AppConfig Data.
* api-change:``athena``: This release adds a field, AthenaError, to the GetQueryExecution response
object when a query fails.
* api-change:``appconfig``: Documentation updates for AWS AppConfig
* api-change:``cognito-idp``: Doc updates for Cognito user pools API Reference.
* api-change:``secretsmanager``: Feature are ready to release on Jan 28th
* api-change:``sagemaker``: This release added a new NNA accelerator compilation support for
Sagemaker Neo.
- from version 1.23.45
* api-change:``ec2``: X2ezn instances are powered by Intel Cascade Lake CPUs that deliver turbo all
core frequency of up to 4.5 GHz and up to 100 Gbps of networking bandwidth
* api-change:``kafka``: Amazon MSK has updated the CreateCluster and UpdateBrokerStorage API that
allows you to specify volume throughput during cluster creation and broker volume updates.
* api-change:``connect``: This release adds support for configuring a custom chat duration when
starting a new chat session via the StartChatContact API. The default value for chat duration is 25
hours, minimum configurable value is 1 hour (60 minutes) and maximum configurable value is 7 days
(10,080 minutes).
* api-change:``amplify``: Doc only update to the description of basicauthcredentials to describe
the required encoding and format.
* api-change:``opensearch``: Allows customers to get progress updates for blue/green deployments
- from version 1.23.44
* api-change:``frauddetector``: Added new APIs for viewing past predictions and obtaining
prediction metadata including prediction explanations: ListEventPredictions and
GetEventPredictionMetadata
* api-change:``ebs``: Documentation updates for Amazon EBS Direct APIs.
* api-change:``codeguru-reviewer``: Added failure state and adjusted timeout in waiter
* api-change:``securityhub``: Adding top level Sample boolean field
* api-change:``sagemaker``: API changes relating to Fail steps in model building pipeline and add
PipelineExecutionFailureReason in PipelineExecutionSummary.
- from version 1.23.43
* api-change:``fsx``: This release adds support for growing SSD storage capacity and
growing/shrinking SSD IOPS for FSx for ONTAP file systems.
* api-change:``efs``: Update efs client to latest version
* api-change:``connect``: This release adds support for custom vocabularies to be used with Contact
Lens. Custom vocabularies improve transcription accuracy for one or more specific words.
* api-change:``guardduty``: Amazon GuardDuty expands threat detection coverage to protect Amazon
Elastic Kubernetes Service (EKS) workloads.
- from version 1.23.42
* api-change:``route53-recovery-readiness``: Updated documentation for Route53 Recovery Readiness
APIs.
- from version 1.23.41
* enhancement:Exceptions: ProxyConnectionError previously provided the full proxy URL. User info
will now be appropriately masked if needed.
* api-change:``mediaconvert``: AWS Elemental MediaConvert SDK has added support for 4K AV1 output
resolutions & 10-bit AV1 color, the ability to ingest sidecar Dolby Vision XML metadata files, and
the ability to flag WebVTT and IMSC tracks for accessibility in HLS.
* api-change:``transcribe``: Add support for granular PIIEntityTypes when using Batch
ContentRedaction.
- Version update to 1.23.40
* api-change:``guardduty``: Amazon GuardDuty findings now include remoteAccountDetails under
AwsApiCallAction section if instance credential is exfiltrated.
* api-change:``connect``: This release adds tagging support for UserHierarchyGroups resource.
* api-change:``mediatailor``: This release adds support for multiple Segment Delivery
Configurations. Users can provide a list of names and URLs when creating or editing a source
location. When retrieving content, users can send a header to choose which URL should be used to
serve content.
* api-change:``fis``: Added action startTime and action endTime timestamp fields to the
ExperimentAction object
* api-change:``ec2``: C6i, M6i and R6i instances are powered by a third-generation Intel Xeon
Scalable processor (Ice Lake) delivering all-core turbo frequency of 3.5 GHz
- from version 1.23.39
* api-change:``macie2``: This release of the Amazon Macie API introduces stricter validation of
requests to create custom data identifiers.
* api-change:``ec2-instance-connect``: Adds support for ED25519 keys. PushSSHPublicKey Availability
Zone parameter is now optional. Adds EC2InstanceStateInvalidException for instances that are not
running. This was previously a service exception, so this may require updating your code to handle
this new exception.
- from version 1.23.38
* api-change:``ivs``: This release adds support for the new Thumbnail Configuration property for
Recording Configurations. For more information see
https://docs.aws.amazon.com/ivs/latest/userguide/record-to-s3.html
* api-change:``storagegateway``: Documentation update for adding bandwidth throttling support for
S3 File Gateways.
* api-change:``location``: This release adds the CalculateRouteMatrix API which calculates routes
for the provided departure and destination positions. The release also deprecates the use of
pricing plan across all verticals.
* api-change:``cloudtrail``: This release fixes a documentation bug in the description for the
readOnly field selector in advanced event selectors. The description now clarifies that users omit
the readOnly field selector to select both Read and Write management events.
* api-change:``ec2``: Add support for AWS Client VPN client login banner and session timeout.
- from version 1.23.37
* enhancement:Configuration: Adding support for `defaults_mode` configuration. The `defaults_mode`
will be used to determine how certain default configuration options are resolved in the SDK.
- from version 1.23.36
* api-change:``config``: Update ResourceType enum with values for CodeDeploy, EC2 and Kinesis
resources
* api-change:``application-insights``: Application Insights support for Active Directory and
SharePoint
* api-change:``honeycode``: Added read and write api support for multi-select picklist. And added
errorcode field to DescribeTableDataImportJob API output, when import job fails.
* api-change:``ram``: This release adds the ListPermissionVersions API which lists the versions for
a given permission.
* api-change:``lookoutmetrics``: This release adds a new DeactivateAnomalyDetector API operation.
- Version update to 1.23.35
* api-change:``pinpoint``: Adds JourneyChannelSettings to WriteJourneyRequest
* api-change:``lexv2-runtime``: Update lexv2-runtime client to latest version
* api-change:``nimble``: Amazon Nimble Studio now supports validation for Launch Profiles. Launch
Profiles now report static validation results after create/update to detect errors in network or
active directory configuration.
* api-change:``glue``: This SDK release adds support to pass run properties when starting a
workflow run
* api-change:``ssm``: AWS Systems Manager adds category support for DescribeDocument API
* api-change:``elasticache``: AWS ElastiCache for Redis has added a new Engine Log LogType in
LogDelivery feature. You can now publish the Engine Log from your Amazon ElastiCache for Redis
clusters to Amazon CloudWatch Logs and Amazon Kinesis Data Firehose.
- from version 1.23.34
* api-change:``lexv2-models``: Update lexv2-models client to latest version
* api-change:``elasticache``: Doc only update for ElastiCache
* api-change:``honeycode``: Honeycode is releasing new APIs to allow user to create, delete and
list tags on resources.
* api-change:``ec2``: Hpc6a instances are powered by a third-generation AMD EPYC processors (Milan)
delivering all-core turbo frequency of 3.4 GHz
* api-change:``fms``: Shield Advanced policies for Amazon CloudFront resources now support
automatic application layer DDoS mitigation. The max length for SecurityServicePolicyData
ManagedServiceData is now 8192 characters, instead of 4096.
* api-change:``pi``: This release adds three Performance Insights APIs. Use
ListAvailableResourceMetrics to get available metrics, GetResourceMetadata to get feature metadata,
and ListAvailableResourceDimensions to list available dimensions. The AdditionalMetrics field in
DescribeDimensionKeys retrieves per-SQL metrics.
- from version 1.23.33
* api-change:``finspace-data``: Documentation updates for FinSpace.
* api-change:``rds``: This release adds the db-proxy event type to support subscribing to RDS Proxy
events.
* api-change:``ce``: Doc only update for Cost Explorer API that fixes missing clarifications for
MatchOptions definitions
* api-change:``kendra``: Amazon Kendra now supports advanced query language and query-less search.
* api-change:``workspaces``: Introducing new APIs for Workspaces audio optimization with Amazon
Connect: CreateConnectClientAddIn, DescribeConnectClientAddIns, UpdateConnectClientAddIn and
DeleteConnectClientAddIn.
* api-change:``iotevents-data``: This release provides documentation updates for Timer.timestamp in
the IoT Events API Reference Guide.
* api-change:``ec2``: EC2 Capacity Reservations now supports RHEL instance platforms (RHEL with SQL
Server Standard, RHEL with SQL Server Enterprise, RHEL with SQL Server Web, RHEL with HA, RHEL with
HA and SQL Server Standard, RHEL with HA and SQL Server Enterprise)
- from version 1.23.32
* api-change:``ec2``: New feature: Updated EC2 API to support faster launching for Windows images.
Optimized images are pre-provisioned, using snapshots to launch instances up to 65% faster.
* api-change:``compute-optimizer``: Adds support for new Compute Optimizer capability that makes it
easier for customers to optimize their EC2 instances by leveraging multiple CPU architectures.
* api-change:``lookoutmetrics``: This release adds FailureType in the response of
DescribeAnomalyDetector.
* api-change:``databrew``: This SDK release adds support for specifying a Bucket Owner for an S3
location.
* api-change:``transcribe``: Documentation updates for Amazon Transcribe.
- from version 1.23.31
* api-change:``medialive``: This release adds support for selecting the Program Date Time (PDT)
Clock source algorithm for HLS outputs.
- from version 1.23.30
* api-change:``ec2``: This release introduces On-Demand Capacity Reservation support for Cluster
Placement Groups, adds Tags on instance Metadata, and includes documentation updates for Amazon EC2.
* api-change:``mediatailor``: This release adds support for filler slate when updating MediaTailor
channels that use the linear playback mode.
* api-change:``opensearch``: Amazon OpenSearch Service adds support for Fine Grained Access Control
for existing domains running Elasticsearch version 6.7 and above
* api-change:``iotwireless``: Downlink Queue Management feature provides APIs for customers to
manage the queued messages destined to device inside AWS IoT Core for LoRaWAN. Customer can view,
delete or purge the queued message(s). It allows customer to preempt the queued messages and let
more urgent messages go through.
* api-change:``es``: Amazon OpenSearch Service adds support for Fine Grained Access Control for
existing domains running Elasticsearch version 6.7 and above
* api-change:``mwaa``: This release adds a "/Source"/ field that provides the initiator of an update,
such as due to an automated patch from AWS or due to modification via Console or API.
* api-change:``appsync``: AppSync: AWS AppSync now supports configurable batching sizes for AWS
Lambda resolvers, Direct AWS Lambda resolvers and pipeline functions
- from version 1.23.29
* api-change:``cloudtrail``: This release adds support for CloudTrail Lake, a new feature that lets
you run SQL-based queries on events that you have aggregated into event data stores. New APIs have
been added for creating and managing event data stores, and creating, running, and managing queries
in CloudTrail Lake.
* api-change:``iot``: This release adds an automatic retry mechanism for AWS IoT Jobs. You can now
define a maximum number of retries for each Job rollout, along with the criteria to trigger the
retry for FAILED/TIMED_OUT/ALL(both FAILED an TIMED_OUT) job.
* api-change:``ec2``: This release adds a new API called
ModifyVpcEndpointServicePayerResponsibility which allows VPC endpoint service owners to take payer
responsibility of their VPC Endpoint connections.
* api-change:``snowball``: Updating validation rules for interfaces used in the Snowball API to
tighten security of service.
* api-change:``lakeformation``: Add new APIs for 3rd Party Support for Lake Formation
* api-change:``appstream``: Includes APIs for App Entitlement management regarding entitlement and
entitled application association.
* api-change:``eks``: Amazon EKS now supports running applications using IPv6 address space
* api-change:``quicksight``: Multiple Doc-only updates for Amazon QuickSight.
* api-change:``ecs``: Documentation update for ticket fixes.
* api-change:``sagemaker``: Amazon SageMaker now supports running training jobs on ml.g5 instance
types.
* api-change:``glue``: Add Delta Lake target support for Glue Crawler and 3rd Party Support for
Lake Formation
- Version update to 1.23.28
* api-change:``rekognition``: This release introduces a new field IndexFacesModelVersion, which is
the version of the face detect and storage model that was used when indexing the face vector.
* api-change:``s3``: Minor doc-based updates based on feedback bugs received.
* enhancement:JSONFileCache: Add support for __delitem__ in JSONFileCache
* api-change:``s3control``: Documentation updates for the renaming of Glacier to Glacier Flexible
Retrieval.
- from version 1.23.27
* api-change:``sagemaker``: The release allows users to pass pipeline definitions as Amazon S3
locations and control the pipeline execution concurrency using ParallelismConfiguration. It also
adds support of EMR jobs as pipeline steps.
* api-change:``rds``: Multiple doc-only updates for Relational Database Service (RDS)
* api-change:``mediaconvert``: AWS Elemental MediaConvert SDK has added strength levels to the
Sharpness Filter and now permits OGG files to be specified as sidecar audio inputs.
* api-change:``greengrassv2``: This release adds the API operations to manage the Greengrass role
associated with your account and to manage the core device connectivity information. Greengrass V2
customers can now depend solely on Greengrass V2 SDK for all the API operations needed to manage
their fleets.
* api-change:``detective``: Added and updated API operations to support the Detective integration
with AWS Organizations. New actions are used to manage the delegated administrator account and the
integration configuration.
- from version 1.23.26
* api-change:``nimble``: Amazon Nimble Studio adds support for users to upload files during a
streaming session using NICE DCV native client or browser.
* api-change:``chime-sdk-messaging``: The Amazon Chime SDK now supports updating message attributes
via channel flows
* api-change:``imagebuilder``: Added a note to infrastructure configuration actions and data types
concerning delivery of Image Builder event messages to encrypted SNS topics. The key that's used to
encrypt the SNS topic must reside in the account that Image Builder runs under.
* api-change:``workmail``: This release allows customers to change their email monitoring
configuration in Amazon WorkMail.
* api-change:``transfer``: Property for Transfer Family used with the FTPS protocol. TLS Session
Resumption provides a mechanism to resume or share a negotiated secret key between the control and
data connection for an FTPS session.
* api-change:``lookoutmetrics``: This release adds support for Causal Relationships. Added new
ListAnomalyGroupRelatedMetrics API operation and InterMetricImpactDetails API data type
* api-change:``mediaconnect``: You can now use the Fujitsu-QoS protocol for your MediaConnect
sources and outputs to transport content to and from Fujitsu devices.
* api-change:``qldb``: Amazon QLDB now supports journal exports in JSON and Ion Binary formats.
This release adds an optional OutputFormat parameter to the ExportJournalToS3 API.
- from version 1.23.25
* api-change:``customer-profiles``: This release adds an optional parameter, ObjectTypeNames to the
PutIntegration API to support multiple object types per integration option. Besides, this release
introduces Standard Order Objects which contain data from third party systems and each order object
belongs to a specific profile.
* api-change:``sagemaker``: This release adds a new ContentType field in AutoMLChannel for
SageMaker CreateAutoMLJob InputDataConfig.
* api-change:``forecast``: Adds ForecastDimensions field to the DescribeAutoPredictorResponse
* api-change:``securityhub``: Added new resource details objects to ASFF, including resources for
Firewall, and RuleGroup, FirewallPolicy Added additional details for AutoScalingGroup,
LaunchConfiguration, and S3 buckets.
* api-change:``location``: Making PricingPlan optional as part of create resource API.
* api-change:``redshift``: This release adds API support for managed Redshift datashares. Customers
can now interact with a Redshift datashare that is managed by a different service, such as AWS Data
Exchange.
* api-change:``apigateway``: Documentation updates for Amazon API Gateway
* api-change:``devops-guru``: Adds Tags support to DescribeOrganizationResourceCollectionHealth
* api-change:``imagebuilder``: This release adds support for importing and exporting VM Images as
part of the Image Creation workflow via EC2 VM Import/Export.
* api-change:``datasync``: AWS DataSync now supports FSx Lustre Locations.
* api-change:``finspace-data``: Make dataset description optional and allow s3 export for dataviews
- Version update to 1.23.24
* api-change:``secretsmanager``: Documentation updates for Secrets Manager
- from version 1.23.23
* api-change:``lexv2-models``: Update lexv2-models client to latest version
* api-change:``network-firewall``: This release adds support for managed rule groups.
* api-change:``route53-recovery-control-config``: This release adds tagging supports to Route53
Recovery Control Configuration. New APIs: TagResource, UntagResource and ListTagsForResource.
Updates: add optional field `tags` to support tagging while calling CreateCluster,
CreateControlPanel and CreateSafetyRule.
* api-change:``ec2``: Adds waiters support for internet gateways.
* api-change:``sms``: This release adds SMS discontinuation information to the API and CLI
references.
* api-change:``route53domains``: Amazon Route 53 domain registration APIs now support filtering and
sorting in the ListDomains API, deleting a domain by using the DeleteDomain API and getting domain
pricing information by using the ListPrices API.
* api-change:``savingsplans``: Adds the ability to specify Savings Plans hourly commitments using
five digits after the decimal point.
- from version 1.23.22
* api-change:``lookoutvision``: This release adds new APIs for packaging an Amazon Lookout for
Vision model as an AWS IoT Greengrass component.
* api-change:``sagemaker``: This release added a new Ambarella device(amba_cv2) compilation support
for Sagemaker Neo.
* api-change:``comprehendmedical``: This release adds a new set of APIs (synchronous and batch) to
support the SNOMED-CT ontology.
* api-change:``health``: Documentation updates for AWS Health
* api-change:``logs``: This release adds AWS Organizations support as condition key in destination
policy for cross account Subscriptions in CloudWatch Logs.
* api-change:``outposts``: This release adds the UpdateOutpost API.
* api-change:``support``: Documentation updates for AWS Support.
* api-change:``iot``: This release allows customer to enable caching of custom authorizer on HTTP
protocol for clients that use persistent or Keep-Alive connection in order to reduce the number of
Lambda invocations.
- from version 1.23.21
* api-change:``location``: This release adds support for Accuracy position filtering, position
metadata and autocomplete for addresses and points of interest based on partial or misspelled
free-form text.
* api-change:``appsync``: AWS AppSync now supports custom domain names, allowing you to associate a
domain name that you own with an AppSync API in your account.
* api-change:``route53``: Add PriorRequestNotComplete exception to UpdateHostedZoneComment API
- from version 1.23.20
* api-change:``rekognition``: This release added new KnownGender types for Celebrity Recognition.
- from version 1.23.19
* api-change:``ram``: This release adds the ability to use the new ResourceRegionScope parameter on
List operations that return lists of resources or resource types. This new parameter filters the
results by letting you differentiate between global or regional resource types.
* api-change:``networkmanager``: This release adds API support for AWS Cloud WAN.
* api-change:``amplifyuibuilder``: This release introduces the actions and data types for the new
Amplify UI Builder API. The Amplify UI Builder API provides a programmatic interface for creating
and configuring user interface (UI) component libraries and themes for use in Amplify applications.
- from version 1.23.18
* api-change:``sagemaker``: This release enables - 1/ Inference endpoint configuration
recommendations and ability to run custom load tests to meet performance needs. 2/ Deploy
serverless inference endpoints. 3/ Query, filter and retrieve end-to-end ML lineage graph, and
incorporate model quality/bias detection in ML workflow.
* api-change:``kendra``: Experience Builder allows customers to build search applications without
writing code. Analytics Dashboard provides quality and usability metrics for Kendra indexes. Custom
Document Enrichment allows customers to build a custom ingestion pipeline to pre-process documents
and generate metadata.
* api-change:``directconnect``: Adds SiteLink support to private and transit virtual interfaces.
SiteLink is a new Direct Connect feature that allows routing between Direct Connect points of
presence.
* api-change:``lexv2-models``: Update lexv2-models client to latest version
* api-change:``ec2``: This release adds support for Amazon VPC IP Address Manager (IPAM), which
enables you to plan, track, and monitor IP addresses for your workloads. This release also adds
support for VPC Network Access Analyzer, which enables you to analyze network access to resources
in your Virtual Private Clouds.
* api-change:``shield``: This release adds API support for Automatic Application Layer DDoS
Mitigation for AWS Shield Advanced. Customers can now enable automatic DDoS mitigation in count or
block mode for layer 7 protected resources.
* api-change:``sagemaker-runtime``: Update sagemaker-runtime client to latest version
* api-change:``devops-guru``: DevOps Guru now provides detailed, database-specific analyses of
performance issues and recommends corrective actions for Amazon Aurora database instances with
Performance Insights turned on. You can also use AWS tags to choose which resources to analyze and
define your applications.
* api-change:``dynamodb``: Add support for Table Classes and introduce the Standard Infrequent
Access table class.
- from version 1.23.17
* api-change:``s3``: Introduce Amazon S3 Glacier Instant Retrieval storage class and a new setting
in S3 Object Ownership to disable ACLs for bucket and the objects in it.
* api-change:``backup-gateway``: Initial release of AWS Backup gateway which enables you to
centralize and automate protection of on-premises VMware and VMware Cloud on AWS workloads using
AWS Backup.
* api-change:``iot``: Added the ability to enable/disable IoT Fleet Indexing for Device Defender
and Named Shadow information, and search them through IoT Fleet Indexing APIs.
* api-change:``ec2``: This release adds support for Is4gen and Im4gn instances. This release also
adds a new subnet attribute, enableLniAtDeviceIndex, to support local network interfaces, which are
logical networking components that connect an EC2 instance to your on-premises network.
* api-change:``outposts``: This release adds the SupportedHardwareType parameter to CreateOutpost.
* api-change:``storagegateway``: Added gateway type VTL_SNOW. Added new SNOWBALL HostEnvironment
for gateways running on a Snowball device. Added new field HostEnvironmentId to serve as an
identifier for the HostEnvironment on which the gateway is running.
* api-change:``kinesis``: Amazon Kinesis Data Streams now supports on demand streams.
* api-change:``glue``: Support for DataLake transactions
* api-change:``accessanalyzer``: AWS IAM Access Analyzer now supports policy validation for
resource policies attached to S3 buckets and access points. You can run additional policy checks by
specifying the S3 resource type you want to attach to your resource policy.
* api-change:``lakeformation``: This release adds support for row and cell-based access control in
Lake Formation. It also adds support for Lake Formation Governed Tables, which support ACID
transactions and automatic storage optimizations.
* api-change:``kafka``: This release adds three new V2 APIs. CreateClusterV2 for creating both
provisioned and serverless clusters. DescribeClusterV2 for getting information about provisioned
and serverless clusters and ListClustersV2 for listing all clusters (both provisioned and
serverless) in your account.
* api-change:``redshift-data``: Data API now supports serverless queries.
* api-change:``snowball``: Tapeball is to integrate tape gateway onto snowball, it enables customer
to transfer local data on the tape to snowball,and then ingest the data into tape gateway on the
cloud.
* api-change:``workspaces-web``: This is the initial SDK release for Amazon WorkSpaces Web. Amazon
WorkSpaces Web is a low-cost, fully managed WorkSpace built to deliver secure web-based workloads
and software-as-a-service (SaaS) application access to users within existing web browsers.
* api-change:``iottwinmaker``: AWS IoT TwinMaker makes it faster and easier to create, visualize
and monitor digital twins of real-world systems like buildings, factories and industrial equipment
to optimize operations. Learn more:
https://docs.aws.amazon.com/iot-twinmaker/latest/apireference/Welcome.html (New Service) (Preview)
* api-change:``fsx``: This release adds support for the FSx for OpenZFS file system type, FSx for
Lustre file systems with the Persistent_2 deployment type, and FSx for Lustre file systems with
Amazon S3 data repository associations and automatic export policies.
- from version 1.23.16
* api-change:``s3``: Amazon S3 Event Notifications adds Amazon EventBridge as a destination and
supports additional event types. The PutBucketNotificationConfiguration API can now skip validation
of Amazon SQS, Amazon SNS and AWS Lambda destinations.
* api-change:``wellarchitected``: This update provides support for Well-Architected API users to
use custom lens features.
* api-change:``rum``: This is the first public release of CloudWatch RUM
* api-change:``rbin``: This release adds support for Recycle Bin.
* api-change:``iotsitewise``: AWS IoT SiteWise now supports retention configuration for the hot
tier storage.
* api-change:``compute-optimizer``: Adds support for the enhanced infrastructure metrics paid
feature. Also adds support for two new sets of resource efficiency metrics, including savings
opportunity metrics and performance improvement opportunity metrics.
* api-change:``ecr``: This release adds supports for pull through cache rules and enhanced scanning.
* api-change:``evidently``: Introducing Amazon CloudWatch Evidently. This is the first public
release of Amazon CloudWatch Evidently.
* api-change:``inspector2``: This release adds support for the new Amazon Inspector API. The new
Amazon Inspector can automatically discover and scan Amazon EC2 instances and Amazon ECR container
images for software vulnerabilities and unintended network exposure, and report centralized
findings across multiple AWS accounts.
* api-change:``ssm``: Added two new attributes to DescribeInstanceInformation called SourceId and
SourceType along with new string filters SourceIds and SourceTypes to filter instance records.
* api-change:``ec2``: This release adds support for G5g and M6a instances. This release also adds
support for Amazon EBS Snapshots Archive, a feature that enables you to archive your EBS snapshots;
and Recycle Bin, a feature that enables you to protect your EBS snapshots against accidental
deletion.
* api-change:``dataexchange``: This release enables providers and subscribers to use Data Set, Job,
and Asset operations to work with API assets from Amazon API Gateway. In addition, this release
enables subscribers to use the SendApiAsset operation to invoke a provider's Amazon API Gateway API
that they are entitled to.
- from version 1.23.15
* api-change:``migration-hub-refactor-spaces``: This is the initial SDK release for AWS Migration
Hub Refactor Spaces
* api-change:``textract``: This release adds support for synchronously analyzing identity documents
through a new API: AnalyzeID
* api-change:``personalize-runtime``: This release adds inference support for Recommenders.
* api-change:``personalize``: This release adds API support for Recommenders and BatchSegmentJobs.
- from version 1.23.14
* api-change:``autoscaling``: Documentation updates for Amazon EC2 Auto Scaling.
* api-change:``mgn``: Application Migration Service now supports an additional replication method
that does not require agent installation on each source server. This option is available for source
servers running on VMware vCenter versions 6.7 and 7.0.
* api-change:``ec2``: Documentation updates for EC2.
* api-change:``iotdeviceadvisor``: Documentation update for Device Advisor GetEndpoint API
* api-change:``pinpoint``: Added a One-Time Password (OTP) management feature. You can use the
Amazon Pinpoint API to generate OTP codes and send them to your users as SMS messages. Your apps
can then call the API to verify the OTP codes that your users input
* api-change:``outposts``: This release adds new APIs for working with Outpost sites and orders.
- from version 1.23.13
* api-change:``timestream-query``: Releasing Amazon Timestream Scheduled Queries. It makes
real-time analytics more performant and cost-effective for customers by calculating and storing
frequently accessed aggregates, and other computations, typically used in operational dashboards,
business reports, and other analytics applications
* api-change:``elasticache``: Doc only update for ElastiCache
* api-change:``proton``: This release adds APIs for getting the outputs and provisioned stacks for
Environments, Pipelines, and ServiceInstances. You can now add tags to
EnvironmentAccountConnections. It also adds APIs for working with PR-based provisioning. Also, it
adds APIs for syncing templates with a git repository.
* api-change:``translate``: This release enables customers to use translation settings to mask
profane words and phrases in their translation output.
* api-change:``lambda``: Remove Lambda function url apis
* api-change:``imagebuilder``: This release adds support for sharing AMIs with Organizations within
an EC2 Image Builder Distribution Configuration.
* api-change:``customer-profiles``: This release introduces a new auto-merging feature for profile
matching. The auto-merging configurations can be set via CreateDomain API or UpdateDomain API. You
can use GetIdentityResolutionJob API and ListIdentityResolutionJobs API to fetch job status.
* api-change:``autoscaling``: Customers can now configure predictive scaling policies to
proactively scale EC2 Auto Scaling groups based on any CloudWatch metrics that more accurately
represent the load on the group than the four predefined metrics. They can also use math
expressions to further customize the metrics.
* api-change:``timestream-write``: This release adds support for multi-measure records and magnetic
store writes. Multi-measure records allow customers to store multiple measures in a single table
row. Magnetic store writes enable customers to write late arrival data (data with timestamp in the
past) directly into the magnetic store.
* api-change:``iotsitewise``: AWS IoT SiteWise now accepts data streams that aren't associated with
any asset properties. You can organize data by updating data stream associations.
- from version 1.23.12
* api-change:``redshift``: This release adds support for reserved node exchange with restore/resize
* api-change:``elasticache``: Adding support for r6gd instances for Redis with data tiering. In a
cluster with data tiering enabled, when available memory capacity is exhausted, the least recently
used data is automatically tiered to solid state drives for cost-effective capacity scaling with
minimal performance impact.
* api-change:``opensearch``: This release adds an optional parameter dry-run for the
UpdateDomainConfig API to perform basic validation checks, and detect the deployment type that will
be required for the configuration change, without actually applying the change.
* api-change:``backup``: This release adds new opt-in settings for advanced features for DynamoDB
backups
* api-change:``iot``: This release introduces a new feature, Managed Job Template, for AWS IoT Jobs
Service. Customers can now use service provided managed job templates to easily create jobs for
supported standard job actions.
* api-change:``iotwireless``: Two new APIs, GetNetworkAnalyzerConfiguration and
UpdateNetworkAnalyzerConfiguration, are added for the newly released Network Analyzer feature which
enables customers to view real-time frame information and logs from LoRaWAN devices and gateways.
* api-change:``workspaces``: Documentation updates for Amazon WorkSpaces
* api-change:``s3``: Introduce two new Filters to S3 Lifecycle configurations -
ObjectSizeGreaterThan and ObjectSizeLessThan. Introduce a new way to trigger actions on noncurrent
versions by providing the number of newer noncurrent versions along with noncurrent days.
* api-change:``elbv2``: Update elbv2 client to latest version
* api-change:``macie2``: Documentation updates for Amazon Macie
* api-change:``ec2``: This release adds a new parameter ipv6Native to the allow creation of
IPv6-only subnets using the CreateSubnet operation, and the operation ModifySubnetAttribute
includes new parameters to modify subnet attributes to use resource-based naming and enable DNS
resolutions for Private DNS name.
* api-change:``sqs``: Amazon SQS adds a new queue attribute, SqsManagedSseEnabled, which enables
server-side queue encryption using SQS owned encryption keys.
* api-change:``ecs``: Documentation update for ARM support on Amazon ECS.
* api-change:``sts``: Documentation updates for AWS Security Token Service.
* api-change:``finspace-data``: Update documentation for createChangeset API.
* api-change:``dynamodb``: DynamoDB PartiQL now supports ReturnConsumedCapacity, which returns
capacity units consumed by PartiQL APIs if the request specified returnConsumedCapacity parameter.
PartiQL APIs include ExecuteStatement, BatchExecuteStatement, and ExecuteTransaction.
* api-change:``lambda``: Release Lambda event source filtering for SQS, Kinesis Streams, and
DynamoDB Streams.
* api-change:``iotdeviceadvisor``: This release introduces a new feature for Device Advisor:
ability to execute multiple test suites in parallel for given customer account. You can use
GetEndpoint API to get the device-level test endpoint and call StartSuiteRun with
"/parallelRun=true"/ to run suites in parallel.
* api-change:``rds``: Adds support for Multi-AZ DB clusters for RDS for MySQL and RDS for
PostgreSQL.
- from version 1.23.11
* api-change:``connect``: This release adds support for UpdateContactFlowMetadata,
DeleteContactFlow and module APIs. For details, see the Release Notes in the Amazon Connect
Administrator Guide.
* api-change:``dms``: Added new S3 endpoint settings to allow to convert the current UTC time into
a specified time zone when a date partition folder is created. Using with 'DatePartitionedEnabled'.
* api-change:``es``: This release adds an optional parameter dry-run for the
UpdateElasticsearchDomainConfig API to perform basic validation checks, and detect the deployment
type that will be required for the configuration change, without actually applying the change.
* api-change:``ssm``: Adds new parameter to CreateActivation API . This parameter is for "/internal
use only"/.
* api-change:``chime-sdk-meetings``: Added new APIs for enabling Echo Reduction with Voice Focus.
* api-change:``eks``: Adding missing exceptions to RegisterCluster operation
* api-change:``quicksight``: Add support for Exasol data source, 1 click enterprise embedding and
email customization.
* api-change:``cloudformation``: This release include SDK changes for the feature launch of Stack
Import to Service Managed StackSet.
* api-change:``rds``: Adds local backup support to Amazon RDS on AWS Outposts.
* api-change:``braket``: This release adds support for Amazon Braket Hybrid Jobs.
* api-change:``s3control``: Added Amazon CloudWatch publishing option for S3 Storage Lens metrics.
* api-change:``finspace-data``: Add new APIs for managing Datasets, Changesets, and Dataviews.
- from version 1.23.10
* api-change:``lexv2-runtime``: Update lexv2-runtime client to latest version
* api-change:``cloudformation``: The StackSets ManagedExecution feature will allow concurrency for
non-conflicting StackSet operations and queuing the StackSet operations that conflict at a given
time for later execution.
* api-change:``redshift``: Added support of default IAM role for CreateCluster,
RestoreFromClusterSnapshot and ModifyClusterIamRoles APIs
* api-change:``lambda``: Add support for Lambda Function URLs. Customers can use Function URLs to
create built-in HTTPS endpoints on their functions.
* api-change:``appstream``: Includes APIs for managing resources for Elastic fleets: applications,
app blocks, and application-fleet associations.
* api-change:``medialive``: This release adds support for specifying a SCTE-35 PID on input.
MediaLive now supports SCTE-35 PID selection on inputs containing one or more active SCTE-35 PIDs.
* api-change:``batch``: Documentation updates for AWS Batch.
* api-change:``application-insights``: Application Insights now supports monitoring for HANA
- from version 1.23.9
* api-change:``ivs``: Add APIs for retrieving stream session information and support for filtering
live streams by health. For more information, see
https://docs.aws.amazon.com/ivs/latest/userguide/stream-health.html
* api-change:``lambda``: Added support for CLIENT_CERTIFICATE_TLS_AUTH and
SERVER_ROOT_CA_CERTIFICATE as SourceAccessType for MSK and Kafka event source mappings.
* api-change:``chime``: Adds new Transcribe API parameters to StartMeetingTranscription, including
support for content identification and redaction (PII & PHI), partial results stabilization, and
custom language models.
* api-change:``chime-sdk-meetings``: Adds new Transcribe API parameters to
StartMeetingTranscription, including support for content identification and redaction (PII & PHI),
partial results stabilization, and custom language models.
* api-change:``lexv2-models``: Update lexv2-models client to latest version
* api-change:``cloudwatch``: Update cloudwatch client to latest version
* api-change:``auditmanager``: This release introduces a new feature for Audit Manager: Dashboard
views. You can now view insights data for your active assessments, and quickly identify
non-compliant evidence that needs to be remediated.
* api-change:``databrew``: This SDK release adds the following new features: 1) PII detection in
profile jobs, 2) Data quality rules, enabling validation of data quality in profile jobs, 3) SQL
query-based datasets for Amazon Redshift and Snowflake data sources, and 4) Connecting DataBrew
datasets with Amazon AppFlow flows.
* api-change:``redshift-data``: Rolling back Data API serverless features until dependencies are
live.
* api-change:``kafka``: Amazon MSK has added a new API that allows you to update the connectivity
settings for an existing cluster to enable public accessibility.
* api-change:``forecast``: NEW CreateExplanability API that helps you understand how attributes
such as price, promotion, etc. contributes to your forecasted values; NEW CreateAutoPredictor API
that trains up to 40% more accurate forecasting model, saves up to 50% of retraining time, and
provides model level explainability.
* api-change:``appconfig``: Add Type to support feature flag configuration profiles
- from version 1.23.8
* api-change:``appconfigdata``: AWS AppConfig Data is a new service that allows you to retrieve
configuration deployed by AWS AppConfig. See the AppConfig user guide for more details on getting
started. https://docs.aws.amazon.com/appconfig/latest/userguide/what-is-appconfig.html
* api-change:``drs``: Introducing AWS Elastic Disaster Recovery (AWS DRS), a new service that
minimizes downtime and data loss with fast, reliable recovery of on-premises and cloud-based
applications using affordable storage, minimal compute, and point-in-time recovery.
* api-change:``apigateway``: Documentation updates for Amazon API Gateway.
* api-change:``sns``: Amazon SNS introduces the PublishBatch API, which enables customers to
publish up to 10 messages per API request. The new API is valid for Standard and FIFO topics.
* api-change:``redshift-data``: Data API now supports serverless requests.
* api-change:``amplifybackend``: New APIs to support the Amplify Storage category. Add and manage
file storage in your Amplify app backend.
- from version 1.23.7
* api-change:``location``: This release adds the support for Relevance, Distance, Time Zone,
Language and Interpolated Address for Geocoding and Reverse Geocoding.
* api-change:``cloudtrail``: CloudTrail Insights now supports ApiErrorRateInsight, which enables
customers to identify unusual activity in their AWS account based on API error codes and their rate.
- from version 1.23.6
* api-change:``migrationhubstrategy``: AWS SDK for Migration Hub Strategy Recommendations. It
includes APIs to start the portfolio assessment, import portfolio data for assessment, and to
retrieve recommendations. For more information, see the AWS Migration Hub documentation at
https://docs.aws.amazon.com/migrationhub/index.html
* api-change:``ec2``: Adds a new VPC Subnet attribute "/EnableDns64."/ When enabled on IPv6 Subnets,
the Amazon-Provided DNS Resolver returns synthetic IPv6 addresses for IPv4-only destinations.
* api-change:``wafv2``: Your options for logging web ACL traffic now include Amazon CloudWatch Logs
log groups and Amazon S3 buckets.
* api-change:``dms``: Add Settings in JSON format for the source GCP MySQL endpoint
* api-change:``ssm``: Adds support for Session Reason and Max Session Duration for Systems Manager
Session Manager.
* api-change:``appstream``: This release includes support for images of AmazonLinux2 platform type.
* api-change:``eks``: Adding Tags support to Cluster Registrations.
* api-change:``transfer``: AWS Transfer Family now supports integrating a custom identity provider
using AWS Lambda
- from version 1.23.5
* api-change:``ec2``: C6i instances are powered by a third-generation Intel Xeon Scalable processor
(Ice Lake) delivering all-core turbo frequency of 3.5 GHz. G5 instances feature up to 8 NVIDIA A10G
Tensor Core GPUs and second generation AMD EPYC processors.
* api-change:``ssm``: This Patch Manager release supports creating Patch Baselines for RaspberryPi
OS (formerly Raspbian)
* api-change:``devops-guru``: Add support for cross account APIs.
* api-change:``connect``: This release adds APIs for creating and managing scheduled tasks.
Additionally, adds APIs to describe and update a contact and list associated references.
* api-change:``mediaconvert``: AWS Elemental MediaConvert SDK has added automatic modes for GOP
configuration and added the ability to ingest screen recordings generated by Safari on MacOS 12
Monterey.
- from version 1.23.4
* api-change:``dynamodb``: Updated Help section for "/dynamodb update-contributor-insights"/ API
* api-change:``ec2``: This release provides an additional route target for the VPC route table.
* api-change:``translate``: This release enables customers to import Multi-Directional Custom
Terminology and use Multi-Directional Custom Terminology in both real-time translation and
asynchronous batch translation.
- from version 1.23.3
* api-change:``backup``: AWS Backup SDK provides new options when scheduling backups: select
supported services and resources that are assigned to a particular tag, linked to a combination of
tags, or can be identified by a partial tag value, and exclude resources from their assignments.
* api-change:``ecs``: This release adds support for container instance health.
* api-change:``resiliencehub``: Initial release of AWS Resilience Hub, a managed service that
enables you to define, validate, and track the resilience of your applications on AWS
- from version 1.23.2
* api-change:``batch``: Adds support for scheduling policy APIs.
* api-change:``health``: Documentation updates for AWS Health.
* api-change:``greengrassv2``: This release adds support for Greengrass core devices running
Windows. You can now specify name of a Windows user to run a component.
- from version 1.23.1
* bugfix:urllib3: Fix NO_OP_TICKET import bug in older versions of urllib3
- from version 1.23.0
* feature:EndpointResolver: Adding support for resolving modeled FIPS and Dualstack endpoints.
* feature:``six``: Updated vendored version of ``six`` from 1.10.0 to 1.16.0
* api-change:``sagemaker``: SageMaker CreateEndpoint and UpdateEndpoint APIs now support additional
deployment configuration to manage traffic shifting options and automatic rollback monitoring.
DescribeEndpoint now shows new in-progress deployment details with stage status.
* api-change:``chime-sdk-meetings``: Updated format validation for ids and regions.
* api-change:``wafv2``: You can now configure rules to run a CAPTCHA check against web requests
and, as needed, send a CAPTCHA challenge to the client.
* api-change:``ec2``: This release adds internal validation on the GatewayAssociationState field
- from version 1.22.12
* api-change:``ec2``: DescribeInstances now returns customer-owned IP addresses for instances
running on an AWS Outpost.
* api-change:``translate``: This release enable customers to use their own KMS keys to encrypt
output files when they submit a batch transform job.
* api-change:``resourcegroupstaggingapi``: Documentation updates and improvements.
- from version 1.22.11
* api-change:``chime-sdk-meetings``: The Amazon Chime SDK Meetings APIs allow software developers
to create meetings and attendees for interactive audio, video, screen and content sharing in custom
meeting applications which use the Amazon Chime SDK.
* api-change:``sagemaker``: ListDevices and DescribeDevice now show Edge Manager agent version.
* api-change:``connect``: This release adds CRUD operation support for Security profile resource in
Amazon Connect
* api-change:``iotwireless``: Adding APIs for the FUOTA (firmware update over the air) and
multicast for LoRaWAN devices and APIs to support event notification opt-in feature for Sidewalk
related events. A few existing APIs need to be modified for this new feature.
* api-change:``ec2``: This release adds a new instance replacement strategy for EC2 Fleet, Spot
Fleet. Now you can select an action to perform when your instance gets a rebalance notification.
EC2 Fleet, Spot Fleet can launch a replacement then terminate the instance that received
notification after a termination delay
- from version 1.22.10
* api-change:``finspace``: Adds superuser and data-bundle parameters to CreateEnvironment API
* api-change:``connectparticipant``: This release adds a new boolean attribute - Connect
Participant - to the CreateParticipantConnection API, which can be used to mark the participant as
connected.
* api-change:``datasync``: AWS DataSync now supports Hadoop Distributed File System (HDFS) Locations
* api-change:``macie2``: This release adds support for specifying the severity of findings that a
custom data identifier produces, based on the number of occurrences of text that matches the
detection criteria.
- from version 1.22.9
* api-change:``cloudfront``: CloudFront now supports response headers policies to add HTTP headers
to the responses that CloudFront sends to viewers. You can use these policies to add CORS headers,
control browser caching, and more, without modifying your origin or writing any code.
* api-change:``connect``: Amazon Connect Chat now supports real-time message streaming.
* api-change:``nimble``: Amazon Nimble Studio adds support for users to stop and start streaming
sessions.
- from version 1.22.8
* api-change:``rekognition``: This Amazon Rekognition Custom Labels release introduces the
management of datasets with projects
* api-change:``networkmanager``: This release adds API support to aggregate resources, routes, and
telemetry data across a Global Network.
* api-change:``lightsail``: This release adds support to enable access logging for buckets in the
Lightsail object storage service.
* api-change:``neptune``: Adds support for major version upgrades to ModifyDbCluster API
- from version 1.22.7
* api-change:``transcribe``: Transcribe and Transcribe Call Analytics now support automatic
language identification along with custom vocabulary, vocabulary filter, custom language model and
PII redaction.
* api-change:``application-insights``: Added Monitoring support for SQL Server Failover Cluster
Instance. Additionally, added a new API to allow one-click monitoring of containers resources.
* api-change:``rekognition``: This release added new attributes to Rekognition Video
GetCelebrityRecognition API operations.
* api-change:``connect``: Amazon Connect Chat now supports real-time message streaming.
* api-change:``ec2``: Support added for AMI sharing with organizations and organizational units in
ModifyImageAttribute API
- Version update to 1.22.6
* api-change:``gamelift``: Added support for Arm-based AWS Graviton2 instances,
such as M6g, C6g, and R6g.
* api-change:``ecs``: Amazon ECS now supports running Fargate tasks on Windows
Operating Systems Families which includes Windows Server 2019 Core and Windows
Server 2019 Full.
* api-change:``sagemaker``: This release adds support for RStudio on SageMaker.
* api-change:``connectparticipant``: This release adds a new boolean attribute
- Connect Participant - to the CreateParticipantConnection API, which can be
used to mark the participant as connected.
* api-change:``ec2``: Added new read-only DenyAllIGWTraffic network interface
attribute. Added support for DL1 24xlarge instances powered by Habana Gaudi
Accelerators for deep learning model training workloads
* api-change:``ssm-incidents``: Updating documentation, adding new field to
ConflictException to indicate earliest retry timestamp for some operations,
increase maximum length of nextToken fields
- from version 1.22.5
* api-change:``autoscaling``: This release adds support for attribute-based
instance type selection, a new EC2 Auto Scaling feature that lets customers
express their instance requirements as a set of attributes, such as vCPU,
memory, and storage.
* api-change:``ec2``: This release adds: attribute-based instance type selection
for EC2 Fleet, Spot Fleet, a feature that lets customers express instance
requirements as attributes like vCPU, memory, and storage; and Spot placement
score, a feature that helps customers identify an optimal location to run
Spot workloads.
* api-change:``eks``: EKS managed node groups now support BOTTLEROCKET_x86_64
and BOTTLEROCKET_ARM_64 AMI types.
* api-change:``sagemaker``: This release allows customers to describe one or
more versioned model packages through BatchDescribeModelPackage, update
project via UpdateProject, modify and read customer metadata properties
using Create, Update and Describe ModelPackage and enables cross account
registration of model packages.
* enhancement:Session: Added `get_partition_for_region` allowing partition
lookup by region name.
* api-change:``textract``: This release adds support for asynchronously analyzing
invoice and receipt documents through two new APIs: StartExpenseAnalysis and
GetExpenseAnalysis
- from version 1.22.4
* api-change:``emr-containers``: This feature enables auto-generation of certificate
to secure the managed-endpoint and removes the need for customer provided
certificate-arn during managed-endpoint setup.
* api-change:``chime-sdk-messaging``: The Amazon Chime SDK now supports push
notifications through Amazon Pinpoint
* api-change:``chime-sdk-identity``: The Amazon Chime SDK now supports push
notifications through Amazon Pinpoint
- from version 1.22.3
* api-change:``rds``: This release adds support for Amazon RDS Custom, which
is a new RDS management type that gives you full access to your database
and operating system.
For more information, see https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/rds-custom.html
* api-change:``auditmanager``: This release introduces a new feature for Audit
Manager: Custom framework sharing. You can now share your custom frameworks
with another AWS account, or replicate them into another AWS Region under
your own account.
* api-change:``ec2``: This release adds support to create a VPN Connection
that is not attached to a Gateway at the time of creation. Use this to
create VPNs associated with Core Networks, or modify your VPN and attach
a gateway using the modify API after creation.
* api-change:``route53resolver``: New API for ResolverConfig, which allows
autodefined rules for reverse DNS resolution to be disabled for a VPC
- from version 1.22.2
* api-change:``quicksight``: Added QSearchBar option for GenerateEmbedUrlForRegisteredUser
ExperienceConfiguration to support Q search bar embedding
* api-change:``auditmanager``: This release introduces character restrictions for
ControlSet names. We updated regex patterns for the following attributes:
ControlSet, CreateAssessmentFrameworkControlSet, and UpdateAssessmentFrameworkControlSet.
* api-change:``chime``: Chime VoiceConnector and VoiceConnectorGroup APIs
will now return an ARN.
- from version 1.22.1
* api-change:``connect``: Released Amazon Connect hours of operation API for
general availability (GA). This API also supports AWS CloudFormation. For
more information, see Amazon Connect Resource Type Reference in the AWS
CloudFormation User Guide.
- from version 1.22.0
* api-change:``appflow``: Feature to add support for JSON-L format
for S3 as a source.
* api-change:``mediapackage-vod``: MediaPackage passes through digital
video broadcasting (DVB) subtitles into the output.
* api-change:``mediaconvert``: AWS Elemental MediaConvert SDK has added
support for specifying caption time delta in milliseconds and the ability
to apply color range legalization to source content other than AVC video.
* api-change:``mediapackage``: When enabled, MediaPackage passes through
digital video broadcasting (DVB) subtitles into the output.
* api-change:``panorama``: General availability for AWS Panorama. AWS SDK
for Panorama includes APIs to manage your devices and nodes, and deploy
computer vision applications to the edge. For more information, see the
AWS Panorama documentation at http://docs.aws.amazon.com/panorama
* feature:Serialization: rest-json serialization defaults aligned across AWS SDKs
* api-change:``directconnect``: This release adds 4 new APIS, which needs to be public able
* api-change:``securityhub``: Added support for cross-Region finding aggregation,
which replicates findings from linked Regions to a single aggregation Region.
Added operations to view, enable, update, and delete the finding aggregation.
- from version 1.21.65
* api-change:``dataexchange``: This release adds support for our public preview
of AWS Data Exchange for Amazon Redshift. This enables data providers to list
products including AWS Data Exchange datashares for Amazon Redshift, giving
subscribers read-only access to provider data in Amazon Redshift.
* api-change:``chime-sdk-messaging``: The Amazon Chime SDK now allows developers
to execute business logic on in-flight messages before they are delivered to
members of a messaging channel with channel flows.
- from version 1.21.64
* api-change:``quicksight``: AWS QuickSight Service Features - Add IP Restriction
UI and public APIs support.
* enchancement:AWSCRT: Upgrade awscrt extra to 0.12.5
* api-change:``ivs``: Bug fix: remove unsupported maxResults and nextToken
pagination parameters from ListTagsForResource
- from version 1.21.63
* api-change:``efs``: Update efs client to latest version
* api-change:``glue``: Enable S3 event base crawler API.
- from version 1.21.62
* api-change:``elbv2``: Update elbv2 client to latest version
* api-change:``autoscaling``: Amazon EC2 Auto Scaling now supports filtering
describe Auto Scaling groups API using tags
* api-change:``sagemaker``: This release updates the provisioning artifact ID
to an optional parameter in CreateProject API. The provisioning artifact ID
defaults to the latest provisioning artifact ID of the product if you don't
provide one.
* api-change:``robomaker``: Adding support to GPU simulation jobs as well
as non-ROS simulation jobs.
- from version 1.21.61
* api-change:``config``: Adding Config support for AWS::OpenSearch::Domain
* api-change:``ec2``: This release adds support for additional VPC Flow Logs
delivery options to S3, such as Apache Parquet formatted files, Hourly
partitions and Hive-compatible S3 prefixes
* api-change:``storagegateway``: Adding support for Audit Logs on NFS shares
and Force Closing Files on SMB shares.
* api-change:``workmail``: This release adds APIs for adding, removing and
retrieving details of mail domains
* api-change:``kinesisanalyticsv2``: Support for Apache Flink 1.13 in Kinesis
Data Analytics. Changed the required status of some Update properties to better
fit the corresponding Create properties.
- from version 1.21.60
* api-change:``cloudsearch``: Adds an additional validation exception for
Amazon CloudSearch configuration APIs for better error handling.
* api-change:``ecs``: Documentation only update to address tickets.
* api-change:``mediatailor``: MediaTailor now supports ad prefetching.
* api-change:``ec2``: EncryptionSupport for InstanceStorageInfo added
to DescribeInstanceTypes API
- from version 1.21.59
* api-change:``elbv2``: Update elbv2 client to latest version
* bugfix:Signing: SigV4QueryAuth and CrtSigV4QueryAuth now properly respect
AWSRequest.params while signing boto/botocore (#2521)
* api-change:``medialive``: This release adds support for Transport Stream
files as an input type to MediaLive encoders.
* api-change:``ec2``: Documentation update for Amazon EC2.
* api-change:``frauddetector``: New model type: Transaction Fraud Insights,
which is optimized for online transaction fraud. Stored Events, which allows
customers to send and store data directly within Amazon Fraud Detector.
Batch Import, which allows customers to upload a CSV file of historic
event data for processing and storage
- from version 1.21.58
* api-change:``lexv2-runtime``: Update lexv2-runtime client to latest version
* api-change:``lexv2-models``: Update lexv2-models client to latest version
* api-change:``secretsmanager``: Documentation updates for Secrets Manager
* api-change:``securityhub``: Added new resource details objects to ASFF,
including resources for WAF rate-based rules, EC2 VPC endpoints, ECR
repositories, EKS clusters, X-Ray encryption, and OpenSearch domains.
Added additional details for CloudFront distributions, CodeBuild projects,
ELB V2 load balancers, and S3 buckets.
* api-change:``mediaconvert``: AWS Elemental MediaConvert has added the ability
to set account policies which control access restrictions for HTTP, HTTPS,
and S3 content sources.
* api-change:``ec2``: This release removes a requirement for filters on
SearchLocalGatewayRoutes operations.
- from version 1.21.57
* api-change:``kendra``: Amazon Kendra now supports indexing and querying
documents in different languages.
* api-change:``grafana``: Initial release of the SDK for Amazon Managed Grafana API.
* api-change:``firehose``: Allow support for Amazon Opensearch Service(successor
to Amazon Elasticsearch Service) as a Kinesis Data Firehose delivery destination.
* api-change:``backup``: Launch of AWS Backup Vault Lock, which protects your
backups from malicious and accidental actions, works with existing backup policies,
and helps you meet compliance requirements.
* api-change:``schemas``: Removing unused request/response objects.
* api-change:``chime``: This release enables customers to configure Chime
MediaCapturePipeline via API.
- from version 1.21.56
* api-change:``sagemaker``: This release adds a new TrainingInputMode FastFile
for SageMaker Training APIs.
* api-change:``amplifybackend``: Adding a new field 'AmplifyFeatureFlags' to the
response of the GetBackend operation. It will return a stringified version of
the cli.json file for the given Amplify project.
* api-change:``fsx``: This release adds support for Lustre 2.12 to FSx for Lustre.
* api-change:``kendra``: Amazon Kendra now supports integration with AWS SSO
- from version 1.21.55
* api-change:``workmail``: This release allows customers to change their inbound
DMARC settings in Amazon WorkMail.
* api-change:``location``: Add support for PositionFiltering.
* api-change:``application-autoscaling``: With this release, Application Auto
Scaling adds support for Amazon Neptune. Customers can now automatically add
or remove Read Replicas of their Neptune clusters to keep the average CPU
Utilization at the target value specified by the customers.
* api-change:``ec2``: Released Capacity Reservation Fleet, a feature of Amazon
EC2 Capacity Reservations, which provides a way to manage reserved capacity
across instance types.
For more information: https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/cr-fleets.html
* api-change:``glue``: This release adds tag as an input of CreateConnection
* api-change:``backup``: AWS Backup Audit Manager framework report.
- Remove unnecessary dependencies from BuildRequires
- Skip integration tests as these require an internet connection
- Switch package to multibuild and split tests into separate package
- Switch tests from nose to pytest
- Version update to 1.21.54
* api-change:``codebuild``: CodeBuild now allows you to select how batch
build statuses are sent to the source provider for a project.
* api-change:``efs``: Update efs client to latest version
* api-change:``kms``: Added SDK examples for ConnectCustomKeyStore, CreateCustomKeyStore,
CreateKey, DeleteCustomKeyStore, DescribeCustomKeyStores, DisconnectCustomKeyStore,
GenerateDataKeyPair, GenerateDataKeyPairWithoutPlaintext, GetPublicKey, ReplicateKey,
Sign, UpdateCustomKeyStore and Verify APIs
- from version 1.21.53
* api-change:``synthetics``: CloudWatch Synthetics now enables customers to choose a customer
managed AWS KMS key or an Amazon S3-managed key instead of an AWS managed key (default)
for the encryption of artifacts that the canary stores in Amazon S3. CloudWatch Synthetics
also supports artifact S3 location updation now.
* api-change:``ssm``: When "/AutoApprovable"/ is true for a Change Template, then specifying
- -auto-approve (boolean) in Start-Change-Request-Execution will create a change request
that bypasses approver review. (except for change calendar restrictions)
* api-change:``apprunner``: This release contains several minor bug fixes.
- from version 1.21.52
* api-change:``network-firewall``: This release adds support for strict ordering for stateful
rule groups. Using strict ordering, stateful rules are evaluated in the exact order in which
you provide them.
* api-change:``dataexchange``: This release enables subscribers to set up automatic exports of
newly published revisions using the new EventAction API.
* api-change:``workmail``: This release adds support for mobile device access overrides management
in Amazon WorkMail.
* api-change:``account``: This release of the Account Management API enables customers to manage
the alternate contacts for their AWS accounts.
For more information, see https://docs.aws.amazon.com/accounts/latest/reference/accounts-welcome.html
* api-change:``workspaces``: Added CreateUpdatedWorkspaceImage API to update WorkSpace images with
latest software and drivers. Updated DescribeWorkspaceImages API to display if there are updates
available for WorkSpace images.
* api-change:``cloudcontrol``: Initial release of the SDK for AWS Cloud Control API
* api-change:``macie2``: Amazon S3 bucket metadata now indicates whether an error or a bucket's
permissions settings prevented Amazon Macie from retrieving data about the bucket or the bucket's
objects.
- from version 1.21.51
* api-change:``lambda``: Adds support for Lambda functions powered by AWS Graviton2 processors.
Customers can now select the CPU architecture for their functions.
* api-change:``sesv2``: This release includes the ability to use 2048 bits RSA key pairs for DKIM
in SES, either with Easy DKIM or Bring Your Own DKIM.
* api-change:``amp``: This release adds alert manager and rule group namespace APIs
- from version 1.21.50
* api-change:``transfer``: Added changes for managed workflows feature APIs.
* api-change:``imagebuilder``: Fix description for AmiDistributionConfiguration Name property,
which actually refers to the output AMI name. Also updated for consistent terminology to use
"/base"/ image, and another update to fix description text.
- from version 1.21.49
* api-change:``appintegrations``: The Amazon AppIntegrations service enables you to configure
and reuse connections to external applications.
* api-change:``wisdom``: Released Amazon Connect Wisdom, a feature of Amazon Connect, which provides
real-time recommendations and search functionality in general availability (GA).
For more information, see https://docs.aws.amazon.com/wisdom/latest/APIReference/Welcome.html.
* api-change:``pinpoint``: Added support for journey with contact center activity
* api-change:``voice-id``: Released the Amazon Voice ID SDK, for usage with the Amazon Connect
Voice ID feature released for Amazon Connect.
* api-change:``connect``: This release updates a set of APIs: CreateIntegrationAssociation,
ListIntegrationAssociations, CreateUseCase, and StartOutboundVoiceContact. You can use it to
create integrations with Amazon Pinpoint for the Amazon Connect Campaigns use case, Amazon
Connect Voice ID, and Amazon Connect Wisdom.
* api-change:``elbv2``: Update elbv2 client to latest version
- from version 1.21.48
* api-change:``license-manager``: AWS License Manager now allows customers to get the LicenseArn
in the Checkout API Response.
* api-change:``ec2``: DescribeInstances now returns Platform Details, Usage Operation, and Usage
Operation Update Time.
- from version 1.21.47
* api-change:``mediaconvert``: This release adds style and positioning support for caption or
subtitle burn-in from rich text sources such as TTML. This release also introduces configurable
image-based trick play track generation.
* api-change:``appsync``: Documented the new OpenSearchServiceDataSourceConfig data type. Added
deprecation notes to the ElasticsearchDataSourceConfig data type.
* api-change:``ssm``: Added cutoff behavior support for preventing new task invocations from
starting when the maintenance window cutoff time is reached.
- from version 1.21.46
* api-change:``imagebuilder``: This feature adds support for specifying GP3 volume throughput and
configuring instance metadata options for instances launched by EC2 Image Builder.
* api-change:``wafv2``: Added the regex match rule statement, for matching web requests against
a single regular expression.
* api-change:``mediatailor``: This release adds support to configure logs for playback configuration.
* api-change:``lexv2-models``: Update lexv2-models client to latest version
* api-change:``iam``: Added changes to OIDC API about not using port numbers in the URL.
* api-change:``license-manager``: AWS License Manager now allows customers to change their Windows
Server or SQL license types from Bring-Your-Own-License (BYOL) to License Included or vice-versa
(using the customer's media).
* api-change:``mediapackage-vod``: MediaPackage VOD will now return the current processing statuses
of an asset's endpoints. The status can be QUEUED, PROCESSING, PLAYABLE, or FAILED.
- from version 1.21.45
* api-change:``comprehend``: Amazon Comprehend now supports versioning of custom models, improved
training with ONE_DOC_PER_FILE text documents for custom entity recognition, ability to provide
specific test sets during training, and live migration to new model endpoints.
* api-change:``iot``: This release adds support for verifying, viewing and filtering AWS IoT Device
Defender detect violations with four verification states.
* api-change:``ecr``: This release adds additional support for repository replication
* api-change:``ec2``: This update adds support for downloading configuration templates using new
APIs (GetVpnConnectionDeviceTypes and GetVpnConnectionDeviceSampleConfiguration) and Internet
Key Exchange version 2 (IKEv2) parameters for many popular CGW devices.
- from version 1.21.44
* api-change:``opensearch``: This release adds an optional parameter in the ListDomainNames API to
filter domains based on the engine type (OpenSearch/Elasticsearch).
* api-change:``es``: This release adds an optional parameter in the ListDomainNames API to filter
domains based on the engine type (OpenSearch/Elasticsearch).
* api-change:``dms``: Optional flag force-planned-failover added to reboot-replication-instance
API call. This flag can be used to test a planned failover scenario used during some maintenance
operations.
- from version 1.21.43
* api-change:``kafkaconnect``: This is the initial SDK release for Amazon Managed Streaming for
Apache Kafka Connect (MSK Connect).
* api-change:``macie2``: This release adds support for specifying which managed data identifiers
are used by a classification job, and retrieving a list of managed data identifiers that are
available.
* api-change:``robomaker``: Adding support to create container based Robot and Simulation
applications by introducing an environment field
* api-change:``s3``: Add support for access point arn filtering in S3 CW Request Metrics
* api-change:``transcribe``: This release adds support for subtitling with Amazon
Transcribe batch jobs.
* api-change:``sagemaker``: Add API for users to retry a failed pipeline execution
or resume a stopped one.
* api-change:``pinpoint``: This SDK release adds a new feature for Pinpoint campaigns,
in-app messaging.
- from version 1.21.42
* api-change:``sagemaker``: This release adds support for "/Project Search"/
* api-change:``ec2``: This release adds support for vt1 3xlarge, 6xlarge and 24xlarge instances
powered by Xilinx Alveo U30 Media Accelerators for video transcoding workloads
* api-change:``wafv2``: This release adds support for including rate based rules in a rule group.
* api-change:``chime``: Adds support for SipHeaders parameter for CreateSipMediaApplicationCall.
* api-change:``comprehend``: Amazon Comprehend now allows you to train and run PDF and Word
documents for custom entity recognition. With PDF and Word formats, you can extract information
from documents containing headers, lists and tables.
- from version 1.21.41
* api-change:``iot``: AWS IoT Rules Engine adds OpenSearch action. The OpenSearch rule action
lets you stream data from IoT sensors and applications to Amazon OpenSearch Service which
is a successor to Amazon Elasticsearch Service.
* api-change:``ec2``: Adds support for T3 instances on Amazon EC2 Dedicated Hosts.
* enhancement:Tagged Unions: Introducing support for the `union` trait on structures in request
and response objects.
- from version 1.21.40
* api-change:``cloudformation``: Doc only update for CloudFormation that fixes several
customer-reported issues.
* api-change:``rds``: This release adds support for providing a custom timeout value for
finding a scaling point during autoscaling in Aurora Serverless v1.
* api-change:``ecr``: This release updates terminology around KMS keys.
* api-change:``sagemaker``: This release adds support for "/Lifecycle Configurations"/ to
SageMaker Studio
* api-change:``transcribe``: This release adds an API option for startTranscriptionJob and
startMedicalTranscriptionJob that allows the user to specify encryption context key value
pairs for batch jobs.
* api-change:``quicksight``: Add new data source type for Amazon OpenSearch
(successor to Amazon ElasticSearch).
- from version 1.21.39
* api-change:``emr``: Update emr client to latest version
* api-change:``codeguru-reviewer``: The Amazon CodeGuru Reviewer API now includes the
RuleMetadata data object and a Severity attribute on a RecommendationSummary object.
A RuleMetadata object contains information about a rule that generates a recommendation.
Severity indicates how severe the issue associated with a recommendation is.
* api-change:``lookoutequipment``: Added OffCondition parameter to CreateModel API
- from version 1.21.38
* api-change:``opensearch``: Updated Configuration APIs for Amazon OpenSearch Service
(successor to Amazon Elasticsearch Service)
* api-change:``ram``: A minor text-only update that fixes several customer issues.
* api-change:``kafka``: Amazon MSK has added a new API that allows you to update the
encrypting and authentication settings for an existing cluster.
- from version 1.21.37
* api-change:``elasticache``: Doc only update for ElastiCache
* api-change:``amp``: This release adds tagging support for Amazon Managed Service
for Prometheus workspace.
* api-change:``forecast``: Predictor creation now supports selecting an accuracy metric
to optimize in AutoML and hyperparameter optimization. This release adds additional
accuracy metrics for predictors - AverageWeightedQuantileLoss, MAPE and MASE.
* api-change:``xray``: Updated references to AWS KMS keys and customer managed
keys to reflect current terminology.
* api-change:``ssm-contacts``: Added SDK examples for SSM-Contacts.
* api-change:``mediapackage``: SPEKE v2 support for live CMAF packaging type. SPEKE v2
is an upgrade to the existing SPEKE API to support multiple encryption keys, it supports
live DASH currently.
* api-change:``eks``: Adding RegisterCluster and DeregisterCluster operations, to support
connecting external clusters to EKS.
- from version 1.21.36
* api-change:``chime-sdk-identity``: Documentation updates for Chime
* api-change:``chime-sdk-messaging``: Documentation updates for Chime
* api-change:``outposts``: This release adds a new API CreateOrder.
* api-change:``frauddetector``: Enhanced GetEventPrediction API response to include
risk scores from imported SageMaker models
* api-change:``codeguru-reviewer``: Added support for CodeInconsistencies detectors
- from version 1.21.35
* api-change:``acm-pca``: Private Certificate Authority Service now allows customers
to enable an online certificate status protocol (OCSP) responder service on their
private certificate authorities. Customers can also optionally configure a custom
CNAME for their OCSP responder.
* api-change:``s3control``: S3 Multi-Region Access Points provide a single global
endpoint to access a data set that spans multiple S3 buckets in different AWS Regions.
* api-change:``accessanalyzer``: Updates service API, documentation, and paginators to
support multi-region access points from Amazon S3.
* api-change:``schemas``: This update include the support for Schema Discoverer to
discover the events sent to the bus from another account. The feature will be enabled
by default when discoverer is created or updated but can also be opt-in or opt-out
by specifying the value for crossAccount.
* api-change:``securityhub``: New ASFF Resources: AwsAutoScalingLaunchConfiguration,
AwsEc2VpnConnection, AwsEcrContainerImage. Added KeyRotationStatus to AwsKmsKey.
Added AccessControlList, BucketLoggingConfiguration,BucketNotificationConfiguration
and BucketNotificationConfiguration to AwsS3Bucket.
* enhancement:s3: Added support for S3 Multi-Region Access Points
* api-change:``efs``: Update efs client to latest version
* api-change:``transfer``: AWS Transfer Family introduces Managed Workflows for creating,
executing, monitoring, and standardizing post file transfer processing
* api-change:``ebs``: Documentation updates for Amazon EBS direct APIs.
* api-change:``quicksight``: This release adds support for referencing parent
datasets as sources in a child dataset.
* api-change:``fsx``: Announcing Amazon FSx for NetApp ONTAP, a new service that provides
fully managed shared storage in the AWS Cloud with the data access and management
capabilities of ONTAP.
* enhancement:Signers: Added support for Sigv4a Signing Algorithm
* api-change:``lex-models``: Lex now supports Korean (ko-KR) locale.
- from version 1.21.34
* api-change:``ec2``: Added LaunchTemplate support for the IMDS IPv6 endpoint
* api-change:``cloudtrail``: Documentation updates for CloudTrail
* api-change:``mediatailor``: This release adds support for wall clock
programs in LINEAR channels.
* api-change:``config``: Documentation updates for config
* api-change:``servicecatalog-appregistry``: Introduction of GetAssociatedResource
API and GetApplication response extension for Resource Groups support.
- Version update to 1.21.33
* api-change:iot: Added Create/Update/Delete/Describe/List APIs for a new
IoT resource named FleetMetric. Added a new Fleet Indexing query API named
GetBucketsAggregation. Added a new field named DisconnectedReason in Fleet
Indexing query response. Updated their related documentations.
* api-change:polly: Amazon Polly adds new South African English voice -
Ayanda. Ayanda is available as Neural voice only.
* api-change:compute-optimizer: Documentation updates for Compute Optimizer
* api-change:sqs: Amazon SQS adds a new queue attribute, RedriveAllowPolicy,
which includes the dead-letter queue redrive permission parameters. It defines
which source queues can specify dead-letter queues as a JSON object.
* api-change:memorydb: Documentation updates for MemoryDB
- from version 1.21.32
* api-change:codebuild: Documentation updates for CodeBuild
* api-change:firehose: This release adds the Dynamic Partitioning feature to
Kinesis Data Firehose service for S3 destinations.
* api-change:kms: This release has changes to KMS nomenclature to remove the
word master from both the "/Customer master key"/ and "/CMK"/ abbreviation and
replace those naming conventions with "/KMS key"/.
* api-change:cloudformation: AWS CloudFormation allows you to iteratively
develop your applications when failures are encountered without rolling back
successfully provisioned resources. By specifying stack failure options, you
can troubleshoot resources in a CREATE_FAILED or UPDATE_FAILED status.
- from version 1.21.31
* api-change:s3: Documentation updates for Amazon S3.
* api-change:emr: Update emr client to latest version
* api-change:ec2: This release adds the BootMode flag to the ImportImage API
and showing the detected BootMode of an ImportImage task.
- from version 1.21.30
* api-change:transcribe: This release adds support for batch transcription
in six new languages - Afrikaans, Danish, Mandarin Chinese (Taiwan), New
Zealand English, South African English, and Thai.
* api-change:rekognition: This release added new attributes to Rekognition
RecognizeCelebities and GetCelebrityInfo API operations.
* api-change:ec2: Support added for resizing VPC prefix lists
* api-change:compute-optimizer: Adds support for 1) the AWS Graviton
(AWS_ARM64) recommendation preference for Amazon EC2 instance and Auto Scaling
group recommendations, and 2) the ability to get the enrollment statuses for
all member accounts of an organization.
- from version 1.21.29
* api-change:fms: AWS Firewall Manager now supports triggering resource
cleanup workflow when account or resource goes out of policy scope for AWS WAF,
Security group, AWS Network Firewall, and Amazon Route 53 Resolver DNS Firewall
policies.
* api-change:ec2: Support added for IMDS IPv6 endpoint
* api-change:datasync: Added include filters to CreateTask and UpdateTask,
and added exclude filters to StartTaskExecution, giving customers more granular
control over how DataSync transfers files, folders, and objects. *
api-change:events: AWS CWEvents adds an enum of EXTERNAL for EcsParameters
LaunchType for PutTargets API
- from version 1.21.28
* api-change:mediaconvert: AWS Elemental MediaConvert SDK has added MBAFF
encoding support for AVC video and the ability to pass encryption context from
the job settings to S3.
* api-change:polly: Amazon Polly adds new New Zealand English voice - Aria.
Aria is available as Neural voice only. * api-change:transcribe: This release
adds support for feature tagging with Amazon Transcribe batch jobs.
* api-change:ssm: Updated Parameter Store property for logging improvements.
* api-change:iot-data: Updated Publish with support for new Retain flag and
added two new API operations: GetRetainedMessage, ListRetainedMessages.
- from version 1.21.27
* api-change:dms: Amazon AWS DMS service now support Redis target endpoint
migration. Now S3 endpoint setting is capable to setup features which are used
to be configurable only in extract connection attributes.
* api-change:frauddetector: Updated an element of the DescribeModelVersion
API response (LogitMetrics -> logOddsMetrics) for clarity. Added new exceptions
to several APIs to protect against unlikely scenarios.
* api-change:iotsitewise: Documentation updates for AWS IoT SiteWise
* api-change:dlm: Added AMI deprecation support for Amazon Data Lifecycle
Manager EBS-backed AMI policies.
* api-change:glue: Add support for Custom Blueprints
* api-change:apigateway: Adding some of the pending releases (1) Adding WAF
Filter to GatewayResponseType enum (2) Ensuring consistent error model for all
operations (3) Add missing BRE to GetVpcLink operation
* api-change:backup: AWS Backup - Features: Evaluate your backup activity
and generate audit reports.
- from version 1.21.26
* api-change:eks: Adds support for EKS add-ons "/preserve"/ flag, which allows
customers to maintain software on their EKS clusters after removing it from EKS
add-ons management.
* api-change:comprehend: Add tagging support for Comprehend async inference job.
* api-change:robomaker: Documentation updates for RoboMaker
* api-change:ec2: encryptionInTransitSupported added to DescribeInstanceTypes API
- from version 1.21.25
* api-change:ec2: The ImportImage API now supports the ability to create
AMIs with AWS-managed licenses for Microsoft SQL Server for both Windows and
Linux.
* api-change:memorydb: AWS MemoryDB SDK now supports all APIs for newly launched MemoryDB service.
* api-change:application-autoscaling: This release extends Application Auto
Scaling support for replication group of Amazon ElastiCache Redis clusters.
Auto Scaling monitors and automatically expands node group count and number of
replicas per node group when a critical usage threshold is met or according to
customer-defined schedule.
* api-change:appflow: This release adds support for SAPOData connector and
extends Veeva connector for document extraction.
- from version 1.21.24
* api-change:codebuild: CodeBuild now allows you to make the build results
for your build projects available to the public without requiring access to an
AWS account.
* api-change:route53: Documentation updates for route53
* api-change:sagemaker-runtime: Update sagemaker-runtime client to latest version
* api-change:route53resolver: Documentation updates for Route 53 Resolver
* api-change:sagemaker: Amazon SageMaker now supports Asynchronous Inference
endpoints. Adds PlatformIdentifier field that allows Notebook Instance creation
with different platform selections. Increases the maximum number of containers
in multi-container endpoints to 15. Adds more instance types to InstanceType
field.
- from version 1.21.23
* api-change:cloud9: Added DryRun parameter to CreateEnvironmentEC2 API.
Added ManagedCredentialsActions parameter to UpdateEnvironment API
* api-change:ec2: This release adds support for EC2 ED25519 key pairs for authentication
* api-change:clouddirectory: Documentation updates for clouddirectory
* api-change:ce: This release is a new feature for Cost Categories: Split
charge rules. Split charge rules enable you to allocate shared costs between
your cost category values.
* api-change:logs: Documentation-only update for CloudWatch Logs
- from version 1.21.22
* api-change:iotsitewise: AWS IoT SiteWise added query window for the
interpolation interval. AWS IoT SiteWise computes each interpolated value by
using data points from the timestamp of each interval minus the window to the
timestamp of each interval plus the window.
* api-change:s3: Documentation updates for Amazon S3
* api-change:codebuild: CodeBuild now allows you to select how batch build
statuses are sent to the source provider for a project.
* api-change:ds: This release adds support for describing client authentication settings.
* api-change:config: Update ResourceType enum with values for Backup Plan,
Selection, Vault, RecoveryPoint; ECS Cluster, Service, TaskDefinition; EFS
AccessPoint, FileSystem; EKS Cluster; ECR Repository resources
* api-change:license-manager: AWS License Manager now allows end users to
call CheckoutLicense API using new CheckoutType PERPETUAL. Perpetual checkouts
allow sellers to check out a quantity of entitlements to be drawn down for
consumption.
- from version 1.21.21
* api-change:quicksight: Documentation updates for QuickSight.
* api-change:emr: Update emr client to latest version
* api-change:customer-profiles: This release introduces Standard Profile
Objects, namely Asset and Case which contain values populated by data from
third party systems and belong to a specific profile. This release adds an
optional parameter, ObjectFilter to the ListProfileObjects API in order to
search for these Standard Objects.
* api-change:elasticache: This release adds ReplicationGroupCreateTime field
to ReplicationGroup which indicates the UTC time when ElastiCache
ReplicationGroup is created
- from version 1.21.20
* api-change:sagemaker: Amazon SageMaker Autopilot adds new metrics for all
candidate models generated by Autopilot experiments.
* api-change:apigatewayv2: Adding support for ACM imported or private CA
certificates for mTLS enabled domain names
* api-change:apigateway: Adding support for ACM imported or private CA
certificates for mTLS enabled domain names
* api-change:databrew: This SDK release adds support for the output of a
recipe job results to Tableau Hyper format.
* api-change:lambda: Lambda Python 3.9 runtime launch
- from version 1.21.19
* api-change:snow-device-management: AWS Snow Family customers can remotely
monitor and operate their connected AWS Snowcone devices.
* api-change:ecs: Documentation updates for ECS.
* api-change:nimble: Add new attribute 'ownedBy' in Streaming Session APIs.
'ownedBy' represents the AWS SSO Identity Store User ID of the owner of the
Streaming Session resource.
* api-change:codebuild: CodeBuild now allows you to make the build results
for your build projects available to the public without requiring access to an
AWS account.
* api-change:ebs: Documentation updates for Amazon EBS direct APIs.
* api-change:route53: Documentation updates for route53
- from version 1.21.18
* api-change:chime: Add support for "/auto"/ in Region field of StartMeetingTranscription API request.
* enchancement:Client: Improve client performance by caching _alias_event_name on EventAliaser
- from version 1.21.17
* api-change:wafv2: This release adds APIs to support versioning
feature of AWS WAF Managed rule groups
* api-change:rekognition: This release adds support for four new types of
segments (opening credits, content segments, slates, and studio logos),
improved accuracy for credits and shot detection and new filters to control
black frame detection.
* api-change:ssm: Documentation updates for AWS Systems Manager.
- from version 1.21.16
* api-change:synthetics: Documentation updates for Visual Monitoring feature
and other doc ticket fixes.
* api-change:chime-sdk-identity: The Amazon Chime SDK Identity APIs allow
software developers to create and manage unique instances of their messaging
applications.
* api-change:chime-sdk-messaging: The Amazon Chime SDK Messaging APIs allow
software developers to send and receive messages in custom messaging
applications.
* api-change:connect: This release adds support for agent status and hours
of operation. For details, see the Release Notes in the Amazon Connect
Administrator Guide.
* api-change:lightsail: This release adds support to track when a bucket
access key was last used.
* api-change:athena: Documentation updates for Athena.
- from version 1.21.15
* api-change:lexv2-models: Update lexv2-models client to latest version
* api-change:autoscaling: EC2 Auto Scaling adds configuration checks and
Launch Template validation to Instance Refresh.
- from version 1.21.14
* api-change:rds: This release adds AutomaticRestartTime to the
DescribeDBInstances and DescribeDBClusters operations. AutomaticRestartTime
indicates the time when a stopped DB instance or DB cluster is restarted
automatically.
* api-change:imagebuilder: Updated list actions to include a list of valid
filters that can be used in the request.
* api-change:transcribe: This release adds support for call analytics
(batch) within Amazon Transcribe.
* api-change:events: Update events client to latest version
* api-change:ssm-incidents: Documentation updates for Incident Manager.
- from version 1.21.13
* api-change:redshift: API support for Redshift Data Sharing feature.
* api-change:iotsitewise: My AWS Service (placeholder) - This release
introduces custom Intervals and offset for tumbling window in metric for AWS
IoT SiteWise.
* api-change:glue: Add ConcurrentModificationException to create-table,
delete-table, create-database, update-database, delete-database
* api-change:mediaconvert: AWS Elemental MediaConvert SDK has added control
over the passthrough of XDS captions metadata to outputs.
* api-change:proton: Docs only add idempotent create apis
- from version 1.21.12
* api-change:ssm-contacts: Added new attribute in AcceptCode API.
AcceptCodeValidation takes in two values - ENFORCE, IGNORE. ENFORCE forces
validation of accept code and IGNORE ignores it which is also the default
behavior; Corrected TagKeyList length from 200 to 50
* api-change:greengrassv2: This release adds support for component system
resource limits and idempotent Create operations. You can now specify the
maximum amount of CPU and memory resources that each component can use.
- from version 1.21.11
* api-change:appsync: AWS AppSync now supports a new authorization mode
allowing you to define your own authorization logic using an AWS Lambda
function.
* api-change:elbv2: Update elbv2 client to latest version
* api-change:secretsmanager: Add support for KmsKeyIds in the
ListSecretVersionIds API response
* api-change:sagemaker: API changes with respect to Lambda steps in model
building pipelines. Adds several waiters to async Sagemaker Image APIs. Add
more instance types to AppInstanceType field
- from version 1.21.10
* api-change:savingsplans: Documentation update for valid Savings Plans offering ID pattern
* api-change:ec2: This release adds support for G4ad xlarge and 2xlarge
instances powered by AMD Radeon Pro V520 GPUs and AMD 2nd Generation EPYC
processors
* api-change:chime: Adds support for live transcription of meetings with
Amazon Transcribe and Amazon Transcribe Medical. The new APIs,
StartMeetingTranscription and StopMeetingTranscription, control the generation
of user-attributed transcriptions sent to meeting clients via Amazon Chime SDK
data messages.
* api-change:iotsitewise: Added support for AWS IoT SiteWise Edge. You can
now create an AWS IoT SiteWise gateway that runs on AWS IoT Greengrass V2. With
the gateway, you can collect local server and equipment data, process the data,
and export the selected data from the edge to the AWS Cloud.
* api-change:iot: Increase maximum credential duration of role alias to 12 hours.
- from version 1.21.9
* api-change:sso-admin: Documentation updates for
arn:aws:trebuchet:::service:v1:03a2216d-1cda-4696-9ece-1387cb6f6952
* api-change:cloudformation: SDK update to support Importing existing Stacks
to new/existing Self Managed StackSet - Stack Import feature.
- from version 1.21.8
* api-change:route53: This release adds support for the RECOVERY_CONTROL
health check type to be used in conjunction with Route53 Application Recovery
Controller.
* api-change:iotwireless: Add SidewalkManufacturingSn as an identifier to
allow Customer to query WirelessDevice, in the response, AmazonId is added in
the case that Sidewalk device is return.
* api-change:route53-recovery-control-config: Amazon Route 53 Application
Recovery Controller's routing control - Routing Control Configuration APIs help
you create and delete clusters, control panels, routing controls and safety
rules. State changes (On/Off) of routing controls are not part of configuration
APIs.
* api-change:route53-recovery-readiness: Amazon Route 53 Application
Recovery Controller's readiness check capability continually monitors resource
quotas, capacity, and network routing policies to ensure that the recovery
environment is scaled and configured to take over when needed.
* api-change:quicksight: Add support to use row-level security with tags
when embedding dashboards for users not provisioned in QuickSight
* api-change:iotanalytics: IoT Analytics now supports creating a dataset
resource with IoT SiteWise MultiLayerStorage data stores, enabling customers to
query industrial data within the service. This release includes adding JOIN
functionality for customers to query multiple data sources in a dataset.
* api-change:shield: Change name of DDoS Response Team (DRT) to Shield Response Team (SRT)
* api-change:lexv2-models: Update lexv2-models client to latest version
* api-change:redshift-data: Added structures to support new Data API
operation BatchExecuteStatement, used to execute multiple SQL statements within
a single transaction.
* api-change:route53-recovery-cluster: Amazon Route 53 Application Recovery
Controller's routing control - Routing Control Data Plane APIs help you update
the state (On/Off) of the routing controls to reroute traffic across
application replicas in a 100% available manner.
* api-change:batch: Add support for ListJob filters
- python-lxml
-
- add CVE-2022-2309.patch (bsc#1201253, CVE-2022-2309)
- python-parallax
-
- Don't use ssh if command running on local (bsc#1200833)
Add patch 0003-Fix-task-Don-t-use-ssh-if-command-running-on-local-b.patch
- python-paramiko
-
- update to 2.4.3
* Fix Ed25519 key handling so certain key comment lengths don't cause
SSHException("/Invalid key"/) (bsc#1200603)
* Add support for the modern (as of Python 3.3) import location of
MutableMapping (used in host key management) to avoid the old location
becoming deprecated in Python 3.8.
- refresh add-support-for-new-OpenSSH-private-key-format.patch
- refresh paramiko-test_extend_timeout.patch
- refresh support-cryptography-25-and-above.patch
* Fix exploit (CVE-2018-1000805) in Paramiko's server mode (not client mode)
(bsc#1111151)
- python-psutil
-
- Add patch mem-used-bsc1181475.patch (bsc#1181475)
* Adopt change of used memory calculation from upstream of procps
- python-py
-
- Update in SLE-15 (bsc#1195916, bsc#1196696, jsc#PM-3356, jsc#SLE-23972)
- Drop CVE-2020-29651.patch, issue fixed upstream in 1.10.0
- Update to 1.10.0
* Fix a regular expression DoS vulnerability in the py.path.svnwc
SVN blame functionality (CVE-2020-29651)
- Devendor apipkg and iniconfig
- Add pr_222.patch to activate test suite
- Update to 1.9.0
* Add type annotation stubs
- python3
-
- Add CVE-2022-37454-sha3-buffer-overflow.patch to fix
bsc#1204577 (CVE-2022-37454, gh#python/cpython#98517) buffer
overflow in hashlib.sha3_* implementations (originally from the
XKCP library).
- Add CVE-2020-10735-DoS-no-limit-int-size.patch to fix
CVE-2020-10735 (bsc#1203125) to limit amount of digits
converting text to int and vice vera (potential for DoS).
Originally by Victor Stinner of Red Hat.
- Add patch CVE-2021-28861-double-slash-path.patch:
* http.server: Fix an open redirection vulnerability in the HTTP server
when an URI path starts with //. (bsc#1202624, CVE-2021-28861)
- Remove merged patch CVE-2020-8492-urllib-ReDoS.patch,
CRLF_injection_via_host_part.patch, and
CVE-2019-18348-CRLF_injection_via_host_part.patch.
- regionServiceClientConfigEC2
-
- Update to version 4.1.0 (bsc#1203215)
+ New certs for 52.79.82.165 and 54.247.166.75
- Update to version 4.0.0 (bsc#1199668)
+ Move cert location to usr form var to accomodate ro filesystem of
SLE-Micro
+ Fix source location in spec file
- resource-agents
-
- DB2 HADR resource-agents bug (bsc#1203758)
Add patches:
0001-db2-HADR-add-STANDBY-REMOTE_CATCHUP_PENDING-DISCONNE.patch
0001-db2-add-PRIMARY-REMOTE_CATCHUP_PENDING-CONNECTED-sta.patch
- ECO: Maint: Azure Events RA can not handle AV Zones (jsc#PED-2000)
Add upstream patch:
0001-azure-events-az-new-resource-agent-1774.patch
- rsync
-
- Add support for --trust-sender parameter (patch by Jie Gong in
bsc#1202970). (related to CVE-2022-29154, bsc#1201840)
* Added patch rsync-CVE-2022-29154-trust-sender-1.patch
* Added patch rsync-CVE-2022-29154-trust-sender-2.patch
- Apply "/rsync-CVE-2022-29154.patch"/ to fix a security vulnerability
in the do_server_recv() function. [bsc#1201840, CVE-2022-29154]
- rsyslog
-
- - fix segfault in qDeqLinkedList during shutdown (bsc#1199283)
* add 0001-queue-Add-NULL-check-in-qDeqLinkedList.patch
- ruby2
-
- Update suse.patch to 41adc98ad1:
- Cookie Prefix Spoofing in CGI::Cookie.parse (boo#1193081 CVE-2021-41819)
- add back some lost chunks to the suse.patch
- rubygem-activesupport-5_1
-
- Add patch to fix CVE-2022-27777 (bsc#1199060)
CVE-2022-27777.patch
- rubygem-kramdown
-
- security update
- added patches
fix CVE-2020-14001 [bsc#1174297], processing template options inside documents allows unintended read access or embedded Ruby code execution
+ rubygem-kramdown-CVE-2020-14001.patch
- rubygem-loofah
-
- Added patch CVE-2019-15587.patch to fix CVE-2019-15587 (bsc#1154751)
- rubygem-puma
-
- updated to version 4.3.12
* fix bsc#1197818, CVE-2022-24790
rubygem-puma: HTTP request smuggling if proxy is not RFC7230 compliant
- rubygem-rack
-
fix CVE-2020-8184 [bsc#1173351], percent-encoded cookies can be used to overwrite existing prefixed cookie names
+ rubygem-rack-CVE-2020-8184.patch
fix CVE-2020-8161 [bsc#1172037], directory traversal in Rack:Directory
+ rubygem-rack-CVE-2020-8161.patch
- security update
- added patches
- rubygem-rails-html-sanitizer
-
- Add patch 0001_CVE-2022-32209.patch
This patch fixes CVE-2022-32209 (bsc#1201183)
- rubygem-tzinfo
-
- security update
- added patches
fix CVE-2022-31163 [bsc#1201835], Relative path traversal vulnerability allows TZInfo::Timezone.get to load arbitrary files
+ rubygem-tzinfo-CVE-2022-31163.patch
- runc
-
- Update to runc v1.1.4. Upstream changelog is available from
https://github.com/opencontainers/runc/releases/tag/v1.1.4.
* Fix mounting via wrong proc fd. When the user and mount namespaces are
used, and the bind mount is followed by the cgroup mount in the spec,
the cgroup was mounted using the bind mount's mount fd.
* Switch kill() in libcontainer/nsenter to sane_kill().
* Fix "/permission denied"/ error from runc run on noexec fs.
* Fix failed exec after systemctl daemon-reload. Due to a regression
in v1.1.3, the DeviceAllow=char-pts rwm rule was no longer added and
was causing an error open /dev/pts/0: operation not permitted: unknown when systemd was reloaded.
(boo#1202821)
- Update to runc v1.1.4. Upstream changelog is available from
https://github.com/opencontainers/runc/releases/tag/v1.1.4.
bsc#1202021
* Fix mounting via wrong proc fd. When the user and mount namespaces are
used, and the bind mount is followed by the cgroup mount in the spec,
the cgroup was mounted using the bind mount's mount fd.
* Switch kill() in libcontainer/nsenter to sane_kill().
* Fix "/permission denied"/ error from runc run on noexec fs.
* Fix failed exec after systemctl daemon-reload. Due to a regression
in v1.1.3, the DeviceAllow=char-pts rwm rule was no longer added and
was causing an error open /dev/pts/0: operation not permitted: unknown when systemd was reloaded.
(boo#1202821)
- salt
-
- Handle non-UTF-8 bytes in core grains generation (bsc#1202165)
- Fix Syndic authentication errors (bsc#1199562)
- Add Amazon EC2 detection for virtual grains (bsc#1195624)
- Fix the regression in schedule module releasded in 3004 (bsc#1202631)
- Fix state.apply in test mode with file state module on user/group checking (bsc#1202167)
- Change the delimeters to prevent possible tracebacks on some packages with dpkg_lowpkg
- Make zypperpkg to retry if RPM lock is temporarily unavailable (bsc#1200596)
- Fix test_ipc unit test
- Added:
* change-the-delimeters-to-prevent-possible-tracebacks.patch
* fix-state.apply-in-test-mode-with-file-state-module-.patch
* add-amazon-ec2-detection-for-virtual-grains-bsc-1195.patch
* fix-test_ipc-unit-tests.patch
* backport-syndic-auth-fixes.patch
* retry-if-rpm-lock-is-temporarily-unavailable-547.patch
* ignore-non-utf8-characters-while-reading-files-with-.patch
* fix-the-regression-in-schedule-module-releasded-in-3.patch
- Add support for gpgautoimport in zypperpkg module
- Update Salt to work with Jinja >= and <= 3.1.0 (bsc#1198744)
- Fix salt.states.file.managed() for follow_symlinks=True and test=True (bsc#1199372)
- Make Salt 3004 compatible with pyzmq >= 23.0.0 (bsc#1201082)
- Add support for name, pkgs and diff_attr parameters to upgrade function for zypper and yum (bsc#1198489)
- Fix ownership of salt thin directory when using the Salt Bundle
- Set default target for pip from VENV_PIP_TARGET environment variable
- Normalize package names once with pkg.installed/removed using yum (bsc#1195895)
- Save log to logfile with docker.build
- Use Salt Bundle in dockermod
- Ignore erros on reading license files with dpkg_lowpkg (bsc#1197288)
- Added:
* fix-62092-catch-zmq.error.zmqerror-to-set-hwm-for-zm.patch
* fix-jinja2-contextfuntion-base-on-version-bsc-119874.patch
* normalize-package-names-once-with-pkg.installed-remo.patch
* add-support-for-name-pkgs-and-diff_attr-parameters-t.patch
* use-salt-bundle-in-dockermod.patch
* add-support-for-gpgautoimport-539.patch
* fix-ownership-of-salt-thin-directory-when-using-the-.patch
* fix-salt.states.file.managed-for-follow_symlinks-tru.patch
* ignore-erros-on-reading-license-files-with-dpkg_lowp.patch
* set-default-target-for-pip-from-venv_pip_target-envi.patch
* save-log-to-logfile-with-docker.build.patch
- Fix PAM auth issue due missing check for PAM_ACCT_MGM return value (CVE-2022-22967) (bsc#1200566)
- samba
-
- CVE-2022-32742:SMB1 code does not correct verify SMB1write,
SMB1write_and_close, SMB1write_and_unlock lengths; (bso#15085);
(bsc#1201496).
- sqlite3
-
- update to 3.39.3:
* Use a statement journal on DML statement affecting two or more
database rows if the statement makes use of a SQL functions
that might abort.
* Use a mutex to protect the PRAGMA temp_store_directory and
PRAGMA data_store_directory statements, even though they are
decremented and documented as not being threadsafe.
- update to 3.39.2:
* Fix a performance regression in the query planner associated
with rearranging the order of FROM clause terms in the
presences of a LEFT JOIN.
* Apply fixes for CVE-2022-35737, Chromium bugs 1343348 and
1345947, forum post 3607259d3c, and other minor problems
discovered by internal testing. [boo#1201783]
- update to 3.39.1:
* Fix an incorrect result from a query that uses a view that
contains a compound SELECT in which only one arm contains a
RIGHT JOIN and where the view is not the first FROM clause term
of the query that contains the view
* Fix a long-standing problem with ALTER TABLE RENAME that can
only arise if the sqlite3_limit(SQLITE_LIMIT_SQL_LENGTH) is set
to a very small value.
* Fix a long-standing problem in FTS3 that can only arise when
compiled with the SQLITE_ENABLE_FTS3_PARENTHESIS compile-time
option.
* Fix the initial-prefix optimization for the REGEXP extension so
that it works correctly even if the prefix contains characters
that require a 3-byte UTF8 encoding.
* Enhance the sqlite_stmt virtual table so that it buffers all of
its output.
- update to 3.39.0:
* Add (long overdue) support for RIGHT and FULL OUTER JOIN
* Add new binary comparison operators IS NOT DISTINCT FROM and
IS DISTINCT FROM that are equivalent to IS and IS NOT,
respective, for compatibility with PostgreSQL and SQL standards
* Add a new return code (value "/3"/) from the sqlite3_vtab_distinct()
interface that indicates a query that has both DISTINCT and
ORDER BY clauses
* Added the sqlite3_db_name() interface
* The unix os interface resolves all symbolic links in database
filenames to create a canonical name for the database before
the file is opened
* Defer materializing views until the materialization is actually
needed, thus avoiding unnecessary work if the materialization
turns out to never be used
* The HAVING clause of a SELECT statement is now allowed on any
aggregate query, even queries that do not have a GROUP BY
clause
* Many microoptimizations collectively reduce CPU cycles by about
2.3%.
- drop sqlite-src-3380100-atof1.patch, included upstream
- add sqlite-src-3390000-func7-pg-181.patch to skip float precision
related test failures on 32 bit
- update to 3.38.5:
* Fix a blunder in the CLI of the 3.38.4 release
- includes changes from 3.38.4:
* fix a byte-code problem in the Bloom filter pull-down
optimization added by release 3.38.0 in which an error in the
byte code causes the byte code engine to enter an infinite loop
when the pull-down optimization encounters a NULL key
- update to 3.38.3:
* Fix a case of the query planner be overly aggressive with
optimizing automatic-index and Bloom-filter construction,
using inappropriate ON clause terms to restrict the size of the
automatic-index or Bloom filter, and resulting in missing rows
in the output.
* Other minor patches. See the timeline for details.
- update to 3.38.2:
* Fix a problem with the Bloom filter optimization that might
cause an incorrect answer when doing a LEFT JOIN with a WHERE
clause constraint that says that one of the columns on the
right table of the LEFT JOIN is NULL.
* Other minor patches.
- Remove obsolete configure flags
- Package the Tcl bindings here again so that we only ship one copy
of SQLite (bsc#1195773).
- update to 3.38.1:
* Fix problems with the new Bloom filter optimization that might
cause some obscure queries to get an incorrect answer.
* Fix the localtime modifier of the date and time functions so
that it preserves fractional seconds.
* Fix the sqlite_offset SQL function so that it works correctly
even in corner cases such as when the argument is a virtual
column or the column of a view.
* Fix row value IN operator constraints on virtual tables so that
they work correctly even if the virtual table implementation
relies on bytecode to filter rows that do not satisfy the
constraint.
* Other minor fixes to assert() statements, test cases, and
documentation. See the source code timeline for details.
- add upstream patch to run atof1 tests only on x86_64
sqlite-src-3380100-atof1.patch
- update to 3.38.0
* Add the -> and ->> operators for easier processing of JSON
* The JSON functions are now built-ins
* Enhancements to date and time functions
* Rename the printf() SQL function to format() for better
compatibility, with alias for backwards compatibility.
* Add the sqlite3_error_offset() interface for helping localize
an SQL error to a specific character in the input SQL text
* Enhance the interface to virtual tables
* CLI columnar output modes are enhanced to correctly handle tabs
and newlines embedded in text, and add options like "/--wrap N"/,
"/--wordwrap on"/, and "/--quote"/ to the columnar output modes.
* Query planner enhancements using a Bloom filter to speed up
large analytic queries, and a balanced merge tree to evaluate
UNION or UNION ALL compound SELECT statements that have an
ORDER BY clause.
* The ALTER TABLE statement is changed to silently ignores
entries in the sqlite_schema table that do not parse when
PRAGMA writable_schema=ON
- update to 3.37.2:
* Fix a bug introduced in version 3.35.0 (2021-03-12) that can
cause database corruption if a SAVEPOINT is rolled back while
in PRAGMA temp_store=MEMORY mode, and other changes are made,
and then the outer transaction commits
* Fix a long-standing problem with ON DELETE CASCADE and ON
UPDATE CASCADE in which a cache of the bytecode used to
implement the cascading change was not being reset following a
local DDL change
- update to 3.37.1:
* Fix a bug introduced by the UPSERT enhancements of version
3.35.0 that can cause incorrect byte-code to be generated for
some obscure but valid SQL, possibly resulting in a NULL-
pointer dereference.
* Fix an OOB read that can occur in FTS5 when reading corrupt
database files.
* Improved robustness of the --safe option in the CLI.
* Other minor fixes to assert() statements and test cases.
- SQLite3 3.37.0:
* STRICT tables provide a prescriptive style of data type
management, for developers who prefer that kind of thing.
* When adding columns that contain a CHECK constraint or a
generated column containing a NOT NULL constraint, the
ALTER TABLE ADD COLUMN now checks new constraints against
preexisting rows in the database and will only proceed if no
constraints are violated.
* Added the PRAGMA table_list statement.
* Add the .connection command, allowing the CLI to keep multiple
database connections open at the same time.
* Add the --safe command-line option that disables dot-commands
and SQL statements that might cause side-effects that extend
beyond the single database file named on the command-line.
* CLI: Performance improvements when reading SQL statements that
span many lines.
* Added the sqlite3_autovacuum_pages() interface.
* The sqlite3_deserialize() does not and has never worked
for the TEMP database. That limitation is now noted in the
documentation.
* The query planner now omits ORDER BY clauses on subqueries and
views if removing those clauses does not change the semantics
of the query.
* The generate_series table-valued function extension is modified
so that the first parameter ("/START"/) is now required. This is
done as a way to demonstrate how to write table-valued
functions with required parameters. The legacy behavior is
available using the -DZERO_ARGUMENT_GENERATE_SERIES
compile-time option.
* Added new sqlite3_changes64() and sqlite3_total_changes64()
interfaces.
* Added the SQLITE_OPEN_EXRESCODE flag option to sqlite3_open_v2().
* Use less memory to hold the database schema.
* bsc#1189802, CVE-2021-36690: Fix an issue with the SQLite Expert
extension when a column has no collating sequence.
- sudo
-
- Added sudo-1-8-27-bsc1201462-ignore-no-sudohost.patch
* Ignore entries when converting LDAP to sudoers. Prevents empty
host list being treated as "/ALL"/ wildcard.
* bsc#1201462
* Sourced from https://www.sudo.ws/repos/sudo/rev/484d0d3b892e
- supportutils-plugin-ha-sap
-
- Update to version 0.0.4+git.1663748456.ad13e75:
* fix basic support for saptune
add saptune version 3 awareness and add a hint for the new
saptune supportconfig plugin delivered within the saptune
package >= 3.x
(bsc#1203202)
- Update to version 0.0.3+git.1659022100.39bfcd6:
* Update README.md
* Replace spaces to tabs.
* Search for other groups too.
* Include /etc/group in plugin-ha_sap.txt (bsc#1201831)
* Update ha_sap
* Update pacemaker.log location change
* suppress link path in Readme.md
* add section 'Additional information' to the Readme.md
* change release status of the project
* Update README.md
* Update ha_sap
- sysconfig
-
- version 0.85.9
- spec: revert to recommend wicked-service on <= 15.4
- netconfig: remove sed dependency
- netconfig/dns-resolver: remove search limit of 6 domains (bsc#1199093)
- netconfig: cleanup /var/run leftovers (bsc#1194557)
- netconfig: update ntp man page documentation, fix typos
- spec: drop legacy migration (from sle11) and rpm-utils
- version 0.85.8
- netconfig: revert NM default policy change change (boo#1185882)
With the change to the default policy, netconfig with NetworkManager
as network.service accepted settings from all services/programs
directly instead only from NetworkManager, where plugins/services
have to deliver their settings to apply them.
- version 0.85.7
- spec: Drop hard dependency on /sbin/ifup
- spec: Suggest instead of recommend wicked-service
- spec: Mention that the .spec file is in git as well
- Also support service(network) provides
- systemd
-
- Import commit 5183646e041a0ac78107bc4e5b06594e3a27657f
8187a5e5f6 Allow control characters in environment variable values (bsc#1200170)
da394cc0b0 test-env-util: Verify that r is disallowed in env var values
da0120492d test-env-util: print function headers
0702ce5b4e basic/env-util: Allow newlines in values of environment variables
6fda9a8c7b udev: 60-persistent-storage-tape.rules: handle duplicate device ID (bsc#1195529)
52174bfc1a man: tweak description of auto/noauto (bsc#1191502)
8a57b62f90 shared/install: ignore failures for auxiliary files
86079f3522 systemctl: supress enable/disable messages when -q is given (#7067)
aa4b7b7925 shared/install: fix error codes returned by install_context_apply()
ce671cf6e3 shared/install: avoid overwriting 'r' counter with a partial result (bsc#1148309)
- systemd-presets-common-SUSE
-
- enable ignition-delete-config by default (bsc#1199524)
- Modify branding-preset-states to fix systemd-presets-common-SUSE
not enabling new user systemd service preset configuration just
as it handles system service presets. By passing an (optional)
second parameter "/user"/, the save/apply-changes commands now
work with user services instead of system ones (boo#1200485)
- Add the wireplumber user service preset to enable it by default
in SLE15-SP4 where it replaced pipewire-media-session, but keep
pipewire-media-session preset so we don't have to branch the
systemd-presets-common-SUSE package for SP4 (boo#1200485)
- tar
-
- bsc1200657.patch was previously incomplete leading to deadlocks
* bsc#1202436
* bsc1200657.patch updated
- Fix race condition while creating intermediate subdirectories,
bsc#1200657
* bsc1200657.patch
- telnet
-
- Fix CVE-2022-39028, NULL pointer dereference in telnetd
(CVE-2022-39028, bsc#1203759)
CVE-2022-39028.patch
- tiff
-
- security update:
* CVE-2022-2519 [bsc#1202968]
* CVE-2022-2520 [bsc#1202973]
* CVE-2022-2521 [bsc#1202971]
+ tiff-CVE-2022-2519,CVE-2022-2520,CVE-2022-2521.patch
* CVE-2022-2867 [bsc#1202466]
* CVE-2022-2868 [bsc#1202467]
* CVE-2022-2869 [bsc#1202468]
+ tiff-CVE-2022-2867,CVE-2022-2868,CVE-2022-2869.patch
- CVE-2022-34266 [bsc#1201971] and [bsc#1201723]:
Rename tiff-CVE-2022-0561.patch to
tiff-CVE-2022-0561,CVE-2022-34266.patch
This CVE is actually a duplicate.
- security update:
* CVE-2022-34526 [bsc#1202026]
+ tiff-CVE-2022-34526.patch
- security update
* CVE-2022-2056 [bsc#1201176]
* CVE-2022-2057 [bsc#1201175]
* CVE-2022-2058 [bsc#1201174]
+ tiff-CVE-2022-2056,CVE-2022-2057,CVE-2022-2058.patch
- tigervnc
-
- U_Handle-pending-data-in-TLS-buffers.patch
* Vncclient wasn't refreshing screen correctly due to an issue on
TLS stream buffers.
* bsc#1199477
- timezone
-
- Update to reflect new Chile DST change, bsc#1202310
* bsc1202310.patch
- unzip
-
- Fix CVE-2022-0530, SIGSEGV during the conversion of an utf-8 string
to a local string (CVE-2022-0530, bsc#1196177)
* CVE-2022-0530.patch
- Fix CVE-2022-0529, Heap out-of-bound writes and reads during
conversion of wide string to local string (CVE-2022-0529, bsc#1196180)
* CVE-2022-0529.patch
- util-linux
-
- su: Change owner and mode for pty (bsc#1200842,
util-linux-login-move-generic-setting-to-ttyutils.patch,
util-linux-su-change-owner-and-mode-for-pty.patch).
- mesg: use only stat() to get the current terminal status
(bsc#1200842, util-linux-mesg-use-only-stat.patch).
- agetty: Resolve tty name even if stdin is specified (bsc#1197178,
util-linux-agetty-resolve-tty-if-stdin-is-specified.patch).
- libmount: When moving a mount point, update all sub mount entries
in utab (bsc#1198731,
util-linux-libmount-moving-mount-point-sub-mounts.patch,
util-linux-libmount-fix-and-improve-utab-on-ms_move.patch).
- util-linux-systemd
-
- su: Change owner and mode for pty (bsc#1200842,
util-linux-login-move-generic-setting-to-ttyutils.patch,
util-linux-su-change-owner-and-mode-for-pty.patch).
- mesg: use only stat() to get the current terminal status
(bsc#1200842, util-linux-mesg-use-only-stat.patch).
- agetty: Resolve tty name even if stdin is specified (bsc#1197178,
util-linux-agetty-resolve-tty-if-stdin-is-specified.patch).
- libmount: When moving a mount point, update all sub mount entries
in utab (bsc#1198731,
util-linux-libmount-moving-mount-point-sub-mounts.patch,
util-linux-libmount-fix-and-improve-utab-on-ms_move.patch).
- vim
-
- Updated to version 9.0 with patch level 0313, fixes the following problems
* Fixing bsc#1200884 Vim: Error on startup
* Fixing bsc#1200902 VUL-0: CVE-2022-2183: vim: Out-of-bounds Read through get_lisp_indent() Mon 13:32
* Fixing bsc#1200903 VUL-0: CVE-2022-2182: vim: Heap-based Buffer Overflow through parse_cmd_address() Tue 08:37
* Fixing bsc#1200904 VUL-0: CVE-2022-2175: vim: Buffer Over-read through cmdline_insert_reg() Tue 08:37
* Fixing bsc#1201249 VUL-0: CVE-2022-2304: vim: stack buffer overflow in spell_dump_compl()
* Fixing bsc#1201356 VUL-1: CVE-2022-2343: vim: Heap-based Buffer Overflow in GitHub repository vim prior to 9.0.0044
* Fixing bsc#1201359 VUL-1: CVE-2022-2344: vim: Another Heap-based Buffer Overflow vim prior to 9.0.0045
* Fixing bsc#1201363 VUL-1: CVE-2022-2345: vim: Use After Free in GitHub repository vim prior to 9.0.0046.
* Fixing bsc#1201620 PUBLIC SUSE Linux Enterprise Server 15 SP4 Basesystem zbalogh@suse.com NEW --- SLE-15-SP4-Full-x86_64-GM-Media1 and vim-plugin-tlib-1.27-bp154.2.18.noarch issue
* Fixing bsc#1202414 VUL-1: CVE-2022-2819: vim: Heap-based Buffer Overflow in compile_lock_unlock()
* Fixing bsc#1202552 VUL-1: CVE-2022-2874: vim: NULL Pointer Dereference in generate_loadvar()
* Fixing bsc#1200270 VUL-1: CVE-2022-1968: vim: use after free in utf_ptr2char
* Fixing bsc#1200697 VUL-1: CVE-2022-2124: vim: out of bounds read in current_quote()
* Fixing bsc#1200698 VUL-1: CVE-2022-2125: vim: out of bounds read in get_lisp_indent()
* Fixing bsc#1200700 VUL-1: CVE-2022-2126: vim: out of bounds read in suggest_trie_walk()
* Fixing bsc#1200701 VUL-1: CVE-2022-2129: vim: out of bounds write in vim_regsub_both()
* Fixing bsc#1200732 VUL-1: CVE-2022-1720: vim: out of bounds read in grab_file_name()
* Fixing bsc#1201132 VUL-1: CVE-2022-2264: vim: out of bounds read in inc()
* Fixing bsc#1201133 VUL-1: CVE-2022-2284: vim: out of bounds read in utfc_ptr2len()
* Fixing bsc#1201134 VUL-1: CVE-2022-2285: vim: negative size passed to memmove() due to integer overflow
* Fixing bsc#1201135 VUL-1: CVE-2022-2286: vim: out of bounds read in ins_bytes()
* Fixing bsc#1201136 VUL-1: CVE-2022-2287: vim: out of bounds read in suggest_trie_walk()
* Fixing bsc#1201150 VUL-1: CVE-2022-2231: vim: null pointer dereference skipwhite()
* Fixing bsc#1201151 VUL-1: CVE-2022-2210: vim: out of bounds read in ml_append_int()
* Fixing bsc#1201152 VUL-1: CVE-2022-2208: vim: null pointer dereference in diff_check()
* Fixing bsc#1201153 VUL-1: CVE-2022-2207: vim: out of bounds read in ins_bs()
* Fixing bsc#1201154 VUL-1: CVE-2022-2257: vim: out of bounds read in msg_outtrans_special()
* Fixing bsc#1201155 VUL-1: CVE-2022-2206: vim: out of bounds read in msg_outtrans_attr()
* Fixing bsc#1201863 VUL-1: CVE-2022-2522: vim: out of bounds read via nested autocommand
* Fixing bsc#1202046 VUL-1: CVE-2022-2571: vim: Heap-based Buffer Overflow related to ins_comp_get_next_word_or_line()
* Fixing bsc#1202049 VUL-1: CVE-2022-2580: vim: Heap-based Buffer Overflow related to eval_string()
* Fixing bsc#1202050 VUL-1: CVE-2022-2581: vim: Out-of-bounds Read related to cstrchr()
* Fixing bsc#1202051 VUL-1: CVE-2022-2598: vim: Undefined Behavior for Input to API related to diff_mark_adjust_tp() and ex_diffgetput()
* Fixing bsc#1202420 VUL-1: CVE-2022-2817: vim: Use After Free in f_assert_fails()
* Fixing bsc#1202421 VUL-1: CVE-2022-2816: vim: Out-of-bounds Read in check_vim9_unlet()
* Fixing bsc#1202511 VUL-1: CVE-2022-2862: vim: use-after-free in compile_nested_function()
* Fixing bsc#1202512 VUL-1: CVE-2022-2849: vim: Invalid memory access related to mb_ptr2len()
* Fixing bsc#1202515 VUL-1: CVE-2022-2845: vim: Buffer Over-read related to display_dollar()
* Fixing bsc#1202599 VUL-1: CVE-2022-2889: vim: use-after-free in find_var_also_in_script() in evalvars.c
* Fixing bsc#1202687 VUL-1: CVE-2022-2923: vim: NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240
* Fixing bsc#1202689 VUL-1: CVE-2022-2946: vim: use after free in function vim_vsnprintf_typval
* Fixing bsc#1202862 VUL-1: CVE-2022-3016: vim: Use After Free in vim prior to 9.0.0285 Mon 12:00
- xen
-
- bsc#1200549 VUL-0: CVE-2022-21123,CVE-2022-21125,CVE-2022-21166:
xen: x86: MMIO Stale Data vulnerabilities (XSA-404)
xsa404-1.patch
xsa404-2.patch
xsa404-3.patch
- bsc#1201469 - VUL-0: CVE-2022-23816,CVE-2022-23825,CVE-2022-29900:
xen: retbleed - arbitrary speculative code execution with return
instructions (XSA-407)
xsa407-0a.patch
xsa407-0b.patch
xsa407-0c.patch
xsa407-0d.patch
xsa407-0e.patch
xsa407-0f.patch
xsa407-0g.patch
xsa407-0h.patch
xsa407-0i.patch
xsa407-1.patch
xsa407-2.patch
xsa407-3.patch
xsa407-4.patch
xsa407-5.patch
xsa407-6.patch
xsa407-7.patch
xsa407-8.patch
- Upstream bug fix (bsc#1027519)
61d5687a-x86-spec-ctrl-opt_srb_lock-default.patch
- bsc#1201394 - VUL-0: CVE-2022-33745: xen: insufficient TLB flush
for x86 PV guests in shadow mode (XSA-408)
xsa408.patch
- bsc#1199965 - VUL-0: CVE-2022-26362: xen: Race condition in
typeref acquisition (XSA-401)
fix xsa401-1.patch
- bsc#1199966 - VUL-0: EMBARGOED: CVE-2022-26363,CVE-2022-26364: xen:
Insufficient care with non-coherent mappings
use upstream fix in xsa402-5.patch
- yast2-network
-
- AY: Added missing route extrapara element to the networking
section (bsc#1201129)
- 4.2.110
- yast2-sap-ha
-
- YaST2 sap_ha tool does not allow digits at the beginning of site names
(bsc#1200427)
- 1.0.15
- Introduce a new function refresh_all_proposals.
This reads the proposal for the modules watchdog and fence.
This is neccessary when reading an earlier configuration.
- Use .gsub instead of File.basename to find all modules files.
Replace tab with spaces.
(bsc#1197290)
- 1.0.14
- system/watchdog.rb searches watchdog modules with .ko extension
but we ship .ko.xz (bsc#1197290)
- 1.0.13
- softdog missing in Yast while configuring HA for SAP Products
(bsc#1199029)
- 1.0.12
- kmod-compat has broken dependencies (bsc#1186618)
Update requirement
- 1.0.11
- "/SUSE SAP HA Yast wizard for HANA doesn´t configure the HANA hooks.
(bsc#1190774)
Add SAPHanaSR via global.ini as proposed in
https://documentation.suse.com/sbp/all/html/SLES4SAP-hana-sr-guide-PerfOpt-15/index.html#id-1.10.6.6"/
- 1.0.10
- bsc#1158843 hana-*: Broken gettext support
- 1.0.9
- yast2-schema
-
- Add 'extrapara' to routes in the networking section (bsc#1201129)
- 4.2.17
- zlib
-
- Fix heap-based buffer over-read or buffer overflow in inflate via
large gzip header extra field (bsc#1202175, CVE-2022-37434,
CVE-2022-37434-extra-header-1.patch,
CVE-2022-37434-extra-header-2.patch).
- zypper
-
- BuildRequires: libzypp-devel >= 17.31.2.
- Fix --[no]-allow-vendor-change feedback in install command
(bsc#1201972)
- version 1.14.57
- UsrEtc: Store logrotate files in %{_distconfdir} if defined
(fixes #441, fixes #444)
- Remove unneeded code to compute the PPP status.
Since libzypp 17.23.0 the PPP status is auto established. No
extra solver run is needed.
- Make sure 'up' respects solver related CLI options (bsc#1201972)
- Fix tests to use locale "/C.UTF-8"/ rather than "/en_US"/.
- Fix man page (fixes #451)
- version 1.14.56
- lr: Allow shortening the Name column if table is wider than the
terminal (bsc#1201638)
- Don't accepts install/remove modifier without argument
(bsc#1201576)
- zypper-download: Set correct ExitInfoCode when failing to
resolve argument.
- zypper-download: Handle unresolvable arguments as error.
This commit changes zypper-download such that it behaves more
consistent to zypper-install when an argument can't be resolved.
- version 1.14.55
- Fix building with GCC 13 (fixes #448)
- Put signing key supplying repository name in quotes.
- version 1.14.54
- Basic JobReport for "/cmdout/monitor"/.
- versioncmp: if verbose, also print the edition 'parts' which are
compared.
- Make sure MediaAccess is closed on exception (bsc#1194550)
- Display plus-content hint conditionally (fixes #433)
- Honor the NO_COLOR environment variable when auto-detecting
whether to use color (fixes #432)
- Define table columns which should be sorted natural [case
insensitive] (fixes #391, closes #396, fixes #424)
- lr/ls: Use highlight color on name and alias as well.
- version 1.14.53