Skip to content

Update Terraform cloudflare to v5#3

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/cloudflare-5.x
Open

Update Terraform cloudflare to v5#3
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/cloudflare-5.x

Conversation

@renovate
Copy link
Copy Markdown

@renovate renovate Bot commented Mar 1, 2026

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Type Update Change
cloudflare (source) required_provider major ~> 4.30~> 5.0

Release Notes

cloudflare/terraform-provider-cloudflare (cloudflare)

v5.19.1

Compare Source

Full Changelog: v5.19.0...v5.19.1

Features
  • add user_group and user_group_members acceptance tests + custom delete (7f2420e)
Bug Fixes
  • iam: tokens migrations (52c5675)
  • list_item: ambigous schema while upgrade (8d75670)
  • zero_trust_access_group: fix v4 migration of same name (918f9b6)
Chores
  • unskip rate limited test for future (5f785f9)
  • zone_settings: document available settings (26711da)
  • zone_settings: document available settings dynamically (a885ddc)

v5.19.0

Compare Source

Full Changelog: v5.18.0...v5.19.0

New Resources
  • cloudflare_ai_gateway: Manage AI Gateway instances (e8d7f3b)
  • cloudflare_certificate_authorities_hostname_associations: Manage mTLS certificate hostname associations (97df6f2)
  • cloudflare_custom_page_asset: Manage custom page assets (8b71d20)
  • cloudflare_pipeline: Manage Cloudflare Pipelines (de21a25)
  • cloudflare_r2_data_catalog: Manage R2 Data Catalog (e8d7f3b)
  • cloudflare_user_group: Manage user groups (4cf8755)
  • cloudflare_user_group_members: Manage user group memberships (4cf8755)
  • cloudflare_vulnerability_scanner_credential: Manage vulnerability scanner credentials (4cf8755)
  • cloudflare_vulnerability_scanner_credential_set: Manage vulnerability scanner credential sets (4cf8755)
  • cloudflare_vulnerability_scanner_target_environment: Manage vulnerability scanner target environments (4cf8755)
  • cloudflare_workers_observability_destination: Manage Workers Observability destinations (312d3af)
  • cloudflare_zero_trust_device_ip_profile: Manage Zero Trust device IP profiles (7b251d2)
  • cloudflare_zero_trust_device_subnet: Manage Zero Trust device subnets (ebb8216)
  • cloudflare_zero_trust_dlp_settings: Manage Zero Trust DLP settings (4cf8755)
Features
  • account: state upgrader for v4 to v5 migration (82ee06e)
  • account_member: state upgrader for v4 to v5 migration (62d0ea7)
  • account_token: state upgrader for v4 to v5 migration (a0469d7)
  • authenticated_origin_pulls: state upgrader for v4 to v5 migration (c4054b7)
  • authenticated_origin_pulls_hostname_certificate: state upgrader for v4 to v5 migration (c4054b7)
  • byo_ip_prefix: state upgrader for v4 to v5 migration (8d58cab)
  • custom_hostname: state upgrader for v4 to v5 migration (24e4f0e)
  • custom_ssl: state upgrader for v4 to v5 migration (ada4f8f)
  • leaked_credential_check: state upgrader for v4 to v5 migration (9372a7d)
  • leaked_credential_check_rule: state upgrader for v4 to v5 migration (745f1e2)
  • logpush_ownership_challenge: state upgrader for v4 to v5 migration (25785268)
  • mtls_certificate: state upgrader for v4 to v5 migration (70d46e0)
  • observatory_scheduled_test: state upgrader for v4 to v5 migration (a2883c9)
  • pages_domain: state upgrader for v4 to v5 migration (91c6024)
  • regional_tiered_cache: state upgrader for v4 to v5 migration (430edbd)
  • ruleset: add content_converter and redirects_for_ai_training support to configuration rules (726b8e7)
  • turnstile_widget: state upgrader for v4 to v5 migration (94b9515)
  • workers_custom_domain: state upgrader for v4 to v5 migration (6a40c69)
  • zero_trust_device_custom_profile: state upgrader for v4 to v5 migration (77090dc)
  • zero_trust_device_default_profile: state upgrader for v4 to v5 migration (77090dc)
  • zero_trust_device_posture_integration: state upgrader for v4 to v5 migration (32bc328)
  • zero_trust_gateway_certificate: state upgrader for v4 to v5 migration (ceff5a4)
  • zero_trust_gateway_settings: state upgrader for v4 to v5 migration (3dae4a3)
  • zero_trust_gateway_logging: make importable (c5d144b)
  • zero_trust_organization: state upgrader for v4 to v5 migration (9eb3a25)
  • zero_trust_tunnel_cloudflared_virtual_network: state upgrader for v4 to v5 migration (1f0f135)
  • zone_setting: state upgrader for v4 to v5 migration (7ba7600)
  • add browser rendering devtools methods (7f83203)
  • bump go sdk version (070ea0b)
  • enable treeshaking and client options for setting zone and account IDs (43b90cb)
  • promote AI Gateway Terraform config from staging to main (75baa04)
Bug Fixes
  • account_member: add UseStateForUnknown to status field to prevent drift (841d6f9)
  • ai_search_instance: restore original defaults for cache and cache_threshold (d28ee6b)
  • apijson: return empty object from MarshalForPatch when no fields are serialisable (270fe86)
  • authenticated_origin_pulls_settings: fix no prior schema and no-op upgrade (9804de7)
  • certificate_pack: initialize empty lists instead of null in state upgrader to prevent drift (2017a43)
  • client_certificate: fix CSR drift with normalization (a755419)
  • custom_hostname: allow ssl as null (6e17010)
  • custom_hostname_fallback_origin: eventual consistency (d55a74a)
  • custom_origin_trust_store: fix certificate drift with normalization (42de890)
  • custom_ssl: fix patch cert replacement and send bundle_method (bebe53b)
  • dlp_predefined_profile: eliminate perpetual entries and enabled_entries drift (92dcfc0)
  • dns_record: avoid unnecessary drift for ipv4_only and ipv6_only attributes (3df5e03)
  • dns_record: remove private_routing default value (ada77b4)
  • drift: preserve prior state for optional fields not returned by API (access_rule, gateway_policy, gateway_settings, zone_dnssec, dlp_predefined_profile) (b717f4d)
  • leaked_credential_check_rule: handle empty ID from v4 provider state migration (70f0337)
  • list_item: remove context (69f751d)
  • logpush_job: update model for migration (b789273)
  • logpush_job: fix acceptance tests failing due to destination re-validation on PUT (87243a1)
  • managed_transforms: remove unavailable rule and fix nil pointer in state upgrade (d14644e)
  • migrations: handle ambiguous schema_version state for v4/v5 coexistence (2b6246f)
  • page_rule: properly encode automatic_https_rewrites (47ebbf4)
  • provider credential fields marked sensitive and validation regex updated (5f6ff4f)
  • r2: add degraded-response handling to the R2 custom domain resource (c8d0e0f)
  • ruleset: restore phase-entrypoint fallbacks (b92500b)
  • ruleset: add redirects_for_ai_training to v4 action parameters model (16470fa)
  • tokens: change from set to list for token policies (9937847)
  • tokens: handle revoked and expired tokens (63319ed)
  • UpgradeFromV0 handles both v4 and early-v5 state formats (b09f658)
  • use raw JSON deserialization in UpgradeState handlers (0e93ea6)
  • workers_custom_domain: handle HTTP 200 no content header (ea0ca97)
  • workers_script: add missing ratelimit binding type to schema validator (30c49a6)
  • workers_script: model drift (5ae89c4)
  • zero_trust_access_identity_provider: boolean drifts (421bb50)
  • zero_trust_access_policy: nil pointer panic in state upgrader (ebe2b68)
  • zero_trust_access_policy: normalize transforms and use raw JSON deserialization for state upgrade (18c2ae3)
  • zero_trust_device_managed_networks: upgrade resource state (7c14bf5)
  • zero_trust_device_posture_rule: schema default removed intentionally (eef56df)
  • zero_trust_gateway_policy: make filters Computed+Optional to prevent drift (8f52f45)
  • zero_trust_gateway_settings: breaking changes and reset to clean defaults (b5ca509)
  • zero_trust_tunnel_cloudflared_config: dont use init (090ff6a)
Chores
  • api: update composite API spec (db5b37e)
  • cmd/migrate: deprecated in favor of tf-migrate; will be removed in a future release (#​7062)
  • docs: caveats and callouts (31c0d88)
  • internal: codegen related update (4cf8755)
  • update tf-migrate version (d023e25)
Documentation
  • remove TBD wording from deprecation timeline (bce670f)

v5.18.0

Compare Source

Full Changelog: v5.17.0...v5.18.0

Features
  • access_rule: support state upgraders for migration (67fd741)
  • api_shield_operation: state upgrader (ecd51d4)
  • api_token: state upgrader (ac5eb62)
  • authenticated_origin_pulls_certificate: v4 to v5 migration (8d9930d)
  • bot_management: state upgrader (4d9ee27)
  • chore: clean up removed endpoint from config (52f120d)
  • chore: update cloudflare-go dependency to next (c92a4cb)
  • chore: use Go SDK v6.8.0 for release (b695914)
  • feat: GIN-1439: Add gateway PAC files (9de415f)
  • feat(client_certificate): enable terraform for client_certificates (58f6a08)
  • feat(custom_origin_trust_store): enable custom_origin_trust_store (1c0f313)
  • feat(stainless): AUTH-7071 Complete Access Users endpoint (2d4101d)
  • fix: add 'rdp' as an initialism (9aa6e67)
  • list_item: state upgrader (70b70c5)
  • list: state upgrader (41def2f)
  • logpull_retention: support state upgrader #​6754 (78409e1)
  • logpush_job: support state upgrader (275efd5)
  • managed_transforms: state upgrader (8de2938)
  • notication_policy: state upgrader (dbcbda8)
  • regional_hostname: state upgrader (ed98d9e)
  • ruleset: add new actions for http_response_cache_settings phase (beeb49e)
  • snippet_rules: use state upgrade (91a7d1a)
  • snippet: use state upgrade (dbc8107)
  • spectrum_application: state upgrader (0957f09)
  • state upgrader (bbd68e0)
  • url_normalization_settings: state upgrader (f933791)
  • workers_kv_namespace: add state upgrader logic (695a1e1)
  • workers_route: implement state upgrader (cef2a35)
  • workers_script: implement state upgrader and move state (f7e20f8)
  • zero_trust_access_application: state upgrader (5427fd9)
  • zero_trust_access_group: add state upgrader logic and tests (5d0c09f)
  • zero_trust_access_identity_provider: state upgraders (c8c88f0)
  • zero_trust_access_mtls_certificate: state upgraders (15c5b8e)
  • zero_trust_access_mtls_hostname_settings: state upgraders (fe7a900)
  • zero_trust_device_managed_networks: state upgrader (0ee822f)
  • zero_trust_device_posture_rule: state upgrader (e4bdf6b)
  • zero_trust_dex_test: state upgrader (4b61d73)
  • zero_trust_dlp_custom_profile: state upgrader (ca47a4d)
  • zero_trust_dlp_entries: feat no-op state upgraders (808c706)
  • zero_trust_dlp_predefined_profile: state upgrader (71278f0)
  • zero_trust_gateway_policy: state upgrader (cb4ff67)
  • zero_trust_list: implement state upgrader (5134e5c)
  • zero_trust_tunnel_cloudflared_config: support state upgrader (a79e6ea)
  • zero_trust_tunnel_cloudflared_route: state upgrader (40289a3)
  • zone_dnssec: add state upgrader logic (1103393)
  • zone_subscription: add state upgraders for zone_subscription (3512262)
  • zone: add resource state migrations (049e9a9)
Bug Fixes
  • authenticated_origin_pulls_certificate and authenticated_origin_pulls_hostname_certificate model and schema (8287f8a)
  • custom_ssl: 'deploy' default removed due to entitlements requirement (267abd5)
  • docs: v5 migration for authenticated_origin_pulls (zone and hostname) (917dc79)
  • docs: v5 migration for authenticated_origin_pulls certs (zone and hostname) (502766d)
  • handling case where directory is null (72f78a7)
  • list: published version (4f695aa)
  • load_balancer: improve recurring drift in origins attribute (248c746)
  • migrations: use local provider for v5 migration tests (de0b294)
  • queue: migration model (c9f3274)
  • revert snippet_rules data source deletion (f489eb8)
  • spectrum_application: ips are computed optional (9281cdb)
  • spectrum_application: update 'ips' type and configurability in the model (f8742f3)
  • workers_script: include the original migration which existed (10b1b41)
  • workers_script: placement in union schema (53ee900)
  • workers_script: schema and model after merge conflict? (892c0d0)
  • zero_trust_access_group: normalization for include, exclude and require (ec84aaf)
  • zero_trust_device_posture_rule: model schema parity and gate (f18d0a8)
  • zero_trust_dlp_custom_profile: migration model (dae6782)
  • zero_trust_dlp_custom_profile: schema model parity (adda119)
  • zero_trust_organization: remove default values from attributes causing drift (d408f2e)
Chores
  • api: update composite API spec (ff602e7)
  • api: update composite API spec (e767186)
  • api: update composite API spec (81aacfa)
  • api: update composite API spec (776c452)
  • api: update composite API spec (efbdf3f)
  • api: update composite API spec (2d79225)
  • api: update composite API spec (565a842)
  • api: update composite API spec (259a7bd)
  • api: update composite API spec (deadfa0)
  • api: update composite API spec (1e91bbe)
  • api: update composite API spec (d09e587)
  • api: update composite API spec (239b2b6)
  • api: update composite API spec (cc8abe5)
  • api: update composite API spec (424518f)
  • api: update composite API spec (d444521)
  • api: update composite API spec (404b7b2)
  • api: update composite API spec (9a9324f)
  • api: update composite API spec (ec1d34e)
  • api: update composite API spec (1bf0f08)
  • custom_pages: add state upgraders logic (8feda78)
  • docs: update documentation (968a766)
  • docs: update example and doc (9ea618c)
  • internal: codegen related update (d39697f)
  • internal: codegen related update (86e94df)
  • internal: codegen related update (f212c64)
  • internal: codegen related update (bbe88b6)
  • internal: codegen related update (938118d)
  • internal: codegen related update (d2b1e8d)
  • internal: codegen related update (2129377)
  • internal: codegen related update (ce10e25)
  • internal: codegen related update (4c2f9b0)
  • internal: codegen related update (0d936f6)
  • internal: codegen related update (5b18851)
  • internal: codegen related update (02f6d57)
  • internal: codegen related update (bd4f014)
  • internal: codegen related update (5142372)
  • internal: codegen related update (7b6808b)
  • internal: codegen related update (2ca23ba)
  • internal: codegen related update (285a90d)
  • internal: codegen related update (4b0cdeb)
  • internal: codegen related update (c84470e)
  • internal: codegen related update (a992736)
  • internal: codegen related update (4ae01ef)
  • internal: codegen related update (e37a7e7)
  • internal: codegen related update (3553499)
  • internal: codegen related update (bba5c6f)
  • internal: codegen related update (85859b2)
  • internal: codegen related update (90ffea1)
  • load_balancer_monitor: implement v4->v5 state migration (ae47e9c)
  • load_balancer: implement v4->v5 state migration (14fb2e5)
  • notification_policy_webhooks: support state upgrader (1f223f6)
  • queue_consumer: support state upgraders (c28386e)
  • queue_consumer: support state upgraders (67c546d)
  • queue: support state upgraders (109c401)
  • resources: don't trigger upgrade (92d92bc)
  • snippets: clean up unused funcs (c8fdb9a)
  • workers_kv: adjust for state upgraders logic (493975f)
  • zero_trust_access_group: enable cross resource dependent test (7798310)
  • zero_trust_dlp_custom_profile: cleanup (de457ca)
  • zero_trust_dlp_predefined_profile: cleanup (10c57a5)
  • zone_subscription: update test (8d58520)
  • zone: add test cases (f227117)
Documentation
  • update docs again for v5.18.0 (6b459d5)
  • update docs for v5.18.0 (d98474e)
Refactors
  • zero_trust_access_policy: match directory structure (43f639a)

v5.17.0

Compare Source

Full Changelog: v5.16.0...v5.17.0

Features
  • account: add RequiresReplace modifier to unit.id field (7cbb327)
  • bump schema verion in prep for state upgraders (a721535)
  • bump schema verion in prep for state upgraders (a721535)
  • chore: bump cloudflare-go dependency for TF (3b4de30)
  • chore: skip codegen in authenticated_origin_pulls_certificate (22d11ab)
  • chore: skip codegen in authenticated_origin_pulls_hostname_certificate (0fdd92e)
  • chore: skip codegen in hostnames authenticated_origin_pulls (82aab9d)
  • chore: skip codegen in mtls_certificates (1b14224)
  • chore: use 'next' branch of Go SDK in Terraform (809a3f3)
  • custom_hostname_fallback_origin: add comprehensive lifecycle test (054611a)
  • custom_hostname_fallback_origin: add migration tests and state upgrader logic (855ef8a)
  • custom_hostname_fallback_origin: add v4 to v5 migration tests (0542720)
  • feat(api): RAG-586: enable terraform for AI Search instances and tokens (fe5239d)
  • feat(radar): add BGP RPKI ASPA endpoints and fix SDK casings (e6a03b6)
  • fix: authenticated_origin_pulls_settings missing id configuration (abe9087)
  • fix(total_tls): use upsert pattern for singleton zone setting (1a79609)
  • leaked_credential_check: add import functionality. add tests for import (76e44f0)
  • pages_project: use state upgraders (db96be7)
  • refactor(terraform): restructure origin_tls_client_auth to peer subresources (6c12fea)
  • state upgrader (deee33f)
  • state upgrader (d8e4529)
  • tiered caching state upgrader (d9d2c74)
  • tiered caching state upgrader (d9d2c74)
  • tiered_cache: use state upgraders (8cb061c)
  • turstile_widget: add v4 to v5 migration tests (a1e27af)
  • zero_trust_organization: add migration test (1032e4e)
Bug Fixes
  • account: map managed_by.parent_org_id to unid.id in unmarshall and add acctests (a282d8e)
  • address PR review comments (62598d7)
  • authenticated_origin_pulls_certificate: add certificate normalization to prevent drift (9fa8e39)
  • authenticated_origin_pulls_hostname_certificate resource and tests (3380cf9)
  • authenticated_origin_pulls: handle array response and implement full lifecycle (e4c82b8)
  • byo_ip_prefix: skip LOA tests (892bce0)
  • changelog: update changelog to reflect reality (519c85e)
  • cloudflare_zero_trust_device_posture_rule: update tests to match API (b2aad0d)
  • mtls_certificates resource and test (fc44f27)
  • prevent unnecessary diffs on consecutive applies for hyperdrive_config (8755bf9)
  • skip tests requiring account creation (f6d48e9)
  • upgrade scenario (e3831be)
  • workers_script: add support for placement mode/status (1bc17fa)
  • workers_script: schema and migration model (a9a0e05)
  • zero_trust_access_application: update v4 version on migration tests (45a825e)
  • zero_trust_organization: fix plan issues (f6a9369)
Reverts
  • pages_project: "fix(pages_project) build_config to computed optional" (b9c13c9)
Chores

Note

PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot changed the title chore(deps): update terraform cloudflare to v5 Update Terraform cloudflare to v5 Apr 15, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants