1.0.0-develop.1 (2022-11-02)
- var.volume_size replaced by var.block_device_mappings
- The module is upgraded to AWS Terraform provider 4.x
- Add associate_public_ip_address variable to windows AMI too (#1819) (0b8e1fc), closes /github.com/philips-labs/terraform-aws-github-runner/pull/1816#issuecomment-1060650668
- Add associate_public_ip_address variable (#1816) (052e9f8)
- Add option for ephemeral to check builds status before scaling (#1854) (7eb0bda)
- Add option for KMS encryption for cloudwatch log groups (#1833) (3f1a67f)
- Add option to disable lambda to sync runner binaries (#2314) (9f7d32d)
- Add option to enable access log for API gateway (#2387) (fcd9fba)
- Add option to enable detailed monitoring for runner launch template (#2024) (e73a267)
- Add option to match some of the labes instead of all #2122 (#2123) (c5e3c21)
- Add options extra option to ebs block device mapping (#2052) (7cd2524)
- Add output image id used in launch template (#1676) (a49fab4)
- Add possibility to create multiple ebs (#1845) (7a2ca0d)
- add s3_location_runner_distribution var as expandable for userdata (#2371) (05fe737)
- Add SQS queue resource policy to improve security (#1798) (96def9a)
- Add Support for Alternative Partitions in ARNs (like govcloud) (#1815) (0ba06c8)
- Add ubuntu-jammy example image based on existing ubuntu-focal (#2102) (486ae91)
- Add variable to specify custom commands while building the AMI (#1838) (8f9c342)
- Added the AMI to machine setup info to runner workflows. (#2451) (e197cbd)
- Download runner release via latest release API (#2455) (e75e092)
- Enable node16 default (#2074) (58aa5ed)
- Encrypted data at REST on SQS by default (#2431) (7f3f4bf)
- Experimental feature - Duplicate workflow job event to extra queue (#2268) (985e722)
- Experimental feature - Duplicate workflow job event to extra queue (#2268) (ac046b8)
- images: add ami for windows core 2022 (#2390) (97707c2)
- images: Added ubuntu-focual example packer configuration (#1644) (997b171)
- images: Allow passing instance type when building windows image (#2369) (eca23bf)
- Improve syncer s3 kms encryption (38ed5be)
- Log workflow id in webhook (#2511) (204acf1)
- Parameterise delete_on_termination (#1758) (6282351), closes #1745
- Remove var.volume_size in favour of var.block_device_mappings (4e97048)
- Replace environment variable by prefix (#1858) (e2f9a27)
- runner: Ability to disable default runner security group creation (#1718) (94779f8)
- runner: Add option to disable auto update (#1791) (c2a834f)
- runners: Add support for looking up runner AMI ID from an SSM parameter at instance launch time (#2520) (68e2381)
- Security improvements, add option to disable userdata logging (9a9e2ee), closes #1019 #899 #1080 #748 #1112 #903 #1082 #1133 #2 #1204 #1219 #1202 #1202 #1135 #1164 #1154 #1207 #1203 #1247 #1222 #1244 #1223 #1254 #1286 #1287 #1278 #1354 #1357 #1356 #1228 #1324 #1358 #1377 #1368 #1381 #1415 #1416 #1423 #1399 #1401 #1444 #1480 #1478 #1479 #1476 #1537 #1538 #1541 #1542 #1399 #1444 #1572 #1556 #1561 #1525 #1591 #1577 #1621 #1611 #1615 #1624 #1628 #1647 #1644 #1673 #1676 #1716 #1741 #1738 #1745 #1718 #1791 github.com/philips-labs/terraform-aws-github-runner/pull/1816#issuecomment-1060650668 #1816 #1833 #1798 #1815 #1838 #1797 #1839 #1812 #1854 #1855 #1845 #1832 #1859 #1937 #1969 #1970 #1954 #2019 #1739 #2019 #2024 #2051 #1858 #2085 #2121 #2073 #2146 #2145 #2147 #2122 #2123 #2181 #2207 #2102 #2214 #2052 #2074 #2233 #2288 #2302 #2291 #2209 #2315 #2314 #2103 #2345 #2387 #2371 #2431 #2369 #2346 #2325 #2434 #2455
- Support arm64 lambda functions (#2121) (9e2a7b6)
- Support AWS 4.x Terraform provider (#1739) (cfb6da2)
- Support multi runner process support for runner scale down. (#1859) (3658d6a)
- Support Node16 for AWS Lambda (#2073) (68a2014)
- Support s3 bucket logging for distribution cache bucket (#2430) (69578e0)
- Webhook accept jobs where not all labels are provided in job. (#2209) (6d9116f)
- added server_side_encryption key to download trigger for distribution (#2207) (404e3b6)
- Autoupdate should be disabled by default (#1797) (828bed6)
- Avoid non semantic commontes can be merged. (#1969) (ad1c872)
- Create SQS DLQ policy only if DLQ is created (#1839) (c88a005)
- don't apply extra labels unless defined (#2181) (c0b11bb)
- Don't delete busy runners (#1832) (0e9b083)
- examples: Update AMI filter (#1673) (39c019c)
- examples: Upgrading ubuntu example to 22.04 (#2250) (d4b7650), closes #2103
- Ignore case for runner labels. (#2315) (014985a)
- images: avoid wrong AMI could be selected for ubuntu focal (#2214) (76be94b)
- Incorrect path of Runner logs (#2233) (98eff98)
- Limit AWS Terraform Provider to 3.* (#1741) (0cf2b5d)
- Outputs for pool need to account for complexity (#1970) (2d92906)
- Preventing that lambda webhook fails when it tries to process an installation_repositories event (#2288) (8656c83)
- Remove asterik in permission for runner lambda to describe instances (9b9da03)
- Remove resource group from module (#2512) (2628352)
- replaced old environment variable (#2146) (f2072f7)
- replacing deprecated set-output in workflow (#2564) (aa0afdd)
- Retention days was used instead of kms key id for pool (#1855) (aa29d93)
- runner: Cannot disable cloudwatch agent (#1738) (0f798ca)
- runner: Don't treat the string "false" as true. (#2051) (b67c7dc)
- runners: Fetch instance environment tag though metadata (#2346) (27db290)
- runners: Pass allocation strategy (#2345) (68d3445)
- runners: Set the default Windows AMI to Server 2022 (#2325) (78e99d1)
- set explicit permissions on s3 for syncer lambda (#2145) (aa7edd1)
- set kms key on aws_s3_object when encryption is enabled (#2147) (b4dc706)
- Set the minimal AWS provider to 3.50 (#1937) (16095d8)
- syncer: Fix for windows binaries in action runner syncer (#1716) (63e0e27)
- Update ubuntu example to fix /opt/hostedtoolcache (#2302) (8eea748)
- Upgrade Amazon base AMI to Amazon Linux 2 kernel 5x (#1812) (9aa5532)
- Volume size is ingored (#2014) (b733248), closes #1954
- Webhook lambda misleading log (#2291) (c6275f9)
- webhook: Use
x-hub-signature-256
header as default (#2434) (9c3e495) - Wrong block device mapping (#2019) (185ef20)
- Wrong block device mapping (#2019) (c42a467)
1.13.0 (2022-10-14)
1.12.0 (2022-10-12)
- Added the AMI to machine setup info to runner workflows. (#2451) (e197cbd)
- images: add ami for windows core 2022 (#2390) (97707c2)
- Log workflow id in webhook (#2511) (204acf1)
- Security improvements, add option to disable userdata logging (9a9e2ee), closes #1019 #899 #1080 #748 #1112 #903 #1082 #1133 #2 #1204 #1219 #1202 #1202 #1135 #1164 #1154 #1207 #1203 #1247 #1222 #1244 #1223 #1254 #1286 #1287 #1278 #1354 #1357 #1356 #1228 #1324 #1358 #1377 #1368 #1381 #1415 #1416 #1423 #1399 #1401 #1444 #1480 #1478 #1479 #1476 #1537 #1538 #1541 #1542 #1399 #1444 #1572 #1556 #1561 #1525 #1591 #1577 #1621 #1611 #1615 #1624 #1628 #1647 #1644 #1673 #1676 #1716 #1741 #1738 #1745 #1718 #1791 github.com/philips-labs/terraform-aws-github-runner/pull/1816#issuecomment-1060650668 #1816 #1833 #1798 #1815 #1838 #1797 #1839 #1812 #1854 #1855 #1845 #1832 #1859 #1937 #1969 #1970 #1954 #2019 #1739 #2019 #2024 #2051 #1858 #2085 #2121 #2073 #2146 #2145 #2147 #2122 #2123 #2181 #2207 #2102 #2214 #2052 #2074 #2233 #2288 #2302 #2291 #2209 #2315 #2314 #2103 #2345 #2387 #2371 #2431 #2369 #2346 #2325 #2434 #2455
1.11.0 (2022-10-06)
1.10.0 (2022-09-24)
1.9.1 (2022-09-18)
1.9.0 (2022-09-16)
- Add option to enable access log for API gateway (#2387) (fcd9fba)
- add s3_location_runner_distribution var as expandable for userdata (#2371) (05fe737)
- Encrypted data at REST on SQS by default (#2431) (7f3f4bf)
- images: Allow passing instance type when building windows image (#2369) (eca23bf)
- runners: Fetch instance environment tag though metadata (#2346) (27db290)
- runners: Set the default Windows AMI to Server 2022 (#2325) (78e99d1)
1.8.1 (2022-08-17)
1.8.0 (2022-08-15)
1.7.0 (2022-08-04)
1.6.0 (2022-08-03)
- Add options extra option to ebs block device mapping (#2052) (7cd2524)
- Enable node16 default (#2074) (58aa5ed)
- Incorrect path of Runner logs (#2233) (98eff98)
- Preventing that lambda webhook fails when it tries to process an installation_repositories event (#2288) (8656c83)
- Update ubuntu example to fix /opt/hostedtoolcache (#2302) (8eea748)
- Webhook lambda misleading log (#2291) (c6275f9)
1.5.0 (2022-07-08)
1.4.1 (2022-06-30)
1.4.0 (2022-06-23)
- don't apply extra labels unless defined (#2181) (c0b11bb)
- Remove asterik in permission for runner lambda to describe instances (9b9da03)
1.3.0 (2022-06-14)
- replaced old environment variable (#2146) (f2072f7)
- set explicit permissions on s3 for syncer lambda (#2145) (aa7edd1)
- set kms key on aws_s3_object when encryption is enabled (#2147) (b4dc706)
1.2.0 (2022-05-20)
1.1.1 (2022-05-17)
1.1.0 (2022-05-10)
1.0.0 (2022-05-09)
- var.volume_size replaced by var.block_device_mappings
- The module is upgraded to AWS Terraform provider 4.x
- Improve syncer s3 kms encryption (38ed5be)
- Remove var.volume_size in favour of var.block_device_mappings (4e97048)
- Support AWS 4.x Terraform provider (#1739) (cfb6da2)
0.40.4 (2022-05-06)
0.40.3 (2022-05-05)
0.40.2 (2022-04-25)
0.40.1 (2022-04-25)
0.40.0 (2022-04-13)
0.39.0 (2022-03-25)
0.38.0 (2022-03-21)
0.37.0 (2022-03-10)
- Add associate_public_ip_address variable to windows AMI too (#1819) (0b8e1fc), closes /github.com/philips-labs/terraform-aws-github-runner/pull/1816#issuecomment-1060650668
- Add associate_public_ip_address variable (#1816) (052e9f8)
- Add option for KMS encryption for cloudwatch log groups (#1833) (3f1a67f)
- Add SQS queue resource policy to improve security (#1798) (96def9a)
- Add Support for Alternative Partitions in ARNs (like govcloud) (#1815) (0ba06c8)
- Add variable to specify custom commands while building the AMI (#1838) (8f9c342)
- Autoupdate should be disabled by default (#1797) (828bed6)
- Create SQS DLQ policy only if DLQ is created (#1839) (c88a005)
- Upgrade Amazon base AMI to Amazon Linux 2 kernel 5x (#1812) (9aa5532)
0.36.0 (2022-02-25)
0.35.0 (2022-02-18)
- Parameterise delete_on_termination (#1758) (6282351), closes #1745
- runner: Ability to disable default runner security group creation (#1718) (94779f8)
0.34.2 (2022-02-11)
- Limit AWS Terraform Provider to 3.* (#1741) (0cf2b5d)
- runner: Cannot disable cloudwatch agent (#1738) (0f798ca)
0.34.1 (2022-02-10)
0.34.0 (2022-02-05)
0.33.0 (2022-01-28)
0.32.0 (2022-01-19)
- images: use new runner install location (#1628) (36c1bf5)
- packer: Add missing RUNNER_ARCHITECTURE for amazn-linux2 (#1647) (ec497a2)
0.31.0 (2022-01-14)
0.30.1 (2022-01-13)
0.30.0 (2022-01-12)
0.29.0 (2022-01-11)
- Strict label check and replace disable_check_wokflow_job_labels by opt in enable_workflow_job_labels_check (#1591) (405b11d)
0.28.0 (2022-01-06)
- add option ephemeral runners (#1374) (2f323d6), closes #1399 #1444
- Change default location of runner to
/opt
and fix Ubuntu example (#1572) (77f350b) - Replace run instance API by create fleet API (#1556) (27e974d)
- Support t4g Graviton instance type (#1561) (3fa5896)
0.27.2 (2021-12-22)
0.27.1 (2021-12-21)
- add --preserve-env to start-runner.sh to enable RUNNER_ALLOW_RUNASROOT (#1537) (1cd9cd3)
- remove export from install script. (#1538) (d32ca1b)
0.27.0 (2021-12-16)
0.26.1 (2021-12-08)
- Download lambda (#1480) (f1b99d9)
- syncer: Add tests, coverage report, and refactor lambda / naming (#1478) (8266442)
- install_config_runner -> install_runner (#1479) (de5b93f)
0.26.0 (2021-12-03)
- add runners binaries bucket as terraform output (5809fee)
0.25.2 (2021-12-01)
- add logging context to runner lambda (#1399) (0ba0930)
- logging: Add context to webhook logs (#1401) (8094576)
0.25.1 (2021-11-18)
0.25.0 (2021-11-18)
0.24.0 (2021-11-09)
0.23.1 (2021-11-04)
0.23.0 (2021-11-04)
- add option to format logging in JSON for lambdas (#1228) (a250b96)
- add option to specify SSE config for dist bucket (#1324) (ae84302)
0.22.0 (2021-11-01)
0.21.1 (2021-10-21)
- logging: Adjusting scale logging messages and levels (#1286) (665e1a6)
- logging: Adjusting webhook logs and levels (#1287) (9df5fb8)
- Update launch template to use metadata service v2 (#1278) (ef16287)
0.21.0 (2021-10-11)
- Ignore github managed labels and add check disable option (#1244) (859fa38)
- remove unused app client since SSH key is used to secure app authorization (#1223) (4cb5cf1)
- upgrade Terraform version of module 1.0.x (#1254) (2a817dc)
0.20.1 (2021-10-07)
- Upgrade lambda runtime to node 14.x (#1203) (570949a)
- webhook: remove node fetch (ca14ac5)
- webhook: replace node-fetch by axios #1247 (80fff4b)
- added more detailed logging for scaling up and down (#1222) (9aa7456)
0.20.0 (2021-10-01)
- Add option to disable SSL verification support for GitHub Enterprise Server (#1216) (3c3ef19), closes #1207
0.19.1 (2021-09-30)
0.19.0 (2021-09-30)
- explicit set region for downloading runner distribution from S3 (#1204) (439fb1b)
- upgrade jest (#1219) (c8b8139)
- use dynamic block to ignore null market opts (#1202) (df9bd78)
- use dynamic block to ignore null market opts (#1202) (06a5598)
- logging: Additional Logging (#1135) (f7f194d)
- scale-down: Clearing cache between runs (#1164) (e72227b)
0.18.1 (2021-08-26)
0.18.0 (2021-08-19)
- add format checking for lambdas in CI (#899) (#1080) (ae9c277)
- add option to overwrite / disable egress #748 (#1112) (9c2548d)
0.17.0 (2021-08-06)
0.16.0 (2021-08-05)
- make delay of webhook event configurable (#990) (92a0d8a)
- Store lambda secrets paramaters in Paramater Store (#941) (c6badbf), closes #871 #898 #738 #902 #738 #905 #906 #904 #1 #752 #909 #752 #908 #752 #887 #752 #885 #752 #889 #752 #892 #752 #907 #752 #864 #918
- change module exports and upgrade vercel to latest release (#1005) (f8f8981)
- reduce permission required for session manager (#1018) (09476eb)
0.15.1 (2021-07-13)
0.15.0 (2021-07-07)
0.14.0 (2021-06-17)
0.13.1 (2021-06-01)
- .gitignore for 'secrets.auto.tfvars' (38d7df0)
- Add some essential dependecies on ubuntu example (0079d16)
- fail to download wrong tag of lambda (#840) (1112ca8)
- increase runner sync lambda memory setting and upgrade npm dependencies (#844) (b9e36e9)
- revert dependency updates on runner module (#784) (76cdbe3)
- ubuntu example runner_log_files variable (5b3fc5b)
- ubuntu example to log syslog instead of messages (#785) (fb3e5d2)
- Update ubuntu example with assume_role comment (2478daf)
- upgrade runner module to support upgrade octokit auth-app (#786) (e110318)
- docs: fix variable name create_service_linked_role_spot in readme (#750) (42b0427), closes #736
0.13.0 (2021-03-28)
0.12.0 (2021-03-09)
0.11.0 - 2021-03-01
- feat: Tag Volume Resources (#570)
- feat: Retrieve installation id automatically if not present (triggered by ordinary webhook) (#515)
- fix(bucket): Adds bucket policy #536
- fix: Upgrade vpc to 2.2.0 and pre-commit terraform hooks (#538)
- fix(lint): Clean up lint (#534)
0.10.0 - 2021-01-27
- Support runner groups (#496)
0.9.1 - 2021-01-22
- fix(ghes): Corrects preview option #482 @mcaulifn @samuelb
0.9.0 - 2021-01-21
- Add support for GitHub Enterprise Server (GHES) #412, #481, #467 @mcaulifn @jonico
- Allow configuring additional security groups #392 @surminus
- Log groups per type of logging #476
- Copy directory after installing zip #444 @masterful
- Update ubuntu example with rootless docker and non privileged user #433
- Changed strategy in scaling. Previous the module scaled by checking for any queued workflow for the repo initiation the check_run event. Now the module scales only if the correlated check_run is still in queued state. #423
- Fix missing permissions for CloudWatch Agent #445 @bennettp123
- Swap scale up/scale down timeout description #468 @jonico
- Fix for invalid configuration #466 @jonico
- Add ssm:GetParameter to runner-ssm-parameters #446 @bennettp123
- Replace crypto #429
- Scale up lambda deprecated attribute #410
Changes related to logging groups introduced via #476 will destroy existing logging group in AWS cloudwatch for runners log. In case you would like to keep the logging ensure you remove the log group from the state before running an apply
export RESOURCE=$(terraform state list | grep "aws_cloudwatch_log_group.runner")
terraform state rm $RESOURCE
0.8.1 - 2020-12-08
- Policy is missing for streaming logs to cloudwatch #388
0.8.0 - 2020-12-08
- Examples upgraded to Terraform 13 (#372)
- Streaming runner logs to cloudwatch #375
0.7.0 - 2020-12-04
- Small clarifications in the README #368 @lrytz
- Allow operator to pass in a list of managed IAM policy ARNs for the runner role #361 @jpalomaki
- expand options for sourcing lambda to include S3 #292 @eky5006
0.6.0 - 2020-10-10
- Only allow tagging and termination of runner instances #201 @jpalomaki
- Fix pagination with listing self-hosted runners #202 @HenryNguyen5
0.5.0 - 2020-08-25
- feat: Manage log groups via module. When upgrading you have to import the log groups by AWS into your state. See below the example commands for the default example.
terraform import module.runners.module.runner_binaries.aws_cloudwatch_log_group.syncer "/aws/lambda/default-syncer"
terraform import module.runners.module.runners.aws_cloudwatch_log_group.scale_up "/aws/lambda/default-scale-up"
terraform import module.runners.module.runners.aws_cloudwatch_log_group.scale_down "/aws/lambda/default-scale-down"
terraform import module.runners.module.webhook.aws_cloudwatch_log_group.webhook "/aws/lambda/default-webhook"
-
feat: Expose ami-filters and user-data template file location to users to allow use of custom AMIs
-
feat: Added option to binaries syncer to upgrade to pre-releases, preventing any auto-updating on startup. Option
runner_allow_prerelease_binaries
is disabled by default. (#141, #165) @sjagoe -
feat: SSM policies are by default disabled, set
enable_ssm_on_runners
totrue
to enable access to the runner instances via SSM. (#143) @HenryNguyen5 -
feat: Log full sqs event (#147) @HenryNguyen5
0.4.0 - 2020-08-10
- feat: idle runners #113
0.3.0 - 2020-08-06
- feat: Add support for ARM64 runners #102 @bdruth
- feat: added variables in the root module to allow passing in pre and and post install #45 @jaydenrasmussen
- fix: Build script not entering all the module directories (#103) @alonsohki
- fix: Remove Orphan AWS runners (#79)
- fix: documentation for downloading lambdas (#78) @@bendavies
- fix: Rename variable and fix variables descriptions (#75) @bendavies @leoblanc
0.2.0 - 2020-06-15
- #34 encrypt secrets via KMS (#37)
0.1.0 - 2020-05-25
- #30 - Add parameter to terraform to set max number of runners (#31)
- #17 - adding tests for syncer (#33)
- #20 #21 - Improve docs, add readme, add hook generate terraform docs
0.0.1 - 2020-05-19
- First release.