

# Document history
<a name="doc-history-ct"></a>

The following table describes the important changes in each release of the *AMS Change Type Reference Guide*. For notification about updates to this documentation, you can subscribe to an RSS feed.

| Change | Description | Date | 
| --- |--- |--- |
| [Updated: Management account \| Offboard application account](#doc-history-ct) | [Management \| Managed \| Management account \| Offboard application account (ct-0vdiy51oyrhhm)](https://docs.aws.amazon.com/managedservices/latest/ctref/management-managed-management-account-offboard-application-account.html)<br />Added a warning to ensure all RFCs associated with the application account have reached a terminal state before initiating offboarding. | May 1, 2026 | 
| [New change types: VPC \| Managed prefix list](#doc-history-ct) | Added the following new change types: [VPC \| Create managed prefix list (ct-1bw3q0obl5y75)](https://docs.aws.amazon.com/managedservices/latest/ctref/deployment-advanced-prefixlist-create.html) [VPC \| Delete managed prefix list (ct-3fh88p7t5k5gi)](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-prefixlist-delete.html) [VPC \| Modify managed prefix list (ct-2s1q5tjl0416n)](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-prefixlist-modify.html)  | May 1, 2026 | 
| [New change types](#doc-history-ct) | Added the following new change types: [Resource Access Manager (RAM) \| Create resource share (review required) (ct-054ysptoo4gyk)](https://docs.aws.amazon.com/managedservices/latest/ctref/deployment-advanced-resource-access-manager-ram-create-resource-share-review-required.html) [Load Balancer (ELB) Stack \| Delete listener rule (ct-2qsgbfmrw92zw)](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-load-balancer-elb-stack-delete-listener-rule.html) [VPC \| Associate DHCP option set (ct-0c2g2npbyyrny)](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-vpc-associate-dhcp-option-set.html)  | May 1, 2026 | 
| [Updated EBS volume parameter limits for IOPS, throughput, and volume size](#doc-history-ct) | Updated parameter descriptions and maximum values for IOPS, throughput, and volume size across the following change types: [EBS Volume \| Create from backup (ct-063qsm82cfxu6)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-063qsm82cfxu6-schema-section) [EBS Volume \| Create (ct-16xg8qguovg2w)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-16xg8qguovg2w-schema-section) [EBS Volume \| Modify (ct-1wle0ai4en6km)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1wle0ai4en6km-schema-section) [EBS Volume \| Update (ct-2y6q4vco4miyp)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2y6q4vco4miyp-schema-section) [EC2 \| Auto Scaling Group \| Create (ct-2tylseo8rxfsc)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2tylseo8rxfsc-schema-section) [EC2 \| Instance \| Create (ct-14027q0sjyt1h)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-14027q0sjyt1h-schema-section) [EC2 \| Instance \| Update (ct-3w4lxdl3pqxob)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3w4lxdl3pqxob-schema-section)  | April 28, 2026 | 
| [Deprecated Outbound (Palo Alto) change types](#doc-history-ct) | Removed the following deprecated change types from the AMS Change Type Reference guide: Outbound (Palo Alto) \| Create Allow List Outbound (Palo Alto) \| Create Security Policy Outbound (Palo Alto) \| Add URLs Outbound (Palo Alto) \| Delete Allow List Outbound (Palo Alto) \| Delete Security Policy Outbound (Palo Alto) \| Remove URLs Outbound (Palo Alto) \| Update Security Policy  | April 28, 2026 | 
| [New change type: VPN \| Replace Site-to-Site VPN tunnel](#doc-history-ct) | [ Management \| Advanced stack components \| VPN \| Replace Site-to-Site VPN tunnel](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2sav5hzk5twk4-schema-section) | March 30, 2026 | 
| [New change type: VPC \| Delete route](#doc-history-ct) | [ Management \| Advanced stack components \| VPC \| Delete route](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1nusoameibz5p-schema-section) | March 30, 2026 | 
| [New change type: Remediate DNS scavenging issue](#doc-history-ct) | [ Management \| Advanced stack components \| Directory Service \| Remediate DNS scavenging issue](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3k67klld7cimj-schema-section) | March 30, 2026 | 
| [New change type: RDS Database Stack \| Update parameter group of DB instance or cluster](#doc-history-ct) | [ Management \| Advanced stack components \| RDS Database Stack \| Update parameter group of DB instance or cluster](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0p1oqt4xcp1cv-schema-section) | March 30, 2026 | 
| [Updated change type](#doc-history-ct) | [ Deployment \| Advanced stack components \| EBS Volume \| Create](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-16xg8qguovg2w-schema-section) | January 8, 2026 | 
| [Updated change type](#doc-history-ct) | [ Management \| Advanced stack components \| Security group \| Authorize egress rule](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0lqruajvhwsbk-schema-section) | December 26, 2025 | 
| [New change type: Load Balancer (Elastic Load Balancing) Stack \| Update Deletion Protection](#doc-history-ct) | [ Management \| Advanced stack components \| Load Balancer (ELB) stack \| Update deletion protection](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-28yh0fnzhubnh-schema-section) | December 26, 2025 | 
| [New change type: CloudWatch \| Modify Log Retention Period](#doc-history-ct) | [ Management \| Monitoring and notification \| CloudWatch \| Modify log retention period](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0vfx8rwd1mcnn-schema-section) | December 26, 2025 | 
| [New change type: AWS Resource Access Manager (AWS RAM) \| Create Resource Share (managed automation)](#doc-history-ct) | [ Deployment \| Advanced stack components \| Resource Access Manager (RAM) \| Create resource share (managed automation)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-054ysptoo4gyk-schema-section) | December 26, 2025 | 
| [Updated change type](#doc-history-ct) | [ Management \| Advanced stack components \| Identity and Access Management (IAM) \| Delete or deactivate access key](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-37qquo9wbpa8x-schema-section) | December 16, 2025 | 
| [New change type: Stack from CloudFormation Template \| Delete Failed Stack (Managed Automation)](#doc-history-ct) | [ Management \| Custom Stack \| Stack From CloudFormation Template \| Delete Failed Stack (managed automation)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0ntpkt9wntdfs-schema-section) | December 16, 2025 | 
| [New change type: GuardDuty Suppression Rules \| Create (Managed Automation)](#doc-history-ct) | [ Management \| Monitoring and notification \| GuardDuty suppression rules \| Create (managed automation)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-26swglg6rodzt-schema-section) | December 16, 2025 | 
| [Updated change type](#doc-history-ct) | [ Deployment \| Advanced stack components \| RDS database stack \| Create from snapshot](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-20san5sgtwd9e-schema-section) | November 14, 2025 | 
| [New change type: DNS \| Update Group Managed Service Account](#doc-history-ct) | [ Management \| Directory Service \| DNS \| Update group managed service account](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-15gyrpzjx1yac-schema-section) | October 28, 2025 | 
| [Updated the execution mode for manual CTs](#doc-history-ct) |  Updated the execution mode to Managed automation for manual CTs. | October 24, 2025 | 
| [New change type: VPC \| Create DHCP Option Set](#doc-history-ct) | [ Deployment \| Advanced stack components \| VPC \| Create DHCP option set](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-18rsjua1zosvo-schema-section) | October 22, 2025 | 
| [New change type: Stack \| Remove Stack Resources](#doc-history-ct) | [ Management \| Standard stacks \| Stack \| Remove stack resources](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-03mv2mypai537-schema-section) | October 22, 2025 | 
| [Updated change type](#doc-history-ct) | [ Management \| Advanced stack components \| Application Load Balancer \| Remove ALB listener certificates](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0tpbr6lfa3zng-schema-section) | October 2, 2025 | 
| [New change type: EC2 Instance Stack \| Update IMDS Version (review required)](#doc-history-ct) | [ Management \| Advanced stack components \| EC2 instance stack \| Update IMDS version (review required) ](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1xymw2hi94k1k-schema-section) | October 2, 2025 | 
| [Updated change type](#doc-history-ct) | [ Management \| Advanced stack components \| EBS Volume \| Detach](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2d55p1d7z6w3d-schema-section) | September 25, 2025 | 
| [Updated change type](#doc-history-ct) | [ Management \| Advanced stack components \| Security group \| Authorize ingress rule](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3j2zstluz6dxq-schema-section) | September 25, 2025 | 
| [Updated change type](#doc-history-ct) | [ Management \| Advanced stack components \| Identity and Access Management (IAM) \| Update entity or policy (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-27tuth19k52b4-schema-section) | September 25, 2025 | 
| [Updated change type](#doc-history-ct) | [ Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create entity or policy (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3dpd8mdd9jn1r-schema-section) | September 25, 2025 | 
| [Updated change type](#doc-history-ct) | [ Deployment \| Advanced stack components \| RDS database stack \| Create option group (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-10yi1sd9nst1c-schema-section) | September 25, 2025 | 
| [Updated Tips section for RDS Database Stack \| Stop DB Instance](#doc-history-ct) | [ Management \| Advanced stack components \| RDS database stack \| Stop DB instance](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-rds-database-stack-stop-db-instance.html) | September 25, 2025 | 
| [Updated Tips section for EBS Snapshot \| Delete](#doc-history-ct) | [ Management \| Advanced stack components \| EBS snapshot \| Delete](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-ebs-snapshot-delete.html) | September 25, 2025 | 
| [New change type: Update VPC Endpoint Policy](#doc-history-ct) | [ Management \| Advanced stack components \| VPC endpoint \| Update policy (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-128mp7mbxobd0-schema-section) | September 25, 2025 | 
| [New change type: Update EC2 Instance Metadata Service (IMDS) Region Setting (review required)](#doc-history-ct) | [ Management \| Advanced stack components \| EC2 instance stack \| Update IMDS region-level default settings (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2o1knqxw39mkc-schema-section) | September 25, 2025 | 
| [New change type: Delete NAT gateway (review required)](#doc-history-ct) | [ Management \| Advanced stack components \| NAT gateway \| Delete (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1rexstryxye1b-schema-section) | September 25, 2025 | 
| [New change type: Create ELB Listener Rule](#doc-history-ct) | [ Deployment \| Advanced stack components \| Load balancer (ELB) stack \| Create listener rule](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-18weo4vv83ynk-schema-section) | September 25, 2025 | 
| [Updated Tips section for Approve a CloudFormation ingest stack changeset](#doc-history-ct) | [ Management \| Custom Stack \| Stack from CloudFormation Template \| Approve Changeset and Update](https://docs.aws.amazon.com/managedservices/latest/ctref/management-custom-stack-from-cloudformation-template-approve-changeset-and-update.html) | September 15, 2025 | 
| [Updated expected execution duration](#doc-history-ct) | [ Management \| Advanced stack components \| EC2 instance stack \| Resize](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-ec2-instance-stack-resize.html) | September 5, 2025 | 
| [TOC Glossary link removed](#doc-history-ct) | [AWS Glossary](https://docs.aws.amazon.com/glossary/latest/reference/glos-chap.html). | August 8, 2025 | 
| [New change type: Target group delete (review required)](#doc-history-ct) | [ Management \| Advanced stack components \| Target group \| Delete (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0akjahmgqhu4u-schema-section) | July 23, 2025 | 
| [New change type: Directory Service Create AD SPN](#doc-history-ct) | [ Management \| Directory Service \| Computer object \| Create service principal name (SPN)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0ulaleq7ohuyq-schema-section) | July 23, 2025 | 
| [Updated change types' parameter option set: Restrict the selection of ELBSecurityPolicy-TLS-1-0-2015-04 as the SSL security policy](#doc-history-ct) | [ Management \| Advanced stack components \| Application Load Balancer \| Update](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1a1zzgi2nb83d-schema-section), [ Deployment \| Standard stacks \| High availability one-tier stack \| Create](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-09t6q7j9v5hrn-schema-section), [ Deployment \| Advanced stack components \| Listener \| Create (for ALB or NLB)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-14yjom3kvpinu-schema-section), [ Deployment \| Advanced stack components \| Application Load Balancer \| Create](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-111r1yayblnw4-schema-section) | July 10, 2025 | 
| [Updated change type description note: Target group delete (review required)](#doc-history-ct) | [ Management \| Advanced stack components \| EBS volume \| Detach](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2d55p1d7z6w3d-schema-section) | July 10, 2025 | 
| [New change type parameter: CreatePolicyAsInlinePolicy](#doc-history-ct) | [ Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create entity or policy (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3dpd8mdd9jn1r-schema-section) | June 24, 2025 | 
| [New change type](#doc-history-ct) | [ Management \| Custom stack \| Stack from CloudFormation Template \| Continue update rollback](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-32r1igwrwag4i-schema-section) | June 24, 2025 | 
| [New change type](#doc-history-ct) | [ Management \| Advanced stack components \| VPC \| Manage subnet public IPv4 auto assignment](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1pqxczuw5uwu6-schema-section) | June 24, 2025 | 
| [Updated change type](#doc-history-ct) | [ Management \| Trusted Remediator \| Remediation configuration \| Update](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3kl2d1u40lrj8-schema-section)  New parameter: `PreconfiguredParameters` allows you to change the values of preconfigured parameters in Trusted Advisor checks in Trusted Remediator. | May 20, 2025 | 
| [Updated change type](#doc-history-ct) | [ Deployment \| AMS patterns \| Solution \| Deploy (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2jndrh7uit8uf-schema-section)  New parameter: `ExcludeAccounts` allows you to exclude application accounts from stack instance creation when creating the StackSet stack. | May 20, 2025 | 
| [New change type](#doc-history-ct) | [ Management \| Advanced stack components \| S3 storage \| Update public access](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0z8w5t4t1ti5m-schema-section) | May 20, 2025 | 
| [New change type](#doc-history-ct) | [ Deployment \| Advanced stack components \| Resource Access Manager (RAM) \| Create resolver rule share](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1jy64y7yt71m4-schema-section) | May 20, 2025 | 
| [New change type](#doc-history-ct) | [ Management \| Advanced stack components \| Security group \| Delete ](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-18r16ldqil6w9-schema-section) | April 30, 2025 | 
| [Updated change type](#doc-history-ct) | [ Management \| Advanced stack components \| EC2 instance stack \| Encrypt instance volumes](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0hahohe17csnc-schema-section)  New parameter: `CopyTagsToNewEncryptedVolumes`. | April 24, 2025 | 
| [New change type](#doc-history-ct) | [ Management \| Host security \| Trend Micro DSM \| Scan and get results (review required) ](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-08sgdn5zowyyl-schema-section) | April 22, 2025 | 
| [New change type](#doc-history-ct) | [ Management \| Host security \| Trend Micro DSM \| Remove Trend Micro EPS agent (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2iz9nvw8zlhst-schema-section) | April 22, 2025 | 
| [New change type](#doc-history-ct) | [ Deployment \| Advanced stack components \| RDS database stack \| Create option group (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-10yi1sd9nst1c-schema-section) | April 22, 2025 | 
| [New change type](#doc-history-ct) | [ Deployment \| Advanced stack components \| Database Migration Service (DMS) \| Create target endpoint (kafka)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1mrqxscu15apz-schema-section) | April 22, 2025 | 
| [New change type](#doc-history-ct) | [ Management \| Standalone resources \| Load Balancer \| Delete](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2fuzb2l7hckrj-schema-section) | April 22, 2025 | 
| [Updated change type](#doc-history-ct) | [ Management \| Advanced stack components \| AMI \| Share (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1eiczxw8ihc18-schema-section)  A new parameter, `OrganizationalUnitARNs`, was added. | March 27, 2025 | 
| [Update change type walkthrough](#doc-history-ct) | [ Managed account \| DNS \| Migrate to Route 53 (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2tqi3kjcusen4-schema-section)  The Operation name was updated with "review required" to indicate that this is a manually run change type. | March 27, 2025 | 
| [New change type](#doc-history-ct) | [ Management \| Host security \| Trend Micro DSM \| Exclude files and folders (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3va4bkrxb9z42-schema-section)  Exclude specified files and/or folders from Trend Micro scanning. | March 27, 2025 | 
| [New change type](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3kl2d1u40lrj8-schema-section) | Update the remediation configuration for Trusted Remediator.  | March 19, 2025 | 
| [New change type](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1c7ch8z5phrjp-schema-section) | Request remediation of a Trusted Remediator finding.  | March 19, 2025 | 
| [New change type](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-10nh4ztyxu8kz-schema-section) | Enable or disable the Trusted Remediator service. | March 19, 2025 | 
| [Update change type walkthroughs](#doc-history-ct) |  [Management \| Managed landing zone \| Application account \| Confirm offboarding](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-2wlfo2jxj2rkj-schema-section) and [Management \| Managed landing zone \| Management account \| Offboard application account](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0vdiy51oyrhhm-schema-section)  Note added: After confirming the offboarding you have 48 hours to run the offboarding change type. If not run in 48 hours, the confirmation is dropped and the process must be restarted. | February 20, 2025 | 
| [Update change type walkthrough](#doc-history-ct) | [Management \| Custom Stack \| Stack from CloudFormation Template \| Remediate drift](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-3kinq0u4l33zf-schema-section)  The list of resources supported for this CT was added. | February 20, 2025 | 
| [New change type](#doc-history-ct) | [Management \| Host security \| Trend Micro DSM \| Update agent status (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0biqnokj25gkd-schema-section). | February 20, 2025 | 
| [New change type](#doc-history-ct) | [Management \| Host security \| Trend Micro \| Add User (review required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-24rl68y07m769-schema-section). | February 20, 2025 | 
| [Updated change type: Deployment \| Standalone resources \| EC2 instance \| Create for WIGS (Review Required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-36emj2uapfbu8-schema-section) | A note was added that, in order to use the AWS Marketplace AMI you must subscribe to the AMI from that account, and then agree to the terms of the AMI. AMS can not perform these actions for you because as a buyer you perform these actions yourself. | January 23, 2025 | 
| [New change type: Management \| Monitoring and notification \| SNS \| Update (Review Required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0zzf0fjz76jmb-schema-section) | Change type for requesting that AMS update an SNS topic in your account for you. Use this when you need extra help or communications about the SNS topic to update. | January 23, 2025 | 
| [New change type: Management \| Advanced stack components \| EBS snapshot \| Delete (Review Required)](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1vrnixswq1uwf-schema-section) | Change type for requesting that AMS delete EBS snapshots for you. Use this when you need extra help or communications about the snapshots to delete. | January 23, 2025 | 
| [New change type: Deployment \| Advanced stack components \| S3 access point \| Create](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1elb1vtam0ka5-schema-section) | Change type for creating an S3 access point.  | January 23, 2025 | 
| [New change type parameter](#doc-history-ct) |  [Deployment \| Advanced stack components \| S3 storage \| Create](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1a68ck03fn98r-schema-section) and [Management \| Advanced stack components \| S3 storage \| Update](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-1gi93jhvj28eg-schema-section)  Change types for creating and updating S3 storage, new parameter for tags.  | January 23, 2025 | 
| [Updated change type: Deployment \| Advanced stack components \| RDS database stack \| Create DB subnet group](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-17w6f6kzf6w51-schema-section) | "pattern" is removed from the `Keys` and `Tags` sections of the CT schema. | December 19, 2024 | 
| [Updated change type: Deployment \| AMS Resource Scheduler \| Solution \| Deploy](https://docs.aws.amazon.com/managedservices/latest/ctref/schemas.html#ct-0ywnhc8e5k9z5-schema-section) | Parameters `MemorySize` and `SchedulerFrequency` added to the CT schemas. Default values are `512MB` and `10 mins`, respectively. | December 19, 2024 | 
| [Updated change type: Management \| Advanced stack components \| Target group \| Detach instances](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-target-group-detach-instances.html) | A new version of this change type is now available. | November 21, 2024 | 
| [Updated change type: Management \| Advanced stack components \| S3 storage \| Update](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-s3-storage-update.html) | A new version of this change type is now available. | November 21, 2024 | 
| [Updated change type: Deployment \| Advanced stack components \| S3 storage \| Create](https://docs.aws.amazon.com/managedservices/latest/ctref/deployment-advanced-s3-storage-create.html) | A new version of this change type is now available. | November 21, 2024 | 
| [Updated change type](https://docs.aws.amazon.com/managedservices/latest/ctref/management-access-stack-admin-access-update.html) | The `ExpectedExecutionDurationInMinutes` was updated from `60` to `240` for the following 35 change types: ct-3dpd8mdd9jn1r ct-2epp05svrlwod (v1, v2, v3) ct-220bdb8blaixf ct-1oxx2g2d7hc90 (v1, v2) ct-2jndrh7uit8uf ct-1urj94c3hdfu5 ct-08avsj2e9mc7g ct-25v6r7t8gvkq5 ct-36emj2uapfbu8 (v1, v2) ct-211l2gxvsrrhy ct-2aaaqid7asjy6 ct-30j78u6li9aqr ct-27tuth19k52b4 ct-2zxya20wmf5bf (v1, v2) ct-05yb337abq3x5 ct-3ovo7px2vsa6n (v1, v2, v3) ct-27jjy5wnrfef2 ct-31eyj2hlvqjwu ct-0ttx8eh3ice91 ct-0fpjlxa808sh2 (v1, v2) ct-3cp96z7r065e4 ct-3memthlcmvc1b ct-0ixp4ch2tiu04 ct-1ay83wy4vxa3k ct-3qe6io8t6jtny ct-1pybwg08h8qsz ct-1706xvvk6j9hf ct-2r9xvd3sdsic0 ct-3gjfayulf5hhs ct-2tqi3kjcusen4 ct-1b8fudnqq7m8r ct-07jzw8bzd2on7 ct-2qjqju7h67s7w ct-2rnjx5yd6jgpt ct-34sxfo53yuzah  | November 21, 2024 | 
| [Updated change type](https://docs.aws.amazon.com/managedservices/latest/ctref/management-access-stack-admin-access-update.html) | Change Type description is updated to reflect that this CT is used to update read-only access. | October 24, 2024 | 
| [Updated change type](https://docs.aws.amazon.com/managedservices/latest/ctref/management-access-stack-read-only-access-update.html) | Change Type description is updated to reflect that this CT is used to update stack admin access. | October 24, 2024 | 
| [Updated change type](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-ebs-snapshot-delete.html) | The restriction to delete snapshots creates less than 60 days ago is changed to less than 30 days ago. Added an optional parameter for S3 URI of a bucket that belongs to the same AWS account. The invalid snapshots report is uploaded to this bucket. | October 24, 2024 | 
| [New change type](https://docs.aws.amazon.com/managedservices/latest/ctref/deployment-advanced-rds-database-stack-create-parameter-group-review-required.html) | New change type to create a custom RDS parameter group and optionally attach it to an existing RDS instance. | August 30, 2024 | 
| [Updated change type](https://docs.aws.amazon.com/managedservices/latest/ctref/management-managed-management-account-offboard-application-account.html) | Updated the change type description. | August 9, 2024 | 
| [Update change type](https://docs.aws.amazon.com/managedservices/latest/ctref/deployment-standalone-ec2-instance-create-for-wigs-review-required.html) | Version two of this change type is now available. | May 22, 2024 | 
| [New change type](https://docs.aws.amazon.com/managedservices/latest/ctref/management-advanced-s3-storage-add-event-notification.html) | New change type to add an event notification to the specified S3 bucket through direct API calls. | May 22, 2024 | 
| [Deprecated change type](#doc-history-ct) | Deployment \| Advanced stack components \| AWS Identity and Access Management (IAM) \| Create Entity or Policy (Read Permissions) | April 8, 2024 | 

## Earlier updates
<a name="earlier-updates"></a>

The following table describes the important changes to the documentation of the *AMS Change Type Reference Guide* prior to March 2024.
+ **API version: 2019-05-21**


****  

<table>
<thead>
  <tr><th>Change</th><th>Description</th><th>Link(s)</th></tr>
</thead>
<tbody>
  <tr><td>New CT</td><td>Management \| Managed account \| Automated IAM provisioning with read-write permissions \| Update custom deny list (review required).<br />New CT.</td><td>[ct-2r9xvd3sdsic0](schemas.md#ct-2r9xvd3sdsic0-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Managed landing zone \| Management account \| Offboard application account.<br />Updated CT.</td><td>[ct-0vdiy51oyrhhm](schemas.md#ct-0vdiy51oyrhhm-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Managed Account \| DNS \| Migrate to Route 53.<br />New CT.</td><td>[ct-2tqi3kjcusen4](schemas.md#ct-2tqi3kjcusen4-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| EBS Volume \| Delete.<br />Updated CT.</td><td>[ct-3e3h8u0sp5z80](schemas.md#ct-3e3h8u0sp5z80-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Managed landing zone \| Networking account \| Add static route.<br />Updated Additional Information section.</td><td>[ct-3r2ckznmt0a59](schemas.md#ct-3r2ckznmt0a59-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced Stack Components \| Identity and Access Management (IAM) \| Create Service-Linked role.<br />Added `CustomSuffix` input parameter.</td><td>[ct-2eof6j3mlcwhf](schemas.md#ct-2eof6j3mlcwhf-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Managed Landing Zone \| Management Account \| Create Custom SCP (review required).<br />Added a note in the Tips section.</td><td>[ct-33ste5yc7hprs](schemas.md#ct-33ste5yc7hprs-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced Stack Components \| Route 53 Resolver \| Disassociate resolver rules from VPC.<br />New CT.</td><td>[ct-2pfarpvczsstr](schemas.md#ct-2pfarpvczsstr-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Patching \| Patch window \| Update.<br />Updated CT.</td><td>[ct-2utx36abv83pv](schemas.md#ct-2utx36abv83pv-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| RDS database stack \| Update deletion protection.<br />Updated CT.</td><td>[ct-2syhk4sr7cvyw](schemas.md#ct-2syhk4sr7cvyw-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced Stack Components \| RDS database stack \| Update enhanced monitoring.<br />New CT.</td><td>[ct-3jx80fquylzhf](schemas.md#ct-3jx80fquylzhf-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Directory Service \| DNS \| Create Group Managed Service Account.<br />Updated CT.</td><td>[ct-2qhl8j1pjnbgn](schemas.md#ct-2qhl8j1pjnbgn-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| AWS Backup \| Backup plan \| Update.<br />Updated CT.</td><td>[ct-1ay83wy4vxa3k](schemas.md#ct-1ay83wy4vxa3k-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| RDS database stack \| Update master password.<br />Updated CT.</td><td>[ct-2052miu12d8fn](schemas.md#ct-2052miu12d8fn-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced Stack Components \| ACM \| Create private certificate.<br />Updated CT.</td><td>[ct-3ll9hnadql9s1](schemas.md#ct-3ll9hnadql9s1-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced Stack Components \| EC2 stack \| Create (with additional volumes).<br />Updated Tips section.</td><td>[ct-1aqsjf86w6vxg](schemas.md#ct-1aqsjf86w6vxg-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced Stack Components \| Database Migration Service (DMS) \| Create Source Endpoint.<br />Updated Tips section.</td><td>[Database Migration Service (DMS) \| Create Source Endpoint](deployment-advanced-database-migration-service-dms-create-source-endpoint.md)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced Stack Components \| Route 53 Resolver \| Associate VPC with Resolver Rule.<br />New CT</td><td>[ct-2pbqoffhclpek](schemas.md#ct-2pbqoffhclpek-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| KMS key \| Update.<br />New CT</td><td>[ct-3ovo7px2vsa6n](schemas.md#ct-3ovo7px2vsa6n-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| Security group \| Associate.<br />New CT</td><td>[ct-12lyw7otiyr6f](schemas.md#ct-12lyw7otiyr6f-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| Security group \| Disassociate.<br />New CT</td><td>[ct-13lk0noacn6ua](schemas.md#ct-13lk0noacn6ua-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| S3 storage \| Update policy (review required).<br />New CT</td><td>[ct-0fpjlxa808sh2](schemas.md#ct-0fpjlxa808sh2-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| RDS database stack \| Rotate DB certificate.<br />New CT</td><td>[ct-1ezarc5xph3tq](schemas.md#ct-1ezarc5xph3tq-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced Stack Components \| Tag \| Update (review required).<br />New CT</td><td>[ct-0zko7t3rk2efb](schemas.md#ct-0zko7t3rk2efb-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| KMS key \| Share (review required).<br />New CT</td><td>[ct-05yb337abq3x5](schemas.md#ct-05yb337abq3x5-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| KMS key \| Update (review required).<br />New version</td><td>[ct-3ovo7px2vsa6n](schemas.md#ct-3ovo7px2vsa6n-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Directory Service \| Directory \| Create AD trust.</td><td>[ct-0x6dylrnfjgz5](schemas.md#ct-0x6dylrnfjgz5-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create access key.<br />Version 2.</td><td>[ct-2hhqzgxvkcig8](schemas.md#ct-2hhqzgxvkcig8-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| Redshift \| Create (cluster subnet group).<br />New required parameterSubnetGroupDescription.</td><td>[ct-0q43l40hxrzum](schemas.md#ct-0q43l40hxrzum-schema-section)</td></tr>
  <tr><td>Updated CTs</td><td>Deployment \| Advanced stack components \| EC2 Stack \| Create.<br />Deployment \| Ingestion \| Stack from migration partner migrated instance \| Create.<br />New optional parameter EnforceIMDSv2.</td><td>[ct-14027q0sjyt1h](schemas.md#ct-14027q0sjyt1h-schema-section) [ct-257p9zjk14ija](schemas.md#ct-257p9zjk14ija-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Managed account \| Stack access duration \| Override (review required).</td><td>[ct-0jb01cofkhwk1](schemas.md#ct-0jb01cofkhwk1-schema-section)</td></tr>
  <tr><td>New CTs</td><td>Deployment \| Advanced Stack Components \| Identity and Access Management (IAM) \| Create entity or policy (read-write permissions).<br />Management \| Advanced Stack Components \| Identity and Access Management (IAM) \| Update entity or policy (read-write permissions).<br />Management \| Advanced Stack Components \| Identity and Access Management (IAM) \| Delete entity or policy (read-write permissions).<br />Management \| Managed account \| Automated IAM provisioning with read-write permissions \| Enable (review required)</td><td>[ct-1n9gfnog5x7fl](schemas.md#ct-1n9gfnog5x7fl-schema-section) [ct-1e0xmuy1diafq](schemas.md#ct-1e0xmuy1diafq-schema-section) [ct-17cj84y7632o6](schemas.md#ct-17cj84y7632o6-schema-section) [ct-1706xvvk6j9hf](schemas.md#ct-1706xvvk6j9hf-schema-section)</td></tr>
  <tr><td>New CTs</td><td>Deployment \| Managed landing zone \| Management account \| Create stacksets stack, ct-16pknsfa8lul7.<br />Management \| Managed landing zone \| Management account \| Delete stacksets stack, ct-1yqy4frl5s8y8.<br />Management \| Managed landing zone \| Management account \| Update stacksets stack, ct-1v9g9n30woc8h.</td><td>[ct-16pknsfa8lul7](schemas.md#ct-16pknsfa8lul7-schema-section) [ct-1yqy4frl5s8y8](schemas.md#ct-1yqy4frl5s8y8-schema-section) [ct-1v9g9n30woc8h](schemas.md#ct-1v9g9n30woc8h-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Access \| Stack admin access \| Grant, ct-1dmlg9g1l91h6.<br />Version 3.0 adds support for a custom maximum stack access time. Submit an RFC with the [Management \| Other \| Other \| Update (review required)](management-other-other-update-review-required.md) (ct-0xdawir96cy7k) change type in the SALZ account or MALZ Shared Services account to customize this value.</td><td>[ct-1dmlg9g1l91h6](schemas.md#ct-1dmlg9g1l91h6-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Access \| Stack admin access \| Update, ct-0ikpop8zqhkxg.<br />Version 3.0 adds support for a custom maximum stack access time. Submit an RFC with the [Management \| Other \| Other \| Update (review required)](management-other-other-update-review-required.md) (ct-0xdawir96cy7k) change type in the SALZ account or MALZ Shared Services account to customize this value.</td><td>[ct-0ikpop8zqhkxg](schemas.md#ct-0ikpop8zqhkxg-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Access \| Stack read-only access \| Grant, ct-199h35t7uz6jl.<br />Version 3.0 adds support for a custom maximum stack access time. Submit an RFC with the [Management \| Other \| Other \| Update (review required)](management-other-other-update-review-required.md) (ct-0xdawir96cy7k) change type in the SALZ account or MALZ Shared Services account to customize this value.</td><td>[ct-199h35t7uz6jl](schemas.md#ct-199h35t7uz6jl-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Access \| Stack read-only access \| Update, ct-3kh1wiizlne1i.<br />Version 3.0 adds support for a custom maximum stack access time. Submit an RFC with the [Management \| Other \| Other \| Update (review required)](management-other-other-update-review-required.md) (ct-0xdawir96cy7k) change type in the SALZ account or MALZ Shared Services account to customize this value.</td><td>[ct-3kh1wiizlne1i](schemas.md#ct-3kh1wiizlne1i-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Access \| Stack admin access \| Grant, ct-1dmlg9g1l91h6.<br />Version 3.0 is the default version, adding support for multiple usernames and access times up to 12 hours (previously 8).</td><td>[ct-1dmlg9g1l91h6](schemas.md#ct-1dmlg9g1l91h6-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Access \| Stack admin access \| Update, ct-0ikpop8zqhkxg.<br />Version 3.0 is the default version, adding support for multiple usernames and access times up to 12 hours (previously 8).</td><td>[ct-0ikpop8zqhkxg](schemas.md#ct-0ikpop8zqhkxg-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Access \| Stack read-only access \| Grant, ct-199h35t7uz6jl.<br />Version 3.0 is the default version, adding support for multiple usernames and access times up to 12 hours (previously 8).</td><td>[ct-199h35t7uz6jl](schemas.md#ct-199h35t7uz6jl-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Access \| Stack read-only access \| Update, ct-3kh1wiizlne1i.<br />Version 3.0 is the default version, adding support for multiple usernames and access times up to 12 hours (previously 8).</td><td>[ct-3kh1wiizlne1i](schemas.md#ct-3kh1wiizlne1i-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| Bastions \| Update bastion instance size (review required), ct-0tmpmp1wpgkr9.</td><td>[ct-0tmpmp1wpgkr9](schemas.md#ct-0tmpmp1wpgkr9-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| Bastions \| Update bastion instance or session counts (review required) ct-1962s5oczal9z.</td><td>[ct-1962s5oczal9z](schemas.md#ct-1962s5oczal9z-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| Bastions \| Add CIDR Ingress (review required) ct-36zubwzxp44a4.</td><td>[ct-36zubwzxp44a4](schemas.md#ct-36zubwzxp44a4-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| EC2 instance stack \| Associate private ip addresses (review required), ct-1pvlhug439gl2.</td><td>[ct-1pvlhug439gl2](schemas.md#ct-1pvlhug439gl2-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| EC2 instance stack \| Update instance detailed monitoring, ct-0tmpmp1wpgkr9.</td><td>[ct-0tmpmp1wpgkr9](schemas.md#ct-0tmpmp1wpgkr9-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| VPC \| Add static route (review required), ct-06bwg93ukgg8t.</td><td>[ct-06bwg93ukgg8t](schemas.md#ct-06bwg93ukgg8t-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| AMI \| Deregister (multiple), ct-26vhhlj9jmlpf<br />Version 2.0 supports deregistering multiple AMIs in one request.</td><td>[ct-26vhhlj9jmlpf](schemas.md#ct-26vhhlj9jmlpf-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| Security group \| Authorize ingress rule, ct-3j2zstluz6dxq.<br />Updated to version 3.0.</td><td>[ct-3j2zstluz6dxq](schemas.md#ct-3j2zstluz6dxq-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| Security group \| Revoke ingress rule, ct-1vjbacfr4ufdv.<br />Updated to version 3.0.</td><td>[ct-1vjbacfr4ufdv](schemas.md#ct-1vjbacfr4ufdv-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| AMS Resource Scheduler \| Solution \| Deploy, ct-0ywnhc8e5k9z5.<br />Version 2 requires the Action (deploy or update) parameter.</td><td>[ct-0ywnhc8e5k9z5](schemas.md#ct-0ywnhc8e5k9z5-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| AMS Resource Scheduler \| Solution \| Update, ct-2c7ve50jost1v.<br />Version 2 requires the Action (deploy or update) parameter.</td><td>[ct-2c7ve50jost1v](schemas.md#ct-2c7ve50jost1v-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| Auto Scaling group \| Create, ct-2tylseo8rxfsc.<br />New optional parameter EnforceIMDSv2.</td><td>[ct-2tylseo8rxfsc](schemas.md#ct-2tylseo8rxfsc-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Standard stacks \| High availability two-tier stack \| Create, ct-06mjngx5flwto.<br />New optional parameter EnforceIMDSv2.</td><td>[ct-06mjngx5flwto](schemas.md#ct-06mjngx5flwto-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Directory Service \| Directory \| Share Directory, ct-369odosk0pd9w.</td><td>[ct-369odosk0pd9w](schemas.md#ct-369odosk0pd9w-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Directory Service \| Directory \| Unshare Directory, ct-2xd2anlb5hbzo.</td><td>[ct-2xd2anlb5hbzo](schemas.md#ct-2xd2anlb5hbzo-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Host security \| Trend Micro DSM \| Add login (read-only) , ct-0wspy4o646g9p.<br />Version 2 has new parameters and examples. It does not require a review.</td><td>[ct-0wspy4o646g9p](schemas.md#ct-0wspy4o646g9p-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| AMI \| Deregister, ct-26vhhlj9jmlpf.<br />Version 2 supports deleting or deregistering multiple AMIs.</td><td>[ct-26vhhlj9jmlpf](schemas.md#ct-26vhhlj9jmlpf-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Directory Service \| DNS \| Create conditional forwarder, ct-3nba0wtdugnan.<br />Conditional forwarder now supports up to 5 IP addresses.</td><td>[ct-3nba0wtdugnan](schemas.md#ct-3nba0wtdugnan-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Directory Service \| DNS \| Update conditional forwarder, ct-2fqmbyud166z9.<br />Conditional forwarder now supports up to 5 IP addresses.</td><td>[ct-2fqmbyud166z9](schemas.md#ct-2fqmbyud166z9-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| EC2 instance stack \| Change hostname (Linux), ct-2781aqd6f6svs.<br />Version 2 does not require a review.</td><td>[ct-2781aqd6f6svs](schemas.md#ct-2781aqd6f6svs-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| Auto Scaling group \| Create, ct-2tylseo8rxfsc.<br />Version 3 has new parameter descriptions.</td><td>[ct-2tylseo8rxfsc](schemas.md#ct-2tylseo8rxfsc-schema-section)</td></tr>
  <tr><td>Updated CT walkthrough</td><td>Management \| Managed landing zone \| Application account \| Confirm offboarding, ct-2wlfo2jxj2rkj.<br />Added tips.</td><td>[ct-2wlfo2jxj2rkj](schemas.md#ct-2wlfo2jxj2rkj-schema-section)</td></tr>
  <tr><td>Updated CT walkthroughs</td><td>Management \| Advanced stack components \| DNS (private) \| Update, ct-1d55pi44ff21u and Deployment \| Advanced stack components \| DNS (private) \| Create, ct-0c38gftq56zj6.<br />Added tips about 500 limit on RRs.</td><td>[ct-1d55pi44ff21u](schemas.md#ct-1d55pi44ff21u-schema-section) and [ct-0c38gftq56zj6](schemas.md#ct-0c38gftq56zj6-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| VPCEndpoint (Interface) \| Create, ct-3oafsdbzjtuqp.</td><td>[ct-3oafsdbzjtuqp](schemas.md#ct-3oafsdbzjtuqp-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| S3 storage \| Update encryption, ct-128svy9nn2yj8.</td><td>[ct-128svy9nn2yj8](schemas.md#ct-128svy9nn2yj8-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| S3 storage \| Update versioning, ct-2hh93eyzmwbkd.</td><td>[ct-2hh93eyzmwbkd](schemas.md#ct-2hh93eyzmwbkd-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| RDS database stack \| Update instance type, ct-13swbwdxg106z.</td><td>[ct-13swbwdxg106z](schemas.md#ct-13swbwdxg106z-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| RDS database stack \| Update MultiAZ setting, ct-36jq7gvwyty8h.</td><td>[ct-36jq7gvwyty8h](schemas.md#ct-36jq7gvwyty8h-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| RDS database stack \| Update storage, ct-0loed9dzig1ze.</td><td>[ct-0loed9dzig1ze](schemas.md#ct-0loed9dzig1ze-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| RDS snapshot \| Copy, ct-1c0jrxd3su5oe.<br />Added support for multi-region (MRK) KMS keys.</td><td>[ct-1c0jrxd3su5oe](schemas.md#ct-1c0jrxd3su5oe-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| EC2 instance stack \| Replace instance profile, ct-37kcp2v1mriu6.<br />Updated to version 2.0 with new parameters.</td><td>[ct-37kcp2v1mriu6](schemas.md#ct-37kcp2v1mriu6-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| EC2 stack \| Create (with additional volumes), ct-1aqsjf86w6vxg.<br />Added support for specifying core count and threads per core.</td><td>[ct-1aqsjf86w6vxg](schemas.md#ct-1aqsjf86w6vxg-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| KMS key \| Create, ct-1d84keiri1jhg.<br />Added guidance for deleting a key, and a warning that deletion does not occur automatically.</td><td>[ct-1d84keiri1jhg](schemas.md#ct-1d84keiri1jhg-schema-section)</td></tr>
  <tr><td>Updated CTs</td><td>Deployment \| Advanced stack components \| Tag \| Create, ct-3cx7we852p3af.<br />Updated parameters, description, and console screenshot.</td><td>[ct-3cx7we852p3af](schemas.md#ct-3cx7we852p3af-schema-section)</td></tr>
  <tr><td>Updated CTs</td><td>Management \| Advanced stack components \| Tag \| Update, ct-0xqwmtn1hfh8u.<br />Updated parameters, description, and console screenshot.</td><td>[ct-0xqwmtn1hfh8u](schemas.md#ct-0xqwmtn1hfh8u-schema-section)</td></tr>
  <tr><td>Updated CTs</td><td>Management \| Advanced stack components \| Tag \| Delete, ct-2zebb2czoxpjd.<br />Updated parameters, description, and console screenshot.</td><td>[ct-2zebb2czoxpjd](schemas.md#ct-2zebb2czoxpjd-schema-section)</td></tr>
  <tr><td>Updated CTs</td><td>Management \| Standalone resources \| EC2 instance \| Terminate, ct-3dfubbpesm2v9.<br />Updated parameters, description, and console screenshot.</td><td>[ct-3dfubbpesm2v9](schemas.md#ct-3dfubbpesm2v9-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| EC2 instance stack \| Update DeleteOnTermination (review required), ct-2aaaqid7asjy6.<br />Updated description of the DeleteOnTermination parameter.</td><td>[ct-2aaaqid7asjy6](schemas.md#ct-2aaaqid7asjy6-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| KMS key \| Update, ct-3ovo7px2vsa6n.<br />Updated the description of the KeyRotation parameter.</td><td>[ct-3ovo7px2vsa6n](schemas.md#ct-3ovo7px2vsa6n-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| RDS database stack \| Update master user password, ct-2052miu12d8fn.<br />Updated examples and tips with additional guidance for using SSM Parameter Store or AWS Secrets Manager</td><td>[ct-2052miu12d8fn](schemas.md#ct-2052miu12d8fn-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| Target group \| Detach instances, ct-37bq2l9c8fzxv.<br />Updated description of InstancesIds parameter.</td><td>[ct-37bq2l9c8fzxv](schemas.md#ct-37bq2l9c8fzxv-schema-section)</td></tr>
  <tr><td>Updated CTs</td><td>Added support for GP3 storage, and choice of SQL character sets to:[See the AWS documentation website for more details](http://docs.aws.amazon.com/managedservices/latest/ctref/doc-history-ct.html)</td><td>[ct-2z60dyvto9g6c](schemas.md#ct-2z60dyvto9g6c-schema-section) and [ct-12w49boaiwtzp](schemas.md#ct-12w49boaiwtzp-schema-section) </td></tr>
  <tr><td>Updated CTs</td><td>Added support for multi-Region KMS keys (MRK) to:[See the AWS documentation website for more details](http://docs.aws.amazon.com/managedservices/latest/ctref/doc-history-ct.html)</td><td>[ct-1a68ck03fn98r](schemas.md#ct-1a68ck03fn98r-schema-section) and [ct-1gi93jhvj28eg](schemas.md#ct-1gi93jhvj28eg-schema-section) </td></tr>
  <tr><td>CT Name Change</td><td>Deployment \| Advanced stack components \| OpenSearch \| Create domain, ct-0azen3a9anxzj is removed and replaced with Deployment \| Advanced stack components \| OpenSearch \| Create domain, ct-281et7bs9ep4s.<br />This update included a change to the OpenSearch \| Create domain schema.</td><td>[ct-281et7bs9ep4s](schemas.md#ct-281et7bs9ep4s-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Managed landing zone \| Networking account \| Remove TGW static route, ct-0rmgrnr9w8mzh.</td><td>[ct-0rmgrnr9w8mzh](schemas.md#ct-0rmgrnr9w8mzh-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| AMS Resource Scheduler \| Solution \| Deploy, ct-2c7ve50jost1v.</td><td>[ct-0ywnhc8e5k9z5](schemas.md#ct-0ywnhc8e5k9z5-schema-section)</td></tr>
  <tr><td>Updated CTs</td><td>Management \| Advanced stack components \| DNS (private) \| Create, ct-0c38gftq56zj6.<br />Management \| Advanced stack components \| DNS (private) \| Update, ct-1d55pi44ff21u.<br />Management \| Advanced stack components \| DNS (public) \| Create, ct-0vzsr2nyraedl.<br />Management \| Advanced stack components \| DNS (public) \| Update, ct-1hzofpphabs3i.<br />Parameters and CLI examples have changed for version 2.0.</td><td> [ct-0c38gftq56zj6](schemas.md#ct-0c38gftq56zj6-schema-section), [ct-1d55pi44ff21u](schemas.md#ct-1d55pi44ff21u-schema-section), [ct-0vzsr2nyraedl](schemas.md#ct-0vzsr2nyraedl-schema-section), and [ct-1hzofpphabs3i](schemas.md#ct-1hzofpphabs3i-schema-section) </td></tr>
  <tr><td>Updated CTs</td><td>Deployment \| Advanced stack components \| RDS database stack \| Create (for Aurora), ct-2jvzjwunghrhy.<br />Deployment \| Advanced stack components \| RDS database stack \| Create from backup (for Aurora), ct-2wllq61djysxz.<br />Management \| Advanced stack components \| RDS database stack \| Update (for Aurora), ct-2dphvdy1krpj6.<br />Updated descriptions, added min/max parameters serverless scaling, and added InstanceType values.</td><td> [ct-2jvzjwunghrhy](schemas.md#ct-2jvzjwunghrhy-schema-section), [ct-2wllq61djysxz](schemas.md#ct-2wllq61djysxz-schema-section), and [ct-2dphvdy1krpj6](schemas.md#ct-2dphvdy1krpj6-schema-section) </td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| EC2 instance stack \| Resize, ct-15mazjj88xc69.<br />Updated description, parameters, and CLI examples for version 2.0.</td><td>[ct-15mazjj88xc69](schemas.md#ct-15mazjj88xc69-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| AMS Resource Scheduler \| Solution \| Update, ct-2c7ve50jost1v.</td><td>[ct-2c7ve50jost1v](schemas.md#ct-2c7ve50jost1v-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management\| AMS Resource Scheduler \| Solution \| Deploy, ct-0ywnhc8e5k9z5.<br />Removed SALZ restriction and added Action parameter.</td><td>[ct-0ywnhc8e5k9z5](schemas.md#ct-0ywnhc8e5k9z5-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create access key, ct-2hhqzgxvkcig8.</td><td>[ct-2hhqzgxvkcig8](schemas.md#ct-2hhqzgxvkcig8-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| Identity and Access Management (IAM) \| Deleate or deactivate access key, ct-37qquo9wbpa8x.</td><td>[ct-37qquo9wbpa8x](schemas.md#ct-37qquo9wbpa8x-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| Application Load Balancer \| Create, ct-111r1yayblnw4.<br />Added parameter TargetGroup to optionally specify a load balancer TargetGroup.</td><td>[ct-111r1yayblnw4](schemas.md#ct-111r1yayblnw4-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Managed landing zone \| Application account \| Confirm Offboarding, ct-2wlfo2jxj2rkj.<br />Added a tip not to use this for Customer Managed application accounts.</td><td>[ct-2wlfo2jxj2rkj](schemas.md#ct-2wlfo2jxj2rkj-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Managed landing zone \| Management account \| Offboard application account, ct-0vdiy51oyrhhm.<br />Added a tip: when applied to Customer Managed application accounts, there is no confirmation step.</td><td>[ct-0vdiy51oyrhhm](schemas.md#ct-0vdiy51oyrhhm-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| KMS alias \| Create, ct-2svg4k2fqi4ak.<br />Updated the AliasName pattern to reject names with prohibited prefixes.</td><td>[ct-2svg4k2fqi4ak](schemas.md#ct-2svg4k2fqi4ak-schema-section)</td></tr>
  <tr><td>New Content </td><td>The [What Are AMS Change Types?](what-are-change-types.md) file now has a link to a zip file with a current comma-separated value (CSV) file of change types.</td><td>[Change type CSV output file](samples/output.zip)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| EBS snapshot \| Archive, ct-059ewa92tc2i1.</td><td>[ct-059ewa92tc2i1](schemas.md#ct-059ewa92tc2i1-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| Identity and Access Management (IAM) \| Update max session duration, ct-1fzddqrr20c2i.</td><td>[ct-1fzddqrr20c2i](schemas.md#ct-1fzddqrr20c2i-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| RDS snapshot \| Create (Cluster), ct-2zqwr34epwzx1.</td><td>[ct-2zqwr34epwzx1](schemas.md#ct-2zqwr34epwzx1-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Standalone resources \| RDS instance \| Terminate, ct-3glr80c15rp7z.</td><td>[ct-3glr80c15rp7z](schemas.md#ct-3glr80c15rp7z-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| RDS snapshot \| Delete, ct-0idxb0xsg1ui6.</td><td>[ct-0idxb0xsg1ui6](schemas.md#ct-0idxb0xsg1ui6-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Managed landing zone \| Networking account \| Create transit gateway route table, ct-3dscwaeyi6cup.</td><td>[ct-3dscwaeyi6cup](schemas.md#ct-3dscwaeyi6cup-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| S3 storage \| Manage lifecycle configuration, ct-1ax768xtu8c9q.</td><td>[ct-1ax768xtu8c9q](schemas.md#ct-1ax768xtu8c9q-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Advanced stack components \| EC2 stack \| Create, ct-14027q0sjyt1h.<br />Added a tip not to select instance types that are too small.</td><td>[ct-14027q0sjyt1h](schemas.md#ct-14027q0sjyt1h-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| Application Load Balancer \| Update, ct-1a1zzgi2nb83d.<br />Updated the description of the LoadBalancerSubnetIds parameter.</td><td>[ct-1a1zzgi2nb83d](schemas.md#ct-1a1zzgi2nb83d-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Deployment \| Patching \| SSM patch window \| Create, ct-0el2j07llrxs7.<br />Replaced references to Route 53 hosted zones with SSM window creation.</td><td>[ct-0el2j07llrxs7](schemas.md#ct-0el2j07llrxs7-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| AWS service \| Self-provisioned service \| Add, ct-1w8z66n899dct.<br />List of service names updated to include AWS Private Certificate Authority (PCA) </td><td>[ct-1w8z66n899dct](schemas.md#ct-1w8z66n899dct-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| AWS service \| Self-provisioned service \| Add (review required), ct-3qe6io8t6jtny.<br />List of service names updated to include AWS Private Certificate Authority (PCA) </td><td>[ct-3qe6io8t6jtny](schemas.md#ct-3qe6io8t6jtny-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Patching \| On demand patching \| Run, ct-3oy53m1qzl2s5.<br />Added a note regarding the StartInactiveInstances parameter. Inactive instances return to their inactive state after patching.</td><td>[ct-3oy53m1qzl2s5](schemas.md#ct-3oy53m1qzl2s5-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| Tag \| Bulk update, ct-3047c34zuvswh.<br />Added Supported Resources section and a link to [Tag bulk update notes](https://docs.aws.amazon.com/managedservices/latest/userguide/ams-tags-bu-notes.html). </td><td>[ct-3047c34zuvswh](schemas.md#ct-3047c34zuvswh-schema-section)</td></tr>
  <tr><td>Updated CT</td><td>Management \| Advanced stack components \| Tag \| Bulk update (review required), ct-0k4b96aatyqgl.<br />Added Supported Resources section and a link to [Tag bulk update notes](https://docs.aws.amazon.com/managedservices/latest/userguide/ams-tags-bu-notes.html). </td><td>[ct-0k4b96aatyqgl](schemas.md#ct-0k4b96aatyqgl-schema-section)</td></tr>
  <tr><td>New CT</td><td>Deployment \| Advanced stack components \| RDS snapshot \| Copy (for Aurora), ct-19fdy7np55xiu.</td><td>[ct-19fdy7np55xiu](schemas.md#ct-19fdy7np55xiu-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| RDS database stack \| Start Aurora Cluster, ct-02ocqy2i0jx3t.</td><td>[ct-02ocqy2i0jx3t](schemas.md#ct-02ocqy2i0jx3t-schema-section)</td></tr>
  <tr><td>New CT</td><td>Management \| Advanced stack components \| RDS database stack \| Stop Aurora Cluster, ct-37vqa0oggka3q.</td><td>[ct-37vqa0oggka3q](schemas.md#ct-37vqa0oggka3q-schema-section)</td></tr>
  <tr><td>Updated CT schema</td><td>Management \| AWS service \| Self-provisioned service \| Add, ct-1w8z66n899dct.<br />The AWS Codepipeline service was removed from the possible services you could add with this CT.</td><td>[ct-1w8z66n899dct](schemas.md#ct-1w8z66n899dct-schema-section)</td></tr>
  <tr><td>Updated CT schema</td><td>Deployment \| Advanced stack components \| AMI \| Copy, ct-046aizcwg5idf.<br />The **Region** parameter was updated to add: "This must be the account onboarded Region."</td><td>[ct-046aizcwg5idf](schemas.md#ct-046aizcwg5idf-schema-section)</td></tr>
  <tr><td>Updated CT schemas</td><td>Management \| Directory Service \| DNS \| Add A record, ct-2w3rbmnny1qpo<br />Management \| Directory Service \| DNS \| Add CNAME record, ct-2murl5xzbxoxf<br />Management \| Directory Service \| DNS \| Remove record, ct-1icrtx8ydvdwe<br />Improved examples.</td><td>[ct-2w3rbmnny1qpo](schemas.md#ct-2w3rbmnny1qpo-schema-section)<br />[ct-2murl5xzbxoxf](schemas.md#ct-2murl5xzbxoxf-schema-section)<br />[ct-1icrtx8ydvdwe](schemas.md#ct-1icrtx8ydvdwe-schema-section)</td></tr>
  <tr><td>Updated CT tips</td><td>Deployment \| Advanced stack components \| RDS database stack \| Create from snapshot, ct-20san5sgtwd9e.<br />Added a note: "You can't restore a DB instance from a DB snapshot that is both shared and encrypted. Instead, you can make a copy of the DB snapshot and restore the DB instance from the copy. To copy the shared snapshot, please use the following CT: [RDS Snapshot \| Copy](https://docs.aws.amazon.com/managedservices/latest/ctref/deployment-advanced-rds-snapshot-copy.html)".</td><td>[ct-20san5sgtwd9e](schemas.md#ct-20san5sgtwd9e-schema-section)</td></tr>
  <tr><td>Updated CT schemas</td><td>Deployment/Advanced stack components/Tag/Create, ct-3cx7we852p3af.<br />Management/Advanced stack components/Tag/Delete, ct-2zebb2czoxpjd.<br />Management/Advanced stack components/Tag/Update, ct-0xqwmtn1hfh8u.<br />For all three, the **ResourceArns** parameter description was updated.</td><td>[ct-3cx7we852p3af](schemas.md#ct-3cx7we852p3af-schema-section)<br />[ct-2zebb2czoxpjd](schemas.md#ct-2zebb2czoxpjd-schema-section)<br />[ct-0xqwmtn1hfh8u](schemas.md#ct-0xqwmtn1hfh8u-schema-section)</td></tr>
  <tr><td>Updated CT tips</td><td>Management \| Directory Service \| DNS \| Add A record, ct-2w3rbmnny1qpo.<br />Management \| Directory Service \| DNS \| Add CNAME record, ct-2murl5xzbxoxf.<br />Added a note: "For multi-account landing zone (MALZ), use this change type in the shared services account."</td><td>[ct-2w3rbmnny1qpo](schemas.md#ct-2w3rbmnny1qpo-schema-section)<br />[ct-2murl5xzbxoxf](schemas.md#ct-2murl5xzbxoxf-schema-section)</td></tr>
  <tr><td>Updated content</td><td>Updated **Tips** section with information on "Linux Preparation for AMI Create," "Windows Preparation for AMI Create," and "UserData for AMI Create."</td><td>[AMI \| Create](deployment-advanced-ami-create.md).</td></tr>
  <tr><td>New content</td><td>Example walkthroughs for each change type have been moved here from the retired *AMS Advanced Change Management Guide*.<br />All change types with execution mode=manual are now appended with "(review required)" to the Operation name. All change types with execution mode=automated are now appended with nothing (any cases of "(auto)" or "(no review required)" are removed).</td><td>[Change Types by Classification](classifications.md).</td></tr>
  <tr><td>New CT</td><td>Management \| Managed account \| Direct Change mode \| Enable, CT ID: ct-3rd4781c2nnhp.</td><td>[ct-3rd4781c2nnhp](schemas.md#ct-3rd4781c2nnhp-schema-section)</td></tr>
  <tr><td rowspan="2">Updated CTs</td><td>Change types that included "Master account" in their classification have all been updated to "Management account." </td><td>[Managed Landing Zone Subcategory](deployment-managed-landing-zone-section.md)</td></tr>
  <tr><td>Removed the space in pattern for parameter: `IpProtocol`.</td><td>[ct-3j2zstluz6dxq](schemas.md#ct-3j2zstluz6dxq-schema-section) [ct-0lqruajvhwsbk](schemas.md#ct-0lqruajvhwsbk-schema-section) [ct-111fhplhx9axe](schemas.md#ct-111fhplhx9axe-schema-section) [ct-1vjbacfr4ufdv](schemas.md#ct-1vjbacfr4ufdv-schema-section)</td></tr>
  <tr><td rowspan="4">New CTs:</td><td>Management \| Advanced stack components \| EC2 instance stack \| Change time zone (ct-3g9dbtun44mal)</td><td>[ct-3g9dbtun44mal](schemas.md#ct-3g9dbtun44mal-schema-section)</td></tr>
  <tr><td>Management \| Advanced stack components \| RDS database stack \| Update deletion protection</td><td>[ct-2syhk4sr7cvyw](schemas.md#ct-2syhk4sr7cvyw-schema-section)</td></tr>
  <tr><td>Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create service-specific credentials</td><td>[ct-2ni31oyto1i5k](schemas.md#ct-2ni31oyto1i5k-schema-section)</td></tr>
  <tr><td>Management \| Advanced stack components \| Identity and Access Management (IAM) \| Reset service-specific credentials</td><td>[ct-22cbvc1yujhec](schemas.md#ct-22cbvc1yujhec-schema-section)</td></tr>
  <tr><td rowspan="6">Updated CTs:</td><td>Deployment\| Managed landing zone \| Management Account \| Create custom SCP (review required) (ct-33ste5yc7hprs) and <br />Deployment\| Managed landing zone \| Networking account \| Create application route table (review required) (ct-1urj94c3hdfu5)<br />Change classification to include "(review required)" appended to the Operation name.</td><td>[ct-33ste5yc7hprs](schemas.md#ct-33ste5yc7hprs-schema-section) and [ct-1urj94c3hdfu5](schemas.md#ct-1urj94c3hdfu5-schema-section)</td></tr>
  <tr><td>Deployment \| Advanced stack components \| Database Migration Service (DMS) \| Start replication task (ct-1yq7hhqse71yg)<br />Updated to indicate the **DocumentName** and **Region are required parameters**; previously, they were erroneously listed as optional.</td><td>[ct-1yq7hhqse71yg](schemas.md#ct-1yq7hhqse71yg-schema-section)</td></tr>
  <tr><td>Deployment \| AWS Backup \| Backup plan \| Create (ct-2hyozbpa0sx0m)<br />Added note to warn that not all resources types supported by AWS Backup are enabled by default. Find which services are in [Getting Started 1: Service Opt-In](https://docs.aws.amazon.com/aws-backup/latest/devguide/service-opt-in.html). If changes need to be made, open an RFC using CT ct-1e1xtak34nx76.</td><td>[ct-2hyozbpa0sx0m](schemas.md#ct-2hyozbpa0sx0m-schema-section)</td></tr>
  <tr><td>Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create EC2 instance profile (ct-117rmp64d5mvb) and Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create Lambda execution role (ct-1k3oui719dcju)<br />New Version: 2.0. Updated to make JSON copy-paste easier.</td><td>[ct-117rmp64d5mvb](schemas.md#ct-117rmp64d5mvb-schema-section) and [ct-1k3oui719dcju](schemas.md#ct-1k3oui719dcju-schema-section)</td></tr>
  <tr><td>Deployment \| Advanced stack components \| RDS database stack \| Create (ct-2z60dyvto9g6c)<br />Added a new value for the **RDSDBEngine** parameter: mariadb.</td><td>[ct-2z60dyvto9g6c](schemas.md#ct-2z60dyvto9g6c-schema-section)</td></tr>
  <tr><td>Deployment \| Advanced stack components \| RDS database stack \| Update (ct-12w49boaiwtzp)<br />Extended the expected duration time to 360 minutes from 60 minutes.</td><td>[ct-12w49boaiwtzp](schemas.md#ct-12w49boaiwtzp-schema-section)</td></tr>
  <tr><td>Updated CTs "Additional Information"</td><td>Added an important note about limitations on the resources that can be remediated.</td><td>[ct-34sxfo53yuzah](schemas.md#ct-34sxfo53yuzah-schema-section)</td></tr>
  <tr><td rowspan="6">New CTs:</td><td>Management \| AWS service \| Self-provisioned service \| Add Self-Service Provisioning service (no review required)</td><td>[ct-1w8z66n899dct](schemas.md#ct-1w8z66n899dct-schema-section)</td></tr>
  <tr><td>Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create service-linked role</td><td>[ct-2eof6j3mlcwhf](schemas.md#ct-2eof6j3mlcwhf-schema-section)</td></tr>
  <tr><td>Management \| Advanced stack components \| ACM \| Delete certificate</td><td>[ct-1q8q56cmwqj9m](schemas.md#ct-1q8q56cmwqj9m-schema-section)</td></tr>
  <tr><td>Management \| Managed landing zone \| Application account \| Confirm offboarding</td><td>[ct-2wlfo2jxj2rkj](schemas.md#ct-2wlfo2jxj2rkj-schema-section)</td></tr>
  <tr><td>Management \| Managed landing zone \| Application account \| Offboard application account</td><td>[ct-0vdiy51oyrhhm](schemas.md#ct-0vdiy51oyrhhm-schema-section)</td></tr>
  <tr><td>Deployment \| Managed landing zone \| Management account \| Create Accelerate account</td><td>[ct-0vdiy51oyrhhm](schemas.md#ct-0vdiy51oyrhhm-schema-section)</td></tr>
  <tr><td>Updated CTs:</td><td></td><td></td></tr>
  <tr><td>Management \| AMS Resource Scheduler \| Schedule \| Add (ct-2bxelbn765ive) and Management \| AMS Resource Scheduler \| Schedule \| Update (ct-3u61cd4edns0x)<br />The **SSMMaintenanceWindow** can now take a list of AWS Systems Manager existing maintenence windows.</td><td>[ct-2bxelbn765ive](schemas.md#ct-2bxelbn765ive-schema-section) and [ct-3u61cd4edns0x](schemas.md#ct-3u61cd4edns0x-schema-section)</td><td></td></tr>
  <tr><td colspan="3"> </td></tr>
  <tr><td>New CTs:</td><td>Deployment \| Advanced stack components \| Identity and Access Managment (IAM) \| Create OpenID Connect provider</td><td>[ct-30ecvfi3tq4k3](schemas.md#ct-30ecvfi3tq4k3-schema-section)</td></tr>
  <tr><td>Updated CTs:</td><td>Deployment \| Advanced stack components \| RDS database stack \| Create<br />This update adds performance insights options.</td><td>[ct-2z60dyvto9g6c](schemas.md#ct-2z60dyvto9g6c-schema-section)</td></tr>
  <tr><td>Updated CTs "Additional Information"</td><td>Many CTs had non-standard "Additional Information" sections without links to the corresponding walkthrough, this has been fixed.</td><td>January 27, 2022</td></tr>
  <tr><td rowspan="8">New CTs:</td><td>Management \| Advanced stack components \| Application Load Balancer \| Add listener certificate<br />[ct-3g6fq83nxg1a7](schemas.md#ct-3g6fq83nxg1a7-schema-section)</td><td rowspan="8">January 13, 2022</td></tr>
  <tr><td>Management \| Advanced stack components \| Application Load Balancer \| Remove listener certificate<br />[ct-0tpbr6lfa3zng](schemas.md#ct-0tpbr6lfa3zng-schema-section)</td></tr>
  <tr><td>Management \| Advanced stack components \| Load Balancer (ELB) stack \| Replace listener certificate<br />[ct-0aqx5t0pgfzbg](schemas.md#ct-0aqx5t0pgfzbg-schema-section)</td></tr>
  <tr><td>Management \| Advanced stack components \| Network Load Balancer \| Add listener certificate<br />[ct-35p977vul06df](schemas.md#ct-35p977vul06df-schema-section)</td></tr>
  <tr><td>Management \| Advanced stack components \| Network Load Balancer \| Remove listener certificate<br />[ct-3929xwf222jri](schemas.md#ct-3929xwf222jri-schema-section)</td></tr>
  <tr><td>Management \| Managed landing zone \| Networking account \| Disable TGW propagation<br />[ct-2pxyajek47am2](schemas.md#ct-2pxyajek47am2-schema-section)</td></tr>
  <tr><td>Management \| Managed landing zone \| Networking account \| Enable TGW propagation<br />[ct-1f9hi4bephqa9](schemas.md#ct-1f9hi4bephqa9-schema-section)</td></tr>
  <tr><td>Management \| Standalone resources \| EC2 instance \| Terminate<br />[ct-3dfubbpesm2v9](schemas.md#ct-3dfubbpesm2v9-schema-section)</td></tr>
  <tr><td rowspan="5">Updated CTs:</td><td>Management \| Advanced stack components \| EC2 Instance Stack \| Gather log4j information (v2.0)<br />[ct-19f40lfm5umy8](schemas.md#ct-19f40lfm5umy8-schema-section)</td><td>This update provides an option to target all instances in the region.</td></tr>
  <tr><td>Management \| Advanced stack components \| Database Migration Service (DMS) \| Start replication task and Management \| Advanced stack components \| Database Migration Service (DMS) \| Stop replication task<br />[ct-1yq7hhqse71yg](schemas.md#ct-1yq7hhqse71yg-schema-section) and [ct-1vd3y4ygbqmfk](schemas.md#ct-1vd3y4ygbqmfk-schema-section)</td><td>This change updates the task ARN regular expression to the allow tasks containing the a dash ( - ).</td></tr>
  <tr><td>Management \| Advanced stack components \| EC2 instance stack \| Change hostname (Linux)<br />[ct-2781aqd6f6svs](schemas.md#ct-2781aqd6f6svs-schema-section)</td><td>Automated, with additional parameters, and moved to version 2.0.</td></tr>
  <tr><td>Management \| Advanced stack components \| EC2 instance stack \| Restore volumes<br />[ct-0ffvihqwjvqj1](schemas.md#ct-0ffvihqwjvqj1-schema-section)</td><td>This update adds two optional parameters, **RootVolumeType** and **VolumeTypes**.</td></tr>
  <tr><td>A **Priority** parameter has been added to all `execution mode=manual` change types (CTs).<br />For additional information, see [RFC scheduling](https://docs.aws.amazon.com/managedservices/latest/userguide/ex-rfc-scheduling.html).</td><td>The changed CTs are:<pre>Deployment/Monitoring and notification/GuardDuty IP set/Create<br />Deployment/Monitoring and notification/GuardDuty threat intel set/Create<br />Management/Monitoring and notification/GuardDuty IP set/Delete<br />Management/Monitoring and notification/GuardDuty IP set/Update<br />Management/Monitoring and notification/GuardDuty threat intel set/Delete<br />Management/Monitoring and notification/GuardDuty threat intel set/Update<br />Management/Other/Other/Create<br />Management/Other/Other/Update<br />Deployment/Managed landing zone/Management account/Create Custom SCP<br />Deployment/Managed landing zone/Networking account/Create application route table<br />Deployment/Advanced stack components/Identity and Access Management (IAM)/Create entity or policy<br />Deployment/Advanced stack components/KMS key/Create (review required)(1.0 and 2.0)<br />Deployment/Advanced stack components/S3 storage/Create policy<br />Deployment/Advanced stack components/Security group/Create (review required)<br />Deployment/Advanced stack components/Tag/Create (review required)<br />Management/AWS service/Self-provisioned service/Add<br />Management/Advanced stack components/EC2 instance stack/Change hostname (Linux)(1.0)<br />Management/Advanced stack components/Identity and Access Management (IAM)/Delete entity or policy<br />Management/Advanced stack components/Identity and Access Management (IAM)/Update entity or policy<br />Management/Advanced stack components/KMS key/Delete(1.0 and 2.0)<br />Management/Advanced stack components/KMS key/Update(1.0 and 2.0)<br />Management/Advanced stack components/S3 storage/Delete policy<br />Management/Advanced stack components/S3 storage/Update policy<br />Management/Advanced stack components/Security group/Delete<br />Management/Advanced stack components/Security group/Update<br />Management/Advanced stack components/Tag/Bulk update (review required)<br />Management/Advanced stack components/Tag/Delete (review required)<br />Management/Advanced stack components/Tag/Update (review required)<br />Management/Managed account/Developer mode/Enable<br />Management/Standard stacks/Stack/Remediate drift<br />Management/Applications/IAM instance profile/Create<br />Management/Host security/Malware full system scan/Disable</pre></td></tr>
  <tr><td>New CTs:</td><td>Management \| Advanced Stack Components \| EC2 Instance Stack \| Gather log4j information<br />Single instance scan use v1.0, Multi instance scan use v2.0.<br />[ct-19f40lfm5umy8](schemas.md#ct-19f40lfm5umy8-schema-section) </td><td>December 20, 2021</td></tr>
  <tr><td rowspan="2">New CTs:</td><td>Management \| Directory service \| DNS \| Delete conditional forwarder<br />[ct-1icghmq38rnsn](schemas.md#ct-1icghmq38rnsn-schema-section) </td><td>December 17, 2021</td></tr>
  <tr><td>Management \| Directory service \| DNS \| Update conditional forwarder<br />[ct-2fqmbyud166z9](schemas.md#ct-2fqmbyud166z9-schema-section) </td><td>December 17, 2021</td></tr>
  <tr><td rowspan="6">New CTs:</td><td>Deployment \| Directory service \| DNS \| Create conditional forwarder<br />[ct-3nba0wtdugnan](schemas.md#ct-3nba0wtdugnan-schema-section) </td><td>November 30, 2021</td></tr>
  <tr><td>Deployment \| Directory service \| DNS \| Create group managed service account<br />[ct-2qhl8j1pjnbgn](schemas.md#ct-2qhl8j1pjnbgn-schema-section) </td><td>November 30, 2021</td></tr>
  <tr><td>Management \| Directory service \| DNS \| Update record permission<br />[ct-1eft8s6vdhz0w](schemas.md#ct-1eft8s6vdhz0w-schema-section) </td><td>November 30, 2021</td></tr>
  <tr><td>Management \| Directory service \| DNS \| Update cluster permissions<br />[ct-03ytgoevfebjr](schemas.md#ct-03ytgoevfebjr-schema-section) </td><td>November 30, 2021</td></tr>
  <tr><td>Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create EC2 instance profile<br />[ct-117rmp64d5mvb](schemas.md#ct-117rmp64d5mvb-schema-section) </td><td>November 30, 2021</td></tr>
  <tr><td>Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create Lambda execution role<br />[ct-1k3oui719dcju](schemas.md#ct-1k3oui719dcju-schema-section) </td><td>November 30, 2021</td></tr>
  <tr><td>New CTs:</td><td>Management \| Managed landing zone \| Management account \| Move Account to OU<br />[ct-1vq0f289r36ay](schemas.md#ct-1vq0f289r36ay-schema-section) </td><td>October 28, 2021</td></tr>
  <tr><td rowspan="5">Updated CTs:</td><td>Deployment \| AWS Backup \| Backup plan \| Create<br />[ct-2hyozbpa0sx0m](schemas.md#ct-2hyozbpa0sx0m-schema-section). Additional parameters were for creating backup copies across accounts. </td><td>November 11, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| EBS snapshot \| Delete<br />[ct-30bfiwxjku1nu](schemas.md#ct-30bfiwxjku1nu-schema-section). The CT description was expanded to mention some cavaets. </td><td rowspan="4">October 28, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| EC2 instance \| Start<br />[ct-03t7kvuwx6rgr](schemas.md#ct-03t7kvuwx6rgr-schema-section). The CT schema was updated so you can start mulitple EC2 instances. </td></tr>
  <tr><td>Management \| Advanced stack components \| EC2 instance \| Stop<br />[ct-3mvvt2zkyveqj](schemas.md#ct-3mvvt2zkyveqj-schema-section). The CT schema was updated so you can stop mulitple EC2 instances. There's also a new parameter, **ForceStop**. </td></tr>
  <tr><td>Management \| AWS Backup \| Recovery point \| Delete<br />[ct-1r1vbr8ahr156](schemas.md#ct-1r1vbr8ahr156-schema-section). The CT schema was updated so you can delete mulitple recovery points. </td></tr>
  <tr><td>Updated CTs:</td><td>Deployment \| Advanced stack components \| Redshift \| Create (cluster from snapshot) version 1.0<br />[ct-3jrqmeq7j0wke](schemas.md#ct-3jrqmeq7j0wke-schema-section). A new parameter, NodeType, was added.</td><td>October 14, 2021</td></tr>
  <tr><td>Missing Examples</td><td>Many change type examples were missing, this has been fixed.</td><td>September 30, 2021</td></tr>
  <tr><td rowspan="7">New CTs:</td><td>Management \| Directory Service \| Computer object \| Remove SPN<br />[ct-1078jhyxq32dp](schemas.md#ct-1078jhyxq32dp-schema-section) </td><td>September 30, 2021</td></tr>
  <tr><td>Deployment \| Managed landing zone \| Networking account \| Disassociate TGW attachment<br />[ct-3jo8yccbin4it](schemas.md#ct-3jo8yccbin4it-schema-section) </td><td>September 30, 2021</td></tr>
  <tr><td>Deployment \| Managed landing zone \| Networking account \| Associate TGW attachment<br />[ct-3nmhh0qr338q6](schemas.md#ct-3nmhh0qr338q6-schema-section) </td><td>September 30, 2021</td></tr>
  <tr><td>Deployment \| Managed landing zone \| Networking account \| Add static route<br />[ct-3r2ckznmt0a59](schemas.md#ct-3r2ckznmt0a59-schema-section) </td><td>September 30, 2021</td></tr>
  <tr><td>Deployment \| Managed landing zone \| Management account \| Create Developer Mode account (with VPC)<br />[ct-38xcr0q86k9lh](schemas.md#ct-38xcr0q86k9lh-schema-section) </td><td>September 30, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| Security Group \| Delete (no review required)<br />[ct-18r16ldqil6w9](schemas.md#ct-18r16ldqil6w9-schema-section) </td><td>September 30, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| Security Group \| Disassociate (no review required)<br />[ct-13lk0noacn6ua](schemas.md#ct-13lk0noacn6ua-schema-section) </td><td>September 30, 2021</td></tr>
  <tr><td rowspan="2">Updated CTs:</td><td>Management \| Advanced stack components \| AMI \| Deregister<br />[ct-26vhhlj9jmlpf](schemas.md#ct-26vhhlj9jmlpf-schema-section) This CT has a new parameter "DeleteSnapshots" to allow deleting snapshots associated with AMI. </td><td>September 30, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| AMI \| Deregister<br />[ct-2r2bffv9u6q4m ](schemas.md#ct-2r2bffv9u6q4m-schema-section) A note was added that you cannot use the CT with Aurora MySQL or Aurora PostgreSQL. </td><td>September 30, 2021</td></tr>
  <tr><td rowspan="3">New CTs:</td><td>Classification (two):<br />Management \| Standard stacks \| Stack \| Remediate drift (auto)<br />Management \| Custom stack \| Stack \| Remediate drift (auto)<br />[ct-3kinq0u4l33zf](schemas.md#ct-3kinq0u4l33zf-schema-section).</td><td>September 16, 2021</td></tr>
  <tr><td>Management \| AWS Backup \| Backup plan \| Enable cross account copy (Management account) [ct-2yja7ihh30ply](schemas.md#ct-2yja7ihh30ply-schema-section).</td><td>September 16, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| EC2 instance stack \| Encrypt instance volumes [ct-0hahohe17csnc](schemas.md#ct-0hahohe17csnc-schema-section).</td><td>September 16, 2021</td></tr>
  <tr><td rowspan="4">Updated CTs:</td><td>Deployment \| Advanced stack components \| Database Migration Service (DMS) \| Create replication subnet group This CT (ct-2q5azjd8p1ag5) will fail if the 'dms-vpc-role' IAM role doesn't exist in the account. [ct-2q5azjd8p1ag5](schemas.md#ct-2q5azjd8p1ag5-schema-section).</td><td>September 16, 2021</td></tr>
  <tr><td>Deployment \| Advanced stack components \| EC2 stack \| Create<br />The note for **InstanceType** has been updated to this "Any EC2 instance created within AMS environments have pre-configured AMS components and agents like EPS, SSM, Cloudwatch etc., which occupy the resource’s capacity along with the application workload. Therefore AMS does not recommend using the t2.micro/t3.micro and t2.nano/t3.nano instance types as they can impact the performance of the application and AMS tooling running on the instances. For more information, see [ Choosing the Right EC2 Instance Type for Your Application](https://aws.amazon.com/blogs/aws/choosing-the-right-ec2-instance-type-for-your-application/). [ct-14027q0sjyt1h](schemas.md#ct-14027q0sjyt1h-schema-section).</td><td>September 16, 2021</td></tr>
  <tr><td>Deployment \| Advanced stack components \| EC2 stack \| Create (with additional volumes)<br />The note for **InstanceType** has been updated to this "Any EC2 instance created within AMS environments have pre-configured AMS components and agents like EPS, SSM, Cloudwatch etc., which occupy the resource’s capacity along with the application workload. Therefore AMS does not recommend using the t2.micro/t3.micro and t2.nano/t3.nano instance types as they can impact the performance of the application and AMS tooling running on the instances. For more information, see [ Choosing the Right EC2 Instance Type for Your Application](https://aws.amazon.com/blogs/aws/choosing-the-right-ec2-instance-type-for-your-application/). [ct-1aqsjf86w6vxg](schemas.md#ct-1aqsjf86w6vxg-schema-section).</td><td>September 16, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| Security Group \| Associate<br />There is a new version and support for additional resource types. [ct-12lyw7otiyr6f](schemas.md#ct-12lyw7otiyr6f-schema-section).</td><td>September 16, 2021</td></tr>
  <tr><td>New information, a note about the difference in usage for the change types if using a single-account landing zone or multi-account landing zone account.</td><td>Deployment \| AMS Resource Scheduler \| Solution \| Deploy [ct-0ywnhc8e5k9z5](schemas.md#ct-0ywnhc8e5k9z5-schema-section).<br />Management \| AMS Resource Scheduler \| State \| Enable [ct-2wrvu4kca9xky](schemas.md#ct-2wrvu4kca9xky-schema-section).<br />Management \| AMS Resource Scheduler \| State \| Disable [ct-14v49adibs4db](schemas.md#ct-14v49adibs4db-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td rowspan="9">New CTs:</td><td>Management \| Patching \| Patch window \| Update [ct-2utx36abv83pv](schemas.md#ct-2utx36abv83pv-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| KMS key \| Enable rotation [ct-2lt0jeydeumpe](schemas.md#ct-2lt0jeydeumpe-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Directory Service \| Users and groups \| Add group to group [ct-1i20abktsm05v](schemas.md#ct-1i20abktsm05v-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Directory Service \| Users and groups \| Add user to group [ct-24pi85mjtza8k](schemas.md#ct-24pi85mjtza8k-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Directory Service \| Users and groups \| Add group [ct-3eutt7grkict4](schemas.md#ct-3eutt7grkict4-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Directory Service \| Users and groups \| Remove user from group [ct-2019s9y3nfml4](schemas.md#ct-2019s9y3nfml4-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Directory Service \| DNS \| Remove record [ct-1icrtx8ydvdwe](schemas.md#ct-1icrtx8ydvdwe-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Directory Service \| DNS \| Add CNAME record [ct-2murl5xzbxoxf](schemas.md#ct-2murl5xzbxoxf-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Directory Service \| DNS \| Add A record [ct-2w3rbmnny1qpo](schemas.md#ct-2w3rbmnny1qpo-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td rowspan="5">Updated CTs:</td><td> Management \| Advanced stack components \| EC2 instance stack \| Restore volumes The schema is updated with new parameters and the version is now 3.0. [ct-2z60dyvto9g6c](schemas.md#ct-2z60dyvto9g6c-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Deployment \| Advanced stack components \| DNS (private) \| Create<br />The schema is updated with new parameters: **AliasTargetDnsName**, **AliasTargetHostedZoneId**, and **AliasTargetEvaluatedTargetHealth** to support "A" record to route traffic to AWS resource such as CloudFront distribution or an Amazon S3 bucket, by providing the DNSName and HostedZoneID associated with the AWS resource. [ct-0c38gftq56zj6 ](schemas.md#ct-0c38gftq56zj6-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Deployment \| Advanced stack components \| DNS (public) \| Create<br />The schema is updated with new parameters: **AliasTargetDnsName**, **AliasTargetHostedZoneId**, and **AliasTargetEvaluatedTargetHealth** to support "A" record to route traffic to AWS resource such as CloudFront distribution or an Amazon S3 bucket, by providing the DNSName and HostedZoneID associated with the AWS resource. [ct-0vzsr2nyraedl ](schemas.md#ct-0vzsr2nyraedl-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| DNS (private) \| Update<br />The schema is updated with new parameters: **AliasTargetDnsName**, **AliasTargetHostedZoneId**, and **AliasTargetEvaluatedTargetHealth** to support "A" record to route traffic to AWS resource such as CloudFront distribution or an Amazon S3 bucket, by providing the DNSName and HostedZoneID associated with the AWS resource. [ct-1d55pi44ff21u](schemas.md#ct-1d55pi44ff21u-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| DNS (public) \| Update<br />The schema is updated with new parameters: **AliasTargetDnsName**, **AliasTargetHostedZoneId**, and **AliasTargetEvaluatedTargetHealth** to support "A" record to route traffic to AWS resource such as CloudFront distribution or an Amazon S3 bucket, by providing the DNSName and HostedZoneID associated with the AWS resource. [ct-1hzofpphabs3i](schemas.md#ct-1hzofpphabs3i-schema-section).</td><td>August 26, 2021</td></tr>
  <tr><td>Updated CTs:</td><td> Deployment \| Advanced stack components \| RDS database stack \| Create The **RDSDBEngine** parameter has a new value available: **mariadb**. [ct-2z60dyvto9g6c](schemas.md#ct-2z60dyvto9g6c-schema-section).</td><td>August 12, 2021</td></tr>
  <tr><td rowspan="3">New CTs:</td><td>Deployment \| Advanced stack components \| Identity and Access Management (IAM) \| Create SAML identity provider [ct-3hox8uwjgze1f](schemas.md#ct-3hox8uwjgze1f-schema-section).</td><td>July 29, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| Identity and Access Management (IAM) \| Delete SAML identity provider [ct-01zl37gmuk4q2](schemas.md#ct-01zl37gmuk4q2-schema-section).</td><td>July 29, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| Identity and Access Management (IAM) \| Update SAML identity provider [ct-379uwo67vbvng](schemas.md#ct-379uwo67vbvng-schema-section).</td><td>July 29, 2021</td></tr>
  <tr><td rowspan="9">New CTs:</td><td>Deployment \| Advanced stack components \| VPNGateway \| Create [ct-0qbikxr9okwvy](schemas.md#ct-0qbikxr9okwvy-schema-section).</td><td>July 15, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| AMI \| Create from Auto Scaling group [ct-3e3prksxmdhw8](schemas.md#ct-3e3prksxmdhw8-schema-section).</td><td>July 15, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| EBS Volume \| Attach [ct-34jldf2qihaic](schemas.md#ct-34jldf2qihaic-schema-section).</td><td>July 15, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| EBS Volume \| Detach [ct-2d55p1d7z6w3d](schemas.md#ct-2d55p1d7z6w3d-schema-section).</td><td>July 15, 2021</td></tr>
  <tr><td>Managed firewall, Outbound (Palo Alto): Create allow list <br />ct-309eozh6lpkr8<br />.</td><td>July 15, 2021</td></tr>
  <tr><td>Managed firewall, Outbound (Palo Alto): Delete allow list <br />ct-2fzh1wckpl7f5<br />.</td><td>July 15, 2021</td></tr>
  <tr><td>Managed firewall, Outbound (Palo Alto): Create security policy <br />ct-281dpwh9tqnan<br />.</td><td>July 15, 2021</td></tr>
  <tr><td>Managed firewall, Outbound (Palo Alto): Delete security policy <br />ct-1taxucdyi84iy<br />.</td><td>July 15, 2021</td></tr>
  <tr><td>Managed firewall, Outbound (Palo Alto): Update security policy <br />ct-0mss4i7neuj7f<br />.</td><td>July 15, 2021</td></tr>
  <tr><td rowspan="3">Updated CTs:</td><td>Management \| Managed firewall \| Outbound (Palo Alto) \| Add URLs and Management \| Managed firewall \| Outbound (Palo Alto) \| Remove URLs. New schemas. <br />ct-2b9q8339bj2sa<br /> and <br />ct-2mf36chtp1ejh<br />.</td><td>July 15, 2021</td></tr>
  <tr><td>Management \| AWS service \| Self-provisioned service \| Add. New parameter, **SAMLProviders**. <br />ct-3qe6io8t6jtny<br />.</td><td>July 15, 2021</td></tr>
  <tr><td>Management \| Advanced stack components \| AMI \| Encrypt. Note warning not to try to encrypt AMIs that are already encrypted. [ct-3u9yd8jznb2zd](schemas.md#ct-3u9yd8jznb2zd-schema-section).</td><td>July 15, 2021</td></tr>
</tbody>
</table>
