Skip to content

Release 4.0.0

Choose a tag to compare

@fr-ser fr-ser released this 15 Feb 19:14
· 50 commits to main since this release

Release Notes

This is an official release of the Grafana SQLite plugin code. For some releases it takes a while
to also appear in the Grafana repository, which is used to populate the plugins for the Grafana
website as well as their grafana-cli. Some releases (especially pre-releases) from Github never
appear in the Grafana repository.

To install this specific release use one of the following methods.

More details can also be found in the installation section of the Readme.

Installation

Using the grafana-cli

  1. Run this command:

    grafana-cli --pluginUrl https://github.com/fr-ser/grafana-sqlite-datasource/releases/download/v4.0.0/frser-sqlite-datasource-4.0.0.zip plugins install frser-sqlite-datasource
  2. See the installation instructions in the Readme.

Manual Installation

  1. Download the zip file below

  2. Extract the zip file into the data/plugins subdirectory for Grafana: unzip <the_download_zip_file> -d <plugin_dir>/

    Finding the plugin directory can sometimes be a challenge as this is platform and settings
    dependent. A common location for this on Linux devices is /var/lib/grafana/plugins/

  3. See the installation instructions in the Readme.

Changelog

For the full changelog refer to the CHANGELOG.md.

This is a "semantic versioning" major release and contains breaking changes.

Migration Instructions: The following is the list of breaking changes and how to deal with them.

  • AttachLimit: The attach limit has been set to 0 by default.
    In order to set a value above 0 the unsafe_allow_attach_limit_above_zero plugin configuration value has to be set.

  • Default Grafana Internal Blocklist: The plugin blocks various grafana internal paths by default now.
    In to unblock those set unsafe_disable_grafana_internal_blocklist in the plugin configuration.
    As per the release of this version the blocked path elements are the following:

    • grafana.db

    For an up to date list please see the plugin documentation

  • Default Security Path Blocklist: The plugin blocks various security related paths by default now.
    In to unblock those set unsafe_disable_security_blocklist in the plugin configuration.
    As per the release of this version the blocked path elements are the following:

    • .aws
    • .config/gcloud
    • .azure
    • .kube/config
    • .docker/config
    • .ssh
    • .gnupg
    • .pki
    • /etc/shadow
    • /etc/passwd
    • /etc/gshadow
    • /proc/
    • /sys/
    • .env
    • credentials
    • .git/config
    • .netrc
    • .npmrc
    • .pypirc
    • id_rsa
    • id_dsa
    • id_ecdsa
    • id_ed25519

    For an up to date list please see the plugin documentation

  • Read only connection: The plugin now sets the _pragma=query_only(1) path option if not specified otherwise.
    To prevent this use unsafe_disable_query_only_path_option.

Security

  • the default value of "AttachLimit" is now 0 (can be adjusted)
  • there is a list of "security related" path prefixes, which are blocked by default (can be adjusted)
  • adding _pragma=query_only(1) as a default path option (can be adjusted)

This build has been attested. You can view the attestation details.