Repository navigation
Release 4.0.0
Release Notes
This is an official release of the Grafana SQLite plugin code. For some releases it takes a while
to also appear in the Grafana repository, which is used to populate the plugins for the Grafana
website as well as their grafana-cli. Some releases (especially pre-releases) from Github never
appear in the Grafana repository.
To install this specific release use one of the following methods.
More details can also be found in the installation section of the Readme.
Installation
Using the grafana-cli
-
Run this command:
grafana-cli --pluginUrl https://github.com/fr-ser/grafana-sqlite-datasource/releases/download/v4.0.0/frser-sqlite-datasource-4.0.0.zip plugins install frser-sqlite-datasource
-
See the installation instructions in the Readme.
Manual Installation
-
Download the zip file below
-
Extract the zip file into the data/plugins subdirectory for Grafana:
unzip <the_download_zip_file> -d <plugin_dir>/Finding the plugin directory can sometimes be a challenge as this is platform and settings
dependent. A common location for this on Linux devices is/var/lib/grafana/plugins/ -
See the installation instructions in the Readme.
Changelog
For the full changelog refer to the CHANGELOG.md.
This is a "semantic versioning" major release and contains breaking changes.
Migration Instructions: The following is the list of breaking changes and how to deal with them.
-
AttachLimit: The attach limit has been set to 0 by default.
In order to set a value above 0 theunsafe_allow_attach_limit_above_zeroplugin configuration value has to be set. -
Default Grafana Internal Blocklist: The plugin blocks various grafana internal paths by default now.
In to unblock those setunsafe_disable_grafana_internal_blocklistin the plugin configuration.
As per the release of this version the blocked path elements are the following:- grafana.db
For an up to date list please see the plugin documentation
-
Default Security Path Blocklist: The plugin blocks various security related paths by default now.
In to unblock those setunsafe_disable_security_blocklistin the plugin configuration.
As per the release of this version the blocked path elements are the following:- .aws
- .config/gcloud
- .azure
- .kube/config
- .docker/config
- .ssh
- .gnupg
- .pki
- /etc/shadow
- /etc/passwd
- /etc/gshadow
- /proc/
- /sys/
- .env
- credentials
- .git/config
- .netrc
- .npmrc
- .pypirc
- id_rsa
- id_dsa
- id_ecdsa
- id_ed25519
For an up to date list please see the plugin documentation
-
Read only connection: The plugin now sets the
_pragma=query_only(1)path option if not specified otherwise.
To prevent this useunsafe_disable_query_only_path_option.
Security
- the default value of "AttachLimit" is now 0 (can be adjusted)
- there is a list of "security related" path prefixes, which are blocked by default (can be adjusted)
- adding
_pragma=query_only(1)as a default path option (can be adjusted)
This build has been attested. You can view the attestation details.