UNCLASSIFIED - NO CUI

Update Ironbank

Summary

Updates Grafana 13.1.0 → 13.2.1 and the upstream chart 12.10.0 → 13.2.4, with current Iron Bank sidecar/renderer images, bb-common 1.6.0, and Gluon 1.1.8. Chart 13.2.4 matches the available Iron Bank Grafana version; 13.2.5 targets 13.2.2.

Cypress stays on 15.21.1 because Gluon still uses an API removed in Cypress 16. A narrow temporary Renovate guard prevents that incompatible update; Gluon work item 139 tracks its removal. No tests or CI lanes are disabled.

Validation

  • Followed docs/DEVELOPMENT_MAINTENANCE.md; refreshed dashboards, README, and changelog.
  • Verified recursive image inventory and all six runtime images in Registry1.
  • Helm lint/render and pinned Renovate Docker schema, extraction, grouping, post-task, and Helm artifact checks passed.
  • Fresh k3d-dev baseline → MR upgrade, Helm smoke test, authenticated login, and populated Cluster/CoreDNS dashboards passed.
  • Final-head CI: default and SSO clean installs/upgrades passed.
  • Independent reviewer validation.

The existing optional AI-review job could not run because AskSage returned a monthly-quota HTTP 429; it produced no code review findings.

Supporting Evidence

Current-head Kubernetes/Helm evidence and live Grafana screenshots.

Pipeline and deployment lanes.

Log review also identified a pre-existing sidecar health-listener port collision. Dashboard/datasource synchronization and tests pass; the separate normal/native-sidecar fix is tracked in Grafana #209.

Linked issues

Closes: #205 (closed)

Upgrade Notices

Chart 13 mounts /tmp by default; remove any duplicate /tmp mount from upstream.extraVolumeMounts. The Grafana container also uses a read-only root filesystem. See the upstream chart upgrade notes. Big Bang continues to use the Iron Bank image, not the upstream distroless image.

Grafana 13.2 disables deprecated scripted dashboards by default. If used, review the upstream change and 13.2 upgrade guide.

Edited by Matt Vasquez

Merge request reports

Loading
Loading