---
title: Charmhub | Deploy Grafana using Charmhub - The Open Operator Collection
description: Deploy the latest version of Grafana on any cloud.
url: https://charmhub.io/grafana/configurations
---

# Grafana

[Llama (LMA) Charmers](https://charmhub.io/publisher/llama-charmers "View all packages from Llama (LMA) Charmers")

* [Llama (LMA) Charmers](https://charmhub.io/publisher/llama-charmers "View all packages from Llama (LMA) Charmers")
* [Monitoring](https://charmhub.io/?filter=monitoring)

Platform:

20.04

18.04

16.04

stable 23.10

```
juju deploy grafana
```

[Learn to deploy on juju >](https://juju.is/docs/juju/manage-applications)

* [admin\_password](https://charmhub.io/grafana/configurations#admin_password)
* [allow\_embedding](https://charmhub.io/grafana/configurations#allow_embedding)
* [anonymous](https://charmhub.io/grafana/configurations#anonymous)
* [anonymous\_role](https://charmhub.io/grafana/configurations#anonymous_role)
* [app\_mode](https://charmhub.io/grafana/configurations#app_mode)
* [auth-proxy](https://charmhub.io/grafana/configurations#auth-proxy)
* [dashboards\_backup\_dir](https://charmhub.io/grafana/configurations#dashboards_backup_dir)
* [dashboards\_backup\_schedule](https://charmhub.io/grafana/configurations#dashboards_backup_schedule)
* [datasources](https://charmhub.io/grafana/configurations#datasources)
* [debug](https://charmhub.io/grafana/configurations#debug)
* [default\_dashboards](https://charmhub.io/grafana/configurations#default_dashboards)
* [external\_network](https://charmhub.io/grafana/configurations#external_network)
* [google\_analytics\_ua\_id](https://charmhub.io/grafana/configurations#google_analytics_ua_id)
* [http\_proxy](https://charmhub.io/grafana/configurations#http_proxy)
* [install\_file](https://charmhub.io/grafana/configurations#install_file)
* [install\_keys](https://charmhub.io/grafana/configurations#install_keys)
* [install\_method](https://charmhub.io/grafana/configurations#install_method)
* [install\_plugins](https://charmhub.io/grafana/configurations#install_plugins)
* [install\_sources](https://charmhub.io/grafana/configurations#install_sources)
* [instance\_name](https://charmhub.io/grafana/configurations#instance_name)
* [ldap\_auth](https://charmhub.io/grafana/configurations#ldap_auth)
* [ldap\_base\_dn](https://charmhub.io/grafana/configurations#ldap_base_dn)
* [ldap\_config\_flags](https://charmhub.io/grafana/configurations#ldap_config_flags)
* [ldap\_password](https://charmhub.io/grafana/configurations#ldap_password)
* [ldap\_server](https://charmhub.io/grafana/configurations#ldap_server)
* [ldap\_server\_ca](https://charmhub.io/grafana/configurations#ldap_server_ca)
* [ldap\_user](https://charmhub.io/grafana/configurations#ldap_user)
* [nagios\_context](https://charmhub.io/grafana/configurations#nagios_context)
* [nagios\_servicegroups](https://charmhub.io/grafana/configurations#nagios_servicegroups)
* [port](https://charmhub.io/grafana/configurations#port)
* [root\_url](https://charmhub.io/grafana/configurations#root_url)
* [site\_name](https://charmhub.io/grafana/configurations#site_name)
* [smtp\_auth](https://charmhub.io/grafana/configurations#smtp_auth)
* [smtp\_from\_address](https://charmhub.io/grafana/configurations#smtp_from_address)
* [smtp\_host](https://charmhub.io/grafana/configurations#smtp_host)
* [smtp\_skip\_cert\_verification](https://charmhub.io/grafana/configurations#smtp_skip_cert_verification)
* [snap\_channel](https://charmhub.io/grafana/configurations#snap_channel)
* [snapd\_refresh](https://charmhub.io/grafana/configurations#snapd_refresh)
* [ssl\_ca](https://charmhub.io/grafana/configurations#ssl_ca)
* [ssl\_cert](https://charmhub.io/grafana/configurations#ssl_cert)
* [ssl\_key](https://charmhub.io/grafana/configurations#ssl_key)

[Learn about configurations >](https://juju.is/docs/juju/configuration#heading--application-configuration)

* admin\_password | string

  Grafana admin password. Default, pwgen(16) random password.
  See also README.md for instructions how to retrieve automatically
  generated password
* allow\_embedding | boolean

  If false the Grafana HTTP responses will instruct browsers to not allow rendering Grafana in a <frame>, <iframe>, <embed> or <object>.
* anonymous | boolean

  Whether to allow anonymous users, defaults to False.
* anonymous\_role | string

  Default: Viewer

  The role given to anonymous users if enabled.
* app\_mode | string

  Default: production

  production or development
* auth-proxy | boolean

  Whether to enable default auth.proxy config, defaults to False.
* dashboards\_backup\_dir | string

  Default: /srv/backups

  Location where to put dashboard dumps
* dashboards\_backup\_schedule | string

  Cron schedule for dashboards backups
* datasources | string

  List of datasources in format:

  + type,name,access,url,password,user,database
* debug | boolean

  Enable debug level logging.
* default\_dashboards | string

  List of default dashboards to be loaded on Grafana storage backend
  (default: sqlite3 backend)
* external\_network | string

  Default: ext\_net

  Name for the network which hosts the Public IP address space.
* google\_analytics\_ua\_id | string

  Google Universal Analytics ID per http://docs.grafana.org/installation/configuration/#google-analytics-ua-id
* http\_proxy | string

  Proxy URL to use for install\_file
* install\_file | string

  Location where grafana .deb file can be found. If set install\_sources and
  install\_keys options are ignored. Example:
  install\_file: http://my.company.com/packages/grafana/grafana\_3.0.0\_amd64.deb
* install\_keys | string

  Default: - |
  -----BEGIN PGP PUBLIC KEY BLOCK-----
  mQGNBGTnhmkBDADUE+SzjRRyitIm1siGxiHlIlnn6KO4C4GfEuV+PNzqxvwYO+1r
  mcKlGDU0ugo8ohXruAOC77Kwc4keVGNU89BeHvrYbIftz/yxEneuPsCbGnbDMIyC
  k44UOetRtV9/59Gj5YjNqnsZCr+e5D/JfrHUJTTwKLv88A9eHKxskrlZr7Un7j3i
  Ef3NChlOh2Zk9Wfk8IhAqMMTferU4iTIhQk+5fanShtXIuzBaxU3lkzFSG7VuAH4
  CBLPWitKRMn5oqXUE0FZbRYL/6Qz0Gt6YCJsZbaQ3Am7FCwWCp9+ZHbR9yU+bkK0
  Dts4PNx4Wr9CktHIvbypT4Lk2oJEPWjcCJQHqpPQZXbnclXRlK5Ea0NVpaQdGK+v
  JS4HGxFFjSkvTKAZYgwOk93qlpFeDML3TuSgWxuw4NIDitvewudnaWzfl9tDIoVS
  Bb16nwJ8bMDzovC/RBE14rRKYtMLmBsRzGYHWd0NnX+FitAS9uURHuFxghv9GFPh
  eTaXvc4glM94HBUAEQEAAbQmR3JhZmFuYSBMYWJzIDxlbmdpbmVlcmluZ0BncmFm
  YW5hLmNvbT6JAdQEEwEKAD4WIQS1Oud7rbYwpoMEYAWWP6J3EEWFRQUCZOeGaQIb
  AwUJA8JnAAULCQgHAgYVCgkICwIEFgIDAQIeAQIXgAAKCRCWP6J3EEWFRUiADACa
  i+xytv2keEFJWjXNnFAx6/obnHRcXOI3w6nH/zL8gNI7YN5jcdQT2NYvKVYTb3fW
  GuMsjHWgat5Gq3AtJrOKABpZ6qeYNPk0Axn/dKtOTwXjZ4pKX3bbUYvVfs0fCEZv
  B0HHIj2wI9kgMpoTrkj22LE8layZTPOoQ+3/FbLzS8hN3CYZj25mHN7bpZq8EbV3
  8FW9EU0HM0tg6CvoxkRiVqAuAC0KnVIZAdhD4dlYKuncq64nMvT1A5wxSYbnE+uf
  mnWQQhhS6BOwRqN054yw1FrWNDFsvnOSHmr8dIiriv+aZYvx5JQFJ7oZP3LwdYyg
  ocQcAJA8HFTIk3P6uJiIF/zdDzocgdKs+IYDoId0hxX7sGCvqdrsveq8n3m7uQiN
  7FvSiV0eXIdV4F7340kc8EKiYwpuYSaZX0UWKLenzlUvD+W4pZCWtoXzPsW7PKUt
  q1xdW0+NY+AGLCvSJCc5F4S5kFCObfBAYBbldjwwJFocdq/YOvvWYTPyV7kJeJS5
  AY0EZOeGaQEMALNIFUricEIwtZiX7vSDjwxobbqPKqzdek8x3ud0CyYlrbGHy0k+
  FDEXstjJQQ1s9rjJSu3sv5wyg9GDAUH3nzO976n/ZZvKPti3p2XU2UFx5gYkaaFV
  D56yYxqGY0YU5ft6BG+RUz3iEPg3UBUzt0sCIYnG9+CsDqGOnRYIIa46fu2/H9Vu
  8JvvSq9xbsK9CfoQDkIcoQOixPuI4P7eHtswCeYR/1LUTWEnYQWsBCf57cEpzR6t
  7mlQnzQo9z4i/kp4S0ybDB77wnn+isMADOS+/VpXO+M7Zj5tpfJ6PkKch3SGXdUy
  3zht8luFOYpJr2lVzp7n3NwB4zW08RptTzTgFAaW/NH2JjYI+rDvQm4jNs08Dtsp
  nm4OQvBA9Df/6qwMEOZ9i10ixqk+55UpQFJ3nf4uKlSUM7bKXXVcD/odq804Y/K4
  y3csE059YVIyaPexEvYSYlHE2odJWRg2Q1VehmrOSC8Qps3xpU7dTHXD74ZpaYbr
  haViRS5v/lCsiwARAQABiQG8BBgBCgAmFiEEtTrne622MKaDBGAFlj+idxBFhUUF
  AmTnhmkCGwwFCQPCZwAACgkQlj+idxBFhUUNbQv8DCcfi3GbWfvp9pfY0EJuoFJX
  LNgci7z7smXq7aqDp2huYQ+MulnPAydjRCVW2fkHItF2Ks6l+2/8t5Xz0eesGxST
  xTyR31ARENMXaq78Lq+itZ+usOSDNuwJcEmJM6CceNMLs4uFkX2GRYhchkry7P0C
  lkLxUTiB43ooi+CqILtlNxH7kM1O4Ncs6UGZMXf2IiG9s3JDCsYVPkC5QDMOPkTy
  2ZriF56uPerlJveF0dC61RZ6RlM3iSJ9Fwvea0Oy4rwkCcs5SHuwoDTFyxiyz0QC
  9iqi3fG3iSbLvY9UtJ6X+BtDqdXLAT9Pq527mukPP3LwpEqFVyNQKnGLdLOu2YXc
  TWWWseSQkHRzBmjD18KTD74mg4aXxEabyT4snrXpi5+UGLT4KXGV5syQO6Lc0OGw
  9O/0qAIU+YW7ojbKv8fr+NB31TGhGYWASjYlN1NvPotRAK6339O0/Rqr9xGgy3AY
  SR+ic2Y610IM7xccKuTVAW9UofKQwJZChqae9VVZ
  =J9CI
  -----END PGP PUBLIC KEY BLOCK-----

  YAML list of GPG keys for installation sources, as a string. For apt repository
  URLs, use the public key ID used to verify package signatures. For
  other sources such as PPA, use empty string. This list must have the
  same number of elements as install\_sources, even if the key items are
  all empty string. An example to go with the above for install\_sources:
  install\_keys: |

  + ""
  + ""
* install\_method | string

  Default: apt

  How to install Grafana. If set to "apt", empty string or unset, the package will be installed using apt-get. If set to "snap", snap package will be installed
* install\_plugins | string

  Comma separated list of http(s) URLs where grafana plugin tarballs can be found.
  Example:
  install\_plugins: http://my.company.com/packages/grafana/plugins/plugin-panel.tar.gz
* install\_sources | string

  Default: - 'deb https://apt.grafana.com stable main'

  YAML list of additional installation sources, as a string. The number of
  install\_sources must match the number of install\_keys. For example:
  install\_sources: |

  + ppa:project1/ppa
  + ppa:project2/ppa
* instance\_name | string

  Grafana instance name, for example "grafana.example.com". If unset
  defaults to server hostname
* ldap\_auth | boolean

  Whether to enable LDAP authentication, defaults to False.
* ldap\_base\_dn | string

  Comma separated list of base dns to be used by Grafana.
* ldap\_config\_flags | string

  Additional LDAP configuration options.
  For simple configurations use a comma separated string of key=value pairs.
  "ssl\_skip\_verify=false, group\_search\_filter\_user\_attribute='uid'"
  For more complex configurations use a json like string with double quotes
  and braces around all the options and single quotes around complex values.
  "{ssl\_skip\_verify: false,
  group\_mapping\_admin: 'cn=grafanaadmins,dc=test,dc=com',
  group\_mapping\_editor: 'cn=grafanaeditors,dc=test,dc=com',
  group\_mapping\_viewer: 'cn=grafanaviewers,dc=test,dc=com'}"

  See the README for more details.

  Note: The explicitly defined ldap\_\* charm config options are required
  and cannot be set via `ldap_config_flags`.
* ldap\_password | string

  Password of the LDAP identity server.
* ldap\_server | string

  LDAP server URL for Grafana LDAP identity backend.

  Examples:
  ldap://10.10.10.10/
  ldaps://10.10.10.10/
  ldap://example.com:389/
  ldap://active-directory-host.com:3268/
  ldaps://active-directory-host.com:3269/

  An ldap:// URL will result in mandatory StartTLS usage if the
  charm's ldap\_server\_ca option has been specified.
* ldap\_server\_ca | string

  This option controls which certificate (or a chain) will be used to connect
  to the LDAP server over TLS. Certificate contents should either be used
  directly or included via include-file://
* ldap\_user | string

  Username (Distinguished Name) used to bind to LDAP identity server.
  .
  Example: cn=admin,dc=test,dc=com
* nagios\_context | string

  Default: juju

  A string that will be prepended to instance name to set the host name
  in nagios. So for instance the hostname would be something like:
  juju-myservice-0
  If you're running multiple environments with the same services in them
  this allows you to differentiate between them.
* nagios\_servicegroups | string

  Default: juju

  Comma separated list of nagios servicegroups for the graphite check
* port | string

  Default: 3000

  The port grafana will expose web services on.
* root\_url | string

  Default: %(protocol)s://%(domain)s:%(http\_port)s/

  The full public facing url
* site\_name | string

  An unique site name for Grafana deployment
* smtp\_auth | string

  The SMTP username and password that the Grafana plugin will authenticate with
  in "username:password" format. Example
  mysmtpuser:secret
* smtp\_from\_address | string

  Default: admin@grafana.localhost

  The SMTP from address that the Grafana plugin will use when addressing emails.
* smtp\_host | string

  The SMTP host and port that grafana will send emails via. If unset SMTP will not be enabled
  Example:
  smtp.example.com:25
* smtp\_skip\_cert\_verification | boolean

  Disable certificate verification when talking to SSL/TLS enabled SMTP servers (true allows self-signed certificates)
* snap\_channel | string

  Default: 7/stable

  If install\_method is set to "snap" this option controls channel name being used.

  Note: a) changing this option will not automatically upgrade snaps -- see the do-upgrade action for this, b) downgrading snaps is unsupported, and c) using the track symbolic name "latest" is also unsupported (use an explicit track name instead, e.g. "7/stable")
* snapd\_refresh | string

  How often snapd handles updates for installed snaps. The default (an empty string) is 4x per day. Set to "max" to check once per month based on the charm deployment date. You may also set a custom string as described in the 'refresh.timer' section here:
  https://forum.snapcraft.io/t/system-options/87
* ssl\_ca | string

  Base64 encoded TLS CA to use to communicate with other components in a deployment.
  For example: `juju config grafana ssl_ca=$(base64 -w 0 /path/to/ca.crt)` .
  .
  **NOTE**: This configuration option will take precedence over any
  certificates received over the `certificates` relation.
* ssl\_cert | string

  Base64 encoded TLS certificate to install and use for any listening services.
  For example: `juju config grafana ssl_cert=$(base64 -w 0 /path/to/server.crt)`
  .
  **NOTE**: This configuration option will take precedence over any
  certificates received over the `certificates` relation.
* ssl\_key | string

  Base64 encoded TLS key to use with certificate specified as `ssl_cert`.
  For example: `juju config grafana ssl_key=$(base64 -w 0 /path/to/server.key)` .
  **NOTE**: This configuration option will take precedence over any
  certificates received over the `certificates` relation.
