index
Day-2 operations for a running on-premises FOSSA instance, applying configuration changes, upgrading external services, keeping vulnerability data current, and collecting diagnostics.
Overview
Once FOSSA is installed and verified, these guides cover the day-2 operations you'll perform against a running deployment. For first-time setup, see Installing FOSSA On-Premises.
Warning
Before upgrading the fossa-core chart, always check the chart's own CHANGELOG.md for breaking changes; major versions have removed in-cluster Postgres and decoupled MinIO.
bitnami-image-pull-errors
debug-bundle
decoupling-minio
dependency-metadata-migration
global-license-corrections
helm-chart-500-breaking-change
helm-chart-600-breaking-change
helm-chart-700-breaking-change
helm-chart-800-breaking-change
migrating-to-postgres-17
migrating-to-seaweedfs
updating-helm-values
upgrading-fossa
vulnerability-database-updates
What's inside
Upgrading and configuration
- Upgrading FOSSA: fetch the new chart, read its changelog, and run
helm upgrade. - Helm Chart 5.0.0 Breaking Change: MinIO is no longer bundled with the chart; move to external storage.
- Helm Chart 6.0.0 Breaking Change: the
redisHelm values are renamed tocache. - Helm Chart 7.0.0 Breaking Change: starts the dependency metadata backfill; must be installed before 8.0.0.
- Helm Chart 8.0.0 Breaking Change: removes the legacy dependency-metadata table; install only after the backfill completes.
- Updating Helm values: apply configuration changes to a running release.
Migrating external services
- Migrating to Postgres 17: move off in-cluster Postgres to managed external Postgres 17, required on current charts.
- Decoupling MinIO from fossa-core: move object storage to externally managed MinIO when upgrading to
fossa-core5.0.0. - Migrating to SeaweedFS: move object storage from MinIO to SeaweedFS.
Data operations
- Vulnerability database updates: keep your local threat database current with FOSSA's vulnerability feed.
- Global License Corrections: override FOSSA's license detection for a package across all of its revisions.
Troubleshooting and diagnostics
- Bitnami image pull errors: resolve
ErrImagePull/ImagePullBackOffon Bitnami Postgres, Redis, and MinIO images. - Debug bundle: collect cluster diagnostics for troubleshooting and FOSSA support.