infra/services/prometheus-nginx.nix

13 lines
486 B
Nix

{ config, ... }:
{
services.prometheus.exporters.nginx = {
enable = true;
openFirewall = true;
firewallRules = ''
ip saddr 195.160.173.14/32 tcp dport ${toString config.services.prometheus.exporters.nginx.port} accept comment "Allow prometheus on monitoring.berlin.ccc.der"
ip6 saddr 2001:678:760:cccb::14/128 tcp dport ${toString config.services.prometheus.exporters.nginx.port} accept comment "Allow prometheus on monitoring.berlin.ccc.der"
'';
};
}