14 lines
527 B
Nix
14 lines
527 B
Nix
{ config, ... }:
|
|
|
|
{
|
|
services.prometheus.exporters.postgres = {
|
|
enable = true;
|
|
openFirewall = true;
|
|
runAsLocalSuperUser = true;
|
|
firewallRules = ''
|
|
ip saddr 195.160.173.14/32 tcp dport ${toString config.services.prometheus.exporters.postgres.port} accept comment "Allow prometheus on monitoring.berlin.ccc.der"
|
|
ip6 saddr 2001:678:760:cccb::14/128 tcp dport ${toString config.services.prometheus.exporters.postgres.port} accept comment "Allow prometheus on monitoring.berlin.ccc.der"
|
|
'';
|
|
};
|
|
}
|
|
|