fix(vault01/victorialogs): listen netbird & aps
All checks were successful
Check meta / check_dns (push) Successful in 15s
Check meta / check_meta (pull_request) Successful in 16s
Check workflows / check_workflows (pull_request) Successful in 17s
Build all the nodes / netaccess01 (pull_request) Successful in 20s
Check meta / check_dns (pull_request) Successful in 22s
Check meta / check_meta (push) Successful in 23s
Build all the nodes / ap01 (pull_request) Successful in 32s
Build all the nodes / netcore02 (pull_request) Successful in 33s
Build all the nodes / netcore01 (pull_request) Successful in 33s
Build the shell / build-shell (pull_request) Successful in 45s
Run pre-commit on all files / pre-commit (pull_request) Successful in 50s
Build all the nodes / build01 (pull_request) Successful in 1m35s
Build all the nodes / hypervisor03 (pull_request) Successful in 1m41s
Build all the nodes / hypervisor02 (pull_request) Successful in 1m44s
Build all the nodes / hypervisor01 (pull_request) Successful in 1m47s
Build all the nodes / geo02 (pull_request) Successful in 1m46s
Build all the nodes / geo01 (pull_request) Successful in 1m45s
Build all the nodes / bridge01 (pull_request) Successful in 1m50s
Build all the nodes / rescue01 (pull_request) Successful in 1m37s
Build all the nodes / tower01 (pull_request) Successful in 1m46s
Build all the nodes / storage01 (pull_request) Successful in 1m48s
Build all the nodes / web02 (pull_request) Successful in 1m50s
Build all the nodes / compute01 (pull_request) Successful in 2m14s
Build all the nodes / web03 (pull_request) Successful in 1m50s
Build all the nodes / vault01 (pull_request) Successful in 2m1s
Build all the nodes / web01 (pull_request) Successful in 2m43s
Build all the nodes / netcore02 (push) Successful in 20s
Build all the nodes / netcore01 (push) Successful in 20s
Build all the nodes / netaccess01 (push) Successful in 37s
Build all the nodes / ap01 (push) Successful in 1m13s
Build all the nodes / geo02 (push) Successful in 1m33s
Build all the nodes / geo01 (push) Successful in 1m47s
Build the shell / build-shell (push) Successful in 34s
Build all the nodes / build01 (push) Successful in 1m51s
Build all the nodes / bridge01 (push) Successful in 1m52s
Build all the nodes / hypervisor02 (push) Successful in 1m54s
Build all the nodes / hypervisor01 (push) Successful in 1m55s
Build all the nodes / hypervisor03 (push) Successful in 1m55s
Run pre-commit on all files / pre-commit (push) Successful in 30s
Build all the nodes / tower01 (push) Successful in 2m4s
Build all the nodes / vault01 (push) Successful in 2m9s
Build all the nodes / rescue01 (push) Successful in 2m11s
Build all the nodes / web02 (push) Successful in 1m52s
Build all the nodes / storage01 (push) Successful in 2m11s
Build all the nodes / web03 (push) Successful in 1m59s
Build all the nodes / web01 (push) Successful in 2m24s
Build all the nodes / compute01 (push) Successful in 3m3s

This commit is contained in:
catvayor 2025-02-23 19:55:33 +01:00 committed by thubrecht
parent 9e4dec4fc0
commit 953b69b1c6

View file

@ -2,21 +2,36 @@
#
# SPDX-License-Identifier: EUPL-1.2
{ meta, ... }:
let
port = 9428;
in
{
services.victorialogs = {
enable = true;
services = {
nginx = {
enable = true;
streamConfig = ''
server {
listen 10.0.253.1:${toString port};
listen ${meta.network.vault01.netbirdIp}:${toString port};
proxy_pass 127.0.0.1:${toString port};
}
'';
};
victorialogs = {
enable = true;
flags = {
retentionPeriod = "52w";
# FIXME: We need to listen so that we are available for both the APs and the grafana
httpListenAddr = "0.0.0.0:${builtins.toString port}";
flags = {
retentionPeriod = "52w";
httpListenAddr = "127.0.0.1:${builtins.toString port}";
};
};
};
# FIXME: @catvayor please do a nft rule to open the firewall on the AP-facing interfaces
networking.firewall.interfaces.wt0.allowedTCPPorts = [ port ];
networking.firewall.interfaces = {
wt0.allowedTCPPorts = [ port ];
vlan-admin-ap.allowedTCPPorts = [ port ];
};
}