summaryrefslogtreecommitdiff
path: root/modules/xnet/monitoring/grafana.nix
diff options
context:
space:
mode:
authorKleidi Bujari <mail@4kb.net>2024-11-23 16:36:43 -0500
committerKleidi Bujari <mail@4kb.net>2024-11-23 16:36:43 -0500
commit3ccc7e784a0ed5b19910ab856f6d9774a6f27956 (patch)
tree94addd02f98d39a4be92c19ecffc641bfcfd2f89 /modules/xnet/monitoring/grafana.nix
parent89a1c051423994f62341d72424dc7c1e86fbe231 (diff)
downloaddepot-3ccc7e784a0ed5b19910ab856f6d9774a6f27956.tar.gz
depot-3ccc7e784a0ed5b19910ab856f6d9774a6f27956.tar.bz2
depot-3ccc7e784a0ed5b19910ab856f6d9774a6f27956.zip
Initial scaffolding and layout
Set up the modules of the flake. At this time, the flake is split into modules and machines. Considering that additional top-level sections -- such as packages and shells -- will also be added, it might make sense to keep all nix related things in one top-level directory, alongside the flake.nix file. This is all under the assumption that later amendments to the project will introduce other tech, such as terraform.
Diffstat (limited to 'modules/xnet/monitoring/grafana.nix')
-rw-r--r--modules/xnet/monitoring/grafana.nix51
1 files changed, 51 insertions, 0 deletions
diff --git a/modules/xnet/monitoring/grafana.nix b/modules/xnet/monitoring/grafana.nix
new file mode 100644
index 0000000..6a37ce1
--- /dev/null
+++ b/modules/xnet/monitoring/grafana.nix
@@ -0,0 +1,51 @@
+{ config, pkgs, ... }: {
+ services.grafana.provision = {
+ enable = true;
+ datasources.settings.datasources = [{
+ name = "Prometheus";
+ type = "prometheus";
+ url = "http://localhost:9090";
+ access = "proxy";
+ editable = false;
+ }];
+
+ dashboards.settings.providers = [{
+ name = "Fetched Dashboards";
+ options.path = "/etc/grafana/dashboards";
+ }];
+ };
+
+ environment.etc = {
+ "grafana/dashboards/node-exporter.json" = {
+ user = "grafana";
+ group = "grafana";
+ source = pkgs.fetchurl {
+ url = "https://grafana.com/api/dashboards/1860/revisions/37/download";
+ hash = "sha256-1DE1aaanRHHeCOMWDGdOS1wBXxOF84UXAjJzT5Ek6mM=";
+ };
+ };
+ };
+
+ services.grafana = {
+ enable = true;
+ settings.server = {
+ domain = "grafana.web.4kb.net";
+ protocol = "socket";
+ };
+ settings."auth.anonymous" = {
+ enabled = true;
+ org_role = "Admin";
+ };
+ };
+
+ users.groups.grafana.members = [ "nginx" ];
+ systemd.services.nginx.serviceConfig.ProtectHome = false;
+
+ services.nginx.virtualHosts."${config.services.grafana.settings.server.domain}" = {
+ useACMEHost = "4kb.net";
+ addSSL = true;
+ locations."/" = {
+ proxyPass = "http://unix:/${toString config.services.grafana.settings.server.socket}";
+ };
+ };
+}