close firewall on prometheus

This commit is contained in:
Philipp Hochkamp 2022-08-09 01:57:01 +02:00
parent 054b18e763
commit 5c5202f4d7

View file

@ -161,8 +161,8 @@ in
(x: { (x: {
services.prometheus.exporters.${x} = { services.prometheus.exporters.${x} = {
enable = (builtins.elem hostName cfg.exporters.${x}.hosts); enable = (builtins.elem hostName cfg.exporters.${x}.hosts);
openFirewall = (hostName != cfg.master.hostname); #openFirewall = (hostName != cfg.master.hostname);
firewallFilter = if (hostName != cfg.master.hostname) then "-p tcp -s ${cfg.master.ip} -m tcp --dport ${toString config.services.prometheus.exporters.${x}.port}" else null; #firewallFilter = if (hostName != cfg.master.hostname) then "-p tcp -s ${cfg.master.ip} -m tcp --dport ${toString config.services.prometheus.exporters.${x}.port}" else null;
}; };
}) })
(builtins.attrNames cfg.exporters)) (builtins.attrNames cfg.exporters))