From 630da5d0639cada53e26a03f579df0a7bac3b17a Mon Sep 17 00:00:00 2001 From: adikro Date: Wed, 17 Jun 2026 00:28:00 +0200 Subject: librewolf manual compilation issue --- os/srv/ntopng.nix | 35 +++++++++++++++++++++++++++++------ 1 file changed, 29 insertions(+), 6 deletions(-) (limited to 'os/srv/ntopng.nix') diff --git a/os/srv/ntopng.nix b/os/srv/ntopng.nix index 3c11534..692fe2c 100644 --- a/os/srv/ntopng.nix +++ b/os/srv/ntopng.nix @@ -1,20 +1,43 @@ -{ config, lib, ... }: +{ + config, + lib, + masterDomain, + securityTemplates, + ... +}: let cfg = config.os.srv.ntopng; in { - options.os.srv.ntopng.enable = lib.mkEnableOption "enables ntopng monitoring"; + options.os.srv.ntopng = { + enable = lib.mkEnableOption "enables ntopng monitoring"; + proxyConfig = lib.mkOption { + type = lib.types.attrs; + default = { }; + }; + }; config = lib.mkIf cfg.enable { services.ntopng = { enable = true; - httpPort = 3000; - extraConfig = "--packet-fanout"; + extraConfig = "--packet-fanout 'cluster' -g 2 -m '192.168.0.0/16,10.0.0.0/8' -X 50000 --community"; # TODO fill interfaces interfaces = [ - "" - "" + "" # WAN Interface + "" # LAN Interface + "" # Virtual Bridge ]; }; + os.srv.ntopng.proxyConfig = { + "ntopng.${masterDomain}" = { + enableACME = true; + forceSSL = true; + + locations."/" = { + proxyPass = "http://${config.os.core.network.ips.vm2-gateway}:3000"; + extraConfig = securityTemplates.restrictToInternal; + }; + }; + }; }; } -- cgit v1.3