2024-01-31 05:23:52 +01:00
|
|
|
{ inputs, pkgs, system, ... }: {
|
2023-12-02 12:11:50 +01:00
|
|
|
boot.kernel.sysctl = {
|
2024-08-05 05:20:46 +02:00
|
|
|
"fs.inotify.max_user_watches" = 52428800;
|
|
|
|
"fs.inotify.max_user_instances" = 4096;
|
|
|
|
|
|
|
|
# Testing...
|
|
|
|
"net.core.netdev_max_backlog" = 4000;
|
|
|
|
"net.ipv4.tcp_max_syn_backlog" = 4096;
|
2023-12-02 12:11:50 +01:00
|
|
|
};
|
2023-12-02 14:36:39 +01:00
|
|
|
|
2024-12-23 21:01:56 +01:00
|
|
|
# Allow Docker containers to access Tailscale network
|
|
|
|
networking.firewall = {
|
|
|
|
trustedInterfaces = [ "tailscale0" ];
|
2024-12-23 21:03:03 +01:00
|
|
|
allowedUDPPorts = [ 41641 ]; # Tailscale port
|
2024-12-23 21:01:56 +01:00
|
|
|
};
|
|
|
|
|
2023-11-25 07:17:29 +01:00
|
|
|
virtualisation.docker = {
|
|
|
|
enable = true;
|
|
|
|
enableOnBoot = true;
|
|
|
|
autoPrune.enable = true;
|
|
|
|
autoPrune.dates = "weekly";
|
|
|
|
liveRestore = true;
|
|
|
|
};
|
2023-12-01 11:58:41 +01:00
|
|
|
|
2023-12-04 13:48:23 +01:00
|
|
|
environment.systemPackages = with pkgs; [
|
|
|
|
docker-compose
|
|
|
|
ctop
|
|
|
|
];
|
2024-01-18 05:24:02 +01:00
|
|
|
|
|
|
|
# Add the docker telegraf listener
|
2024-01-18 05:25:13 +01:00
|
|
|
services.telegraf.extraConfig.inputs.docker = {};
|
2024-01-18 06:04:35 +01:00
|
|
|
users.users.telegraf.extraGroups = [ "docker" ];
|
2023-12-02 12:11:50 +01:00
|
|
|
}
|