diff --git a/services/telegraf.nix b/services/telegraf.nix index 8539ad66..ab0bf474 100644 --- a/services/telegraf.nix +++ b/services/telegraf.nix @@ -1,12 +1,14 @@ { config, pkgs, hostname, ... }: { # Telegraf Monitoring + # Set up the secrets file for the token: sops.secrets.telegraf-token = { owner = "telegraf"; sopsFile = ../secrets/secrets.yaml; restartUnits = [ "telegraf.service" ]; }; + # Add telegraf to "wheel" to allow the use of sudo: users.users.telegraf = { extraGroups = [ "wheel" ]; isSystemUser = true; @@ -69,6 +71,7 @@ system = {}; fail2ban = { use_sudo = true; + socket = "/var/run/fail2ban/fail2ban.sock" }; intel_powerstat = {}; net = {};