232 lines
11 KiB
Nix
232 lines
11 KiB
Nix
{ pkgs, config, lib, ... }:
|
|
|
|
/*
|
|
this is a wrapper module for glance that allows you to
|
|
to pass monitor entries in with nix, all declaratively!
|
|
|
|
| <8yy> |
|
|
V V
|
|
# add to glance
|
|
modules.services.glance.links.mediastack = [{
|
|
title = service;
|
|
url = "https://${cfg.url}";
|
|
error-url = "http://${homelab.host_ip}:${toString cfg.port}";
|
|
check-url = "http://${homelab.host_ip}:${toString cfg.port}";
|
|
icon = "di:${service}";
|
|
allow-insecure = true; }];
|
|
*/
|
|
|
|
let
|
|
service = "glance";
|
|
cfg = config.modules.services.${service};
|
|
sec = config.sops.secrets;
|
|
homelab = config.modules.homelab;
|
|
in
|
|
{
|
|
options.modules.services.${service} = {
|
|
enable = lib.mkEnableOption "enables ${service}";
|
|
|
|
# set port options
|
|
port = lib.mkOption {
|
|
type = lib.types.int;
|
|
default = 7700;
|
|
description = "set port for ${service} (default: ${toString cfg.port}";
|
|
};
|
|
url = lib.mkOption {
|
|
type = lib.types.str;
|
|
default = "${homelab.base_domain}";
|
|
description = "set domain for ${service}";
|
|
};
|
|
data_dir = lib.mkOption {
|
|
type = lib.types.str;
|
|
default = "/var/lib/${service}";
|
|
description = "set data directory for ${service}";
|
|
};
|
|
ids = lib.mkOption {
|
|
type = lib.types.int;
|
|
default = cfg.port;
|
|
description = "set uid and pid of ${service} user (matches port by default)";
|
|
};
|
|
backup = lib.mkOption {
|
|
type = lib.types.bool;
|
|
default = true;
|
|
description = "enable backups for ${service}";
|
|
};
|
|
links = {
|
|
services = lib.mkOption {
|
|
type = lib.types.listOf lib.types.attrs;
|
|
default = [];
|
|
description = "list of links for ${service}";
|
|
};
|
|
mediastack = lib.mkOption {
|
|
type = lib.types.listOf lib.types.attrs;
|
|
default = [];
|
|
description = "list of links for ${service}";
|
|
};
|
|
system = lib.mkOption {
|
|
type = lib.types.listOf lib.types.attrs;
|
|
default = [];
|
|
description = "list of links for ${service}";
|
|
};
|
|
};
|
|
};
|
|
|
|
config = lib.mkIf cfg.enable {
|
|
|
|
|
|
# declare ${service} group
|
|
users.groups.${service} = { gid = lib.mkForce cfg.ids; };
|
|
|
|
# declare ${service} user
|
|
users.users.${service} = {
|
|
description = "${service} server user";
|
|
uid = lib.mkForce cfg.ids;
|
|
isSystemUser = true;
|
|
home = cfg.data_dir;
|
|
createHome = true;
|
|
group = "${service}";
|
|
extraGroups = [];
|
|
};
|
|
|
|
services.${service} = {
|
|
enable = true;
|
|
openFirewall = true;
|
|
settings = {
|
|
server = {
|
|
host = "0.0.0.0";
|
|
port = cfg.port;
|
|
};
|
|
pages = [
|
|
{
|
|
name = "snowbelle";
|
|
hide-desktop-navigation = true;
|
|
columns = [
|
|
{
|
|
size = "small";
|
|
widgets = [
|
|
{ type = "calendar"; first-day-of-week = "monday"; }
|
|
{ type = "server-stats"; servers = [ { type = "local"; name = "violet"; } ]; }
|
|
{
|
|
type = "clock";
|
|
hour-format = "24h";
|
|
timezones = [
|
|
{ timezone = "America/Chicago"; label = "HTX"; }
|
|
{ timezone = "America/Denver"; label = "AF"; }
|
|
];
|
|
}
|
|
{ type = "twitch-channels"; channels = [ "mang0" "SaltSSBM" "thewaffle77" "ironmouse" "linustech" ]; }
|
|
];
|
|
}
|
|
{
|
|
size = "full";
|
|
widgets = [
|
|
{
|
|
type = "search";
|
|
autofocus = true;
|
|
search-engine = "https://www.ecosia.org/search?q={QUERY}";
|
|
new-tab = true;
|
|
bangs = [
|
|
{ title = "YouTube"; shortcut = "!y"; url = "https://www.youtube.com/results?search_query={QUERY}"; }
|
|
{ title = "Google"; shortcut = "!g"; url = "https://www.google.com/search?q={QUERY}"; }
|
|
{ title = "Github"; shortcut = "!gh"; url = "https://github.com/search?q={QUERY}&type=repositories"; }
|
|
];
|
|
}
|
|
{
|
|
type = "monitor";
|
|
cache = "1m";
|
|
title = "services";
|
|
sites = cfg.links.services;
|
|
}
|
|
{
|
|
type = "monitor";
|
|
cache = "1m";
|
|
title = "mediastack";
|
|
sites = cfg.links.mediastack;
|
|
}
|
|
{
|
|
type = "monitor";
|
|
cache = "1m";
|
|
title = "system";
|
|
sites = cfg.links.system;
|
|
}
|
|
{
|
|
type = "custom-api";
|
|
title = "minecraft recpro";
|
|
cache = "5s";
|
|
allow-insecure = true;
|
|
url = "\${CRAFTY_URL}/api/v2/servers/\${CRAFTY_SERVER_ID}/stats";
|
|
headers = {
|
|
Authorization = "Bearer \${CRAFTY_API_TOKEN}";
|
|
Accept = "application/json";
|
|
};
|
|
template = "<!-- USER SETTINGS SECTION -->\n\n<!-- Change true to false if you wish to not display the MOTD -->\n{{ $displayMOTD := true }}\n\n<!-- END OF USER SETTINGS SECTION -->\n\n{{ $is_running := .JSON.Bool \"data.running\" }}\n{{ $online_players := .JSON.Int \"data.online\" | formatNumber }}\n{{ $max_players := .JSON.Int \"data.max\" | formatNumber }}\n{{ $name := .JSON.String \"data.world_name\" }}\n{{ $size := .JSON.String \"data.world_size\" }}\n{{ $version := .JSON.String \"data.version\" }}\n{{ $icon := .JSON.String \"data.icon\" }}\n{{ $server_ip := .JSON.String \"data.server_id.server_ip\" }}\n{{ $server_port := .JSON.String \"data.server_id.server_port\" }}\n{{ $motd := .JSON.String \"data.desc\" }}\n\n{{ $server_addr := \"\" }}\n{{ if and ($is_running) (eq $server_ip \"127.0.0.1\") }}\n {{ $server_addr = printf \"%s:%s\" (replaceMatches \"https?://\" \"\" \"\${CRAFTY_URL}\") $server_port }}\n{{ else if $is_running }}\n {{ $server_addr = printf \"%s:%s\" $server_ip $server_port }}\n{{ end }}\n\n{{ $starting := false }}\n{{ if and ($is_running) (eq $max_players \"0\") (eq $version \"False\") }}\n {{ $starting = true }}\n{{ end }}\n\n<!-- I couldn't find documentation describing the \"waiting_start\" state or the other booleans below. Implementation might not be correct. -->\n{{ $updating := .JSON.Bool \"data.updating\" }}\n{{ $importing := .JSON.Bool \"data.importing\" }}\n{{ $crashed := .JSON.Bool \"data.crashed\" }}\n\n<div style=\"display:flex; align-items:center; gap:12px;\">\n <!-- Server Icon -->\n <div style=\"width:40px; height:40px; flex-shrink:0; border-radius:4px; display:flex; justify-content:center; align-items:center; overflow:hidden;\">\n {{ if eq $icon \"\" }}\n <img src=\"https://cdn.jsdelivr.net/gh/selfhst/icons/png/minecraft.png\" style=\"width:100%; height:100%; object-fit:contain;\" alt=\"Server icon\">\n {{ else }}\n <img src=\"data:image/png;base64, {{ $icon }}\" style=\"width:100%; height:100%; object-fit:contain;\" alt=\"Server icon\">\n {{ end }}\n </div>\n\n <!-- Right side: Info -->\n <div style=\"display:flex; flex-direction:column;\">\n <!-- First row: Server Name + IP -->\n <div style=\"display:flex; align-items:center; gap:6px;\">\n <span class=\"size-h4 block text-truncate color-primary\">\n {{ $name }}\n </span>\n\n {{ if and ($is_running) (not $starting) (not (eq $server_addr \"\")) }}\n <div style=\"font-size:0.9em; color:var(--color-secondary);\">\n <span class=\"size-h6 color-secondary\">\n {{ $server_addr }}\n </span>\n </div>\n {{ end }}\n </div>\n\n <!-- Second row: MOTD & Stats if server is running, otherwise show status msg ... -->\n {{ if and ($is_running) (not $starting) }}\n {{ if and (not (eq $motd \"\")) ($displayMOTD) }}\n <div style=\"font-size:0.9em; color:var(--color-secondary);\">\n {{ replaceMatches \"§.\" \"\" $motd }}\n </div>\n {{ end }}\n\n <div style=\"font-size:0.9em; color:var(--color-secondary);\">\n {{ $version }} - {{ $online_players }}/{{ $max_players }} players - {{ $size }}\n </div>\n\n <!-- lots of assumptions about the boolean states meanings from crafty api.. -->\n {{ else if $starting }}\n <div style=\"font-size:0.9em; color:var(--color-secondary);\">Server is starting up..</div>\n {{ else if $importing }}\n <div style=\"font-size:0.9em; color:var(--color-secondary);\">Server is being imported..</div>\n {{ else if $updating }}\n <div style=\"font-size:0.9em; color:var(--color-secondary);\">Server is being updated..</div>\n {{ else if $crashed }}\n <div style=\"font-size:0.9em; color:var(--color-secondary);\">Server has crashed!</div>\n {{ else }}\n <div style=\"font-size:0.9em; color:var(--color-secondary);\">Server is offline</div>\n {{ end }}\n </div>\n</div>";
|
|
}
|
|
];
|
|
}
|
|
{
|
|
size = "small";
|
|
widgets = [
|
|
{ type = "weather"; location = "Pearland, Texas, United States"; units = "imperial"; hour-format = "24h"; }
|
|
{
|
|
type = "markets";
|
|
markets = [
|
|
{ symbol = "SPY"; name = "S&P 500"; }
|
|
{ symbol = "XMR-USD"; name = "Monero"; }
|
|
{ symbol = "NVDA"; name = "NVIDIA"; }
|
|
{ symbol = "AAPL"; name = "Apple"; }
|
|
{ symbol = "MSFT"; name = "Microsoft"; }
|
|
];
|
|
}
|
|
{
|
|
type = "releases";
|
|
cache = "1d";
|
|
repositories = [
|
|
"glanceapp/glance"
|
|
"go-gitea/gitea"
|
|
"immich-app/immich"
|
|
"syncthing/syncthing"
|
|
];
|
|
}
|
|
];
|
|
}
|
|
];
|
|
}
|
|
];
|
|
};
|
|
};
|
|
|
|
|
|
|
|
# override umask to make permissions work out
|
|
systemd.services.${service}.serviceConfig = {
|
|
UMask = lib.mkForce "0007";
|
|
# User = "${service}";
|
|
# Group = "${service}";
|
|
};
|
|
|
|
# # open firewall
|
|
# networking.firewall.allowedTCPPorts = [ cfg.port ];
|
|
|
|
# sops.secrets = {
|
|
# "${service}_" = {
|
|
# owner = "${service}";
|
|
# group = "${service}";
|
|
# };
|
|
# };
|
|
|
|
# add to caddy for reverse proxy
|
|
services.caddy.virtualHosts."${cfg.url}" = {
|
|
# serverAliases = [ "${homelab.public_domain}" ];
|
|
extraConfig = ''
|
|
tls ${sec."ssl_blakedheld_crt".path} ${sec."ssl_blakedheld_key".path}
|
|
reverse_proxy http://127.0.0.1:${toString cfg.port}
|
|
'';
|
|
};
|
|
|
|
# add to backups
|
|
modules.system.backups.baks = {
|
|
${service} = { paths = [ cfg.data_dir ]; };
|
|
};
|
|
};
|
|
}
|