loki: use https, limit endpoint exposure #144
Reference in New Issue
Block a user
Delete Branch "loki/disable-public-pprof"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Hvorfor dro den inn radical committen.
ikke tid atm til å fikse.
@@ -3,14 +3,15 @@letcfg = config.services.loki;stateDir = "/data/monitoring/loki";internalPort = 83100;Tror ikke du kan bruke portnummer over 65535
@@ -0,0 +3,4 @@domain = "dav.pvv.ntnu.no";radicalePort = 5232;in {services.radicale = {Hvordan havna radicale i pr-en?
Den på main er
5f14c15679, den på branchen din erb592f0100a, de har forskjellig commitmelding og hash05589e7520to2805c5e78dTok meg friheten til å bare fikse litt, siden det er SOC issue
identitetstyveri
ja hehe :3
Where did you find the suggestion to only expose this endpoint btw? Are we sure that we don't need any other endpoints like
GET /ready?https://grafana.com/docs/loki/latest/reference/loki-http-api/
I suppose we could also firewall the nginx to only accept data from the pvv subnet in any case
Need to change the host in the fluentbit log exporter to match the virtualhost.
I suppose we also don't have any loki exporters on the non-nixos machines, so no salt changes needed.
also DNS for the virtual host...
2805c5e78dto34570c554bWIP: Loki/disable public pprofto loki: use https, limit endpoint exposureMerging this so we can answer SOC, please fixup any wrongdoing in a later commit if there is any.
34570c554bto3fee83ec05