Add the files that land in the image, organised as layered rootfs trees (base first, then the edition layer wins on conflict). - base: hardened kernel cmdline + sysctl, default-deny nftables, key-only ssh, persistent journald, module blacklist, no core dumps, snapshot timer units, motd. - server: Prometheus + auto-provisioned Grafana + Loki + promtail. - workstation: dev profile and desktop sysctl relaxations (perf, rootless containers). - cloud: cloud-init provisioning config.
32 lines
754 B
YAML
32 lines
754 B
YAML
# Arcline OS — Promtail configuration (server edition)
|
|
# Ships systemd journal + /var/log files to Loki. Zero telemetry: this only
|
|
# talks to the local Loki instance on localhost.
|
|
|
|
server:
|
|
http_listen_port: 9080
|
|
grpc_listen_port: 0
|
|
|
|
positions:
|
|
filename: /var/lib/promtail/positions.yaml
|
|
|
|
clients:
|
|
- url: http://localhost:3100/loki/api/v1/push
|
|
|
|
scrape_configs:
|
|
- job_name: systemd-journal
|
|
journal:
|
|
path: /var/log/journal
|
|
max_age: 12h
|
|
labels:
|
|
job: systemd-journal
|
|
relabel_configs:
|
|
- source_labels: ["__journal__systemd_unit"]
|
|
target_label: "unit"
|
|
|
|
- job_name: varlogs
|
|
static_configs:
|
|
- targets: [localhost]
|
|
labels:
|
|
job: varlogs
|
|
__path__: /var/log/**/*.log
|