summary refs log tree commit diff
path: root/host/Rory-nginx/services/matrix/synapse/workers/federation-reader.nix
blob: 5b3d4bf71c9efedc4fbae8d3aa020108696900e6 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
{ config, lib, ... }:

let
  cfg = config.services.matrix-synapse;
  dbGroup = "medium";
  workers = lib.range 0 (cfg.federationReaders - 1);
  workerName = "federation_reader";
  workerRoutes = {
    client = [ ];
    federation = [
      "~ ^/_matrix/federation/(v1|v2)/event/"
      "~ ^/_matrix/federation/(v1|v2)/state/"
      "~ ^/_matrix/federation/(v1|v2)/state_ids/"
      "~ ^/_matrix/federation/(v1|v2)/backfill/"
      "~ ^/_matrix/federation/(v1|v2)/get_missing_events/"
      "~ ^/_matrix/federation/(v1|v2)/publicRooms"
      "~ ^/_matrix/federation/(v1|v2)/query/"
      "~ ^/_matrix/federation/(v1|v2)/make_join/"
      "~ ^/_matrix/federation/(v1|v2)/make_leave/"
      "~ ^/_matrix/federation/(v1|v2)/send_join/"
      "~ ^/_matrix/federation/(v1|v2)/send_leave/"
      "~ ^/_matrix/federation/v1/make_knock/"
      "~ ^/_matrix/federation/v1/send_knock/"
      "~ ^/_matrix/federation/(v1|v2)/invite/"
      "~ ^/_matrix/federation/(v1|v2)/query_auth/"
      "~ ^/_matrix/federation/(v1|v2)/event_auth/"
      "~ ^/_matrix/federation/v1/timestamp_to_event/"
      "~ ^/_matrix/federation/(v1|v2)/exchange_third_party_invite/"
      "~ ^/_matrix/federation/(v1|v2)/user/devices/"
      "~ ^/_matrix/federation/(v1|v2)/get_groups_publicised$"
      "~ ^/_matrix/key/v2/query"
      # extra
      "~ ^/_matrix/key/v2/server$"
    ];
    media = [ ];
  };
in
let
  enabledResources =
    lib.optionals (lib.length workerRoutes.client > 0) [ "client" ]
    ++ lib.optionals (lib.length workerRoutes.federation > 0) [ "federation" ]
    ++ lib.optionals (lib.length workerRoutes.media > 0) [ "media" ];
in
{
  config = lib.mkIf (cfg.federationReaders > 0) {
    monitoring.synapse.workerNames = lib.map (index: "${workerName}-${toString index}") workers;
    services.matrix-synapse = {
      settings = {
        instance_map = lib.listToAttrs (
          lib.map (index: {
            name = "${workerName}-${toString index}";
            value = {
              path = "/run/matrix-synapse/${workerName}-${toString index}.sock";
            };
          }) workers
        );
      };

      workers = lib.listToAttrs (
        lib.map (index: {
          name = "${workerName}-${toString index}";
          value = {
            worker_app = "synapse.app.generic_worker";
            worker_listeners =
              [
                {
                  type = "http";
                  path = "/run/matrix-synapse/${workerName}-${toString index}.sock";
                  resources = [
                    {
                      names = [ "replication" ];
                      compress = false;
                    }
                  ];
                }
              ]
              ++ lib.map (type: {
                type = "http";
                path = "/run/matrix-synapse/${workerName}-${type}-${toString index}.sock";
                mode = "666";
                resources = [
                  {
                    names = [ type ];
                    compress = false;
                  }
                ];
              }) enabledResources;
            database = (
              import ../db.nix {
                inherit dbGroup;
                workerName = "${workerName}-${toString index}";
              }
            );
          };
        }) workers
      );
    };

    services.nginx = {
      upstreams = lib.listToAttrs (
        lib.map (type: {
          name = "${workerName}-${type}";
          value = {
            extraConfig = ''
              keepalive 32;
              least_conn;
            '';
            servers = lib.listToAttrs (
              lib.map (index: {
                name = "unix:/run/matrix-synapse/${workerName}-${type}-${toString index}.sock";
                value = {
                  max_fails = 0;
                };
              }) workers
            );
          };
        }) enabledResources
      );

      virtualHosts."${cfg.nginxVirtualHostName}".locations = lib.listToAttrs (
        lib.flatten (
          lib.forEach enabledResources (
            type:
            lib.map (route: {
              name = route;
              value = {
                proxyPass = "http://${workerName}-${type}";
                extraConfig = ''
                  proxy_http_version 1.1;
                  proxy_set_header Connection "";
                '';
              };
            }) workerRoutes.${type}
          )
        )
      );
    };
  };
}