summary refs log blame commit diff
path: root/nixos/modules/programs/nethoscope.nix
blob: d8ece61c90a2bedde30923c0a8cf3c2bdbbe5146 (plain) (tree)
1
2
3
4
5
6
7
8
9
10
11
12
13
14













                                                   
                                  














                                                                             
{ config, lib, pkgs, ... }:

with lib;

let cfg = config.programs.nethoscope;
in
{
  meta.maintainers = with maintainers; [ _0x4A6F ];

  options = {
    programs.nethoscope = {
      enable = mkOption {
        type = types.bool;
        default = false;
        description = lib.mdDoc ''
          Whether to add nethoscope to the global environment and configure a
          setcap wrapper for it.
        '';
      };
    };
  };

  config = mkIf cfg.enable {
    environment.systemPackages = with pkgs; [ nethoscope ];
    security.wrappers.nethoscope = {
      source = "${pkgs.nethoscope}/bin/nethoscope";
      capabilities = "cap_net_raw,cap_net_admin=eip";
    };
  };
}