| options/nixos/services.kanidm.serverSettings.online_backup.versions | Number of backups to keep
|
| options/nixos/services.xserver.desktopManager.budgie.sessionPath | Additional list of packages to be added to the session search path
|
| options/nixos/services.kanidm.serverSettings.origin | The origin of your Kanidm instance
|
| options/nixos/services.kanidm.serverSettings.tls_chain | TLS chain in pem format.
|
| options/nixos/services.yggdrasil.configFile | A file which contains JSON or HJSON configuration for yggdrasil
|
| options/nixos/services.kanidm.serverSettings.online_backup.schedule | The schedule for backups in cron format.
|
| options/nixos/services.kanidm.enableClient | Whether to enable the Kanidm client.
|
| options/nixos/services.kanidm.enableServer | Whether to enable the Kanidm server.
|
| options/nixos/services.kanidm.serverSettings.domain | The domain that Kanidm manages
|
| options/nixos/services.kanidm.unixSettings.hsm_pin_path | Path to a HSM pin.
|
| options/nixos/services.kanidm.serverSettings.log_level | Log level of the server.
|
| options/nixos/services.xserver.desktopManager.budgie.extraGSettingsOverrides | Additional GSettings overrides.
|
| options/nixos/services.kubernetes.addons.dns.coredns | Docker image to seed for the CoreDNS container.
|
| options/nixos/services.kanidm.serverSettings.role | The role of this server
|
| options/nixos/services.kanidm.serverSettings.bindaddress | Address/port combination the webserver binds to.
|
| options/nixos/services.kanidm.serverSettings.tls_key | TLS key in pem format.
|
| options/nixos/services.xserver.desktopManager.budgie.extraPlugins | Extra plugins for the Budgie desktop
|
| options/nixos/services.bluemap.enable | Whether to enable bluemap.
|
| options/nixos/security.please.package | The please package to use.
|
| options/nixos/services.cloudflare-ddns.provider.ipv4 | IP detection provider for IPv4
|
| options/nixos/services.akkoma.extraStatic | Attribute set of extra paths to add to the static files directory
|
| options/nixos/services.firewalld.zones.<name>.sources.*.mac | A MAC address.
|
| options/nixos/networking.wireguard.interfaces.<name>.peers.*.presharedKey | Base64 preshared key generated by wg genpsk
|
| options/nixos/services.aesmd.settings.proxyType | Type of proxy to use
|
| options/nixos/networking.firewall.extraInputRules | Additional nftables rules to be appended to the input-allow
chain
|
| options/nixos/networking.wg-quick.interfaces.<name>.postDown | Command called after the interface is taken down.
|
| options/nixos/services.deconz.openFirewall | Whether to enable opening up the service ports in the firewall.
|
| options/nixos/services._3proxy.services.*.extraConfig | Extra configuration for service
|
| options/nixos/services.desktopManager.pantheon.extraGSettingsOverrides | Additional gsettings overrides.
|
| options/nixos/hardware.xpad-noone.enable | Whether to enable the Xpad driver from the Linux kernel with support for Xbox One controllers removed.
|
| options/nixos/networking.wireguard.interfaces.<name>.peers.*.dynamicEndpointRefreshSeconds | Periodically re-execute the wg utility every
this many seconds in order to let WireGuard notice DNS / hostname
changes
|
| options/nixos/services.librechat.env.PORT | The value that will be passed to the PORT environment variable, telling LibreChat what to listen on.
|
| options/nixos/networking.jool.siit | Definitions of SIIT instances of Jool
|
| options/nixos/services.jicofo.xmppHost | Hostname of the XMPP server to connect to.
|
| options/nixos/security.duosec.groups | If specified, Duo authentication is required only for users
whose primary group or supplementary group list matches one
of the space-separated pattern lists
|
| options/nixos/services.canaille.settings.CANAILLE_LDAP.BIND_PW | The LDAP bind password
|
| options/nixos/services.kanboard.user | User under which Kanboard runs.
|
| options/nixos/services.bee.enable | Whether to enable Ethereum Swarm Bee.
|
| options/nixos/hardware.cpu.x86.msr.owner | Owner to set for devices of the msr kernel subsystem.
|
| options/nixos/services.headscale.settings.database.postgres.user | Database user.
|
| options/nixos/services.hydra.extraEnv | Extra environment variables for Hydra.
|
| options/nixos/services.cloudflare-ddns.deleteOnStop | Whether to delete the managed DNS records and clear WAF lists when the service is stopped gracefully
|
| options/nixos/programs.xonsh.config | Extra text added to the end of /etc/xonsh/xonshrc,
the system-wide control file for xonsh.
|
| options/nixos/programs.wireshark.usbmon.enable | Whether to allow users in the 'wireshark' group to capture USB traffic
|
| options/nixos/security.sudo.wheelNeedsPassword | Whether users of the wheel group must
provide a password to run commands as super user via sudo.
|
| options/nixos/security.pam.dp9ik.enable | Whether to enable the dp9ik pam module provided by tlsclient
|
| options/nixos/services.ax25.axports.<name>.baud | The serial port speed of this interface.
|
| options/nixos/services.bacula-sd.tls.key | The path of a PEM encoded TLS private key
|
| options/nixos/services.akkoma.config.":web_push_encryption".":vapid_details".subject | mailto URI for administrative contact.
|
| options/nixos/services.fediwall.nginx.redirectCode | HTTP status used by globalRedirect and forceSSL
|
| options/nixos/services.borgbackup.jobs.<name>.encryption.passCommand | A command which prints the passphrase to stdout
|
| options/nixos/services.collabora-online.aliasGroups | Alias groups to use.
|
| options/nixos/services.geth.<name>.gcmode | Blockchain garbage collection mode.
|
| options/nixos/programs.clash-verge.tunMode | Whether to enable Setcap for TUN Mode
|
| options/nixos/security.ipa.ifpAllowedUids | A list of users allowed to access the ifp dbus interface.
|
| options/nixos/security.isolate.firstUid | Start of block of UIDs reserved for sandboxes.
|
| options/nixos/services.lavalink.enable | Whether to enable Lavalink.
|
| options/nixos/services.cachix-watch-store.package | The cachix package to use.
|
| options/nixos/services.hadoop.hdfsSite | Additional options and overrides for hdfs-site.xml
https://hadoop.apache.org/docs/current/hadoop-project-dist/hadoop-hdfs/hdfs-default.xml
|
| options/nixos/services.gitea.database.passwordFile | A file containing the password corresponding to
database.user.
|
| options/nixos/services.firezone.gui-client.enable | Whether to enable the firezone gui client.
|
| options/nixos/services.hockeypuck.settings | Configuration file for hockeypuck, here you can override
certain settings (loglevel and
openpgp.db.dsn) by just setting those values
|
| options/nixos/services.iodine.server.domain | Domain or subdomain of which nameservers point to us
|
| options/nixos/hardware.sane.netConf | Network hosts that should be probed for remote scanners.
|
| options/nixos/services.kimai.sites.<name>.database.socket | Path to the unix socket file to use for authentication.
|
| options/nixos/networking.dhcpcd.runHook | Shell code that will be run after all other hooks
|
| options/nixos/services.discourse.mail.incoming.apiKeyFile | A file containing the Discourse API key used to add
posts and messages from mail
|
| options/nixos/hardware.cpu.amd.ryzen-smu.enable | Whether to enable ryzen_smu, a linux kernel driver that exposes access to the SMU (System Management Unit) for certain AMD Ryzen Processors
|
| options/nixos/services.amule.dataDir | Directory holding configuration and by default also incoming and temporary files
|
| options/nixos/services.h2o.hosts.<name>.tls.redirectCode | HTTP status used by globalRedirect & forceSSL
|
| options/nixos/services.athens.goGetWorkers | Number of workers concurrently downloading modules.
|
| options/nixos/services.kanata.keyboards.<name>.devices | Paths to keyboard devices
|
| options/nixos/services.flexget.systemScheduler | When true, execute the runs via the flexget-runner.timer
|
| options/nixos/services.clamav.daemon.settings | ClamAV configuration
|
| options/nixos/services.lact.package | The lact package to use.
|
| options/nixos/services.kanboard.nginx.listen.*.addr | Listen address.
|
| options/nixos/hardware.sata.timeout.deciSeconds | Set SCT Error Recovery Control timeout in deciseconds for use in RAID configurations
|
| options/nixos/hardware.facter.detected.networking.intel._2200BG.enable | Whether to enable the Facter Intel 2200BG module.
|
| options/nixos/networking.openconnect.interfaces.<name>.protocol | Protocol to use.
|
| options/nixos/services.lighthouse.beacon.execution.jwtPath | Path for the jwt secret required to connect to the execution layer.
|
| options/nixos/services.eg25-manager.enable | Whether to enable Quectel EG25 modem manager service.
|
| options/nixos/services.dendrite.settings.global.private_key | The path to the signing private key file, used to sign
requests and events.
nix-shell -p dendrite --command "generate-keys --private-key matrix_key.pem"
|
| options/nixos/services.ddclient.use | Method to determine the IP address to send to the dynamic DNS provider.
|
| options/nixos/services.gocd-server.listenAddress | Specifies the bind address on which the Go
|
| options/nixos/services.i2pd.yggdrasil.enable | Whether to enable Yggdrasil.
|
| options/nixos/services.calibre-web.group | Group account under which Calibre-Web runs.
|
| options/nixos/services.athens.goEnv | Specifies the type of environment to run
|
| options/nixos/services.gitlab.logrotate.enable | Enable rotation of log files.
|
| options/nixos/programs.miriway.config | Miriway's config
|
| options/nixos/services.bitwarden-directory-connector-cli.sync.groupNameAttribute | Attribute for a name of group.
|
| options/nixos/security.doas.extraRules | Define specific rules to be set in the
/etc/doas.conf file
|
| options/nixos/services.akkoma.nginx.locations.<name>.recommendedUwsgiSettings | Enable recommended uwsgi settings.
|
| options/nixos/services.cfssl.responder | Certificate for OCSP responder.
|
| options/nixos/services.hickory-dns.settings.listen_addrs_ipv4 | List of ipv4 addresses on which to listen for DNS queries.
|
| options/nixos/services.hitch.group | The group to run as
|
| options/nixos/services.hadoop.yarn.nodemanager.resource.maximumAllocationVCores | The maximum virtual CPU cores any container can be allocated.
|
| options/nixos/services.librenms.dataDir | Path of the LibreNMS state directory.
|
| options/nixos/services.gnome.core-apps.enable | Whether to enable GNOME core apps.
|
| options/nixos/programs.steam.localNetworkGameTransfers.openFirewall | Open ports in the firewall for Steam Local Network Game Transfers.
|
| options/nixos/programs.command-not-found.enable | Whether interactive shells should show which Nix package (if
any) provides a missing command
|