| options/nixos/services.nginx.virtualHosts.<name>.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|
| options/nixos/services.printing.cups-pdf.instances.<name>.settings | Settings for a cups-pdf instance, see the descriptions in the template config file in the cups-pdf package
|
| options/nixos/services.reposilite.settings.keyPath | Path to the .jsk KeyStore or paths to the PKCS#8 certificate and private key, separated by a space (see example)
|
| options/nixos/services.ntpd-rs.package | The ntpd-rs package to use.
|
| options/nixos/services.oauth2-proxy.github.team | Restrict logins to members of this team.
|
| options/nixos/services.ringboard.x11.package | The ringboard package to use.
|
| options/nixos/services.pihole-web.package | The pihole-web package to use.
|
| options/nixos/services.transmission.openFirewall | Alias of services.transmission.openPeerPorts.
|
| options/nixos/services.scion.bypassBootstrapWarning | bypass Nix warning about SCION PKI bootstrapping
|
| options/nixos/services.prometheus.exporters.mqtt.mqttV5Protocol | Whether to enable Force to use MQTT protocol v5 instead of 3.1.1..
|
| options/nixos/services.ncps.cache.lock.redisKeyPrefix | Prefix for all Redis lock keys (only used when Redis is
configured).
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.ppk_required | Whether a Postquantum Preshared Key (PPK) is required for this connection
|
| options/nixos/services.sftpgo.user | User account name under which SFTPGo runs.
|
| options/nixos/services.prometheus.scrapeConfigs.*.linode_sd_configs.*.oauth2.scopes | Scopes for the token request.
|
| options/nixos/services.mediagoblin.paste.settings | Settings which are written into paste.ini.
|
| options/nixos/services.mympd.extraGroups | Additional groups for the systemd service.
|
| options/nixos/services.trezord.enable | Enable Trezor bridge daemon, for use with Trezor hardware bitcoin wallets.
|
| options/nixos/services.mptcpd.package | The mptcpd package to use.
|
| options/nixos/services.outline.rateLimiter.durationWindow | Length of a throttling window.
|
| options/nixos/services.murmur.registerHostname | DNS hostname where your server can be reached
|
| options/nixos/services.n8n.package | The n8n package to use.
|
| options/nixos/services.snipe-it.nginx.locations.<name>.return | Adds a return directive, for e.g. redirections.
|
| options/nixos/services.pulseaudio.enable | Whether to enable the PulseAudio sound server.
|
| options/nixos/services.rosenpass.package | The rosenpass package to use.
|
| options/nixos/services.oncall.settings.oncall_host | FQDN for the Oncall instance.
|
| options/nixos/services.prometheus.scrapeConfigs.*.hetzner_sd_configs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| options/nixos/services.mjolnir.pantalaimon.options.listenAddress | The address where the daemon will listen to client connections
for this homeserver.
|
| options/nixos/services.shoko.package | The shoko package to use.
|
| options/nixos/services.monica.poolConfig | Options for the monica PHP pool
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.remote.<name>.eap_id | Identity to use as peer identity during EAP authentication
|
| options/nixos/services.szurubooru.server.settings.delete_source_files | Whether to delete thumbnails and source files on post delete.
|
| options/nixos/services.namecoind.extraNodes | List of additional peer IP addresses to connect to.
|
| options/nixos/services.nsd.xfrdReloadTimeout | Number of seconds between reloads triggered by xfrd.
|
| options/nixos/services.prometheus.exporters.nut.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.mosquitto.listeners.*.port | Port to listen on
|
| options/nixos/services.slurm.dbdserver.enable | Whether to enable SlurmDBD service.
|
| options/nixos/services.prometheus.alertmanager-ntfy.settings.ntfy.notification.tags.*.tag | The tag to add
|
| options/nixos/services.nginx.virtualHosts.<name>.locations.<name>.recommendedProxySettings | Enable recommended proxy settings.
|
| options/nixos/services.tor.settings.ExitPolicy | See torrc manual.
|
| options/nixos/services.monetdb.enable | Whether to enable the MonetDB database server.
|
| options/nixos/services.slskd.openFirewall | Whether to open the firewall for the soulseek network listen port (not the web interface port).
|
| options/nixos/services.pipewire.enable | Whether to enable PipeWire service.
|
| options/nixos/services.pgbackrest.commands.backup | Options for the 'backup' command
|
| options/nixos/services.stunnel.enableInsecureSSLv3 | Enable support for the insecure SSLv3 protocol.
|
| options/nixos/services.thelounge.enable | Whether to enable The Lounge web IRC client.
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.environment | See the configuration guide for available options.
|
| options/nixos/services.pretix.environmentFile | Environment file to pass secret configuration values
|
| options/nixos/services.syncplay.port | TCP port to bind to.
|
| options/nixos/services.syncthing.settings.devices.<name>.autoAcceptFolders | Automatically create or share folders that this device advertises at the default path
|
| options/nixos/services.sftpgo.settings.httpd.bindings.*.port | The port for serving HTTP(S) requests
|
| options/nixos/services.matrix-conduit.settings.global.allow_federation | Whether this server federates with other servers.
|
| options/nixos/services.sillytavern.enable | Whether to enable sillytavern.
|
| options/nixos/services.synergy.client.screenName | Use the given name instead of the hostname to identify
ourselves to the server.
|
| options/nixos/services.postfix.enableSubmissions | Whether to enable the submissions service configured in master.cf
|
| options/nixos/services.mobilizon.settings.":mobilizon".":instance".name | The fallback instance name if not configured into the admin UI
|
| options/nixos/services.monica.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/services.postgresql.settings.shared_preload_libraries | List of libraries to be preloaded.
|
| options/nixos/services.limesurvey.nginx.virtualHost.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| options/nixos/services.newt.enable | Whether to enable Newt, user space tunnel client for Pangolin.
|
| options/nixos/services.prometheus.exporters.dmarc.imap.host | Hostname of IMAP server to connect to.
|
| options/nixos/services.snapper.configs.<name>.ALLOW_GROUPS | List of groups allowed to operate with the config
|
| options/nixos/services.maubot.settings.crypto_database | Separate database URL for the crypto database
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.acmeFallbackHost | Host which to proxy requests to if ACME challenge is not found
|
| options/nixos/services.mobilizon.settings.":mobilizon"."Mobilizon.Web.Endpoint".http.ip | The IP address to listen on
|
| options/nixos/services.monica.mail.from | Mail "from" email.
|
| options/nixos/services.reaction.loglevel | reaction's loglevel
|
| options/nixos/services.suricata.settings.logging.outputs.file.level | Loglevel for logs written to the logfile.
|
| options/nixos/services.sshwifty.enable | Whether to enable Sshwifty.
|
| options/nixos/services.rutorrent.dataDir | Storage path of ruTorrent.
|
| options/nixos/services.slskd.settings.retention.transfers.download.succeeded | Lifespan of succeeded download tasks.
|
| options/nixos/services.nginx.enableReload | Reload nginx when configuration file changes (instead of restart)
|
| options/nixos/services.prometheus.exporters.exportarr-readarr.port | Port to listen on.
|
| options/nixos/services.netbird.clients.<name>.dir.baseName | A systemd service name to use (without .service suffix).
|
| options/nixos/services.limesurvey.nginx.virtualHost.locations.<name>.alias | Alias directory for requests.
|
| options/nixos/services.surrealdb.host | The host that surrealdb will connect to.
|
| options/nixos/services.prometheus.exporters.nats.url | NATS monitor endpoint to query.
|
| options/nixos/services.nextcloud.phpPackage | The php package to use.
|
| options/nixos/services.ncps.cache.database.pool.maxOpenConns | Maximum number of open connections to the database (0 = use
database-specific defaults).
|
| options/nixos/services.system76-scheduler.settings.cfsProfiles.default.wakeup-granularity | sched_wakeup_granularity_ns.
|
| options/nixos/services.prometheus.scrapeConfigs.*.docker_sd_configs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| options/nixos/services.thanos.query.store.sd-interval | Refresh interval to re-read file SD files
|
| options/nixos/services.prometheus.scrapeConfigs.*.dockerswarm_sd_configs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| options/nixos/services.redmine.database.host | Database host address.
|
| options/nixos/services.prometheus.exporters.idrac.group | Group under which the idrac exporter shall be run.
|
| options/nixos/services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.basic_auth.password_file | HTTP password file
|
| options/nixos/services.reposilite.user | The user to run Reposilite under.
|
| options/nixos/services.pulseaudio.tcp.anonymousClients.allowedIpRanges | A list of IP subnets that are allowed to stream to the server.
|
| options/nixos/services.pipewire.wireplumber.extraLv2Packages | List of packages that provide LV2 plugins in lib/lv2 that should
be made available to WirePlumber for [filter chains][wiki-filter-chain]
|
| options/nixos/services.thanos.compact.arguments | Arguments to the thanos compact command
|
| options/nixos/services.tor.settings.NATDPort | See torrc manual.
|
| options/nixos/services.thanos.rule.web.route-prefix | Prefix for API and UI endpoints
|
| options/nixos/services.privoxy.settings.listen-address | Pair of address:port the proxy server is listening to.
|
| options/nixos/services.tor.settings.ExtORPort | See torrc manual.
|
| options/nixos/services.prometheus.exporters.mysqld.user | User name under which the mysqld exporter shall be run.
|
| options/nixos/services.oauth2-proxy.skipAuthRegexes | Skip authentication for requests matching any of these regular
expressions.
|
| options/nixos/services.sanoid.datasets.<name>.process_children_only | Whether to only snapshot child datasets if recursing.
|
| options/nixos/services.toxBootstrapd.port | Listening port (UDP).
|
| options/nixos/services.parsedmarc.settings.smtp.ssl | Use an encrypted SSL/TLS connection.
|
| options/nixos/services.rustus.host | The host that rustus will connect to.
|
| options/nixos/services.printing.cups-pdf.instances.<name>.enable | Whether to enable this cups-pdf instance.
|