| options/nixos/services.pipewire.package | The pipewire package to use.
|
| options/nixos/services.maubot.settings.server.override_resource_path | Override path from where to load UI resources.
|
| options/nixos/services.taskserver.pki.auto.expiration.ca | The expiration time of the CA certificate in days or null for no
expiration time.
|
| options/nixos/services.prometheus.exporters.mailman3.listenAddress | Address to listen on.
|
| options/nixos/services.pgbouncer.settings.users | Optional
|
| options/nixos/services.tox-node.lanDiscovery | Enable local network discovery.
|
| options/nixos/services.prometheus.exporters.idrac.extraFlags | Extra commandline options to pass to the idrac exporter.
|
| options/nixos/services.strongswan-swanctl.enable | Whether to enable strongswan-swanctl service.
|
| options/nixos/services.movim.nginx.locations.<name>.proxyPass | Adds proxy_pass directive and sets recommended proxy headers if
recommendedProxySettings is enabled.
|
| options/nixos/services.nextcloud.enable | Whether to enable nextcloud.
|
| options/nixos/services.tor.relay.onionServices.<name>.settings.HiddenServiceMaxStreams | See torrc manual.
|
| options/nixos/services.nfs.server.extraNfsdConfig | Extra configuration options for the [nfsd] section of /etc/nfs.conf.
|
| options/nixos/services.r53-ddns.zoneID | The ID of your zone in Route53
|
| options/nixos/services.metricbeat.settings.tags | Tags to place on the shipped metrics
|
| options/nixos/services.patroni.otherNodesIps | IP addresses of the other nodes.
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.exportarr-lidarr.openFirewall
is true
|
| options/nixos/services.sabnzbd.allowConfigWrite | By default we create the sabnzbd configuration read-only,
which keeps the nixos configuration as the single source
of truth
|
| options/nixos/services.tor.settings.DormantCanceledByStartup | See torrc manual.
|
| options/nixos/services.sabnzbd.settings.misc.bandwidth_max | Maximum bandwidth in bytes(!)/sec (supports prefixes)
|
| options/nixos/services.tuned.settings.sleep_interval | Interval in which the TuneD daemon is waken up and checks for events (in seconds).
|
| options/nixos/services.lifecycled.queueCleaner.parallel | The number of parallel deletes to run.
|
| options/nixos/services.prometheus.exporters.fritzbox.enable | Whether to enable the prometheus fritzbox exporter.
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| options/nixos/services.suricata.settings.unix-command.filename | Filename for unix-command socket.
|
| options/nixos/services.tailscale.interfaceName | The interface name for tunnel traffic
|
| options/nixos/services.radicle.httpd.nginx.locations.<name>.proxyWebsockets | Whether to support proxying websocket connections with HTTP/1.1.
|
| options/nixos/services.thanos.query.grpc-address | Listen ip:port address for gRPC endpoints (StoreAPI)
|
| options/nixos/services.movim.nginx.http3_hq | Whether to enable the HTTP/0.9 protocol negotiation used in QUIC interoperability tests
|
| options/nixos/services.thanos.compact.log.format | Log format to use.
|
| options/nixos/services.portunus.seedPath | Path to a portunus seed file in json format
|
| options/nixos/services.prometheus.exporters.mailman3.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.mailman3.openFirewall
is true
|
| options/nixos/services.mpd.dataDir | The directory where MPD stores its state, tag cache, playlists etc
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.rand_time | Time range from which to choose a random value to subtract from
rekey/reauth times
|
| options/nixos/services.prometheus.exporters.rtl_433.ids.*.location | Location to match.
|
| options/nixos/services.node-red.userDir | The directory to store all user data, such as flow and credential files and all library data
|
| options/nixos/services.prometheus.sachet.enable | Whether to enable Sachet, an SMS alerting tool for the Prometheus Alertmanager.
|
| options/nixos/services.prometheus.scrapeConfigs.*.docker_sd_configs.*.port | The port to scrape metrics from, when role is nodes, and for discovered
tasks and services that don't have published ports
|
| options/nixos/services.mediatomb.tg100Support | Whether to enable Telegent TG100 specific tweaks.
|
| options/nixos/services.nebula-lighthouse-service.enable | Whether to enable nebula-lighthouse-service.
|
| options/nixos/services.nifi.maxJavaHeapSize | Set the initial heap size for the JVM in MB.
|
| options/nixos/services.peering-manager.listenAddress | Address the server will listen on.
|
| options/nixos/services.opengfw.pcapReplay | Path to PCAP replay file
|
| options/nixos/services.subsonic.port | The port on which Subsonic will listen for
incoming HTTP traffic
|
| options/nixos/services.rustus.storage.s3_bucket | S3 bucket.
|
| options/nixos/services.prometheus.exporters.modemmanager.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.modemmanager.openFirewall
is true
|
| options/nixos/services.tandoor-recipes.group | Group under which Tandoor runs.
|
| options/nixos/services.prometheus.scrapeConfigs.*.docker_sd_configs.*.authorization.credentials | Sets the credentials
|
| options/nixos/services.ncps.cache.database.pool.maxIdleConns | Maximum number of idle connections in the pool (0 = use
database-specific defaults).
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.quic | Whether to enable the QUIC transport protocol
|
| options/nixos/services.thanos.compact.enable | Whether to enable the Thanos compactor which continuously compacts blocks in an object store bucket.
|
| options/nixos/services.prometheus.exporters.postfix.user | User name under which the postfix exporter shall be run.
|
| options/nixos/services.ncps.cache.storage.s3.forcePathStyle | Force path-style S3 addressing (bucket/key vs key.bucket).
|
| options/nixos/services.pretalx.settings.celery.backend | URI to the celery backend used for the asynchronous job queue.
|
| options/nixos/services.parsedmarc.provision.grafana.dashboard | Whether the official parsedmarc grafana dashboard should
be provisioned to the local grafana instance.
|
| options/nixos/services.prometheus.scrapeConfigs.*.kubernetes_sd_configs.*.proxy_url | Optional proxy URL.
|
| options/nixos/services.redis.servers.<name>.unixSocket | The path to the socket to bind to.
|
| options/nixos/services.nextcloud-spreed-signaling.enable | Whether to enable Spreed standalone signaling server.
|
| options/nixos/services.traefik.enable | Whether to enable Traefik web server.
|
| options/nixos/services.redsocks.log_info | Log start and end of client sessions.
|
| options/nixos/services.radicle.ci.adapters.native.instances.<name>.settings | Configuration of radicle-native-ci
|
| options/nixos/services.prometheus.exporters.nut.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.nut.openFirewall
is true
|
| options/nixos/services.prometheus.scrapeConfigs.*.linode_sd_configs.*.oauth2.client_secret | OAuth client secret.
|
| options/nixos/services.node-red.define | List of settings.js overrides to pass via -D to Node-RED.
|
| options/nixos/services.tt-rss.sphinx.server | Hostname:port combination for the Sphinx server.
|
| options/nixos/services.tahoe.introducers | The Tahoe introducers.
|
| options/nixos/services.public-inbox.nntp.port | Listening port
|
| options/nixos/services.nscd.package | package containing the nscd binary to be used by the service
|
| options/nixos/services.netbird.server.management.settings | Configuration of the netbird management server
|
| options/nixos/services.thelounge.port | TCP port to listen on for http connections.
|
| options/nixos/services.logcheck.enable | Whether to enable logcheck cron job, to mail anomalies in the system logfiles to the administrator.
|
| options/nixos/services.sssd.environmentFile | Environment file as defined in systemd.exec(5)
|
| options/nixos/services.neo4j.https.enable | Enable the HTTPS connector for Neo4j
|
| options/nixos/services.unit.config | Unit configuration in JSON format
|
| options/nixos/services.outline.smtp | To support sending outgoing transactional emails such as
"document updated" or "you've been invited" you'll need to provide
authentication for an SMTP server.
|
| options/nixos/services.trafficserver.parent | Identify the parent proxies used in an cache hierarchy
|
| options/nixos/services.matrix-conduit.settings.global.port | The port Conduit will be running on
|
| options/nixos/services.pixelfed.nginx.locations.<name>.root | Root directory for requests.
|
| options/nixos/services.nsd.zones.<name>.minRefreshSecs | Limit refresh time for secondary zones.
|
| options/nixos/services.namecoind.rpc.certificate | Certificate file for securing RPC connections.
|
| options/nixos/services.qdrant.webUIPackage | The qdrant-web-ui package to use.
|
| options/nixos/services.prometheus.scrapeConfigs.*.honor_labels | Controls how Prometheus handles conflicts between labels
that are already present in scraped data and labels that
Prometheus would attach server-side ("job" and "instance"
labels, manually configured target labels, and labels
generated by service discovery implementations)
|
| options/nixos/services.pixelfed.nginx.locations.<name>.index | Adds index directive.
|
| options/nixos/services.nginx.virtualHosts.<name>.http3 | Whether to enable the HTTP/3 protocol
|
| options/nixos/services.printing.browsed.enable | Whether to enable the CUPS Remote Printer Discovery (browsed) daemon.
|
| options/nixos/services.routedns.enable | Whether to enable RouteDNS - DNS stub resolver, proxy and router.
|
| options/nixos/services.syncthing.settings.folders.<name>.copyOwnershipFromParent | On Unix systems, tries to copy file/folder ownership from the parent directory (the directory it’s located in)
|
| options/nixos/services.transmission.settings.peer-port | The peer port to listen for incoming connections.
|
| options/nixos/services.orangefs.server.servers | URLs for storage server including port
|
| options/nixos/services.pihole-ftl.queryLogDeleter.interval | How often the query log deleter is run
|
| options/nixos/services.nexus.jvmOpts | Options for the JVM written to nexus.jvmopts
|
| options/nixos/services.limesurvey.nginx.virtualHost.sslCertificateKey | Path to server SSL certificate key.
|
| options/nixos/services.limesurvey.httpd.virtualHost.locations.<name>.alias | Alias directory for requests
|
| options/nixos/services.oauth2-proxy.cookie.name | The name of the cookie that the oauth_proxy creates.
|
| options/nixos/services.swapspace.settings.max_swapsize | Greatest allowed size for individual swapfiles
|
| options/nixos/services.litellm.settings.environment_variables | Environment variables to pass to the Lite
|
| options/nixos/services.nsd.ratelimit.ipv4PrefixLength | IPv4 prefix length
|
| options/nixos/services.tor.settings.EnforceDistinctSubnets | See torrc manual.
|
| options/nixos/services.onedrive.package | The onedrive package to use.
|
| options/nixos/services.prometheus.exporters.php-fpm.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.php-fpm.openFirewall is true.
|
| options/nixos/services.umurmur.package | The umurmur package to use.
|