| options/nixos/services.misskey.reverseProxy.webserver.nginx.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| options/nixos/services.nsd.ipv4EDNSSize | Preferred EDNS buffer size for IPv4.
|
| options/nixos/services.minio.enable | Whether to enable Minio Object Storage.
|
| options/nixos/services.minio.browser | Enable or disable access to web UI.
|
| options/nixos/services.syncplay.port | TCP port to bind to.
|
| options/nixos/services.nginx.virtualHosts.<name>.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| options/nixos/services.mastodon.smtp.createLocally | Configure local Postfix SMTP server for Mastodon.
|
| options/nixos/services.prometheus.scrapeConfigs.*.scaleway_sd_configs.*.tls_config.key_file | Key file for client cert authentication to the server.
|
| options/nixos/services.snapserver.settings.tcp-streaming.enabled | Whether to enable streaming via TCP.
|
| options/nixos/services.quassel.requireSSL | Require SSL for connections from clients.
|
| options/nixos/services.nextcloud.settings.mail_smtptimeout | This depends on mail_smtpmode
|
| options/nixos/services.moonraker.group | Group account under which Moonraker runs.
|
| options/nixos/services.mtr-exporter.jobs.*.flags | Additional flags to pass to MTR.
|
| options/nixos/services.pgmanage.tls | These options tell pgmanage where the TLS Certificate and Key files
reside
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.user | User name under which the exportarr-lidarr exporter shall be run.
|
| options/nixos/services.multipath.devices.*.dev_loss_tmo | Specify the number of seconds the SCSI layer will wait after a problem has
been detected on a FC remote port before removing it from the system
|
| options/nixos/services.tahoe.introducers.<name>.package | The tahoelafs package to use.
|
| options/nixos/services.prometheus.exporters.mqtt.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mqtt.openFirewall is true.
|
| options/nixos/services.system76-scheduler.assignments.<name>.prio | CPU scheduler priority.
|
| options/nixos/services.thanos.query.http-address | Listen host:port for HTTP endpoints
|
| options/nixos/services.scanservjs.extraDevicesConfig | Extra code to add to config.local.js's afterDevices.
|
| options/nixos/services.prometheus.exporters.zfs.extraFlags | Extra commandline options to pass to the zfs exporter.
|
| options/nixos/services.maddy.localDomains | Define list of allowed domains.
|
| options/nixos/services.printing.defaultShared | Specifies whether local printers are shared by default.
|
| options/nixos/services.prometheus.exporters.restic.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.restic.openFirewall
is true
|
| options/nixos/services.prometheus.remoteRead.*.bearer_token_file | Sets the Authorization header on every remote read request with the bearer token
read from the configured file
|
| options/nixos/services.mailman.hyperkitty.baseUrl | Where can Mailman connect to Hyperkitty's internal API, preferably on
localhost?
|
| options/nixos/services.nntp-proxy.upstreamMaxConnections | Upstream server maximum allowed concurrent connections
|
| options/nixos/services.opencloud.package | The opencloud package to use.
|
| options/nixos/services.tailscale.authKeyParameters.preauthorized | Whether to skip manual device approval.
|
| options/nixos/services.photoprism.group | Group under which photoprism runs.
|
| options/nixos/services.sanoid.datasets.<name>.daily | Number of daily snapshots.
|
| options/nixos/services.quickwit.group | The group quickwit runs as
|
| options/nixos/services.minio.package | The minio package to use.
|
| options/nixos/services.logstash.listenAddress | Address on which to start webserver.
|
| options/nixos/services.mollysocket.settings.host | Listening address of the web server
|
| options/nixos/services.outline.storage.accessKey | S3 access key.
|
| options/nixos/services.limesurvey.nginx.virtualHost.default | Makes this vhost the default.
|
| options/nixos/services.rspamd.workers.<name>.name | Name of the worker
|
| options/nixos/services.prometheus.scrapeConfigs.*.consul_sd_configs.*.allow_stale | Allow stale Consul results
(see https://www.consul.io/api/index.html#consistency-modes)
|
| options/nixos/services.sks.extraDbConfig | Set contents of the files "KDB/DB_CONFIG" and "PTree/DB_CONFIG" within
the ${dataDir} directory
|
| options/nixos/services.rustdesk-server.signal.extraArgs | A list of extra command line arguments to pass to the hbbs process.
|
| options/nixos/services.solanum.openFilesLimit | Maximum number of open files
|
| options/nixos/services.snmpd.configText | The contents of the snmpd.conf
|
| options/nixos/services.nezha-agent.settings.disable_nat | Disable NAT penetration.
|
| options/nixos/services.tuned.settings.recommend_command | Whether to enable recommend functionality.
|
| options/nixos/services.snapper.configs | Subvolume configuration
|
| options/nixos/services.surrealdb.extraFlags | Specify a list of additional command line flags.
|
| options/nixos/services.omnom.settings.smtp.tls_allow_insecure | Whether to enable Whether to allow insecure TLS..
|
| options/nixos/services.system76-scheduler.settings.processScheduler.refreshInterval | Process list poll interval, in seconds
|
| options/nixos/services.lldap.settings.database_url | Database URL.
|
| options/nixos/services.nezha-agent.settings | Generate to config.json as a Nix attribute set
|
| options/nixos/services.mqtt2influxdb.points | Points to bridge from MQTT to InfluxDB.
|
| options/nixos/services.nginx.proxyCachePath.<name>.keysZoneName | Set name to shared memory zone.
|
| options/nixos/services.teamspeak3.querySshPort | TCP port opened for ServerQuery connections using the SSH protocol.
|
| options/nixos/services.mattermost.socket.enable | Whether to enable Mattermost control socket.
|
| options/nixos/services.prosody.s2sSecureAuth | Force certificate authentication for server-to-server connections?
This provides ideal security, but requires servers you communicate
with to support encryption AND present valid, trusted certificates
|
| options/nixos/services.mediawiki.httpd.virtualHost.acmeRoot | Directory for the acme challenge which is PUBLIC, don't put certs or keys in here
|
| options/nixos/services.portunus.ldap.package | The openldap package to use.
|
| options/nixos/services.openvscode-server.userDataDir | Specifies the directory that user data is kept in
|
| options/nixos/services.postfix-tlspol.settings.server.log-level | Log level
|
| options/nixos/services.tahoe.nodes.<name>.sftpd.accounts.url | URL of the accounts server.
|
| options/nixos/services.unbound.enable | Whether to enable Unbound domain name server.
|
| options/nixos/services.matrix-conduit.settings.global.address | Address to listen on for connections by the reverse proxy/tls terminator.
|
| options/nixos/services.subsonic.listenAddress | The host name or IP address on which to bind Subsonic
|
| options/nixos/services.orangefs.client.fileSystems.*.target | Target URL
|
| options/nixos/services.openafsServer.enable | Whether to enable the OpenAFS server
|
| options/nixos/services.suricata.settings.rule-files | Files to load suricata-update managed rules, relative to 'default-rule-path'.
|
| options/nixos/services.prometheus.exporters.pihole.protocol | The protocol which is used to connect to Pi-Hole
|
| options/nixos/services.openldap.mutableConfig | Whether to allow writable on-line configuration
|
| options/nixos/services.parsedmarc.settings.elasticsearch.hosts | A list of Elasticsearch hosts to push parsed reports
to.
|
| options/nixos/services.squeezelite.pulseAudio | Whether to enable pulseaudio support.
|
| options/nixos/services.pdns-recursor.enable | Whether to enable PowerDNS Recursor, a recursive DNS server.
|
| options/nixos/services.mtr-exporter.enable | Whether to enable a Prometheus exporter for MTR.
|
| options/nixos/services.samba.smbd.extraArgs | Extra arguments to pass to the smbd service.
|
| options/nixos/services.nixseparatedebuginfod2.port | port to listen
|
| options/nixos/services.tor.relay.onionServices.<name>.authorizeClient.clientNames | Only clients that are listed here are authorized to access the hidden service
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.locations.<name>.recommendedProxySettings | Enable recommended proxy settings.
|
| options/nixos/services.prometheus.exporters.dovecot.enable | Whether to enable the prometheus dovecot exporter.
|
| options/nixos/services.surrealdb.dbPath | The path that surrealdb will write data to
|
| options/nixos/services.oauth2-proxy.upstream | The http url(s) of the upstream endpoint or file://
paths for static files
|
| options/nixos/services.roundcube.database.passwordFile | Password file for the postgresql connection
|
| options/nixos/services.unclutter.timeout | Number of seconds before the cursor is marked inactive
|
| options/nixos/services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.authorization.type | Sets the authentication type
|
| options/nixos/services.photoprism.enable | Whether to enable Photoprism web server.
|
| options/nixos/services.phpfpm.pools.<name>.socket | Path to the unix socket file on which to accept FastCGI requests.
This option is read-only and managed by NixOS.
|
| options/nixos/services.prometheus.exporters.mqtt.mqttKeepAlive | Keep alive interval to maintain connection with MQTT broker.
|
| options/nixos/services.mediagoblin.settings | Settings which are written into mediagoblin.ini.
|
| options/nixos/services.prometheus.exporters.pve.collectors.node | Collect PVE node info
|
| options/nixos/services.paperless.enable | Whether to enable Paperless-ngx
|
| options/nixos/services.mjolnir.pantalaimon.options.listenAddress | The address where the daemon will listen to client connections
for this homeserver.
|
| options/nixos/services.nginx.virtualHosts.<name>.locations.<name>.tryFiles | Adds try_files directive.
|
| options/nixos/services.marytts.settings | Settings for MaryTTS
|
| options/nixos/services.mediawiki.database.type | Database engine to use
|
| options/nixos/services.printing.cups-pdf.instances.<name>.settings.Out | output directory;
${HOME} will be expanded to the user's home directory,
${USER} will be expanded to the user name.
|
| options/nixos/services.osrm.enable | Enable the OSRM service.
|
| options/nixos/services.lirc.options | LIRC default options described in man:lircd(8) (lirc_options.conf)
|
| options/nixos/services.nvme-rs.enable | Whether to enable nvme-rs, a monitoring service.
|
| options/nixos/services.privatebin.enable | Whether to enable Privatebin: A minimalist, open source online
pastebin where the server has zero knowledge of pasted data..
|
| options/nixos/services.thanos.query.store.sd-interval | Refresh interval to re-read file SD files
|