| options/nixos/services.prometheus.exporters.sql.port | Port to listen on.
|
| options/nixos/services.prometheus.exporters.fritz.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.fritz.openFirewall
is true
|
| options/nixos/services.riemann-dash.config | Contents added to the end of the riemann-dash configuration file.
|
| options/nixos/services.multipath.devices.*.prio | The name of the path priority routine
|
| options/nixos/services.public-inbox.settings.publicinbox.imapserver | IMAP URLs to this public-inbox instance
|
| options/nixos/services.prosody.extraModules | Enable custom modules
|
| options/nixos/services.prometheus.scrapeConfigs.*.docker_sd_configs.*.oauth2.client_id | OAuth client ID.
|
| options/nixos/services.pyload.downloadDirectory | Directory to store downloads.
|
| options/nixos/services.radicle.ci.broker.settings.triggers.*.adapter | Adapter name.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.pipewireBoost.profile.class | CPU scheduler class.
|
| options/nixos/services.plantuml-server.graphvizPackage | The graphviz package to use.
|
| options/nixos/services.prometheus.exporters.apcupsd.user | User name under which the apcupsd exporter shall be run.
|
| options/nixos/services.pixelfed.group | Group account under which pixelfed runs.
If left as the default value this group will automatically be created
on system activation, otherwise you are responsible for
ensuring the group exists before the pixelfed application starts.
|
| options/nixos/services.prosody.httpFileShare.daily_quota | Maximum size of daily uploaded files per user, in bytes.
|
| options/nixos/services.prometheus.alertmanagerGotify.port | The local port the bridge is listening on.
|
| options/nixos/services.monica.database.user | Database username.
|
| options/nixos/services.monica.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/services.mongodb.user | User account under which MongoDB runs
|
| options/nixos/services.nginx.serverTokens | Show nginx version in headers and error pages.
|
| options/nixos/services.solanum.config | Solanum IRC daemon configuration file.
check https://github.com/solanum-ircd/solanum/blob/main/doc/reference.conf for all options.
|
| options/nixos/services.prosody.disco_items.*.url | URL of the endpoint you want to make discoverable
|
| options/nixos/services.slskd.nginx.locations.<name>.extraConfig | These lines go to the end of the location verbatim.
|
| options/nixos/services.misskey.settings | Configuration for Misskey, see
example.yml
for all supported options.
|
| options/nixos/services.ncps.cache.storage.s3.bucket | The name of the S3 bucket.
|
| options/nixos/services.prometheus.exporters.nginx.sslVerify | Whether to perform certificate verification for https.
|
| options/nixos/services.prometheus.scrapeConfigs.*.digitalocean_sd_configs.*.tls_config.insecure_skip_verify | Disable validation of the server certificate.
|
| options/nixos/services.thanos.sidecar.objstore.config-file | Path to YAML file that contains object store configuration
|
| options/nixos/services.sunshine.openFirewall | Whether to automatically open ports in the firewall.
|
| options/nixos/services.openafsClient.startDisconnected | Start up in disconnected mode
|
| options/nixos/services.movim.enable | Whether to enable a Movim instance.
|
| options/nixos/services.nextcloud.nginx.enableFastcgiRequestBuffering | Whether to buffer requests against fastcgi requests
|
| options/nixos/services.ncps.cache.lock.allowDegradedMode | Allow falling back to local locks if Redis is unavailable (WARNING:
breaks HA guarantees).
|
| options/nixos/services.svnserve.svnBaseDir | Base directory from which Subversion repositories are accessed.
|
| options/nixos/services.riemann-tools.extraArgs | A list of commandline-switches forwarded to a riemann-tool
|
| options/nixos/services.tor.settings.FetchDirInfoEarly | See torrc manual.
|
| options/nixos/services.pixelfed.nginx.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|
| options/nixos/services.thanos.rule.tracing.config | Tracing configuration
|
| options/nixos/services.prosody.modules.private | Private XML storage (for room bookmarks, etc.)
|
| options/nixos/services.outline.slackAuthentication.clientId | Authentication key.
|
| options/nixos/services.prometheus.exporters.fritzbox.gatewayPort | The port of the FRITZ!Box UPnP service.
|
| options/nixos/services.prometheus.exporters.mqtt.mqttAddress | IP or hostname of MQTT broker.
|
| options/nixos/services.prometheus.exporters.nginx.constLabels | A list of constant labels that will be used in every metric.
|
| options/nixos/services.rspamd.workers.<name>.includes | List of files to include in configuration
|
| options/nixos/services.slskd.settings.global.upload.speed_limit | Total upload speed limit.
|
| options/nixos/services.movim.h2o | With this option, you can customize an H2O virtual host which already
has sensible defaults for Movim
|
| options/nixos/services.pdns-recursor.dns.allowFrom | IP address ranges of clients allowed to make DNS queries.
|
| options/nixos/services.tor.settings.ControlPortFileGroupReadable | See torrc manual.
|
| options/nixos/services.limesurvey.nginx.virtualHost.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/services.moonraker.stateDir | The directory containing the Moonraker databases.
|
| options/nixos/services.mysql.galeraCluster.localName | The unique name that identifies this particular node within the cluster
|
| options/nixos/services.openiscsi.enableAutoLoginOut | Whether to enable automatic login and logout of all automatic targets
|
| options/nixos/services.prometheus.scrapeConfigs.*.docker_sd_configs.*.tls_config.insecure_skip_verify | Disable validation of the server certificate.
|
| options/nixos/services.mjolnir.managementRoom | The room ID where people can use the bot
|
| options/nixos/services.octoprint.user | User for the daemon.
|
| options/nixos/services.nexus.listenAddress | Address to listen on.
|
| options/nixos/services.tinc.networks.<name>.hostSettings.<name>.addresses | The external address where the host can be reached
|
| options/nixos/services.outline.slackAuthentication | To configure Slack auth, you'll need to create an Application at
https://api.slack.com/apps
When configuring the Client ID, add a redirect URL under "OAuth & Permissions"
to https://[publicUrl]/auth/slack.callback.
|
| options/nixos/services.tigerbeetle.clusterId | The 128-bit cluster ID used to create the replica data file (if needed)
|
| options/nixos/services.mailman.ldap.userSearch.ou | Organizational unit to look up a user.
|
| options/nixos/services.prometheus.scrapeConfigs.*.eureka_sd_configs.*.authorization.credentials_file | Sets the credentials to the credentials read from the configured file
|
| options/nixos/services.matrix-appservice-discord.localpart | The user_id localpart to assign to the AS.
|
| options/nixos/services.prometheus.exporters.deluge.delugePasswordFile | File containing the password to connect to deluge server.
|
| options/nixos/services.prometheus.scrapeConfigs.*.kuma_sd_configs.*.follow_redirects | Configure whether HTTP requests follow HTTP 3xx redirects
|
| options/nixos/services.pgbouncer.settings.pgbouncer.max_client_conn | Maximum number of client connections allowed
|
| options/nixos/services.oauth2-proxy.tls.certificate | Path to certificate file.
|
| options/nixos/services.postfix.enable | Whether to run the Postfix mail server.
|
| options/nixos/services.rkvm.client.enable | Whether to enable the rkvm client daemon (input receiver).
|
| options/nixos/services.mainsail.nginx.listenAddresses | Listen addresses for this virtual host
|
| options/nixos/services.prosody.modules.motd | Send a message to users when they log in
|
| options/nixos/services.prometheus.scrapeConfigs.*.scheme | The URL scheme with which to fetch metrics from targets
|
| options/nixos/services.nextjs-ollama-llm-ui.enable | Whether to enable Simple Ollama web UI service; an easy to use web frontend for a Ollama backend service
|
| options/nixos/services.snapserver.settings.tcp-streaming.port | Port to listen on for snapclient connections.
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx | Extra configuration for the nginx virtual host of Misskey
|
| options/nixos/services.tayga.ipv6.pool | The pool of IPv6 addresses which are used for translation.
|
| options/nixos/services.nsd.reuseport | Whether to enable SO_REUSEPORT on all used sockets
|
| options/nixos/services.taskserver.pki.auto.bits | The bit size for generated keys.
|
| options/nixos/services.onlyoffice.x2t | The x2t package to use.
|
| options/nixos/services.limesurvey.nginx.virtualHost.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| options/nixos/services.offlineimap.package | The offlineimap package to use.
|
| options/nixos/services.prometheus.exporters.exportarr-prowlarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.logkeys.device | Use the given device as keyboard input event device instead of /dev/input/eventX default.
|
| options/nixos/services.snipe-it.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| options/nixos/services.nix-store-gcs-proxy.<name>.address | The address of the proxy.
|
| options/nixos/services.prometheus.exporters.imap-mailstat.extraFlags | Extra commandline options to pass to the imap-mailstat exporter.
|
| options/nixos/services.recyclarr.command | The recyclarr command to run (e.g., sync).
|
| options/nixos/services.scrutiny.collector.schedule | How often to run the collector in systemd calendar format.
|
| options/nixos/services.seatd.user | User to own the seatd socket
|
| options/nixos/services.prometheus.exporters.knot.knotSocketPath | Socket path of knotd(8).
|
| options/nixos/services.sftpgo.settings.ftpd.bindings.*.address | Network listen address
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.listenAddress | Address to listen on.
|
| options/nixos/services.osquery.flags.logger_path | Base directory used for logging.
If left as the default value, this directory will be automatically created before the
service starts, otherwise you are responsible for ensuring the directory exists with
the appropriate ownership and permissions.
|
| options/nixos/services.multipath.devices.*.skip_kpartx | If set to yes, kpartx will not automatically create partitions on the device
|
| options/nixos/services.thanos.receive.http-address | Listen host:port for HTTP endpoints
|
| options/nixos/services.nginx.virtualHosts.<name>.quic | Whether to enable the QUIC transport protocol
|
| options/nixos/services.prometheus.exporters.knot.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.knot.openFirewall is true.
|
| options/nixos/services.teamspeak3.voiceIP | IP on which the server instance will listen for incoming voice connections
|
| options/nixos/services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.tls_config.server_name | ServerName extension to indicate the name of the server.
http://tools.ietf.org/html/rfc4366#section-3.1
|
| options/nixos/services.prometheus.exporters.dnsmasq.extraFlags | Extra commandline options to pass to the dnsmasq exporter.
|
| options/nixos/services.tor.settings.UnixSocksGroupWritable | See torrc manual.
|
| options/nixos/services.tee-supplicant.reeFsParentPath | The directory where the secure filesystem will be stored in the rich
execution environment (REE FS).
|