| options/nixos/services.public-inbox.settings.coderepo.<name>.cgitUrl | URL of a cgit instance
|
| options/nixos/services.openssh.sftpServerExecutable | The sftp server executable
|
| options/nixos/services.mastodon.smtp.port | SMTP port used when sending emails to users.
|
| options/nixos/services.mediagoblin.createDatabaseLocally | Whether to configure a local postgres database and connect to it.
|
| options/nixos/services.scrutiny.settings | Scrutiny settings to be rendered into the configuration file
|
| options/nixos/services.openssh.settings.DenyGroups | If specified, login is denied for all users part of the listed
groups
|
| options/nixos/services.syncthing.relay.perSessionRateBps | Per session bandwidth rate limit in bytes per second.
|
| options/nixos/services.sftpgo.settings.sftpd.bindings.*.port | The port for serving SFTP requests
|
| options/nixos/services.tandoor-recipes.user | User account under which Tandoor runs.
|
| options/nixos/services.matomo.nginx.listen.*.addr | Listen address.
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.encap | To enforce UDP encapsulation of ESP packets, the IKE daemon can fake the
NAT detection payloads
|
| options/nixos/services.prometheus.exporters.fritz.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.mail.configuration.servers.*.passphrase | Password to use for SMTP authentication.
|
| options/nixos/services.portunus.dex.oidcClients | List of OIDC clients
|
| options/nixos/services.trezord.emulator.port | Listening port for the Trezor emulator.
|
| options/nixos/services.litellm.settings | Configuration for LiteLLM
|
| options/nixos/services.prometheus.scrapeConfigs.*.gce_sd_configs.*.project | The GCP Project.
|
| options/nixos/services.nsd.zones.<name>.maxRetrySecs | Limit retry time for secondary zones
|
| options/nixos/services.tor.settings.ServerDNSSearchDomains | See torrc manual.
|
| options/nixos/services.livekit.settings | LiveKit configuration file expressed in nix
|
| options/nixos/services.openvscode-server.socketPath | The path to a socket file for the server to listen to.
|
| options/nixos/services.udp-over-tcp.tcp2udp.<name>.nodelay | Enables TCP_NODELAY on the TCP socket.
|
| options/nixos/services.prometheus.scrapeConfigs.*.metric_relabel_configs | List of metric relabel configurations.
|
| options/nixos/services.stargazer.responseTimeout | Number of seconds to wait for the client to send a complete
request and for stargazer to finish sending the response
|
| options/nixos/services.openssh.startWhenNeeded | If set, sshd is socket-activated; that
is, instead of having it permanently running as a daemon,
systemd will start an instance for each incoming connection.
|
| options/nixos/services.ostinato.enable | Whether to enable Ostinato agent-controller (Drone).
|
| options/nixos/services.octoprint.group | Group for the daemon.
|
| options/nixos/services.nzbget.group | Group under which NZBGet runs
|
| options/nixos/services.openvscode-server.group | The group to run openvscode-server under
|
| options/nixos/services.snapper.snapshotRootOnBoot | Whether to snapshot root on boot
|
| options/nixos/services.prometheus.exporters.graphite.port | Port to listen on.
|
| options/nixos/services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.basic_auth.password_file | HTTP password file
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.inactivity | Timeout before closing CHILD_SA after inactivity
|
| options/nixos/services.postfix.settings.main | The main.cf configuration file as key value set
|
| options/nixos/services.subsonic.defaultPodcastFolder | Configure Subsonic to use this folder for Podcasts
|
| options/nixos/services.nagios.validateConfig | if true, the syntax of the nagios configuration file is checked at build time
|
| options/nixos/services.prometheus.exporters.mqtt.keepFullTopic | Whether to enable Keep entire topic instead of the first two elements only
|
| options/nixos/services.nitter.cache.rssMinutes | How long to cache RSS queries.
|
| options/nixos/services.restic.backups.<name>.rcloneConfigFile | Path to the file containing rclone configuration
|
| options/nixos/services.prometheus.exporters.smokeping.port | Port to listen on.
|
| options/nixos/services.suwayomi-server.settings.server.ip | The ip that Suwayomi will bind to.
|
| options/nixos/services.mqtt2influxdb.influxdb.ssl | Use SSL to connect to the InfluxDB server.
|
| options/nixos/services.szurubooru.server.package | The server package to use.
|
| options/nixos/services.nsd.ratelimit.slip | Number of packets that get discarded before replying a SLIP response.
0 disables SLIP responses. 1 will make every response a SLIP response.
|
| options/nixos/services.teeworlds.server.enableSpamProtection | Whether to enable chat spam protection.
|
| options/nixos/services.prometheus.exporters.systemd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.pipewire.wireplumber.package | The WirePlumber derivation to use.
|
| options/nixos/services.pgbouncer.package | The pgbouncer package to use.
|
| options/nixos/services.spiped.config.<name>.disableReresolution | Disable target address re-resolution.
|
| options/nixos/services.syncoid.commands.<name>.recursive | Whether to enable the transfer of child datasets.
|
| options/nixos/services.prometheus.exporters.keylight.port | Port to listen on.
|
| options/nixos/services.shadowsocks.extraConfig | Additional configuration for shadowsocks that is not covered by the
provided options
|
| options/nixos/services.prometheus.exporters.imap-mailstat.accounts.<name>.serveraddress | mailserver name or address
|
| options/nixos/services.prosody.modules.announce | Send announcement to all online users
|
| options/nixos/services.snipe-it.nginx.http2 | Whether to enable the HTTP/2 protocol
|
| options/nixos/services.prometheus.exporters.dnsmasq.dnsmasqListenAddress | Address on which dnsmasq listens.
|
| options/nixos/services.miniflux.config | Configuration for Miniflux, refer to
https://miniflux.app/docs/configuration.html
for documentation on the supported values.
|
| options/nixos/services.thanos.query-frontend.http-address | Listen host:port for HTTP endpoints
|
| options/nixos/services.openssh.settings.AuthorizedPrincipalsFile | Specifies a file that lists principal names that are accepted for certificate authentication
|
| options/nixos/services.ncps.cache.hostName | The hostname of the cache server. This is used to generate the
private key used for signing store paths (.narinfo)
|
| options/nixos/services.pihole-ftl.lists.*.description | Description of the list
|
| options/nixos/services.toxBootstrapd.extraConfig | Configuration for bootstrap daemon
|
| options/nixos/services.rspamd.package | The rspamd package to use.
|
| options/nixos/services.rosenpass.enable | Whether to enable Rosenpass.
|
| options/nixos/services.pretix.database.createLocally | Whether to automatically set up the database on the local DBMS instance
|
| options/nixos/services.slurm.rest.environment.SLURMRESTD_LISTEN | Comma-delimited list of host:port pairs or unix sockets to listen on.
|
| options/nixos/services.prometheus.exporters.ping.listenAddress | Address to listen on.
|
| options/nixos/services.suwayomi-server.user | User account under which Suwayomi-Server runs.
|
| options/nixos/services.owncast.rtmp-port | TCP port where owncast rtmp service listens.
|
| options/nixos/services.nbd.server.extraOptions | Extra options for the server
|
| options/nixos/services.printing.cups-pdf.instances.<name>.settings.Spool | spool directory
|
| options/nixos/services.multipath.devices.*.san_path_err_threshold | If set to a value greater than 0, multipathd will watch paths and check
how many times a path has been failed due to errors
|
| options/nixos/services.snowflake-proxy.extraFlags | Extra flags to pass to snowflake-proxy
|
| options/nixos/services.ntfy-sh.settings.base-url | Public facing base URL of the service
This setting is required for any of the following features:
- attachments (to return a download URL)
- e-mail sending (for the topic URL in the email footer)
- iOS push notifications for self-hosted servers
(to calculate the Firebase poll_request topic)
- Matrix Push Gateway (to validate that the pushkey is correct)
|
| options/nixos/services.snipe-it.nginx.acmeFallbackHost | Host which to proxy requests to if ACME challenge is not found
|
| options/nixos/services.mpd.settings | Configuration for MPD
|
| options/nixos/services.prometheus.exporters.postfix.listenAddress | Address to listen on.
|
| options/nixos/services.prosody.modules.csi | Implements the CSI protocol that allows clients to report their active/inactive state to the server
|
| options/nixos/services.memos.package | The Memos package to use.
|
| options/nixos/services.microsocks.disableLogging | If true, microsocks will not log any messages to stdout/stderr.
|
| options/nixos/services.tayga.tunDevice | Name of the nat64 tun device.
|
| options/nixos/services.tor.settings.VirtualAddrNetworkIPv4 | See torrc manual.
|
| options/nixos/services.thanos.query.arguments | Arguments to the thanos query command
|
| options/nixos/services.pgbackrest.commands.start | Options for the 'start' command
|
| options/nixos/services.mosquitto.listeners.*.users.<name>.hashedPassword | Specifies the hashed password for the MQTT User
|
| options/nixos/services.prometheus.scrapeConfigs.*.marathon_sd_configs.*.proxy_url | Optional proxy URL.
|
| options/nixos/services.maubot.settings | YAML settings for maubot
|
| options/nixos/services.prometheus.exporters.imap-mailstat.accounts | Accounts to monitor
|
| options/nixos/services.powerstation.enable | Whether to enable PowerStation.
|
| options/nixos/services.octoprint.plugins | Additional plugins to be used
|
| options/nixos/services.prometheus.exporters.node.group | Group under which the node exporter shall be run.
|
| options/nixos/services.stargazer.routes.*.route | Route section name
|
| options/nixos/services.nebula.networks.<name>.lighthouse.dns.port | UDP port number for lighthouse DNS server.
|
| options/nixos/services.strongswan-swanctl.swanctl.authorities.<name>.file | Absolute path to the certificate to load
|
| options/nixos/services.movim.podConfig.chatonly | Disable all the social feature (Communities, Blog…) and keep only the chat ones
|
| options/nixos/services.nvme-rs.settings.thresholds.temp_critical | Temperature critical threshold (°C)
|
| options/nixos/services.thanos.query.grpc-client-tls-cert | TLS Certificates to use to identify this client to the server
|
| options/nixos/services.tayga.ipv4.pool | The pool of IPv4 addresses which are used for translation.
|
| options/nixos/services.rkvm.server.settings.password | Shared secret token to authenticate the client
|
| options/nixos/services.undervolt.p1.limit | The P1 Power Limit in Watts
|