| options/nixos/services.nix-serve.openFirewall | Open ports in the firewall for nix-serve.
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.life_packets | Maximum number of packets processed before CHILD_SA gets closed
|
| options/nixos/services.orangefs.client.enable | Whether to enable OrangeFS client daemon.
|
| options/nixos/services.tigerbeetle.enable | Whether to enable TigerBeetle server.
|
| options/nixos/services.prometheus.scrapeConfigs.*.consul_sd_configs.*.oauth2.client_secret_file | Read the client secret from a file
|
| options/nixos/services.netdata.configText | Verbatim netdata.conf, cannot be combined with config.
|
| options/nixos/services.movim.h2o.host | Set the host address for this virtual host
|
| options/nixos/services.shiori.webRoot | The root of the Shiori web application
|
| options/nixos/services.prometheus.exporters.fritz.port | Port to listen on.
|
| options/nixos/services.movim.podConfig.locale | The server main locale
|
| options/nixos/services.prometheus.exporters.rtl_433.channels.*.location | Location to match.
|
| options/nixos/services.oncall.database.createLocally | Whether to enable Create the database and database user locally..
|
| options/nixos/services.readarr.settings.server.port | Port Number
|
| options/nixos/services.thanos.compact.startAt | When this option is set to a systemd.time
specification the Thanos compactor will run at the specified period
|
| options/nixos/services.lifecycled.queueCleaner.enable | Whether to enable lifecycled-queue-cleaner.
|
| options/nixos/services.loki.group | Group under which the Loki service runs.
|
| options/nixos/services.rss-bridge.pool | Name of phpfpm pool that is used to run web-application
|
| options/nixos/services.shadowsocks.localAddress | Local addresses to which the server binds.
|
| options/nixos/services.umurmur.enable | Whether to enable uMurmur Mumble server.
|
| options/nixos/services.prometheus.exporters.jitsi.extraFlags | Extra commandline options to pass to the jitsi exporter.
|
| options/nixos/services.nginx.virtualHosts.<name>.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| options/nixos/services.snipe-it.maxUploadSize | The maximum size for uploads (e.g. images).
|
| options/nixos/services.livekit.ingress.settings.rtc_config.port_range_start | Start of UDP port range for WebRTC
|
| options/nixos/services.misskey.settings.redis.host | The Redis host.
|
| options/nixos/services.uhub | Uhub ADC hub instances
|
| options/nixos/services.movim.group | Group running Movim service
|
| options/nixos/services.nginx.sso.enable | Whether to enable nginx-sso service.
|
| options/nixos/services.tlsrpt.reportd.settings.log_level | Level of log messages to emit.
|
| options/nixos/services.osrm.threads | Number of threads to use.
|
| options/nixos/services.opkssh.authorizations.*.issuer | Issuer URI
|
| options/nixos/services.prometheus.alertmanager-ntfy.settings.ntfy.notification.tags | Tags to add to ntfy.sh messages
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.ppk_id | String identifying the Postquantum Preshared Key (PPK) to be used.
|
| options/nixos/services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.proxy_url | Optional proxy URL.
|
| options/nixos/services.pict-rs.storePath | The directory where to store the uploaded images
|
| options/nixos/services.mattermost.socket.export | Whether to enable Export socket control to system environment variables.
|
| options/nixos/services.nar-serve.cacheURL | Binary cache URL to connect to
|
| options/nixos/services.listmonk.database.settings.smtp.*.host | Hostname for the SMTP server
|
| options/nixos/services.seatd.logLevel | Logging verbosity
|
| options/nixos/services.moodle.virtualHost.documentRoot | The path of Apache's document root directory
|
| options/nixos/services.sanoid.datasets.<name>.useTemplate | Names of the templates to use for this dataset.
|
| options/nixos/services.prometheus.exporters.pve.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.pve.openFirewall is true.
|
| options/nixos/services.nipap.user | User to use for running NIPAP services.
|
| options/nixos/services.overseerr.package | The overseerr package to use.
|
| options/nixos/services.pihole-ftl.lists.*.url | URL of the domain list
|
| options/nixos/services.tor.settings.AutomapHostsSuffixes | See torrc manual.
|
| options/nixos/services.movim.nginx.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| options/nixos/services.tee-supplicant.enable | Whether to enable OP-TEE userspace supplicant.
|
| options/nixos/services.prometheus.exporters.mail.configuration | Specify the mailexporter configuration file to use.
|
| options/nixos/services.meshtasticd.package | The meshtasticd package to use.
|
| options/nixos/services.umurmur.settings.bindaddr6 | IPv6 address to bind to
|
| options/nixos/services.oncall.settings.db.conn.kwargs.host | Database host.
|
| options/nixos/services.resilio.uploadLimit | Upload speed limit. 0 is unlimited (default).
|
| options/nixos/services.radicle.ci.adapters.native.instances.<name>.settings.log | File where radicle-native-ci should write the run log.
|
| options/nixos/services.tailscale.useRoutingFeatures | Enables settings required for Tailscale's routing features like subnet routers and exit nodes
|
| options/nixos/services.nextdns.enable | Whether to enable the NextDNS DNS/53 to DoH Proxy service.
|
| options/nixos/services.pretalx.settings.filesystem.static | Path to the directory that contains static files.
|
| options/nixos/services.nncp.daemon.enable | Whether to enable NNCP TCP synronization daemon
|
| options/nixos/services.tuned.settings.profile_dirs | Directories to search for profiles, separated by , or ;.
|
| options/nixos/services.nixops-dns.user | The user the nixops-dns daemon should run as
|
| options/nixos/services.pixelfed.nginx.extraConfig | These lines go to the end of the vhost verbatim.
|
| options/nixos/services.prometheus.exporters.collectd.collectdBinary.enable | Whether to enable collectd binary protocol receiver.
|
| options/nixos/services.pdfding.secretKeyFile | File containing the Django SECRET_KEY
|
| options/nixos/services.prometheus.exporters.smokeping.group | Group under which the smokeping exporter shall be run.
|
| options/nixos/services.tigerbeetle.cacheGridSize | The grid cache size
|
| options/nixos/services.outline.oidcAuthentication.clientId | Authentication client identifier.
|
| options/nixos/services.sickbeard.enable | Whether to enable the sickbeard server.
|
| options/nixos/services.tinc.networks | Defines the tinc networks which will be started
|
| options/nixos/services.silverbullet.extraArgs | Extra arguments passed to silverbullet.
|
| options/nixos/services.prometheus.scrapeConfigs.*.scaleway_sd_configs.*.follow_redirects | Configure whether HTTP requests follow HTTP 3xx redirects
|
| options/nixos/services.prometheus.exporters.libvirt.libvirtUri | Libvirt URI from which to extract metrics
|
| options/nixos/services.mattermost.group | Group which runs the Mattermost service.
|
| options/nixos/services.thanos.rule.web.route-prefix | Prefix for API and UI endpoints
|
| options/nixos/services.prometheus.exporters.mailman3.mailman.addr | Mailman3 Core REST API address.
|
| options/nixos/services.protonmail-bridge.package | The protonmail-bridge package to use.
|
| options/nixos/services.scrutiny.collector.settings.api.endpoint | Scrutiny app API endpoint for sending metrics to.
|
| options/nixos/services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.authorization.type | Sets the authentication type
|
| options/nixos/services.prometheus.exporters.statsd.user | User name under which the statsd exporter shall be run.
|
| options/nixos/services.scion.scion-dispatcher.settings | scion-dispatcher configuration
|
| options/nixos/services.prometheus.scrapeConfigs.*.azure_sd_configs.*.tls_config.insecure_skip_verify | Disable validation of the server certificate.
|
| options/nixos/services.tailscale.derper.verifyClients | Whether to verify clients against a locally running tailscale daemon if they are allowed to connect to this node or not.
|
| options/nixos/services.trafficserver.plugins.*.arg | arguments to pass to the plugin
|
| options/nixos/services.smartd.notifications.systembus-notify.enable | Whenever to send systembus-notify notifications
|
| options/nixos/services.nginx.upstreams | Defines a group of servers to use as proxy target.
|
| options/nixos/services.mail.sendmailSetuidWrapper.enable | Whether to enable the wrapper.
|
| options/nixos/services.szurubooru.user | User account under which Szurubooru runs.
|
| options/nixos/services.prometheus.scrapeConfigs.*.linode_sd_configs.*.authorization.credentials | Sets the credentials
|
| options/nixos/services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| options/nixos/services.umami.createPostgresqlDatabase | Whether to automatically create the database for Umami using PostgreSQL
|
| options/nixos/services.limesurvey.nginx.virtualHost.root | The path of the web root directory.
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| options/nixos/services.nitter.preferences.theme | Instance theme.
|
| options/nixos/services.movim.podConfig | Pod configuration (values from php daemon.php config --help)
|
| options/nixos/services.nginx.virtualHosts.<name>.locations.<name>.extraConfig | These lines go to the end of the location verbatim.
|
| options/nixos/services.openafsClient.packages.module | OpenAFS kernel module package
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.local.<name>.cert.<name>.file | Absolute path to the certificate to load
|
| options/nixos/services.physlock.disableSysRq | Whether to disable SysRq when locked with physlock.
|
| options/nixos/services.prometheus.exporters.idrac.configurationPath | Path to the service's config file
|
| options/nixos/services.quicktun.<name>.remoteAddress | IP address or hostname of the remote end (use 0.0.0.0 for a floating/dynamic remote endpoint).
|
| options/nixos/services.prometheus.exporters.apcupsd.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.soju.tlsCertificate | Path to server TLS certificate.
|