| options/nixos/services.openssh.knownHosts.<name>.hostNames | A list of host names and/or IP numbers used for accessing
the host's ssh service
|
| options/nixos/services.pyload.credentialsFile | File containing PYLOAD_DEFAULT_USERNAME and
PYLOAD_DEFAULT_PASSWORD in the format of an EnvironmentFile=,
as described by systemd.exec(5)
|
| options/nixos/services.xserver.windowManager.mlvwm.configFile | Path to the mlvwm configuration file
|
| options/nixos/virtualisation.cri-o.pauseImage | Override the default pause image for pod sandboxes
|
| options/nixos/containers.<name>.extraVeths.<name>.forwardPorts | List of forwarded ports from host to container
|
| options/nixos/services.hylafax.userAccessFile | The hosts.hfaxd
file entry in the spooling area
will be symlinked to the location given here
|
| options/darwin/system.defaults.dock.wvous-bl-corner | Hot corner action for bottom left corner
|
| options/darwin/launchd.user.agents.<name>.serviceConfig.OnDemand | This key was used in Mac OS X 10.4 to control whether a job was kept alive or not
|
| options/darwin/system.defaults.dock.wvous-tr-corner | Hot corner action for top right corner
|
| options/darwin/system.defaults.dock.wvous-br-corner | Hot corner action for bottom right corner
|
| options/darwin/system.defaults.dock.wvous-tl-corner | Hot corner action for top left corner
|
| options/nixos/networking.interfaces.<name>.macAddress | MAC address of the interface
|
| options/nixos/services.gitlab-runner.services.<name>.dockerPullPolicy | Default pull-policy for Docker images
|
| options/nixos/services.dashy.settings | Settings serialized into user-data/conf.yml before build
|
| options/nixos/services.dovecot2.pluginSettings | Plugin settings for dovecot in general, e.g. sieve, sieve_default, etc
|
| options/nixos/programs.hyprland.systemd.setPath.enable | Set environment path of systemd to include the current system's bin directory
|
| options/nixos/security.pam.services.<name>.startSession | If set, the service will register a new session with
systemd's login manager
|
| options/nixos/services.mediawiki.httpd.virtualHost.addSSL | Whether to enable HTTPS in addition to plain HTTP
|
| options/nixos/services.patroni.postgresqlDataDir | The data directory for PostgreSQL
|
| options/nixos/services.umami.settings.COLLECT_API_ENDPOINT | Allows you to send metrics to a location different than the default /api/send.
|
| options/home-manager/programs.ssh.enableDefaultConfig | Whether to enable or not the old default config values
|
| options/nixos/containers.<name>.extraVeths.<name>.localAddress | The IPv4 address assigned to the interface in the container
|
| options/nixos/services.zfs.autoSnapshot.flags | Flags to pass to the zfs-auto-snapshot command
|
| options/darwin/system.defaults.magicmouse.MouseButtonMode | "OneButton": any tap is a left click. "TwoButton": allow left-
and right-clicking.
|
| options/darwin/system.defaults.dock.persistent-others.*.folder | A folder to be added to the dock.
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.remote_port | Remote UDP port for IKE communication
|
| options/nixos/environment.plasma5.excludePackages | List of default packages to exclude from the configuration
|
| options/nixos/services.akkoma.config.":pleroma".":frontends" | Frontend configuration
|
| options/nixos/environment.plasma6.excludePackages | List of default packages to exclude from the configuration
|
| options/nixos/services.borgbackup.jobs.<name>.prune.prefix | Only consider archive names starting with this prefix for pruning
|
| options/nixos/services.libinput.touchpad.clickMethod | Enables a click method
|
| options/nixos/services.healthchecks.user | User account under which healthchecks runs.
If left as the default value this user will automatically be created
on system activation, otherwise you are responsible for
ensuring the user exists before the healthchecks service starts.
|
| options/nixos/services.mysql.galeraCluster.nodeAddresses | IP addresses or hostnames of all nodes in the cluster, including this node
|
| options/nixos/services.thanos.rule.objstore.config | Object store configuration
|
| options/home-manager/targets.darwin.defaults."com.apple.dock".size-immutable | Whether to enable locking of the dock size.
|
| options/home-manager/services.xsuspender.defaults.resumeEvery | Resume interval in seconds.
|
| options/home-manager/targets.darwin.defaults.NSGlobalDomain.KeyRepeat | Interval between key repetitions when holding down a key
|
| options/nixos/services.nghttpx.frontends.*.params.api | Enable API access for this frontend
|
| options/nixos/systemd.tmpfiles.packages | List of packages containing systemd-tmpfiles rules
|
| options/nixos/services.webhook.hooksTemplated | Same as hooks, but these hooks are specified as literal strings instead of Nix values,
and hence can include template syntax
which might not be representable as JSON
|
| options/nixos/swapDevices.*.randomEncryption.sectorSize | Set the sector size for the plain encrypted device type
|
| options/nixos/containers.<name>.extraVeths.<name>.localAddress6 | The IPv6 address assigned to the interface in the container
|
| options/darwin/launchd.agents.<name>.serviceConfig.SessionCreate | This key specifies that the job should be spawned into a new security
audit session rather than the default session for the context is belongs
to
|
| options/nixos/services.certspotter.sendmailPath | Path to the sendmail binary
|
| options/nixos/security.duosec.prompts | If a user fails to authenticate with a second factor, Duo
Unix will prompt the user to authenticate again
|
| options/nixos/services.grafana.settings.server.domain | The public facing domain name used to access grafana from a browser
|
| options/nixos/services.nebula.networks.<name>.enableReload | Enable automatic config reload on config change
|
| options/nixos/services.munin-node.disabledPlugins | Munin plugins to disable, even if
munin-node-configure --suggest tries to enable
them
|
| options/home-manager/targets.darwin.defaults.NSGlobalDomain.AppleMetricUnits | Whether to enable the metric system.
|
| options/home-manager/accounts.email.certificatesFile | Path to default file containing certificate authorities that
should be used to validate the connection authenticity
|
| options/home-manager/wayland.windowManager.sway.config.colors | Color settings
|
| options/nixos/services.jirafeau.nginxConfig.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| options/nixos/services.zabbixWeb.httpd.virtualHost.forceSSL | Whether to add a separate nginx server block that permanently redirects (301)
all plain HTTP traffic to HTTPS
|
| options/darwin/system.defaults.CustomSystemPreferences | Sets custom system preferences
|
| options/darwin/homebrew.caskArgs.dictionarydir | Target location for Dictionaries
|
| options/darwin/launchd.agents.<name>.serviceConfig.Sockets.<name>.SockType | This optional key tells launchctl what type of socket to create
|
| options/darwin/system.defaults.dock.persistent-apps.*.spacer.small | Whether the spacer is small.
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.priority | Optional fixed priority for IPsec policies
|
| options/nixos/services.snapserver.streams.<name>.sampleFormat | Default sample format.
|
| options/nixos/boot.loader.systemd-boot.consoleMode | The resolution of the console
|
| options/nixos/boot.loader.grub.mirroredBoots.*.efiBootloaderId | The id of the bootloader to store in efi nvram
|
| options/nixos/services.clamav.fangfrisch.settings | fangfrisch configuration
|
| options/nixos/services.adguardhome.allowDHCP | Allows AdGuard Home to open raw sockets (CAP_NET_RAW), which is
required for the integrated DHCP server
|
| options/nixos/services.mediatomb.openFirewall | If false (the default), this is up to the user to declare the firewall rules
|
| options/nixos/services.postfix.settings.master.<name>.command | A program name specifying a Postfix service/daemon process
|
| options/home-manager/programs.kakoune.config.showWhitespace.space | The character to display for spaces
|
| options/home-manager/targets.darwin.defaults."com.apple.Safari".AutoFillCreditCardData | Whether to enable autofill of credit card numbers.
|
| options/darwin/environment.darwinConfig | The path of the darwin configuration.nix used to configure the system,
this updates the default darwin-config entry in NIX_PATH
|
| options/darwin/homebrew.caskArgs.mdimporterdir | Target location for Spotlight Plugins
|
| options/darwin/system.defaults.NSGlobalDomain.AppleFontSmoothing | Sets the level of font smoothing (sub-pixel font rendering).
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.dpd_timeout | Charon by default uses the normal retransmission mechanism and timeouts to
check the liveness of a peer, as all messages are used for liveness
checking
|
| options/nixos/programs.proxychains.remoteDNSSubnet | Set the class A subnet number to use for the internal remote DNS mapping, uses the reserved 224.x.x.x range by default.
|
| options/nixos/services.healthchecks.group | Group account under which healthchecks runs.
If left as the default value this group will automatically be created
on system activation, otherwise you are responsible for
ensuring the group exists before the healthchecks service starts.
|
| options/nixos/services._3proxy.resolution.nserver | List of nameservers to use
|
| options/nixos/services.borgbackup.jobs.<name>.readWritePaths | By default, borg cannot write anywhere on the system but
$HOME/.config/borg and $HOME/.cache/borg
|
| options/nixos/networking.getaddrinfo.label | Adds entries to the label table, as described in section 2.1 of RFC 3484
|
| options/nixos/services.drupal.sites.<name>.virtualHost.forceSSL | Whether to add a separate nginx server block that permanently redirects (301)
all plain HTTP traffic to HTTPS
|
| options/nixos/security.pam.services.<name>.kwallet.enable | If enabled, pam_wallet will attempt to automatically unlock the
user's default KDE wallet upon login
|
| options/nixos/services.homer.settings | Settings serialized into config.yml before build
|
| options/nixos/services.networking.websockify.portMap | Ports to map by default.
|
| options/nixos/services.thanos.store.objstore.config | Object store configuration
|
| options/nixos/services.neo4j.directories.data | Path of the data directory
|
| options/nixos/services.offlineimap.onCalendar | How often is offlineimap started
|
| options/home-manager/targets.darwin.defaults."com.apple.finder".FXRemoveOldTrashItems | Automatically delete items from trash after 30 days
|
| options/home-manager/services.xsuspender.defaults.execResume | Before resuming, execute this shell script
|
| options/home-manager/programs.zsh.historySubstringSearch.searchUpKey | The key codes to be used when searching up
|
| options/home-manager/programs.gnome-terminal.profile.<name>.customCommand | The command to use to start the shell, or null for default shell.
|
| options/nixos/services.hylafax.modems.<name>.config | Attribute set of values for the given modem
|
| options/nixos/services.unpoller.unifi.defaults.save_ids | Collect and save data from the intrusion detection system to influxdb and Loki.
|
| options/nixos/services.wordpress.sites.<name>.virtualHost.addSSL | Whether to enable HTTPS in addition to plain HTTP
|
| options/nixos/services.zabbixWeb.nginx.virtualHost.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| options/darwin/system.defaults.WindowManager.StandardHideWidgets | Hide widgets on desktop.
|
| options/darwin/system.defaults.NSGlobalDomain."com.apple.keyboard.fnState" | Use F1, F2, etc. keys as standard function keys.
|
| options/nixos/services.healthchecks.dataDir | The directory used to store all data for healthchecks.
If left as the default value this directory will automatically be created before
the healthchecks server starts, otherwise you are responsible for ensuring the
directory exists with appropriate ownership and permissions.
|
| options/nixos/services.datadog-agent.checks | Configuration for all Datadog checks
|
| options/nixos/services.anubis.instances.<name>.policy.extraBots | Additional bot rules appended to the policy
|
| options/nixos/services.nextjs-ollama-llm-ui.hostname | The hostname under which the Ollama UI interface should be accessible
|
| options/nixos/services.reposilite.settings.idleTimeout | Default idle timeout used by Jetty.
|
| options/home-manager/programs.kakoune.config.showWhitespace.tabStop | The character to append to tabs to reach the width of a tabstop
|
| options/home-manager/xsession.windowManager.i3.config.colors | Color settings
|