| options/nixos/services.ttyd.socket | UNIX domain socket path to bind.
|
| options/nixos/services.privatebin.dataDir | The place where privatebin stores its state.
|
| options/nixos/services.peertube.listenWeb | The public-facing port that PeerTube will be accessible at (likely 80 or 443 if running behind a reverse proxy)
|
| options/nixos/services.nix-store-gcs-proxy | An attribute set describing an HTTP to GCS proxy that allows us to use GCS
bucket via HTTP protocol.
|
| options/nixos/services.sitespeed-io.package | The sitespeed-io package to use.
|
| options/nixos/services.syncthing.settings.options.localAnnounceEnabled | Whether to send announcements to the local LAN, also use such announcements to find other devices.
|
| options/nixos/services.prometheus.alertmanagerGotify.metrics.username | The username used to access your metrics.
|
| options/nixos/services.litestream.enable | Whether to enable litestream.
|
| options/nixos/services.mollysocket.settings.allowed_endpoints | List of UnifiedPush servers
|
| options/nixos/services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.authorization | Optional Authorization header configuration.
|
| options/nixos/services.tinc.networks.<name>.bindToAddress | The ip address to bind to (both listen on and send packets from).
|
| options/nixos/services.pixelfed.nginx.default | Makes this vhost the default.
|
| options/nixos/services.sanoid.interval | Run sanoid at this interval
|
| options/nixos/services.mbpfan.settings.general.low_temp | If temperature is below this, fans will run at minimum speed.
|
| options/nixos/services.outline.storage.uploadBucketName | Name of the bucket where uploads should be stored.
|
| options/nixos/services.prometheus.exporters.smartctl.devices | Paths to the disks that will be monitored
|
| options/nixos/services.oink.domains | List of attribute sets containing configuration for each domain
|
| options/nixos/services.parsedmarc.provision.grafana.datasource | Whether the automatically provisioned Elasticsearch
instance should be added as a grafana datasource
|
| options/nixos/services.redis.servers.<name>.slaveOf.ip | IP of the Redis master
|
| options/nixos/services.nvme-rs.settings.email | Email notification configuration
|
| options/nixos/services.suricata.settings.vars.address-groups.MODBUS_CLIENT | MODBUS_CLIENT variable
|
| options/nixos/services.movim.h2o.tls.identity | Key / certificate pairs for the virtual host.
|
| options/nixos/services.prometheus.scrapeConfigs.*.proxy_url | Optional proxy URL.
|
| options/nixos/services.mastodon.enable | Whether to enable Mastodon, a federated social network server.
|
| options/nixos/services.quake3-server.enable | Whether to enable Quake 3 dedicated server.
|
| options/nixos/services.prometheus.pushgateway.web.external-url | The URL under which Pushgateway is externally reachable.
|
| options/nixos/services.maddy.ensureCredentials | List of user accounts which get automatically created if they don't
exist yet
|
| options/nixos/services.nexus.listenAddress | Address to listen on.
|
| options/nixos/services.peertube-runner.package | The runner package to use.
|
| options/nixos/services.quicktun | QuickTun tunnels
|
| options/nixos/services.mattermost.siteName | Name of this Mattermost site.
|
| options/nixos/services.rkvm.enable | Whether to enable rkvm, a Virtual KVM switch for Linux machines.
|
| options/nixos/services.quake3-server.openFirewall | Open the firewall.
|
| options/nixos/services.saned.extraConfig | Extra saned configuration lines.
|
| options/nixos/services.sonarr.settings.update.mechanism | which update mechanism to use
|
| options/nixos/services.samba.winbindd.enable | Whether to enable Samba's winbindd, which provides a number of services
to the Name Service Switch capability found in most modern C libraries,
to arbitrary applications via PAM and ntlm_auth and to Samba itself.
|
| options/nixos/services.movim.nginx.locations.<name>.proxyPass | Adds proxy_pass directive and sets recommended proxy headers if
recommendedProxySettings is enabled.
|
| options/nixos/services.prometheus.scrapeConfigs.*.scaleway_sd_configs.*.proxy_url | Optional proxy URL.
|
| options/nixos/services.prometheus.scrapeConfigs.*.azure_sd_configs.*.subscription_id | The subscription ID.
|
| options/nixos/services.opendkim.socket | Socket which is used for communication with OpenDKIM.
|
| options/nixos/services.matrix-tuwunel.settings.global.allow_registration | Whether new users can register on this server
|
| options/nixos/services.prefect.workerPools.<name>.installPolicy | install policy for the worker (always, if-not-present, never, prompt)
|
| options/nixos/services.rustus.storage.force_sync | calls fsync system call after every write to disk in local storage
|
| options/nixos/services.suricata.settings.vars.address-groups.HOME_NET | HOME_NET variable.
|
| options/nixos/services.mastodon.elasticsearch.preset | It controls the ElasticSearch indices configuration (number of shards and replica).
|
| options/nixos/services.public-inbox.http.mounts | Root paths or URLs that public-inbox will be served on
|
| options/nixos/services.monica.nginx.default | Makes this vhost the default.
|
| options/nixos/services.nginx.streamConfig | Configuration lines to be set inside the stream block.
|
| options/nixos/services.polaris.user | User account under which Polaris runs.
|
| options/nixos/services.mollysocket.settings.allowed_uuids | UUIDs of Signal accounts that may use this server
|
| options/nixos/services.radicle.httpd.aliases | Alias and RID pairs to shorten git clone commands for repositories.
|
| options/nixos/services.postfix-tlspol.settings.server.socket-permissions | Permissions to the UNIX socket, if configured.
Due to hardening on the systemd unit the socket can never be created world readable/writable.
|
| options/nixos/services.opengfw.settings.workers.udpMaxStreams | UDP max streams.
|
| options/nixos/services.mycelium.keyFile | Optional path to a file containing the mycelium key material
|
| options/nixos/services.sabnzbd.settings.servers | Usenet provider specification
|
| options/nixos/services.suricata.settings.logging.outputs.file.enable | Whether to enable logging to file.
|
| options/nixos/services.monado.forceDefaultRuntime | Whether to ensure that Monado is the active runtime set for the current
user
|
| options/nixos/services.lighttpd.mod_userdir | If true, requests in the form /~user/page.html are rewritten to take
the file public_html/page.html from the home directory of the user.
|
| options/nixos/services.nvme-rs.settings.email.smtp_password_file | File containing SMTP password
|
| options/nixos/services.openafsServer.roles.backup.enable | Whether to enable the backup server role
|
| options/nixos/services.logstash.package | The logstash package to use.
|
| options/nixos/services.physlock.lockMessage | Message to show on physlock login terminal.
|
| options/nixos/services.silverbullet.spaceDir | Folder to store Silverbullet's space/workspace
|
| options/nixos/services.matomo.nginx.listen | Listen addresses and ports for this virtual host
|
| options/nixos/services.misskey.settings.db | Database settings.
|
| options/nixos/services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.authorization.credentials | Sets the credentials
|
| options/nixos/services.mastodon.vapidPrivateKeyFile | Path to file containing the private key used for Web Push
Voluntary Application Server Identification
|
| options/nixos/services.opensearch.restartIfChanged | Automatically restart the service on config change
|
| options/nixos/services.thanos.compact.stateDir | Data directory relative to /var/lib
in which to cache blocks and process compactions.
|
| options/nixos/services.opkssh.authorizations.*.issuer | Issuer URI
|
| options/nixos/services.pgadmin.emailServer.port | SMTP server port for email delivery
|
| options/nixos/services.pretix.settings.mail.port | Port of the SMTP server to use for mail delivery.
|
| options/nixos/services.prometheus.exporters.wireguard.port | Port to listen on.
|
| options/nixos/services.prometheus.exporters.mongodb.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.mongodb.openFirewall is true.
|
| options/nixos/services.linkwarden.openFirewall | Whether to open the Linkwarden port in the firewall
|
| options/nixos/services.portunus.ldap.suffix | The DN of the topmost entry in your LDAP directory
|
| options/nixos/services.resilio.httpLogin | HTTP web login username.
|
| options/nixos/services.prosody.modules.smacks | Allow a client to resume a disconnected session, and prevent message loss
|
| options/nixos/services.mympd.openFirewall | Open ports needed for the functionality of the program.
|
| options/nixos/services.tp-auto-kbbl.package | The tp-auto-kbbl package to use.
|
| options/nixos/services.prometheus.exporters.junos-czerwonk.extraFlags | Extra commandline options to pass to the junos-czerwonk exporter.
|
| options/nixos/services.suricata.settings.app-layer.error-policy | The error-policy setting applies to all app-layer parsers
|
| options/nixos/services.livekit.openFirewall | Opens port range for LiveKit on the firewall.
|
| options/nixos/services.openvscode-server.extraArguments | Additional arguments to pass to openvscode-server.
|
| options/nixos/services.supergfxd.settings | The content of /etc/supergfxd.conf
|
| options/nixos/services.prometheus.sachet.port | The port Sachet will listen to.
|
| options/nixos/services.prosody.httpFileShare.http_external_url | External URL in case Prosody sits behind a reverse proxy.
|
| options/nixos/services.syncplay.motd | Text to display when users join
|
| options/nixos/services.mastodon.sidekiqThreads | Worker threads used by the mastodon-sidekiq-all service
|
| options/nixos/services.thelounge.enable | Whether to enable The Lounge web IRC client.
|
| options/nixos/services.nextcloud.config.adminuser | Username for the admin account
|
| options/nixos/services.system76-scheduler.assignments.<name>.ioClass | IO scheduler class.
|
| options/nixos/services.open-webui.package | The open-webui package to use.
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.url | The full URL to Sonarr, Radarr, or Lidarr.
|
| options/nixos/services.nncp.caller.enable | Whether to enable cron'ed NNCP TCP daemon caller
|
| options/nixos/services.udev.path | Packages added to the PATH environment variable when
executing programs from Udev rules.
coreutils, gnu{sed,grep}, util-linux and config.systemd.package are
automatically included.
|
| options/nixos/services.umurmur.settings.welcometext | Welcome message for connected clients.
|
| options/nixos/services.prometheus.scrapeConfigs.*.uyuni_sd_configs | List of Uyuni Serverset service discovery configurations.
|
| options/nixos/services.nginx.tailscaleAuth.expectedTailnet | If you want to prevent node sharing from allowing users to access services
across tailnets, declare your expected tailnets domain here.
|
| options/nixos/services.prometheus.scrapeConfigs.*.openstack_sd_configs.*.password | password for the Identity V2 and V3 APIs
|