| options/nixos/boot.loader.grub.splashImage | Background image used for GRUB
|
| options/nixos/nix.checkConfig | If enabled, checks that Nix can parse the generated nix.conf.
|
| options/nixos/hardware.graphics.package | The package that provides the default driver set.
|
| options/nixos/services.dolibarr.nginx.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|
| options/nixos/services.avahi.nssmdns4 | Whether to enable the mDNS NSS (Name Service Switch) plug-in for IPv4
|
| options/nixos/networking.firewall.autoLoadConntrackHelpers | Whether to auto-load connection-tracking helpers
|
| options/nixos/services.firezone.server.provision.accounts.<name>.features.traffic_filters | Whether to enable the traffic_filters feature for this account.
|
| options/nixos/programs.mouse-actions.autorun | Whether to start a user service to run mouse-actions on startup.
|
| options/nixos/programs.proxychains.chain.length | Chain length for random chain.
|
| options/nixos/security.tpm2.fapi.userDir | The directory where user objects are stored.
|
| options/nixos/networking.wireguard.interfaces.<name>.peers.*.presharedKey | Base64 preshared key generated by wg genpsk
|
| options/nixos/services.couchdb.bindAddress | Defines the IP address by which CouchDB will be accessible.
|
| options/nixos/programs.gpaste.enable | Whether to enable GPaste, a clipboard manager.
|
| options/nixos/services.grafana.settings.database.wal | For sqlite3 only
|
| options/nixos/documentation.man.mandoc.package | The mandoc derivation to use
|
| options/nixos/services.dnsmasq.settings.server | The DNS servers which dnsmasq should query.
|
| options/nixos/security.isolate.package | The isolate-unwrapped package to use.
|
| options/nixos/programs.yazi.plugins | Lua plugins
|
| options/nixos/services.legit.settings.server.port | Legit port.
|
| options/nixos/services.headscale.settings.tls_cert_path | Path to already created certificate.
|
| options/nixos/services.jellyfin.transcoding.enableHardwareEncoding | Enable hardware encoding for video transcoding.
|
| options/nixos/services.libreswan.enable | Whether to enable Libreswan IPsec service.
|
| options/nixos/networking.wlanInterfaces.<name>.meshID | MeshID of interface with type mesh.
|
| options/nixos/programs.starship.enable | Whether to enable the Starship shell prompt.
|
| options/nixos/hardware.openrazer.verboseLogging | Whether to enable verbose logging
|
| options/nixos/services.draupnir.settings | Free-form settings written to Draupnir's configuration file
|
| options/nixos/services.fediwall.settings.loadFederated | Load federated posts
|
| options/nixos/services.chromadb.enable | Whether to enable ChromaDB, an open-source AI application database..
|
| options/nixos/services.languagetool.enable | Whether to enable the LanguageTool server, a multilingual spelling, style, and grammar checker that helps correct or paraphrase texts.
|
| options/nixos/networking.defaultGateway6.source | The default source address.
|
| options/nixos/services.gmediarender.audioDevice | The audio device to use.
|
| options/nixos/services.druid.router.jdk | The JDK package to use.
|
| options/nixos/services.h2o.hosts.<name>.tls.identity.*.certificate-file | Path to certificate file
|
| options/nixos/services.cfssl.ca | CA used to sign the new certificate -- accepts '[file:]fname' or 'env:varname'.
|
| options/nixos/services.hledger-web.stateDir | Path the service has access to
|
| options/nixos/services.h2o.package | The h2o package to use.
|
| options/nixos/services.dawarich.configureNginx | Configure nginx as a reverse proxy for dawarich
|
| options/nixos/programs.nm-applet.enable | Whether to enable nm-applet, a NetworkManager control applet for GNOME.
|
| options/nixos/services.conman.package | The conman package to use.
|
| options/nixos/programs.regreet.iconTheme.package | The package that provides the icon theme given in the name option.
|
| options/nixos/services.hostapd.radios.<name>.networks.<name>.authentication.saePasswords.*.id | If this attribute is given with non-zero length, it will set the password identifier
for this entry
|
| options/nixos/services.dolibarr.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/boot.loader.generic-extlinux-compatible.useGenerationDeviceTree | Whether to generate Device Tree-related directives in the
extlinux configuration
|
| options/nixos/services.hologram-server.ldapHost | Address of the LDAP server to use
|
| options/nixos/services.grafana.provision.dashboards.settings.providers.*.name | A unique provider name.
|
| options/nixos/services.kthxbye.enable | Whether to enable kthxbye alert acknowledgement management daemon.
|
| options/nixos/services.gnome.gnome-keyring.enable | Whether to enable GNOME Keyring daemon, a service designed to
take care of the user's security credentials,
such as user names and passwords
.
|
| options/nixos/services.biboumi.settings.persistent_by_default | Whether all rooms will be persistent by default:
the value of the “persistent” option in the global configuration of each
user will be “true”, but the value of each individual room will still
default to false
|
| options/nixos/services.fedimintd.<name>.nginx.path_ws | Path to host the API on and forward to the daemon's api port
|
| options/nixos/services.cloudflare-warp.udpPort | The UDP port to open in the firewall
|
| options/nixos/services.i2pd.websocket.port | Bind port for websockets endpoint.
|
| options/nixos/services.etesync-dav.openFirewall | Whether to open the firewall for the specified port.
|
| options/nixos/services.grafana.settings.database.ca_cert_path | The path to the CA certificate to use.
|
| options/nixos/services.heisenbridge.identd.enable | Whether to enable identd service support.
|
| options/nixos/services.akkoma.config.":web_push_encryption" | Web Push Notifications configuration
|
| options/nixos/boot.loader.grub.forcei686 | Whether to force the use of a ia32 boot loader on x64 systems
|
| options/nixos/services.diod.extraConfig | Extra configuration options for diod.conf.
|
| options/nixos/services.hostapd.radios.<name>.wifi7.multiUserBeamformer | EHT multi user beamformee support
|
| options/nixos/services.grafana.settings.users.allow_org_create | Set to false to prohibit users from creating new organizations.
|
| options/nixos/services.httpd.extraModules | Additional Apache modules to be used
|
| options/nixos/programs.foot.settings | Configuration for foot terminal emulator
|
| options/nixos/services.fediwall.nginx.locations.<name>.tryFiles | Adds try_files directive.
|
| options/nixos/security.agnos.settings.accounts | A list of ACME accounts
|
| options/nixos/fonts.fontconfig.defaultFonts.sansSerif | System-wide default sans serif font(s)
|
| options/nixos/services.cadvisor.storageDriverDb | Cadvisord storage driver database name.
|
| options/nixos/services.desktopManager.cosmic.enable | Whether to enable COSMIC desktop environment.
|
| options/nixos/services.fedimintd.<name>.api_ws.port | TCP Port to bind on for API connections relayed by the reverse proxy/tls terminator.
|
| options/nixos/security.wrapperDirSize | Size limit for the /run/wrappers tmpfs
|
| options/nixos/services.calibre-server.enable | Whether to enable calibre-server (e-book software).
|
| options/nixos/services.ente.web.domains.albums | The domain under which the albums frontend will be served.
|
| options/nixos/services.freshrss.database.passFile | Database password file for FreshRSS.
|
| options/nixos/services.libeufin.nexus.debug | Whether to enable debug logging.
|
| options/nixos/programs.corectrl.enable | Whether to enable CoreCtrl, a tool to overclock amd graphics cards and processors
|
| options/nixos/services.dependency-track.settings."alpine.database.url" | Specifies the JDBC URL to use when connecting to the database.
|
| options/nixos/services.crab-hole.settings.blocklist.lists | List of blocklists
|
| options/nixos/services.jellyfin.group | Group under which jellyfin runs.
|
| options/nixos/networking.firewall.connectionTrackingModules | List of connection-tracking helpers that are auto-loaded
|
| options/nixos/services.invidious-router.enable | Whether to enable the invidious-router service.
|
| options/nixos/services.kasmweb.datastorePath | The directory used to store all data for kasmweb.
|
| options/nixos/services.fedimintd.<name>.nginx.config.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| options/nixos/services.froide-govplan.dataDir | Directory to store the Froide-Govplan server data.
|
| options/nixos/services.calibre-web.options.enableBookConversion | Configure path to the Calibre's ebook-convert in the DB.
|
| options/nixos/services.libeufin.nexus.settings.nexus-ebics.CLIENT_PRIVATE_KEYS_FILE | Filesystem location where Nexus should store the subscriber private keys.
|
| options/nixos/services.amule.settings.ExternalConnect.ECPort | TCP port for external connections, like remote control via amule-gui
|
| options/nixos/services.akkoma.nginx.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| options/nixos/services.gitlab.databaseName | GitLab database name.
|
| options/nixos/services.bitbox-bridge.runOnMount | Run bitbox-bridge.service only when hardware wallet is plugged, also registers the systemd device unit
|
| options/nixos/services.ebusd.configpath | Directory to read CSV config files from
|
| options/nixos/i18n.inputMethod.enableGtk3 | Whether to enable Gtk3 support.
|
| options/nixos/services.autotierfs.package | The autotier package to use.
|
| options/nixos/services.actual.settings.port | The port to listen on
|
| options/nixos/services.fedimintd.<name>.p2p.port | Port to bind on for p2p connections from peers (both TCP and UDP)
|
| options/nixos/services.jitsi-meet.jibri.enable | Whether to enable a Jibri instance and configure it to connect to Prosody
|
| options/nixos/services.firezone.gateway.package | The firezone-gateway package to use.
|
| options/nixos/services.fluidd.nginx.globalRedirect | If set, all requests for this host are redirected (defaults to 301,
configurable with redirectCode) to the given hostname.
|
| options/nixos/services.bluesky-pds.settings.PDS_REPORT_SERVICE_DID | DID of mod service
|
| options/nixos/services.freefall.enable | Whether to protect HP/Dell laptop hard drives (not SSDs) in free fall.
|
| options/nixos/networking.networkmanager.ensureProfiles.secrets.entries.*.key | key in the setting section for which this entry provides a value
|
| options/nixos/services.gns3-server.ssl.keyFile | Private key file for the certificate.
|
| options/nixos/services.bacula-sd.director.<name>.tls.key | The path of a PEM encoded TLS private key
|