| options/nixos/services.minio.browser | Enable or disable access to web UI.
|
| options/nixos/services.bitcoind.<name>.prune | Reduce storage requirements by enabling pruning (deleting) of old
blocks
|
| options/nixos/services.prometheus.exporters.frr.disabledCollectors | Collectors to disable which are enabled by default.
|
| options/nixos/services.murmur.logDays | How long to store RPC logs for in the database
|
| options/nixos/services.prometheus.exporters.node.disabledCollectors | Collectors to disable which are enabled by default.
|
| options/nixos/services.fedimintd.<name>.nginx.config.http2 | Whether to enable the HTTP/2 protocol
|
| options/nixos/boot.initrd.supportedFilesystems | Names of supported filesystem types, or an attribute set of file system types
and their state
|
| options/nixos/services.immich.redis.port | The port that redis will listen on
|
| options/nixos/services.syslogd.tty | The tty device on which syslogd will print important log
messages
|
| options/nixos/services.rke2.role | Whether rke2 should run as a server or agent
|
| options/home-manager/programs.anki.reduceMotion | Disable various animations and transitions of the user interface.
|
| options/nixos/services.cloudflared.tunnels.<name>.originRequest.disableChunkedEncoding | Disables chunked transfer encoding
|
| options/darwin/services.prometheus.exporters.node.disabledCollectors | Collectors to disable from the list of collectors that are enabled by default.
|
| options/nixos/services.domoticz.port | Port to bind to for HTTP, set to 0 to disable HTTP.
|
| options/nixos/services.tor.enableGeoIP | Whether to enable use of GeoIP databases
|
| options/nixos/services.prometheus.exporters.opnsense.disabledExporter | Collectors to enable or disable
|
| options/nixos/services.chrony.enable | Whether to synchronise your machine's time using chrony
|
| options/nixos/services.ferm.enable | Whether to enable Ferm Firewall.
Warning: Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|
| options/nixos/services.icingaweb2.modules.monitoring.backends.<name>.disabled | Disable this backend
|
| options/nixos/services.chhoto-url.settings.disable_frontend | Whether to disable the frontend.
|
| options/nixos/services.airsonic.port | The port on which Airsonic will listen for
incoming HTTP traffic
|
| options/nixos/services.subsonic.port | The port on which Subsonic will listen for
incoming HTTP traffic
|
| options/nixos/services.cryptpad.settings.blockDailyCheck | Disable telemetry
|
| options/nixos/services.journald.audit | If enabled systemd-journald will turn on auditing on start-up
|
| options/nixos/powerManagement.powertop.postStart | Shell commands executed after powertop is started
|
| options/nixos/system.autoUpgrade.upgrade | Disable adding the --upgrade parameter when channel
is not set, such as when upgrading to the latest version
of a flake honouring its lockfile.
|
| options/home-manager/services.gromit-mpx.hotKey | A keysym or raw keycode that toggles the activation state of
gromit-mpx
|
| options/nixos/hardware.sane.disabledDefaultBackends | Names of backends which are enabled by default but should be disabled
|
| options/nixos/services.limesurvey.nginx.virtualHost.http2 | Whether to enable the HTTP/2 protocol
|
| options/home-manager/services.wl-clip-persist.extraOptions | Extra command-line arguments to pass to wl-clip-persist
|
| options/nixos/programs.zsh.ohMyZsh.preLoaded | Shell commands executed before the oh-my-zsh is loaded
|
| options/nixos/services.galene.turnAddress | Built-in TURN server listen address and port
|
| options/nixos/services.tor.client.enable | Whether to enable the routing of application connections
|
| options/nixos/users.users.<name>.expires | Set the date on which the user's account will no longer be
accessible
|
| options/nixos/services.k3s.manifests | Auto-deploying manifests that are linked to /var/lib/rancher/k3s/server/manifests before k3s starts
|
| options/nixos/services.rke2.manifests | Auto-deploying manifests that are linked to /var/lib/rancher/rke2/server/manifests before rke2 starts
|
| options/nixos/services.dspam.domainSocket | Path to local domain socket which is used for communication with the daemon
|
| options/nixos/security.shadow.enable | Enable the shadow authentication suite, which provides critical programs such as su, login, passwd
|
| options/nixos/users.allowNoPasswordLogin | Disable checking that at least the root user or a user in the wheel group can log in using
a password or an SSH key
|
| options/home-manager/services.gromit-mpx.undoKey | A keysym or raw keycode that causes gromit-mpx to undo the
last stroke
|
| options/nixos/services.prometheus.exporters.mail.configuration.disableFileDeletion | Disables the exporter's function to delete probing mails.
|
| options/nixos/services.bird.checkConfig | Whether the config should be checked at build time
|
| options/nixos/services.subsonic.httpsPort | The port on which Subsonic will listen for
incoming HTTPS traffic
|
| options/nixos/services.trilium-server.noBackup | Disable periodic database backups.
|
| options/nixos/virtualisation.vmware.host.enable | This enables VMware host virtualisation for running VMs.
vmware-vmx will cause kcompactd0 due to
Transparent Hugepages feature in kernel
|
| options/nixos/services.movim.h2o.tls.policy | add will additionally listen for TLS connections. only will
disable TLS connections. force will redirect non-TLS traffic
to the TLS connection.
|
| options/nixos/services.thanos.rule.grpc-server-tls-key | TLS Key for the gRPC server, leave blank to disable TLS
|
| options/home-manager/programs.feh.buttons | Override feh's default mouse button mapping
|
| options/nixos/services.jibri.xmppEnvironments.<name>.disableCertificateVerification | Whether to skip validation of the server's certificate.
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.http2 | Whether to enable the HTTP/2 protocol
|
| options/nixos/services.knot.keyFiles | A list of files containing additional configuration
to be included using the include directive
|
| options/nixos/services.bosun.opentsdbHost | Host and port of the OpenTSDB database that stores bosun data
|
| options/nixos/services.lifecycled.noSpot | Disable the spot termination listener.
|
| options/nixos/services.thanos.rule.grpc-server-tls-cert | TLS Certificate for gRPC server, leave blank to disable TLS
|
| options/nixos/users.extraUsers.<name>.expires | Set the date on which the user's account will no longer be
accessible
|
| options/nixos/xdg.icons.fallbackCursorThemes | Names of the fallback cursor themes, in order of preference, to be used when no other icon source can be found
|
| options/home-manager/services.xidlehook.not-when-audio | Disable locking when audio is playing.
|
| options/nixos/services.jitsi-videobridge.xmppConfigs.<name>.disableCertificateVerification | Whether to skip validation of the server's certificate.
|
| options/nixos/services.grafana.settings.security.disable_gravatar | Set to true to disable the use of Gravatar for user profile images.
|
| options/nixos/services.avahi.cacheEntriesMax | Number of resource records to be cached per interface
|
| options/nixos/services.thanos.store.grpc-server-tls-key | TLS Key for the gRPC server, leave blank to disable TLS
|
| options/nixos/services.thanos.query.grpc-server-tls-key | TLS Key for the gRPC server, leave blank to disable TLS
|
| options/nixos/services.zapret.httpSupport | Whether to route http traffic on port 80
|
| options/home-manager/programs.floorp.package | The Floorp package to use
|
| options/home-manager/programs.termite.cursorBlink | Specify the how the terminal's cursor should behave
|
| options/nixos/services.h2o.hosts.<name>.tls.policy | add will additionally listen for TLS connections. only will
disable TLS connections. force will redirect non-TLS traffic
to the TLS connection.
|
| options/nixos/services.stargazer.genCerts | Set to false to disable automatic certificate generation
|
| options/nixos/services.nezha-agent.settings.disable_send_query | Disable sending TCP/ICMP/HTTP requests.
|
| options/nixos/networking.dhcpcd.enable | Whether to enable dhcpcd for device configuration
|
| options/nixos/services.dawarich.redis.port | The port of the redis server Dawarich will connect to
|
| options/nixos/services.thanos.query.grpc-server-tls-cert | TLS Certificate for gRPC server, leave blank to disable TLS
|
| options/nixos/services.thanos.store.grpc-server-tls-cert | TLS Certificate for gRPC server, leave blank to disable TLS
|
| options/nixos/services.documize.db | Database specific connection string for example:
- MySQL/Percona/MariaDB:
user:password@tcp(host:3306)/documize
- MySQLv8+:
user:password@tcp(host:3306)/documize?allowNativePasswords=true
- PostgreSQL:
host=localhost port=5432 dbname=documize user=admin password=secret sslmode=disable
- MSSQL:
sqlserver://username:password@localhost:1433?database=Documize or
sqlserver://sa@localhost/SQLExpress?database=Documize
|
| options/nixos/services.oauth2-proxy.cookie.refresh | Refresh the cookie after this duration; 0 to disable.
|
| options/nixos/services.nats.validateConfig | If true, validate nats config at build time
|
| options/nixos/services.movim.podConfig.chatonly | Disable all the social feature (Communities, Blog…) and keep only the chat ones
|
| options/nixos/systemd.network.wait-online.timeout | Time to wait for the network to come online, in seconds
|
| options/nixos/services.wiki-js.settings.offline | Disable latest file updates and enable
sideloading.
|
| options/home-manager/programs.firefox.package | The Firefox package to use
|
| options/nixos/networking.dhcpcd.IPv6rs | Force enable or disable solicitation and receipt of IPv6 Router Advertisements
|
| options/nixos/services.nebula.networks.<name>.enable | Enable or disable this network.
|
| options/home-manager/programs.anki.sync.autoSyncMediaMinutes | Automatically sync media every X minutes
|
| options/nixos/security.lockKernelModules | Disable kernel module loading once the system is fully initialised
|
| options/nixos/boot.zfs.forceImportRoot | Forcibly import the ZFS root pool(s) during early boot
|
| options/nixos/services.sftpgo.settings.smtp.host | Location of SMTP email server
|
| options/nixos/services.sslh.settings.numeric | Whether to disable reverse DNS lookups, thus keeping IP
address literals in the log.
|
| options/nixos/services.thanos.receive.grpc-server-tls-key | TLS Key for the gRPC server, leave blank to disable TLS
|
| options/nixos/services.thanos.sidecar.grpc-server-tls-key | TLS Key for the gRPC server, leave blank to disable TLS
|
| options/nixos/services.envoy.requireValidConfig | Whether a failure during config validation at build time is fatal
|
| options/nixos/services.locate.interval | Update the locate database at this interval
|
| options/nixos/hardware.trackpoint.ext_dev | Disable or enable external pointing device.
|
| options/nixos/security.pam.services.<name>.ttyAudit.enable | Enable or disable TTY auditing for specified users
|
| options/nixos/services.thanos.sidecar.grpc-server-tls-cert | TLS Certificate for gRPC server, leave blank to disable TLS
|
| options/nixos/services.thanos.receive.grpc-server-tls-cert | TLS Certificate for gRPC server, leave blank to disable TLS
|
| options/nixos/services.dolibarr.h2o.tls.policy | add will additionally listen for TLS connections. only will
disable TLS connections. force will redirect non-TLS traffic
to the TLS connection.
|
| options/nixos/services.pihole-ftl.privacyLevel | Level of detail in generated statistics. 0 enables full statistics, 3
shows only anonymous statistics
|
| options/home-manager/programs.zsh.prezto.utility.safeOps | Enabled safe options
|
| options/home-manager/xsession.windowManager.awesome.noArgb | Disable client transparency support, which can be greatly
detrimental to performance in some setups
|
| options/nixos/services.acme-dns.settings.api.disable_registration | Whether to disable the HTTP registration endpoint.
|
| options/nixos/services.shorewall.enable | Whether to enable Shorewall IPv4 Firewall.
Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|