| options/nixos/security.pam.mount.createMountPoints | Create mountpoints for volumes if they do not exist.
|
| options/nixos/services.kresd.listenPlain | What addresses and ports the server should listen on
|
| options/nixos/services.canaille.settings | Settings for Canaille
|
| options/nixos/services.dolibarr.nginx.http3_hq | Whether to enable the HTTP/0.9 protocol negotiation used in QUIC interoperability tests
|
| options/nixos/services.displayManager.cosmic-greeter.package | The cosmic-greeter package to use.
|
| options/nixos/networking.ifstate.package | The ifstate package to use.
|
| options/nixos/hardware.bladeRF.enable | Enables udev rules for BladeRF devices
|
| options/nixos/programs.dwl.package | The dwl package to use.
|
| options/nixos/security.sudo-rs.extraConfig | Extra configuration text appended to sudoers.
|
| options/nixos/services.filebeat.settings | Configuration for filebeat
|
| options/nixos/programs.trippy.enable | Whether to enable trippy, a network diagnostic tool.
|
| options/nixos/services.cloudflare-ddns.provider.ipv4 | IP detection provider for IPv4
|
| options/nixos/services.davis.nginx.locations.<name>.extraConfig | These lines go to the end of the location verbatim.
|
| options/nixos/networking.networkmanager.appendNameservers | A list of name servers that should be appended
to the ones configured in NetworkManager or received by DHCP.
|
| options/nixos/services._3proxy.resolution.nscache6 | Set name cache size for IPv6.
|
| options/nixos/services.etcd.enable | Whether to enable etcd.
|
| options/nixos/services.agorakit.nginx.sslCertificate | Path to server SSL certificate.
|
| options/nixos/services.asusd.userLedModesConfig.source | Path of the source file.
|
| options/nixos/services.exim.enable | Whether to enable the Exim mail transfer agent.
|
| options/nixos/services.flarum.stateDir | Home directory for writable storage
|
| options/nixos/services.discourse.redis.dbNumber | Redis database number.
|
| options/nixos/services.endlessh-go.listenAddress | Interface address to bind the endlessh-go daemon to SSH connections.
|
| options/nixos/services.beszel.agent.package | The beszel package to use.
|
| options/nixos/services.g3proxy.enable | Whether to enable g3proxy, a generic purpose forward proxy.
|
| options/nixos/services.autorandr.profiles.<name>.config.<name>.scale | Output scale configuration
|
| options/nixos/services.hydra.maxServers | Maximum number of starman workers to spawn.
|
| options/nixos/services.cyrus-imap.cyrusSettings.SERVICES | This section is the heart of the cyrus.conf file
|
| options/nixos/services.inadyn.settings.custom.<name>.hostname | Hostname alias(es).
|
| options/nixos/services.crowdsec.enable | Whether to enable CrowdSec Security Engine.
|
| options/nixos/services.davis.user | User davis runs as.
|
| options/nixos/networking.wg-quick.interfaces.<name>.generatePrivateKeyFile | Automatically generate a private key with
wg genkey, at the privateKeyFile location.
|
| options/nixos/services.db-rest.port | The port the db-rest server should listen on.
|
| options/nixos/services.gitea.database.name | Database name.
|
| options/nixos/services.invidious.database.port | The port of the database Invidious should use
|
| options/nixos/services.influxdb2.provision.organizations.<name>.buckets.<name>.retention | The duration in seconds for which the bucket will retain data (0 is infinite).
|
| options/nixos/security.dhparams.params.<name>.bits | The bit size for the prime that is used during a Diffie-Hellman
key exchange.
|
| options/nixos/services.cloudlog.virtualHost | Name of the nginx virtualhost to use and setup
|
| options/nixos/services.journalwatch.enable | If enabled, periodically check the journal with journalwatch and report the results by mail.
|
| options/nixos/programs.regreet.iconTheme.name | Name of the icon theme to use for regreet.
|
| options/nixos/services.emacs.defaultEditor | When enabled, configures emacsclient to be the default editor
using the EDITOR environment variable.
|
| options/nixos/hardware.deviceTree.overlays.*.dtboFile | Path to .dtbo compiled overlay file.
|
| options/nixos/services.icecast.listen.address | Address Icecast will listen on.
|
| options/nixos/networking.wg-quick.interfaces.<name>.extraOptions | Extra options to append to the interface section
|
| options/nixos/services.anubis.defaultOptions.settings | Freeform configuration via environment variables for Anubis
|
| options/nixos/services.i2pd.proto.httpProxy.inbound.quantity | Number of simultaneous httpproxy tunnels.
|
| options/nixos/services.desktopManager.pantheon.debug | Whether to enable gnome-session debug messages.
|
| options/nixos/services.autorandr.profiles.<name>.hooks.preswitch | Preswitch hook executed before mode switch.
|
| options/nixos/services.draupnir.settings.homeserverUrl | Base URL of the Matrix homeserver that provides the Client-Server API.
|
| options/nixos/services.bosun.opentsdbHost | Host and port of the OpenTSDB database that stores bosun data
|
| options/nixos/services.borgbackup.jobs.<name>.failOnWarnings | Fail the whole backup job if any borg command returns a warning
(exit code 1), for example because a file changed during backup.
|
| options/nixos/security.pam.services.<name>.googleAuthenticator.allowNullOTP | Whether to allow login for accounts that have no OTP set
(i.e., accounts with no OTP configured or no existing
~/.google_authenticator).
|
| options/nixos/services.elasticsearch-curator.port | the port that elasticsearch is listening on
|
| options/nixos/services.cockpit.showBanner | Whether to add the Cockpit banner to the issue and motd files.
|
| options/nixos/networking.wireguard.interfaces.<name>.preSetup | Commands called at the start of the interface setup.
|
| options/nixos/services.fediwall.nginx.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| options/nixos/services.castopod.database.name | Database name.
|
| options/nixos/services.fusionInventory.enable | Whether to enable Fusion Inventory Agent.
|
| options/nixos/hardware.nvidia.prime.nvidiaBusId | Bus ID of the NVIDIA GPU
|
| options/nixos/services.kanboard.nginx.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| options/nixos/services.kanboard.nginx.root | The path of the web root directory.
|
| options/nixos/networking.ipips.<name>.ttl | The time-to-live of the connection to the remote tunnel endpoint.
|
| options/nixos/services.kmonad.keyboards.<name>.device | Path to the keyboard's device file.
|
| options/nixos/boot.binfmt.registrations.<name>.magicOrExtension | The magic number or extension to match on.
|
| options/nixos/programs.qgroundcontrol.package | The qgroundcontrol package to use.
|
| options/nixos/programs.less.enable | Whether to enable less, a file pager.
|
| options/nixos/services.librenms.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| options/nixos/services.dbus.packages | Packages whose D-Bus configuration files should be included in
the configuration of the D-Bus system-wide or session-wide
message bus
|
| options/nixos/programs.git.package | The git package to use.
|
| options/nixos/services.gotenberg.pdfEngines.disableRoutes | Disable routes related to PDF engines.
|
| options/nixos/services.alerta.authenticationRequired | Whether users must authenticate when using the web UI or command-line tool
|
| options/nixos/services.h2o.enable | Whether to enable H2O web server.
|
| options/nixos/services.amule.user | The user the aMule daemon should run as
|
| options/nixos/services.gemstash.settings | Configuration for Gemstash
|
| options/nixos/services.athens.storage.mongo.insecure | Allow insecure connections to the mongo database.
|
| options/nixos/services.bookstack.nginx.listen.*.port | Port number to listen on
|
| options/nixos/networking.wg-quick.interfaces.<name>.peers.*.publicKey | The base64 public key to the peer.
|
| options/nixos/services.lifecycled.json | Enable JSON logging.
|
| options/nixos/services.i2pd.ifname4 | IPv4 interface to bind to.
|
| options/nixos/services.dokuwiki.sites.<name>.acl | Access Control Lists: see https://www.dokuwiki.org/acl
Mutually exclusive with services.dokuwiki.aclFile
Set this to a value other than null to take precedence over aclFile option
|
| options/nixos/boot.initrd.systemd.packages | Packages providing systemd units and hooks.
|
| options/nixos/boot.loader.grub.extraPerEntryConfig | Additional GRUB commands inserted in the configuration file
at the start of each NixOS menu entry.
|
| options/nixos/services.leaps.enable | Whether to enable leaps, a pair programming service.
|
| options/nixos/boot.binfmt.registrations.<name>.wrapInterpreterInShell | Whether to wrap the interpreter in a shell script
|
| options/nixos/services.flarum.group | System group to run Flarum
|
| options/nixos/services.freshrss.database.port | Database port for FreshRSS.
|
| options/nixos/services.icingaweb2.modules.setup.enable | Whether to enable the icingaweb2 setup module.
|
| options/nixos/hardware.alsa.controls.<name>.card | Name of the PCM card to control (slave).
|
| options/nixos/programs.clash-verge.tunMode | Whether to enable Setcap for TUN Mode
|
| options/nixos/services.frp.instances | Frp instances.
|
| options/nixos/security.loginDefs.settings.GID_MIN | Range of group IDs used for the creation of regular groups by useradd, groupadd, or newusers.
|
| options/nixos/programs.openvpn3.log-service.settings | Options stored in /etc/openvpn3/log-service.json configuration file
|
| options/nixos/programs.ryzen-monitor-ng.enable | Whether to enable ryzen_monitor_ng, a userspace application for setting and getting Ryzen SMU (System Management Unit) parameters via the ryzen_smu kernel driver
|
| options/nixos/services.davis.nginx.acmeRoot | Directory for the ACME challenge, which is public
|
| options/nixos/services.echoip.extraArgs | Extra command line arguments to pass to echoip
|
| options/nixos/programs.quark-goldleaf.enable | Whether to enable quark-goldleaf with udev rules applied.
|
| options/nixos/services.cfssl.dbConfig | Certificate db configuration file
|
| options/nixos/services.hickory-dns.settings.directory | The directory in which hickory-dns should look for .zone files,
whenever zones aren't specified by absolute path.
|
| options/nixos/services.chhoto-url.settings.redirect_method | The redirect method to use.
|
| options/nixos/networking.dhcpcd.denyInterfaces | Disable the DHCP client for any interface whose name matches
any of the shell glob patterns in this list
|
| options/nixos/services.ddclient.interval | The interval at which to run the check and update
|