| options/nixos/services.geth.<name>.network | The network to connect to
|
| options/nixos/hardware.rasdaemon.testing | Whether to enable error injection infrastructure.
|
| options/nixos/services.cockroachdb.certsDir | The path to the certificate directory.
|
| options/nixos/services.jupyter.group | Name of the group used to run the jupyter service
|
| options/nixos/services.fedimintd.<name>.nginx.config.redirectCode | HTTP status used by globalRedirect and forceSSL
|
| options/nixos/services.gitea.settings.session.COOKIE_SECURE | Marks session cookies as "secure" as a hint for browsers to only send
them via HTTPS
|
| options/nixos/security.doas.extraRules | Define specific rules to be set in the
/etc/doas.conf file
|
| options/nixos/services.davis.adminPasswordFile | The full path to a file that contains the admin's password
|
| options/nixos/boot.initrd.luks.devices.<name>.postOpenCommands | Commands that should be run right after we have mounted our LUKS device.
|
| options/nixos/services.icecream.daemon.cacheLimit | Maximum size in Megabytes of cache used to store compile environments of compile clients.
|
| options/nixos/services.druid.historical.segmentLocations.*.path | the path to store the segments
|
| options/nixos/services.authelia.instances.<name>.environmentVariables | Additional environment variables to provide to authelia
|
| options/nixos/services.chhoto-url.settings.public_mode | Whether to enable public mode.
|
| options/nixos/services.hadoop.yarn.resourcemanager.enable | Whether to enable Hadoop YARN ResourceManager.
|
| options/nixos/boot.loader.systemd-boot.memtest86.enable | Make Memtest86+ available from the systemd-boot menu
|
| options/nixos/services.librenms.nginx.quic | Whether to enable the QUIC transport protocol
|
| options/nixos/networking.firewall.interfaces.<name>.allowedTCPPortRanges | A range of TCP ports on which incoming connections are
accepted.
|
| options/nixos/services.jupyter.enable | Whether to enable Jupyter development server.
|
| options/nixos/services.gancio.enable | Whether to enable Gancio, a shared agenda for local communities.
|
| options/nixos/services.cockpit.settings | Settings for cockpit that will be saved in /etc/cockpit/cockpit.conf
|
| options/nixos/services.libeufin.settings | Global configuration options for the libeufin bank system config file.
|
| options/nixos/boot.loader.systemd-boot.netbootxyz.enable | Make netboot.xyz available from the
systemd-boot menu. netboot.xyz
is a menu system that allows you to boot OS installers and
utilities over the network.
|
| options/nixos/services.cron.mailto | Email address to which job output will be mailed.
|
| options/nixos/hardware.sane.brscan4.netDevices.<name>.name | The friendly name you give to the network device
|
| options/nixos/services.bacula-sd.tls | TLS Options for the Storage Daemon
|
| options/nixos/services.gotenberg.extraArgs | Any extra command-line flags to pass to the Gotenberg service.
|
| options/nixos/services.fediwall.nginx.listen.*.extraParameters | Extra parameters of this listen directive.
|
| options/nixos/services.easytier.package | The easytier package to use.
|
| options/nixos/services.glpiAgent.stateDir | Directory where GLPI Agent stores its state.
|
| options/nixos/programs.tmux.enable | Whenever to configure tmux system-wide.
|
| options/nixos/services.libinput.touchpad.accelSpeed | Cursor acceleration (how fast speed increases from minSpeed to maxSpeed)
|
| options/nixos/services.felix.bundles | List of bundles that should be activated on startup
|
| options/nixos/security.doas.extraRules.*.users | The usernames / UIDs this rule should apply for.
|
| options/nixos/hardware.i2c.group | Grant access to i2c devices (/dev/i2c-*) to users in this group.
|
| options/nixos/services.gotenberg.timeout | Timeout for API requests.
|
| options/nixos/services.go-csp-collector.settings.port | The port to listen on.
|
| options/nixos/services.gitea.metricsTokenFile | Path to a file containing the metrics authentication token.
|
| options/nixos/programs.streamdeck-ui.package | The streamdeck-ui package to use.
|
| options/nixos/services.journald.remote.settings.Remote.ServerCertificateFile | A path to a SSL certificate file in PEM format
|
| options/nixos/services.grocy.phpfpm.settings | Options for grocy's PHPFPM pool.
|
| options/nixos/boot.initrd.systemd.initrdBin | Packages to include in /bin for the stage 1 emergency shell.
|
| options/nixos/services.drupal.sites.<name>.virtualHost.hostName | Canonical hostname for the server.
|
| options/nixos/services.libinput.mouse.clickMethod | Enables a click method
|
| options/nixos/environment.plasma6.excludePackages | List of default packages to exclude from the configuration
|
| options/nixos/services.bird-lg.frontend.navbar.brandURL | URL of the brand to show in the navigation bar.
|
| options/nixos/services.alloy.configPath | Alloy configuration file/directory path
|
| options/nixos/programs.bat.package | The bat package to use.
|
| options/nixos/security.sudo.extraRules.*.users | The usernames / UIDs this rule should apply for.
|
| options/nixos/services.datadog-agent.checks | Configuration for all Datadog checks
|
| options/nixos/services.dolibarr.nginx.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| options/nixos/services.hans.clients.<name>.extraConfig | Additional command line parameters
|
| options/nixos/power.ups.package | The nut package to use.
|
| options/nixos/services.gitwatch.<name>.message | Optional text to use in as commit message; all occurrences of %d will be replaced by formatted date/time
|
| options/nixos/services.grafana.settings.analytics.reporting_enabled | When enabled Grafana will send anonymous usage statistics to stats.grafana.org
|
| options/nixos/services.agorakit.nginx.serverName | Name of this virtual host
|
| options/nixos/services.cockpit.package | The Cockpit package to use.
|
| options/nixos/networking.wg-quick.interfaces.<name>.autostart | Whether to bring up this interface automatically during boot.
|
| options/nixos/services.alps.smtps.port | The SMTPS server port.
|
| options/nixos/services.httpd.configFile | Override the configuration file used by Apache
|
| options/nixos/services.cfssl.tlsCert | Other endpoint's CA to set up TLS protocol.
|
| options/nixos/services.jenkinsSlave.javaPackage | The jdk package to use.
|
| options/nixos/services.kbfs.mountPoint | Mountpoint for the Keybase filesystem.
|
| options/nixos/services.infinoted.plugins | Plugins to enable
|
| options/nixos/nix.nixPath | The default Nix expression search path, used by the Nix
evaluator to look up paths enclosed in angle brackets
(e.g. <nixpkgs>).
|
| options/nixos/services.librenms.nginx.rejectSSL | Whether to listen for and reject all HTTPS connections to this vhost
|
| options/nixos/services.kerberos_server.settings.includedir | Directories containing files to include in the Kerberos configuration.
|
| options/nixos/services.keepalived.enableScriptSecurity | Don't run scripts configured to be run as root if any part of the path is writable by a non-root user.
|
| options/nixos/programs.neovim.runtime.<name>.enable | Whether this runtime directory should be generated
|
| options/nixos/programs.atop.setuidWrapper.enable | Whether to install a setuid wrapper for Atop
|
| options/nixos/services.epgstation.settings.encodeProcessNum | The maximum number of processes that EPGStation would allow to run
at the same time for encoding or streaming videos.
|
| options/nixos/services.dokuwiki.sites | Specification of one or more DokuWiki sites to serve
|
| options/nixos/services.jenkins.extraGroups | List of extra groups that the "jenkins" user should be a part of.
|
| options/nixos/services.keycloak.settings.hostname | The hostname part of the public URL used as base for
all frontend requests
|
| options/nixos/services.fedimintd.<name>.nginx.config.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|
| options/nixos/services.icecream.scheduler.openFirewall | Whether to automatically open the daemon port in the firewall.
|
| options/nixos/services.flannel.etcd.caFile | Etcd certificate authority file
|
| options/nixos/services.anuko-time-tracker.nginx.locations | Declarative location config
|
| options/nixos/services.grafana.settings.security.admin_password | Default admin password
|
| options/nixos/services.docuseal.host | DocuSeal host.
|
| options/nixos/services.grafana.settings.analytics.feedback_links_enabled | Set to false to remove all feedback links from the UI.
|
| options/nixos/services.diod.squashuser | Change the squash user
|
| options/nixos/services.firewalld.services.<name>.ports.*.protocol | |
| options/nixos/services.immich.redis.host | The host that redis will listen on.
|
| options/nixos/services.journalbeat.extraConfig | Any other configuration options you want to add
|
| options/nixos/services.actual.group | Group account under which Actual runs
|
| options/nixos/programs.ausweisapp.openFirewall | Whether to open the required firewall ports for the Smartphone as Card Reader (SaC) functionality of AusweisApp.
|
| options/nixos/programs.labwc.package | The labwc package to use.
|
| options/nixos/services.dokuwiki.sites.<name>.aclFile | Location of the dokuwiki acl rules
|
| options/nixos/services.hostapd.radios.<name>.networks.<name>.ssid | SSID to be used in IEEE 802.11 management frames.
|
| options/nixos/services.fediwall.nginx.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| options/nixos/services.chhoto-url.settings.custom_landing_directory | The path of a directory which contains a custom landing page.
|
| options/nixos/services.librenms.nginx.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| options/nixos/hardware.nvidia.prime.reverseSync.setupCommands.enable | Whether to enable configure the display manager to be able to use the outputs
attached to the NVIDIA GPU
|
| options/nixos/services.fediwall.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| options/nixos/networking.ipips.<name>.dev | The underlying network device on which the tunnel resides.
|
| options/nixos/services.dolibarr.nginx.locations.<name>.basicAuth | Basic Auth protection for a vhost
|
| options/nixos/services.distccd.stats.enable | Whether to enable statistics reporting via HTTP server.
|
| options/nixos/services.blockbook-frontend.<name>.internal | Internal http server binding [address]:port.
|
| options/nixos/services.cockroachdb.listen.address | Address to bind to for intra-cluster communication
|
| options/nixos/services.athens.storage.azureblob.accountKey | Account key for the Azure Blob storage backend
|