| options/nixos/users.extraUsers.<name>.hashedPasswordFile | The full path to a file that contains the hash of the user's
password
|
| options/nixos/services.kubernetes.scheduler.kubeconfig.keyFile | Kubernetes scheduler client key file used to connect to kube-apiserver.
|
| options/nixos/containers.<name>.tmpfs | Mounts a set of tmpfs file systems into the container
|
| options/nixos/services.misskey.redis.passwordFile | The path to a file containing the Redis password
|
| options/nixos/services.athens.storage.minio.secret | Secret key for the minio storage backend
|
| options/nixos/services.redis.servers.<name>.requirePassFile | File with password for the database.
|
| options/nixos/services.hebbot.templates.report | A path to the Markdown file for the report template.
|
| options/nixos/services.nagios.virtualHost.sslServerChain | Path to server SSL chain file.
|
| options/nixos/services.moodle.virtualHost.sslServerChain | Path to server SSL chain file.
|
| options/nixos/services.athens.index.mysql.password | Password for the MySQL database
|
| options/nixos/services.tahoe.nodes.<name>.client.shares.happy | The number of distinct storage nodes required to store
a file.
|
| options/home-manager/programs.vicinae.themes | Theme settings to add to the themes folder in ~/.config/vicinae/themes
|
| options/nixos/services.freshrss.database.passFile | Database password file for FreshRSS.
|
| options/nixos/services.fider.database.url | URI to use for the main PostgreSQL database
|
| options/darwin/environment.userLaunchAgents | Set of files that have to be linked in ~/Library/LaunchAgents.
|
| options/nixos/services.klipper.mutableConfig | Whether to manage the config outside of NixOS
|
| options/home-manager/programs.spotify-player.keymaps | Configuration written to the keymaps field of
$XDG_CONFIG_HOME/spotify-player/keymap.toml
|
| options/home-manager/programs.spotify-player.actions | Configuration written to the actions field of
$XDG_CONFIG_HOME/spotify-player/keymap.toml
|
| options/home-manager/programs.librewolf.profiles.<name>.containersForce | Whether to force replace the existing containers configuration
|
| options/nixos/hardware.amdgpu.amdvlk.settings | Runtime settings for AMDVLK to be configured /etc/amd/amdVulkanSettings.cfg
|
| options/nixos/i18n.inputMethod.fcitx5.settings.addons | The addon configures in conf folder in ini format with global sections
|
| options/home-manager/i18n.inputMethod.fcitx5.settings.addons | The addon configures in conf folder in ini format with global sections
|
| options/home-manager/programs.freetube.settings | Configuration settings for FreeTube
|
| options/nixos/services.buildbot-master.masterCfg | Optionally pass master.cfg path
|
| options/nixos/services.peering-manager.enableOidc | Enable OIDC-Authentication for Peering Manager
|
| options/nixos/services.peering-manager.enableLdap | Enable LDAP-Authentication for Peering Manager
|
| options/nixos/services.nginx.prependConfig | Configuration lines prepended to the generated Nginx
configuration file
|
| options/nixos/services.syncplay.passwordFile | Path to the file that contains the server password
|
| options/nixos/services.xserver.serverFlagsSection | Contents of the ServerFlags section of the X server configuration file.
|
| options/nixos/services.prometheus.scrapeConfigs.*.marathon_sd_configs.*.authorization.credentials_file | Sets the credentials to the credentials read from the configured file
|
| options/nixos/services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.authorization.credentials_file | Sets the credentials to the credentials read from the configured file
|
| options/nixos/services.nextcloud.settings | Extra options which should be appended to Nextcloud's config.php file.
|
| options/nixos/services.swapspace.settings | Config file for swapspace
|
| options/nixos/services.bookstack.appKeyFile | A file containing the Laravel APP_KEY - a 32 character long,
base64 encoded key used for encryption where needed
|
| options/nixos/services.zabbixProxy.database.socket | Path to the unix socket file to use for authentication.
|
| options/nixos/systemd.shutdownRamfs.contents.<name>.text | Text of the file.
|
| options/nixos/services.dawarich.smtp.passwordFile | Path to file containing the SMTP password.
|
| options/nixos/services.mastodon.smtp.passwordFile | Path to file containing the SMTP password.
|
| options/nixos/services.kubernetes.scheduler.kubeconfig.certFile | Kubernetes scheduler client certificate file used to connect to kube-apiserver.
|
| options/home-manager/programs.vscode.profiles.<name>.enableMcpIntegration | Whether to integrate the MCP servers config from
programs.mcp.servers into
programs.vscode.profiles.<name>.userMcp
|
| options/nixos/xdg.terminal-exec.settings | Configuration options for the Default Terminal Execution Specification
|
| options/nixos/services.gitlab.smtp.passwordFile | File containing the password of the SMTP server for GitLab
|
| options/nixos/services.ddclient.extraConfig | Extra configuration
|
| options/nixos/services.rss2email.feeds.<name>.to | Email address to which to send feed items
|
| options/nixos/services.pleroma.secretConfigFile | Path to the file containing your secret pleroma configuration.
DO NOT POINT THIS OPTION TO THE NIX
STORE, the store being world-readable, it'll
compromise all your secrets.
|
| options/nixos/system.nssDatabases.services | List of services entries to configure in /etc/nsswitch.conf
|
| options/darwin/environment.launchDaemons | Set of files that have to be linked in /Library/LaunchDaemons.
|
| options/nixos/services.ncdns.dnssec.keys.public | Path to the file containing the KSK public key
|
| options/nixos/services.draupnir.settings | Free-form settings written to Draupnir's configuration file
|
| options/home-manager/programs.firefox.profiles.<name>.extensions.settings.<name>.force | Forcibly override any existing configuration for
this extension.
|
| options/nixos/services.duplicity.exclude | List of paths to exclude from backups
|
| options/nixos/services.duplicity.include | List of paths to include into the backups
|
| options/nixos/services.nextcloud.secrets | Secret files to read into entries in config.php
|
| options/home-manager/programs.i3status-rust.bars.<name>.blocks | Configuration blocks to add to i3status-rust
config
|
| options/nixos/services.cachix-watch-store.signingKeyFile | Optional file containing a self-managed signing key to sign uploaded store paths.
|
| options/nixos/services.mediawiki.extraConfig | Any additional text to be appended to MediaWiki's
LocalSettings.php configuration file
|
| options/home-manager/programs.bashmount.extraConfig | Configuration written to
$XDG_CONFIG_HOME/bashmount/config
|
| options/nixos/services.ddclient.passwordFile | A file containing the password or a TSIG key in named format when using the nsupdate protocol.
|
| options/nixos/services.sympa.settingsFile.<name>.enable | Whether this file should be generated
|
| options/nixos/services.prosody.modules.proxy65 | Enables a file transfer proxy service which clients behind NAT can use
|
| options/home-manager/programs.cavalier.settings.cava | Settings to be written to the underlying Cava configuration file
|
| options/nixos/services.matrix-tuwunel.settings | Generates the tuwunel.toml configuration file
|
| options/nixos/services.firewalld.settings | FirewallD config file
|
| options/nixos/services.buildbot-worker.workerPassFile | File used to store the Buildbot Worker password
|
| options/nixos/services.prometheus.scrapeConfigs.*.digitalocean_sd_configs.*.basic_auth.password_file | HTTP password file
|
| options/nixos/services.outline.storage.storageType | File storage type, it can be local or s3.
|
| options/nixos/services.privoxy.settings | This option is mapped to the main Privoxy configuration file
|
| options/nixos/services.tailscale.authKeyFile | A file containing the auth key
|
| options/nixos/services.prometheus.scrapeConfigs.*.kubernetes_sd_configs.*.tls_config.ca_file | CA certificate to validate API server certificate with.
|
| options/home-manager/xdg.terminal-exec.settings | Configuration options for the Default Terminal Execution Specification
|
| options/nixos/services.lavalink.extraConfig | Configuration to write to application.yml
|
| options/nixos/services.postfix.settings.main | The main.cf configuration file as key value set
|
| options/nixos/services.tahoe.nodes.<name>.client.shares.needed | The number of shares required to reconstitute a file.
|
| options/nixos/services.prometheus.scrapeConfigs.*.lightsail_sd_configs.*.profile | Named AWS profile used to connect to the API.
|
| options/home-manager/programs.opencode.settings | Configuration written to $XDG_CONFIG_HOME/opencode/opencode.json
|
| options/home-manager/programs.joplin-desktop.extraConfig | Use this to add other options to the Joplin config file
|
| options/darwin/environment.launchAgents.<name>.text | Text of the file.
|
| options/nixos/services.nsd.remoteControl.serverKeyFile | Path to the server private key, which is used by the server
but not by nsd-control
|
| options/nixos/programs.rust-motd.refreshInterval | Interval in which the motd(5) file is refreshed
|
| options/nixos/services.sourcehut.builds.group | Group for builds.sr.ht
|
| options/nixos/services.thanos.rule.query.sd-interval | Refresh interval to re-read file SD files. (used as a fallback)
Defaults to 5m in Thanos
when set to null.
|
| options/home-manager/accounts.contact.accounts.<name>.thunderbird.profiles | List of Thunderbird profiles for which this account should be
enabled
|
| options/nixos/services.sks.webroot | Source directory (will be symlinked, if not null) for the files the
built-in webserver should serve
|
| options/home-manager/programs.claude-code.skills | Custom skills for Claude Code
|
| options/nixos/services.dokuwiki.sites.<name>.phpOptions | Options for PHP's php.ini file for this dokuwiki site.
|
| options/nixos/services.httpd.virtualHosts.<name>.enableUserDir | Whether to enable serving ~/public_html as
/~«username».
|
| options/home-manager/programs.thunderbird.profiles.<name>.search.privateDefault | The default search engine used in the Private Browsing.
|
| options/nixos/i18n.inputMethod.fcitx5.settings.inputMethod | The input method configure in profile file in ini format.
|
| options/nixos/services.kimai.sites.<name>.database.socket | Path to the unix socket file to use for authentication.
|
| options/home-manager/i18n.inputMethod.fcitx5.settings.inputMethod | The input method configure in profile file in ini format.
|
| options/nixos/services.agorakit.mail.passwordFile | A file containing the password corresponding to
|
| options/home-manager/xsession.windowManager.bspwm.extraConfig | Additional shell commands to be run at the end of the config file.
|
| options/nixos/services.radicle.privateKeyFile | Absolute file path to an SSH private key,
usually generated by rad auth
|
| options/nixos/users.users.<name>.description | A short description of the user account, typically the
user's full name
|
| options/home-manager/programs.ne.virtualExtensions | Virtual extensions configuration file for ne.
|
| options/nixos/services.hadoop.log4jProperties | log4j.properties file added to HADOOP_CONF_DIR
|
| options/home-manager/services.syncthing.passwordFile | Path to the gui password file.
|
| options/nixos/services.prometheus.exporters.pve.environmentFile | Path to the service's environment file
|
| options/home-manager/xsession.windowManager.herbstluftwm.enableAlias | Set an alias for the herbstclient command in the
autostart script that only stores its arguments and executes
them all at once at the end of the autostart script
|
| options/home-manager/xsession.windowManager.fluxbox.init | Init configuration for Fluxbox, written to
~/.fluxbox/init
|