| options/nixos/security.loginDefs.settings.TTYGROUP | The terminal permissions: the login tty will be owned by the TTYGROUP group,
and the permissions will be set to TTYPERM
|
| options/nixos/security.ipa.basedn | Base DN to use when performing LDAP operations.
|
| options/nixos/services.fediwall.nginx.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| options/nixos/programs.slock.package | The slock package to use.
|
| options/nixos/services.kanboard.package | The kanboard package to use.
|
| options/nixos/services.keycloak.initialAdminPassword | Initial password set for the temporary admin user
|
| options/nixos/services.akkoma.config.":pleroma"."Pleroma.Web.Endpoint".signing_salt | Signing salt
|
| options/nixos/services.immich-kiosk.settings.kiosk.port | Port on which immich-kiosk will listen.
|
| options/nixos/services.goss.enable | Whether to enable Goss daemon.
|
| options/nixos/hardware.tuxedo-rs.enable | Whether to enable Rust utilities for interacting with hardware from TUXEDO Computers.
|
| options/nixos/services.beszel.hub.package | The beszel package to use.
|
| options/nixos/nix.firewall.extraNftablesRules | Extra nftables rules to prepend to the generated ones
|
| options/nixos/services.dolibarr.nginx.locations.<name>.extraConfig | These lines go to the end of the location verbatim.
|
| options/nixos/ec2.zfs.datasets | Datasets to create under the tank and boot zpools.
NOTE: This option is used only at image creation time, and
does not attempt to declaratively create or manage datasets
on an existing system.
|
| options/nixos/services.engelsystem.settings | Options to be added to config.php, as a nix attribute set
|
| options/nixos/services.dnsdist.extraConfig | Extra lines to be added verbatim to dnsdist.conf.
|
| options/nixos/services.dokuwiki.sites.<name>.package | The dokuwiki package to use.
|
| options/nixos/services.amazon-cloudwatch-agent.configuration | See configurationFile.
configurationFile takes precedence over configuration.
|
| options/nixos/services.dwm-status.package | The dwm-status package to use.
|
| options/nixos/environment.etc.<name>.user | User name of file owner
|
| options/nixos/services.haven.importRelays | List of relay configurations for importing historical events
|
| options/nixos/services.hadoop.hdfs.datanode.dataDirs.*.type | Storage types ([SSD]/[DISK]/[ARCHIVE]/[RAM_DISK]) for HDFS storage policies.
|
| options/nixos/services.hadoop.gatewayRole.enable | Whether to enable gateway role for deploying hadoop configs.
|
| options/nixos/services.i2pd.proto.httpProxy.inbound.length | Guaranteed minimum hops for httpproxy tunnels.
|
| options/nixos/services.autobrr.settings | Autobrr configuration options
|
| options/nixos/services.iodine.server.extraConfig | Additional command line parameters
|
| options/nixos/services.easytier.instances.<name>.settings.hostname | Hostname shown in peer list and web console.
|
| options/nixos/security.wrappers | This option effectively allows adding setuid/setgid bits, capabilities,
changing file ownership and permissions of a program without directly
modifying it
|
| options/nixos/services.httpd.virtualHosts.<name>.robotsEntries | Specification of pages to be ignored by web crawlers
|
| options/nixos/services.hostapd.radios.<name>.wifi7.enable | Enables support for IEEE 802.11be (WiFi 7, EHT)
|
| options/nixos/services.journalbeat.tags | Tags to place on the shipped log messages
|
| options/nixos/services.gancio.nginx.listenAddresses | Listen addresses for this virtual host
|
| options/nixos/networking.modemmanager.fccUnlockScripts.*.id | vid:pid of either the PCI or USB vendor and product ID
|
| options/nixos/services.gatus.enable | Whether to enable Gatus.
|
| options/nixos/hardware.openrazer.keyStatistics | Collects number of keypresses per hour per key used to
generate a heatmap.
|
| options/nixos/services.lidarr.settings | Attribute set of arbitrary config options
|
| options/nixos/services.fluent-bit.configurationFile | Fluent Bit configuration
|
| options/nixos/services.gitea.captcha.requireForExternalRegistration | Displays a CAPTCHA challenge for users that register externally.
|
| options/nixos/services.dnsdist.dnscrypt.listenAddress | Listen IP address of the endpoint
|
| options/nixos/services.acpid.handlers.<name>.action | Shell commands to execute when the event is triggered.
|
| options/nixos/hardware.fw-fanctrl.config.strategies.<name>.speedCurve | How should the speed curve look like
|
| options/nixos/services.druid.overlord.config | (key=value) Configuration to be written to runtime.properties of the druid Druid Overlord
https://druid.apache.org/docs/latest/configuration/index.html
|
| options/nixos/services.libeufin.bank.enable | Whether to enable libeufin core banking system and web interface.
|
| options/nixos/boot.crashDump.kernelParams | Parameters that will be passed to the kernel kexec-ed on crash.
|
| options/nixos/services.librespeed.settings | LibreSpeed configuration written as Nix expression
|
| options/nixos/programs.git.lfs.enable | Whether to enable git-lfs (Large File Storage).
|
| options/nixos/hardware.cpu.x86.msr.owner | Owner to set for devices of the msr kernel subsystem.
|
| options/nixos/programs.ydotool.group | Group which users must be in to use ydotool.
|
| options/nixos/services.journaldriver.enable | Whether to enable journaldriver to forward journald logs to
Stackdriver Logging.
|
| options/nixos/services.cross-seed.settings.torrentDir | Directory containing torrent files, or if you're using a torrent
client integration and injection - your torrent client's .torrent
file store/cache.
|
| options/nixos/services.docling-serve.package | The docling-serve package to use.
|
| options/nixos/hardware.trackpoint.press_to_select | Setting this to true will enable the Press to Select functions like tapping the control stick to simulate a left click, and setting false will disable it.
|
| options/nixos/services.bazarr.enable | Whether to enable bazarr, a subtitle manager for Sonarr and Radarr.
|
| options/nixos/services.grafana.provision.alerting.rules.path | Path to YAML rules configuration
|
| options/nixos/services.elasticsearch.dataDir | Data directory for elasticsearch.
|
| options/nixos/hardware.hid-fanatecff.enable | Whether to enable hid-fanatecff, a Linux kernel driver that aims to add support for Fanatec devices.
|
| options/nixos/services.gotosocial.settings | Contents of the GoToSocial YAML config
|
| options/nixos/services.firefox-syncserver.secrets | A file containing the various secrets
|
| options/nixos/services.httpd.logFormat | Selects the access log format written to log files
|
| options/nixos/services.foundationdb.serverProcesses | Number of fdbserver processes to run.
|
| options/nixos/services.hadoop.hdfs.namenode.extraFlags | Extra command line flags to pass to HDFS NameNode
|
| options/nixos/services.anuko-time-tracker.nginx.basicAuth | Basic Auth protection for a vhost
|
| options/nixos/services.grafana-to-ntfy.settings.bauthUser | The user that you will authenticate with in the Grafana webhook settings
|
| options/nixos/services.actkbd.extraConfig | Literal contents to append to the end of actkbd configuration file.
|
| options/nixos/services.atalkd.configFile | Optional path to a custom atalkd.conf file
|
| options/nixos/networking.wireguard.interfaces.<name>.peers.*.persistentKeepalive | This is optional and is by default off, because most
users will not need it
|
| options/nixos/services.cryptpad.settings | Cryptpad configuration settings
|
| options/nixos/boot.binfmt.registrations.<name>.wrapInterpreterInShell | Whether to wrap the interpreter in a shell script
|
| options/nixos/programs.ryzen-monitor-ng.enable | Whether to enable ryzen_monitor_ng, a userspace application for setting and getting Ryzen SMU (System Management Unit) parameters via the ryzen_smu kernel driver
|
| options/nixos/services.davis.nginx.addSSL | Whether to enable HTTPS in addition to plain HTTP
|
| options/nixos/services.chrony.makestep.limit | The maximum number of times the system clock will be stepped.
|
| options/nixos/services.duplicity.exclude | List of paths to exclude from backups
|
| options/nixos/services.klipper.user | User account under which Klipper runs
|
| options/nixos/services.librenms.enableLocalBilling | Enable billing Cron-Jobs on the local instance
|
| options/nixos/services.icecream.scheduler.openFirewall | Whether to automatically open the daemon port in the firewall.
|
| options/nixos/boot.loader.limine.style.graphicalTerminal.font.spacing | The horizontal spacing between characters in pixels.
|
| options/nixos/services.hledger-web.stateDir | Path the service has access to
|
| options/nixos/services._3proxy.resolution | Use this option to configure name resolution and DNS caching.
|
| options/nixos/hardware.rtl-sdr.enable | Enables rtl-sdr udev rules, ensures 'plugdev' group exists, and blacklists DVB kernel modules
|
| options/nixos/image.repart.verityStore.ukiPath | Specify the location on the ESP where the UKI is placed.
|
| options/nixos/services.buildkite-agents.<name>.hooksPath | Path to the directory storing the hooks
|
| options/nixos/services.gitlab.packages.gitlab-shell | The gitlab-shell package to use.
|
| options/nixos/hardware.nvidia.dynamicBoost.enable | Whether to enable dynamic Boost balances power between the CPU and the GPU for improved
performance on supported laptops using the nvidia-powerd daemon
|
| options/nixos/services.byedpi.enable | Whether to enable the ByeDPI service.
|
| options/nixos/programs.xonsh.bashCompletion.enable | Whether to enable bash completions for xonsh.
|
| options/nixos/services.dendrite.settings.media_api.database.connection_string | Database for the Media API.
|
| options/nixos/services.freeswitch.enableReload | Issue the reloadxml command to FreeSWITCH when configuration directory changes (instead of restart)
|
| options/nixos/services.guacamole-client.settings | Configuration written to guacamole.properties.
The Guacamole web application uses one main configuration file called
guacamole.properties
|
| options/nixos/services.certspotter.enable | Whether to enable Cert Spotter, a Certificate Transparency log monitor.
|
| options/nixos/programs.mosh.openFirewall | Whether to automatically open the necessary ports in the firewall.
|
| options/nixos/security.acme.certs.<name>.extraDomainNames | A list of extra domain names, which are included in the one certificate to be issued.
|
| options/nixos/services.icingaweb2.enable | Whether to enable the icingaweb2 web interface.
|
| options/nixos/services.caddy.package | The caddy package to use.
|
| options/nixos/services.davis.nginx.default | Makes this vhost the default.
|
| options/nixos/services.duplicity.frequency | Run duplicity with the given frequency (see
systemd.time(7) for the format)
|
| options/nixos/services.fluidd.nginx.http2 | Whether to enable the HTTP/2 protocol
|
| options/nixos/services.akkoma.config.":logger".":ex_syslogger".level | Log level
|
| options/nixos/services.firezone.server.provision.accounts.<name>.resources.<name>.gatewayGroups | A list of gateway groups (sites) which can reach the resource and may be used to connect to it.
|
| options/nixos/services.dbus.brokerPackage | The dbus-broker package to use.
|
| options/nixos/programs.ccache.cacheDir | CCache directory
|