| options/nixos/services.glusterfs.tlsSettings.tlsPem | Path to the certificate used for TLS.
|
| options/nixos/services.gitea.customDir | Gitea custom directory
|
| options/nixos/programs.ssh.agentPKCS11Whitelist | A pattern-list of acceptable paths for PKCS#11 shared libraries
that may be used with the -s option to ssh-add.
|
| options/nixos/programs.dwl.enable | Whether to enable Dwl is a compact, hackable compositor for Wayland based on wlroots
|
| options/nixos/hardware.rasdaemon.enable | Whether to enable RAS logging daemon.
|
| options/nixos/services.librenms.nginx.locations.<name>.recommendedUwsgiSettings | Enable recommended uwsgi settings.
|
| options/nixos/services.bosun.stateFile | Path to bosun's state file.
|
| options/nixos/services.code-server.extraPackages | Additional packages to add to the code-server PATH.
|
| options/nixos/services.dolibarr.nginx.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|
| options/nixos/services.drupal.sites.<name>.database.passwordFile | A file containing the password corresponding to
database.user.
|
| options/nixos/boot.loader.grub.backgroundColor | Background color to be used for GRUB to fill the areas the image isn't filling.
|
| options/nixos/services.flaresolverr.port | The port on which FlareSolverr will listen for incoming HTTP traffic.
|
| options/nixos/services.kismet.serverName | The name of the server.
|
| options/nixos/services.hostapd.radios.<name>.networks.<name>.macAllowFile | Specifies a file containing the MAC addresses to allow if macAcl is set to "allow" or "radius"
|
| options/nixos/services.actkbd.bindings.*.command | What to run.
|
| options/nixos/programs.openvpn3.log-service.settings.log_level | How verbose should the logging be
|
| options/nixos/services.distccd.maxJobs | Maximum number of tasks distccd should execute at lib.any time.
|
| options/nixos/programs.waybar.enable | Whether to enable waybar, a highly customizable Wayland bar for Sway and Wlroots based compositors.
|
| options/nixos/services.graylog.enable | Whether to enable Graylog, a log management solution.
|
| options/nixos/services.haven.package | The haven package to use.
|
| options/nixos/programs.hyprland.enable | Whether to enable Hyprland, the dynamic tiling Wayland compositor that doesn't sacrifice on its looks
|
| options/nixos/services.hedgedoc.settings.allowGravatar | Whether to enable Libravatar as
profile picture source on your instance
|
| options/nixos/services.keycloak.database.useSSL | Whether the database connection should be secured by SSL / TLS
|
| options/nixos/services.beszel.hub.environment | Environment variables passed to the systemd service
|
| options/nixos/services.agorakit.nginx.rejectSSL | Whether to listen for and reject all HTTPS connections to this vhost
|
| options/nixos/services.airsonic.transcoders | List of paths to transcoder executables that should be accessible
from Airsonic
|
| options/nixos/services.i2pd.proto.http.auth | Whether to enable webconsole authentication.
|
| options/nixos/services.gitea.settings.server.HTTP_ADDR | Listen address
|
| options/nixos/networking.networkmanager.ensureProfiles.secrets.entries.*.file | file from which the secret value is read
|
| options/nixos/boot.initrd.systemd.users | Users to include in initrd.
|
| options/nixos/security.sudo-rs.package | The sudo-rs package to use.
|
| options/nixos/services.fider.environment | Environment variables to set for the service
|
| options/nixos/services.kasmweb.enable | Whether to enable kasmweb.
|
| options/nixos/services.eg25-manager.package | The eg25-manager package to use.
|
| options/nixos/ec2.zfs.datasets.<name>.properties | Properties to set on this dataset.
|
| options/nixos/services.forgejo.database.path | Path to the sqlite3 database file.
|
| options/nixos/services.firezone.server.provision.accounts.<name>.auth.<name>.adapter_config.clientSecretFile | A file containing a the client secret for an openid_connect adapter
|
| options/nixos/hardware.sane.brscan4.netDevices.<name>.model | The model of the network device.
|
| options/nixos/hardware.sane.drivers.scanSnap.enable | Whether to enable drivers for the Fujitsu ScanSnap scanners
|
| options/nixos/services.homebridge.settings.bridge.name | Name of the homebridge
|
| options/nixos/services.desktopManager.gnome.debug | Whether to enable pkgs.gnome-session debug messages.
|
| options/nixos/services.gotenberg.downloadFrom.denyList | Deny accepting URLs from these domains in the downloadFrom API field
|
| options/nixos/services.angrr.enableNixGcIntegration | Whether to enable nix-gc.service integration.
|
| options/nixos/services.agorakit.nginx.locations | Declarative location config
|
| options/nixos/services.kmonad.keyboards.<name>.defcfg.allowCommands | Whether to enable keys to run shell commands.
|
| options/nixos/programs.light.brightnessKeys.enable | Whether to enable brightness control with keyboard keys
|
| options/nixos/services.desktopManager.pantheon.extraWingpanelIndicators | Indicators to add to Wingpanel.
|
| options/nixos/services.flexget.user | The user under which to run flexget.
|
| options/nixos/services.diod.exportopts | Establish a default set of export options
|
| options/nixos/boot.initrd.luks.devices.<name>.keyFileTimeout | The amount of time in seconds for a keyFile to appear before
timing out and trying passwords.
|
| options/nixos/services.hadoop.mapredSite | Additional options and overrides for mapred-site.xml
https://hadoop.apache.org/docs/current/hadoop-mapreduce-client/hadoop-mapreduce-client-core/mapred-default.xml
|
| options/nixos/services.grafana.enable | Whether to enable grafana.
|
| options/nixos/services.inadyn.settings.custom.<name>.hostname | Hostname alias(es).
|
| options/nixos/services.firezone.server.web.settings | Environment variables for this component of the Firezone server
|
| options/nixos/services.jicofo.bridgeMuc | JID of the internal MUC used to communicate with Videobridges.
|
| options/nixos/services.icecream.scheduler.port | Server port to listen for icecream daemon requests.
|
| options/nixos/services.libvirtd.autoSnapshot.keep | Default number of snapshots to keep for VMs that don't specify a keep value.
|
| options/nixos/programs.hyprland.xwayland.enable | Whether to enable XWayland.
|
| options/nixos/services.hardware.argonone.package | The argononed package to use.
|
| options/nixos/services.db-rest.redis.user | Optional username used for authentication with redis.
|
| options/nixos/services.dokuwiki.sites.<name>.templates | List of path(s) to respective template(s) which are copied into the 'tpl' directory.
These templates need to be packaged before use, see example.
|
| options/nixos/security.pam.yubico.challengeResponsePath | If not null, set the path used by yubico pam module where the challenge expected response is stored
|
| options/nixos/services.libinput.mouse.tappingDragLock | Enables or disables drag lock during tapping behavior
|
| options/nixos/services.code-server.disableWorkspaceTrust | Disable Workspace Trust feature.
|
| options/nixos/services.forgejo.settings.server.DISABLE_SSH | Disable external SSH feature.
|
| options/nixos/services.heisenbridge.identd.port | identd listen port
|
| options/nixos/services.cadvisor.storageDriver | Cadvisor storage driver.
|
| options/nixos/services.firewalld.packages | Packages providing firewalld zones and other files
|
| options/nixos/services.iodine.server.domain | Domain or subdomain of which nameservers point to us
|
| options/nixos/hardware.libjaylink.enable | Whether to enable udev rules for devices supported by libjaylink
|
| options/nixos/programs.zsh.shellAliases | Set of aliases for zsh shell, which overrides environment.shellAliases
|
| options/nixos/security.loginDefs.settings.SYS_UID_MIN | Range of user IDs used for the creation of system users by useradd or newusers.
|
| options/nixos/services.coder.database.host | Hostname hosting the database.
|
| options/nixos/services.crowdsec-firewall-bouncer.package | The crowdsec-firewall-bouncer package to use.
|
| options/nixos/services.gancio.nginx.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| options/nixos/services.dsnet.settings | The settings to use for dsnet
|
| options/nixos/security.doas.extraRules.*.setEnv | Keep or set the specified variables
|
| options/nixos/services.libeufin.bank.settings | Configuration options for the libeufin bank system config file
|
| options/nixos/services.cassandra.jmxRoles | Roles that are allowed to access the JMX (e.g. nodetool)
BEWARE: The passwords will be stored world readable in the nix store
|
| options/nixos/services.gocd-server.sslPort | Specifies port number on which the Go
|
| options/nixos/services.h2o.hosts.<name>.http.port | Override the default HTTP port for this virtual host.
|
| options/nixos/services.flarum.domain | Domain to serve on.
|
| options/nixos/services.influxdb2.provision.initialSetup.tokenFile | API Token to set for the admin user
|
| options/nixos/services.bitmagnet.settings.http_server.port | HTTP server listen port
|
| options/nixos/services.hledger-web.host | Address to listen on.
|
| options/nixos/services.hbase-standalone.dataDir | Specifies location of HBase database files
|
| options/nixos/programs.command-not-found.enable | Whether interactive shells should show which Nix package (if
any) provides a missing command
|
| options/nixos/services.cntlm.password | Proxy account password
|
| options/nixos/services.kerberos_server.settings | Settings for the kerberos server of choice
|
| options/nixos/services.autosuspend.checks | Checks for activity
|
| options/nixos/services.bonsaid.settings.*.command | Command to run when this transition is taken
|
| options/nixos/services.cloudlog.extraConfig | Any additional text to be appended to the config.php
configuration file
|
| options/nixos/programs.sniffnet.enable | Whether to enable sniffnet, a network traffic monitor application.
|
| options/nixos/services.documize.enable | Whether to enable Documize Wiki.
|
| options/nixos/services.firewalld.zones.<name>.icmpBlocks | ICMP types to block in the zone.
|
| options/nixos/security.sudo-rs.execWheelOnly | Only allow members of the wheel group to execute sudo by
setting the executable's permissions accordingly
|
| options/nixos/services.autorandr.hooks.postswitch | Postswitch hook executed after mode switch.
|
| options/nixos/services.changedetection-io.behindProxy | Enable this option when changedetection-io runs behind a reverse proxy, so that it trusts X-* headers
|
| options/nixos/services.gitlab.packages.gitlab | The gitlab package to use.
|
| options/nixos/programs.gpu-screen-recorder.enable | Whether to install gpu-screen-recorder and generate setcap
wrappers for promptless recording.
|