| options/nixos/services.snapserver.settings.tcp-streaming.port | Port to listen on for snapclient connections.
|
| options/nixos/services.warpgate.settings.http.certificate | Path to HTTPS listener certificate.
|
| options/nixos/services.geoipupdate.settings.LicenseKey | A file containing the MaxMind license key
|
| options/nixos/services.nezha-agent.settings.report_delay | The interval between system status reportings
|
| options/home-manager/accounts.email.accounts.<name>.mujmap.settings.username | Username for basic HTTP authentication
|
| options/nixos/services.sourcehut.settings.mail.pgp-privkey | An absolute file path (which should be outside the Nix-store)
to an OpenPGP private key
|
| options/nixos/services.keycloak.settings.http-relative-path | The path relative to / for serving
resources.
In versions of Keycloak using Wildfly (<17),
this defaulted to /auth
|
| options/nixos/services.bitmagnet.settings.postgres.password | Password for database user
|
| options/nixos/services.suricata.settings.vars.address-groups.SQL_SERVERS | SQL_SERVERS variable.
|
| options/nixos/services.suricata.settings.vars.address-groups.AIM_SERVERS | AIM_SERVERS variable.
|
| options/nixos/services.suricata.settings.vars.address-groups.DNS_SERVERS | DNS_SERVERS variable.
|
| options/nixos/services.stash.settings.preview_audio | Include audio stream in previews
|
| options/darwin/services.aerospace.settings.accordion-padding | Padding between windows in an accordion container.
|
| options/nixos/services.anubis.instances.<name>.settings.BIND_NETWORK | The network family that Anubis should bind to
|
| options/nixos/services.listmonk.database.settings.smtp.*.tls_type | Type of TLS authentication with the SMTP server
|
| options/nixos/services.gitlab.pages.settings.internal-gitlab-server | Internal GitLab server used for API requests, useful
if you want to send that traffic over an internal load
balancer
|
| options/nixos/services.sourcehut.settings."pages.sr.ht".migrate-on-upgrade | Whether to enable automatic migrations on package upgrade.
|
| options/nixos/services.sourcehut.settings."lists.sr.ht".migrate-on-upgrade | Whether to enable automatic migrations on package upgrade.
|
| options/nixos/services.sourcehut.settings."paste.sr.ht".migrate-on-upgrade | Whether to enable automatic migrations on package upgrade.
|
| options/nixos/services.suricata.settings.logging.outputs.file.enable | Whether to enable logging to file.
|
| options/nixos/services.suricata.settings.logging.outputs.syslog.type | Type of logs send to syslog.
|
| options/nixos/services.suricata.settings.logging.outputs.file.format | Logformat for logs written to the logfile.
|
| options/nixos/services.radicle.ci.broker.settings.adapters.<name>.command | Adapter command to run.
|
| options/home-manager/programs.obsidian.vaults.<name>.settings.cssSnippets.*.enable | Whether to enable the snippet.
|
| options/home-manager/services.kanshi.settings.*.profile.outputs.*.transform | Sets the output transform.
|
| options/home-manager/programs.obsidian.vaults.<name>.settings.cssSnippets.*.source | Path of the source file.
|
| options/nixos/services.firewalld.settings.NftablesCounters | Whether to add a counter to every nftables rule.
|
| options/nixos/services.opengfw.settings.workers.tcpMaxBufferedPagesTotal | TCP max total buffered pages.
|
| options/nixos/services.quickwit.settings.rest.listen_port | The port to listen on for HTTP REST traffic.
|
| options/nixos/services.hickory-dns.settings.zones.*.zone_type | One of:
- "Primary" (the master, authority for the zone).
- "Secondary" (the slave, replicated from the primary).
- "External" (a cached zone that queries other nameservers)
|
| options/nixos/systemd.tmpfiles.settings.<config-name>.<path>.<tmpfiles-type>.age | Delete a file when it reaches a certain age
|
| options/nixos/services.sourcehut.settings."git.sr.ht::api".internal-ipnet | Set of IP subnets which are permitted to utilize internal API
authentication
|
| options/home-manager/services.kanshi.settings.*.profile.outputs.*.position | <x>,<y>
Places the output at the specified position in the global coordinates
space.
|
| options/nixos/services.libeufin.nexus.settings.nexus-ebics.BANK_PUBLIC_KEYS_FILE | Filesystem location where Nexus should store the bank public keys.
|
| options/nixos/services.spacecookie.settings.hostname | The hostname the service is reachable via
|
| options/nixos/services.matrix-synapse.settings.listeners.*.path | Unix domain socket path to bind this listener to.
|
| options/nixos/services.sabnzbd.secretFiles | Path to a list of ini file containing confidential settings such as credentials
|
| options/nixos/services.tor.settings.ClientRejectInternalAddresses | See torrc manual.
|
| options/nixos/services.canaille.settings.CANAILLE.SMTP.PASSWORD | SMTP Password
|
| options/nixos/services.opengfw.settings.workers.tcpMaxBufferedPagesPerConn | TCP max total bufferd pages per connection.
|
| options/nixos/services.printing.cups-pdf.instances.<name>.settings.AnonDirName | path for anonymously created PDF files
|
| options/nixos/services.wastebin.settings.WASTEBIN_DATABASE_PATH | Path to the sqlite3 database file
|
| options/nixos/services.amule.settings.ExternalConnect.ECPassword | MD5 hash of the password, obtainaible with echo "<password>" | md5sum | cut -d ' ' -f 1
|
| options/home-manager/services.kanshi.settings.*.profile.outputs.*.adaptiveSync | Enables or disables adaptive synchronization
(aka
|
| options/nixos/services.crowdsec-firewall-bouncer.settings.api_url | URL of the local API.
|
| options/nixos/services.etebase-server.settings.global.media_root | The media directory.
|
| options/nixos/services.suricata.settings.dpdk.interfaces | See upstream docs: docs/capture-hardware/dpdk and docs/configuration/suricata-yaml.html#data-plane-development-kit-dpdk.
|
| options/nixos/virtualisation.xen.store.settings.pidFile | Path to the Xen Store Daemon PID file.
|
| options/nixos/services.sabnzbd.settings.misc.cache_limit | Size of the RAM cache, in bytes (prefixes supported)
|
| options/darwin/services.aerospace.settings.exec-on-workspace-change | Commands to run every time workspace changes.
|
| options/nixos/services.evdevremapkeys.settings | config.yaml for evdevremapkeys
|
| options/nixos/services.draupnir.settings.rawHomeserverUrl | Public base URL of the Matrix homeserver that provides the Client-Server API when using the Draupnir's
Report forwarding feature.
When using Pantalaimon, do not set this to the Pantalaimon URL!
|
| options/nixos/services.sourcehut.settings."sr.ht".service-key | An absolute file path (which should be outside the Nix-store)
to a key used for encrypting session cookies
|
| options/nixos/services.healthchecks.settings.SECRET_KEY_FILE | Path to a file containing the secret key.
|
| options/nixos/services.matrix-synapse.settings.presence.enabled | Whether to enable presence tracking
|
| options/nixos/services.waagent.settings.ResourceDisk.MountOptions | This option specifies disk mount options to be passed to the mount -o command
|
| options/nixos/services.canaille.settings.CANAILLE_OIDC.JWT.PRIVATE_KEY | JWT private key
|
| options/nixos/services.suricata.settings.logging.default-log-level | The default log level: can be overridden in an output section
|
| options/nixos/services.grafana.settings.security.admin_user | Default admin username.
|
| options/nixos/services.tor.settings.DoSRefuseSingleHopClientRendezvous | See torrc manual.
|
| options/nixos/services.suricata.settings.vars.address-groups.SMTP_SERVERS | SMTP_SERVERS variable.
|
| options/nixos/services.suricata.settings.vars.address-groups.HTTP_SERVERS | HTTP_SERVERS variable.
|
| options/nixos/services.armagetronad.servers.<name>.settings | Armagetron Advanced server rules configuration
|
| options/nixos/services.ferretdb.settings.FERRETDB_TELEMETRY | Enable or disable basic telemetry
|
| options/nixos/services.transmission.settings.utp-enabled | Whether to enable Micro Transport Protocol (µTP).
|
| options/nixos/services.stash.settings.calculate_md5 | Whether to calculate MD5 checksums for scene video files
|
| options/nixos/services.suricata.settings.outputs | Configure the type of alert (and other) logging you would like
|
| options/nixos/services.libeufin.nexus.settings.nexus-ebics.BANK_DIALECT | Name of the following combination: EBICS version and ISO20022
recommendations that Nexus would honor in the communication with the
bank
|
| options/nixos/services.reposilite.settings.defaultFrontend | Whether to enable the default included frontend with a dashboard.
|
| options/nixos/systemd.tmpfiles.settings.<config-name>.<path>.<tmpfiles-type>.user | The user of the file
|
| options/nixos/services.routinator.settings.repository-dir | The path where the collected RPKI data is stored.
|
| options/nixos/services.slskd.settings.soulseek.listen_port | The port on which to listen for incoming connections.
|
| options/nixos/services.slskd.settings.soulseek.description | The user description for the Soulseek network.
|
| options/nixos/services.warpgate.settings.mysql.certificate | Path to MySQL listener certificate.
|
| options/nixos/services.sourcehut.settings."meta.sr.ht::api".internal-ipnet | Set of IP subnets which are permitted to utilize internal API
authentication
|
| options/nixos/services.dendrite.settings.sync_api.search.enabled | Whether to enable Dendrite's full-text search engine.
|
| options/home-manager/programs.nvchecker.settings.__config__ | See https://nvchecker.readthedocs.io/en/stable/usage.html#configuration-files
|
| options/nixos/services.tor.settings.ClientDNSRejectInternalAddresses | See torrc manual.
|
| options/nixos/services.tor.settings.DormantTimeoutDisabledByIdleStreams | See torrc manual.
|
| options/nixos/services.tor.settings.DisableDebuggerAttachment | See torrc manual.
|
| options/nixos/services.oncall.settings.db.conn.require_auth | Whether authentication is required to access the web app.
|
| options/nixos/services.pid-fan-controller.settings.fans.*.heatPressureSrcs | Heat pressure sources affected by the fan.
|
| options/nixos/services.stash.settings.stash_boxes.*.endpoint | URL to the Stash Box graphql api
|
| options/nixos/services.pid-fan-controller.settings.heatSources.*.pidParams.D | K_d of PID controller.
|
| options/nixos/services.pid-fan-controller.settings.heatSources.*.pidParams.P | K_p of PID controller.
|
| options/nixos/services.pid-fan-controller.settings.heatSources.*.pidParams.I | K_i of PID controller.
|
| options/nixos/services.rosenpass.settings.peers.*.public_key | Path to a file containing the public key of the remote Rosenpass peer.
|
| options/nixos/services.syncthing.settings.options.relaysEnabled | When true, relays will be connected to and potentially used for device to device connections.
|
| options/home-manager/services.syncthing.settings.options.relaysEnabled | When true, relays will be connected to and potentially used for device to device connections.
|
| options/nixos/services.angrr.settings.temporary-root-policies.<name>.ignore-prefixes-in-home | Path prefixes to ignore under home directory
|
| options/nixos/services.wstunnel.servers.<name>.settings.restrict-to | Restrictions on the connections that the server will accept
|
| options/nixos/services.crowdsec.settings.capi.credentialsFile | The CAPI credential file to use.
|
| options/nixos/services.crowdsec.settings.lapi.credentialsFile | The LAPI credential file to use.
|
| options/nixos/services.grafana.settings.smtp.from_address | Address used when sending out emails.
|
| options/nixos/services.sourcehut.settings."builds.sr.ht::worker".bind-address | HTTP bind address for serving local build information/monitoring.
|
| options/nixos/services.transmission.settings.umask | Sets transmission's file mode creation mask
|
| options/nixos/services.suricata.settings.vars.address-groups.MODBUS_SERVER | MODBUS_SERVER variable.
|
| options/nixos/services.suricata.settings.vars.address-groups.MODBUS_CLIENT | MODBUS_CLIENT variable
|
| options/nixos/services.taler.exchange.settings.exchange.CURRENCY | The currency which the exchange will operate with
|
| options/nixos/services.zeronsd.servedNetworks.<name>.settings.wildcard | Whether to serve a wildcard record for ZeroTier Nodes.
|