| options/nixos/services.matrix-continuwuity.settings.global.database_path | Path to the continuwuity database, the directory where continuwuity will save its data
|
| options/nixos/services.mediagoblin.settings.mediagoblin.email_debug_mode | Disable email debug mode to start sending outgoing mails
|
| options/nixos/services.grafana.provision.datasources.settings.deleteDatasources.*.orgId | Organization ID of the datasource to delete.
|
| options/nixos/services.grafana.provision.datasources.settings.datasources.*.access | Access mode. proxy or direct (Server or Browser in the UI)
|
| options/nixos/services.grafana.provision.datasources.settings.deleteDatasources.*.name | Name of the datasource to delete.
|
| options/nixos/services.dependency-track.settings."alpine.oidc.user.provisioning" | Specifies if mapped OpenID Connect accounts are automatically created upon successful
authentication
|
| options/nixos/services.headscale.settings.derp.server.private_key_path | Path to derp private key file, generated automatically if it does not exist.
|
| options/nixos/services.nextcloud.settings.mail_from_address | FROM address that overrides the built-in sharing-noreply and lostpassword-noreply FROM addresses
|
| options/nixos/services.maubot.configMutable | Whether maubot should write updated config into extraConfigFile. This will make your Nix module settings have no effect besides the initial config, as extraConfigFile takes precedence over NixOS settings!
|
| options/nixos/services.maubot.settings.plugin_directories.load | The directories from which plugins should be loaded
|
| options/nixos/services.nvme-rs.settings.check_interval_secs | Check interval in seconds
|
| options/nixos/services.public-inbox.settings.publicinboxwatch.watchspam | If set, mail in this maildir will be trained as spam and
deleted from all watched inboxes
|
| options/nixos/services.grafana.settings.security.cookie_samesite | Sets the SameSite cookie attribute and prevents the browser from sending this cookie along with cross-site requests
|
| options/nixos/services.nextcloud.settings.skeletondirectory | The directory where the skeleton files are located
|
| options/nixos/services.mobilizon.settings.":mobilizon".":instance".email_reply_to | The email for the Reply-To: header in emails
|
| options/nixos/services.undervolt.useTimer | Whether to set a timer that applies the undervolt settings every 30s
|
| options/darwin/services.aerospace.settings.enable-normalization-flatten-containers | Containers that have only one child are "flattened".
|
| options/nixos/services.postfix.settings.main.message_size_limit | Maximum size of an email message in bytes.
https://www.postfix.org/postconf.5.html#message_size_limit
|
| options/nixos/services.headscale.settings.database.sqlite.write_ahead_log | Enable WAL mode for SQLite
|
| options/nixos/services.public-inbox.settings.publicinboxwatch.spamcheck | If set to spamc, public-inbox-watch(1) will filter spam
using SpamAssassin.
|
| options/nixos/services.maubot.settings.plugin_directories.upload | The directory where uploaded new plugins should be stored.
|
| options/home-manager/accounts.email.accounts.<name>.mujmap.settings.password_command | Shell command which will print a password to stdout for basic HTTP
authentication
|
| options/nixos/services.snapserver.settings.tcp-streaming.bind_to_address | Address to listen on for snapclient connections.
|
| options/nixos/console.useXkbConfig | If set, configure the virtual console keymap from the xserver
keyboard settings.
|
| options/darwin/nix.enable | Whether to enable Nix
|
| options/nixos/security.agnos.settings.accounts.*.private_key_path | Path of the PEM-encoded private key for this account
|
| options/nixos/services.matrix-tuwunel.settings.global.unix_socket_perms | The default permissions (in octal) to create the UNIX socket with.
|
| options/nixos/services.stash.settings.preview_exclude_end | Duration of start of video to exclude when generating previews
|
| options/nixos/services.stash.settings.gallery_cover_regex | Regex used to identify images as gallery covers
|
| options/nixos/services.etebase-server.settings.allowed_hosts.allowed_host1 | The main host that is allowed access.
|
| options/nixos/services.maubot.settings.plugin_directories.trash | The directory where old plugin versions and conflicting plugins should be moved
|
| options/nixos/services.nextcloud.settings.mail_sendmailmode | For smtp, the sendmail binary is started with the parameter -bs: Use the SMTP protocol on standard input and output
|
| options/nixos/services.matrix-tuwunel.settings.global.unix_socket_path | Listen on a UNIX socket at the specified path
|
| options/nixos/services.grafana.provision.datasources.settings.datasources.*.editable | Allow users to edit datasources from the UI.
|
| options/nixos/services.warpgate.settings.ssh.inactivity_timeout | How long can user be inactive until Warpgate terminates the connection.
|
| options/nixos/services.grafana.settings.security.x_xss_protection | Set to true to enable the X-XSS-Protection header,
which tells browsers to stop pages from loading when they detect reflected cross-site scripting (XSS) attacks.
Note: this is the default in Grafana, it's turned off here
since it's recommended to not use this header anymore.
|
| options/nixos/services.sftpgo.settings.httpd.bindings.*.enable_web_client | Enable the built-in web client for this interface binding.
|
| options/nixos/services.mollysocket.settings.allowed_endpoints | List of UnifiedPush servers
|
| options/nixos/services.system76-scheduler.settings.processScheduler.pipewireBoost.profile.matchers | Process matchers.
|
| options/home-manager/programs.gcc.colors | Settings for GCC_COLORS
|
| options/nixos/services.searx.faviconsSettings | Favicons settings for SearXNG.
|
| options/nixos/services.firezone.server.settingsSecret.COOKIE_ENCRYPTION_SALT | A file containing a unique base64 encoded secret for the
COOKIE_ENCRYPTION_SALT
|
| options/nixos/services.mobilizon.settings.":mobilizon"."Mobilizon.Storage.Repo".socket_dir | Path to the postgres socket directory
|
| options/nixos/services.prometheus.exporters.fritz.settings.devices.*.password_file | Path to a file which contains the password to authenticate with the target device
|
| options/nixos/services.warpgate.settings.ssh.keepalive_interval | If nothing is received from the client for this amount of time, server will send a keepalive message.
|
| options/nixos/services.stash.settings.sequential_scanning | Modifies behaviour of the scanning functionality to generate support files (previews/sprites/phash) at the same time as fingerprinting/screenshotting
|
| options/nixos/services.nextcloud.settings.overwriteprotocol | Force Nextcloud to always use HTTP or HTTPS i.e. for link generation
|
| options/nixos/services.prometheus.alertmanager-ntfy.settings.ntfy.notification.tags | Tags to add to ntfy.sh messages
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.enable | Boost foreground process priorities.
(And de-boost background ones)
|
| options/nixos/services.listmonk.database.settings."privacy.domain_blocklist" | E-mail addresses with these domains are disallowed from subscribing.
|
| options/nixos/services.matrix-synapse.settings.turn_shared_secret | The shared secret used to compute passwords for the TURN server
|
| options/nixos/services.system76-scheduler.settings.cfsProfiles.responsive.wakeup-granularity | sched_wakeup_granularity_ns.
|
| options/nixos/services.dendrite.settings.mscs.database.connection_string | Database for exerimental MSC's.
|
| options/nixos/services.borgmatic.settings.source_directories | List of source directories and files to backup
|
| options/nixos/services.prometheus.alertmanager-ntfy.settings.ntfy.notification.tags.*.tag | The tag to add
|
| options/nixos/services.grafana.settings.database.conn_max_lifetime | Sets the maximum amount of time a connection may be reused
|
| options/nixos/services.grafana.settings.users.auto_assign_org_id | Set this value to automatically add new users to the provided org
|
| options/home-manager/programs.lutris.runners.<name>.settings.runner.runner_executable | Specific option to point to a runner executable directly, don't set runner.package if you set this
|
| options/nixos/services.doh-server.settings.ecs_use_precise_ip | If ECS is added to the request, let the full IP address or cap it to 24 or 128 mask
|
| options/nixos/services.headscale.settings.oidc.strip_email_domain | Whether the domain part of the email address should be removed when generating namespaces.
|
| options/nixos/services.crab-hole.settings.blocklist.include_subdomains | Whether to enable Include subdomains.
|
| options/nixos/services.xray.enable | Whether to run xray server
|
| options/home-manager/programs.grep.colors | Settings for GREP_COLORS
|
| options/home-manager/programs.khal.locale | khal locale settings.
|
| options/nixos/services.livekit.ingress.settings.rtc_config.use_external_ip | When set to true, attempts to discover the host's public IP via STUN
|
| options/nixos/services.headscale.settings.oidc.client_secret_path | Path to OpenID Connect client secret file
|
| options/nixos/services.matrix-conduit.settings.global.allow_registration | Whether new users can register on this server.
|
| options/nixos/services.nextcloud-spreed-signaling.settings.clients.internalsecretFile | The path to the file containing the value for clients.internalsecret
|
| options/nixos/services.livekit.ingress.settings.rtc_config.port_range_start | Start of UDP port range for WebRTC
|
| options/nixos/services.warpgate.settings.http.sni_certificates.*.certificate | Path to certificate.
|
| options/nixos/services.grafana.provision.datasources.settings.datasources.*.secureJsonData | Datasource specific secure configuration
|
| options/nixos/services.lldap.settings.ldap_user_pass_file | Path to a file containing the default admin password
|
| options/nixos/virtualisation.xen.store.settings.conflict.rateLimitIsAggregate | If the conflict.rateLimitIsAggregate option is true, then after each
tick one point of conflict-credit is given to just one domain: the
one at the front of the queue
|
| options/nixos/services.matrix-synapse.settings.enable_registration | Enable registration for new users.
|
| options/nixos/services.libeufin.bank.settings.libeufin-bank.SUGGESTED_WITHDRAWAL_EXCHANGE | Exchange that is suggested to wallets when withdrawing
|
| options/nixos/services.matrix-synapse.settings.trusted_key_servers | The trusted servers to download signing keys from.
|
| options/nixos/services.matrix-synapse.settings.dynamic_thumbnails | Whether to generate new thumbnails on the fly to precisely match
the resolution requested by the client
|
| options/nixos/services.acme-dns.settings.api.disable_registration | Whether to disable the HTTP registration endpoint.
|
| options/nixos/services.postfix.settings.main.recipient_delimiter | Set of characters used as the delimiters for address extensions
|
| options/nixos/services.dnscrypt-proxy2.configFile | Path to TOML config file
|
| options/nixos/services.grafana.settings.analytics.reporting_enabled | When enabled Grafana will send anonymous usage statistics to stats.grafana.org
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.background.nice | Niceness.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.foreground.nice | Niceness.
|
| options/nixos/services.chhoto-url.settings.cache_control_header | The Cache-Control header to send.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.foreground.prio | CPU scheduler priority.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.background.prio | CPU scheduler priority.
|
| options/nixos/services.matrix-continuwuity.settings.global.allow_federation | Whether this server federates with other servers.
|
| options/nixos/programs.rush.global | The global statement defines global settings.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.foreground.ioPrio | IO scheduler priority.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.background.ioPrio | IO scheduler priority.
|
| options/nixos/services.pgbouncer.settings.pgbouncer.default_pool_size | How many server connections to allow per user/database pair
|
| options/nixos/security.agnos.settings.accounts.*.certificates.*.key_output_file | Output path for the certificate private key
|
| options/nixos/services.matrix-synapse.settings.url_preview_enabled | Is the preview URL API enabled? If enabled, you must specify an
explicit url_preview_ip_range_blacklist of IPs that the spider is
denied from accessing.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.foreground.class | CPU scheduler class.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.background.class | CPU scheduler class.
|
| options/nixos/services.zitadel.extraSettingsPaths | A list of paths to extra settings files
|
| options/nixos/services.matrix-continuwuity.settings.global.max_request_size | Max request size in bytes
|
| options/nixos/services.matrix-continuwuity.settings.global.trusted_servers | Servers listed here will be used to gather public keys of other servers
(notary trusted key servers)
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.background.ioClass | IO scheduler class.
|
| options/nixos/services.system76-scheduler.settings.processScheduler.foregroundBoost.foreground.ioClass | IO scheduler class.
|