| options/nixos/services.nginx.virtualHosts.<name>.listen.*.ssl | Enable SSL.
|
| options/nixos/services.postfix.settings.main.relay_domains | List of domains delivered via the relay transport.
https://www.postfix.org/postconf.5.html#relay_domains
|
| options/nixos/services.prometheus.exporters.mail.configuration.servers.*.to | Content of 'To' Header for probing mails.
|
| options/nixos/services.prometheus.remoteWrite.*.queue_config.min_backoff | Initial retry delay
|
| options/nixos/services.rathole.enable | Whether to enable Rathole.
|
| options/nixos/services.transfer-sh.package | The transfer-sh package to use.
|
| options/nixos/services.prometheus.scrapeConfigs.*.lightsail_sd_configs.*.refresh_interval | Refresh interval to re-read the instance list
|
| options/nixos/services.limesurvey.nginx.virtualHost.listen.*.port | Port number to listen on
|
| options/nixos/services.netbird.clients.<name>.dns-resolver.port | A port to serve DNS entries on when dns-resolver.address is enabled.
|
| options/nixos/services.prometheus.exporters.node-cert.excludePaths | List of paths to exclute from searching for SSL certificates.
|
| options/nixos/services.nginx.virtualHosts.<name>.acmeFallbackHost | Host which to proxy requests to if ACME challenge is not found
|
| options/nixos/services.nzbhydra2.dataDir | The directory where NZBHydra2 stores its data files.
|
| options/nixos/services.mediawiki.httpd.virtualHost.enableUserDir | Whether to enable serving ~/public_html as
/~«username».
|
| options/nixos/services.pgbouncer.settings.pgbouncer.listen_addr | Specifies a list (comma-separated) of addresses where to listen for TCP connections
|
| options/nixos/services.nifi.package | The nifi package to use.
|
| options/nixos/services.nipap.nipap-www.unixSocket | Path to UNIX socket to bind to.
|
| options/nixos/services.pghero.enable | Whether to enable PgHero service.
|
| options/nixos/services.public-inbox.inboxes.<name>.coderepo | Nicknames of a 'coderepo' section associated with the inbox.
|
| options/nixos/services.reposilite.settings.keyPassword | Plaintext password used to unlock the Java KeyStore set in services.reposilite.settings.keyPath
|
| options/nixos/services.sanoid.templates.<name>.force_post_snapshot_script | Whether to run the post script if the pre script fails
|
| options/nixos/services.prometheus.exporters.tailscale.enable | Whether to enable the prometheus tailscale exporter.
|
| options/nixos/services.nginx.virtualHosts.<name>.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| options/nixos/services.strongswan-swanctl.swanctl.secrets.ntlm | NTLM secret section for a specific secret
|
| options/nixos/services.prometheus.exporters.mqtt.user | User name under which the mqtt exporter shall be run.
|
| options/nixos/services.unifi.initialJavaHeapSize | Set the initial heap size for the JVM in MB
|
| options/nixos/services.rustdesk-server.package | The rustdesk-server package to use.
|
| options/nixos/services.samba-wsdd.openFirewall | Whether to open the required firewall ports in the firewall.
|
| options/nixos/services.mainsail.hostName | Hostname to serve mainsail on
|
| options/nixos/services.moosefs.cgiserver.settings | GUI server configuration options.
|
| options/nixos/services.prometheus.exporters.tibber.extraFlags | Extra commandline options to pass to the tibber exporter.
|
| options/nixos/services.prometheus.exporters.dmarc.enable | Whether to enable the prometheus dmarc exporter.
|
| options/nixos/services.tahoe.nodes.<name>.sftpd.port | The port on which the SFTP server will listen
|
| options/nixos/services.prometheus.exporters.pve.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.pve.openFirewall
is true
|
| options/nixos/services.strongswan-swanctl.swanctl.secrets.ike | IKE preshared secret section for a specific secret
|
| options/nixos/services.saunafs.master.exports | Paths to exports file (see sfsexports.cfg(5)).
|
| options/nixos/services.slskd.settings.global.download.slots | Limit of the number of concurrent download slots.
|
| options/nixos/services.nvme-rs.settings.thresholds.error_threshold | Error count warning threshold
|
| options/nixos/services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.refresh_interval | Refresh interval to re-read the managed targets list
|
| options/nixos/services.rsync.jobs.<name>.destination | Destination directory.
|
| options/nixos/services.strongswan-swanctl.swanctl.pools.<name>.dhcp | Address or CIDR subnets
StrongSwan default: []
|
| options/nixos/services.monado.highPriority | Whether to enable high priority capability for monado-service.
|
| options/nixos/services.mosquitto.dataDir | The data directory.
|
| options/nixos/services.parsedmarc.settings.elasticsearch.user | Username to use when connecting to Elasticsearch, if
required.
|
| options/nixos/services.pixiecore.enable | Whether to enable Pixiecore.
|
| options/nixos/services.plikd.settings | Configuration for plikd, see https://github.com/root-gg/plik/blob/master/server/plikd.cfg
for supported values.
|
| options/nixos/services.taskchampion-sync-server.host | Host address on which to serve
|
| options/nixos/services.tor.relay.onionServices.<name>.settings | Settings of the onion service
|
| options/nixos/services.prometheus.exporters.nextcloud.tokenFile | File containing the token for connecting to Nextcloud
|
| options/nixos/services.tor.enable | Whether to enable Tor daemon
|
| options/nixos/services.tor.relay.onionServices.<name>.settings.HiddenServiceSingleHopMode | See torrc manual.
|
| options/nixos/services.prometheus.exporters.mail.extraFlags | Extra commandline options to pass to the mail exporter.
|
| options/nixos/services.prometheus.scrapeConfigs.*.marathon_sd_configs.*.authorization.credentials_file | Sets the credentials to the credentials read from the configured file
|
| options/nixos/services.prometheus.scrapeConfigs.*.metric_relabel_configs.*.action | Action to perform based on regex matching
|
| options/nixos/services.tahoe.nodes.<name>.client.shares.needed | The number of shares required to reconstitute a file.
|
| options/nixos/services.owncast.rtmp-port | TCP port where owncast rtmp service listens.
|
| options/nixos/services.prometheus.exporters.fritzbox.enable | Whether to enable the prometheus fritzbox exporter.
|
| options/nixos/services.prometheus.exporters.nginxlog.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.prometheus.exporters.process.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.process.openFirewall is true.
|
| options/nixos/services.thanos.compact.log.level | Log filtering level
|
| options/nixos/services.onlyoffice.jwtSecretFile | Path to a file that contains the secret to sign web requests using JSON Web Tokens
|
| options/nixos/services.prometheus.exporters.pve.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.pretalx.settings.filesystem.logs | Path to the log directory, that pretalx logs message to.
|
| options/nixos/services.netbird.clients.<name>.dir.runtime | A runtime directory used by NetBird client.
|
| options/nixos/services.netdata.config | netdata.conf configuration as nix attributes. cannot be combined with configText.
|
| options/nixos/services.public-inbox.postfix.enable | Whether to enable the integration into Postfix.
|
| options/nixos/services.networking.websockify.sslCert | Path to the SSL certificate.
|
| options/nixos/services.szurubooru.server.settings.smtp.host | Host of the SMTP server used to send reset password.
|
| options/nixos/services.nginx.virtualHosts.<name>.locations.<name>.recommendedUwsgiSettings | Enable recommended uwsgi settings.
|
| options/nixos/services.send.redis.createLocally | Whether to create a local redis automatically.
|
| options/nixos/services.marytts.basePath | The base path in which MaryTTS runs.
|
| options/nixos/services.movim.h2o.tls | TLS options for virtual host
|
| options/nixos/services.prometheus.exporters.v2ray.extraFlags | Extra commandline options to pass to the v2ray exporter.
|
| options/nixos/services.movim.podConfig.info | Content of the info box on the login page
|
| options/nixos/services.netbird.server.enableNginx | Whether to enable Nginx reverse-proxy for the netbird server services.
|
| options/nixos/services.physlock.enable | Whether to enable the physlock screen locking mechanism
|
| options/nixos/services.prometheus.exporters.bird.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.bird.openFirewall is true.
|
| options/nixos/services.photonvision.openFirewall | Whether to open the required ports in the firewall.
|
| options/nixos/services.pdfding.database.port | PostgreSQL port
|
| options/nixos/services.nginx.virtualHosts.<name>.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| options/nixos/services.pdnsd.extraConfig | Extra configuration directives that should be added to
pdnsd.conf.
|
| options/nixos/services.photoprism.databasePasswordFile | Database password file.
|
| options/nixos/services.openafsServer.roles.database.vlserverArgs | Arguments to the vlserver process
|
| options/nixos/services.omnom.passwordFile | File containing the password for the SMTP user.
|
| options/nixos/services.reposilite.database.passwordFile | Path to the file containing the password for the database connection
|
| options/nixos/services.oncall.package | The oncall package to use.
|
| options/nixos/services.smartd.devices | List of devices to monitor.
|
| options/nixos/services.radarr.settings.update.mechanism | which update mechanism to use
|
| options/nixos/services.prosody.httpFileShare.daily_quota | Maximum size of daily uploaded files per user, in bytes.
|
| options/nixos/services.tandoor-recipes.database.createLocally | Configure local PostgreSQL database server for Tandoor Recipes.
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.vips | List of virtual IPs to request in IKEv2 configuration payloads or IKEv1
Mode Config
|
| options/nixos/services.mailman.ldap.groupSearch.query | Query to find a group associated to a user in the LDAP database.
|
| options/nixos/services.mastodon.activeRecordEncryptionPrimaryKeyFile | This key must be set to enable the Active Record Encryption feature within
Rails that Mastodon uses to encrypt and decrypt some database attributes
|
| options/nixos/services.matterbridge.configFile | WARNING: THIS IS INSECURE, as your password will end up in
/nix/store, thus publicly readable
|
| options/nixos/services.nexus.group | Group which runs Nexus3.
|
| options/nixos/services.snapper.snapshotInterval | Snapshot interval
|
| options/nixos/services.pixelfed.nginx.serverName | Name of this virtual host
|
| options/nixos/services.nats.port | Port on which to listen.
|
| options/nixos/services.prometheus.exporters.tibber.port | Port to listen on.
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.esp_proposals | ESP proposals to offer for the CHILD_SA
|
| options/nixos/services.prometheus.alertmanager-ntfy.settings.ntfy.baseurl | The base URL of the ntfy.sh instance.
|