| options/nixos/services.xtreemfs.osd.extraConfig | Configuration of XtreemFS OSD service
|
| options/nixos/services.xtreemfs.mrc.extraConfig | Configuration of XtreemFS MRC service
|
| options/nixos/services.couchdb.extraConfigFiles | Extra configuration files
|
| options/nixos/services.nextcloud.config.objectstore.s3.region | Required for some non-Amazon implementations.
|
| options/nixos/services.scollector.bosunHost | Host and port of the bosun server that will store the collected
data.
|
| options/nixos/services.tahoe.nodes.<name>.client.shares.total | The number of shares required to store a file.
|
| options/nixos/services.gokapi.settingsFile | Path to config file to parse and append to settings
|
| options/home-manager/programs.rclone.remotes.<name>.config | Regular configuration options as described in rclone's documentation
https://rclone.org/docs/
|
| options/nixos/services.mautrix-meta.instances.<name>.environmentFile | File containing environment variables to substitute when copying the configuration
out of Nix store to the services.mautrix-meta.dataDir
|
| options/nixos/services.stalwart.settings | Configuration options for the Stalwart server
|
| options/nixos/services.icecream.daemon.cacheLimit | Maximum size in Megabytes of cache used to store compile environments of compile clients.
|
| options/nixos/services.godns.loadCredential | This can be used to pass secrets to the systemd service without adding
them to the nix store.
|
| options/nixos/services.tahoe.nodes.<name>.client.shares.happy | The number of distinct storage nodes required to store
a file.
|
| options/nixos/services.fider.database.url | URI to use for the main PostgreSQL database
|
| options/nixos/services.buildbot-worker.workerPassFile | File used to store the Buildbot Worker password
|
| options/nixos/services.fedimintd.<name>.dataDir | Path to the data dir fedimintd will use to store its data
|
| options/nixos/networking.wg-quick.interfaces.<name>.peers.*.presharedKey | Base64 preshared key generated by wg genpsk
|
| options/nixos/services.warpgate.settings.ssh.keys | Path to store SSH host & client keys.
|
| options/nixos/services.gammu-smsd.backend.sql.database | Database name to store sms data
|
| options/nixos/services.immich.secretsFile | Path of a file with extra environment variables to be loaded from disk
|
| options/nixos/services.readarr.settings | Attribute set of arbitrary config options
|
| options/nixos/services.prometheus.exporters.pve.environmentFile | Path to the service's environment file
|
| options/nixos/services.nextcloud.config.objectstore.s3.secretFile | The full path to a file that contains the access secret.
|
| options/home-manager/programs.opencode.skills | Custom agent skills for opencode
|
| options/nixos/services.netbird.clients.<name>.dir.state | A state directory used by NetBird client to store config.json, state.json & resolv.conf.
|
| options/nixos/services.netbird.tunnels.<name>.dir.state | A state directory used by NetBird client to store config.json, state.json & resolv.conf.
|
| options/nixos/services.hadoop.hdfs.datanode.dataDirs.*.path | Determines where on the local filesystem a data node should store its blocks.
|
| options/nixos/boot.loader.grub.users.<name>.hashedPassword | Specifies the password hash for the account,
generated with grub-mkpasswd-pbkdf2
|
| options/nixos/security.dhparams.params.<name>.path | The resulting path of the generated Diffie-Hellman parameters
file for other services to reference
|
| options/nixos/services.prometheus.stateDir | Directory below /var/lib to store Prometheus metrics data
|
| options/nixos/services.sourcehut.builds.images | Images for builds.sr.ht
|
| options/darwin/homebrew.enable | Whether to enable nix-darwin to manage installing/updating/upgrading Homebrew taps, formulae,
casks, Mac App Store apps, Visual Studio Code extensions, Go packages, and Cargo
crates using Homebrew Bundle
|
| options/nixos/services.powerdns.secretFile | Environment variables from this file will be interpolated into the
final config file using envsubst with this syntax: $ENVIRONMENT
or ${VARIABLE}
|
| options/nixos/services.ncps.upstream.publicKeys | A list of public keys of upstream caches in the format
host[-[0-9]*]:public-key
|
| options/nixos/services.borgbackup.repos.<name>.path | Where to store the backups
|
| options/nixos/services.olivetin.extraConfigFiles | Config files to merge into the settings defined in services.olivetin.settings
|
| options/nixos/fileSystems.<name>.neededForBoot | If set, this file system will be mounted in the initial ramdisk
|
| options/nixos/services.stalwart-mail.settings | Configuration options for the Stalwart email server
|
| options/nixos/services.minidlna.settings.db_dir | Specify the directory to store database and album art cache.
|
| options/nixos/services.nextcloud.config.objectstore.s3.hostname | Required for some non-Amazon implementations.
|
| options/nixos/services.kubernetes.secretsPath | Default location for kubernetes secrets
|
| options/nixos/services.firezone.relay.tokenFile | A file containing the firezone relay token
|
| options/nixos/services.nextcloud.config.objectstore.s3.usePathStyle | Required for some non-Amazon S3 implementations
|
| options/nixos/services.weblate.djangoSecretKeyFile | Location of the Django secret key
|
| options/nixos/services.longview.mysqlPassword | The password corresponding to mysqlUser
|
| options/home-manager/accounts.email.accounts.<name>.mbsync.remove | Propagate mailbox deletions to the given mail store.
|
| options/nixos/services.prowlarr.settings | Attribute set of arbitrary config options
|
| options/nixos/services.whisparr.settings | Attribute set of arbitrary config options
|
| options/nixos/services.usbguard.restoreControllerDeviceState | The USBGuard daemon modifies some attributes of controller
devices like the default authorization state of new child device
instances
|
| options/darwin/security.sandbox.profiles.<name>.closure | List of store paths to make accessible.
|
| options/nixos/services.quake3-server.baseq3 | Path to the baseq3 files (pak*.pk3)
|
| options/nixos/services.pds.settings.PDS_DATA_DIRECTORY | Directory to store state
|
| options/nixos/services.pyload.downloadDirectory | Directory to store downloads.
|
| options/nixos/services.nextcloud.config.objectstore.s3.enable | Whether to enable S3 object storage as primary storage
|
| options/nixos/security.apparmor.enableCache | Whether to enable caching of AppArmor policies
in /var/cache/apparmor/
|
| options/home-manager/accounts.email.accounts.<name>.mbsync.create | Automatically create missing mailboxes within the
given mail store.
|
| options/nixos/services.searx.settingsFile | The path of the Searx server settings.yml file
|
| options/nixos/services.cassandra.jmxRoles | Roles that are allowed to access the JMX (e.g. nodetool)
BEWARE: The passwords will be stored world readable in the nix store
|
| options/nixos/services.outline.databaseUrl | URI to use for the main PostgreSQL database
|
| options/nixos/services.cross-seed.settings.torrentDir | Directory containing torrent files, or if you're using a torrent
client integration and injection - your torrent client's .torrent
file store/cache.
|
| options/nixos/services.moodle.initialPassword | Specifies the initial password for the admin, i.e. the password assigned if the user does not already exist
|
| options/nixos/services.graylog.messageJournalDir | The directory which will be used to store the message journal
|
| options/nixos/boot.initrd.systemd.suppressedStorePaths | Store paths specified in the storePaths option that
should not be copied.
|
| options/home-manager/targets.genericLinux.gpu.nvidia.sha256 | The hash of the downloaded driver file
|
| options/nixos/services.zitadel.settings.TLS.Key | The TLS certificate private key, as a base64-encoded string
|
| options/nixos/services.zitadel.settings.TLS.Cert | The TLS certificate, as a base64-encoded string
|
| options/nixos/services.k3s.autoDeployCharts.<name>.values | Override default chart values via Nix expressions
|
| options/home-manager/specialisation | A set of named specialized configurations
|
| options/nixos/services.postfix.masterConfig.<name>.chroot | Whether the service is chrooted to have only access to the
services.postfix.queueDir and the closure of
store paths specified by the program option.
|
| options/nixos/services.homebridge.userStoragePath | Path to store homebridge user files (needs to be writeable).
|
| options/nixos/services.tor.relay.onionServices.<name>.path | Path where to store the data files of the hidden service
|
| options/nixos/networking.wireguard.interfaces.<name>.peers.*.presharedKey | Base64 preshared key generated by wg genpsk
|
| options/nixos/services.nextcloud.autoUpdateApps.enable | Run a regular auto-update of all apps installed from the Nextcloud app store.
|
| options/nixos/services.nextcloud.config.objectstore.s3.sseCKeyFile | If provided this is the full path to a file that contains the key
to enable [server-side encryption with customer-provided keys][1]
(SSE-C)
|
| options/nixos/services.ncps.cache.upstream.publicKeys | A list of public keys of upstream caches in the format
host[-[0-9]*]:public-key
|
| options/nixos/services.draupnir.settings.dataPath | The path Draupnir will store its state/data in.
This option is read-only.
If you want to customize where this data is stored, use a bind mount.
|
| options/nixos/services.biboumi.settings.db_name | The name of the database to use
|
| options/nixos/services.thanos.downsample.enable | Whether to enable the Thanos downsampler which continuously downsamples blocks in an object store bucket.
|
| options/nixos/services.journalbeat.stateDir | Directory below /var/lib/ to store journalbeat's
own logs and other data
|
| options/nixos/services.artalk.settings | The artalk configuration
|
| options/nixos/services.rke2.autoDeployCharts.<name>.values | Override default chart values via Nix expressions
|
| options/nixos/services.redis.servers.<name>.masterAuth | If the master is password protected (using the requirePass configuration)
it is possible to tell the slave to authenticate before starting the replication synchronization
process, otherwise the master will refuse the slave request.
(STORED PLAIN TEXT, WORLD-READABLE IN NIX STORE)
|
| options/nixos/services.gitlab.secrets.dbFile | A file containing the secret used to encrypt variables in
the DB
|
| options/nixos/services.gitlab.secrets.jwsFile | A file containing the secret used to encrypt session
keys
|
| options/nixos/services.buildkite-agents.<name>.tokenPath | The token from your Buildkite "Agents" page
|
| options/darwin/services.buildkite-agents.<name>.tokenPath | The token from your Buildkite "Agents" page
|
| options/nixos/services.healthchecks.settings | Environment variables which are read by healthchecks (local)_settings.py
|
| options/nixos/services.zitadel.extraSettingsPaths | A list of paths to extra settings files
|
| options/home-manager/accounts.email.accounts.<name>.mbsync.expunge | Permanently remove messages marked for deletion from
the given mail store.
|
| options/nixos/services.zwave-js.settings | Configuration settings for the generated config file
|
| options/nixos/services.moodle.virtualHost.documentRoot | The path of Apache's document root directory
|
| options/nixos/services.nagios.virtualHost.documentRoot | The path of Apache's document root directory
|
| options/nixos/services.thanos.rule.tracing.config | Tracing configuration
|
| options/nixos/services.firezone.gateway.tokenFile | A file containing the firezone gateway token
|
| options/nixos/services.jenkins.jobBuilder.accessToken | User token in Jenkins used to reload config
|
| options/nixos/services.bepasty.servers.<name>.secretKey | server secret for safe session cookies, must be set
|
| options/nixos/services.healthchecks.settingsFile | Environment variables which are read by healthchecks (local)_settings.py
|
| options/nixos/boot.loader.generationsDir.copyKernels | Whether to copy the necessary boot files into /boot, so
/nix/store is not needed by the boot loader.
|
| options/nixos/services.gitlab.secrets.otpFile | A file containing the secret used to encrypt secrets for OTP
tokens
|
| options/nixos/virtualisation.docker.daemon.settings.live-restore | Allow dockerd to be restarted without affecting running container
|