| options/nixos/services.orangefs.server.extraDefaults | Extra config for <Defaults> section.
|
| options/nixos/services.prometheus.exporters.unbound.group | Group under which the unbound exporter shall be run.
|
| options/nixos/services.prometheus.remoteWrite.*.bearer_token_file | Sets the Authorization header on every remote write request with the bearer token
read from the configured file
|
| options/nixos/services.thanos.receive.objstore.config-file | Path to YAML file that contains object store configuration
|
| options/nixos/services.suricata.settings.vars.address-groups.MODBUS_SERVER | MODBUS_SERVER variable.
|
| options/nixos/services.pantalaimon-headless.instances.<name>.listenAddress | The address where the daemon will listen to client connections
for this homeserver.
|
| options/nixos/services.prometheus.exporters.ipmi.webConfigFile | Path to configuration file that can enable TLS or authentication.
|
| options/nixos/services.stargazer.responseTimeout | Number of seconds to wait for the client to send a complete
request and for stargazer to finish sending the response
|
| options/nixos/services.podgrab.enable | Whether to enable Podgrab, a self-hosted podcast manager.
|
| options/nixos/services.prometheus.scrapeConfigs.*.ec2_sd_configs | List of EC2 service discovery configurations.
|
| options/nixos/services.prometheus.exporters.rspamd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.rspamd.openFirewall is true.
|
| options/nixos/services.olivetin.settings | Configuration of OliveTin
|
| options/nixos/services.movim.nginx.locations.<name>.return | Adds a return directive, for e.g. redirections.
|
| options/nixos/services.nitter.preferences.autoplayGifs | Autoplay GIFs.
|
| options/nixos/services.pipewire.extraConfig.pipewire | Additional configuration for the PipeWire server
|
| options/nixos/services.mpd.credentials.*.permissions | List of permissions that are granted with this password
|
| options/nixos/services.prometheus.scrapeConfigs.*.consul_sd_configs.*.authorization.type | Sets the authentication type
|
| options/nixos/services.prowlarr.settings.server.port | Port Number
|
| options/nixos/services.prometheus.remoteWrite.*.sigv4.access_key | The Access Key ID.
|
| options/nixos/services.rspamd.overrides.<name>.text | Text of the file.
|
| options/nixos/services.teeworlds.game.enableReadyMode | Whether to enable "ready mode"; where players can pause/unpause the game
and start the game in warmup, using their ready state.
|
| options/nixos/services.target.config | Content of /etc/target/saveconfig.json
This file is normally read and written by targetcli
|
| options/nixos/services.taskserver.listenHost | The address (IPv4, IPv6 or DNS) to listen on.
|
| options/nixos/services.mysql.galeraCluster.name | The logical name of the Galera cluster
|
| options/nixos/services.nginx.tailscaleAuth.enable | Whether to enable tailscale.nginx-auth, to authenticate nginx users via tailscale.
|
| options/nixos/services.trickster.configFile | Path to configuration file.
|
| options/nixos/services.nscd.group | User group under which nscd runs.
|
| options/nixos/services.teamspeak3.voiceIP | IP on which the server instance will listen for incoming voice connections
|
| options/nixos/services.teeworlds.server.kickInactiveSpectators | Whether to kick inactive spectators.
|
| options/nixos/services.syncoid.group | The group for the service.
|
| options/nixos/services.logrotate.settings.<name>.enable | Whether to enable setting individual kill switch.
|
| options/nixos/services.slskd.nginx.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|
| options/nixos/services.nsd.remoteControl.enable | Whether to enable remote control via nsd-control.
|
| options/nixos/services.slskd.nginx.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/services.mailhog.enable | Whether to enable MailHog, web and API based SMTP testing.
|
| options/nixos/services.mautrix-telegram.package | The mautrix-telegram package to use.
|
| options/nixos/services.tt-rss.database.host | Host of the database
|
| options/nixos/services.multipath.pathGroups | This option allows you to define multipath groups as described
in http://christophe.varoqui.free.fr/usage.html.
|
| options/nixos/services.pixelfed.database.createLocally | Whether to enable a local database using UNIX socket authentication.
|
| options/nixos/services.nginx.virtualHosts.<name>.locations.<name>.basicAuth | Basic Auth protection for a vhost
|
| options/nixos/services.prometheus.exporters.statsd.user | User name under which the statsd exporter shall be run.
|
| options/nixos/services.nginx.tailscaleAuth.socketPath | Alias of services.tailscaleAuth.socketPath.
|
| options/nixos/services.public-inbox.inboxes.<name>.watch | Paths for public-inbox-watch(1) to monitor for new mail.
|
| options/nixos/services.limesurvey.database.name | Database name.
|
| options/nixos/services.nullmailer.config.me | The fully-qualifiled host name of the computer running nullmailer
|
| options/nixos/services.prometheus.remoteWrite.*.sigv4.secret_key | The Secret Access Key.
|
| options/nixos/services.pgbackrest.commands.check | Options for the 'check' command
|
| options/nixos/services.plantuml-server.packages.jdk | The jdk package to use.
|
| options/nixos/services.ollama.home | The home directory that the ollama service is started in.
|
| options/nixos/services.sitespeed-io.runs.*.urls | URLs the service should monitor.
|
| options/nixos/services.tts.servers.<name>.model | Name of the model to download and use for speech synthesis
|
| options/nixos/services.spoolman.port | TCP port where spoolman web-gui listens.
|
| options/nixos/services.tailscale.serve.services.<name>.endpoints | Map of incoming traffic patterns to local targets
|
| options/nixos/services.llama-swap.openFirewall | Whether to open the firewall for llama-swap
|
| options/nixos/services.rss2email.feeds.<name>.to | Email address to which to send feed items
|
| options/nixos/services.prosody.virtualHosts.<name>.ssl.cert | Path to the certificate file.
|
| options/nixos/services.openafsClient.mountPoint | Mountpoint of the AFS file tree, conventionally
/afs
|
| options/nixos/services.nominatim.settings | Nominatim configuration settings
|
| options/nixos/services.pixelfed.settings | .env settings for Pixelfed
|
| options/nixos/services.syncoid.commands | Syncoid commands to run.
|
| options/nixos/services.redis.vmOverCommit | Whether to enable set vm.overcommit_memory sysctl to 1
(Suggested for Background Saving: https://redis.io/docs/get-started/faq/)
.
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.url | The full URL to Sonarr, Radarr, or Lidarr.
|
| options/nixos/services.osquery.flags | Attribute set of flag names and values to be written to the osqueryd flagfile
|
| options/nixos/services.torrentstream.package | The torrentstream package to use.
|
| options/nixos/services.prometheus.exporters.exportarr-bazarr.environment | See the configuration guide for available options.
|
| options/nixos/services.prometheus.exporters.rasdaemon.enable | Whether to enable the prometheus rasdaemon exporter.
|
| options/nixos/services.mollysocket.settings.port | Listening port of the web server
|
| options/nixos/services.tor.settings.ExitPolicyRejectLocalInterfaces | See torrc manual.
|
| options/nixos/services.toxBootstrapd.keysFile | Node key file.
|
| options/nixos/services.mastodon.secretKeyBaseFile | Path to file containing the secret key base
|
| options/nixos/services.prometheus.exporters.fritzbox.port | Port to listen on.
|
| options/nixos/services.suricata.settings.vars.address-groups.DNP3_SERVER | DNP3_SERVER variable.
|
| options/nixos/services.nsd.zones.<name>.minRetrySecs | Limit retry time for secondary zones.
|
| options/nixos/services.matrix-appservice-discord.url | The URL where the application service is listening for HS requests.
|
| options/nixos/services.prometheus.exporters.libvirt.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.libvirt.openFirewall
is true
|
| options/nixos/services.nextcloud.datadir | Nextcloud's data storage path
|
| options/nixos/services.meshtasticd.user | User meshtasticd runs as.
|
| options/nixos/services.roundcube.database.host | Host of the postgresql server
|
| options/nixos/services.nixops-dns.user | The user the nixops-dns daemon should run as
|
| options/nixos/services.syncthing.settings.folders.<name>.versioning | How to keep changed/deleted files with Syncthing
|
| options/nixos/services.prometheus.exporters.imap-mailstat.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.suricata.settings.vars.address-groups.EXTERNAL_NET | EXTERNAL_NET variable.
|
| options/nixos/services.nylon.<name>.port | What port to listen for client requests, default is 1080.
|
| options/nixos/services.szurubooru.group | Group under which Szurubooru runs.
|
| options/nixos/services.prometheus.remoteWrite.*.tls_config | Configures the remote write request's TLS settings.
|
| options/nixos/services.mailman.enablePostfix | Enable Postfix integration
|
| options/nixos/services.prometheus.exporters.deluge.exportPerTorrentMetrics | Enable per-torrent metrics
|
| options/nixos/services.thanos.downsample.log.format | Log format to use.
|
| options/nixos/services.tor.settings.ReachableORAddresses | See torrc manual.
|
| options/nixos/services.nextcloud.settings.mail_smtptimeout | This depends on mail_smtpmode
|
| options/nixos/services.openafsServer.roles.backup.fabsArgs | Arguments to the fabsys process
|
| options/nixos/services.prometheus.scrapeConfigs.*.marathon_sd_configs.*.basic_auth.password_file | HTTP password file
|
| options/nixos/services.syncthing.settings.devices | Peers/devices which Syncthing should communicate with
|
| options/nixos/services.tor.settings.ServerTransportPlugin | See torrc manual.
|
| options/nixos/services.prometheus.exporters.pve.environmentFile | Path to the service's environment file
|
| options/nixos/services.nginx.virtualHosts.<name>.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| options/nixos/services.podgrab.group | Group under which Podgrab runs, and which owns the download directory.
|
| options/nixos/services.plausible.mail.smtp.retries | Number of retries to make until mailer gives up.
|
| options/nixos/services.prometheus.package | The prometheus package to use.
|
| options/nixos/services.monica.nginx.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|