| options/nixos/services.slurm.server.enable | Whether to enable the slurm control daemon
|
| options/nixos/services.outline.storage.uploadBucketName | Name of the bucket where uploads should be stored.
|
| options/nixos/services.prometheus.exporters.dnsmasq.listenAddress | Address to listen on.
|
| options/nixos/services.nominatim.database.superUser | Postgresql database superuser used to create Nominatim database and
import data
|
| options/nixos/services.unpoller.loki.pass | Path of a file containing the password for Loki
|
| options/nixos/services.unpoller.loki.timeout | Should be increased in case of timeout errors.
|
| options/nixos/services.prosody.muc.*.moderation | Allow rooms to be moderated
|
| options/nixos/services.tt-rss.auth.autoCreate | Allow authentication modules to auto-create users in tt-rss internal
database when authenticated successfully.
|
| options/nixos/services.silverbullet.enable | Whether to enable Silverbullet, an open-source, self-hosted, offline-capable Personal Knowledge Management (PKM) web application.
|
| options/nixos/services.taler.merchant.settings.merchant.DB | Plugin to use for the database.
|
| options/nixos/services.livebook.package | The livebook package to use.
|
| options/nixos/services.strongswan-swanctl.swanctl.secrets.ppk.<name>.id | PPK identity the PPK belongs to
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.remote_ts | List of remote selectors to include in CHILD_SA
|
| options/nixos/services.thanos.rule.objstore.config | Object store configuration
|
| options/nixos/services.meme-bingo-web.enable | Whether to enable a web app for the meme bingo, rendered entirely on the web server and made interactive with forms
|
| options/nixos/services.prowlarr.settings.log.analyticsEnabled | Send Anonymous Usage Data
|
| options/nixos/services.tor.settings.BridgeAuthoritativeDir | See torrc manual.
|
| options/nixos/services.tor.relay.onionServices.<name>.settings.HiddenServiceNumIntroductionPoints | See torrc manual.
|
| options/nixos/services.reaction.stopForFirewall | Whether to stop reaction when reloading the firewall
|
| options/nixos/services.prosody.muc.*.roomDefaultHistoryLength | Number of history message sent to participants by default.
|
| options/nixos/services.radicle.ci.broker.settings.triggers.*.filters | Trigger filter.
|
| options/nixos/services.samba.usershares.group | Name of the group members of which will be allowed to create usershares
|
| options/nixos/services.locate.enable | If enabled, NixOS will periodically update the database of
files used by the locate command.
|
| options/nixos/services.mongodb.package | The mongodb package to use.
|
| options/nixos/services.slskd.nginx.acmeFallbackHost | Host which to proxy requests to if ACME challenge is not found
|
| options/nixos/services.openiscsi.name | Name of this iscsi initiator
|
| options/nixos/services.nextcloud.config.dbtableprefix | Table prefix in Nextcloud's database.
Note: since Nextcloud 20 it's not an option anymore to create a database
schema with a custom table prefix
|
| options/nixos/services.printing.cups-pdf.instances | Permits to raise one or more cups-pdf instances
|
| options/nixos/services.openvpn.servers.<name>.autoStart | Whether this OpenVPN instance should be started automatically.
|
| options/nixos/services.monica.nginx.quic | Whether to enable the QUIC transport protocol
|
| options/nixos/services.pixelfed.nginx.sslCertificate | Path to server SSL certificate.
|
| options/nixos/services.prometheus.exporters.restic.refreshInterval | Refresh interval for the metrics in seconds
|
| options/nixos/services.matrix-conduit.settings.global.port | The port Conduit will be running on
|
| options/nixos/services.orangefs.server.extraConfig | Extra config for the global section.
|
| options/nixos/services.torque.mom.serverNode | Hostname running pbs server.
|
| options/nixos/services.nostr-rs-relay.dataDir | Directory for SQLite files.
|
| options/nixos/services.sympa.settingsFile.<name>.source | Path of the source file.
|
| options/nixos/services.reposilite.settings.bypassExternalCache | Add cache bypass headers to responses from /api/* to avoid issues with proxies such as Cloudflare.
|
| options/nixos/services.syncplay.package | The syncplay-nogui package to use.
|
| options/nixos/services.surrealdb.extraFlags | Specify a list of additional command line flags.
|
| options/nixos/services.prosody.xmppComplianceSuite | The XEP-0423 defines a set of recommended XEPs to implement
for a server
|
| options/nixos/services.prometheus.exporters.smokeping.user | User name under which the smokeping exporter shall be run.
|
| options/nixos/services.thanos.query.web.external-prefix | Static prefix for all HTML links and redirect URLs in the UI query web
interface
|
| options/nixos/services.mjpg-streamer.inputPlugin | Input plugin
|
| options/nixos/services.suricata.settings.plugins | Plugins -- Experimental -- specify the filename for each plugin shared object.
|
| options/nixos/services.thanos.receive.grpc-server-tls-key | TLS Key for the gRPC server, leave blank to disable TLS
|
| options/nixos/services.prometheus.exporters.klipper.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.klipper.openFirewall is true.
|
| options/nixos/services.syncthing.relay.pools | Relay pools to join
|
| options/nixos/services.nvme-rs.settings.thresholds.wear_warning | Wear warning threshold (%)
|
| options/nixos/services.prometheus.exporters.artifactory.artiUsername | Username for authentication against JFrog Artifactory API.
|
| options/nixos/services.limesurvey.config | LimeSurvey configuration
|
| options/nixos/services.limesurvey.nginx.virtualHost.root | The path of the web root directory.
|
| options/nixos/services.thelounge.public | Make your The Lounge instance public
|
| options/nixos/services.prometheus.scrapeConfigs.*.consul_sd_configs.*.oauth2.client_secret | OAuth client secret.
|
| options/nixos/services.sftpgo.settings.sftpd.bindings.*.address | Network listen address
|
| options/nixos/services.tcsd.firmwarePCRs | PCR indices used in the TPM for firmware measurements.
|
| options/nixos/services.litellm.environment | Extra environment variables for LiteLLM.
|
| options/nixos/services.quicktun.<name>.tunMode | Whether to operate in tun (IP) or tap (Ethernet) mode.
|
| options/nixos/services.ncps.cache.upstream.dialerTimeout | Timeout for establishing TCP connections to upstream caches (e.g., 3s, 5s, 10s).
|
| options/nixos/services.prometheus.scrapeConfigs.*.docker_sd_configs.*.refresh_interval | The time after which the containers are refreshed
|
| options/nixos/services.skydns.etcd.caCert | Skydns path of TLS certificate authority public key.
|
| options/nixos/services.monado.forceDefaultRuntime | Whether to ensure that Monado is the active runtime set for the current
user
|
| options/nixos/services.prometheus.exporters.smartctl.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.smartctl.openFirewall is true.
|
| options/nixos/services.matrix-continuwuity.settings.global.max_request_size | Max request size in bytes
|
| options/nixos/services.prometheus.scrapeConfigs.*.consul_sd_configs.*.basic_auth | Optional HTTP basic authentication information.
|
| options/nixos/services.prometheus.scrapeConfigs.*.docker_sd_configs.*.tls_config.insecure_skip_verify | Disable validation of the server certificate.
|
| options/nixos/services.nextcloud-spreed-signaling.settings.turn.servers | A list of TURN servers to use
|
| options/nixos/services.tuptime.enable | Whether to enable the total uptime service.
|
| options/nixos/services.moodle.virtualHost.sslServerChain | Path to server SSL chain file.
|
| options/nixos/services.octoprint.stateDir | State directory of the daemon.
|
| options/nixos/services.resilio.httpLogin | HTTP web login username.
|
| options/nixos/services.rss2email.enable | Whether to enable rss2email.
|
| options/nixos/services.prometheus.exporters.unbound.unbound.certificate | Path to the Unbound control socket certificate
|
| options/nixos/services.ollama.group | Group under which to run ollama
|
| options/nixos/services.openafsClient.cellServDB.<name>.*.dnsname | DNS full-qualified domain name of a database server
|
| options/nixos/services.pgadmin.initialPasswordFile | Initial password file for the pgAdmin account
|
| options/nixos/services.slskd.nginx.sslCertificate | Path to server SSL certificate.
|
| options/nixos/services.slskd.nginx.basicAuth | Basic Auth protection for a vhost
|
| options/nixos/services.prometheus.exporters.exportarr-lidarr.openFirewall | Open port in firewall for incoming connections.
|
| options/nixos/services.smartd.autodetect | Whenever smartd should monitor all devices connected to the
machine at the time it's being started (the default)
|
| options/nixos/services.logcheck.extraRulesDirs | Directories with extra rules.
|
| options/nixos/services.portunus.ldap.package | The openldap package to use.
|
| options/nixos/services.litestream.environmentFile | Environment file as defined in systemd.exec(5)
|
| options/nixos/services.pixelfed.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| options/nixos/services.sanoid.templates | Templates for datasets.
|
| options/nixos/services.nextcloud.settings.overwriteprotocol | Force Nextcloud to always use HTTP or HTTPS i.e. for link generation
|
| options/nixos/services.snipe-it.nginx.http3_hq | Whether to enable the HTTP/0.9 protocol negotiation used in QUIC interoperability tests
|
| options/nixos/services.munin-node.extraAutoPlugins | Additional Munin plugins to autoconfigure, using
munin-node-configure --suggest
|
| options/nixos/services.prometheus.exporters.nut.extraFlags | Extra commandline options to pass to the nut exporter.
|
| options/nixos/services.thanos.rule.stateDir | Data directory relative to /var/lib.
|
| options/nixos/services.overseerr.package | The overseerr package to use.
|
| options/nixos/services.prometheus.exporters.graphite.firewallFilter | Specify a filter for iptables to use when
services.prometheus.exporters.graphite.openFirewall
is true
|
| options/nixos/services.nixops-dns.domain | Fake domain name to resolve to NixOps virtual machines
|
| options/nixos/services.tailscale.extraUpFlags | Extra flags to pass to tailscale up
|
| options/nixos/services.lldap.database.createLocally | Create the database and database user locally.
|
| options/nixos/services.prometheus.exporters.systemd.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.systemd.openFirewall is true.
|
| options/nixos/services.mailman.ldap.bindPasswordFile | Path to the file containing the bind password of the service account
defined by services.mailman.ldap.bindDn.
|
| options/nixos/services.prometheus.remoteWrite.*.tls_config.ca_file | CA certificate to validate API server certificate with.
|
| options/nixos/services.openiscsi.extraConfig | Lines to append to default iscsid.conf
|
| options/nixos/services.lighthouse.validator.extraArgs | Additional arguments passed to the lighthouse validator command.
|