| options/nixos/services.netbird.server.management.settings | Configuration of the netbird management server
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| options/nixos/services.keycloak.database.type | The type of database Keycloak should connect to.
|
| options/nixos/boot.initrd.luks.devices.<name>.yubikey.twoFactor | Whether to use a passphrase and a YubiKey (true), or only a YubiKey (false).
|
| options/nixos/services.arsenik.mac | Original key arrangement on your keyboard: Mac or PC.
|
| options/darwin/launchd.daemons.<name>.serviceConfig.Disabled | This optional key is used as a hint to launchctl(1) that it should not submit this job to launchd when
loading a job or jobs
|
| options/nixos/services.gnome.gnome-keyring.enable | Whether to enable GNOME Keyring daemon, a service designed to
take care of the user's security credentials,
such as user names and passwords
.
|
| options/home-manager/services.polybar.settings | Polybar configuration
|
| options/darwin/launchd.agents.<name>.serviceConfig.OnDemand | This key was used in Mac OS X 10.4 to control whether a job was kept alive or not
|
| options/nixos/services.misskey.reverseProxy.webserver.caddy.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/services.logind.powerKey | Specifies what to do when the power key is pressed.
|
| options/darwin/launchd.daemons.<name>.serviceConfig.GroupName | This optional key specifies the group to run the job as
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| options/nixos/services.vault.tlsKeyFile | TLS private key file
|
| options/darwin/launchd.user.agents.<name>.serviceConfig.ServiceIPC | This optional key specifies whether the job participates in advanced
communication with launchd
|
| options/nixos/services.coturn.dh-file | Use custom DH TLS key, stored in PEM format in the file.
|
| options/nixos/services.warpgate.settings.ssh.host_key_verification | Specify host key verification action when connecting to a SSH target with unknown/differing host key.
|
| options/nixos/hardware.keyboard.uhk.enable | Whether to enable non-root access to the firmware of UHK keyboards
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.rejectSSL | Whether to listen for and reject all HTTPS connections to this vhost
|
| options/nixos/programs.yubikey-manager.package | The yubikey-manager package to use.
|
| options/nixos/programs.fzf.keybindings | Whether to enable fzf keybindings.
|
| options/nixos/services.kmonad.keyboards.<name>.name | Keyboard name.
|
| options/nixos/i18n.extraLocaleSettings | A set of additional system-wide locale settings other than LANG
which can be configured with i18n.defaultLocale
|
| options/darwin/launchd.agents.<name>.serviceConfig.LaunchOnlyOnce | This optional key specifies whether the job can only be run once and only once
|
| options/nixos/services.journald.remote.settings.Remote.ServerKeyFile | A path to a SSL secret key file in PEM format
|
| options/nixos/services.printing.cups-pdf.instances.<name>.settings | Settings for a cups-pdf instance, see the descriptions in the template config file in the cups-pdf package
|
| options/nixos/services.dysnomia.components | An attribute set in which each key represents a container and each value an attribute set in which each key represents a component and each value a derivation constructing its initial state
|
| options/nixos/services.keycloak.database.port | Port of the database to connect to.
|
| options/nixos/boot.initrd.luks.devices.<name>.yubikey.saltLength | Length of the new salt in byte (64 is the effective maximum).
|
| options/nixos/services.nsd.remoteControl.serverKeyFile | Path to the server private key, which is used by the server
but not by nsd-control
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| options/nixos/services.immichframe.settings.Accounts.*.ApiKeyFile | File containing an API key to talk to the Immich server
|
| options/nixos/services.kubernetes.apiserver.proxyClientKeyFile | Key to use for connections to proxy.
|
| options/nixos/services.xserver.autoRepeatDelay | Sets the autorepeat delay (length of time in milliseconds that a key must be depressed before autorepeat starts).
|
| options/darwin/launchd.daemons.<name>.serviceConfig.ServiceIPC | This optional key specifies whether the job participates in advanced
communication with launchd
|
| options/nixos/services.matrix-tuwunel.settings.global.trusted_servers | Servers listed here will be used to gather public keys of other servers
(notary trusted key servers)
|
| options/darwin/launchd.user.agents.<name>.serviceConfig.OnDemand | This key was used in Mac OS X 10.4 to control whether a job was kept alive or not
|
| options/nixos/boot.initrd.luks.devices.<name>.yubikey.gracePeriod | Time in seconds to wait for the YubiKey.
|
| options/nixos/services.skydns.etcd.tlsPem | Skydns path of TLS client certificate - public key.
|
| options/nixos/services.skydns.etcd.tlsKey | Skydns path of TLS client certificate - private key.
|
| options/nixos/services.misskey.redis.passwordFile | The path to a file containing the Redis password
|
| options/home-manager/xdg.desktopEntries.<name>.settings | Extra key-value pairs to add to the [Desktop Entry] section
|
| options/nixos/services.wastebin.secretFile | Path to file containing sensitive environment variables
|
| options/nixos/services.misskey.reverseProxy.enable | Whether to enable a HTTP reverse proxy for Misskey.
|
| options/nixos/hardware.keyboard.zsa.enable | Whether to enable udev rules for keyboards from ZSA like the ErgoDox EZ, Planck EZ and Moonlander Mark I
|
| options/home-manager/targets.darwin.defaults.NSGlobalDomain.KeyRepeat | Interval between key repetitions when holding down a key
|
| options/nixos/services.arsenik.wide | The right hand is moved one key to the right.
|
| options/home-manager/services.ssh-agent.enable | Whether to enable OpenSSH private key agent.
|
| options/home-manager/services.gpg-agent.enable | Whether to enable GnuPG private key agent.
|
| options/nixos/programs.wshowkeys.enable | Whether to enable wshowkeys (displays keypresses on screen on supported Wayland
compositors)
|
| options/nixos/nix.sshServe.write | Whether to enable writing to the Nix store as a remote store via SSH
|
| options/home-manager/programs.lf.keybindings | Keys to bind
|
| options/nixos/programs.skim.keybindings | Whether to enable skim keybindings.
|
| options/home-manager/programs.spotify-player.keymaps | Configuration written to the keymaps field of
$XDG_CONFIG_HOME/spotify-player/keymap.toml
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.locations | Declarative location config
|
| options/nixos/services.misskey.redis.createLocally | Create and use a local Redis instance
|
| options/nixos/services.immichframe.settings.Accounts.*.ApiKey | API key to talk to the Immich server
|
| options/nixos/services.keycloak.realmFiles | Realm files that the server is going to import during startup
|
| options/nixos/services.evdevremapkeys.settings | config.yaml for evdevremapkeys
|
| options/darwin/launchd.user.agents.<name>.serviceConfig.LaunchOnlyOnce | This optional key specifies whether the job can only be run once and only once
|
| options/nixos/boot.initrd.luks.devices.<name>.yubikey.storage.fsType | The filesystem of the unencrypted device.
|
| options/nixos/services.skydns.etcd.caCert | Skydns path of TLS certificate authority public key.
|
| options/darwin/launchd.daemons.<name>.serviceConfig.OnDemand | This key was used in Mac OS X 10.4 to control whether a job was kept alive or not
|
| options/nixos/services.openssh.knownHosts.<name>.certAuthority | This public key is an SSH certificate authority, rather than an
individual host's key.
|
| options/home-manager/programs.intelli-shell.shellHotkeys | Settings for customizing the keybinding to integrate your shell with intelli-shell
|
| options/nixos/services.gitea.camoHmacKeyFile | Path to a file containing the camo HMAC key.
|
| options/home-manager/programs.gpg.publicKeys.*.text | Text of an OpenPGP public key.
|
| options/nixos/services.prometheus.remoteRead.*.tls_config.key_file | Key file for client cert authentication to the server.
|
| options/nixos/services.postfix.settings.main | The main.cf configuration file as key value set
|
| options/nixos/services.strongswan-swanctl.swanctl.connections.<name>.local.<name>.pubkeys | List of raw public key candidates to use for
authentication
|
| options/nixos/services.unbound.checkconf | Whether to check the resulting config file with unbound checkconf for syntax errors
|
| options/nixos/services.keycloak.database.useSSL | Whether the database connection should be secured by SSL / TLS
|
| options/nixos/services.keycloak.themes | Additional theme packages for Keycloak
|
| options/nixos/services.sharkey.settings.fulltextSearch.provider | Which provider to use for full text search
|
| options/nixos/services.misskey.reverseProxy.webserver.nginx.reuseport | Create an individual listening socket
|
| options/darwin/services.mopidy.mediakeys.enable | Whether to enable the Mopidy OSX Media Keys support daemon.
|
| options/darwin/launchd.daemons.<name>.serviceConfig.LaunchOnlyOnce | This optional key specifies whether the job can only be run once and only once
|
| options/nixos/services.prometheus.exporters.sabnzbd.servers.*.apiKeyFile | The path to a file containing the API key
|
| options/darwin/services.yabai.config | Key/Value pairs to pass to yabai's 'config' domain, via the configuration file.
|
| options/nixos/security.acme.certs.<name>.csrKey | Path to the private key to the matching certificate signing request.
|
| options/home-manager/programs.kitty.keybindings | Mapping of keybindings to actions.
|
| options/home-manager/programs.urxvt.keybindings | Mapping of keybindings to actions
|
| options/nixos/services.tlsrpt.fetcher.settings | Flags from tlsrpt-fetcher(1) as key-value pairs.
|
| options/nixos/services.tlsrpt.reportd.settings | Flags from tlsrpt-reportd(1) as key-value pairs.
|
| options/nixos/services.kanata.keyboards.<name>.port | Port to run the TCP server on. null will not run the server.
|
| options/nixos/boot.initrd.luks.devices.<name>.yubikey.storage.path | Absolute path of the salt on the unencrypted device with
that device's root directory as "/".
|
| options/home-manager/xsession.windowManager.fluxbox.keys | Keyboard shortcuts configuration for Fluxbox, written to
~/.fluxbox/keys
|
| options/nixos/services.prometheus.remoteWrite.*.tls_config.key_file | Key file for client cert authentication to the server.
|
| options/nixos/services.logind.rebootKey | Specifies what to do when the reboot key is pressed.
|
| options/home-manager/services.sxhkd.keybindings | An attribute set that assigns hotkeys to commands.
|
| options/nixos/services.sks.enable | Whether to enable SKS (synchronizing key server for OpenPGP) and start the database
server
|
| options/home-manager/launchd.agents.<name>.config.Sockets.<name>.SockProtocol | This optional key specifies the protocol to be passed to socket(2)
|
| options/home-manager/programs.obsidian.vaults.<name>.settings.hotkeys.<name>.*.modifiers | The hotkey modifiers.
|
| options/home-manager/programs.zsh.historySubstringSearch.searchUpKey | The key codes to be used when searching up
|
| options/nixos/services.gemstash.settings | Configuration for Gemstash
|
| options/home-manager/programs.hyprlock.settings | Hyprlock configuration written in Nix
|
| options/home-manager/services.hypridle.settings | Hypridle configuration written in Nix
|
| options/nixos/services.zitadel.settings.TLS.Key | The TLS certificate private key, as a base64-encoded string
|
| options/darwin/launchd.agents.<name>.serviceConfig.Sockets.<name>.SockType | This optional key tells launchctl what type of socket to create
|