| options/nixos/services.rsyncd.socketActivated | If enabled Rsync will be socket-activated rather than run persistently.
|
| options/nixos/services.bacula-sd.director.<name>.tls.certificate | The full path to the PEM encoded TLS certificate
|
| options/nixos/services.bacula-fd.director.<name>.tls.certificate | The full path to the PEM encoded TLS certificate
|
| options/nixos/services.bitwarden-directory-connector-cli.sync.groups | Whether to sync ldap groups into BitWarden.
|
| options/nixos/hardware.sane.brscan4.enable | When enabled, will automatically register the "brscan4" sane
backend and bring configuration files to their expected location.
|
| options/nixos/services.longview.apacheStatusUrl | The Apache status page URL
|
| options/nixos/boot.loader.systemd-boot.editor | Whether to allow editing the kernel command-line before
boot
|
| options/nixos/services.gitlab.secrets.otpFile | A file containing the secret used to encrypt secrets for OTP
tokens
|
| options/nixos/services.dnsmasq.alwaysKeepRunning | If enabled, systemd will always respawn dnsmasq even if shut down manually
|
| options/nixos/i18n.inputMethod.ibus.engines | Enabled IBus engines
|
| options/nixos/services.openssh.generateHostKeys | Whether to generate SSH host keys
|
| options/nixos/systemd.network.links.<name>.enable | Whether to enable this .link unit
|
| options/nixos/programs.direnv.enableZshIntegration | Whether to enable Zsh integration
.
|
| options/darwin/programs.direnv.enableZshIntegration | Whether to enable Zsh integration
.
|
| options/nixos/services.bitwarden-directory-connector-cli.domain | The domain the Bitwarden/Vaultwarden is accessible on.
|
| options/nixos/services.akkoma.config.":pleroma".":instance".upload_dir | Directory where Akkoma will put uploaded files.
|
| options/nixos/services.bitwarden-directory-connector-cli.sync.userFilter | LDAP filter for users.
|
| options/nixos/boot.zfs.forceImportRoot | Forcibly import the ZFS root pool(s) during early boot
|
| options/nixos/services.bitwarden-directory-connector-cli.enable | Whether to enable Bitwarden Directory Connector.
|
| options/nixos/system.nssDatabases.hosts | List of hosts entries to configure in /etc/nsswitch.conf
|
| options/nixos/networking.nftables.enable | Whether to enable nftables and use nftables based firewall if enabled.
nftables is a Linux-based packet filtering framework intended to
replace frameworks like iptables
|
| options/nixos/users.ldap.daemon.enable | Whether to let the nslcd daemon (nss-pam-ldapd) handle the
LDAP lookups for NSS and PAM
|
| options/nixos/services.vsftpd.virtualUseLocalPrivs | If enabled, virtual users will use the same privileges as local
users
|
| options/home-manager/programs.direnv.enableZshIntegration | Whether to enable Zsh integration.
|
| options/nixos/services.anuko-time-tracker.nginx.http2 | Whether to enable the HTTP/2 protocol
|
| options/nixos/virtualisation.writableStore | If enabled, the Nix store in the VM is made writable by
layering an overlay filesystem on top of the host's Nix
store
|
| options/nixos/services.bitwarden-directory-connector-cli.ldap | Options to configure the LDAP connection
|
| options/nixos/services.bitwarden-directory-connector-cli.sync | Options to configure what gets synced
|
| options/nixos/services.thinkfan.sensors.*.type | The sensor type, can be
hwmon for standard sensors,
atasmart to read the temperature via
S
|
| options/nixos/services.minecraft-server.enable | If enabled, start a Minecraft Server
|
| options/nixos/programs.direnv.enableBashIntegration | Whether to enable Bash integration
.
|
| options/nixos/programs.direnv.enableFishIntegration | Whether to enable Fish integration
.
|
| options/darwin/programs.direnv.enableBashIntegration | Whether to enable Bash integration
.
|
| options/darwin/programs.direnv.enableFishIntegration | Whether to enable Fish integration
.
|
| options/nixos/system.nssDatabases.shadow | List of shadow entries to configure in /etc/nsswitch.conf
|
| options/nixos/security.pam.ussh.enable | Enables Uber's USSH PAM (pam-ussh) module
|
| options/nixos/services.oink.domains | List of attribute sets containing configuration for each domain
|
| options/nixos/services.pipewire.systemWide | If true, a system-wide PipeWire service and socket is enabled
allowing all users in the "pipewire" group to use it simultaneously
|
| options/nixos/services.wstunnel.clients.<name>.addNetBind | Whether to enable Whether add CAP_NET_BIND_SERVICE to the tunnel service, this should be enabled if you want to bind port < 1024.
|
| options/nixos/services.plausible.mail.smtp.passwordFile | The path to the file with the password in case SMTP auth is enabled.
|
| options/home-manager/wayland.windowManager.sway.checkConfig | If enabled, validates the generated config file.
|
| options/nixos/services.bitwarden-directory-connector-cli.sync.groupFilter | LDAP filter for groups.
|
| options/nixos/services.dovecot2.protocols | Additional listeners to start when Dovecot is enabled.
|
| options/home-manager/programs.direnv.enableFishIntegration | Whether to enable Fish integration.
|
| options/home-manager/programs.direnv.enableBashIntegration | Whether to enable Bash integration.
|
| options/home-manager/accounts.email.accounts.<name>.thunderbird.profiles | List of Thunderbird profiles for which this account should be
enabled
|
| options/nixos/services.bitwarden-directory-connector-cli.secrets.ldap | Path to file that contains LDAP password for user in {option}`ldap.username
|
| options/nixos/programs.vscode.defaultEditor | When enabled, configures VSCode to be the default editor
using the EDITOR environment variable.
|
| options/nixos/services.suricata.settings.logging.stacktrace-on-signal | Requires libunwind to be available when Suricata is configured and built
|
| options/nixos/services.bitwarden-directory-connector-cli.sync.emailSuffix | Suffix for the email, normally @example.com.
|
| options/nixos/services.bitwarden-directory-connector-cli.sync.largeImport | Enable if you are syncing more than 2000 users/groups.
|
| options/nixos/services.bookstack.nginx.http2 | Whether to enable the HTTP/2 protocol
|
| options/nixos/services.invidious.nginx.enable | Whether to configure nginx as a reverse proxy for Invidious
|
| options/nixos/services.zabbixWeb.nginx.virtualHost.http2 | Whether to enable the HTTP/2 protocol
|
| options/nixos/services.grafana.settings.analytics.feedback_links_enabled | Set to false to remove all feedback links from the UI.
|
| options/nixos/services.udisks2.mountOnMedia | When enabled, instructs udisks2 to mount removable drives under /media/ directory, instead of the
default, ACL-controlled /run/media/$USER/
|
| options/nixos/services.nomad.extraSettingsPlugins | Additional plugins dir used to configure nomad.
|
| options/nixos/services.bitwarden-directory-connector-cli.ldap.pagedSearch | Whether the LDAP server paginates search results.
|
| options/nixos/services.davis.nginx.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| options/nixos/services.davis.nginx.locations.<name>.proxyPass | Adds proxy_pass directive and sets recommended proxy headers if
recommendedProxySettings is enabled.
|
| options/nixos/services.movim.nginx.locations.<name>.proxyPass | Adds proxy_pass directive and sets recommended proxy headers if
recommendedProxySettings is enabled.
|
| options/nixos/services.slskd.nginx.locations.<name>.proxyPass | Adds proxy_pass directive and sets recommended proxy headers if
recommendedProxySettings is enabled.
|
| options/nixos/services.movim.nginx.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| options/nixos/services.slskd.nginx.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| options/nixos/services.hostapd.radios.<name>.wifi4.enable | Enables support for IEEE 802.11n (WiFi 4, HT)
|
| options/nixos/services.cloudlog.update-lotw-users.enable | Whether to periodically update the list of LoTW users
|
| options/nixos/services.znc.useLegacyConfig | Whether to propagate the legacy options under
services.znc.confOptions.* to the znc config
|
| options/nixos/services.postgresql.initdbArgs | Additional arguments passed to initdb during data dir
initialisation.
|
| options/darwin/services.postgresql.initdbArgs | Additional arguments passed to initdb during data dir
initialisation.
|
| options/nixos/services.borgmatic.settings.source_directories | List of source directories and files to backup
|
| options/nixos/services.bitwarden-directory-connector-cli.package | The bitwarden-directory-connector-cli package to use.
|
| options/nixos/programs.direnv.enableXonshIntegration | Whether to enable Xonsh integration
.
|
| options/nixos/services.part-db.enablePostgresql | Whether to configure the postgresql database for part-db
|
| options/nixos/security.auditd.plugins.<name>.direction | The option is dictated by the plugin
|
| options/nixos/services.snipe-it.nginx.locations.<name>.proxyPass | Adds proxy_pass directive and sets recommended proxy headers if
recommendedProxySettings is enabled.
|
| options/nixos/services.snipe-it.nginx.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| options/nixos/services.bitwarden-directory-connector-cli.ldap.username | The user to authenticate as.
|
| options/home-manager/programs.zsh.prezto.utility.safeOps | Enabled safe options
|
| options/nixos/services.bitwarden-directory-connector-cli.sync.userObjectClass | Class that users must have.
|
| options/nixos/services.bitwarden-directory-connector-cli.ldap.hostname | The host the LDAP is accessible on.
|
| options/home-manager/programs.zsh.completionInit | Initialization commands to run when completion is enabled.
|
| options/nixos/services.sabnzbd.settings.servers.<name>.expire_date | If Notifications are enabled and an expiry date is
set, warn 5 days before expiry
|
| options/nixos/services.easytier.allowSystemForward | Whether to enable Allow the system to forward packets from easytier
|
| options/nixos/services.matrix-synapse.extras | Explicitly install extras provided by matrix-synapse
|
| options/nixos/programs.neovim.defaultEditor | When enabled, installs neovim and configures neovim to be the default editor
using the EDITOR environment variable.
|
| options/nixos/services.broadcast-box.web.openFirewall | Whether to enable opening the HTTP server port and, if enabled, the HTTPS redirect server
port in the firewall.
.
|
| options/home-manager/programs.vesktop.vencord.themes | Themes to add for Vencord, they can be enabled by setting
programs.vesktop.vencord.settings.enabledThemes to [ "THEME_NAME.css" ]
|
| options/nixos/services.znc.config | Configuration for ZNC, see
https://wiki.znc.in/Configuration for details
|
| options/nixos/services.rke2.cisHardening | Enable CIS Hardening for RKE2
|
| options/nixos/services.libinput.mouse.tappingDragLock | Enables or disables drag lock during tapping behavior
|
| options/nixos/hardware.nvidia.prime.reverseSync.enable | Whether to enable NVIDIA Optimus support using the NVIDIA proprietary driver via reverse
PRIME
|
| options/nixos/services.privatebin.virtualHost | The hostname at which you wish privatebin to be served
|
| options/nixos/programs.fish.useBabelfish | If enabled, the configured environment will be translated to native fish using babelfish
|
| options/darwin/programs.fish.useBabelfish | If enabled, the configured environment will be translated to native fish using babelfish
|
| options/nixos/services.traefik.dynamic.files | Dynamic configuration files to write
|
| options/nixos/services.opensearch.settings."plugins.security.disabled" | Whether to enable the security plugin,
plugins.security.ssl.transport.keystore_filepath or
plugins.security.ssl.transport.server.pemcert_filepath and
plugins.security.ssl.transport.client.pemcert_filepath
must be set for this plugin to be enabled.
|
| options/darwin/homebrew.caskArgs.dictionarydir | Target location for Dictionaries
|
| options/nixos/services.bitwarden-directory-connector-cli.sync.groupObjectClass | A class that groups will have.
|
| options/nixos/services.libinput.touchpad.sendEventsMode | Sets the send events mode to disabled, enabled,
or disabled-on-external-mouse
|
| options/nixos/services.nghttpx.frontends.*.params.tls | Enable or disable TLS
|