| options/nixos/services.fprintd.tod.driver | Touch OEM Drivers (TOD) package to use.
|
| options/nixos/services.firezone.headless-client.package | The firezone-headless-client package to use.
|
| options/nixos/services.anuko-time-tracker.nginx.sslCertificate | Path to server SSL certificate.
|
| options/nixos/services.commafeed.stateDir | Directory holding all state for CommaFeed to run.
|
| options/nixos/services.kbfs.enable | Whether to mount the Keybase filesystem.
|
| options/nixos/services.anuko-time-tracker.nginx.basicAuth | Basic Auth protection for a vhost
|
| options/nixos/hardware.alsa.controls.<name>.name | Name of the control, as it appears in alsamixer
|
| options/nixos/services.gemstash.enable | Whether to enable gemstash, a cache for rubygems.org and a private gem server.
|
| options/nixos/services.gitea.extraConfig | Configuration lines appended to the generated gitea configuration file.
|
| options/nixos/services.firefly-iii-data-importer.virtualHost | The hostname at which you wish firefly-iii-data-importer to be served
|
| options/nixos/networking.nat.internalIPs | The IP address ranges for which to perform NAT
|
| options/nixos/security.wrappers.<name>.program | The name of the wrapper program
|
| options/nixos/services.factorio.password | Your factorio.com login credentials
|
| options/nixos/services.collabora-online.aliasGroups.*.host | Hostname to allow or deny.
|
| options/nixos/services.dawarich.group | Group under which dawarich runs.
|
| options/nixos/services.atalkd.enable | Whether to enable the AppleTalk daemon.
|
| options/nixos/services.bitmagnet.settings.postgres.host | Address, hostname or Unix socket path of the database server
|
| options/nixos/security.pam.services.<name>.name | Name of the PAM service.
|
| options/nixos/hardware.graphics.package32 | The package that provides the 32-bit driver set
|
| options/nixos/hardware.deviceTree.overlays.*.name | Name of this overlay
|
| options/nixos/services.armagetronad.servers.<name>.enable | Whether to enable armagetronad.
|
| options/nixos/services.cadvisor.storageDriver | Cadvisor storage driver.
|
| options/nixos/services.incron.deny | Users forbidden from using incrontab.
|
| options/nixos/services.anubis.instances.<name>.policy.useDefaultBotRules | Whether to include Anubis's default bot detection rules via the
(data)/meta/default-config.yaml import
|
| options/nixos/services.geoipupdate.settings.AccountID | Your MaxMind account ID.
|
| options/nixos/hardware.cpu.x86.msr.enable | Whether to enable the msr (Model-Specific Registers) kernel module and configure udev rules for its devices (usually /dev/cpu/*/msr).
|
| options/nixos/programs.neovim.withRuby | Enable Ruby provider.
|
| options/nixos/power.ups.upsd | Options for the upsd.conf configuration file.
|
| options/nixos/programs.ssh.agentTimeout | How long to keep the private keys in memory
|
| options/nixos/programs.proxychains.quietMode | Whether to enable Quiet mode (no output from the library).
|
| options/nixos/services.gnome.localsearch.enable | Whether to enable LocalSearch, indexing services for TinySPARQL
search engine and metadata storage system.
|
| options/nixos/programs.screen.enable | Whether to enable screen, a basic terminal multiplexer.
|
| options/nixos/hardware.sane.drivers.scanSnap.enable | Whether to enable drivers for the Fujitsu ScanSnap scanners
|
| options/nixos/services.gitea.dump.enable | Enable a timer that runs gitea dump to generate backup-files of the
current gitea database and repositories.
|
| options/nixos/services.ghostunnel.enable | Whether to enable ghostunnel.
|
| options/nixos/services.i2pd.proto.sam.address | Bind address for sam endpoint.
|
| options/nixos/networking.wireguard.interfaces.<name>.generatePrivateKeyFile | Automatically generate a private key with
wg genkey, at the privateKeyFile location.
|
| options/nixos/services.dolibarr.nginx.rejectSSL | Whether to listen for and reject all HTTPS connections to this vhost
|
| options/nixos/hardware.cpu.amd.microcodePackage | The microcode-amd package to use.
|
| options/nixos/services.bazarr.enable | Whether to enable bazarr, a subtitle manager for Sonarr and Radarr.
|
| options/nixos/services.librenms.nginx.locations.<name>.priority | Order of this location block in relation to the others in the vhost
|
| options/nixos/services.ceph.global.authClusterRequired | Enables requiring daemons to authenticate with eachother in the cluster.
|
| options/nixos/services.libinput.touchpad.buttonMapping | Sets the logical button mapping for this device, see XSetPointerMapping(3)
|
| options/nixos/programs.firefox.enable | Whether to enable the Firefox web browser.
|
| options/nixos/services.akkoma.dist.address | Listen address for Erlang distribution protocol and Port Mapper Daemon (epmd).
|
| options/nixos/services.angrr.settings.temporary-root-policies.<name>.filter | External filter program to further filter GC roots matched by this policy.
|
| options/nixos/services.esphome.package | The esphome package to use.
|
| options/nixos/services.hddfancontrol.settings.<drive-bay-name>.logVerbosity | Verbosity of the log level
|
| options/nixos/services.journalwatch.mailTo | Mail address to send journalwatch reports to.
|
| options/nixos/services.gitea.database.host | Database host address.
|
| options/nixos/services.lemmy.server.package | The lemmy-server package to use.
|
| options/nixos/programs.clash-verge.tunMode | Whether to enable Setcap for TUN Mode
|
| options/nixos/boot.loader.grub.configurationLimit | Maximum of configurations in boot menu
|
| options/nixos/services.connman.enableVPN | Whether to enable ConnMan VPN service.
|
| options/nixos/networking.wlanInterfaces | Creating multiple WLAN interfaces on top of one physical WLAN device (NIC)
|
| options/nixos/services.caddy.virtualHosts.<name>.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| options/nixos/services.handheld-daemon.package | The handheld-daemon package to use.
|
| options/nixos/services.duplicity.secretFile | Path of a file containing secrets (gpg passphrase, access key...) in
the format of EnvironmentFile as described by
systemd.exec(5)
|
| options/nixos/services.etcd.trustedCaFile | Certificate authority file to use for clients
|
| options/nixos/services.borgbackup.jobs.<name>.prune.prefix | Only consider archive names starting with this prefix for pruning
|
| options/nixos/services.anuko-time-tracker.nginx.listen | Listen addresses and ports for this virtual host
|
| options/nixos/services.gitea-actions-runner.instances.<name>.token | Plain token to register at the configured Gitea/Forgejo instance.
|
| options/nixos/security.sudo.enable | Whether to enable the sudo command, which
allows non-root users to execute commands as root.
|
| options/nixos/services.gitlab-runner.services.<name>.runUntagged | Register to run untagged builds; defaults to
true when tagList is empty
|
| options/nixos/services.ferm.enable | Whether to enable Ferm Firewall.
Warning: Enabling this service WILL disable the existing NixOS
firewall! Default firewall rules provided by packages are not
considered at the moment.
|
| options/nixos/services.invoiceplane.sites.<name>.cron.enable | Enable cron service which periodically runs Invoiceplane tasks
|
| options/nixos/services.i2pd.family | Specify a family the router belongs to.
|
| options/nixos/services.hledger-web.stateDir | Path the service has access to
|
| options/nixos/services.jenkins.jobBuilder.accessToken | User token in Jenkins used to reload config
|
| options/nixos/services.arsenik.num | Add NumRow layer
|
| options/nixos/services.bcachefs.autoScrub.enable | Whether to enable regular bcachefs scrub.
|
| options/nixos/services.gnunet.udp.port | The UDP port for use by GNUnet.
|
| options/nixos/services.homebridge.uiSettings.log.method | Method to use for logging
|
| options/nixos/services.hledger-web.extraOptions | Extra command line arguments to pass to hledger-web.
|
| options/nixos/services.libeufin.nexus.settings.nexus-ebics.USER_ID | User ID of the EBICS subscriber
|
| options/nixos/boot.zfs.removeLinuxDRM | Patch the kernel to change symbols needed by ZFS from
EXPORT_SYMBOL_GPL to EXPORT_SYMBOL
|
| options/nixos/hardware.coral.pcie.enable | Whether to enable Coral PCIe support.
|
| options/nixos/services.athens.pprofPort | Port number for pprof endpoints.
|
| options/nixos/services.gitlab-runner.services.<name>.preBuildScript | Runner-specific command script executed after code is pulled,
just before build executes.
|
| options/nixos/services.bacula-sd.name | Specifies the Name of the Storage daemon.
|
| options/nixos/services.asusd.userLedModesConfig.source | Path of the source file.
|
| options/nixos/services.kmonad.package | The KMonad package to use.
|
| options/nixos/services.docling-serve.enable | Whether to enable Docling Serve server.
|
| options/nixos/programs.kubeswitch.commandName | The name of the command to use
|
| options/nixos/services.fprintd.tod.enable | Whether to enable Touch OEM Drivers library support.
|
| options/nixos/services.grafana.provision.alerting.rules.path | Path to YAML rules configuration
|
| options/nixos/hardware.steam-hardware.enable | Enable udev rules for Steam hardware such as the Steam Controller, other supported controllers and the HTC Vive
|
| options/nixos/services.endlessh-go.port | Specifies on which port the endlessh-go daemon listens for SSH
connections
|
| options/nixos/services.firewalld.extraArgs | Extra arguments to pass to FirewallD.
|
| options/nixos/services.grafana-to-ntfy.settings.ntfyBAuthUser | The ntfy-sh user to use for authenticating with the ntfy-sh instance
|
| options/nixos/services.geth | Specification of one or more geth instances.
|
| options/nixos/services.i2pd.addressbook.subscriptions | AddressBook subscription URLs
|
| options/nixos/boot.kernel.sysctl | Runtime parameters of the Linux kernel, as set by
sysctl(8)
|
| options/nixos/services.dawarich.user | User under which dawarich runs
|
| options/nixos/services.documize.cert | The cert.pem file used for https.
|
| options/nixos/services.jellyfin.logDir | Directory where the Jellyfin logs will be stored,
passed with --logdir see #log-directory
|
| options/nixos/networking.firewall.enable | Whether to enable the firewall
|
| options/nixos/services.infinoted.securityPolicy | How strictly to enforce clients connection with TLS.
|
| options/nixos/networking.wireguard.interfaces.<name>.mtu | Set the maximum transmission unit in bytes for the wireguard
interface
|
| options/nixos/services.chrony.enableNTS | Whether to enable Network Time Security authentication
|