| options/nixos/services.borgbackup.jobs.<name>.group | The group borg is run as
|
| options/nixos/services.grafana.provision.alerting.templates.settings.templates.*.name | Name of the template, must be unique
|
| options/nixos/services.kthxbye.extendBy | Extend silences by adding DURATION seconds
|
| options/nixos/services.jitsi-videobridge.colibriRestApi | Whether to enable the private rest API for the COLIBRI control interface
|
| options/nixos/networking.interfaces | The configuration for each network interface
|
| options/nixos/services.dolibarr.h2o.acme.root | Directory for the ACME challenge, which is public
|
| options/nixos/services.firezone.headless-client.enable | Whether to enable the firezone headless client.
|
| options/nixos/boot.initrd.systemd.network.wait-online.ignoredInterfaces | Network interfaces to be ignored when deciding if the system is online.
|
| options/nixos/security.wrappers | This option effectively allows adding setuid/setgid bits, capabilities,
changing file ownership and permissions of a program without directly
modifying it
|
| options/nixos/services.druid.coordinator.config | (key=value) Configuration to be written to runtime.properties of the druid Druid Coordinator
https://druid.apache.org/docs/latest/configuration/index.html
|
| options/nixos/security.acme.acceptTerms | Accept the CA's terms of service
|
| options/nixos/services.angrr.enable | Whether to enable angrr.
|
| options/nixos/services.etesync-dav.apiUrl | The url to the etesync API.
|
| options/nixos/environment.freetds | Configure freetds database entries
|
| options/nixos/services.bacula-fd.extraMessagesConfig | Extra configuration to be passed in Messages directive.
|
| options/nixos/services.influxdb.enable | Whether to enable the influxdb server.
|
| options/nixos/boot.loader.generationsDir.copyKernels | Whether to copy the necessary boot files into /boot, so
/nix/store is not needed by the boot loader.
|
| options/nixos/services.bacula-fd.director.<name>.tls.allowedCN | Common name attribute of allowed peer certificates
|
| options/nixos/boot.tmp.tmpfsSize | Size of tmpfs in percentage
|
| options/nixos/services.bazarr.openFirewall | Open ports in the firewall for the bazarr web interface.
|
| options/nixos/services.bcg.automaticRenameKitNodes | Automatically rename kit's nodes.
|
| options/nixos/services.freeciv.settings.auth | Whether to enable server authentication.
|
| options/nixos/services.firezone.server.provision.accounts.<name>.resources | All resources to provision
|
| options/nixos/hardware.facter.debug.nix-diff | A shell application which will produce a nix-diff of the system closure with and without facter enabled.
|
| options/nixos/services.haven.blastrRelays | List of relay configurations for blastr
|
| options/nixos/services.forgejo.dump.backupDir | Path to the directory where the dump archives will be stored.
|
| options/nixos/networking.firewall.trustedInterfaces | Traffic coming in from these interfaces will be accepted
unconditionally
|
| options/nixos/services.agorakit.mail.encryption | SMTP encryption mechanism to use.
|
| options/nixos/security.loginDefs.settings.TTYGROUP | The terminal permissions: the login tty will be owned by the TTYGROUP group,
and the permissions will be set to TTYPERM
|
| options/nixos/security.acme.defaults.validMinDays | Minimum remaining validity before renewal in days.
|
| options/nixos/networking.interfaces.<name>.ipv4.addresses.*.prefixLength | Subnet mask of the interface, specified as the number of
bits in the prefix (24).
|
| options/nixos/services.librenms.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/services.cook-cli.port | Which port cook-cli server will use.
|
| options/nixos/services.keybase.enable | Whether to start the Keybase service.
|
| options/nixos/services.guix.extraArgs | Extra flags to pass to the Guix daemon service.
|
| options/nixos/services.cloudflared.tunnels.<name>.originRequest.tlsTimeout | Timeout for completing a TLS handshake to your origin server, if you have chosen to connect Tunnel to an HTTPS server.
|
| options/nixos/services.crab-hole.settings | Crab-holes config
|
| options/nixos/services.clipcat.package | The clipcat package to use.
|
| options/nixos/programs.less.lessopen | Before less opens a file, it first gives your input preprocessor a chance to modify the way the contents of the file are displayed.
|
| options/nixos/services.journald.rateLimitBurst | Configures the rate limiting burst limit (number of messages per
interval) that is applied to all messages generated on the system
|
| options/nixos/services.immich-public-proxy.enable | Whether to enable Immich Public Proxy.
|
| options/nixos/services.discourse.mail.notificationEmailAddress | The from: email address used when
sending all essential system emails
|
| options/nixos/boot.loader.refind.maxGenerations | Maximum number of latest generations in the boot menu
|
| options/nixos/services.grafana-image-renderer.settings.browser.path | Path to the executable of the chromium to use.
|
| options/nixos/services.druid.coordinator.enable | Whether to enable Druid Coordinator.
|
| options/nixos/services.libinput.mouse.leftHanded | Enables left-handed button orientation, i.e. swapping left and right buttons.
|
| options/nixos/security.duosec.prompts | If a user fails to authenticate with a second factor, Duo
Unix will prompt the user to authenticate again
|
| options/nixos/services.keycloak.database.port | Port of the database to connect to.
|
| options/nixos/boot.initrd.preDeviceCommands | Shell commands to be executed before udev is started to create
device nodes.
|
| options/nixos/services.crab-hole.configFile | The config file of crab-hole
|
| options/nixos/hardware.parallels.package | The prl-tools package to use.
|
| options/nixos/networking.nat.forwardPorts.*.proto | Protocol of forwarded connection
|
| options/nixos/services.firefly-iii.enableNginx | Whether to enable nginx or not
|
| options/nixos/services.buffyboard.settings.theme.default | Selects the default theme on boot
|
| options/nixos/services.cloudflare-warp.rootDir | Working directory for the warp-svc daemon.
|
| options/nixos/services.anuko-time-tracker.nginx.listen.*.extraParameters | Extra parameters of this listen directive.
|
| options/nixos/services.homebox.settings | The homebox configuration as environment variables
|
| options/nixos/boot.extraModulePackages | A list of additional packages supplying kernel modules.
|
| options/nixos/services.davis.group | Group davis runs as.
|
| options/nixos/services.endlessh-go.listenAddress | Interface address to bind the endlessh-go daemon to SSH connections.
|
| options/nixos/services.gitlab.pages.settings.artifacts-server | API URL to proxy artifact requests to.
|
| options/nixos/services.bitwarden-directory-connector-cli.ldap.hostname | The host the LDAP is accessible on.
|
| options/nixos/services.create_ap.enable | Whether to enable setting up wifi hotspots using create_ap.
|
| options/nixos/services.influxdb2.provision.initialSetup.passwordFile | Password for primary user
|
| options/nixos/services.jellyfin.transcoding.enableHardwareEncoding | Enable hardware encoding for video transcoding.
|
| options/nixos/environment.wordlist.enable | Whether to enable environment variables for lists of words.
|
| options/nixos/services.firewalld.settings.IndividualCalls | Whether to use individual -restore calls to apply changes to the firewall
|
| options/nixos/services.desktopManager.pantheon.extraGSettingsOverrides | Additional gsettings overrides.
|
| options/nixos/services.i2pd.proto.socksProxy.address | Bind address for socksproxy endpoint.
|
| options/nixos/services.drupal.enable | Whether to enable drupal.
|
| options/nixos/services.dovecot2.sieve.extensions | Sieve extensions for use in user scripts
|
| options/nixos/services.engelsystem.enable | Whether to enable engelsystem, an online tool for coordinating volunteers and shifts on large events.
|
| options/nixos/boot.initrd.systemd.users.<name>.group | Group the user belongs to in initrd.
|
| options/nixos/services.hydra.useSubstitutes | Whether to use binary caches for downloading store paths
|
| options/nixos/services.dnsdist.listenPort | Listen port
|
| options/nixos/programs.less.envVariables | Defines environment variables.
|
| options/nixos/programs.less.package | The less package to use.
|
| options/nixos/services.cloudlog.extraConfig | Any additional text to be appended to the config.php
configuration file
|
| options/nixos/services.dendrite.tlsKey | The path to the TLS key.
nix-shell -p dendrite --command "generate-keys --tls-cert server.crt --tls-key server.key"
|
| options/nixos/services.cage.program | Program to run in cage.
|
| options/nixos/services.chisel-server.enable | Whether to enable Chisel Tunnel Server.
|
| options/nixos/services.cyrus-imap.enable | Whether to enable Cyrus IMAP, an email, contacts and calendar server.
|
| options/nixos/services.froide-govplan.package | The froide-govplan package to use.
|
| options/nixos/services.fluidd.nginx.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|
| options/nixos/services.hqplayerd.auth.password | Password used for HQPlayer's WebUI
|
| options/nixos/services.displayManager.autoLogin.enable | Automatically log in as autoLogin.user.
|
| options/nixos/services.imaginary.enable | Whether to enable imaginary image processing microservice.
|
| options/nixos/services.cloudlog.database.host | MySQL database host
|
| options/nixos/services.displayManager.hiddenUsers | A list of users which will not be shown in the display manager.
|
| options/nixos/boot.loader.limine.extraConfig | A string which is prepended to limine.conf
|
| options/nixos/services.komodo-periphery.port | Port for the Periphery agent to listen on.
|
| options/nixos/programs.fzf.keybindings | Whether to enable fzf keybindings.
|
| options/nixos/security.pam.yubico.id | client id
|
| options/nixos/services.fcron.maxSerialJobs | Maximum number of serial jobs which can run simultaneously.
|
| options/nixos/services.go-shadowsocks2.server.listenAddress | Server listen address or URL
|
| options/nixos/services.gitea-actions-runner.instances.<name>.tokenFile | Path to an environment file, containing the TOKEN environment
variable, that holds a token to register at the configured
Gitea/Forgejo instance.
|
| options/nixos/services.grafana.settings.users.allow_org_create | Set to false to prohibit users from creating new organizations.
|
| options/nixos/security.isolate.boxRoot | All sandboxes are created under this directory
|
| options/nixos/services.atalkd.interfaces.<name>.config | Optional configuration string for this interface.
|
| options/nixos/services.coturn.pkey | Private key file in PEM format.
|