| options/nixos/services.haveged.enable | Whether to enable haveged entropy daemon, which refills /dev/random when low
|
| options/nixos/services.cjdns.UDPInterface.connectTo.<name>.login | (optional) name your peer has for you
|
| options/nixos/services.crowdsec.localConfig.contexts | A list of additional contexts to specify
|
| options/nixos/services.drupal.sites.<name>.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts.
|
| options/nixos/services.etcd.keyFile | Key file to use for clients
|
| options/nixos/services.gitwatch.<name>.remote | Optional url of remote repository
|
| options/nixos/services.httpd.virtualHosts.<name>.acmeRoot | Directory for the acme challenge which is PUBLIC, don't put certs or keys in here
|
| options/nixos/hardware.xpadneo.rumbleAttenuation | Force feedback attenuation settings
|
| options/nixos/services.karakeep.browser.exe | The browser executable (must be Chrome-like).
|
| options/nixos/boot.plymouth.themePackages | Extra theme packages for plymouth.
|
| options/nixos/fonts.fontconfig.hinting.style | Hintstyle is the amount of font reshaping done to line up
to the grid.
slight will make the font more fuzzy to line up to the grid but
will be better in retaining font shape, while full will be a
crisp font that aligns well to the pixel grid but will lose a
greater amount of font shape.
|
| options/nixos/programs.ssh.ciphers | Specifies the ciphers allowed and their order of preference.
|
| options/nixos/programs.steam.enable | Whether to enable steam.
|
| options/nixos/security.dhparams.enable | Whether to generate new DH params and clean up old DH params.
|
| options/nixos/services.agorakit.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/services.gitDaemon.enable | Enable Git daemon, which allows public hosting of git repositories
without any access controls
|
| options/nixos/services.hickory-dns.settings.directory | The directory in which hickory-dns should look for .zone files,
whenever zones aren't specified by absolute path.
|
| options/nixos/services.bcg.automaticRemoveKitFromNames | Automatically remove kits.
|
| options/nixos/services.buildbot-worker.extraGroups | List of extra groups that the Buildbot Worker user should be a part of.
|
| options/nixos/services.darkhttpd.address | Address to listen on
|
| options/nixos/services.elasticsearch.package | The elasticsearch package to use.
|
| options/nixos/services.h2o.hosts.<name>.acme.useHost | An existing Let’s Encrypt certificate to use for this virtual
host
|
| options/nixos/services.hardware.openrgb.package | The openrgb package to use.
|
| options/nixos/services.jigasi.enable | Whether to enable Jitsi Gateway to SIP - component of Jitsi Meet.
|
| options/nixos/services.jitsi-meet.config | Client-side web application settings that override the defaults in config.js
|
| options/nixos/hardware.graphics.enable | Whether to enable hardware accelerated graphics drivers
|
| options/nixos/services.cassandra.jvmOpts | Populate the JVM_OPT environment variable.
|
| options/nixos/services.dovecot2.sieve.extensions | Sieve extensions for use in user scripts
|
| options/nixos/nix.registry.<name>.flake | The flake input from is rewritten to.
|
| options/nixos/services.gitlab.packages.gitlab-shell | The gitlab-shell package to use.
|
| options/nixos/services.komodo-periphery.enable | Whether to enable Periphery, a multi-server Docker and Git deployment agent by Komodo.
|
| options/nixos/services.dawarich.redis.port | The port of the redis server Dawarich will connect to
|
| options/nixos/services.fluidd.nginx.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| options/nixos/networking.firewall.logRefusedUnicastsOnly | If networking.firewall.logRefusedPackets
and this option are enabled, then only log packets
specifically directed at this machine, i.e., not broadcasts
or multicasts.
|
| options/nixos/services.anuko-time-tracker.nginx.basicAuthFile | Basic Auth password file for a vhost
|
| options/nixos/services.kthxbye.package | The kthxbye package to use.
|
| options/nixos/services.headscale.settings.tls_letsencrypt_challenge_type | Type of ACME challenge to use, currently supported types:
HTTP-01 or TLS-ALPN-01.
|
| options/nixos/services.lanraragi.port | Port for LANraragi's web interface.
|
| options/nixos/boot.initrd.systemd.dbus.enable | Whether to enable dbus in stage 1.
|
| options/nixos/services.angrr.enable | Whether to enable angrr.
|
| options/nixos/services.automatic-timezoned.package | The automatic-timezoned package to use.
|
| options/nixos/services.gammu-smsd.backend.sql.user | User name used for connection to the database
|
| options/nixos/services.drupal.sites.<name>.phpOptions | Options for PHP's php.ini file for this Drupal site.
|
| options/nixos/services.dae.enable | Whether to enable dae, a Linux high-performance transparent proxy solution based on eBPF.
|
| options/nixos/services.icecream.daemon.maxProcesses | Maximum number of compile jobs started in parallel for this daemon
|
| options/nixos/services.blockbook-frontend.<name>.group | The group as which to run blockbook-frontend-‹name›.
|
| options/nixos/services.bookstack.nginx.serverName | Name of this virtual host
|
| options/nixos/services.i2pd.proto.socksProxy.enable | Whether to enable socksproxy.
|
| options/nixos/services.inadyn.settings.forced-update | Duration (in seconds) after which an update is forced.
|
| options/nixos/services.libretranslate.enable | Whether to enable LibreTranslate service.
|
| options/nixos/services.audiobookshelf.host | The host Audiobookshelf binds to.
|
| options/nixos/services.consul-template.instances.<name>.settings.pid_file | Path to use for the pid file.
|
| options/nixos/services.h2o.hosts.<name>.tls.quic | Enables HTTP/3 over QUIC on the UDP port for TLS
|
| options/nixos/services.incron.allow | Users allowed to use incrontab
|
| options/nixos/services.kanboard.nginx.locations.<name>.priority | Order of this location block in relation to the others in the vhost
|
| options/nixos/environment.pathsToLink | List of directories to be symlinked in /run/current-system/sw.
|
| options/nixos/networking.wireguard.interfaces.<name>.type | The type of the interface
|
| options/nixos/services.lemmy.database.createLocally | Whether to enable creation of database on the instance.
|
| options/nixos/services.cloudflare-warp.openFirewall | Whether to enable opening UDP ports in the firewall.
|
| options/nixos/services.go-csp-collector.settings | Settings for go-csp-collector
|
| options/nixos/networking.ipips.<name>.dev | The underlying network device on which the tunnel resides.
|
| options/nixos/programs.ente-auth.package | The ente-auth package to use.
|
| options/nixos/programs.atop.enable | Whether to enable Atop, a tool for monitoring system resources.
|
| options/nixos/services.autosuspend.checks | Checks for activity
|
| options/nixos/services.knot.settingsFile | As alternative to settings, you can provide whole configuration
directly in the almost-YAML format of Knot DNS
|
| options/nixos/services.firewalld.settings.ReloadPolicy | The policy during reload.
|
| options/nixos/services.flarum.stateDir | Home directory for writable storage
|
| options/nixos/programs.git.lfs.package | The git-lfs package to use.
|
| options/nixos/programs.hyprlock.package | The hyprlock package to use.
|
| options/nixos/services.hostapd.radios.<name>.networks.<name>.macAcl | Station MAC address -based authentication
|
| options/nixos/programs.zoxide.enableZshIntegration | Whether to enable Zsh integration.
|
| options/nixos/services.freeciv.settings | Parameters of freeciv-server.
|
| options/nixos/services.borgbackup.jobs.<name>.encryption.passphrase | The passphrase the backups are encrypted with
|
| options/nixos/services.duckling.enable | Whether to enable duckling.
|
| options/nixos/services.etesync-dav.host | The server host address.
|
| options/nixos/services.jitsi-videobridge.xmppConfigs.<name>.disableCertificateVerification | Whether to skip validation of the server's certificate.
|
| options/nixos/services.evremap.settings.remap.*.output | The key sequence that should be output when the input sequence is entered
|
| options/nixos/services.ejabberd.group | Group under which ejabberd is ran
|
| options/nixos/services.fail2ban.bantime-increment.formula | "bantime.formula" used by default to calculate next value of ban time, default value below,
the same ban time growing will be reached by multipliers 1, 2, 4, 8, 16, 32 ...
|
| options/nixos/services.hardware.openrgb.startupProfile | The profile file to load from "/var/lib/OpenRGB" at startup.
|
| options/nixos/services.gitea.lfs.enable | Enables git-lfs support.
|
| options/nixos/services.icingaweb2.modules.translation.enable | Whether to enable the icingaweb2 translation module.
|
| options/nixos/hardware.display.edid.enable | Enables handling of EDID files
|
| options/nixos/services.davis.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| options/nixos/services.freshrss.user | User under which FreshRSS runs.
|
| options/nixos/services.leaps.enable | Whether to enable leaps, a pair programming service.
|
| options/nixos/boot.extraModulePackages | A list of additional packages supplying kernel modules.
|
| options/nixos/hardware.cpu.x86.msr.mode | Mode to set for devices of the msr kernel subsystem.
|
| options/nixos/services.lambdabot.enable | Enable the Lambdabot IRC bot
|
| options/nixos/services.libeufin.nexus.enable | Whether to enable libeufin core banking system and web interface.
|
| options/nixos/services.autobrr.openFirewall | Open ports in the firewall for the Autobrr web interface.
|
| options/nixos/hardware.bluetooth.powerOnBoot | Whether to power up the default Bluetooth controller on boot.
|
| options/nixos/services.firefox-syncserver.singleNode.hostname | Host name to use for this service.
|
| options/nixos/services.guacamole-server.extraEnvironment | Environment variables to pass to guacd.
|
| options/nixos/services.filebrowser.settings | Settings for FileBrowser
|
| options/nixos/services.jellyseerr.enable | Whether to enable Jellyseerr, a requests manager for Jellyfin.
|
| options/nixos/networking.nat.forwardPorts.*.destination | Forward connection to destination ip:port (or [ipv6]:port); to specify a port range, use ip:start-end
|
| options/nixos/services.iperf3.bind | Bind to the specific interface associated with the given address.
|
| options/nixos/services.connman.package | The connman package / build flavor
|
| options/nixos/services.immich-public-proxy.immichUrl | URL of the Immich instance
|