| services.activemq.configurationURI | The URI that is passed along to the BrokerFactory to
set up the configuration of the ActiveMQ broker service
|
| services.recyclarr.configuration | Recyclarr YAML configuration as a Nix attribute set
|
| services.mimir.configuration | Specify the configuration for Mimir in Nix.
|
| services.nginx.sso.configuration | nginx-sso configuration
(documentation)
as a Nix attribute set
|
| services.loki.configuration | Specify the configuration for Loki in Nix
|
| services.mopidy.configuration | The configuration that Mopidy should use.
|
| services.salt.master.configuration | Salt master configuration as Nix attribute set.
|
| boot.initrd.network.openvpn.configuration | The configuration file for OpenVPN.
Unless your bootloader supports initrd secrets, this configuration
is stored insecurely in the global Nix store.
|
| services.salt.minion.configuration | Salt minion configuration as Nix attribute set
|
| services.activemq.configurationDir | The base directory for ActiveMQ's configuration
|
| system.configurationRevision | The Git revision of the top-level flake from which this configuration was built.
|
| services.promtail.configuration | Specify the configuration for Promtail in Nix
|
| services.static-web-server.configuration | Configuration for Static Web Server
|
| boot.loader.grub.configurationLimit | Maximum of configurations in boot menu
|
| boot.loader.grub.configurationName | GRUB entry name instead of default.
|
| services.fluent-bit.configurationFile | Fluent Bit configuration
|
| services.amazon-cloudwatch-agent.configuration | See configurationFile.
configurationFile takes precedence over configuration.
|
| specialisation.<name>.configuration | Arbitrary NixOS configuration
|
| services.prometheus.exporters.idrac.configuration | Configuration for iDRAC exporter, as a nix attribute set
|
| services.prometheus.sachet.configuration | Sachet's configuration as a nix attribute set.
|
| services.prometheus.exporters.dnssec.configuration | dnssec exporter configuration as nix attribute set
|
| services.amazon-cloudwatch-agent.configurationFile | Amazon CloudWatch Agent configuration file
|
| services.prometheus.exporters.snmp.configuration | Snmp exporter configuration as nix attribute set
|
| services.prometheus.exporters.snmp.configurationPath | Path to a snmp exporter configuration file
|
| services.prometheus.exporters.mail.configuration | Specify the mailexporter configuration file to use.
|
| services.prometheus.exporters.sql.configuration | Exporter configuration as nix attribute set
|
| services.prometheus.exporters.mikrotik.configuration | Mikrotik exporter configuration as nix attribute set
|
| boot.loader.systemd-boot.configurationLimit | Maximum number of latest generations in the boot menu
|
| services.prometheus.exporters.idrac.configurationPath | Path to the service's config file
|
| services.prometheus.exporters.junos-czerwonk.configuration | JunOS exporter configuration as nix attribute set
|
| services.crowdsec.settings.console.configuration | Attributes inside the console.yaml file.
|
| nixpkgs.config | Global configuration for Nixpkgs
|
| services.prometheus.alertmanager.configuration | Alertmanager configuration as nix attribute set
|
| services.prometheus.exporters.sql.configuration.jobs | An attrset of metrics scraping jobs to run.
|
| services.datadog-agent.checks | Configuration for all Datadog checks
|
| services.prometheus.exporters.imap-mailstat.configurationFile | File containing the configuration
|
| boot.loader.generic-extlinux-compatible.configurationLimit | Maximum number of configurations in the boot menu.
|
| services.prometheus.exporters.junos-czerwonk.configurationFile | Specify the JunOS exporter configuration file to use.
|
| services.prometheus.exporters.mail.configuration.servers.*.to | Content of 'To' Header for probing mails.
|
| services.prometheus.exporters.mail.configuration.servers.*.port | Port to use for SMTP.
|
| users.ldap.extraConfig | Extra configuration options that will be added verbatim at
the end of the ldap configuration file (ldap.conf(5))
|
| services.prometheus.exporters.mail.configuration.servers.*.from | Content of 'From' Header for probing mails.
|
| services.prometheus.exporters.mail.configuration.servers.*.name | Value for label 'configname' which will be added to all metrics.
|
| services.prometheus.exporters.sql.configuration.jobs.<name>.queries | SQL queries to run.
|
| services.prometheus.exporters.mail.configuration.servers.*.login | Username to use for SMTP authentication.
|
| services.prometheus.exporters.sql.configuration.jobs.<name>.startupSql | A list of SQL statements to execute once after making a connection.
|
| services.prometheus.exporters.mail.configuration.mailCheckTimeout | Timeout until mails are considered "didn't make it".
|
| services.prometheus.exporters.mail.configuration.servers.*.server | Hostname of the server that should be probed.
|
| services.prometheus.exporters.sql.configuration.jobs.<name>.interval | How often to run this job, specified in
Go duration format.
|
| services.prometheus.exporters.mail.configuration.servers | List of servers that should be probed.
Note: if your mailserver has rspamd(8) configured,
it can happen that emails from this exporter are marked as spam
|
| boot.uki.configFile | The configuration file passed to ukify(1) to create the UKI
|
| services.prometheus.exporters.sql.configuration.jobs.<name>.queries.<name>.help | A human-readable description of this metric.
|
| services.prometheus.exporters.sql.configuration.jobs.<name>.queries.<name>.query | The SQL query to run.
|
| hardware.nfc-nci.settings | Configuration to be written to the libncf-nci configuration files
|
| services.prometheus.exporters.sql.configuration.jobs.<name>.queries.<name>.labels | A set of columns that will be used as Prometheus labels.
|
| services.prometheus.exporters.sql.configuration.jobs.<name>.queries.<name>.values | A set of columns that will be used as values of this metric.
|
| services.prometheus.enableReload | Reload prometheus when configuration file changes (instead of restart)
|
| services.prometheus.exporters.mail.configuration.disableFileDeletion | Disables the exporter's function to delete probing mails.
|
| system.checks | Packages that are added as dependencies of the system's build, usually
for the purpose of validating some part of the configuration
|
| services.prometheus.exporters.mail.configuration.servers.*.detectionDir | Directory in which new mails for the exporter user are placed
|
| services.powerdns-admin.config | Configuration python file
|
| services.prometheus.exporters.mail.configuration.servers.*.passphrase | Password to use for SMTP authentication.
|
| services.prometheus.exporters.sql.configuration.jobs.<name>.connections | A list of connection strings of the SQL servers to scrape metrics from
|
| services.nginx.httpConfig | Configuration lines to be set inside the http block
|
| services.prometheus.exporters.mail.configuration.monitoringInterval | Time interval between two probe attempts.
|
| services.sabnzbd.allowConfigWrite | By default we create the sabnzbd configuration read-only,
which keeps the nixos configuration as the single source
of truth
|
| power.ups.mode | The MODE determines which part of the NUT is to be started, and
which configuration files must be modified
|
| power.ups.upsd | Options for the upsd.conf configuration file.
|
| services.knot.keyFiles | A list of files containing additional configuration
to be included using the include directive
|
| services.mympd.settings | Manages the configuration files declaratively
|
| services.osquery.settings | Configuration to be written to the osqueryd JSON configuration file
|
| services.paisa.settings | Paisa configuration
|
| system.preSwitchChecks | A set of shell script fragments that are executed before the switch to a
new NixOS system configuration
|
| boot.zfs.pools | Configuration for individual pools to override global defaults.
|
| services.cloud-init.enable | Enable the cloud-init service
|
| system.switch.enableNg | Whether to use switch-to-configuration-ng, the Rust-based
re-implementation of the original Perl switch-to-configuration.
|
| services.jibri.config | Jibri configuration
|
| services.jupyterhub.extraConfig | Extra contents appended to the jupyterhub configuration
Jupyterhub configuration is a normal python file using
Traitlets. https://jupyterhub.readthedocs.io/en/stable/getting-started/config-basics.html
|
| services.mautrix-signal.settings | config.yaml configuration as a Nix attribute set
|
| programs.git.config | Configuration to write to /etc/gitconfig
|
| services.alloy.configPath | Alloy configuration file/directory path
|
| services.iptsd.config | Configuration for IPTSD
|
| services.spark.confDir | Spark configuration directory
|
| services.k3s.extraKubeletConfig | Extra configuration to add to the kubelet's configuration file
|
| services.rke2.extraKubeletConfig | Extra configuration to add to the kubelet's configuration file
|
| services.node-red.configFile | Path to the JavaScript configuration file
|
| services.mautrix-whatsapp.settings | config.yaml configuration as a Nix attribute set
|
| services.k3s.extraKubeProxyConfig | Extra configuration to add to the kube-proxy's configuration file
|
| services.gatus.configFile | Path to the Gatus configuration file
|
| hardware.alsa.config | The content of the system-wide ALSA configuration (/etc/asound.conf)
|
| services.akkoma.nginx | Extra configuration for the nginx virtual host of Akkoma
|
| services.gitea.extraConfig | Configuration lines appended to the generated gitea configuration file.
|
| services.dsnet.settings | The settings to use for dsnet
|
| services.rke2.extraKubeProxyConfig | Extra configuration to add to the kube-proxy's configuration file
|
| services.squid.extraConfig | Squid configuration
|
| users.ldap.daemon.extraConfig | Extra configuration options that will be added verbatim at
the end of the nslcd configuration file (nslcd.conf(5)).
|
| services.borgmatic.configurations | Set of borgmatic configurations, see https://torsion.org/borgmatic/docs/reference/configuration/
|
| services.tt-rss.sphinx.index | Index names in Sphinx configuration
|
| power.ups.upsmon | Options for the upsmon.conf configuration file.
|
| services.frp.settings | Frp configuration, for configuration options
see the example of client
or server on github.
|
| services.isso.settings | Configuration for isso
|
| services.tor.tsocks.config | Extra configuration
|
| services.slurm.extraConfig | Extra configuration options that will be added verbatim at
the end of the slurm configuration file.
|
| services.yggdrasil.settings | Configuration for yggdrasil, as a structured Nix attribute set
|
| services.adguardhome.settings | AdGuard Home configuration
|
| services.rspamd.extraConfig | Extra configuration to add at the end of the rspamd configuration
file.
|
| services.vsftpd.extraConfig | Extra configuration to add at the bottom of the generated configuration file.
|
| services.polipo.extraConfig | Polio configuration
|
| services.pgscv.settings | Configuration for pgSCV, in YAML format
|
| services.jellyfin.forceEncodingConfig | Whether to overwrite Jellyfin's encoding.xml configuration file on each service start
|
| services.legit.settings | The primary legit configuration
|
| services.parsoid.extraConfig | Extra configuration to add to parsoid configuration.
|
| services.siproxd.extraConfig | Extra configuration to add to siproxd configuration.
|
| services.caddy.configFile | Override the configuration file used by Caddy
|
| services.inadyn.configFile | Configuration file for inadyn
|
| services.alice-lg.settings | alice-lg configuration, for configuration options see the example on github
|
| security.isolate.extraConfig | Extra configuration to append to the configuration file.
|
| services.httpd.extraConfig | Configuration lines appended to the generated Apache
configuration file
|
| services.speechd.config | System wide configuration file for Speech Dispatcher
|
| systemd.services.<name>.stopIfChanged | If set, a changed unit is restarted by calling
systemctl stop in the old configuration,
then systemctl start in the new one
|
| specialisation | Additional configurations to build
|
| services.angrr.configFile | Path to the angrr configuration file in TOML format
|
| services.ocserv.config | Configuration content to start an OCServ server
|
| services.maddy.config | Server configuration, see
https://maddy.email for
more information
|
| nix.enable | Whether to enable Nix
|
| services.thelounge.extraConfig | The Lounge's config.js contents as attribute set (will be
converted to JSON to generate the configuration file)
|
| programs.tsmClient.dsmSysText | This configuration key contains the effective text
of the client system-options file "dsm.sys"
|
| services.godns.settings | Configuration for GoDNS
|
| services.connman.extraConfig | Configuration lines appended to the generated connman configuration file.
|
| services.moodle.extraConfig | Any additional text to be appended to the config.php
configuration file
|
| services.sympa.settings | The sympa.conf configuration file as key value set
|
| services.nghttpx.extraConfig | Extra configuration options to be appended to the generated
configuration file.
|
| qt.enable | Whether to enable Qt configuration, including theming
|
| services.mediatomb.customCfg | Allow the service to create and use its own config file inside the dataDir as
configured by services.mediatomb.dataDir
|
| programs.foot.settings | Configuration for foot terminal emulator
|
| programs.htop.settings | Extra global default configuration for htop
which is read on first startup only
|
| services.clight.settings | Additional configuration to extend clight.conf
|
| services.neard.settings | Neard INI-style configuration file as a Nix attribute set
|
| services.sftpgo.settings | The primary sftpgo configuration
|
| services.zerotierone.localConf | Optional configuration to be written to the Zerotier JSON-based local.conf
|
| systemd.user.services.<name>.stopIfChanged | If set, a changed unit is restarted by calling
systemctl stop in the old configuration,
then systemctl start in the new one
|
| services.nohang.configPath | Configuration file to use with nohang
|
| services.gitlab.extraGitlabRb | Extra configuration to be placed in config/extra-gitlab.rb
|
| services._3proxy.extraConfig | Extra configuration, appended to the 3proxy configuration file
|
| services.go2rtc.settings | go2rtc configuration as a Nix attribute set
|
| services.traccar.settings | config.xml configuration as a Nix attribute set
|
| services.mpd.extraConfig | Extra directives added to to the end of MPD's configuration file,
mpd.conf
|
| programs.neovim.enable | Whether to enable Neovim
|
| services.ntopng.extraConfig | Configuration lines that will be appended to the generated ntopng
configuration file
|
| services.llama-swap.settings | llama-swap configuration
|
| services.phpfpm.extraConfig | Extra configuration that should be put in the global section of
the PHP-FPM configuration file
|
| services.bosun.extraConfig | Extra configuration options for Bosun
|
| services.ddclient.configFile | Path to configuration file
|
| services.jellyfin.configDir | Directory containing the server configuration files,
passed with --configdir see configuration-directory
|
| services.traefik.dynamic.files | Dynamic configuration files to write
|
| services.ceph.client.extraConfig | Extra configuration to add to the client section
|
| services.nginx.enableReload | Reload nginx when configuration file changes (instead of restart)
|
| services.sharkey.settings | Configuration options for Sharkey
|
| security.audit.enable | Whether to enable the Linux audit system
|
| services.neo4j.extraServerConfig | Extra configuration for Neo4j Community server
|
| services.xinetd.extraDefaults | Additional configuration lines added to the default section of xinetd's configuration.
|
| nix.settings | Configuration for Nix, see
https://nixos.org/manual/nix/stable/command-ref/conf-file.html or
nix.conf(5) for available options
|
| services.guacamole-client.settings | Configuration written to guacamole.properties.
The Guacamole web application uses one main configuration file called
guacamole.properties
|
| services.akkoma.config | Configuration for Akkoma
|
| services.dbus.packages | Packages whose D-Bus configuration files should be included in
the configuration of the D-Bus system-wide or session-wide
message bus
|
| services.traefik.dynamic.file | Path to Traefik's dynamic configuration file.
You cannot use this option alongside the declarative configuration options.
|
| systemd.sysupdate.timerConfig | The timer configuration for performing the update
|
| services.prometheus.checkConfig | Check configuration with promtool check
|
| services.kubernetes.kubelet.extraConfig | Kubernetes kubelet extra configuration file entries
|
| services.peroxide.settings | Configuration for peroxide
|
| services.ergochat.configFile | Path to configuration file
|
| hardware.apple.touchBar.settings | Configuration for tiny-dfr
|
| services.livekit.settings | LiveKit configuration file expressed in nix
|
| services.radicale.config | Radicale configuration, this will set the service
configuration file
|
| services.vmagent.checkConfig | Check configuration
|
| services.ente.api.settings | Museum yaml configuration
|
| services.cloudlog.extraConfig | Any additional text to be appended to the config.php
configuration file
|
| services.temporal.settings | Temporal configuration
|
| services.oncall.settings | Extra configuration options to append or override
|
| services.drupal.sites.<name>.extraConfig | Extra configuration values that you want to insert into settings.php
|
| services.harmonia.settings | Settings to merge with the default configuration
|
| services.auto-cpufreq.settings | Configuration for auto-cpufreq
|
| services.kea.dhcp4 | DHCP4 Server configuration
|
| services.kea.dhcp6 | DHCP6 Server configuration
|
| services.rabbitmq.configItems | Configuration options in RabbitMQ's new config file format,
which is a simple key-value format that can not express nested
data structures
|
| services.phpfpm.pools.<name>.extraConfig | Extra lines that go into the pool configuration
|
| services.postsrsd.settings | Configuration options for the postsrsd.conf file
|
| services.mysql.settings | MySQL configuration
|
| services.nginx.appendConfig | Configuration lines appended to the generated Nginx
configuration file
|
| services.frigate.settings | Frigate configuration as a nix attribute set
|
| services.znc.mutable | Indicates whether to allow the contents of the
dataDir directory to be changed by the user at
run-time
|
| boot.uki.settings | The configuration settings for ukify
|
| system.build.images | Different target images generated for this NixOS configuration.
|
| services.flannel.extraNetworkConfig | Extra configuration to be added to the net-conf.json/etcd-backed network configuration.
|
| services.couchdb.extraConfigFiles | Extra configuration files
|
| services.riemann.configFiles | Extra files containing Riemann configuration
|
| services.nominatim.ui.config | Nominatim UI configuration placed to theme/config.theme.js file
|
| services.sunshine.settings | Settings to be rendered into the configuration file
|
| services.buildbot-master.masterCfg | Optionally pass master.cfg path
|
| services.netdata.configDir | Complete netdata config directory except netdata.conf
|
| services.xtreemfs.dir.extraConfig | Configuration of XtreemFS DIR service
|
| services.xtreemfs.osd.extraConfig | Configuration of XtreemFS OSD service
|
| services.xtreemfs.mrc.extraConfig | Configuration of XtreemFS MRC service
|
| boot.initrd.network.ifstate.cleanupSettings | Content of IfState's initrd cleanup configuration file
|
| services.gitlab.workhorse.config | Configuration options to add to Workhorse's configuration
file
|
| services.tayga.ipv6 | IPv6-specific configuration.
|
| services.tayga.ipv4 | IPv4-specific configuration.
|
| services.kea.dhcp-ddns | Kea DHCP-DDNS configuration
|
| services.draupnir.settings | Free-form settings written to Draupnir's configuration file
|
| services.ddclient.extraConfig | Extra configuration
|
| services.mediawiki.extraConfig | Any additional text to be appended to MediaWiki's
LocalSettings.php configuration file
|
| services.nginx.prependConfig | Configuration lines prepended to the generated Nginx
configuration file
|
| services.lavalink.extraConfig | Configuration to write to application.yml
|
| xdg.terminal-exec.settings | Configuration options for the Default Terminal Execution Specification
|
| services.mpd.dbFile | The path to MPD's database
|
| programs.npm.npmrc | The system-wide npm configuration
|
| programs.regreet.enable | Enable ReGreet, a clean and customizable greeter for greetd
|
| services.create_ap.settings | Configuration for create_ap
|
| services.pinchflat.extraConfig | The configuration of Pinchflat is handled through environment variables
|
| services.nominatim.settings | Nominatim configuration settings
|
| services.knot-resolver.settings | Nix-based (RFC 42) configuration for Knot Resolver
|
| services.zoneminder.extraConfig | Additional configuration added verbatim to the configuration file.
|
| services.frr.config | FRR configuration statements.
|
| services.mx-puppet-discord.settings | config.yaml configuration as a Nix attribute set
|
| services.reaction.settings | Configuration for reaction
|
| services.immich.settings | Configuration for Immich
|
| services.fusionInventory.extraConfig | Configuration that is injected verbatim into the configuration file.
|
| services.peertube-runner.settings | Configuration for peertube-runner
|
| services.sympa.domains.<name>.settings | The robot.conf configuration file as key value set
|
| systemd.sysupdate.reboot.timerConfig | The timer configuration for rebooting after an update
|
| services.matrix-synapse.settings | The primary synapse configuration
|
| services.borgmatic.configurations.<name>.repositories.*.path | Path to the repository
|
| services.go2rtc.settings.streams | Stream source configuration
|
| systemd.repart.partitions | Specify partitions as a set of the names of the definition files as the
key and the partition configuration as its value
|
| services.kea.ctrl-agent | Kea Control Agent configuration
|
| services.bepasty.servers.<name>.extraConfig | Extra configuration for bepasty server to be appended on the
configuration.
see https://bepasty-server.readthedocs.org/en/latest/quickstart.html#configuring-bepasty
for all options.
|
| services.pulseaudio.configFile | The path to the default configuration options the PulseAudio server
should use
|
| services.openldap.mutableConfig | Whether to allow writable on-line configuration
|
| services.borgmatic.configurations.<name>.repositories.*.label | Label to the repository
|
| services.komodo-periphery.configFile | Path to the periphery configuration file
|
| boot.initrd.network.flushBeforeStage2 | Whether to clear the configuration of the interfaces that were set up in
the initrd right before stage 2 takes over
|
| services.druid.log4j | Log4j Configuration for the druid process
|
| services.uwsgi.instance | uWSGI configuration
|
| services.snapserver.settings | Snapserver configuration
|
| services.smartdns.settings | A set that will be generated into configuration file, see the SmartDNS README for details of configuration parameters
|
| services.mautrix-discord.settings | config.yaml configuration as a Nix attribute set
|
| services.boinc.dataDir | The directory in which to store BOINC's configuration and data files.
|
| services.prometheus.globalConfig | Parameters that are valid in all configuration contexts
|
| services.drupal.webserver | Whether to use nginx or caddy for virtual host management
|
| services.invidious-router.settings | Configuration for invidious-router
|
| services.journald.remote.settings | Configuration in the journal-remote configuration file
|
| services.tailscale.serve.configFile | Path to a Tailscale Serve configuration file in JSON format
|
| services.zammad.database.settings | The database.yml configuration file as key value set
|
| services.pipewire.wireplumber.extraConfig | Additional configuration for the WirePlumber daemon when run in
single-instance mode (the default in nixpkgs and currently the only
supported way to run WirePlumber configured via extraConfig)
|
| programs.rush.wrap | Whether to wrap the rush binary with a SUID-enabled wrapper
|
| services.drbd.config | Contents of the drbd.conf configuration file.
|
| services.etcd.extraConf | Etcd extra configuration
|
| services.ceph.enable | Whether to enable Ceph global configuration.
|
| services.esdm.enable | Whether to enable ESDM service configuration.
|
| services.frp.instances.<name>.settings | Frp configuration, for configuration options
see the example of client
or server on github.
|
| services.hylafax.faxqConfig | Attribute set of lines for the global
faxq config file etc/config
|
| services.jitsi-videobridge.config | Videobridge configuration
|
| services.borgmatic.configurations.<name>.repositories | A required list of local or remote repositories with paths and
optional labels (which can be used with the --repository flag to
select a repository)
|
| services.amule.dataDir | Directory holding configuration and by default also incoming and temporary files
|
| services.cjdns.confFile | Ignore all other cjdns options and load configuration from this file.
|
| services.sks.dataDir | Data directory (-basedir) for SKS, where the database and all
configuration files are located (e.g
|
| services.unit.config | Unit configuration in JSON format
|
| services.gitolite.extraGitoliteRc | Extra configuration to append to the default ~/.gitolite.rc
|
| services.collabora-online.settings | Configuration for Collabora Online WebSocket Daemon, see
https://sdk.collaboraonline.com/docs/installation/Configuration.html, or
https://github.com/CollaboraOnline/online/blob/master/coolwsd.xml.in for the default
configuration.
|
| services.pgmanage.tls | These options tell pgmanage where the TLS Certificate and Key files
reside
|
| systemd.sysupdate.transfers | Specify transfers as a set of the names of the transfer files as the
key and the configuration as its value
|
| services.snips-sh.settings | The configuration of snips-sh is done through environment variables,
therefore you must use upper snake case (e.g. SNIPS_HTTP_INTERNAL)
|
| services.hylafax.hfaxdConfig | Attribute set of lines for the global
hfaxd config file etc/hfaxd.conf
|
| services.matrix-synapse.extras | Explicitly install extras provided by matrix-synapse
|
| services.ferm.config | Verbatim ferm.conf configuration.
|
| services.bird.config | BIRD Internet Routing Daemon configuration file.
http://bird.network.cz/
|
| services.komga.stateDir | State and configuration directory Komga will use.
|
| services.radvd.config | The contents of the radvd configuration file.
|
| services.nntp-proxy.users | NNTP-Proxy user configuration
|
| services.caddy.settings | Structured configuration for Caddy to generate a Caddy JSON configuration file
|
| services.livebook.environment | Environment variables to set
|
| services.birdwatcher.settings | birdwatcher configuration, for configuration options see the example on github
|
| services.meshtasticd.settings | The Meshtastic configuration file
|
| services.reaction.settingsFiles | Configuration for reaction, see the wiki.
reaction supports JSON, YAML and JSONnet
|
| programs.nncp.enable | Whether to enable NNCP (Node to Node copy) utilities and configuration.
|
| services.exim.config | Verbatim Exim configuration
|
| programs.nano.nanorc | The system-wide nano configuration
|
| services.prosody.log | Logging configuration
|
| services.prosody.muc | Multi User Chat (MUC) configuration
|
| services.realm.config | The realm configuration, see https://github.com/zhboner/realm#overview for documentation.
|
| services.rsnapshot.extraConfig | rsnapshot configuration option in addition to the defaults from
rsnapshot and this module
|
| services.fluidd.nginx | Extra configuration for the nginx virtual host of fluidd.
|
| services.gancio.nginx | Extra configuration for the nginx virtual host of gancio.
|
| services.nfs.extraConfig | Extra nfs-utils configuration.
|
| virtualisation.libvirtd.qemu.verbatimConfig | Contents written to the qemu configuration file, qemu.conf
|
| services.freshrss.webserver | Whether to use nginx or caddy for virtual host management
|
| services.dokuwiki.webserver | Whether to use nginx or caddy for virtual host management
|
| services.suricata.settings.includes | Files to include in the suricata configuration
|
| services.bird.autoReload | Whether bird should be automatically reloaded when the configuration changes.
|
| services.tika.configFile | The Apache Tika configuration (XML) file to use.
|
| services.ndppd.configFile | Path to configuration file.
|
| system.autoUpgrade.flake | The Flake URI of the NixOS configuration to build
|
| services.wivrn.config.json | Configuration for WiVRn
|
| services.dashy.settings | Settings serialized into user-data/conf.yml before build
|
| boot.loader.grub.fsIdentifier | Determines how GRUB will identify devices when generating the
configuration file
|
| services.rabbitmq.config | Verbatim advanced configuration file contents using the Erlang syntax
|
| services.caddy.logFormat | Configuration for the default logger
|
| programs.nixbit.enable | Whether to enable Nixbit configuration.
|
| services.cfssl.dbConfig | Certificate db configuration file
|
| boot.loader.grub.extraConfig | Additional GRUB commands inserted in the configuration file
just before the menu entries.
|
| services.caddy.resume | Use saved config, if any (and prefer over any specified configuration passed with --config).
|
| services.diod.extraConfig | Extra configuration options for diod.conf.
|
| services.i2pd.enable | Enables I2Pd as a running service upon activation
|
| services.nscd.config | Configuration to use for Name Service Cache Daemon
|
| services.sogo.extraConfig | Extra sogo.conf configuration lines
|
| services.frr.configFile | Configuration file to use for FRR
|
| xdg.portal.wlr.enable | Whether to enable desktop portal for wlroots-based desktops
|
| services.displayManager.dms-greeter.compositor.customConfig | Custom compositor configuration to use for the greeter session
|
| services.displayManager.lemurs.settings | Configuration for lemurs, provided as a Nix attribute set and automatically
serialized to TOML
|
| services.freeswitch.enableReload | Issue the reloadxml command to FreeSWITCH when configuration directory changes (instead of restart)
|
| services.restic.backups.<name>.rcloneConfigFile | Path to the file containing rclone configuration
|
| services.wordpress.sites.<name>.extraConfig | Any additional text to be appended to the wp-config.php
configuration file
|
| services.postsrsd.settings.socketmap | Listener configuration in socket map format native to Postfix configuration.
|
| services.freeswitch.configTemplate | Configuration template to use
|
| services.librespeed.settings | LibreSpeed configuration written as Nix expression
|
| services.mautrix-telegram.settings | config.yaml configuration as a Nix attribute set
|
| services.jicofo.config | Contents of the jicofo.conf configuration file.
|
| services.uhub.<name>.plugins | Uhub plugin configuration.
|
| services.mimir.configFile | Specify a configuration file that Mimir should use.
|
| services.nipap.enable | Whether to enable global Neat IP Address Planner (NIPAP) configuration.
|
| services.v2ray.config | The configuration object
|
| services.netbox.extraConfig | Additional lines of configuration appended to the configuration.py
|
| services.anubis.defaultOptions.botPolicy | Anubis policy configuration in Nix syntax
|
| services.homer.settings | Settings serialized into config.yml before build
|
| services.hylafax.modems.<name>.config | Attribute set of values for the given modem
|
| services.blockbook-frontend.<name>.extraConfig | Additional configurations to be appended to coin.conf
|
| services.ncps.cache.dataPath | The local directory for storing configuration and cached store paths
|
| services.h2o.settings | Configuration for H2O (see https://h2o.examp1e.net/configure.html)
|
| services.dspam.extraConfig | Additional dspam configuration.
|
| services.dante.config | Contents of Dante's configuration file
|
| security.sudo.extraConfig | Extra configuration text appended to sudoers.
|
| services.hitch.extraConfig | Additional configuration lines
|
| services.soju.extraConfig | Lines added verbatim to the generated configuration file.
|
| services.ngircd.config | The ngircd configuration (see ngircd.conf(5)).
|
| services.loki.configFile | Specify a configuration file that Loki should use
|
| services.tempo.configFile | Specify a path to a configuration file that Tempo should use.
|
| services.redis.servers | Configuration of multiple redis-server instances.
|
| services.anubis.instances.<name>.botPolicy | Anubis policy configuration in Nix syntax
|
| services.pleroma.configs | Pleroma public configuration
|
| services.wordpress.webserver | Whether to use apache2 or nginx for virtual host management
|
| services.hydra.extraConfig | Extra lines for the Hydra configuration.
|
| programs.yazi.settings | Configuration included in $YAZI_CONFIG_HOME.
|
| security.sudo-rs.extraConfig | Extra configuration text appended to sudoers.
|
| programs.xfconf.enable | Whether to enable Xfconf, the Xfce configuration storage system.
|
| services.httpd.user | User account under which httpd children processes run
|
| programs.throne.enable | Whether to enable Throne, a GUI proxy configuration manager.
|
| services._3proxy.confFile | Ignore all other 3proxy options and load configuration from this file.
|
| services.fireqos.config | The FireQOS configuration.
|
| services.mihomo.configFile | Configuration file to use.
|
| services.tlp.extraConfig | Verbatim additional configuration variables for TLP
|
| services.saned.extraConfig | Extra saned configuration lines.
|
| services.ebusd.scanconfig | Pick CSV config files matching initial scan ("none" or empty for no initial scan message, "full" for full scan, or a single hex address to scan, default is to send a broadcast ident message)
|
| services.misskey.reverseProxy.webserver.caddy | Extra configuration for the caddy virtual host of Misskey
|
| services.strongswan-swanctl.includes | Extra configuration files to include in the swanctl configuration
|
| services.misskey.reverseProxy.webserver.nginx | Extra configuration for the nginx virtual host of Misskey
|
| services.netbox.settings | Configuration options to set in configuration.py
|
| services.n8n.settings | Configuration for n8n, see https://docs.n8n.io/hosting/environment-variables/configuration-methods/
for supported values.
|
| services.flexget.config | The YAML configuration for FlexGet.
|
| services.bind.extraConfig | Extra lines to be added verbatim to the generated named configuration file.
|
| services.jigasi.config | Contents of the sip-communicator.properties configuration file for jigasi.
|
| services.knot.settings | Extra configuration as nix values.
|
| services.quassel.dataDir | The directory holding configuration files, the SQlite database and the SSL Cert.
|
| services.varnish.config | Verbatim default.vcl configuration.
|
| services.sunshine.applications | Configuration for applications to be exposed to Moonlight
|
| services.meshcentral.settings | Settings for MeshCentral
|
| services.hylafax.commonModemConfig | Attribute set of default values for
modem config files etc/config.*
|
| services.nghttpx.backends.*.params.dns | Name resolution of a backends host name is done at start up,
or configuration reload
|
| services.redmine.settings | Redmine configuration (configuration.yml)
|
| services.ceph.osd.extraConfig | Extra configuration to add to the OSD section.
|
| services.lemmy.settings | Lemmy configuration
|
| services.ceph.mon.extraConfig | Extra configuration to add to the monitor section.
|
| services.conman.config | The configuration object
|
| services.aesmd.settings | AESM configuration
|
| programs.bat.settings | Parameters to be written to the system-wide bat configuration file.
|
| services.cfssl.configFile | Path to configuration file
|
| services.cloud-init.config | raw cloud-init configuration
|
| services.ceph.mds.extraConfig | Extra configuration to add to the MDS section.
|
| services.redmine.extraEnv | Extra configuration in additional_environment.rb
|
| services.rspamd.locals | Local configuration files, written into /etc/rspamd/local.d/{name}.
|
| services.pdnsd.extraConfig | Extra configuration directives that should be added to
pdnsd.conf.
|
| services.tomcat.serverXml | Verbatim server.xml configuration
|
| services.znapzend.zetup | Znapzend configuration.
|
| services.stash.settings | Stash configuration
|
| xdg.portal.wlr.settings | Configuration for xdg-desktop-portal-wlr
|
| networking.supplicant.<name>.configFile.path | External wpa_supplicant.conf configuration file
|
| services.mpd.settings | Configuration for MPD
|
| services.znc.config | Configuration for ZNC, see
https://wiki.znc.in/Configuration for details
|
| services.gitea.useWizard | Do not generate a configuration and use gitea' installation wizard instead
|
| services.coturn.extraConfig | Additional configuration options
|
| services.httpd.phpOptions | Options appended to the PHP configuration file php.ini.
|
| hardware.pcmcia.config | Path to the configuration file which maps the memory, IRQs
and ports used by the PCMCIA hardware.
|
| networking.useDHCP | Whether to use DHCP to obtain an IP address and other
configuration for all network interfaces that do not have any manually
configured IPv4 addresses.
|
| services.couchdb.argsFile | vm.args configuration
|
| services.bacula-fd.port | This specifies the port number on which the Client listens for
Director connections
|
| services.homer.enable | Whether to enable A dead simple static HOMepage for your servER to keep your services on hand, from a simple yaml configuration file.
.
|
| services.gocd-agent.agentConfig | Agent registration configuration.
|
| services.gollum.extraConfig | Content of the configuration file
|
| services.knot.checkConfig | Toggles the configuration test at build time
|
| services.httpd.configFile | Override the configuration file used by Apache
|
| services.caddy.extraConfig | Additional lines of configuration appended to the automatically
generated Caddyfile.
|
| services.odoo.settings | Odoo configuration settings
|
| services.tomcat.baseDir | Location where Tomcat stores configuration files, web applications
and logfiles
|
| services.ntfy-sh.settings | Configuration for ntfy.sh, supported values are here.
|
| nixpkgs.hostPlatform | Specifies the platform where the NixOS configuration will run
|
| i18n.inputMethod.kime.extraConfig | extra kime configuration
|
| services.rke2.environmentVars | Environment variables for configuring the rke2 service/agent
|
| services.gitlab.pages.settings | Configuration options to set in the GitLab Pages config
file
|
| services.fastnetmon-advanced.settings | Extra configuration options to declaratively load into FastNetMon Advanced
|
| services.n8n.webhookUrl | WEBHOOK_URL for n8n, in case we're running behind a reverse proxy
|
| services.postfix.config | The main.cf configuration file as key value set.
|
| services.envoy.settings | Specify the configuration for Envoy in Nix.
|
| services.ceph.client.enable | Whether to enable Ceph client configuration.
|
| services.haproxy.config | Contents of the HAProxy configuration file,
haproxy.conf.
|
| programs.nncp.secrets | A list of paths to NNCP configuration files that should not be
in the Nix store
|
| services.ceph.mgr.extraConfig | Extra configuration to add to the global section for manager daemons.
|
| services.ceph.extraConfig | Extra configuration to add to the global section
|
| services.bee.settings | Ethereum Swarm Bee configuration
|
| services.nagios.extraConfig | Configuration to add to /etc/nagios.cfg
|
| services.part-db.poolConfig | Options for the PartDB PHP pool
|
| services.netdata.config | netdata.conf configuration as nix attributes. cannot be combined with configText.
|
| services.statsd.extraConfig | Extra configuration options for statsd
|
| services.soju.configFile | Path to config file
|
| services.murmur.extraConfig | Extra configuration to put into murmur.ini.
|
| services.v2ray.configFile | The absolute path to the configuration file
|
| services.xandikos.nginx | Configuration for nginx reverse proxy.
|
| services.mautrix-meta.instances.<name>.settings | config.yaml configuration as a Nix attribute set
|
| programs.nekoray.enable | Whether to enable nekoray, a GUI proxy configuration manager.
|
| services.komga.settings | Komga configuration
|
| programs.openvpn3.netcfg | Network configuration
|
| services.druid.commonConfig | (key=value) Configuration to be written to common.runtime.properties
|
| services.angrr.settings | Global configuration for angrr in TOML format.
|
| services.confd.enable | Whether to enable confd, a service to manage local application configuration files using templates and data from etcd/consul/redis/zookeeper.
|
| services.dunst.settings | Dunst configuration, see dunst(5)
|
| services.ifm.settings | Configuration of the IFM service
|
| services.movim.podConfig | Pod configuration (values from php daemon.php config --help)
|
| services.snipe-it.poolConfig | Options for the snipe-it PHP pool
|
| services.mysql.configFile | Override the configuration file used by MySQL
|
| services.sslh.settings | sslh configuration
|
| containers.<name>.config | A specification of the desired configuration of this
container, as a NixOS module.
|
| services.zrepl.settings | Configuration for zrepl
|
| services.gitea-actions-runner.instances.<name>.settings | Configuration for act_runner daemon
|
| services.authelia.instances.<name>.secrets | It is recommended you keep your secrets separate from the configuration
|
| services.interception-tools.udevmonConfig | String of udevmon YAML configuration, or path to a udevmon YAML
configuration file.
|
| services.opencloud.environment | Extra environment variables to set for the service
|
| services.athens.extraConfig | Extra configuration options for the athens config file.
|
| services.davis.poolConfig | Options for the davis PHP pool
|
| services.kubo.settings | Attrset of daemon configuration
|
| services.dnsmasq.configFile | Path to the configuration file of dnsmasq.
|
| services.howdy.settings | Howdy configuration file
|
| services.gonic.settings | Configuration for Gonic, see https://github.com/sentriz/gonic#configuration-options for supported values.
|
| services.davmail.config | Davmail configuration
|
| services.chrony.extraConfig | Extra configuration directives that should be added to
chrony.conf
|
| programs.less.configFile | Path to lesskey configuration file.
configFile takes precedence over commands,
clearDefaultCommands, lineEditingKeys, and
envVariables.
|
| services.clatd.settings | Configuration of clatd
|
| services.gitDaemon.options | Extra configuration options to be passed to Git daemon.
|
| services.syslog-ng.extraConfig | Configuration added to the end of syslog-ng.conf.
|
| services.plikd.settings | Configuration for plikd, see https://github.com/root-gg/plik/blob/master/server/plikd.cfg
for supported values.
|
| services.nats.settings | Declarative NATS configuration
|
| services.solanum.config | Solanum IRC daemon configuration file.
check https://github.com/solanum-ircd/solanum/blob/main/doc/reference.conf for all options.
|
| services.omnom.settings | Configuration options for the /etc/omnom/config.yml file.
|
| services.monero.extraConfig | Extra lines to be added verbatim to monerod configuration.
|
| services.mainsail.nginx | Extra configuration for the nginx virtual host of mainsail.
|
| services.netbox.enableLdap | Enable LDAP-Authentication for Netbox
|
| services.speechd.clients | Client specific configuration.
|
| services.slskd.settings | Application configuration for slskd
|
| services.riemann.config | Contents of the Riemann configuration file
|
| services.nginx.streamConfig | Configuration lines to be set inside the stream block.
|
| services.nginx.eventsConfig | Configuration lines to be set inside the events block.
|
| services.nipap.settings | Configuration options to set in /etc/nipap/nipap.conf.
|
| services.wivrn.config.enable | Whether to enable configuration for WiVRn.
|
| services.xray.settings | The configuration object
|
| virtualisation.lxc.lxcfs.enable | This enables LXCFS, a FUSE filesystem for LXC
|
| virtualisation.vswitch.resetOnStart | Whether to reset the Open vSwitch configuration database to a default
configuration on every start of the systemd ovsdb.service.
|
| boot.kernelPatches | A list of additional patches to apply to the kernel
|
| services.borgmatic.configurations.<name>.source_directories | List of source directories and files to backup
|
| services.displayManager.dms-greeter.configFiles | List of DankMaterialShell configuration files to copy into the greeter
data directory at /var/lib/dms-greeter
|
| services.traccar.environmentFile | File containing environment variables to substitute in the configuration before starting Traccar
|
| services.cgit.<name>.settings | cgit configuration, see cgitrc(5)
|
| programs.yazi.settings.vfs | Configuration included in vfs.toml
|
| services.karma.settings | Karma dashboard configuration as nix attributes
|
| services.jitsi-meet.config | Client-side web application settings that override the defaults in config.js
|
| boot.loader.grub.extraPerEntryConfig | Additional GRUB commands inserted in the configuration file
at the start of each NixOS menu entry.
|
| services.gitweb.extraConfig | Verbatim configuration text appended to the generated gitweb.conf file.
|
| boot.extraModprobeConfig | Any additional configuration to be appended to the generated
modprobe.conf
|
| programs.gtklock.config | Configuration for gtklock
|
| services.actkbd.extraConfig | Literal contents to append to the end of actkbd configuration file.
|
| services.hatsu.settings | Configuration for Hatsu, see
|
| services.corerad.configFile | Path to CoreRAD TOML configuration file.
|
| services.gitea.settings | Gitea configuration
|
| power.ups.ups.<name>.directives | List of configuration directives for this UPS.
|
| services.bacula-dir.extraConfig | Extra configuration for Bacula Director Daemon.
|
| services.pdnsd.globalConfig | Global configuration that should be added to the global directory
of pdnsd.conf.
|
| services.umurmur.configFile | Configuration file, default is generated from config.service.umurmur.settings
|
| services.salt.master.enable | Whether to enable Salt configuration management system master service.
|
| services.tuned.settings | Configuration for TuneD
|
| services.mbpfan.settings | INI configuration for Mbpfan.
|
| services.pdnsd.serverConfig | Server configuration that should be added to the server directory
of pdnsd.conf.
|
| services.speechd.modules | Configuration files of output modules.
|
| services.uhub.<name>.settings | Configuration of uhub
|
| services.salt.minion.enable | Whether to enable Salt configuration management system minion service.
|
| services.phpfpm.phpOptions | Options appended to the PHP configuration file php.ini.
|
| services.spiped.config | Configuration for a secure pipe daemon
|
| services.munin-node.extraConfig | munin-node.conf extra configuration
|
| services.xmrig.settings | XMRig configuration
|
| services.webdav.configFile | Path to config file
|
| containers.<name>.flake | The Flake URI of the NixOS configuration to use for the container
|
| containers.<name>.path | As an alternative to specifying
config, you can specify the path to
the evaluated NixOS system configuration, typically a
symlink to a system profile.
|
| services.netbird.clients.<name>.config | Additional configuration that exists before the first start and
later overrides the existing values in config.json
|
| services.netbird.tunnels.<name>.config | Additional configuration that exists before the first start and
later overrides the existing values in config.json
|
| services.hostapd.radios.<name>.dynamicConfigScripts | All of these scripts will be executed in lexicographical order before hostapd
is started, right after the global segment was generated and may dynamically
append global options the generated configuration file
|
| services.displayManager.dms-greeter.configHome | Path to a user's home directory from which to copy DankMaterialShell
configuration files
|
| services.crossfire-server.configFiles | Text to append to the corresponding configuration files
|
| security.doas.extraConfig | Extra configuration text appended to doas.conf
|
| programs.bat.extraPackages | Extra bat scripts to be added to the system configuration.
|
| programs.ssh.extraConfig | Extra configuration text prepended to ssh_config
|
| services.dolibarr.stateDir | State and configuration directory dolibarr will use.
|
| services.cloud-init.settings | Structured cloud-init configuration.
|
| services.consul.extraConfig | Extra configuration options which are serialized to json and added
to the config.json file.
|
| services.bind.extraOptions | Extra lines to be added verbatim to the options section of the
generated named configuration file.
|
| services.kresd.extraConfig | Extra lines to be added verbatim to the generated configuration file
|
| services.ejabberd.ctlConfig | Configuration of ejabberdctl
|
| services.bitlbee.configDir | Specify an alternative directory to store all the per-user configuration
files.
|
| services.atalkd.configFile | Optional path to a custom atalkd.conf file
|
| services.gatus.settings | Configuration for Gatus
|
| services.conman.configFile | The absolute path to the configuration file
|
| services.ulogd.settings | Configuration for ulogd
|
| services.nfs.settings | General configuration for NFS daemons and tools
|
| services.nvme-rs.settings | Configuration for nvme-rs in TOML format
|
| services.pppd.peers.<name>.config | pppd configuration for this peer, see the pppd(8) man page.
|
| services.opentsdb.config | The contents of OpenTSDB's configuration file
|
| services.moodle.poolConfig | Options for the Moodle PHP pool
|
| services.slurm.mpi.extraMpiConfig | Extra configuration for that will be added to mpi.conf.
|
| services.syncoid.service | Systemd configuration common to all syncoid services.
|
| services.tempo.settings | Specify the configuration for Tempo in Nix
|
| services.nagios.mainConfigFile | If non-null, overrides the main configuration file of Nagios.
|
| services.searx.uwsgiConfig | Additional configuration of the uWSGI vassal running searx
|
| services.zabbixWeb.extraConfig | Additional configuration to be copied verbatim into zabbix.conf.php.
|
| services.vector.settings | Specify the configuration for Vector in Nix.
|
| programs.yazi.settings.yazi | Configuration included in yazi.toml
|
| services.ejabberd.loadDumps | Configuration dumps that should be loaded on the first startup
|
| services.cyrus-imap.cyrusConfigFile | Path to the configuration file used for Cyrus.
|
| boot.initrd.verbose | Verbosity of the initrd
|
| services.couchdb.extraConfig | Extra configuration options for CouchDB
|
| boot.initrd.unl0kr.settings | Configuration for unl0kr
|
| hardware.display.outputs | Hardware/kernel-level configuration of specific outputs.
|
| security.please.settings | Please configuration
|
| security.krb5.settings | Structured contents of the krb5.conf file
|
| programs.msmtp.extraConfig | Extra lines to add to the msmtp configuration verbatim
|
| services.cjdns.extraConfig | Extra configuration, given as attrs, that will be merged recursively
with the rest of the JSON generated by this module, at the root node.
|
| services.garage.settings | Garage configuration, see https://garagehq.deuxfleurs.fr/documentation/reference-manual/configuration/ for reference.
|
| services.trilium-server.nginx | Configuration for nginx reverse proxy.
|
| services.selfoss.extraConfig | Extra configuration added to config.ini
|
| services.umami.settings | Additional configuration (environment variables) for Umami, see
https://umami.is/docs/environment-variables for supported values.
|
| services.riemann-dash.config | Contents added to the end of the riemann-dash configuration file.
|
| services.ntopng.configText | Overridable configuration file contents to use for ntopng
|
| services.mihomo.tunMode | Whether to enable necessary permission for Mihomo's systemd service for TUN mode to function properly
|
| services.trilium-server.dataDir | The directory storing the notes database and the configuration.
|
| services.xserver.dpi | Force global DPI resolution to use for X server
|
| services.xtreemfs.dir.replication.extraConfig | Configuration of XtreemFS DIR replication plugin
|
| services.xtreemfs.mrc.replication.extraConfig | Configuration of XtreemFS MRC replication plugin
|
| services.yggdrasil.openMulticastPort | Whether to open the UDP port used for multicast peer discovery
|
| networking.wg-quick.interfaces.<name>.configFile | wg-quick .conf file, describing the interface
|
| services.authelia.instances.<name>.settingsFiles | Here you can provide authelia with configuration files or directories
|
| boot.loader.grub.mirroredBoots | Mirror the boot configuration to multiple partitions and install grub
to the respective devices corresponding to those partitions.
|
| services.hebbot.settings | Configuration for Hebbot, see, for examples:
|
| services.cyrus-imap.imapdConfigFile | Path to the configuration file used for cyrus-imap.
|
| services.kavita.settings | Kavita configuration options, as configured in appsettings.json.
|
| services.graylog.extraConfig | Any other configuration options you might want to add
|
| services.gancio.settings | Configuration for Gancio, see https://gancio.org/install/config for supported values.
|
| services.lact.enable | Whether to enable LACT, a tool for monitoring, configuring and overclocking GPUs.
If you are on an AMD GPU, it is recommended to enable overdrive mode by using
hardware.amdgpu.overdrive.enable = true; in your configuration
|
| programs.direnv.settings | Direnv configuration
|
| services.rsyncd.settings | Configuration for rsyncd
|
| services.sympa.web.server | The webserver used for the Sympa web interface
|
| services.mongodb.extraConfig | MongoDB extra configuration in YAML format
|
| services.oxidized.enable | Whether to enable the oxidized configuration backup service.
|
| services.nvme-rs.settings.email | Email notification configuration
|
| services.monica.poolConfig | Options for the monica PHP pool
|
| services.kea.dhcp4.settings | Kea DHCP4 configuration as an attribute set, see https://kea.readthedocs.io/en/kea-3.0.2/arm/dhcp4-srv.html.
|
| services.frigate.checkConfig | Whether to check the configuration at build time.
|
| services.ytdl-sub.instances | Configuration for ytdl-sub instances.
|
| services.znc.configFile | Configuration file for ZNC
|
| services.zabbixWeb.poolConfig | Options for the Zabbix PHP pool
|
| services.kea.dhcp6.settings | Kea DHCP6 configuration as an attribute set, see https://kea.readthedocs.io/en/kea-3.0.2/arm/dhcp6-srv.html.
|
| services.blocky.settings | Blocky configuration
|
| services.druid.broker.config | (key=value) Configuration to be written to runtime.properties of the druid Druid Broker
https://druid.apache.org/docs/latest/configuration/index.html
|
| services.erigon.settings | Configuration for Erigon
Refer to https://github.com/ledgerwatch/erigon#usage for details on supported values.
|
| services.greetd.settings | greetd configuration (documentation)
as a Nix attribute set.
|
| services.gobgpd.settings | GoBGP configuration
|
| image.repart.partitions | Specify partitions as a set of the names of the partitions with their
configuration as the key.
|
| hardware.system76.enableAll | Whether to enable all recommended configuration for system76 systems.
|
| services.doh-server.configFile | The config file for the doh-server
|
| services.druid.router.config | (key=value) Configuration to be written to runtime.properties of the druid Druid Router
https://druid.apache.org/docs/latest/configuration/index.html
|
| services.fluent-bit.graceLimit | The grace time limit
|
| services.rauc.settings | Rauc configuration that will be converted to INI
|
| services.nncp.daemon.enable | Whether to enable NNCP TCP synronization daemon
|
| services.miniflux.config | Configuration for Miniflux, refer to
https://miniflux.app/docs/configuration.html
for documentation on the supported values.
|
| services.soft-serve.settings | The contents of the configuration file for soft-serve
|
| services.qdrant.settings | Configuration for Qdrant
Refer to https://github.com/qdrant/qdrant/blob/master/config/config.yaml for details on supported values.
|
| services.rshim.config | Structural setting for the rshim configuration file
(/etc/rshim.conf)
|
| services.spotifyd.config | (Deprecated) Configuration for Spotifyd
|
| services.sniproxy.config | sniproxy.conf configuration excluding the daemon username and pid file.
|
| services.prosody.checkConfig | Check the configuration file with prosodyctl check config
|
| services.gerrit.settings | Gerrit configuration
|
| services.weblate.extraConfig | Text to append to settings.py Weblate configuration file.
|
| services.zeyple.settings | Zeyple configuration. refer to
https://github.com/infertux/zeyple/blob/master/zeyple/zeyple.conf.example
for details on supported values.
|
| services.uptime.usesRemoteMongo | Whether the configuration file specifies a remote mongo instance
|
| services.postfix.extraConfig | Extra lines to be added verbatim to the main.cf configuration file.
|
| programs.yazi.settings.theme | Configuration included in theme.toml
|
| services.lemmy.database.uri | The connection URI to use
|
| services.gitlab.extraShellConfig | Extra configuration to merge into shell-config.yml
|
| services.aria2.settings.conf-path | Configuration file path.
|
| security.auditd.settings | auditd configuration file contents
|
| services.etcd.initialCluster | Etcd initial cluster configuration for bootstrapping.
|
| services.opendkim.configFile | Additional opendkim configuration as a file.
|
| services.printing.extraConf | Extra contents of the configuration file of the CUPS daemon
(cupsd.conf).
|
| services.resilio.enable | If enabled, start the Resilio Sync daemon
|
| services.mopidy.settings | The configuration that Mopidy should use
|
| services.openssh.settings | Configuration for sshd_config(5).
|
| services.strfry.settings | Configuration options to set for the Strfry service
|
| services.mchprs.settings | Configuration for MCHPRS via Config.toml
|
| services.nncp.caller.enable | Whether to enable cron'ed NNCP TCP daemon caller
|
| services.snapper.configs | Subvolume configuration
|
| services.oxidized.configFile | Path to the oxidized configuration file.
|
| services.xray.settingsFile | The absolute path to the configuration file
|
| services.zenohd.settings | Config options for zenoh.json5 configuration file
|
| services.httpd.virtualHosts | Specification of the virtual hosts served by Apache
|
| services.kmonad.keyboards | Keyboard configuration.
|
| services.dovecot2.configFile | Config file used for the whole dovecot configuration.
|
| programs.openvpn3.log-service | Log service configuration
|
| services.icecast.extraConfig | Extra configuration added to icecast.xml inside the <icecast> element.
|
| services.chhoto-url.settings | Configuration of Chhoto URL
|
| security.krb5.settings.module | Modules to obtain Kerberos configuration from.
|
| services.caddy.globalConfig | Additional lines of configuration appended to the global config section
of the Caddyfile
|
| services.doh-server.settings | Configuration of doh-server in toml
|
| services.ejabberd.configFile | Configuration file for ejabberd in YAML format
|
| programs.schroot.profiles | Custom configuration profiles for schroot.
|
| security.sudo.extraRules | Define specific rules to be in the sudoers file
|
| services.gokapi.settings | Configuration settings for the generated config json file
|
| services.moodle.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts
|
| services.part-db.settings | Options for part-db configuration
|
| services.oauth2-proxy.keyFile | oauth2-proxy allows passing sensitive configuration via environment variables
|
| services.nfs.idmapd.settings | libnfsidmap configuration
|
| services.pihole-ftl.settings | Configuration options for pihole.toml
|
| services.prosody.muc.*.extraConfig | Additional MUC specific configuration
|
| services.sftpgo.settings.smtp | SMTP configuration section.
|
| services.routedns.configFile | Path to RouteDNS TOML configuration file.
|
| services.nsd.zones | Define your zones here
|
| services.nagios.cgiConfigFile | Derivation for the configuration file of Nagios CGI scripts
that can be used in web servers for running the Nagios web interface.
|
| services.porn-vault.settings | Configuration for Porn-Vault
|
| services.pghero.settings | PgHero configuration
|
| services.litellm.settings | Configuration for LiteLLM
|
| services.nagios.objectDefs | A list of Nagios object configuration files that must define
the hosts, host groups, services and contacts for the
network that you want Nagios to monitor.
|
| services.printing.clientConf | The contents of the client configuration.
(client.conf)
|
| services.nagios.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts
|
| services.zerobin.extraConfig | Extra configuration to be appended to the 0bin config file
(see https://0bin.readthedocs.org/en/latest/en/options.html)
|
| services.kea.dhcp-ddns.settings | Kea DHCP-DDNS configuration as an attribute set, see https://kea.readthedocs.io/en/kea-3.0.2/arm/ddns.html.
|
| services.xserver.extraConfig | Additional contents (sections) included in the X server configuration file
|
| services.yggdrasil-jumper.retrieveListenAddresses | Automatically retrieve listen addresses from the Yggdrasil router configuration
|
| services.crab-hole.configFile | The config file of crab-hole
|
| security.sudo-rs.extraRules | Define specific rules to be in the sudoers file
|
| services.amule.settings | Free form attribute set for aMule settings
|
| programs.lazygit.settings | Lazygit configuration
|
| services.couchdb.configFile | Configuration file for persisting runtime changes
|
| services.rspamd.postfix.config | Addon to postfix configuration
|
| services.tomcat.extraConfigFiles | Extra configuration files to pull into the tomcat conf directory
|
| services.netbox.ldapConfigPath | Path to the Configuration-File for LDAP-Authentication, will be loaded as ldap_config.py
|
| services.pptpd.extraPptpdOptions | Adds extra lines to the pptpd configuration file.
|
| services.pcscd.readerConfigs | Configuration for devices that aren't hotpluggable
|
| services.rkvm.server.settings | Structured server daemon configuration
|
| services.logstash.inputConfig | Logstash input configuration.
|
| services.rkvm.client.settings | Structured client daemon configuration
|
| services.tuned.ppdSettings.main | Core configuration for power-profiles-daemon support.
|
| services.dex.settings | The available options can be found in
the example configuration
|
| services.evcc.settings | evcc configuration as a Nix attribute set
|
| services.waagent.settings | The waagent.conf configuration, see https://learn.microsoft.com/en-us/azure/virtual-machines/extensions/agent-linux for documentation.
|
| services.zipline.settings | Configuration of Zipline
|
| services.zookeeper.extraConf | Extra configuration for Zookeeper.
|
| services.xl2tpd.extraXl2tpOptions | Adds extra lines to the xl2tpd configuration file.
|
| services.dependency-track.settings."alpine.oidc.issuer" | Defines the issuer URL to be used for OpenID Connect
|
| services.yggdrasil-jumper.appendListenAddresses | Append Yggdrasil router configuration with listeners on loopback
addresses (127.0.0.1) and preselected ports to support peering
using client-server protocols like quic and tls
|
| services.onlyoffice.securityNonceFile | File holding nginx configuration that sets the nonce used to create secret links
|
| services.prometheus.exporters.mikrotik.configFile | Path to a mikrotik exporter configuration file
|
| services.gateone.settingsDir | Path of configuration files for GateOne.
|
| services.influxdb.extraConfig | Extra configuration options for influxdb
|
| services.crowdsec.localConfig | The configuration for a crowdsec security engine.
|
| services.deluge.config | Deluge core configuration for the core.conf file
|
| programs.regreet.settings | ReGreet configuration file
|
| hardware.sane.brscan4.enable | When enabled, will automatically register the "brscan4" sane
backend and bring configuration files to their expected location.
|
| services.firewalld.zones | firewalld zone configuration files
|
| services.darkhttpd.extraArgs | Additional configuration passed to the executable.
|
| services.davfs2.settings | Extra settings appended to the configuration of davfs2
|
| services.nfs.server.extraNfsdConfig | Extra configuration options for the [nfsd] section of /etc/nfs.conf.
|
| services.opkssh.providers | OpenID Connect providers configuration
|
| services.traefik.static.file | Path to Traefik's static configuration file.
|
| services.molly-brown.settings | molly-brown configuration
|
| services.syslog-ng.configHeader | The very first lines of the configuration file
|
| services.samba.settings | Configuration file for the Samba suite in ini format
|
| services.telegraf.extraConfig | Extra configuration options for telegraf
|
| services.mealie.settings | Configuration of the Mealie service
|
| services.riemann-dash.dataDir | Location of the riemann-base dir
|
| services.outline.smtp.tlsCiphers | Override SMTP cipher configuration.
|
| services.xandikos.nginx.hostName | The hostname use to setup the virtualhost configuration
|
| services.veilid.settings | Build veilid-server.conf with nix expression
|
| networking.wireless.secretsFile | File consisting of lines of the form varname=value
to define variables for the wireless configuration
|
| services.openssh.listenAddresses | List of addresses and ports to listen on (ListenAddress directive
in config)
|
| services.peering-manager.extraConfig | Additional lines of configuration appended to the configuration.py
|
| services.mautrix-discord.environmentFile | File containing environment variables to substitute when copying the configuration
out of Nix store to the services.mautrix-discord.dataDir
|
| services.charybdis.config | Charybdis IRC daemon configuration file.
|
| programs.yazi.settings.keymap | Configuration included in keymap.toml
|
| services.autobrr.settings | Autobrr configuration options
|
| services.klipper.settings | Configuration for Klipper
|
| services.qui.settings | qui configuration options
|
| services.readeck.settings | Additional configuration for Readeck, see
https://readeck.org/en/docs/configuration
for supported values.
|
| services.taler.settings | Global configuration options for the taler config file
|
| services.nginx.config | Verbatim nginx.conf configuration
|
| services.misskey.settings | Configuration for Misskey, see
example.yml
for all supported options.
|
| services.slurm.extraCgroupConfig | Extra configuration for cgroup.conf
|
| services.maubot.settings | YAML settings for maubot
|
| services.zitadel.settings | Contents of the runtime configuration file
|
| services.vikunja.settings | Vikunja configuration
|
| services.kea.dhcp6.configFile | Kea DHCP6 configuration as a path, see https://kea.readthedocs.io/en/kea-3.0.2/arm/dhcp6-srv.html
|
| services.uptime-kuma.settings | Additional configuration for Uptime Kuma, see
https://github.com/louislam/uptime-kuma/wiki/Environment-Variables
for supported values.
|
| services.kea.dhcp4.configFile | Kea DHCP4 configuration as a path, see https://kea.readthedocs.io/en/kea-3.0.2/arm/dhcp4-srv.html
|
| services.kea.ctrl-agent.settings | Kea Control Agent configuration as an attribute set, see https://kea.readthedocs.io/en/kea-3.0.2/arm/agent.html.
|
| services.webhook.hooks | The actual configuration of which hooks will be served
|
| systemd.network.links.<name>.extraConfig | Extra configuration append to unit
|
| services.prometheus.exporters.snmp.enableConfigCheck | Whether to run a correctness check for the configuration file
|
| services.corteza.settings | Configuration for Corteza, will be passed as environment variables
|
| services.factorio.stateDirName | Name of the directory under /var/lib holding the server's data
|
| programs.schroot.settings | Schroot configuration settings
|
| services.bacula-sd.director.<name>.tls | TLS Options for the Director in this Configuration.
|
| services.bitcoind.<name>.configFile | The configuration file path to supply bitcoind.
|
| programs.steam.package | The Steam package to use
|
| services.go-httpbin.settings | Configuration of go-httpbin
|
| services.bacula-fd.extraClientConfig | Extra configuration to be passed in Client directive.
|
| services.kimai.sites.<name>.poolConfig | Options for the Kimai PHP pool
|
| services.bacula-fd.director.<name>.tls | TLS Options for the Director in this Configuration.
|
| services.peertube.settings | Configuration for peertube.
|
| services.movim.h2o.serverAliases | Additional names of virtual hosts served by this virtual host
configuration.
|
| services.reaction.checkConfig | Check the syntax of the configuration files at build time
|
| services.saslauthd.config | Configuration to use for Cyrus SASL authentication daemon.
|
| services.quickwit.settings | Quickwit configuration.
|
| services.outline.cdnUrl | If using a Cloudfront/Cloudflare distribution or similar it can be set
using this option
|
| services.orthanc.settings | Configuration written to a json file that is read by orthanc
|
| services.self-deploy.switchCommand | The switch-to-configuration subcommand used.
|
| services.jirafeau.extraConfig | Jirefeau configuration
|
| services.zeronet.settings | zeronet.conf configuration
|
| services.warpgate.settings | Warpgate configuration.
|
| services.jirafeau.nginxConfig | Extra configuration for the nginx virtual host of Jirafeau.
|
| xdg.portal.configPackages | List of packages that provide XDG desktop portal configuration, usually in
the form of share/xdg-desktop-portal/$desktop-portals.conf
|
| services.xserver.displayManager.lightdm.greeters.enso.extraConfig | Extra configuration that should be put in the greeter.conf
configuration file
|
| services.xserver.displayManager.lightdm.greeters.gtk.extraConfig | Extra configuration that should be put in the lightdm-gtk-greeter.conf
configuration file.
|
| services.matrix-appservice-discord.settings | config.yaml configuration as a Nix attribute set
|
| services.xserver.displayManager.lightdm.greeters.mini.extraConfig | Extra configuration that should be put in the lightdm-mini-greeter.conf
configuration file.
|
| services.firefly-iii.poolConfig | Options for the Firefly III PHP pool
|
| services.goeland.settings | Configuration of goeland
|
| services.gitlab.statePath | GitLab state directory
|
| security.krb5.settings.include | Files to include in the Kerberos configuration.
|
| programs.corectrl.package | The corectrl package to use
|
| services.jitsi-meet.jibri.enable | Whether to enable a Jibri instance and configure it to connect to Prosody
|
| services.displayManager.autoLogin | Auto login configuration attrset.
|
| services.consul.extraConfigFiles | Additional configuration files to pass to consul
NOTE: These will not trigger the service to be restarted when altered.
|
| services.jitsi-meet.jicofo.enable | Whether to enable JiCoFo instance and configure it to connect to Prosody
|
| services.cyrus-imap.cyrusSettings | Cyrus configuration settings
|
| services.corerad.settings | Configuration for CoreRAD, see https://github.com/mdlayher/corerad/blob/main/internal/config/reference.toml
for supported values
|
| services.cyrus-imap.imapdSettings | IMAP configuration settings
|
| programs.sway.enable | Whether to enable Sway, the i3-compatible tiling Wayland compositor
|
| services.udisks2.settings | Options passed to udisksd
|
| services.pdns-recursor.luaConfig | The content Lua configuration file for PowerDNS Recursor
|
| services.prosody.ssl.extraOptions | Extra SSL configuration options.
|
| services.logstash.filterConfig | logstash filter configuration.
|
| services.powerdns.extraConfig | PowerDNS configuration
|
| services.merecat.settings | Merecat configuration
|
| services.opendkim.settings | Additional opendkim configuration
|
| services.tor.torsocks.enable | Whether to build /etc/tor/torsocks.conf
containing the specified global torsocks configuration.
|
| services.sabnzbd.settings | The sabnzbd configuration (see also
sabnzbd's wiki
for extra documentation)
|
| services.pretix.settings | pretix configuration as a Nix attribute set
|
| services.trickster.configFile | Path to configuration file.
|
| services.logstash.outputConfig | Logstash output configuration.
|
| services.nzbget.settings | NZBGet configuration, passed via command line using switch -o
|
| services.xserver.filesSection | Contents of the first Files section of the X server configuration file.
|
| services.rathole.settings | Rathole configuration, for options reference
see the example on GitHub
|
| services.peering-manager.settings | Configuration options to set in configuration.py
|
| nix.buildMachines.*.sshKey | The path to the SSH private key with which to authenticate on
the build machine
|
| hardware.bluetooth.input | Set configuration for the input service (/etc/bluetooth/input.conf)
|
| services.haste-server.settings | Configuration for haste-server
|
| services.influxdb.settings | Extra configuration options for influxdb
|
| services.librenms.poolConfig | Options for the LibreNMS PHP pool
|
| programs.fish.vendor.config.enable | Whether fish should source configuration snippets provided by other packages.
|
| services.knot.settingsFile | As alternative to settings, you can provide whole configuration
directly in the almost-YAML format of Knot DNS
|
| services.glpiAgent.settings | GLPI Agent configuration options
|
| services.asterisk.extraConfig | Extra configuration options appended to the default
asterisk.conf file.
|
| security.duosec.failmode | On service or configuration errors that prevent Duo
authentication, fail "safe" (allow access) or "secure" (deny
access)
|
| services.headscale.configFile | Path to the configuration file of headscale.
|
| services.jitsi-meet.jigasi.enable | Whether to enable jigasi instance and configure it to connect to Prosody
|
| services.crowdsec.settings | Set of various configuration attributes
|
| services.etcd.initialClusterState | Etcd initial cluster configuration for bootstrapping.
|
| services.prosody.extraConfig | Additional prosody configuration
The generated file is processed by envsubst to allow secrets to be passed securely via environment variables.
|
| services.tremor-rs.loggerSettings | Tremor logger configuration
|
| services.synergy.server.configFile | The Synergy server configuration file.
|
| services.mautrix-discord.dataDir | Directory to store the bridge's configuration and database files
|
| services.munin-node.extraPluginConfig | plugin-conf.d extra plugin configuration
|
| services.openldap.settings | Configuration for OpenLDAP, in OLC format
|
| services.minidlna.settings | Configuration for minidlna.conf(5).
|
| services.ncps.cache.storage.local | The local directory for storing configuration and cached store
paths
|
| services.zabbixProxy.settings | Zabbix Proxy configuration
|
| services.jirafeau.poolConfig | Options for Jirafeau PHP pool
|
| services.zabbixAgent.settings | Zabbix Agent configuration
|
| services.kea.dhcp-ddns.configFile | Kea DHCP-DDNS configuration as a path, see https://kea.readthedocs.io/en/kea-3.0.2/arm/ddns.html
|
| <imports = [ pkgs.php.services.default ]> | This is a modular service, which can be imported into a NixOS configuration using the system.services option.
|
| services.hylafax.modems.<name>.type | Name of modem configuration file,
will be searched for in config
in the spooling area directory.
|
| services.bacula-sd.director.<name>.password | Specifies the password that must be supplied for the default Bacula
Console to be authorized
|
| services.bacula-fd.director.<name>.password | Specifies the password that must be supplied for the default Bacula
Console to be authorized
|
| services.victoriametrics.checkConfig | Check configuration
|
| services.xserver.displayManager.lightdm.greeters.slick.extraConfig | Extra configuration that should be put in the lightdm-slick-greeter.conf
configuration file.
|
| programs.turbovnc.ensureHeadlessSoftwareOpenGL | Whether to set up NixOS such that TurboVNC's built-in software OpenGL
implementation works
|
| services.kanidm.unixSettings | Configure Kanidm unix daemon
|
| services.keyd.keyboards | Configuration for one or more device IDs
|
| services.kimai.sites.<name>.settings | Structural Kimai's local.yaml configuration
|
| services.hedgedoc.settings | HedgeDoc configuration, see
https://docs.hedgedoc.org/configuration/
for documentation.
|
| programs.java.enable | Install and setup the Java development kit.
This adds JAVA_HOME to the global environment, by sourcing the
jdk's setup-hook on shell init
|
| services.dolibarr.poolConfig | Options for the Dolibarr PHP pool
|
| services.homebox.settings | The homebox configuration as environment variables
|
| networking.dhcpcd.enable | Whether to enable dhcpcd for device configuration
|
| services.aerospike.extraConfig | Extra configuration
|
| services.smokeping.probeConfig | Probe configuration
|
| services.scion.scion-ip-gateway.config | scion-ip-gateway daemon configuration
|
| services.printing.extraFilesConf | Extra contents of the configuration file of the CUPS daemon
(cups-files.conf).
|
| services.smokeping.alertConfig | Configuration for alerts.
|
| services.rspamd.overrides | Overridden configuration files, written into /etc/rspamd/override.d/{name}.
|
| services.smokeping.config | Full smokeping config supplied by the user
|
| services.throttled.extraConfig | Alternative configuration
|
| services.nginx.appendHttpConfig | Configuration lines to be appended to the generated http block
|
| services.olivetin.settings | Configuration of OliveTin
|
| services.nginx.validateConfigFile | Whether to enable validating configuration with pkgs.writeNginxConfig.
|
| services.unbound.settings | Declarative Unbound configuration
See the unbound.conf(5) manpage for a list of
available options.
|
| services.mopidy.extraConfigFiles | Extra config file read by Mopidy when the service starts
|
| services.lxd-image-server.settings | Configuration for lxd-image-server
|
| services.trilium-server.nginx.hostName | The hostname use to setup the virtualhost configuration
|
| services.routedns.settings | Configuration for RouteDNS, see https://github.com/folbricht/routedns/blob/master/doc/configuration.md
for more information.
|
| services.zookeeper.logging | Zookeeper logging configuration, logback.xml.
|
| services.vault.telemetryConfig | Telemetry configuration
|
| services.vmalert.settings | vmalert configuration, passed via command line flags
|
| services.agorakit.poolConfig | Options for the agorakit PHP pool
|
| services.ergochat.settings | Ergo IRC daemon configuration file.
https://raw.githubusercontent.com/ergochat/ergo/master/default.yaml
|
| services.bacula-dir.port | Specify the port (a positive integer) on which the Director daemon
will listen for Bacula Console connections
|
| programs.nncp.settings | NNCP configuration, see
http://www.nncpgo.org/Configuration.html
|
| services.graphite.carbon.config | Content of carbon configuration file.
|
| programs.gnupg.agent.settings | Configuration for /etc/gnupg/gpg-agent.conf
|
| services.h2o.hosts.<name>.serverAliases | Additional names of virtual hosts served by this virtual host
configuration.
|
| security.pam.krb5.enable | Enables Kerberos PAM modules (pam-krb5,
pam-ccreds)
|
| services.drupal.sites.<name>.poolConfig | Options for the Drupal PHP pool
|
| services.traccar.settingsFile | File used as configuration for traccar
|
| services.spotifyd.settings | Configuration for Spotifyd
|
| services.sonic-server.settings | Sonic Server configuration options
|
| services.picom.settings | Picom settings
|
| services.netatalk.settings | Configuration for Netatalk
|
| services.webdav-server-rs.configFile | Path to config file
|
| services.xserver.moduleSection | Contents of the Module section of the X server configuration file.
|
| services.prometheus.exporters.restic.rcloneConfigFile | Path to the file containing rclone configuration
|
| services.seafile.ccnetSettings | Configuration for ccnet, see
https://manual.seafile.com/config/ccnet-conf/
for supported values.
|
| services.klipper.extraSettings | Extra lines to append to the generated Klipper configuration.
|
| services.fediwall.settings | Fediwall configuration
|
| services.druid.overlord.config | (key=value) Configuration to be written to runtime.properties of the druid Druid Overlord
https://druid.apache.org/docs/latest/configuration/index.html
|
| services.gitolite.enable | Enable gitolite management under the
gitolite user
|
| services.davis.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.datadog-agent.extraConfig | Extra configuration options that will be merged into the
main config file datadog.yaml.
|
| services.bacula-sd.extraStorageConfig | Extra configuration to be passed in Storage directive.
|
| services.drupal.sites.<name>.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts.
|
| services.infinoted.extraConfig | Additional configuration to append to infinoted.conf
|
| services.ferretdb.settings | Additional configuration for FerretDB, see
https://docs.ferretdb.io/configuration/flags/
for supported values.
|
| services.heartbeat.extraConfig | Any other configuration options you want to add
|
| programs.starship.settings | Configuration included in starship.toml
|
| services.inspircd.config | Verbatim inspircd.conf file
|
| services.collectd.extraConfig | Extra configuration for collectd
|
| services.slskd.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.patroni.settings | The primary patroni configuration
|
| services.movim.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.sing-box.settings | The sing-box configuration, see https://sing-box.sagernet.org/configuration/ for documentation
|
| services.printing.browsedConf | The contents of the configuration. file of the CUPS Browsed daemon
(cups-browsed.conf)
|
| services.kanidm.unix.settings | Configure Kanidm unix daemon
|
| services.kea.ctrl-agent.configFile | Kea Control Agent configuration as a path, see https://kea.readthedocs.io/en/kea-3.0.2/arm/agent.html
|
| services.xserver.deviceSection | Contents of the first Device section of the X server configuration file.
|
| services.xserver.screenSection | Contents of the first Screen section of the X server configuration file.
|
| services.traefik.staticConfigFile | Path to traefik's static configuration to use.
(Using that option has precedence over staticConfigOptions and dynamicConfigOptions)
|
| services.gitlab-runner.settings | Global gitlab-runner configuration
|
| services.bluemap.onCalendar | How often to trigger rendering the map,
in the format of a systemd timer onCalendar configuration
|
| services.atalkd.interfaces | Per-interface configuration for atalkd.
|
| hardware.nvidia.nvidiaSettings | Whether to enable nvidia-settings, NVIDIA's GUI configuration tool
.
|
| services.libeufin.settings | Global configuration options for the libeufin bank system config file.
|
| networking.useNetworkd | Whether we should use networkd as the network configuration backend or
the legacy script based system
|
| services.dendrite.settings | Configuration for dendrite, see:
https://github.com/matrix-org/dendrite/blob/main/dendrite-sample.yaml
for available options with which to populate settings.
|
| boot.loader.grub.users | User accounts for GRUB
|
| services.gitolite.enableGitAnnex | Enable git-annex support
|
| services.pretalx.settings | pretalx configuration as a Nix attribute set
|
| services.synergy.server.screenName | Use the given name instead of the hostname to identify
this screen in the configuration.
|
| services.sshwifty.settings | Configuration for Sshwifty
|
| services.movim.h2o.tls.extraSettings | Additional TLS/SSL-related configuration options
|
| services.llama-cpp.modelsPreset | Models preset configuration as a Nix attribute set
|
| services.lokinet.settings | Configuration for Lokinet
|
| services.snipe-it.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.roundcube.extraConfig | Extra configuration for roundcube webmail instance
|
| services.munin-cron.extraGlobalConfig | munin.conf extra global configuration
|
| services.nagios.validateConfig | if true, the syntax of the nagios configuration file is checked at build time
|
| services.zabbixServer.settings | Zabbix Server configuration
|
| system.switch.inhibitors | Attribute set of strings that will prevent switching into a configuration when
they change
|
| services.clamav.daemon.settings | ClamAV configuration
|
| security.doas.extraRules | Define specific rules to be set in the
/etc/doas.conf file
|
| services.crowdsec.settings.capi | CAPI Configuration attributes
|
| services.flannel.storageBackend | Determines where flannel stores its configuration at runtime
|
| hardware.trackpoint.enable | Enable sensitivity and speed configuration for trackpoints.
|
| services.factorio.configFile | The server's configuration file
|
| services.crowdsec.settings.lapi | LAPI Configuration attributes
|
| services.blendfarm.serverConfig | Server configuration
|
| services.froide-govplan.settings | Configuration options to set in extra_settings.py.
|
| networking.dhcpcd.IPv6rs | Force enable or disable solicitation and receipt of IPv6 Router Advertisements
|
| security.loginDefs.settings | Config options for the /etc/login.defs file, that defines
the site-specific configuration for the shadow password suite
|
| hardware.rasdaemon.config | rasdaemon configuration, currently only used for CE PFA
for details, read rasdaemon.outPath/etc/sysconfig/rasdaemon's comments
|
| services.hound.settings | The full configuration of the Hound daemon
|
| services.radicale.settings | Configuration for Radicale
|
| services.pairdrop.rtcConfig | Configuration for STUN/TURN servers
|
| services.prosody-filer.settings | Configuration for Prosody Filer
|
| services.phpfpm.pools.<name>.phpOptions | "Options appended to the PHP configuration file php.ini used for this PHP-FPM pool."
|
| services.prometheus.ruleFiles | Any additional rules files to include in this configuration.
|
| services.smokeping.targetConfig | Target configuration
|
| services.zabbixWeb.httpd.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts.<name>
|
| services.matrix-synapse.configFile | Path to the configuration file on the target system
|
| services.zabbixWeb.nginx.virtualHost | Nginx configuration can be done by adapting services.nginx.virtualHosts.<name>
|
| services.sourcehut.settings | The configuration for the sourcehut network.
|
| services.kanidm.serverSettings | Settings for Kanidm, see
the documentation
and example configuration
for possible values.
|
| programs.spacefm.settings | The system-wide spacefm configuration
|
| services.fcgiwrap.instances | Configuration for fcgiwrap instances.
|
| services.actual.settings | Server settings, refer to the documentation for available options
|
| networking.iproute2.enable | Whether to enable copying IP route configuration files.
|
| services.lidarr.settings | Attribute set of arbitrary config options
|
| services.bitmagnet.settings | Bitmagnet configuration (https://bitmagnet.io/setup/configuration.html).
|
| services.cross-seed.settings | Configuration options for cross-seed
|
| services.radicale.rights | Configuration for Radicale's rights file
|
| services.octoprint.extraConfig | Extra options which are added to OctoPrint's YAML configuration file.
|
| services.sonarr.settings | Attribute set of arbitrary config options
|
| services.patroni.namespace | Path within the configuration store where Patroni will keep information about the cluster.
|
| services.pangolin.settings | Additional attributes to be merged with the configuration options and written to Pangolin's config.yml file.
|
| services.tailscale.serve.enable | Whether to enable Tailscale Serve configuration.
|
| services.quickwit.settings.rest | Rest server configuration for Quickwit
|
| services.tinyproxy.settings | Configuration for tinyproxy.
|
| services.radarr.settings | Attribute set of arbitrary config options
|
| systemd.network.netdevs.<name>.extraConfig | Extra configuration append to unit
|
| services.prometheus.alertmanager.checkConfig | Check configuration with amtool check-config
|
| services.livebook.environmentFile | Additional environment file as defined in systemd.exec(5)
|
| services.prometheus.exporters.blackbox.enableConfigCheck | Whether to run a correctness check for the configuration file
|
| services.traefik.dynamic.dir | Path to the directory Traefik should watch for configuration files.
Files in this directory matching the glob _nixos-* (reserved for Nix-managed dynamic configurations) will be deleted as part of
systemd-tmpfiles-resetup.service, regardless of their origin..
|
| services.postfix.networks | Net masks for trusted - allowed to relay mail to third parties -
hosts
|
| services.buildbot-master.extraConfig | Extra configuration to append to master.cfg
|
| services.freeradius.configDir | The path of the freeradius server configuration directory.
|
| services.greetd.useTextGreeter | Whether the greeter uses text-based user interfaces (For example, tuigreet)
|
| services.libreswan.configSetup | Options to go in the 'config setup' section of the Libreswan IPsec configuration
|
| services.bookstack.poolConfig | Options for the Bookstack PHP pool
|
| services.gancio.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.gitlab.extraDatabaseConfig | Extra configuration in config/database.yml.
|
| services.dockerRegistry.extraConfig | Docker extra registry configuration.
|
| boot.initrd.network.ssh.enable | Start SSH service during initrd boot
|
| services.fluidd.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.akkoma.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.matomo.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.mediawiki.nginx.hostName | The hostname to use for the nginx virtual host
|
| services.monica.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.mediawiki.poolConfig | Options for the MediaWiki PHP pool
|
| services.moosefs.master.settings | Master configuration options (mfsmaster.cfg).
|
| services.limesurvey.config | LimeSurvey configuration
|
| services.nextcloud.poolConfig | Options for Nextcloud's PHP pool
|
| services.searx.settings | Searx settings
|
| services.stubby.settings | Content of the Stubby configuration file
|
| services.uptime.configFile | The uptime configuration file
If mongodb: server != localhost, please set usesRemoteMongo = true
If you only want to run the monitor, please set enableWebService = false
and enableSeparateMonitoringService = true
If autoStartMonitor: false (recommended) and you want to run both
services, please set enableSeparateMonitoringService = true
|
| systemd.network.netdevs.<name>.enable | Whether to manage network configuration using systemd-network
|
| users.ldap.bind.policy | Specifies the policy to use for reconnecting to an unavailable
LDAP server
|
| environment.memoryAllocator.provider | The system-wide memory allocator
|
| services.invoiceplane | InvoicePlane configuration.
|
| services.traefik.dynamicConfigFile | Path to traefik's dynamic configuration to use.
(Using that option has precedence over dynamicConfigOptions)
|
| services.glitchtip.settings | Configuration of GlitchTip
|
| services.h2o.hosts.<name>.tls.extraSettings | Additional TLS/SSL-related configuration options
|
| services.immich-kiosk.settings | Configuration for immich-kiosk
|
| fonts.fontconfig.enable | If enabled, a Fontconfig configuration file will be built
pointing to a set of default fonts
|
| services.hqplayerd.config | HQplayer daemon configuration, written to /etc/hqplayer/hqplayerd.xml
|
| services.influxdb2.settings | configuration options for influxdb2, see https://docs.influxdata.com/influxdb/v2.0/reference/config-options for details.
|
| services.druid.middleManager.config | (key=value) Configuration to be written to runtime.properties of the druid Druid middleManager
https://druid.apache.org/docs/latest/configuration/index.html
|
| services.lighttpd.extraConfig | These configuration lines will be appended to the generated lighttpd
config file
|
| services.logrotate.configFile | Override the configuration file used by logrotate
|
| services.rosenpass.settings | Configuration for Rosenpass, see https://rosenpass.eu/ for further information.
|
| services.public-inbox.spamAssassinRules | SpamAssassin configuration specific to public-inbox.
|
| services.manticore.settings | Configuration for Manticoresearch
|
| services.maddy.tls.extraConfig | Arguments for the specified certificate loader
|
| services.opensearch.logging | opensearch logging configuration.
|
| services.mosquitto.settings | Global configuration options for the mosquitto broker.
|
| services.neo4j.https.sslPolicy | Neo4j SSL policy for HTTPS traffic
|
| services.miniupnpd.appendConfig | Configuration lines appended to the MiniUPnP config.
|
| services.strongswan.setup | A set of options for the ‘config setup’ section of the
ipsec.conf file
|
| services.microbin.settings | Additional configuration for MicroBin, see
https://microbin.eu/docs/installation-and-configuration/configuration/
for supported values
|
| services.kanidm.server.settings | Settings for Kanidm, see
the documentation
and example configuration
for possible values.
|
| services.xserver.monitorSection | Contents of the first Monitor section of the X server configuration file.
|
| services.vault.storageConfig | HCL configuration to insert in the storageBackend section
|
| services.wiki-js.settings | Settings to configure wiki-js
|
| services.wastebin.settings | Additional configuration for wastebin, see
https://github.com/matze/wastebin#usage for supported values
|
| services.xserver.config | The contents of the configuration file of the X server
(xorg.conf)
|
| services.hostapd.radios.<name>.networks.<name>.dynamicConfigScripts | All of these scripts will be executed in lexicographical order before hostapd
is started, right after the bss segment was generated and may dynamically
append bss options to the generated configuration file
|
| services.mautrix-meta.instances.<name>.environmentFile | File containing environment variables to substitute when copying the configuration
out of Nix store to the services.mautrix-meta.dataDir
|
| services.peering-manager.enableOidc | Enable OIDC-Authentication for Peering Manager
|
| services.traefik.staticConfigOptions | Static configuration for Traefik.
|
| services.bacula-fd.extraMessagesConfig | Extra configuration to be passed in Messages directive.
|
| services.c2fmzq-server.settings | Configuration for c2FmZQ-server passed as CLI arguments
|
| fileSystems.<name>.depends | List of paths that should be mounted before this one
|
| services.cntlm.proxy | A list of NTLM/NTLMv2 authenticating HTTP proxies
|
| services.bacula-sd.extraMessagesConfig | Extra configuration to be passed in Messages directive.
|
| hardware.bluetooth.network | Set configuration for the network service (/etc/bluetooth/network.conf)
|
| services.immich-public-proxy.settings | Configuration for IPP
|
| fonts.fontconfig.includeUserConf | Include the user configuration from
~/.config/fontconfig/fonts.conf or
~/.config/fontconfig/conf.d.
|
| services.scion.scion-router.settings | scion-router configuration
|
| services.peering-manager.enableLdap | Enable LDAP-Authentication for Peering Manager
|
| services.navidrome.settings | Configuration for Navidrome, see https://www.navidrome.org/docs/usage/configuration-options/ for supported values.
|
| services.scion.scion-daemon.settings | scion-daemon configuration
|
| services.rtorrent.configText | The content of rtorrent.rc
|
| services.pgbouncer.settings | Configuration for PgBouncer, see https://www.pgbouncer.org/config.html
for supported values.
|
| services.xserver.serverFlagsSection | Contents of the ServerFlags section of the X server configuration file.
|
| services.firezone.server.smtp.configureManually | Outbound email configuration is mandatory for Firezone and supports
many different delivery adapters
|
| services.kanidm.clientSettings | Configure Kanidm clients, needed for the PAM daemon
|
| services.cryptpad.settings | Cryptpad configuration settings
|
| services.bacula-dir.extraMessagesConfig | Extra configuration to be passed in Messages directive.
|
| services.clamav.updater.settings | freshclam configuration
|
| services.graphite.seyren.extraConfig | Extra seyren configuration
|
| services.bacula-dir.extraDirectorConfig | Extra configuration to be passed in Director directive.
|
| programs.gamemode.settings | System-wide configuration for GameMode (/etc/gamemode.ini)
|
| services.factorio.extraSettings | Extra game configuration that will go into server-settings.json
|
| services.etebase-server.settings | Configuration for etebase-server
|
| services.thermald.configFile | The thermald manual configuration file
|
| services.moonraker.settings | Configuration for Moonraker
|
| services.redis.servers.<name>.settings | Redis configuration
|
| services.rss2email.feeds.<name>.to | Email address to which to send feed items
|
| services.matrix-tuwunel.settings | Generates the tuwunel.toml configuration file
|
| services.transfer-sh.settings | Additional configuration for transfer-sh, see
https://github.com/dutchcoders/transfer.sh#usage-1
for supported values
|
| services.typesense.settings | Typesense configuration
|
| services.pleroma.secretConfigFile | Path to the file containing your secret pleroma configuration.
DO NOT POINT THIS OPTION TO THE NIX
STORE, the store being world-readable, it'll
compromise all your secrets.
|
| services.tinc.networks.<name>.hosts | The name of the host in the network as well as the configuration for that host
|
| services.quake3-server.extraConfig | Extra configuration options
|
| services.tomcat.purifyOnStart | On startup, the baseDir directory is populated with various files,
subdirectories and symlinks
|
| services.stalwart.settings | Configuration options for the Stalwart server
|
| services.lighttpd.cgit.configText | Verbatim contents of the cgit runtime configuration file
|
| containers.<name>.restartIfChanged | Whether the container should be restarted during a NixOS
configuration switch if its definition has changed.
|
| services.lasuite-docs.settings | Configuration options of docs
|
| services.ytdl-sub.instances.<name>.config | Configuration for ytdl-sub
|
| services.librenms.settings | Attrset of the LibreNMS configuration
|
| boot.initrd.network.ifstate.settings | Content of IfState's initrd configuration file
|
| services.castopod.poolSettings | Options for Castopod's PHP pool
|
| hardware.fancontrol.config | Required fancontrol configuration file content
|
| services.kmonad.keyboards.<name>.config | Keyboard configuration.
|
| services.firewalld.services | firewalld service configuration files
|
| services.gemstash.settings | Configuration for Gemstash
|
| services.renovate.settings | Renovate's global configuration
|
| services.schleuder.settings | Settings for schleuder.yml
|
| services.mailman.serve.uwsgiSettings | Extra configuration to merge into uwsgi config.
|
| services.readarr.settings | Attribute set of arbitrary config options
|
| services.privoxy.settings | This option is mapped to the main Privoxy configuration file
|
| services.nominatim.enable | Whether to enable nominatim
|
| services.rspamd.workers.<name>.includes | List of files to include in configuration
|
| services.xinetd.services.*.extraConfig | Extra configuration-lines added to the section of the service.
|
| services.aerospike.networkConfig | network section of configuration file
|
| services.caddy.virtualHosts.<name>.logFormat | Configuration for HTTP request logging (also known as access logs)
|
| networking.ifstate.settings | Content of IfState's configuration file
|
| services.cassandra.logbackConfig | XML logback configuration for cassandra
|
| services.moonraker.configDir | Deprecated directory containing client-writable configuration files
|
| services.rspamd-trainer.settings | IMAP authentication configuration for rspamd-trainer
|
| services.thanos.rule.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.roundcube.enable | Whether to enable roundcube
|
| services.xserver.xkb.extraLayouts | Extra custom layouts that will be included in the xkb configuration
|
| services.watchdogd.settings | Configuration to put in watchdogd.conf
|
| services.xserver.inputClassSections | Content of additional InputClass sections of the X server configuration file.
|
| services.lasuite-meet.settings | Configuration options of meet
|
| systemd.network.networks.<name>.extraConfig | Extra configuration append to unit
|
| services.kanidm.client.settings | Configure Kanidm clients, needed for the PAM daemon
|
| services.seafile.seafileSettings | Configuration for seafile-server, see
https://manual.seafile.com/config/seafile-conf/
for supported values.
|
| services.dockerRegistry.configFile | Path to CNCF distribution config file
|
| services.dokuwiki.sites.<name>.mergedConfig | Read only representation of the final configuration.
|
| programs.proxychains.enable | Whether to enable proxychains configuration.
|
| programs.steam.fontPackages | Font packages to use in Steam
|
| services.keepalived.extraConfig | Extra lines to be added verbatim to the configuration file.
|
| services.dokuwiki.sites.<name>.poolConfig | Options for the DokuWiki PHP pool
|
| services.lavalink.plugins.*.configName | The name of the plugin to use as the key for the plugin configuration.
|
| networking.localCommands | Shell commands to be executed at the end of the
network-setup systemd service
|
| services.dolibarr.h2o.serverAliases | Additional names of virtual hosts served by this virtual host
configuration.
|
| services.jupyter.notebookConfig | Raw jupyter config
|
| services.postfix.settings.main | The main.cf configuration file as key value set
|
| services.teeworlds.extraOptions | Extra configuration lines for the teeworlds.cfg
|
| services.slurm.extraPlugstackConfig | Extra configuration that will be added to the end of plugstack.conf.
|
| services.postgresql.checkConfig | Check the syntax of the configuration file at compile time
|
| services.radicle.ci.broker.settings | Configuration of radicle-ci-broker
|
| services.scollector.extraConfig | Extra scollector configuration added to the end of scollector.toml
|
| services.opensearch.settings | OpenSearch configuration.
|
| services.maubot.settings.logging | Python logging configuration
|
| services.pomerium.settings | The contents of Pomerium's config.yaml, in Nix expressions
|
| services.zram-generator.settings | Configuration for zram-generator,
see https://github.com/systemd/zram-generator for documentation.
|
| services.wgautomesh.settings | Configuration for wgautomesh.
|
| systemd.network.networks.<name>.enable | Whether to manage network configuration using systemd-network
|
| services.xserver.serverLayoutSection | Contents of the ServerLayout section of the X server configuration file.
|
| services.wiki-js.environmentFile | Environment file to inject e.g. secrets into the configuration.
|
| systemd.services.<name>.restartIfChanged | Whether the service should be restarted during a NixOS
configuration switch if its definition has changed.
|
| services.prometheus.alertmanagerIrcRelay.settings | Configuration for Alertmanager IRC Relay as a Nix attribute set
|
| services.guacamole-server.logbackXml | Configuration file that correspond to logback.xml.
|
| services.traefik.dynamicConfigOptions | Dynamic configuration for Traefik.
|
| programs.hyprland.enable | Whether to enable Hyprland, the dynamic tiling Wayland compositor that doesn't sacrifice on its looks
|
| services.guacamole-client.logbackXml | Configuration file that correspond to logback.xml.
|
| services.gitDaemon.enable | Enable Git daemon, which allows public hosting of git repositories
without any access controls
|
| services.awstats.configs.<name>.extraConfig | Extra configuration to be appended to awstats.${name}.conf.
|
| services.postfix-tlspol.settings | The postfix-tlspol configuration file as a Nix attribute set
|
| services.suricata.settings.app-layer | app-layer configuration, see upstream docs.
|
| services.suwayomi-server.settings | Configuration to write to server.conf
|
| services.scion.scion-control.settings | scion-control configuration
|
| services.open-web-calendar.settings | Configuration for the server
|
| services.rebuilderd.settings | Configuration for rebuilderd (rebuilderd.conf)
|
| services.tinc.networks.<name>.settings | Configuration of the Tinc daemon for this network
|
| services.yggdrasil-jumper.extraConfig | Configuration for Yggdrasil Jumper in plaintext.
|
| services.stalwart-mail.settings | Configuration options for the Stalwart email server
|
| services.caddy.virtualHosts.<name>.extraConfig | Additional lines of configuration appended to this virtual host in the
automatically generated Caddyfile.
|
| services.firefly-iii.settings | Options for firefly-iii configuration
|
| services.anubis.defaultOptions.policy | Anubis policy configuration
|
| services.fail2ban.daemonSettings | The contents of Fail2ban's main configuration file
|
| services.hardware.lcd.server.extraConfig | Additional configuration added verbatim to the server config.
|
| services.hardware.lcd.client.extraConfig | Additional configuration added verbatim to the client config.
|
| services.bacula-sd.device.<name>.extraDeviceConfig | Extra configuration to be passed in Device directive.
|
| services.coturn.listening-port | TURN listener port for UDP and TCP
|
| hardware.display.outputs.<name>.mode | A video kernel parameter (framebuffer mode) configuration for the specific output:
<xres>x<yres>[M][R][-<bpp>][@<refresh>][i][m][eDd]
See for more information:
|
| services.limesurvey.poolConfig | Options for the LimeSurvey PHP pool
|
| services.livekit.ingress.settings | LiveKit Ingress configuration
|
| services.nsd.zonefilesWrite | Write changed secondary zones to their zonefile every N seconds
|
| services.thanos.query.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.thanos.store.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.toxBootstrapd.extraConfig | Configuration for bootstrap daemon
|
| services.reposilite.settings | Configuration written to the reposilite.cdn file
|
| services.rke2.cisHardening | Enable CIS Hardening for RKE2
|
| services.peering-manager.oidcConfigPath | Path to the Configuration-File for OIDC-Authentication, will be loaded as oidc_config.py
|
| services.anubis.instances.<name>.policy | Anubis policy configuration
|
| hardware.bluetooth.settings | Set configuration for system-wide bluetooth (/etc/bluetooth/main.conf)
|
| programs.openvpn3.netcfg.settings | Options stored in /etc/openvpn3/netcfg.json configuration file
|
| services.tuliprox.apiProxySettings | Users and proxy configuration
Refer to the Tuliprox documentation for available attributes
|
| services.postfix.settings.master | The master.cf configuration file as an attribute set of service
defitions
|
| services.peering-manager.ldapConfigPath | Path to the Configuration-File for LDAP-Authentication, will be loaded as ldap_config.py
|
| services.dnscrypt-proxy.configFile | Path to TOML config file
|
| services.vaultwarden.config | The configuration of vaultwarden is done through environment variables,
therefore it is recommended to use upper snake case (e.g. DISABLE_2FA_REMEMBER)
|
| services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.start_action | Action to perform after loading the configuration.
- The default of
none loads the connection only, which
then can be manually initiated or used as a responder configuration.
- The value
trap installs a trap policy, which triggers
the tunnel as soon as matching traffic has been detected.
- The value
start initiates the connection actively.
- Since version 5.9.6 two modes above can be combined with
trap|start,
to immediately initiate a connection for which trap policies have been installed
|
| services.sourcehut.nginx.virtualHost | Virtual-host configuration merged with all Sourcehut's virtual-hosts.
|
| services.crowdsec.settings.console | Console Configuration attributes
|
| services.apcupsd.configText | Contents of the runtime configuration file, apcupsd.conf
|
| services.caddy.enableReload | Reload Caddy instead of restarting it when configuration file changes
|
| security.duosec.acceptEnvFactor | Look for factor selection or passcode in the
$DUO_PASSCODE environment variable before
prompting the user for input
|
| services.scion.scion-ip-gateway.trafficConfig | scion-ip-gateway traffic configuration
|
| services.quickwit.settings.version | Configuration file version.
|
| services.metricbeat.settings | Configuration for metricbeat
|
| services.syncoid.commands.<name>.service | Systemd configuration specific to this syncoid service.
|
| services.pulseaudio.extraClientConf | Extra configuration appended to pulse/client.conf file.
|
| services.slurm.dbdserver.extraConfig | Extra configuration for slurmdbd.conf See also:
slurmdbd.conf(8).
|
| services.routinator.settings | Configuration for Routinator 3000, see https://routinator.docs.nlnetlabs.nl/en/stable/manual-page.html#configuration-file for options.
|
| services.privatebin.poolConfig | Options for the PrivateBin PHP pool
|
| services.sillytavern.configFile | Path to the SillyTavern configuration file.
|
| services.prowlarr.settings | Attribute set of arbitrary config options
|
| services.whisparr.settings | Attribute set of arbitrary config options
|
| services.vdirsyncer.jobs.<name>.configFile | existing configuration file
|
| services.dolibarr.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| networking.wireless.extraConfig | Extra lines appended to the configuration file
|
| services.dokuwiki.sites.<name>.extraConfigs | Path(s) to additional configuration files that are then linked to the 'conf' directory.
|
| services.librenms.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.jitsi-meet.interfaceConfig | Client-side web-app interface settings that override the defaults in interface_config.js
|
| services.go-autoconfig.settings | Configuration for go-autoconfig
|
| services.kanboard.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.apache-kafka.settings | Kafka broker configuration
server.properties
|
| services.fediwall.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| networking.interfaces | The configuration for each network interface
|
| services.akkoma.config.":pleroma"."Pleroma.Repo" | Database configuration
|
| services.apache-kafka.log4jProperties | Kafka log4j property configuration.
|
| hardware.keyboard.zsa.enable | Whether to enable udev rules for keyboards from ZSA like the ErgoDox EZ, Planck EZ and Moonlander Mark I
|
| services.lavalink.plugins.*.extraConfig | The configuration for the plugin
|
| services.agorakit.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.druid.historical.config | (key=value) Configuration to be written to runtime.properties of the druid Druid Historical
https://druid.apache.org/docs/latest/configuration/index.html
|
| services.invidious-router.nginx.enable | Whether to enable Automatic nginx proxy configuration
.
|
| services.mainsail.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.matrix-hookshot.settings | config.yml configuration as a Nix attribute set
|
| services.schleuder.listDefaults | Default settings for lists (list-defaults.yml)
|
| services.lubelogger.settings | Additional configuration for LubeLogger, see https://docs.lubelogger.com/Environment%20Variables for supported values.
|
| services.tinc.networks.<name>.extraConfig | Extra lines to add to the tinc service configuration file
|
| services.tomcat.virtualHosts.*.webapps | List containing web application WAR files and/or directories containing
web applications and configuration files for the virtual host.
|
| services.pixelfed.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.webdav.settings | Attrset that is converted and passed as config file
|
| services.filesender.settings | Configuration options used by FileSender
|
| services.guacamole-server.userMappingXml | Configuration file that correspond to user-mapping.xml.
|
| services.keepalived.extraGlobalDefs | Extra lines to be added verbatim to the 'global_defs' block of the
configuration file
|
| services.homebridge.settings | Configuration options for homebridge
|
| services.caddy.adapter | Name of the config adapter to use
|
| programs.miriway.enable | Whether to enable Miriway, a Mir based Wayland compositor
|
| services.freeciv.settings.Database | Enable database connection with given configuration.
|
| networking.wireless.extraConfigFiles | Extra wpa_supplicant configuration files to load.
|
| services.dolibarr.h2o.tls.extraSettings | Additional TLS/SSL-related configuration options
|
| services.guacamole-client.userMappingXml | Configuration file that correspond to user-mapping.xml.
|
| services.homepage-dashboard.docker | Homepage docker configuration
|
| services.hedgedoc.settings.db | Specify the configuration for sequelize
|
| services.bind.cacheNetworks | What networks are allowed to use us as a resolver
|
| services.journald.upload.settings | Configuration for journal-upload
|
| services.lldap.environment | Environment variables passed to the service
|
| services.mautrix-meta.instances | Configuration of multiple mautrix-meta instances.
services.mautrix-meta.instances.facebook and services.mautrix-meta.instances.instagram
come preconfigured with network.mode, appservice.id, bot username, display name and avatar.
|
| services.traefik.static.settings | Static configuration for Traefik, written in Nix.
This will be serialized to JSON (which is considered valid YAML) at build, and passed to Traefik as --configfile.
|
| services.privatebin.settings | Options for privatebin configuration
|
| services.thanos.rule.objstore.config-file | Path to YAML file that contains object store configuration
|
| services.opensnitch.rules | Declarative configuration of firewall rules
|
| services.mattermost.settings | Additional configuration options as Nix attribute set in config.json schema.
|
| services.snipe-it.config | Snipe-IT configuration options to set in the
.env file
|
| systemd.user.services.<name>.restartIfChanged | Whether the service should be restarted during a NixOS
configuration switch if its definition has changed.
|
| services.matrix-synapse.settings.redis | Redis configuration for synapse
|
| system.activationScripts | A set of shell script fragments that are executed when a NixOS
system configuration is activated
|
| services.limesurvey.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts.<name>
|
| services.buildkite-agents.<name>.extraConfig | Extra lines to be added verbatim to the configuration file.
|
| programs.mepo.locationBackends.gpsd | Whether to enable location detection via gpsd
|
| services.clickhouse.extraUsersConfig | Additional raw XML configuration for ClickHouse server.
|
| networking.resolvconf.enable | Whether DNS configuration is managed by resolvconf.
|
| services.kanata.keyboards.<name>.config | Configuration other than defcfg
|
| services.iperf3.authorizedUsersFile | Path to the configuration file containing authorized users credentials to run iperf tests.
|
| services.journalbeat.extraConfig | Any other configuration options you want to add
|
| services.libeufin.bank.settings | Configuration options for the libeufin bank system config file
|
| services.rutorrent.poolSettings | Options for ruTorrent's PHP pool
|
| services.opensnitch.settings | opensnitchd configuration
|
| services.nagios.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.openvpn.servers.<name>.config | Configuration of this OpenVPN instance
|
| services.neo4j.bolt.sslPolicy | Neo4j SSL policy for BOLT traffic
|
| services.prosody.virtualHosts.<name>.extraConfig | Additional virtual host specific configuration
|
| services.nebula.networks.<name>.settings | Nebula configuration
|
| services.spiped.config.<name>.keyfile | Name of a file containing the spiped key
|
| services.moodle.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.tinc.networks.<name>.hostSettings | The name of the host in the network as well as the configuration for that host
|
| services.x2goserver.settings | x2goserver.conf ini configuration as nix attributes
|
| services.yggdrasil-jumper.settings | Configuration for Yggdrasil Jumper as a Nix attribute set.
|
| services.vdirsyncer.jobs.<name>.timerConfig | systemd timer configuration
|
| services.wordpress.sites.<name>.poolConfig | Options for the WordPress PHP pool
|
| services.wordpress.sites.<name>.mergedConfig | Read only representation of the final configuration.
|
| services.evcc.environmentFile | File with environment variables to pass into the runtime environment
|
| services.eris-server.listenCoap | Server CoAP listen address
|
| services.dnscrypt-proxy2.configFile | Path to TOML config file
|
| services.asterisk.confFiles | Sets the content of config files (typically ending with
.conf) in the Asterisk configuration directory
|
| services.gitlab-runner.configFile | Configuration file for gitlab-runner.
configFile takes precedence over services.
checkInterval and concurrent will be ignored too
|
| services.atalkd.interfaces.<name>.config | Optional configuration string for this interface.
|
| services.immich.environment | Extra configuration environment variables
|
| services.autotierfs.settings | The contents of the configuration file for autotier
|
| services.prometheus.exporters | Prometheus exporter configuration
|
| services.radicle.httpd.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.orangefs.server.fileSystems.<name>.id | File system ID (must be unique within configuration).
|
| services.ocis.environmentFile | An environment file as defined in systemd.exec(5)
|
| services.mediawiki.httpd.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts
|
| services.wordpress.sites.<name>.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts.
|
| users.mutableUsers | If set to true, you are free to add new users and groups to the system
with the ordinary useradd and
groupadd commands
|
| services.strongswan-swanctl.swanctl.connections.<name>.children | CHILD_SA configuration sub-section
|
| services.centrifugo.settings | Declarative Centrifugo configuration
|
| services.hbase-standalone.enable | Whether to enable HBase master in standalone mode with embedded regionserver and zookeper
|
| services.crowdsec.settings.general | Settings for the main CrowdSec configuration file
|
| services.libeufin.nexus.settings | Configuration options for the libeufin nexus config file
|
| services.dysnomia.containers | An attribute set in which each key represents a container and each value an attribute set providing its configuration properties
|
| security.krb5.settings.includedir | Directories containing files to include in the Kerberos configuration.
|
| services.tuliprox.mappingSettings | Templates configuration
Refer to the Tuliprox documentation for available attributes
|
| services.nvme-rs.settings.thresholds | Threshold configuration for NVMe monitoring
|
| services.pipewire.extraConfig.jack | Additional configuration for the PipeWire JACK server and client library
|
| services.shairport-sync.settings | Configuration options for Shairport-Sync
|
| services.thanos.store.objstore.config-file | Path to YAML file that contains object store configuration
|
| services.taler.exchange.settings | Configuration options for the taler exchange config file
|
| services.taler.merchant.settings | Configuration options for the taler merchant config file
|
| services.traefik.dynamic.settings | Dynamic configuration for Traefik, written in Nix
|
| services.errbot.instances.<name>.identity | Errbot identity configuration
|
| services.glance.settings | Configuration written to a yaml file that is read by glance
|
| services.artalk.settings | The artalk configuration
|
| services.btrbk.instances.<name>.settings | configuration options for btrbk
|
| services.httpd.virtualHosts.<name>.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.anuko-time-tracker.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.caddy.virtualHosts.<name>.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.redis.servers.<name>.masterAuth | If the master is password protected (using the requirePass configuration)
it is possible to tell the slave to authenticate before starting the replication synchronization
process, otherwise the master will refuse the slave request.
(STORED PLAIN TEXT, WORLD-READABLE IN NIX STORE)
|
| services.matrix-conduit.settings | Generates the conduit.toml configuration file
|
| services.nginx.virtualHosts.<name>.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.ntopng.enable | Enable ntopng, a high-speed web-based traffic analysis and flow
collection tool
|
| services.nextcloud.webfinger | Enable this option if you plan on using the webfinger plugin
|
| services.nghttpx.backends.*.params.sni | Override the TLS SNI field value
|
| services.wakapi.database.createLocally | Whether to enable automatic database configuration.
Only PostgreSQL is supported for the time being.
.
|
| nix.daemonIOSchedClass | Nix daemon process I/O scheduling class
|
| services.homepage-dashboard.proxmox | Homepage proxmox configuration
|
| services.grafana-image-renderer.settings | Configuration attributes for grafana-image-renderer.
|
| services.autorandr.profiles.<name>.config | Per output profile configuration.
|
| services.homepage-dashboard.widgets | Homepage widgets configuration
|
| programs.openvpn3.log-service.settings | Options stored in /etc/openvpn3/log-service.json configuration file
|
| services.librechat.settings | A free-form attribute set that will be written to librechat.yaml
|
| services.jitsi-meet.nginx.enable | Whether to enable nginx virtual host that will serve the javascript application and act as
a proxy for the XMPP server
|
| services.collectd.validateConfig | Validate the syntax of collectd configuration file at build time
|
| services.clickhouse.extraServerConfig | Additional raw XML configuration for ClickHouse server.
|
| services.rutorrent.nginx.enable | Whether to enable nginx virtual host management
|
| services.nomad.settings | Configuration for Nomad
|
| services.thanos.sidecar.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.thanos.receive.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.thanos.compact.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.wordpress.sites.<name>.settings | Structural Wordpress configuration
|
| services.cachefilesd.extraConfig | Additional configuration file entries
|
| services.bookstack.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.deluge.declarative | Whether to use a declarative deluge configuration
|
| services.buffyboard.configFile | Path to an INI format configuration file to provide Buffyboard
|
| services.libvirtd.autoSnapshot.vms | If specified only the list of VMs will be snapshotted else all existing one
|
| services.rss2email.config | The configuration to give rss2email
|
| services.moosefs.cgiserver.settings | GUI server configuration options.
|
| services.mattermost.preferNixConfig | If both mutableConfig and this option are set, the Nix configuration
will take precedence over any settings configured in the server
console.
|
| services.renovate.validateSettings | Whether to run renovate's config validator on the built configuration.
|
| services.sitespeed-io.runs.*.settings | Configuration for sitespeed-io, see
https://www.sitespeed.io/documentation/sitespeed.io/configuration/
for available options
|
| services.scrutiny.settings | Scrutiny settings to be rendered into the configuration file
|
| services.pretix.environmentFile | Environment file to pass secret configuration values
|
| services.rsnapshot.cronIntervals | Periodicity at which intervals should be run by cron
|
| services.kubernetes.kubelet.cni.config | Kubernetes CNI configuration.
|
| services.zwave-js.settings | Configuration settings for the generated config file
|
| services.dex.environmentFile | Environment file (see systemd.exec(5)
"EnvironmentFile=" section for the syntax) to define variables for dex
|
| services.filesender.poolSettings | Options for FileSender's PHP pool
|
| services.yggdrasil.configFile | A file which contains JSON or HJSON configuration for yggdrasil
|
| services._3proxy.services.*.extraConfig | Extra configuration for service
|
| services.homebridge.uiSettings | Configuration options for homebridge config UI plugin
|
| services.headscale.settings.dns.split | Split DNS configuration (map of domains and which DNS server to use for each)
|
| services.autosuspend.settings | Configuration for autosuspend, see
https://autosuspend.readthedocs.io/en/latest/configuration_file.html#general-configuration
for supported values.
|
| services.blockbook-frontend.<name>.configFile | Location of the blockbook configuration file.
|
| programs.dms-shell.systemd.restartIfChanged | Whether to restart the dms.service when the DankMaterialShell package or
configuration changes
|
| services.immichframe.settings | Configuration for ImmichFrame
|
| services.printing.cups-pdf.instances | Permits to raise one or more cups-pdf instances
|
| services.mautrix-discord.settings.bridge | Bridge configuration
|
| services.mollysocket.settings | Configuration for MollySocket
|
| services.pipewire.configPackages | List of packages that provide PipeWire configuration, in the form of
share/pipewire/*/*.conf files
|
| systemd.services.<name>.reloadIfChanged | Whether the service should be reloaded during a NixOS
configuration switch if its definition has changed
|
| systemd.suppressedSystemUnits | A list of units to skip when generating system systemd configuration directory
|
| system.extraDependencies | A list of paths that should be included in the system
closure but generally not visible to users
|
| services.xserver.windowManager.i3.configFile | Path to the i3 configuration file
|
| services.invidious.nginx.enable | Whether to configure nginx as a reverse proxy for Invidious
|
| services.druid.coordinator.config | (key=value) Configuration to be written to runtime.properties of the druid Druid Coordinator
https://druid.apache.org/docs/latest/configuration/index.html
|
| networking.resolvconf.extraConfig | Extra configuration to append to resolvconf.conf.
|
| services.firefly-iii-data-importer.poolConfig | Options for the Firefly III Data Importer PHP pool
|
| services.ocis.configDir | Path to directory containing oCIS config file
|
| services.opencloud.settings | Additional YAML configuration for OpenCloud services
|
| services.matterbridge.configPath | The path to the matterbridge configuration file.
|
| services.maddy.tls.loader | TLS certificates are obtained by modules called "certificate
loaders"
|
| services.thanos.rule.tracing.config | Tracing configuration
|
| services.opentracker.extraOptions | Configuration Arguments for opentracker
See https://erdgeist.org/arts/software/opentracker/ for all params
|
| services.syncthing.settings.options | The options element contains all other global configuration options
|
| services.writefreely.settings | Writefreely configuration (config.ini)
|
| system.userActivationScripts | A set of shell script fragments that are executed by a systemd user
service when a NixOS system configuration is activated
|
| system.copySystemConfiguration | If enabled, copies the NixOS configuration file
(usually /etc/nixos/configuration.nix)
and symlinks it from the resulting system
(getting to /run/current-system/configuration.nix)
|
| services.gatus.environmentFile | File to load as environment file
|
| boot.loader.grub.timeoutStyle |
menu shows the menu.
countdown uses a text-mode countdown.
hidden hides GRUB entirely
|
| networking.wireless.networks | The network definitions to automatically connect to when
wpa_supplicant is running
|
| hardware.nvidia.datacenter.settings | Additional configuration options for fabricmanager.
|
| services.postgrest.settings.db-config | Enables the in-database configuration.
https://docs.postgrest.org/en/stable/references/configuration.html#in-database-configuration
This is enabled by default upstream, but disabled by default in this module.
|
| services.prosody.virtualHosts.<name>.ssl.extraOptions | Extra SSL configuration options.
|
| services.postgrest.settings | PostgREST configuration as documented in:
https://docs.postgrest.org/en/stable/references/configuration.html#list-of-parameters
db-uri is represented as an attribute set, see settings.db-uri
The settings.jwt-secret option is blocked
|
| <imports = [ pkgs.php.services.default ]>.php-fpm.settings | PHP FPM configuration
|
| services.wg-access-server.secretsFile | yaml file containing all secrets. this needs to be in the same structure as the configuration
|
| services.pufferpanel.environment | Environment variables to set for the service
|
| services.dsnet.settings.ExternalIP | The external IP address of the server
|
| services.openafsServer.roles.backup.fabsExtraConfig | Additional configuration parameters for the FABS backup server.
|
| services.limesurvey.httpd.virtualHost | Apache configuration can be done by adapting services.httpd.virtualHosts.<name>
|
| services.limesurvey.nginx.virtualHost | Nginx configuration can be done by adapting services.nginx.virtualHosts.<name>
|
| services.pipewire.extraConfig.client | Additional configuration for the PipeWire client library, used by most applications
|
| services.mattermost.plugins | Plugins to add to the configuration
|
| services.meilisearch.settings | Configuration settings for Meilisearch
|
| services.pairdrop.environment | Additional configuration (environment variables) for PairDrop, see
https://github.com/schlagmichdoch/PairDrop/blob/master/docs/host-your-own.md#environment-variables
for supported values.
|
| services.kubernetes.kubelet.cni.configDir | Path to Kubernetes CNI configuration directory.
|
| services.jirafeau.nginxConfig.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.stash.mutableSettings | Whether the Stash config.yml is writeable by Stash
|
| environment.deepin.excludePackages | List of default packages to exclude from the configuration
|
| documentation.man.man-db.package | The man-db derivation to use
|
| services.homepage-dashboard.services | Homepage services configuration
|
| hardware.nvidia-container-toolkit.enable | Enable dynamic CDI configuration for Nvidia devices by running
nvidia-container-toolkit on boot.
|
| services.bitmagnet.settings.postgres | PostgreSQL database configuration
|
| services.mtprotoproxy.extraConfig | Extra configuration options for mtprotoproxy.
|
| services.networkd-dispatcher.rules | Declarative configuration of networkd-dispatcher rules
|
| services.thanos.store.tracing.config | Tracing configuration
|
| services.monica.config | monica configuration options to set in the
.env file
|
| services.thanos.query.tracing.config | Tracing configuration
|
| services.searx.environmentFile | Environment file (see systemd.exec(5) "EnvironmentFile=" section for the syntax) to define variables for Searx
|
| services.sabnzbd.secretFiles | Path to a list of ini file containing confidential settings such as credentials
|
| systemd.paths.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| services.vdirsyncer.jobs.<name>.config.general | general configuration
|
| services.matrix-appservice-irc.settings | Configuration for the appservice, see
https://github.com/matrix-org/matrix-appservice-irc/blob/4.0.0/config.sample.yaml
for supported values
|
| systemd.mounts.*.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| boot.specialFileSystems.<name>.depends | List of paths that should be mounted before this one
|
| services.autorandr.profiles.<name>.config.<name>.dpi | Output DPI configuration.
|
| services.kanata.keyboards.<name>.extraDefCfg | Configuration of defcfg other than linux-dev (generated
from the devices option) and
linux-continue-if-no-devs-found (hardcoded to be yes)
|
| services.cross-seed.useGenConfigDefaults | Whether to use the option defaults from the configuration generated by
cross-seed gen-config
|
| services.keyd.keyboards.<name>.extraConfig | Extra configuration that is appended to the end of the file.
Do not write ids section here, use a separate option for it
|
| services.freeswitch.configDir | Override file in FreeSWITCH config template directory
|
| services.thanos.compact.objstore.config-file | Path to YAML file that contains object store configuration
|
| services.mautrix-discord.settings.logging | Logging configuration
|
| services.szurubooru.server.settings | Configuration to write to config.yaml
|
| services.thanos.receive.objstore.config-file | Path to YAML file that contains object store configuration
|
| services.thanos.sidecar.objstore.config-file | Path to YAML file that contains object store configuration
|
| services.xserver.windowManager.qtile.configFile | Path to the qtile configuration file
|
| services.zabbixWeb.httpd.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.matrix-synapse.extraConfigFiles | Extra config files to include
|
| services.zabbixWeb.nginx.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| security.pam.services.<name>.duoSecurity.enable | If set, use the Duo Security pam module
pam_duo for authentication
|
| services.oink.domains | List of attribute sets containing configuration for each domain
|
| services.hylafax.userAccessFile | The hosts.hfaxd
file entry in the spooling area
will be symlinked to the location given here
|
| services.xserver.windowManager.mlvwm.configFile | Path to the mlvwm configuration file
|
| systemd.user.services.<name>.reloadIfChanged | Whether the service should be reloaded during a NixOS
configuration switch if its definition has changed
|
| services.xserver.windowManager.bspwm.configFile | Path to the bspwm configuration file
|
| services.drupal.sites.<name>.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.dnsmasq.settings | Configuration of dnsmasq
|
| services.anubis.defaultOptions.settings | Freeform configuration via environment variables for Anubis
|
| services.dokuwiki.sites.<name>.settings | Structural DokuWiki configuration
|
| services.dsnet.settings.ExternalIP6 | The external IPv6 address of the server
|
| services.keycloak.settings.hostname | The hostname part of the public URL used as base for
all frontend requests
|
| security.pam.services.<name>.startSession | If set, the service will register a new session with
systemd's login manager
|
| services.elasticsearch.extraConf | Extra configuration for elasticsearch.
|
| boot.kernelPackages | This option allows you to override the Linux kernel used by
NixOS
|
| services.lidarr.environmentFiles | Environment file to pass secret configuration values
|
| services.outline.slackIntegration | For a complete Slack integration with search and posting to channels
this configuration is also needed
|
| services.stalwart.credentials | Credentials envs used to configure Stalwart secrets
|
| services.nextcloud.poolSettings | Options for nextcloud's PHP pool
|
| services.moosefs.metalogger.settings | Metalogger configuration options (mfsmetalogger.cfg).
|
| services.system76-scheduler.useStockConfig | Use the (reasonable and featureful) stock configuration
|
| services.sonarr.environmentFiles | Environment file to pass secret configuration values
|
| services.radarr.environmentFiles | Environment file to pass secret configuration values
|
| environment.plasma5.excludePackages | List of default packages to exclude from the configuration
|
| services.quorum.privateconfig | Configuration of privacy transaction manager.
|
| environment.plasma6.excludePackages | List of default packages to exclude from the configuration
|
| services.akkoma.config.":pleroma".":frontends" | Frontend configuration
|
| services.jitsi-meet.videobridge.enable | Jitsi Videobridge instance and configure it to connect to Prosody
|
| boot.initrd.systemd.suppressedUnits | A list of units to skip when generating system systemd configuration directory
|
| services.anubis.instances.<name>.settings | Freeform configuration via environment variables for Anubis
|
| services.triggerhappy.extraConfig | Literal contents to append to the end of triggerhappy configuration file.
|
| services.renovate.environment | Extra environment variables to export to the Renovate process
from the systemd unit configuration
|
| services.pretalx.environmentFiles | Environment files that allow passing secret configuration values
|
| services.thanos.rule.objstore.config | Object store configuration
|
| virtualisation.vmVariant | Machine configuration to be added for the vm script produced by nixos-rebuild build-vm.
|
| systemd.timers.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| systemd.slices.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| services.kubernetes.addons.dns.corefile | Custom coredns corefile configuration
|
| services.postfixadmin.extraConfig | Extra configuration for the postfixadmin instance, see postfixadmin's config.inc.php for available options.
|
| services.bookstack.settings | Options for Bookstack configuration
|
| services.knot-resolver.settings.network.listen | List of interfaces to listen to and its configuration.
|
| services.canaille.settings.CANAILLE_LDAP | Configuration for the LDAP backend
|
| services.logrotate.settings.<name>.files | Single or list of files for which rules are defined
|
| services.suricata.settings.threshold-file | Suricata threshold configuration file.
|
| services.scion.scion-dispatcher.settings | scion-dispatcher configuration
|
| <imports = [ pkgs.ghostunnel.services.default ]> | This is a modular service, which can be imported into a NixOS configuration using the system.services option.
|
| services.youtrack.generalParameters | General configuration parameters and other JVM options
|
| documentation.man.mandoc.extraConfig | Extra configuration to write to man.conf(5).
|
| services.adguardhome.allowDHCP | Allows AdGuard Home to open raw sockets (CAP_NET_RAW), which is
required for the integrated DHCP server
|
| services.clamav.fangfrisch.settings | fangfrisch configuration
|
| services.autorandr.profiles.<name>.config.<name>.gamma | Output gamma configuration.
|
| services.screego.environmentFile | Environment file (see systemd.exec(5) "EnvironmentFile="
section for the syntax) passed to the service
|
| services.routinator.settings.log-file | A string value containing the path to a file to which log messages will be appended if the log configuration value is set to file
|
| services.mchprs.declarativeSettings | Whether to use a declarative configuration for MCHPRS.
|
| services.prometheus.xmpp-alerts.settings | Configuration for prometheus xmpp-alerts, see
https://github.com/jelmer/prometheus-xmpp-alerts/blob/master/xmpp-alerts.yml.example
for supported values.
|
| systemd.services.<name>.notSocketActivated | If set, a changed unit is never assumed to be
socket-activated on configuration switch, even if
it might have associated socket units
|
| systemd.user.paths.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| environment.systemPackages | The set of packages that appear in
/run/current-system/sw
|
| services.homepage-dashboard.bookmarks | Homepage bookmarks configuration
|
| documentation.man.mandoc.package | The mandoc derivation to use
|
| services.postgresql.settings | PostgreSQL configuration
|
| services.thanos.store.objstore.config | Object store configuration
|
| services.thanos.query-frontend.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.your_spotify.settings | Your Spotify Configuration
|
| services.vmalert.instances.<name>.settings | vmalert configuration, passed via command line flags
|
| services.stalwart-mail.credentials | Credentials envs used to configure Stalwart-Mail secrets
|
| programs.firefox.policies | Group policies to install
|
| services.activemq.javaProperties | Specifies Java properties that are sent to the ActiveMQ
broker service with the "-D" option
|
| services.filebeat.settings | Configuration for filebeat
|
| services.elasticsearch.logging | Elasticsearch logging configuration.
|
| documentation.man.mandoc.settings | Configuration for man.conf(5)
|
| programs.uwsm.waylandCompositors | Configuration for UWSM-managed Wayland Compositors
|
| services.readarr.environmentFiles | Environment file to pass secret configuration values
|
| services.traefik.dynamic.files.<name>.settings | Dynamic configuration for Traefik, written in Nix.
This will be serialized to JSON (which is considered valid YAML) at build, and passed as part of the static file.
|
| services.archisteamfarm.bots | Bots name and configuration.
|
| services.gerrit.replicationSettings | Replication configuration
|
| services.postfixadmin.enable | Whether to enable postfixadmin
|
| services.jitsi-meet.prosody.lockdown | Whether to disable Prosody features not needed by Jitsi Meet
|
| services.thanos.compact.tracing.config | Tracing configuration
|
| services.mediawiki.extensions | Attribute set of paths whose content is copied to the extensions
subdirectory of the MediaWiki installation and enabled in configuration
|
| services.thanos.sidecar.tracing.config | Tracing configuration
|
| services.thanos.receive.tracing.config | Tracing configuration
|
| services.github-runners.<name>.group | Group under which to run the service
|
| systemd.sockets.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| virtualisation.cri-o.settings | Configuration for cri-o, see
https://github.com/cri-o/cri-o/blob/master/docs/crio.conf.5.md.
|
| systemd.targets.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| services.bookstack.config | BookStack configuration options to set in the
.env file
|
| security.tpm2.tctiEnvironment.deviceConf | Configuration part of the device TCTI, e.g. the path to the TPM device
|
| programs.uwsm.enable | Whether to enable uwsm, which wraps standalone Wayland compositors with a set
of Systemd units on the fly
|
| services.jitterentropy-rngd.enable | Whether to enable jitterentropy-rngd service configuration.
|
| services.keyd.keyboards.<name>.settings | Configuration, except ids section, that is written to /etc/keyd/.conf
|
| services.castopod.environmentFile | Environment file to inject e.g. secrets into the configuration
|
| services.autorandr.profiles.<name>.config.<name>.rotate | Output rotate configuration.
|
| services.apache-kafka.configFiles.log4jProperties | Kafka log4j property configuration file path
|
| services.jenkins.jobBuilder.enable | Whether to enable the Jenkins Job Builder (JJB) service
|
| services.taskserver.config | Configuration options to pass to Taskserver
|
| systemd.user.slices.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| services.xserver.windowManager.awesome.luaModules | List of lua packages available for being used in the Awesome configuration.
|
| systemd.mounts.*.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| systemd.paths.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| systemd.user.timers.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| systemd.units.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| services.agorakit.config | Agorakit configuration options to set in the
.env file
|
| services.dovecot2.mailPlugins.globally.enable | mail plugins to enable as a list of strings to append to the top-level $mail_plugins configuration variable
|
| services.firefox-syncserver.singleNode.enable | Whether to enable auto-configuration for a simple single-node setup.
|
| security.tpm2.tctiEnvironment.tabrmdConf | Configuration part of the tabrmd TCTI, like the D-Bus bus name
|
| services.languagetool.settings | Configuration file options for LanguageTool, see
'languagetool-http-server --help'
for supported settings.
|
| services.nullmailer.config.helohost | Sets the environment variable $HELOHOST which is used by the
SMTP protocol module to set the parameter given to the HELO command
|
| services.xserver.windowManager.bspwm.sxhkd.configFile | Path to the sxhkd configuration file
|
| services.fedimintd.<name>.nginx.config.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.interception-tools.plugins | A list of interception tools plugins that will be made available to use
inside the udevmon configuration.
|
| services.privoxy.settings.filterfile | List of paths to Privoxy filter files
|
| services.shadowsocks.extraConfig | Additional configuration for shadowsocks that is not covered by the
provided options
|
| services.nebula-lighthouse-service.settings | Configuration for nebula-lighthouse-service.
|
| services.prometheus.exporters.sql.configFile | Path to configuration file.
|
| services.moosefs.chunkserver.settings | Chunkserver configuration options (mfschunkserver.cfg).
|
| systemd.user.services.<name>.notSocketActivated | If set, a changed unit is never assumed to be
socket-activated on configuration switch, even if
it might have associated socket units
|
| services.hostapd.radios.<name>.settings | Extra configuration options to put at the end of global initialization, before defining BSSs
|
| networking.supplicant.<name>.extraConf | Configuration options for wpa_supplicant.conf
|
| services.linkwarden.environment | Extra configuration environment variables
|
| services.matterbridge.configFile | WARNING: THIS IS INSECURE, as your password will end up in
/nix/store, thus publicly readable
|
| services.netbird.tunnels.<name>.environment | Environment for the netbird service, used to pass configuration options.
|
| services.paretosecurity.users | Per-user Pareto Security configuration.
|
| services.netbird.clients.<name>.environment | Environment for the netbird service, used to pass configuration options.
|
| services.canaille.settings.CANAILLE.SMTP | SMTP configuration
|
| services.davis.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.biboumi.credentialsFile | Path to a configuration file to be merged with the settings
|
| services.movim.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.prometheus.exporters.json.configFile | Path to configuration file.
|
| services.mattermost.environment | Extra environment variables to export to the Mattermost process
from the systemd unit configuration.
|
| services.tinc.networks.<name>.hostSettings.<name>.settings | Configuration for this host
|
| services.prometheus.exporters.ipmi.configFile | Path to configuration file.
|
| services.prowlarr.environmentFiles | Environment file to pass secret configuration values
|
| services.slskd.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| systemd.slices.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| services.whisparr.environmentFiles | Environment file to pass secret configuration values
|
| systemd.timers.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| services.waagent.settings.ResourceDisk.SwapSizeMB | Specifies the size of the swap file in MiB (1024×1024 bytes)
|
| programs.tsmClient.defaultServername | If multiple server stanzas are declared with
programs.tsmClient.servers,
this option may be used to name a default
server stanza that IBM TSM uses in the absence of
a user-defined dsm.opt file
|
| services.homepage-dashboard.kubernetes | Homepage kubernetes configuration
|
| services.journalwatch.extraConfig | Extra lines to be added verbatim to the journalwatch/config configuration file
|
| services.snipe-it.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.thanos.downsample.tracing.config-file | Path to YAML file that contains tracing configuration
|
| systemd.user.sockets.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| systemd.user.targets.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| systemd.services.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| services.limesurvey.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.apache-kafka.configFiles.serverProperties | Kafka server.properties configuration file path
|
| services.fail2ban.jails | The configuration of each Fail2ban “jail”
|
| networking.getaddrinfo.reload | Determines whether a process should detect changes to the configuration file since it was last read
|
| services.syncthing.settings | Extra configuration options for Syncthing
|
| services.prometheus.exporters.mail.configFile | Specify the mailexporter configuration file to use.
|
| services.thanos.sidecar.objstore.config | Object store configuration
|
| services.thanos.compact.objstore.config | Object store configuration
|
| services.thanos.receive.objstore.config | Object store configuration
|
| services.suricata.settings.reference-config-file | Suricata reference configuration file.
|
| systemd.user.units.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| systemd.user.paths.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| virtualisation.vswitch.enable | Whether to enable Open vSwitch
|
| services.invoiceplane.sites.<name>.poolConfig | Options for the InvoicePlane PHP pool
|
| services.firefly-iii-data-importer.settings | Options for firefly-iii data importer configuration
|
| services.globalprotect.settings | GlobalProtect-openconnect configuration
|
| networking.wireless.networks.<name>.extraConfig | Extra configuration lines appended to the network block
|
| services.mediawiki.httpd.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.matrix-appservice-irc.settings.ircService | IRC bridge configuration
|
| services.keycloak.settings | Configuration options corresponding to parameters set in
conf/keycloak.conf
|
| services.gancio.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.dsnet.settings.ExternalHostname | The hostname that clients should use to connect to this server
|
| services.dovecot2.mailPlugins.perProtocol.<name>.enable | mail plugins to enable as a list of strings to append to the corresponding per-protocol $mail_plugins configuration variable
|
| services.fluidd.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.commafeed.environment | Extra environment variables passed to CommaFeed, refer to
https://github.com/Athou/commafeed/blob/master/commafeed-server/config.yml.example
for supported values
|
| networking.wireguard.useNetworkd | Whether to use networkd as the network configuration backend for
Wireguard instead of the legacy script-based system.
Some options have slightly different behavior with the networkd and
script-based backends
|
| services.akkoma.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.matomo.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.monica.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.grafana-image-renderer.provisionGrafana | Whether to enable Grafana configuration for grafana-image-renderer.
|
| services.komodo-periphery.environmentFile | Environment file for additional configuration via environment variables.
|
| systemd.targets.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| systemd.sockets.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| virtualisation.lxd.preseed | Configuration for LXD preseed, see
https://documentation.ubuntu.com/lxd/en/latest/howto/initialize/#initialize-preseed
for supported values
|
| services.hockeypuck.settings | Configuration file for hockeypuck, here you can override
certain settings (loglevel and
openpgp.db.dsn) by just setting those values
|
| programs.gnupg.agent.pinentryPackage | Which pinentry package to use
|
| services.immichframe.settings.Accounts | Accounts configuration, multiple are permitted
|
| services.prometheus.exporters.ipmi.webConfigFile | Path to configuration file that can enable TLS or authentication.
|
| services.ocsinventory-agent.settings | Configuration for /etc/ocsinventory-agent/ocsinventory-agent.cfg
|
| services.matrix-continuwuity.settings | Generates the continuwuity.toml configuration file
|
| services.trafficserver.plugins | Controls run-time loadable plugins available to Traffic Server, as
well as their configuration
|
| services.nextcloud-spreed-signaling.settings | Declarative configuration
|
| systemd.user.timers.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| systemd.user.slices.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| services.matrix-appservice-irc.settings.database | Configuration for the database
|
| services.xserver.desktopManager.surf-display.extraConfig | Extra configuration options to append to /etc/default/surf-display.
|
| services.invoiceplane.sites.<name>.settings | Structural InvoicePlane configuration
|
| services.privoxy.settings.actionsfile | List of paths to Privoxy action files
|
| services.opencloud.environmentFile | An environment file as defined in systemd.exec(5)
|
| services.wordpress.sites.<name>.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| systemd.user.services.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| nix.daemonCPUSchedPolicy | Nix daemon process CPU scheduling policy
|
| services.strongswan-swanctl.swanctl.pools | Section defining named pools
|
| services.ocis.environment | Extra config options
|
| services.thanos.query-frontend.tracing.config | Tracing configuration
|
| services.thanos.downsample.objstore.config-file | Path to YAML file that contains object store configuration
|
| services.mautrix-discord.settings.appservice | Appservice configuration
|
| services.kubernetes.apiserver.runtimeConfig | Api runtime configuration
|
| services.simplesamlphp.<name>.settings | Configuration options used by SimpleSAMLphp
|
| networking.supplicant.<name>.configFile.writable | Whether the configuration file at configFile.path should be written to by
wpa_supplicant.
|
| services.grafana.provision.alerting.rules.path | Path to YAML rules configuration
|
| virtualisation.xen.store.settings | The OCaml-based Xen Store Daemon configuration
|
| services.prometheus.exporters.ping.settings | Configuration for ping_exporter, see
https://github.com/czerwonk/ping_exporter
for supported values.
|
| virtualisation.emptyDiskImages.*.driveConfig | Drive configuration to pass to virtualisation.qemu.drives
|
| virtualisation.vmVariantWithBootLoader | Machine configuration to be added for the vm script produced by nixos-rebuild build-vm-with-bootloader.
|
| services.waagent.settings.ResourceDisk.EnableSwap | If enabled, the agent creates a swap file (/swapfile) on the resource disk
and adds it to the system swap space
|
| programs.firefox.preferences | Preferences to set from about:config
|
| environment.defaultPackages | Set of default packages that aren't strictly necessary
for a running system, entries can be removed for a more
minimal NixOS installation
|
| services.limesurvey.nginx.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.minecraft-server.declarative | Whether to use a declarative Minecraft server configuration
|
| services.prometheus.exporters.fritz.settings | Configuration settings for fritz-exporter.
|
| services.persistent-evdev.devices | A set of virtual proxy device labels with backing physical device ids
|
| services.limesurvey.httpd.virtualHost.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| virtualisation.installBootLoader | Install boot loader to target image
|
| services.xserver.exportConfiguration | Whether to symlink the X server configuration under
/etc/X11/xorg.conf.
|
| systemd.user.sockets.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| systemd.services.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| services.mautrix-signal.environmentFile | File containing environment variables to be passed to the mautrix-signal service
|
| systemd.user.targets.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| services.waagent.settings.ResourceDisk.MountPoint | This option specifies the path at which the resource disk is mounted
|
| virtualisation.incus.preseed | Configuration for Incus preseed, see
https://linuxcontainers.org/incus/docs/main/howto/initialize/#non-interactive-configuration
for supported values
|
| boot.loader.generic-extlinux-compatible.mirroredBoots | Mirror the boot configuration to multiple paths.
|
| services.wasabibackend.customConfigFile | Defines the path to a custom configuration file that is copied to the user's directory
|
| services.vault.extraSettingsPaths | Configuration files to load besides the immutable one defined by the NixOS module
|
| systemd.automounts.*.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| virtualisation.libvirtd.extraConfig | Extra contents appended to the libvirtd configuration file,
libvirtd.conf.
|
| boot.loader.generic-extlinux-compatible.enable | Whether to generate an extlinux-compatible configuration file
under /boot/extlinux.conf
|
| services.misskey.reverseProxy.webserver.caddy.logFormat | Configuration for HTTP request logging (also known as access logs)
|
| services.radicle.ci.adapters.native.instances.<name>.name | Adapter name that is used in the radicle-ci-broker configuration
|
| services.scrutiny.collector.settings | Collector settings to be rendered into the collector configuration file
|
| services.tinc.networks.<name>.hostSettings.<name>.rsaPublicKey | Legacy RSA public key of the host in PEM format, including start and
end markers
|
| services.parsedmarc.settings | Configuration parameters to set in
parsedmarc.ini
|
| containers.<name>.ephemeral | Runs container in ephemeral mode with the empty root filesystem at boot
|
| services.xserver.xrandrHeads | Multiple monitor configuration, just specify a list of XRandR
outputs
|
| services.agorakit.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.librenms.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.kanboard.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.coturn.tls-listening-port | TURN listener port for TLS
|
| services.dolibarr.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.fediwall.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.crowdsec-firewall-bouncer.createRulesets | Whether to have the module create the appropriate firewall configuration
based on the bouncer settings
|
| services.grafana.provision.dashboards.path | Path to YAML dashboard configuration
|
| services.mainsail.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.pixelfed.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.suricata.settings.dpdk.interfaces | See upstream docs: docs/capture-hardware/dpdk and docs/configuration/suricata-yaml.html#data-plane-development-kit-dpdk.
|
| services.waagent.settings.ResourceDisk.FileSystem | The file system type for the resource disk
|
| services.immich.machine-learning.environment | Extra configuration environment variables
|
| services.lifecycled.queueCleaner.frequency | How often to trigger the queue cleaner
|
| networking.getaddrinfo.enable | Enables custom address sorting configuration for getaddrinfo(3) according to RFC 3484
|
| services.thanos.downsample.tracing.config | Tracing configuration
|
| services.misskey.reverseProxy.webserver.caddy.extraConfig | Additional lines of configuration appended to this virtual host in the
automatically generated Caddyfile.
|
| services.sssd.sshAuthorizedKeysIntegration | Whether to make sshd look up authorized keys from SSS
|
| services.matrix-synapse.settings.listeners | List of ports that Synapse should listen on, their purpose and their configuration
|
| specialisation.<name>.inheritParentConfig | Include the entire system's configuration
|
| nixpkgs.pkgs | If set, the pkgs argument to all NixOS modules is the value of
this option, extended with nixpkgs.overlays, if
that is also set
|
| services.mastodon.elasticsearch.preset | It controls the ElasticSearch indices configuration (number of shards and replica).
|
| systemd.user.services.<name>.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| boot.loader.generic-extlinux-compatible.populateCmd | Contains the builder command used to populate an image,
honoring all options except the -c <path-to-default-configuration>
argument
|
| services.prometheus.exporters.blackbox.configFile | Path to configuration file.
|
| services.neo4j.ssl.policies.<name>.baseDirectory | The mandatory base directory for cryptographic objects of this
policy
|
| services.prometheus.exporters.fastly.configFile | Path to a fastly-exporter configuration file
|
| services.radicle.httpd.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.tinc.networks.<name>.hostSettings.<name>.subnets | The subnets which this tinc daemon will serve
|
| services.uwsgi.capabilities | Grant capabilities to the uWSGI instance
|
| services.pipewire.extraConfig.pipewire-pulse | Additional configuration for the PipeWire PulseAudio server
|
| services.anuko-time-tracker.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.bitwarden-directory-connector-cli.ldap | Options to configure the LDAP connection
|
| services.bitwarden-directory-connector-cli.sync | Options to configure what gets synced
|
| services.nginx.virtualHosts.<name>.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.restic.backups.<name>.rcloneConfig | Configuration for the rclone remote being used for backup
|
| services.roundcube.maxAttachmentSize | The maximum attachment size in MB.
[upstream issue comment]: https://github.com/roundcube/roundcubemail/issues/7979#issuecomment-808879209
Since there is some overhead in base64 encoding applied to attachments, + 37% will be added
to the value set in this option in order to offset the overhead
|
| virtualisation.containers.enable | This option enables the common /etc/containers configuration module.
|
| services.geoipupdate.settings | geoipupdate configuration options
|
| services.autorandr.profiles.<name>.config.<name>.scale | Output scale configuration
|
| virtualisation.docker.daemon.settings | Configuration for docker daemon
|
| services.matrix-appservice-irc.settings.homeserver | Homeserver configuration
|
| services.bookstack.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| programs.starship.transientPrompt.enable | Whether to enable Starship's transient prompt
feature in fish shells
|
| environment.corePackages | Set of core packages for a normal interactive system
|
| hardware.nvidia.prime.sync.enable | Whether to enable NVIDIA Optimus support using the NVIDIA proprietary driver via PRIME
|
| services.grafana.provision.alerting.rules.settings | Grafana rules configuration in Nix
|
| boot.loader.generic-extlinux-compatible.mirroredBoots.*.path | The path to the boot directory where the extlinux-compatible
configuration files will be written.
|
| services.mollysocket.environmentFile | Environment file (see systemd.exec(5) "EnvironmentFile="
section for the syntax) passed to the service
|
| services.mautrix-whatsapp.environmentFile | File containing environment variables to be passed to the mautrix-whatsapp service
|
| systemd.automounts.*.overrideStrategy | Defines how unit configuration is provided for systemd:
asDropinIfExists creates a unit file when no unit file is provided by the package
otherwise it creates a drop-in file named overrides.conf.
asDropin creates a drop-in file named overrides.conf
|
| services.grafana.provision.alerting.muteTimings.path | Path to YAML mute timings configuration
|
| services.gotosocial.environmentFile | File path containing environment variables for configuring the GoToSocial service
in the format of an EnvironmentFile as described by systemd.exec(5)
|
| hardware.nvidia.prime.reverseSync.setupCommands.enable | Whether to enable configure the display manager to be able to use the outputs
attached to the NVIDIA GPU
|
| services.thanos.downsample.objstore.config | Object store configuration
|
| services.grafana.provision.datasources.path | Path to YAML datasource configuration
|
| services.glance.environmentFile | Path to an environment file as defined in systemd.exec(5)
|
| services.misskey.reverseProxy.webserver.caddy.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.misskey.reverseProxy.webserver.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.opensmtpd.serverConfiguration | The contents of the smtpd.conf configuration file
|
| services.waagent.settings.ResourceDisk.Format | If set to true, waagent formats and mounts the resource disk that the platform provides,
unless the file system type in `ResourceDisk
|
| services.biboumi.settings.persistent_by_default | Whether all rooms will be persistent by default:
the value of the “persistent” option in the global configuration of each
user will be “true”, but the value of each individual room will still
default to false
|
| services.armagetronad.servers.<name>.settings | Armagetron Advanced server rules configuration
|
| services.grafana.provision.alerting.policies.path | Path to YAML notification policies configuration
|
| services.mastodon.configureNginx | Configure nginx as a reverse proxy for mastodon
|
| services.opentelemetry-collector.configFile | Specify a path to a configuration file that Opentelemetry Collector should use.
|
| services.prosody.xmppComplianceSuite | The XEP-0423 defines a set of recommended XEPs to implement
for a server
|
| services.jirafeau.nginxConfig.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| programs.zsh.autosuggestions.extraConfig | Attribute set with additional configuration values
|
| services.hostapd.radios.<name>.networks.<name>.settings | Extra configuration options to put at the end of this BSS's defintion in the
hostapd.conf for the associated interface
|
| services.grafana.provision.dashboards.settings | Grafana dashboard configuration in Nix
|
| services.mjolnir.pantalaimon.options.extraSettings | Extra configuration options
|
| services.radicle.ci.adapters.native.instances.<name>.settings | Configuration of radicle-native-ci
|
| services.spamassassin.config | The SpamAssassin local.cf config
If you are using this configuration:
add_header all Status _YESNO_, score=_SCORE_ required=_REQD_ tests=_TESTS_ autolearn=_AUTOLEARN_ version=_VERSION_
Then you can Use this sieve filter:
require ["fileinto", "reject", "envelope"];
if header :contains "X-Spam-Flag" "YES" {
fileinto "spam";
}
Or this procmail filter:
:0:
* ^X-Spam-Flag: YES
/var/vpopmail/domains/lastlog.de/js/.maildir/.spam/new
To filter your messages based on the additional mail headers added by spamassassin.
|
| services.zabbixWeb.nginx.virtualHost.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| programs.opengamepadui.fontPackages | Font packages to use in OpenGamepadUI
|
| security.pam.sshAgentAuth.authorizedKeysFiles | A list of paths to files in OpenSSH's authorized_keys format, containing
the keys that will be trusted by the pam_ssh_agent_auth module
|
| services.suricata.settings.outputs | Configure the type of alert (and other) logging you would like
|
| virtualisation.containerd.configFile | Path to containerd config file
|
| services.athens.storage.s3.useDefaultConfiguration | Use default configuration for the S3 storage backend.
|
| services.grafana.provision.alerting.contactPoints.path | Path to YAML contact points configuration
|
| services.pipewire.wireplumber.configPackages | List of packages that provide WirePlumber configuration, in the form of
share/wireplumber/*/*.conf files
|
| services.prometheus.exporters.pve.configFile | Path to the service's config file
|
| services.grafana.provision.alerting.templates.path | Path to YAML templates configuration
|
| services.prometheus.exporters.pgbouncer.webConfigFile | Path to configuration file that can enable TLS or authentication.
|
| services.automysqlbackup.settings | automysqlbackup configuration
|
| services.tabby.acceleration | Specifies the device to use for hardware acceleration.
cpu: no acceleration just use the CPU
rocm: supported by modern AMD GPUs
cuda: supported by modern NVIDIA GPUs
metal: supported on darwin aarch64 machines
Tabby will try and determine what type of acceleration that is
already enabled in your configuration when acceleration = null.
- nixpkgs.config.cudaSupport
- nixpkgs.config.rocmSupport
- if stdenv.hostPlatform.isDarwin && stdenv.hostPlatform.isAarch64
IFF multiple acceleration methods are found to be enabled or if you
haven't set either cudaSupport or rocmSupport you will have to
specify the device type manually here otherwise it will default to
the first from the list above or to cpu.
|
| services.matrix-synapse.settings.log_config | The file that holds the logging configuration.
|
| services.armagetronad.servers.<name>.roundSettings | Armagetron Advanced server per-round configuration
|
| services.opentelemetry-collector.settings | Specify the configuration for Opentelemetry Collector in Nix
|
| services.prometheus.alertmanager-ntfy.settings | Configuration of alertmanager-ntfy
|
| services.hercules-ci-agent.settings.staticSecretsDirectory | This is the default directory to look for statically configured secrets like cluster-join-token.key
|
| system.includeBuildDependencies | Whether to include the build closure of the whole system in
its runtime closure
|
| services.grafana.provision.alerting.muteTimings.settings | Grafana mute timings configuration in Nix
|
| networking.networkmanager.enable | Whether to use NetworkManager to obtain an IP address and other
configuration for all network interfaces that are not manually
configured
|
| services.lasuite-docs.collaborationServer.settings | Configuration options of collaboration server
|
| services.grafana.provision.datasources.settings | Grafana datasource configuration in Nix
|
| services.netbird.server.management.settings | Configuration of the netbird management server
|
| services.postgres-websockets.environment | postgres-websockets configuration as defined in:
https://github.com/diogob/postgres-websockets/blob/master/src/PostgresWebsockets/Config.hs#L71-L87
PGWS_DB_URI is represented as an attribute set, see [`environment
|
| services.github-runners.<name>.ephemeral | If enabled, causes the following behavior:
- Passes the
--ephemeral flag to the runner configuration script
- De-registers and stops the runner with GitHub after it has processed one job
- On stop, systemd wipes the runtime directory (this always happens, even without using the ephemeral option)
- Restarts the service after its successful exit
- On start, wipes the state directory and configures a new runner
You should only enable this option if tokenFile points to a file which contains a
personal access token (PAT)
|
| services.grafana.provision.alerting.policies.settings | Grafana notification policies configuration in Nix
|
| programs.singularity.packageOverriden | This option provides access to the overridden result of programs.singularity.package
|
| services.netbird.tunnels.<name>.hardened | Hardened service:
- runs as a dedicated user with minimal set of permissions (see caveats),
- restricts daemon configuration socket access to dedicated user group
(you can grant access to it with
users.users."<user>".extraGroups = [ netbird-‹name› ]),
Even though the local system resources access is restricted:
CAP_NET_RAW, CAP_NET_ADMIN and CAP_BPF still give unlimited network manipulation possibilites,
- older kernels don't have
CAP_BPF and use CAP_SYS_ADMIN instead,
Known security features that are not (yet) integrated into the module:
- 2024-02-14:
rosenpass is an experimental feature configurable solely
through --enable-rosenpass flag on the netbird up command,
see the docs
|
| services.netbird.clients.<name>.hardened | Hardened service:
- runs as a dedicated user with minimal set of permissions (see caveats),
- restricts daemon configuration socket access to dedicated user group
(you can grant access to it with
users.users."<user>".extraGroups = [ netbird-‹name› ]),
Even though the local system resources access is restricted:
CAP_NET_RAW, CAP_NET_ADMIN and CAP_BPF still give unlimited network manipulation possibilites,
- older kernels don't have
CAP_BPF and use CAP_SYS_ADMIN instead,
Known security features that are not (yet) integrated into the module:
- 2024-02-14:
rosenpass is an experimental feature configurable solely
through --enable-rosenpass flag on the netbird up command,
see the docs
|
| services.xserver.windowManager.herbstluftwm.configFile | Path to the herbstluftwm configuration file
|
| services.kerberos_server.settings.module | Modules to obtain Kerberos configuration from.
|
| networking.networkmanager.settings | Configuration added to the generated NetworkManager.conf, note that you can overwrite settings with this
|
| services.fedimintd.<name>.nginx.config.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.matrix-synapse.log | Default configuration for the loggers used by matrix-synapse and its workers
|
| services.pipewire.extraConfig.pipewire | Additional configuration for the PipeWire server
|
| services.bacula-sd.autochanger.<name>.extraAutochangerConfig | Extra configuration to be passed in Autochanger directive.
|
| services.netbird.clients | Attribute set of NetBird client daemons, by default each one will:
- be manageable using dedicated tooling:
netbird-<name> script,
NetBird - netbird-<name> graphical interface when appropriate (see ui.enable),
- run as a
netbird-<name>.service,
- listen for incoming remote connections on the port
51820 (openFirewall by default),
- manage the
netbird-<name> wireguard interface,
- use the /var/lib/netbird-/config.json configuration file,
- override /var/lib/netbird-/config.json with values from /etc/netbird-/config.d/*.json,
- (
hardened) be locally manageable by netbird-<name> system group,
With following caveats:
- multiple daemons will interfere with each other's DNS resolution of
netbird.cloud, but
should remain fully operational otherwise
|
| services.suricata.settings.classification-file | Suricata classification configuration file.
|
| boot.loader.generic-extlinux-compatible.useGenerationDeviceTree | Whether to generate Device Tree-related directives in the
extlinux configuration
|
| services.tor.relay.onionServices.<name>.authorizeClient.clientNames | Only clients that are listed here are authorized to access the hidden service
|
| services.waagent.settings.Provisioning.Enable | Whether to enable provisioning functionality in the agent
|
| services.grafana.provision.alerting.contactPoints.settings | Grafana contact points configuration in Nix
|
| services.foundationdb.memory | Maximum memory used by the process
|
| services.grafana.provision.alerting.templates.settings | Grafana templates configuration in Nix
|
| documentation.man.mandoc.cachePath | Change the paths where mandoc makewhatis(8)generates the
manual page index caches. documentation.man.generateCaches
should be enabled to allow cache generation
|
| services.kerberos_server.settings.include | Files to include in the Kerberos configuration.
|
| virtualisation.containers.storage.settings | storage.conf configuration
|
| boot.loader.systemd-boot.sortKey | The sort key used for the NixOS bootloader entries
|
| services.prometheus.exporters.graphite.mappingSettings | Mapping configuration for the exporter, see
https://github.com/prometheus/graphite_exporter#yaml-config for
available options.
|
| virtualisation.docker.rootless.daemon.settings | Configuration for docker daemon
|
| services.cyrus-imap.imapdSettings.configdirectory | The pathname of the IMAP configuration directory.
|
| services.prometheus.alertmanager.configText | Alertmanager configuration as YAML text
|
| services.suricata.settings.dpdk.interfaces.*.interface | See upstream docs: docs/capture-hardware/dpdk and docs/configuration/suricata-yaml.html#data-plane-development-kit-dpdk.
|
| virtualisation.fileSystems.<name>.depends | List of paths that should be mounted before this one
|
| services.prometheus.exporters.script.settings | Free-form configuration for script_exporter, expressed as a Nix attrset and rendered to YAML.
Migration note:
The previous format using script = "sleep 5" is no longer supported
|
| services.youtrack.environmentalParameters | Environmental configuration parameters, set imperatively
|
| services.jitsi-videobridge.nat.harvesterAddresses | Addresses of public STUN services to use to automatically find
the public and local addresses of this Jitsi-Videobridge instance
without the need for manual configuration
|
| services.pantalaimon-headless.instances.<name>.extraSettings | Extra configuration options
|
| services.opentelemetry-collector.validateConfigFile | Whether to enable Validate configuration file.
|
| services.traefik.environmentFiles | Files to load as an environment file just before Traefik starts
|
| system.stateVersion | This option defines the first version of NixOS you have installed on this particular machine,
and is used to maintain compatibility with application data (e.g. databases) created on older NixOS versions
|
| services.prometheus.scrapeConfigs.*.gce_sd_configs | List of Google Compute Engine service discovery configurations
|
| hardware.nvidia.prime.reverseSync.enable | Whether to enable NVIDIA Optimus support using the NVIDIA proprietary driver via reverse
PRIME
|
| services.limesurvey.nginx.virtualHost.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| programs.opengamepadui.inputplumber.enable | Whether to enable Run InputPlumber service for input management and gamepad configuration.
.
|
| services.keycloak.settings.hostname-backchannel-dynamic | Enables dynamic resolving of backchannel URLs,
including hostname, scheme, port and context path
|
| security.pam.services.<name>.googleOsLoginAccountVerification | If set, will use the Google OS Login PAM modules
(pam_oslogin_login,
pam_oslogin_admin) to verify possible OS Login
users and set sudoers configuration accordingly
|
| services.suricata.settings.dpdk | Data Plane Development Kit is a framework for fast packet processing in data plane applications running on a wide variety of CPU architectures
|
| services.matrix-synapse.workers | Options for configuring workers
|
| hardware.block.scheduler | Assign block I/O scheduler by device name pattern
|
| services.strongswan-swanctl.swanctl.connections.<name>.pools | List of named IP pools to allocate virtual IP addresses
and other configuration attributes from
|
| networking.networkmanager.connectionConfig | Configuration for the [connection] section of NetworkManager.conf
|
| services.adguardhome.settings.schema_version | Schema version for the configuration
|
| services.strongswan-swanctl.swanctl.connections.<name>.vips | List of virtual IPs to request in IKEv2 configuration payloads or IKEv1
Mode Config
|
| services.misskey.reverseProxy.webserver.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| services.bacula-sd.autochanger.<name>.changerDevice | The specified name-string must be the generic SCSI device name of the
autochanger that corresponds to the normal read/write Archive Device
specified in the Device resource
|
| services.kerberos_server.settings.includedir | Directories containing files to include in the Kerberos configuration.
|
| virtualisation.directBoot.enable | If enabled, the virtual machine will boot directly into the kernel instead of through a bootloader
|
| services.prometheus.exporters.restic.rcloneConfig | Configuration for the rclone remote being used for backup
|
| virtualisation.containers.containersConf.settings | containers.conf configuration
|
| services.matrix-synapse.workers.<name>.worker_listeners | List of ports that this worker should listen on, their purpose and their configuration.
|
| services.prometheus.exporters.exportarr-sonarr.environment | See the configuration guide for available options.
|
| services.prometheus.exporters.exportarr-lidarr.environment | See the configuration guide for available options.
|
| services.prometheus.exporters.exportarr-radarr.environment | See the configuration guide for available options.
|
| services.prometheus.exporters.exportarr-bazarr.environment | See the configuration guide for available options.
|
| services.prometheus.remoteWrite.*.metadata_config | Configures the sending of series metadata to remote storage
|
| security.auditd.settings.space_left | If the free space in the filesystem containing log_file drops below this value, the audit daemon takes the action specified by
space_left_action
|
| services.prometheus.exporters.exportarr-readarr.environment | See the configuration guide for available options.
|
| services.healthchecks.settings | Environment variables which are read by healthchecks (local)_settings.py
|
| services.postgresqlWalReceiver.receivers.<name>.slot | Require pg_receivewal to use an existing replication slot (see
Section 26.2.6 of the PostgreSQL manual)
|
| services.prometheus.exporters.exportarr-prowlarr.environment | See the configuration guide for available options.
|
| services.healthchecks.settingsFile | Environment variables which are read by healthchecks (local)_settings.py
|
| services.prometheus.scrapeConfigs.*.kuma_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.reqid | Fixed reqid to use for this CHILD_SA
|
| services.grafana.provision.datasources.settings.datasources.*.uid | Custom UID which can be used to reference this datasource in other parts of the configuration, if not specified will be generated automatically.
|
| services.nextcloud-spreed-signaling.settings.backend.backendtype | Type of backend configuration
|
| security.pam.rssh.settings.auth_key_file | Path to file with trusted public keys in OpenSSH's authorized_keys format
|
| services.prometheus.exporters.snmp.environmentFile | EnvironmentFile as defined in systemd.exec(5)
|
| services.amazon-cloudwatch-agent.commonConfigurationFile | Amazon CloudWatch Agent common configuration
|
| services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| networking.networkmanager.ensureProfiles.secrets.entries.*.matchType | NetworkManager connection type
The NetworkManager configuration settings reference roughly corresponds to connection types
|
| services.github-runners.<name>.tokenFile | The full path to a file which contains either
- a fine-grained personal access token (PAT),
- a classic PAT
- or a runner registration token
Changing this option or the tokenFile’s content triggers a new runner registration
|
| services.xserver.windowManager.xmonad.config | Configuration from which XMonad gets compiled
|
| services.bacula-sd.device.<name>.mediaType | The specified name-string names the type of media supported by this
device, for example, DLT7000
|
| networking.networkmanager.ensureProfiles.environmentFiles | Files to load as environment file
|
| services.akkoma.config.":web_push_encryption" | Web Push Notifications configuration
|
| services.prometheus.scrapeConfigs.*.kuma_sd_configs.*.tls_config | TLS configuration.
|
| services.strongswan-swanctl.swanctl.connections.<name>.reauth_time | Time to schedule IKE reauthentication
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.consul_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.docker_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.eureka_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.azure_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.tls_config | TLS configuration.
|
| services.grafana.provision.datasources.settings.datasources.*.secureJsonData | Datasource specific secure configuration
|
| services.pipewire.wireplumber.extraScripts | Additional scripts for WirePlumber to be used by configuration files
|
| services.matrix-synapse.workers.<name>.worker_log_config | The file for log configuration
|
| services.pgbouncer.settings.pgbouncer.default_pool_size | How many server connections to allow per user/database pair
|
| services.movim.h2o.tls.recommendations | By default, H2O, without prejudice, will use as many TLS versions &
cipher suites as it & the TLS library (OpenSSL) can support
|
| services.strongswan-swanctl.swanctl.connections.<name>.local_addrs | Local address(es) to use for IKE communication
|
| services.prometheus.scrapeConfigs.*.hetzner_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.h2o.hosts.<name>.tls.recommendations | By default, H2O, without prejudice, will use as many TLS versions &
cipher suites as it & the TLS library (OpenSSL) can support
|
| services.h2o.defaultTLSRecommendations | By default, H2O, without prejudice, will use as many TLS versions &
cipher suites as it & the TLS library (OpenSSL) can support
|
| services.prometheus.scrapeConfigs.*.triton_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.eureka_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.docker_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.kuma_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.dolibarr.h2o.tls.recommendations | By default, H2O, without prejudice, will use as many TLS versions &
cipher suites as it & the TLS library (OpenSSL) can support
|
| services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.marathon_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.hetzner_sd_configs.*.tls_config | TLS configuration.
|
| services.strongswan-swanctl.swanctl.connections.<name>.remote_addrs | Remote address(es) to use for IKE communication
|
| services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.consul_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.docker_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.eureka_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.scaleway_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.marathon_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.hetzner_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.kubernetes_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.openstack_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.marathon_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.kubernetes_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.dockerswarm_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.dockerswarm_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.digitalocean_sd_configs.*.oauth2 | Optional OAuth 2.0 configuration
|
| services.prometheus.scrapeConfigs.*.kubernetes_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.digitalocean_sd_configs.*.tls_config | TLS configuration.
|
| services.prometheus.scrapeConfigs.*.dockerswarm_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.prometheus.scrapeConfigs.*.digitalocean_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.grafana.settings.security.strict_transport_security | Set to true if you want to enable HTTP Strict-Transport-Security (HSTS) response header
|
| services.xserver.videoDrivers | The names of the video drivers the configuration
supports
|
| services.botamusique.settings | Your configuration.ini as a Nix attribute set
|
| nixpkgs.system | This option does not need to be specified for NixOS configurations
with a recently generated hardware-configuration.nix
|
| services.fluent-bit.settings | See configurationFile.
configurationFile takes precedence over settings.
|
| services.home-assistant.config | Your configuration.yaml as a Nix attribute set
|
| services.home-assistant.configDir | The config directory, where your configuration.yaml is located.
|
| services.zigbee2mqtt.settings | Your configuration.yaml as a Nix attribute set
|
| nixpkgs.crossSystem | Systems with a recently generated hardware-configuration.nix
may instead specify only nixpkgs.buildPlatform,
or fall back to removing the nixpkgs.hostPlatform line from the generated config
|
| services.home-assistant.configWritable | Whether to make configuration.yaml writable
|
| services.xserver.wacom.enable | Whether to enable the Wacom touchscreen/digitizer/tablet
|
| powerManagement.cpuFreqGovernor | Configure the governor used to regulate the frequency of the
available CPUs
|
| nixpkgs.localSystem | Systems with a recently generated hardware-configuration.nix
do not need to specify this option, unless cross-compiling, in which case
you should set only nixpkgs.buildPlatform
|
| documentation.nixos.enable | Whether to install NixOS's own documentation.
|
| services.caddy.environmentFile | Environment file as defined in systemd.exec(5)
|
| systemd.nspawn | Definition of systemd-nspawn configurations.
|
| documentation.nixos.includeAllModules | Whether the generated NixOS's documentation should include documentation for all
the options from all the NixOS modules included in the current
configuration.nix
|
| systemd.slices | Definition of slice configurations; see systemd.slice(5).
|
| boot.loader.initScript.enable | Some systems require a /sbin/init script which is started
|
| system.nixos.tags | Strings to prefix to the default
system.nixos.label
|
| hardware.uni-sync.devices | List of controllers with their configurations.
|
| boot.initrd.systemd.slices | Definition of slice configurations.
|
| services.lirc.configs | Configurations for lircd to load, see man:lircd.conf(5) for details (lircd.conf)
|
| containers | A set of NixOS system configurations to be run as lightweight
containers
|
| services.udp-over-tcp.tcp2udp | Mapping of TCP listening ports to UDP forwarding ports or configurations.
|
| services.udp-over-tcp.udp2tcp | Mapping of UDP listening ports to TCP forwarding ports or configurations.
|
| services.haven.blastrRelays | List of relay configurations for blastr
|
| services.g810-led.profile | Keyboard profile to apply at boot time
|
| services.haven.importRelays | List of relay configurations for importing historical events
|
| services.flannel.backend | Type of backend to use and specific configurations for that backend.
|
| services.atticd.settings | Structured configurations of atticd
|
| system.switch.enable | Whether to include the capability to switch configurations
|
| services.kanata.keyboards | Keyboard configurations.
|
| services.stunnel.servers | Define the server configurations
|
| services.fwupd.daemonSettings | Configurations for the fwupd daemon.
|
| services.vdirsyncer.jobs | vdirsyncer job configurations
|
| services.crowdsec.hub.branch | The git branch on which cscli is going to fetch configurations
|
| services.movim.h2o.settings | Attrset to be transformed into YAML for host config
|
| services.bitcoind.<name>.extraConfig | Additional configurations to be appended to bitcoin.conf.
|
| services.stunnel.clients | Define the client configurations
|
| containers.<name>.specialArgs | A set of special arguments to be passed to NixOS modules
|
| services.crowdsec.hub.appSecConfigs | List of hub appsec configurations to install
|
| services.h2o.hosts.<name>.settings | Attrset to be transformed into YAML for host config
|
| services.sitespeed-io.runs | A list of run configurations
|
| services.fwupd.uefiCapsuleSettings | UEFI capsule configurations for the fwupd daemon.
|
| security.pam.yubico.mode | Mode of operation
|
| nixpkgs.flake.setNixPath | Whether to set NIX_PATH to include nixpkgs=flake:nixpkgs such that <nixpkgs>
lookups receive the version of nixpkgs that the system was built with, in concert with
nixpkgs.flake.setFlakeRegistry
|
| services.frigate.settings.cameras | Attribute set of cameras configurations.
https://docs.frigate.video/configuration/cameras
|
| services.tt-rss.enableGZipOutput | Selectively gzip output to improve wire performance
|
| services.woodpecker-agents.agents | woodpecker-agents configurations
|
| services.dolibarr.h2o.settings | Attrset to be transformed into YAML for host config
|
| services.borgmatic.enableConfigCheck | Whether to enable checking all configurations during build time.
|
| services.prometheus.scrapeConfigs | A list of scrape configurations.
|
| hardware.sata.timeout.deciSeconds | Set SCT Error Recovery Control timeout in deciseconds for use in RAID configurations
|
| services.vdirsyncer.jobs.<name>.config.pairs | vdirsyncer pair configurations
|
| services.hbase-standalone.settings | configurations in hbase-site.xml, see https://github.com/apache/hbase/blob/master/hbase-server/src/test/resources/hbase-site.xml for details.
|
| services.dysnomia.extraContainerPaths | A list of paths containing additional container configurations that are added to the search folders
|
| boot.initrd.allowMissingModules | Whether the initrd can be built even though modules listed in
boot.initrd.kernelModules or
boot.initrd.availableKernelModules are missing from
the kernel
|
| programs.msmtp.accounts | Named accounts and their respective configurations
|
| services.xserver.desktopManager.phosh.phocConfig | Configurations for the Phoc compositor.
|
| system.build.separateActivationScript | A separate activation script package that's not part of the system profile
|
| services.vdirsyncer.jobs.<name>.config.storages | vdirsyncer storage configurations
|
| system.nixos.label | NixOS version name to be used in the names of generated
outputs and boot labels
|
| nixpkgs.flake.setFlakeRegistry | Whether to pin nixpkgs in the system-wide flake registry (/etc/nix/registry.json) to the
store path of the sources of nixpkgs used to build the NixOS system
|
| services.tarsnap.archives | Tarsnap archive configurations
|
| services.dawarich.configureNginx | Configure nginx as a reverse proxy for dawarich
|
| services.filebeat.modules | Filebeat modules provide a quick way to get started
processing common log formats
|
| networking.wireless.networks.<name>.auth | Use this option to configure advanced authentication methods
like EAP
|
| powerManagement.powertop.postStart | Shell commands executed after powertop is started
|
| services.syncthing.settings.folders.<name>.devices | The devices this folder should be shared with
|
| networking.nftables.enable | Whether to enable nftables and use nftables based firewall if enabled.
nftables is a Linux-based packet filtering framework intended to
replace frameworks like iptables
|
| networking.supplicant | Interfaces for which to start wpa_supplicant
|
| services.strongswan-swanctl.swanctl.connections | Section defining IKE connection configurations, each in its own subsection
with an arbitrary yet unique name
|
| services.jellyfin.hardwareAcceleration.device | Path to the hardware acceleration device that Jellyfin should use
|
| services.warpgate.settings.sso_providers.*.provider | SSO provider configurations.
|
| services.prometheus.scrapeConfigs.*.dns_sd_configs | List of DNS service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.ec2_sd_configs | List of EC2 service discovery configurations.
|
| services.xserver.desktopManager.xfce.waylandSessionCompositor | Command line to run a Wayland compositor, defaults to labwc --startup
if not specified
|
| services.prometheus.scrapeConfigs.*.relabel_configs | List of relabel configurations.
|
| services.prometheus.scrapeConfigs.*.kuma_sd_configs | List of Kuma service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.file_sd_configs | List of file service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.http_sd_configs | List of HTTP service discovery configurations.
|
| services.postgresql.systemCallFilter | Configures the syscall filter for postgresql.service
|
| services.prometheus.scrapeConfigs.*.azure_sd_configs | List of Azure service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.uyuni_sd_configs | List of Uyuni Serverset service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.nerve_sd_configs | List of AirBnB's Nerve service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.consul_sd_configs | List of Consul service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs | List of Linode service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.docker_sd_configs | List of Docker service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.eureka_sd_configs | List of Eureka service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.triton_sd_configs | List of Triton Serverset service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.hetzner_sd_configs | List of Hetzner service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.scaleway_sd_configs | List of Scaleway service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.puppetdb_sd_configs | List of PuppetDB service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.marathon_sd_configs | List of Marathon service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.openstack_sd_configs | List of OpenStack service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.lightsail_sd_configs | List of Lightsail service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.serverset_sd_configs | List of Zookeeper Serverset service discovery configurations.
|
| services.prometheus.remoteWrite.*.write_relabel_configs | List of remote write relabel configurations.
|
| services.prometheus.scrapeConfigs.*.kubernetes_sd_configs | List of Kubernetes service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.metric_relabel_configs | List of metric relabel configurations.
|
| services.prometheus.scrapeConfigs.*.dockerswarm_sd_configs | List of Docker Swarm service discovery configurations.
|
| services.prometheus.scrapeConfigs.*.digitalocean_sd_configs | List of DigitalOcean service discovery configurations.
|