| systemd.targets.<name>.startLimitBurst | Configure unit start rate limiting
|
| services.powerdns-admin.config | Configuration python file
|
| services.home-assistant.extraArgs | Extra arguments to pass to the hass executable.
|
| users.mysql.pam.logging.userColumn | The name of the column in the log table to which the name of the
user being authenticated is stored.
|
| services.frr.bgpd.extraOptions | Extra options to be appended to the FRR bgpd daemon options.
|
| services.lasuite-docs.s3Url | URL of the S3 bucket.
|
| services.upower.noPollBatteries | Don't poll the kernel for battery level changes
|
| services.frr.vrrpd.options | Options for the FRR vrrpd daemon.
|
| services.rke2.gracefulNodeShutdown.shutdownGracePeriodCriticalPods | Specifies the duration used to terminate critical pods during a node shutdown
|
| services.kanidm.unix.settings | Configure Kanidm unix daemon
|
| services.vector.gracefulShutdownLimitSecs | Set the duration in seconds to wait for graceful shutdown after SIGINT or SIGTERM are received
|
| users.mysql.nss.getpwuid | SQL query for the getpwuid
syscall.
|
| virtualisation.additionalPaths | A list of paths whose closure should be made available to
the VM
|
| services.zammad.database.port | Database port
|
| virtualisation.libvirtd.hooks.network | Hooks that will be placed under /var/lib/libvirt/hooks/network.d/
and called for networks begin/end events
|
| services.xrdp.sslCert | ssl certificate path
A self-signed certificate will be generated if file not exists.
|
| services.zabbixWeb.database.port | Database host port.
|
| services.vlagent.enable | Whether to enable VictoriaMetrics's vlagent.
vlagent is a tiny agent which helps you collect logs from various sources and store them in VictoriaLogs .
|
| services.zfs.expandOnBoot | After importing, expand each device in the specified pools
|
| services.xrdp.audio.package | The pulseaudio-module-xrdp package to use.
|
| services.varnish.listen.*.address | If given an IP address, it can be a host name ("localhost"), an IPv4 dotted-quad
("127.0.0.1") or an IPv6 address enclosed in square brackets ("[::1]").
(VCL4.1 and higher) If given an absolute Path ("/path/to/listen.sock") or "@"
followed by the name of an abstract socket ("@myvarnishd") accept connections
on a Unix domain socket
|
| services.woodpecker-agents.agents.<name>.package | The woodpecker-agent package to use.
|
| services.xrdp.audio.enable | Whether to enable audio support for xrdp sessions
|
| services.yggdrasil-jumper.extraArgs | Extra command line arguments for Yggdrasil Jumper.
|
| services.matrix-synapse.settings.url_preview_url_blacklist | Optional list of URL matches that the URL preview spider is
denied from accessing.
|
| systemd.network.links.<name>.extraConfig | Extra configuration append to unit
|
| systemd.automounts.*.reloadTriggers | An arbitrary list of items such as derivations
|
| nixpkgs.buildPlatform | Specifies the platform on which NixOS should be built
|
| services.zabbixServer.settings | Zabbix Server configuration
|
| services.kanidm.server.settings.log_level | Log level of the server.
|
| systemd.network.wait-online.ignoredInterfaces | Network interfaces to be ignored when deciding if the system is online.
|
| services.xserver.verbose | Controls verbosity of X logging.
|
| systemd.oomd.enableSystemSlice | Whether to enable oomd on the system slice (system.slice).
|
| services.wiki-js.settings.db.type | Database driver to use for persistence
|
| services.xserver.desktopManager.retroarch.enable | Whether to enable RetroArch.
|
| systemd.mounts.*.mountConfig | Each attribute in this set specifies an option in the
[Mount] section of the unit
|
| services.writefreely.group | Group under which Writefreely is ran.
|
| services.jirafeau.nginxConfig.addSSL | Whether to enable HTTPS in addition to plain HTTP
|
| services.zabbixWeb.httpd.virtualHost.listen | Listen addresses and ports for this virtual host.
This option overrides addSSL, forceSSL and onlySSL
|
| services.zabbixWeb.nginx.virtualHost.sslCertificateKey | Path to server SSL certificate key.
|
| services.wyoming.openwakeword.uri | URI to bind the wyoming server to.
|
| systemd.network.networks.<name>.dns | A list of dns servers to be added to the network section of the
unit
|
| services.uptime-kuma.enable | Whether to enable Uptime Kuma, this assumes a reverse proxy to be set.
|
| users.ldap.enable | Whether to enable authentication against an LDAP server.
|
| systemd.oomd.settings.OOM | Settings option for systemd-oomd
|
| services.zabbixServer.listen.port | Listen port for trapper.
|
| services.znc.dataDir | The state directory for ZNC
|
| services.mautrix-signal.registerToSynapse | Whether to add the bridge's app service registration file to
services.matrix-synapse.settings.app_service_config_files.
|
| services.rke2.manifests | Auto-deploying manifests that are linked to /var/lib/rancher/rke2/server/manifests before rke2 starts
|
| virtualisation.waydroid.package | The waydroid package to use.
|
| services.victoriatraces.enable | Whether to enable VictoriaTraces is an open source distributed traces storage and query engine from VictoriaMetrics.
|
| services.stash.settings.preview_exclude_end | Duration of start of video to exclude when generating previews
|
| virtualisation.qemu.drives | Drives passed to qemu.
|
| users.extraUsers.<name>.subUidRanges.*.startUid | Start of the range of subordinate user ids that user is
allowed to use.
|
| systemd.sockets | Definition of systemd socket units; see systemd.socket(5).
|
| virtualisation.xen.store.settings.xenstored.log.level | Logging level for the Xen Store.
|
| systemd.units.<name>.aliases | Aliases of that unit.
|
| services.hylafax.countryCode | Country code for server and all modems.
|
| services.victoriametrics.stateDir | Directory below /var/lib to store VictoriaMetrics metrics data
|
| services.znapzend.features.sendRaw | Whether to enable sendRaw feature which adds the options -w to the
zfs send command
|
| services.zabbixAgent.listen.ip | List of comma delimited IP addresses that the agent should listen on.
|
| systemd.slices.<name>.upholds | Keeps the specified running while this unit is running
|
| services.vsftpd.anonymousUserNoPassword | Whether to disable the password for the anonymous FTP user.
|
| services.matrix-synapse.workers.<name>.worker_app | Type of this worker
|
| services.writefreely.database.migrate | Whether or not to automatically run migrations on startup.
|
| systemd.sockets.<name>.onFailure | A list of one or more units that are activated when
this unit enters the "failed" state.
|
| systemd.user.services.<name>.documentation | A list of URIs referencing documentation for this unit or its configuration.
|
| services.xserver.windowManager.dwm.enable | Whether to enable dwm.
|
| <imports = [ pkgs.ghostunnel.services.default ]>.ghostunnel.unsafeTarget | If set, does not limit target to localhost, 127.0.0.1, [::1], or UNIX sockets
|
| services.vdirsyncer.jobs.<name>.forceDiscover | Run yes | vdirsyncer discover prior to vdirsyncer sync
|
| services.wordpress.sites.<name>.uploadsDir | This directory is used for uploads of pictures
|
| services.hercules-ci-agent.enable | Enable to run Hercules CI Agent as a system service.
Hercules CI is a
continuous integation service that is centered around Nix
|
| systemd.mounts.*.reloadTriggers | An arbitrary list of items such as derivations
|
| services.xserver.displayManager.lightdm.greeters.slick.extraConfig | Extra configuration that should be put in the lightdm-slick-greeter.conf
configuration file.
|
| services.zabbixWeb.database.host | Database host address.
|
| services.zabbixWeb.nginx.virtualHost.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| systemd.services.<name>.serviceConfig | Each attribute in this set specifies an option in the
[Service] section of the unit
|
| services.jirafeau.nginxConfig.sslCertificate | Path to server SSL certificate.
|
| services.vaultwarden.configureNginx | Whether to configure nginx to serve VaultWarden.
|
| virtualisation.tpm.package | The swtpm package to use.
|
| systemd.network.config.routeTables | Defines route table names as an attrset of name to number
|
| services.vwifi.client.spy | Whether to enable spy mode, useful for wireless monitors.
|
| services.watchdogd.settings.meminfo.enabled | Whether to enable watchdogd plugin meminfo.
|
| services.znapzend.logTo | Where to log to (syslog::<facility> or <filepath>).
|
| services.woodpecker-agents.agents | woodpecker-agents configurations
|
| services.zabbixWeb.nginx.virtualHost.locations.<name>.recommendedProxySettings | Enable recommended proxy settings.
|
| services.znapzend.features.oracleMode | Whether to enable destroying snapshots one by one instead of using one long argument list
|
| services.vaultwarden.backupDir | The directory under which vaultwarden will backup its persistent data.
|
| users.extraUsers.<name>.description | A short description of the user account, typically the
user's full name
|
| users.users.<name>.description | A short description of the user account, typically the
user's full name
|
| virtualisation.fileSystems.<name>.stratis.poolUuid | UUID of the stratis pool that the fs is located in
This is only relevant if you are using stratis.
|
| virtualisation.qemu.options | Options passed to QEMU
|
| services.xinetd.services.*.server | Path of the program that implements the service.
|
| systemd.services.<name>.script | Shell commands executed as the service's main process.
|
| services.kubernetes.kubeconfig.caFile | Default kubeconfig certificate authority file used to connect to kube-apiserver.
|
| services.ustreamer.device | The v4l2 device to stream.
|
| services.xserver.desktopManager.wallpaper.combineScreens | When set to true the wallpaper will stretch across all screens
|
| services.stash.dataDir | The directory where Stash stores its files.
|
| services.yarr.baseUrl | Base path of the service url.
|
| services.wyoming.satellite.sound.command | Program to run for sound output.
|