| services.davfs2.davGroup | The group of the running mount.davfs daemon
|
| services.httpd.extraConfig | Configuration lines appended to the generated Apache
configuration file
|
| services.cyrus-imap.imapdConfigFile | Path to the configuration file used for cyrus-imap.
|
| services.rdnssd.enable | Whether to enable the RDNSS daemon
(rdnssd), which configures DNS servers in
/etc/resolv.conf from RDNSS
advertisements sent by IPv6 routers.
|
| services.monero.banlist | Path to a text file containing IPs to block
|
| services.jirafeau.enable | Whether to enable Jirafeau file upload application.
|
| services.sympa.settingsFile | Set of files to be linked in /var/lib/sympa.
|
| boot.nixStoreMountOpts | Defines the mount options used on a bind mount for the /nix/store
|
| services.gitea.metricsTokenFile | Path to a file containing the metrics authentication token.
|
| boot.initrd.luks.devices.<name>.header | The name of the file or block device that
should be used as header for the encrypted device.
|
| services.angrr.configFile | Path to the angrr configuration file in TOML format
|
| services.kavita.tokenKeyFile | A file containing the TokenKey, a secret with at 512+ bits
|
| services.doh-server.configFile | The config file for the doh-server
|
| services.datadog-agent.apiKeyFile | Path to a file containing the Datadog API key to associate the
agent with your account.
|
| services.acme-dns.settings | Free-form settings written directly to the acme-dns.cfg file
|
| services.prosody.checkConfig | Check the configuration file with prosodyctl check config
|
| services.pptpd.extraPppdOptions | Adds extra lines to the pppd options file.
|
| services.sniproxy.config | sniproxy.conf configuration excluding the daemon username and pid file.
|
| services.namecoind.rpc.key | Key file for securing RPC connections.
|
| services.uhub.<name>.plugins.*.plugin | Path to plugin file.
|
| services.oxidized.routerDB | Path to the file/database which contains the targets for oxidized.
|
| services.nfs.server.exports | Contents of the /etc/exports file
|
| services.rshim.config | Structural setting for the rshim configuration file
(/etc/rshim.conf)
|
| services.syncthing.key | Path to the key.pem file, which will be copied into Syncthing's
configDir.
|
| services.sftpgo.loadDataFile | Path to a json file containing users and folders to load (or update) on startup
|
| services.soft-serve.settings | The contents of the configuration file for soft-serve
|
| services.portunus.seedPath | Path to a portunus seed file in json format
|
| services.uptime.usesRemoteMongo | Whether the configuration file specifies a remote mongo instance
|
| services.weblate.extraConfig | Text to append to settings.py Weblate configuration file.
|
| services.varnish.listen.*.mode | Permission of the socket file (3-digit octal value).
|
| services.gerrit.settings | Gerrit configuration
|
| services.prometheus.exporters.fastly.configFile | Path to a fastly-exporter configuration file
|
| services.pinchflat.secretsFile | Secrets like SECRET_KEY_BASE and BASIC_AUTH_PASSWORD
should be passed to the service without adding them to the world-readable Nix store
|
| services.prometheus.scrapeConfigs.*.uyuni_sd_configs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| services.prometheus.scrapeConfigs.*.azure_sd_configs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| services.paperless.environmentFile | Path to a file containing extra paperless config options in the systemd EnvironmentFile
format
|
| services.postfix.extraConfig | Extra lines to be added verbatim to the main.cf configuration file.
|
| services.bacula-fd.director | This option defines director resources in Bacula File Daemon.
|
| programs.tsmClient.dsmSysText | This configuration key contains the effective text
of the client system-options file "dsm.sys"
|
| services.dae.openFirewall.port | Port to be opened
|
| services.aria2.settings.conf-path | Configuration file path.
|
| services.asusd.asusdConfig.source | Path of the source file.
|
| services.lemmy.database.uri | The connection URI to use
|
| services.connman.extraConfig | Configuration lines appended to the generated connman configuration file.
|
| boot.initrd.systemd.storePaths.*.source | Path of the source file.
|
| security.auditd.settings | auditd configuration file contents
|
| services.lemmy.smtpPasswordFile | File which contains the value of email.smtp_password.
|
| services.distccd.logLevel | Set the minimum severity of error that will be included in the log
file
|
| services.lemmy.database.uriFile | File which contains the database uri.
|
| services.asusd.animeConfig.source | Path of the source file.
|
| networking.useHostResolvConf | In containers, whether to use the
resolv.conf supplied by the host.
|
| services.opendkim.configFile | Additional opendkim configuration as a file.
|
| services.mchprs.settings | Configuration for MCHPRS via Config.toml
|
| services.moodle.extraConfig | Any additional text to be appended to the config.php
configuration file
|
| services.outline.sslKeyFile | File path that contains the Base64-encoded private key for HTTPS
termination
|
| services.printing.snmpConf | The contents of /etc/cups/snmp.conf
|
| services.sabnzbd.configFile | Path to config file (deprecated, use settings instead and set this value to null)
|
| services.tautulli.configFile | The location of Tautulli's config file.
|
| services.oxidized.configFile | Path to the oxidized configuration file.
|
| services.varnish.listen.*.group | Group name who owns the socket file.
|
| services.xray.settingsFile | The absolute path to the configuration file
|
| services.zenohd.settings | Config options for zenoh.json5 configuration file
|
| services.nghttpx.extraConfig | Extra configuration options to be appended to the generated
configuration file.
|
| services.cadvisor.storageDriverPasswordFile | File that contains the cadvisor storage driver password.
storageDriverPasswordFile takes precedence over storageDriverPassword
Warning: when storageDriverPassword is non-empty this defaults to a file in the
world-readable Nix store that contains the value of storageDriverPassword
|
| boot.zfs.requestEncryptionCredentials | If true on import encryption keys or passwords for all encrypted datasets
are requested
|
| services.prometheus.exporters.unpoller.loki.pass | Path of a file containing the password for Loki
|
| services.hostapd.radios.<name>.networks.<name>.macDenyFile | Specifies a file containing the MAC addresses to deny if macAcl is set to "deny" or "radius"
|
| services.consul-template.instances.<name>.settings | Free-form settings written directly to the config.json file
|
| services.strongswan-swanctl.strongswan.extraConfig | Contents of the strongswan.conf file.
|
| services.mautrix-whatsapp.environmentFile | File containing environment variables to be passed to the mautrix-whatsapp service
|
| boot.specialFileSystems.<name>.fsType | Type of the file system
|
| environment.pathsToLink | List of directories to be symlinked in /run/current-system/sw.
|
| services.ejabberd.configFile | Configuration file for ejabberd in YAML format
|
| services.clight.settings | Additional configuration to extend clight.conf
|
| programs.tsmClient.enable | Whether to enable IBM Storage Protect (Tivoli Storage Manager, TSM)
client command line applications with a
client system-options file "dsm.sys"
.
|
| networking.extraHosts | Additional verbatim entries to be appended to /etc/hosts
|
| services.diod.allsquash | Remap all users to "nobody"
|
| programs.tsmClient.package | The tsm-client package to use
|
| services.icecast.extraConfig | Extra configuration added to icecast.xml inside the <icecast> element.
|
| services.gokapi.settings | Configuration settings for the generated config json file
|
| fonts.fontconfig.localConf | System-wide customization file contents, has higher priority than
defaultFonts settings.
|
| services.dovecot2.configFile | Config file used for the whole dovecot configuration.
|
| services.pgmanage.sqlRoot | This tells pgmanage where to put the SQL file history
|
| services.netatalk.extmap | File name extension mappings
|
| services.printing.clientConf | The contents of the client configuration.
(client.conf)
|
| services.rspamd.locals.<name>.source | Path of the source file.
|
| services.transfer-sh.enable | Whether to enable Easy and fast file sharing from the command-line.
|
| services.outline.sslCertFile | File path that contains the Base64-encoded certificate for HTTPS
termination
|
| services.syncthing.cert | Path to the cert.pem file, which will be copied into Syncthing's
configDir.
|
| services.routedns.configFile | Path to RouteDNS TOML configuration file.
|
| services.nagios.cgiConfigFile | Derivation for the configuration file of Nagios CGI scripts
that can be used in web servers for running the Nagios web interface.
|
| services.lk-jwt-service.keyFile | Path to a file containing the credential mapping (<keyname>: <secret>) to access LiveKit
|
| services.monica.appKeyFile | A file containing the Laravel APP_KEY - a 32 character long,
base64 encoded key used for encryption where needed
|
| services.oauth2-proxy.keyFile | oauth2-proxy allows passing sensitive configuration via environment variables
|
| users.users.<name>.isNormalUser | Indicates whether this is an account for a “real” user
|
| services.stash.sessionStoreKeyFile | Path to file containing a secret for session store.
|
| services.zerobin.extraConfig | Extra configuration to be appended to the 0bin config file
(see https://0bin.readthedocs.org/en/latest/en/options.html)
|
| services.xserver.extraConfig | Additional contents (sections) included in the X server configuration file
|
| services.grafana.settings.database.password | The database user's password (not applicable for sqlite3)
|
| services.prometheus.scrapeConfigs.*.triton_sd_configs.*.tls_config.key_file | Key file for client cert authentication to the server.
|