| services.rathole.credentialsFile | Path to a TOML file to be merged with the settings
|
| services.openssh.sftpServerExecutable | The sftp server executable
|
| services.reposilite.settings.basePath | Custom base path for this Reposilite instance
|
| services.mediawiki.httpd.virtualHost.sslServerCert | Path to server SSL certificate.
|
| services.newt.environmentFile | Path to a file containing sensitive environment variables for Newt
|
| services.maddy.tls.certificates.*.certPath | Path to the certificate used for TLS.
|
| services.mattermost.database.socketPath | The database (Postgres or MySQL) socket path.
|
| services.lasuite-docs.settings.DJANGO_SECRET_KEY_FILE | The path to the file containing Django's secret key
|
| services.lasuite-meet.settings.DJANGO_SECRET_KEY_FILE | The path to the file containing Django's secret key
|
| services.chatgpt-retrieval-plugin.openaiApiKeyPath | Path to the secret openai api key used for embeddings.
|
| programs.ssh.knownHosts.<name>.publicKeyFile | The path to the public key file for the host
|
| services.hickory-dns.settings.directory | The directory in which hickory-dns should look for .zone files,
whenever zones aren't specified by absolute path.
|
| services.restic.backups.<name>.createWrapper | Whether to generate and add a script to the system path, that has the same environment variables set
as the systemd service
|
| services.thanos.rule.web.external-prefix | Static prefix for all HTML links and redirect URLs in the UI query web
interface
|
| services.thanos.rule.objstore.config | Object store configuration
|
| services.ntfy-sh.environmentFile | Path to a file containing extra ntfy environment variables in the systemd EnvironmentFile
format
|
| services.taskserver.extensions | Fully qualified path of the Taskserver extension scripts
|
| services.self-deploy.repository | The repository to fetch from
|
| services.tor.relay.onionServices.<name>.secretKey | Secret key of the onion service
|
| services.reposilite.keyPasswordFile | Path the the file containing the password used to unlock the Java KeyStore file specified in services.reposilite.settings.keyPath
|
| services.gitlab.secrets.secretFile | A file containing the secret used to encrypt variables in
the DB
|
| services.matrix-synapse.settings.tls_private_key_path | PEM encoded private key for TLS
|
| security.dhparams.stateful | Whether generation of Diffie-Hellman parameters should be stateful or
not
|
| services.agorakit.nginx.sslCertificate | Path to server SSL certificate.
|
| services.easytier.instances.<name>.configFile | Path to easytier config file
|
| services.grafana.settings.server.cert_key | Path to the certificate key file (if protocol is set to https or h2).
|
| services.kanboard.nginx.sslCertificate | Path to server SSL certificate.
|
| services.desktopManager.gnome.sessionPath | Additional list of packages to be added to the session search path
|
| services.fediwall.nginx.sslCertificate | Path to server SSL certificate.
|
| services.certspotter.sendmailPath | Path to the sendmail binary
|
| services.keepalived.vrrpScripts.<name>.script | (Path of) Script command to execute followed by args, i.e. cmd [args]...
|
| services.dolibarr.nginx.sslCertificate | Path to server SSL certificate.
|
| services.librenms.nginx.sslCertificate | Path to server SSL certificate.
|
| services.atticd.environmentFile | Path to an EnvironmentFile containing required environment
variables:
- ATTIC_SERVER_TOKEN_RS256_SECRET_BASE64: The base64-encoded RSA PEM PKCS1 of the
RS256 JWT secret
|
| services.restic.backups.<name>.rcloneConfigFile | Path to the file containing rclone configuration
|
| services.pixelfed.nginx.sslCertificate | Path to server SSL certificate.
|
| services.scion.stateless | Setting this value to false (stateful) can lead to improved caching and
performance
|
| services.mattermost.database.peerAuth | If set, will use peer auth instead of connecting to a Postgres server
|
| services.mastodon.vapidPublicKeyFile | Path to file containing the public key used for Web Push
Voluntary Application Server Identification
|
| services.taskserver.pki.manual.server.key | Fully qualified path to the server key.
Setting this option will prevent automatic CA creation and handling.
|
| services.networking.websockify.sslKey | Path to the SSL key.
|
| services.mainsail.nginx.sslCertificate | Path to server SSL certificate.
|
| services.lasuite-docs.environmentFile | Path to environment file
|
| services.wordpress.sites.<name>.database.socket | Path to the unix socket file to use for authentication.
|
| services.lasuite-meet.environmentFile | Path to environment file
|
| services.xserver.xkb.extraLayouts.<name>.compatFile | The path to the xkb compat file
|
| services.limesurvey.virtualHost.sslServerChain | Path to server SSL chain file.
|
| boot.loader.grub.mirroredBoots.*.efiBootloaderId | The id of the bootloader to store in efi nvram
|
| services.invidious.database.passwordFile | Path to file containing the database password.
|
| services.desktopManager.budgie.sessionPath | Additional list of packages to be added to the session search path
|
| services.discourse.sslCertificate | The path to the server SSL certificate
|
| services.sharkey.settings.mediaDirectory | Path to the folder where Sharkey stores uploaded media such as images and attachments.
|
| services.meilisearch.masterKeyFile | Path to file which contains the master key
|
| services.netbird.useRoutingFeatures | Enables settings required for NetBird's routing features: Network Resources, Network Routes & Exit Nodes
|
| services.suricata.settings.default-log-dir | The default logging directory
|
| services.routinator.settings.log-file | A string value containing the path to a file to which log messages will be appended if the log configuration value is set to file
|
| services.openvscode-server.extraPackages | Additional packages to add to the openvscode-server PATH.
|
| services.prometheus.exporters.lnd.lndTlsPath | Path to lnd TLS certificate.
|
| services.wordpress.sites.<name>.virtualHost.sslServerKey | Path to server SSL certificate key.
|
| services.postsrsd.settings.secrets-file | Path to the file containing the secret keys.
Secrets are passed using LoadCredential= on the systemd unit,
so this options is read-only
|
| services.zabbixWeb.httpd.virtualHost.documentRoot | The path of Apache's document root directory
|
| image.repart.partitions.<name>.nixStorePrefix | The prefix to use for store paths
|
| services.karakeep.environmentFile | An optional path to an environment file that will be used in the web and workers
services
|
| security.pam.yubico.challengeResponsePath | If not null, set the path used by yubico pam module where the challenge expected response is stored
|
| services.beszel.agent.environmentFile | File path containing environment variables for configuring the beszel-agent service in the format of an EnvironmentFile
|
| services.homer.settings | Settings serialized into config.yml before build
|
| services.thanos.store.objstore.config | Object store configuration
|
| services.networking.websockify.sslCert | Path to the SSL certificate.
|
| services.mediawiki.httpd.virtualHost.sslServerChain | Path to server SSL chain file.
|
| services.taskserver.pki.manual.server.crl | Fully qualified path to the server certificate revocation list.
Setting this option will prevent automatic CA creation and handling.
|
| services.taskserver.pki.manual.server.cert | Fully qualified path to the server certificate.
Setting this option will prevent automatic CA creation and handling.
|
| services.thanos.query.web.external-prefix | Static prefix for all HTML links and redirect URLs in the UI query web
interface
|
| services.neo4j.directories.data | Path of the data directory
|
| services.opensnitch.settings.Rules.Path | Path to the directory where firewall rules can be found and will
get stored by the NixOS module.
|
| services.mastodon.vapidPrivateKeyFile | Path to file containing the private key used for Web Push
Voluntary Application Server Identification
|
| services.thanos.query-frontend.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.plausible.server.secretKeybaseFile | Path to the secret used by the phoenix-framework
|
| services.xserver.xkb.extraLayouts.<name>.symbolsFile | The path to the xkb symbols file
|
| services.wordpress.sites.<name>.virtualHost.sslServerCert | Path to server SSL certificate.
|
| services.kanidm.provision.adminPasswordFile | Path to a file containing the admin password for kanidm
|
| environment.profileRelativeEnvVars | Attribute set of environment variable
|
| services.chatgpt-retrieval-plugin.bearerTokenPath | Path to the secret bearer token used for the http api authentication.
|
| services.sourcehut.settings."todo.sr.ht::mail".sock | Path for the lmtp daemon's unix socket
|
| services.librenms.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| services.agorakit.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| services.fediwall.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| services.kanboard.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| services.dependency-track.ldap.bindPasswordFile | The path to a file containing the LDAP bind password.
|
| services.dolibarr.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| services.drupal.sites.<name>.virtualHost.documentRoot | The path of Apache's document root directory
|
| services.n8n.environment.N8N_USER_FOLDER | Provide the path where n8n will create the .n8n folder
|
| services.pixelfed.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| services.mainsail.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| services.radicle.httpd.nginx.sslCertificate | Path to server SSL certificate.
|
| services.vsftpd.userDbPath | Only applies if enableVirtualUsers is true
|
| services.mediawiki.extensions | Attribute set of paths whose content is copied to the extensions
subdirectory of the MediaWiki installation and enabled in configuration
|
| services.pretalx.settings.filesystem.data | Base path for all other storage paths.
|
| services.discourse.sslCertificateKey | The path to the server SSL certificate key
|
| security.acme.certs.<name>.environmentFile | Path to an EnvironmentFile for the cert's service containing any required and
optional environment variables for your selected dnsProvider
|
| hardware.graphics.extraPackages | Additional packages to add to the default graphics driver lookup path
|