| services.prometheus.scrapeConfigs.*.dns_sd_configs.*.port | The port number used if the query type is not SRV.
|
| networking.wireguard.interfaces.<name>.preSetup | Commands called at the start of the interface setup.
|
| boot.initrd.network.ifstate.cleanupSettings | Content of IfState's initrd cleanup configuration file
|
| services.vwifi.client.serverPort | The server port port
|
| services.openssh.ports | Specifies on which ports the SSH daemon listens.
|
| services.beesd.filesystems.<name>.spec | Description of how to identify the filesystem to be duplicated by this
instance of bees
|
| systemd.automounts.*.wantedBy | Units that want (i.e. depend on) this unit
|
| virtualisation.docker.enable | This option enables docker, a daemon that manages
linux containers
|
| services.matrix-alertmanager.matrixRooms | Combination of Alertmanager receiver(s) and rooms for the bot to join
|
| services.netbird.clients.<name>.config | Additional configuration that exists before the first start and
later overrides the existing values in config.json
|
| services.netbird.tunnels.<name>.config | Additional configuration that exists before the first start and
later overrides the existing values in config.json
|
| services.tlsrpt.reportd.settings.log_level | Level of log messages to emit.
|
| services.slskd.openFirewall | Whether to open the firewall for the soulseek network listen port (not the web interface port).
|
| services.tor.settings.ServerTransportPlugin.exec | Command of pluggable transport.
|
| services.warpgate.settings.postgres.external_port | The PostgreSQL listener is reachable via this port externally.
|
| services.nextcloud.config.objectstore.s3.sseCKeyFile | If provided this is the full path to a file that contains the key
to enable [server-side encryption with customer-provided keys][1]
(SSE-C)
|
| services.buildbot-master.pbPort | The buildmaster will listen on a TCP port of your choosing
for connections from workers
|
| services.home-assistant.lovelaceConfigWritable | Whether to make ui-lovelace.yaml writable
|
| services.strongswan-swanctl.swanctl.connections.<name>.remote_port | Remote UDP port for IKE communication
|
| services.pds.settings.PDS_PORT | Port to listen on
|
| services.prometheus.scrapeConfigs.*.gce_sd_configs.*.port | The port to scrape metrics from
|
| services.prometheus.scrapeConfigs.*.ec2_sd_configs.*.port | The port to scrape metrics from
|
| services.matrix-synapse.workers.<name>.worker_listeners.*.port | The port to listen for HTTP(S) requests on.
|
| services.xserver.displayManager.sx.enable | Whether to enable the "sx" pseudo-display manager, which allows users
to start manually via the "sx" command from a vt shell
|
| services.portunus.user | User account under which Portunus runs its webserver.
|
| services.kubernetes.controllerManager.leaderElect | Whether to start leader election before executing main loop.
|
| services.elasticsearch.single_node | Start a single-node cluster
|
| services.umami.settings.PORT | The port to listen on.
|
| services.rimgo.settings.PORT | The port to use.
|
| services.ax25.axports.<name>.tty | Location of hardware kiss tnc for this interface.
|
| networking.hostName | The name of the machine
|
| services.xserver.displayManager.session | List of sessions supported with the command used to start each
session
|
| services.networking.websockify.portMap | Ports to map by default.
|
| containers.<name>.privateUsers | Whether to give the container its own private UIDs/GIDs space (user namespacing)
|
| services.tuned.ppdSupport | Whether to enable translation of power-profiles-daemon API calls to TuneD.
|
| services.mympd.settings.ssl | Whether to enable listening on the SSL port
|
| virtualisation.incus.enable | Whether to enable incusd, a daemon that manages containers and virtual machines
|
| virtualisation.libvirtd.enable | This option enables libvirtd, a daemon that manages
virtual machines
|
| services.sks.hkpPort | HKP port to listen on.
|
| services.quickwit.settings.grpc_listen_port | The port to listen on for gRPC traffic.
|
| services.cassandra.jmxPort | Specifies the default port over which Cassandra will be available for
JMX connections
|
| services.portunus.group | Group account under which Portunus runs its webserver.
|
| services.pixiecore.statusPort | HTTP port for status information (can be the same as --port)
|
| services.matomo.periodicArchiveProcessing | Enable periodic archive processing, which generates aggregated reports from the visits
|
| virtualisation.libvirtd.hooks.daemon | Hooks that will be placed under /var/lib/libvirt/hooks/daemon.d/
and called for daemon start/shutdown/SIGHUP events
|
| services.radicle.ci.broker.settings.report_dir | Directory where HTML and JSON report pages are written.
|
| services.haven.importRelays | List of relay configurations for importing historical events
|
| services.github-runners.<name>.ephemeral | If enabled, causes the following behavior:
- Passes the
--ephemeral flag to the runner configuration script
- De-registers and stops the runner with GitHub after it has processed one job
- On stop, systemd wipes the runtime directory (this always happens, even without using the ephemeral option)
- Restarts the service after its successful exit
- On start, wipes the state directory and configures a new runner
You should only enable this option if tokenFile points to a file which contains a
personal access token (PAT)
|
| services.kavita.settings.Port | Port to bind to.
|
| services.mtr-exporter.jobs | List of MTR jobs
|
| services.portunus.stateDir | Path where Portunus stores its state.
|
| services.teleport.diag.addr | Metrics and diagnostics address.
|
| services.routinator.settings.rtr-listen | An array of string values each providing an address and port on which the RTR server should listen in TCP mode
|
| services.tabby.model | Specify the model that tabby will use to generate completions
|
| services.sourcehut.settings."builds.sr.ht::worker".name | Listening address and listening port
of the build runner (with HTTP port if not 80).
|
| services.routinator.settings.http-listen | An array of string values each providing an address and port on which the HTTP server should listen
|
| networking.supplicant | Interfaces for which to start wpa_supplicant
|
| xdg.portal.lxqt.styles | Extra Qt styles that will be available to the
lxqt.xdg-desktop-portal-lxqt.
|
| <imports = [ pkgs.php.services.default ]>.php-fpm.settings.log_level | Error log level.
|
| services.oauth2-proxy.httpAddress | HTTPS listening address
|
| services.prometheus.exporters.ping.settings | Configuration for ping_exporter, see
https://github.com/czerwonk/ping_exporter
for supported values.
|
| services.nezha-agent.settings.report_delay | The interval between system status reportings
|
| services.prometheus.exporters.exportarr-bazarr.openFirewall | Open port in firewall for incoming connections.
|
| services.prometheus.exporters.exportarr-radarr.openFirewall | Open port in firewall for incoming connections.
|
| services.prometheus.exporters.exportarr-lidarr.openFirewall | Open port in firewall for incoming connections.
|
| services.prometheus.exporters.exportarr-sonarr.openFirewall | Open port in firewall for incoming connections.
|
| services.nbd.server.exports | Files or block devices to make available over the network.
|
| services.gitlab.secrets.activeRecordDeterministicKeyFile | A file containing the secret used to encrypt some rails data in a deterministic way
in the DB
|
| services.documize.forcesslport | Redirect given http port number to TLS.
|
| services.prometheus.exporters.fritz.settings | Configuration settings for fritz-exporter.
|
| services.teleport.enable | Whether to enable the Teleport service.
|
| services.portunus.ldap.user | User account under which Portunus runs its LDAP server.
|
| services.zapret.udpSupport | Enable UDP routing
|
| programs.tsmClient.servers.<name>.tcpport | TCP port of the IBM TSM server
|
| services.mtr-exporter.jobs.*.name | Name of ICMP pinging job.
|
| services.prometheus.exporters.mqtt.mqttPort | TCP port of MQTT broker.
|
| services.prometheus.scrapeConfigs.*.azure_sd_configs.*.port | The port to scrape metrics from
|
| services.resilio.listeningPort | Listening port
|
| services.prometheus.exporters.exportarr-readarr.openFirewall | Open port in firewall for incoming connections.
|
| services.tsidp.settings.localPort | Listen on localhost:.
|
| services.parsedmarc.provision.localMail.recipientName | The DMARC mail recipient name, i.e. the name part of the
email address which receives DMARC reports
|
| services.tlsrpt.reportd.settings.http_script | Call to an HTTPS client, that accepts the URL on the commandline and the request body from stdin.
|
| services.xserver.windowManager.i3.updateSessionEnvironment | Whether to run dbus-update-activation-environment and systemctl import-environment before session start
|
| services.nfs.server.exports | Contents of the /etc/exports file
|
| services.portunus.seedPath | Path to a portunus seed file in json format
|
| services.youtrack.environmentalParameters.listen-port | The port YouTrack will listen on.
|
| services.jellyfin.forceEncodingConfig | Whether to overwrite Jellyfin's encoding.xml configuration file on each service start
|
| services.portunus.domain | Subdomain which gets reverse proxied to Portunus webserver.
|
| services.postfix.enableSmtp | Whether to enable the smtp service configured in the master.cf
|
| services.stash.settings.preview_exclude_end | Duration of start of video to exclude when generating previews
|
| services.nixseparatedebuginfod.port | port to listen
|
| services.ax25.axports.<name>.window | Default window size for this interface.
|
| services.mtr-exporter.enable | Whether to enable a Prometheus exporter for MTR.
|
| services.zitadel.settings.Port | The port that ZITADEL listens on.
|
| services.magnetico.web.credentials | The credentials to access the web interface, in case authentication is
enabled, in the format username:hash
|
| services.prometheus.exporters.jitsi.url | Jitsi Videobridge metrics URL to monitor
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs.*.port | The port to scrape metrics from
|
| services.magnetico.web.credentialsFile | The path to the file holding the credentials to access the web
interface
|
| services.go-httpbin.settings.PORT | The port to listen on.
|
| services.prometheus.exporters.exportarr-prowlarr.openFirewall | Open port in firewall for incoming connections.
|