| services.prometheus.exporters.mqtt.mqttV5Protocol | Whether to enable Force to use MQTT protocol v5 instead of 3.1.1..
|
| services.ncps.cache.lock.redisKeyPrefix | Prefix for all Redis lock keys (only used when Redis is
configured).
|
| services.strongswan-swanctl.swanctl.connections.<name>.ppk_required | Whether a Postquantum Preshared Key (PPK) is required for this connection
|
| services.sftpgo.user | User account name under which SFTPGo runs.
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs.*.oauth2.scopes | Scopes for the token request.
|
| services.mediagoblin.paste.settings | Settings which are written into paste.ini.
|
| services.mympd.extraGroups | Additional groups for the systemd service.
|
| services.trezord.enable | Enable Trezor bridge daemon, for use with Trezor hardware bitcoin wallets.
|
| services.mptcpd.package | The mptcpd package to use.
|
| services.outline.rateLimiter.durationWindow | Length of a throttling window.
|
| services.murmur.registerHostname | DNS hostname where your server can be reached
|
| services.n8n.package | The n8n package to use.
|
| services.snipe-it.nginx.locations.<name>.return | Adds a return directive, for e.g. redirections.
|
| services.pulseaudio.enable | Whether to enable the PulseAudio sound server.
|
| services.rosenpass.package | The rosenpass package to use.
|
| services.oncall.settings.oncall_host | FQDN for the Oncall instance.
|
| services.prometheus.scrapeConfigs.*.hetzner_sd_configs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| services.mjolnir.pantalaimon.options.listenAddress | The address where the daemon will listen to client connections
for this homeserver.
|
| services.shoko.package | The shoko package to use.
|
| services.monica.poolConfig | Options for the monica PHP pool
|
| services.strongswan-swanctl.swanctl.connections.<name>.remote.<name>.eap_id | Identity to use as peer identity during EAP authentication
|
| services.szurubooru.server.settings.delete_source_files | Whether to delete thumbnails and source files on post delete.
|
| services.namecoind.extraNodes | List of additional peer IP addresses to connect to.
|
| services.nsd.xfrdReloadTimeout | Number of seconds between reloads triggered by xfrd.
|
| services.prometheus.exporters.nut.openFirewall | Open port in firewall for incoming connections.
|
| services.mosquitto.listeners.*.port | Port to listen on
|
| services.slurm.dbdserver.enable | Whether to enable SlurmDBD service.
|
| services.prometheus.alertmanager-ntfy.settings.ntfy.notification.tags.*.tag | The tag to add
|
| services.nginx.virtualHosts.<name>.locations.<name>.recommendedProxySettings | Enable recommended proxy settings.
|
| services.tor.settings.ExitPolicy | See torrc manual.
|
| services.monetdb.enable | Whether to enable the MonetDB database server.
|
| services.slskd.openFirewall | Whether to open the firewall for the soulseek network listen port (not the web interface port).
|
| services.pipewire.enable | Whether to enable PipeWire service.
|
| services.pgbackrest.commands.backup | Options for the 'backup' command
|
| services.stunnel.enableInsecureSSLv3 | Enable support for the insecure SSLv3 protocol.
|
| services.thelounge.enable | Whether to enable The Lounge web IRC client.
|
| services.prometheus.exporters.exportarr-bazarr.environment | See the configuration guide for available options.
|
| services.pretix.environmentFile | Environment file to pass secret configuration values
|
| services.syncplay.port | TCP port to bind to.
|
| services.syncthing.settings.devices.<name>.autoAcceptFolders | Automatically create or share folders that this device advertises at the default path
|
| services.sftpgo.settings.httpd.bindings.*.port | The port for serving HTTP(S) requests
|
| services.matrix-conduit.settings.global.allow_federation | Whether this server federates with other servers.
|
| services.sillytavern.enable | Whether to enable sillytavern.
|
| services.synergy.client.screenName | Use the given name instead of the hostname to identify
ourselves to the server.
|
| services.postfix.enableSubmissions | Whether to enable the submissions service configured in master.cf
|
| services.mobilizon.settings.":mobilizon".":instance".name | The fallback instance name if not configured into the admin UI
|
| services.monica.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.postgresql.settings.shared_preload_libraries | List of libraries to be preloaded.
|
| services.limesurvey.nginx.virtualHost.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| services.newt.enable | Whether to enable Newt, user space tunnel client for Pangolin.
|
| services.prometheus.exporters.dmarc.imap.host | Hostname of IMAP server to connect to.
|
| services.snapper.configs.<name>.ALLOW_GROUPS | List of groups allowed to operate with the config
|
| services.maubot.settings.crypto_database | Separate database URL for the crypto database
|
| services.misskey.reverseProxy.webserver.nginx.acmeFallbackHost | Host which to proxy requests to if ACME challenge is not found
|
| services.mobilizon.settings.":mobilizon"."Mobilizon.Web.Endpoint".http.ip | The IP address to listen on
|
| services.monica.mail.from | Mail "from" email.
|
| services.reaction.loglevel | reaction's loglevel
|
| services.suricata.settings.logging.outputs.file.level | Loglevel for logs written to the logfile.
|
| services.sshwifty.enable | Whether to enable Sshwifty.
|
| services.rutorrent.dataDir | Storage path of ruTorrent.
|
| services.slskd.settings.retention.transfers.download.succeeded | Lifespan of succeeded download tasks.
|
| services.nginx.enableReload | Reload nginx when configuration file changes (instead of restart)
|
| services.prometheus.exporters.exportarr-readarr.port | Port to listen on.
|
| services.netbird.clients.<name>.dir.baseName | A systemd service name to use (without .service suffix).
|
| services.limesurvey.nginx.virtualHost.locations.<name>.alias | Alias directory for requests.
|
| services.surrealdb.host | The host that surrealdb will connect to.
|
| services.prometheus.exporters.nats.url | NATS monitor endpoint to query.
|
| services.nextcloud.phpPackage | The php package to use.
|
| services.ncps.cache.database.pool.maxOpenConns | Maximum number of open connections to the database (0 = use
database-specific defaults).
|
| services.system76-scheduler.settings.cfsProfiles.default.wakeup-granularity | sched_wakeup_granularity_ns.
|
| services.prometheus.scrapeConfigs.*.docker_sd_configs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| services.thanos.query.store.sd-interval | Refresh interval to re-read file SD files
|
| services.prometheus.scrapeConfigs.*.dockerswarm_sd_configs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| services.redmine.database.host | Database host address.
|
| services.prometheus.exporters.idrac.group | Group under which the idrac exporter shall be run.
|
| services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.basic_auth.password_file | HTTP password file
|
| services.reposilite.user | The user to run Reposilite under.
|
| services.pulseaudio.tcp.anonymousClients.allowedIpRanges | A list of IP subnets that are allowed to stream to the server.
|
| services.pipewire.wireplumber.extraLv2Packages | List of packages that provide LV2 plugins in lib/lv2 that should
be made available to WirePlumber for [filter chains][wiki-filter-chain]
|
| services.thanos.compact.arguments | Arguments to the thanos compact command
|
| services.tor.settings.NATDPort | See torrc manual.
|
| services.thanos.rule.web.route-prefix | Prefix for API and UI endpoints
|
| services.privoxy.settings.listen-address | Pair of address:port the proxy server is listening to.
|
| services.tor.settings.ExtORPort | See torrc manual.
|
| services.prometheus.exporters.mysqld.user | User name under which the mysqld exporter shall be run.
|
| services.oauth2-proxy.skipAuthRegexes | Skip authentication for requests matching any of these regular
expressions.
|
| services.sanoid.datasets.<name>.process_children_only | Whether to only snapshot child datasets if recursing.
|
| services.toxBootstrapd.port | Listening port (UDP).
|
| services.parsedmarc.settings.smtp.ssl | Use an encrypted SSL/TLS connection.
|
| services.rustus.host | The host that rustus will connect to.
|
| services.printing.cups-pdf.instances.<name>.enable | Whether to enable this cups-pdf instance.
|
| services.public-inbox.settings.publicinbox.pop3server | POP3 URLs to this public-inbox instance
|
| services.strongswan-swanctl.swanctl.secrets.pkcs12.<name>.file | File name in the pkcs12 folder for which this
passphrase should be used.
|
| services.tor.relay.enable | Whether to enable relaying of Tor traffic for others
|
| services.mattermost.preferNixConfig | If both mutableConfig and this option are set, the Nix configuration
will take precedence over any settings configured in the server
console.
|
| services.movim.poolConfig | Options for Movim’s PHP-FPM pool.
|
| services.netbird.tunnels.<name>.bin.suffix | A system group name for this client instance.
|
| services.prometheus.alertmanagers | A list of alertmanagers to send alerts to
|
| services.postgresqlBackup.location | Path of directory where the PostgreSQL database dumps will be placed.
|
| services.prometheus.exporters.mqtt.listenAddress | Address to listen on.
|