| services.osquery.flags | Attribute set of flag names and values to be written to the osqueryd flagfile
|
| services.sftpgo.settings.httpd.bindings.*.enable_web_client | Enable the built-in web client for this interface binding.
|
| services.strongswan-swanctl.swanctl.secrets.ntlm | NTLM secret section for a specific secret
|
| services.prometheus.scrapeConfigs.*.kuma_sd_configs.*.basic_auth.username | HTTP username
|
| services.misskey.reverseProxy.webserver.caddy.listenAddresses | A list of host interfaces to bind to for this virtual host.
|
| services.monica.nginx.globalRedirect | If set, all requests for this host are redirected (defaults to 301,
configurable with redirectCode) to the given hostname.
|
| services.minidlna.settings.port | Port number for HTTP traffic (descriptions, SOAP, media transfer).
|
| services.netdata.enable | Whether to enable netdata.
|
| services.openntpd.servers | The set of NTP servers from which to synchronise.
|
| services.logstash.filterWorkers | The quantity of filter workers to run.
|
| services.nagios.virtualHost.locations | Declarative location config
|
| services.monica.nginx.kTLS | Whether to enable kTLS support
|
| services.pretix.settings.pretix.url | The installation’s full URL, without a trailing slash.
|
| services.multipath.pathGroups.*.wwid | The identifier for the multipath device
|
| services.phpfpm.pools.<name>.listen | The address on which to accept FastCGI requests.
|
| services.portunus.group | Group account under which Portunus runs its webserver.
|
| services.prometheus.exporters.knot.knotLibraryPath | Path to the library of knot-dns.
|
| services.movim.h2o.acme.useHost | An existing Let’s Encrypt certificate to use for this virtual
host
|
| services.mighttpd2.enable | Whether to enable Mighttpd2 web server.
|
| services.oauth2-proxy.oidcIssuerUrl | The OAuth issuer URL.
|
| services.pict-rs.dataDir | The directory where to store the uploaded images & database.
|
| services.suricata.settings.dpdk.interfaces | See upstream docs: docs/capture-hardware/dpdk and docs/configuration/suricata-yaml.html#data-plane-development-kit-dpdk.
|
| services.prometheus.exporters.ping.settings | Configuration for ping_exporter, see
https://github.com/czerwonk/ping_exporter
for supported values.
|
| services.outline.enable | Whether to enable outline.
|
| services.namecoind.generate | Whether to generate (mine) Namecoins.
|
| services.prometheus.exporters.frr.disabledCollectors | Collectors to disable which are enabled by default.
|
| services.openafsClient.cache.directory | Cache directory.
|
| services.multipath.blacklist_exceptions | This section defines which devices should be included in the
multipath topology discovery, despite being listed in the
blacklist section.
|
| services.sftpgo.settings.smtp.auth_type |
0: Plain
1: Login
2: CRAM-MD5
|
| services.mattermost.socket.path | Default location for the Mattermost control socket used by mmctl.
|
| services.ntfy-sh.settings | Configuration for ntfy.sh, supported values are here.
|
| services.openvpn.servers.<name>.down | Shell commands executed when the instance is shutting down.
|
| services.mycelium.package | The mycelium package to use.
|
| services.memos.dataDir | Specifies the directory where Memos will store its data.
|
| services.offlineimap.install | Whether to install a user service for Offlineimap
|
| services.mail.sendmailSetuidWrapper.setuid | Whether to add the setuid bit the wrapper program.
|
| services.prometheus.exporters.libvirt.port | Port to listen on.
|
| services.monica.nginx.locations.<name>.proxyWebsockets | Whether to support proxying websocket connections with HTTP/1.1.
|
| services.suricata.settings.outputs | Configure the type of alert (and other) logging you would like
|
| services.pdns-recursor.forwardZonesRecurse | DNS zones to be forwarded to other recursive servers.
|
| services.pptpd.extraPptpdOptions | Adds extra lines to the pptpd configuration file.
|
| services.ncps.analytics.reporting.samples | Whether to enable Enable printing the analytics samples to stdout
|
| services.prometheus.exporters.ping.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.ping.openFirewall is true.
|
| services.prometheus.exporters.postgres.runAsLocalSuperUser | Whether to run the exporter as the local 'postgres' super user.
|
| services.lldpd.extraArgs | List of command line parameters for lldpd
|
| services.omnom.settings.db.connection | Database connection URI.
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs.*.tag_separator | The string by which Linode Instance tags are joined into the tag label
|
| services.pgpkeyserver-lite.enable | Whether to enable pgpkeyserver-lite on a nginx vHost proxying to a gpg keyserver.
|
| services.netbird.server.management.extraOptions | Additional options given to netbird-mgmt as commandline arguments.
|
| services.outline.maximumImportSize | The maximum size of document imports
|
| services.misskey.reverseProxy.webserver.nginx.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| services.prometheus.exporters.collectd.logLevel | Only log messages with the given severity or above.
|
| services.public-inbox.nntp.key | Path to TLS key to use for connections to public-inbox-nntpd(1).
|
| services.squid.proxyAddress | IP address on which squid will listen.
|
| services.strongswan-swanctl.swanctl.secrets.token.<name>.pin | Optional PIN required to access the key on the token
|
| services.magnetico.crawler.maxNeighbors | Maximum number of simultaneous neighbors of an indexer
|
| services.pppd.peers.<name>.enable | Whether to enable this PPP peer.
|
| services.nsd.zones.<name>.maxRefreshSecs | Limit refresh time for secondary zones
|
| services.resolved.settings.Resolve.DNSOverTLS | Whether to use TLS encryption for DNS queries
|
| services.postfix.postmasterAlias | Who should receive postmaster e-mail
|
| services.tor.settings.ServerDNSAllowNonRFC953Hostnames | See torrc manual.
|
| services.sabnzbd.settings.misc.https_key | Path to the TLS key for the web UI
|
| services.logstash.package | The logstash package to use.
|
| services.mastodon.elasticsearch.host | Elasticsearch host
|
| services.ringboard.x11.package | The ringboard package to use.
|
| services.prometheus.exporters.exportarr-readarr.url | The full URL to Sonarr, Radarr, or Lidarr.
|
| services.networking.websockify.portMap | Ports to map by default.
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs.*.authorization | Optional Authorization header configuration.
|
| services.maubot.pythonPackages | List of additional Python packages to make available for maubot.
|
| services.suricata.settings.host-mode | If the Suricata box is a router for the sniffed networks, set it to 'router'
|
| services.mediawiki.httpd.virtualHost.listen | Listen addresses and ports for this virtual host.
This option overrides addSSL, forceSSL and onlySSL
|
| services.taler.exchange.settings.exchange.PORT | Port on which the HTTP server listens.
|
| services.restic.server.privateRepos | Enable private repos
|
| services.public-inbox.http.enable | Whether to enable the public-inbox HTTP server.
|
| services.sanoid.templates.<name>.no_inconsistent_snapshot | Whether to take a snapshot if the pre script fails
|
| services.suwayomi-server.settings.server.port | The port that Suwayomi will listen to.
|
| services.udev.packages | List of packages containing udev rules
|
| services.murmur.port | Ports to bind to (UDP and TCP).
|
| services.suricata.settings.af-packet | Linux high speed capture support.
|
| services.netbird.server.enableNginx | Whether to enable Nginx reverse-proxy for the netbird server services.
|
| services.pixelfed.nginx.redirectCode | HTTP status used by globalRedirect and forceSSL
|
| services.mautrix-discord.settings.homeserver | fullDataDiration
|
| services.prometheus.exporters.fritzbox.user | User name under which the fritzbox exporter shall be run.
|
| services.ombi.port | The port for the Ombi web interface.
|
| services.prometheus.retentionTime | How long to retain samples in storage.
|
| services.prometheus.exporters.exportarr-sonarr.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.exportarr-sonarr.openFirewall is true.
|
| services.movim.nginx.extraConfig | These lines go to the end of the vhost verbatim.
|
| services.ncdns.identity.hostname | The hostname of this ncdns instance, which defaults to the machine
hostname
|
| services.pihole-ftl.lists.*.enabled | Whether this list is enabled
|
| services.pgbackrest.enable | Whether to enable pgBackRest.
|
| services.prometheus.exporters.mongodb.user | User name under which the mongodb exporter shall be run.
|
| services.peertube.settings.video_transcription.engine_path | Custom engine path for local transcription.
|
| services.tlsrpt.reportd.settings.sendmail_script | Path to a sendmail-compatible executable for delivery reports.
|
| services.litellm.settings.router_settings | LiteLLM Router settings
|
| services.riemann.config | Contents of the Riemann configuration file
|
| services.thanos.rule.grpc-server-tls-client-ca | TLS CA to verify clients against
|
| services.mail.sendmailSetuidWrapper.program | The name of the wrapper program
|
| services.prometheus.exporters.mikrotik.extraFlags | Extra commandline options to pass to the mikrotik exporter.
|
| services.multipath.overrides | This section defines values for attributes that should override the
device-specific settings for all devices.
|
| services.nitter.preferences.muteVideos | Mute videos by default.
|