| services.rtorrent.dataPermissions | Unix Permissions in octal on the rtorrent directory.
|
| services.monica.nginx.listen.*.extraParameters | Extra parameters of this listen directive.
|
| services.radicle.ci.broker.enable | Whether to enable radicle-ci-broker.
|
| services.thanos.store.grpc-server-tls-client-ca | TLS CA to verify clients against
|
| services.tox-node.keysFile | Path to the file where DHT keys are stored.
|
| services.stargazer.genCerts | Set to false to disable automatic certificate generation
|
| services.prometheus.exporters.ecoflow.group | Group under which the ecoflow exporter shall be run.
|
| services.prometheus.exporters.mail.configuration.servers.*.to | Content of 'To' Header for probing mails.
|
| services.nvme-rs.settings.email.use_tls | Use TLS for SMTP connection
|
| services.radicle.httpd.nginx.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| services.tt-rss.virtualHost | Name of the nginx virtualhost to use and setup
|
| services.prometheus.exporters.modemmanager.enable | Whether to enable the prometheus modemmanager exporter.
|
| services.moodle.virtualHost.http2 | Whether to enable HTTP 2
|
| services.openafsServer.roles.fileserver.salvageserverArgs | Arguments to the salvageserver process
|
| services.step-ca.port | The port the certificate authority should listen on
|
| services.taskserver.enable | Whether to enable the Taskwarrior 2 server
|
| services.pgbackrest.commands.annotate | Options for the 'annotate' command
|
| services.pyload.port | Port to listen on for the web UI.
|
| services.rsnapshot.cronIntervals | Periodicity at which intervals should be run by cron
|
| services.suricata.settings.stats | Engine statistics such as packet counters, memory use counters and others can be logged in several ways
|
| services.udp-over-tcp.tcp2udp.<name>.recvBufferSize | If given, sets the SO_RCVBUF option on the TCP socket to the given number of bytes
|
| services.prometheus.exporters.storagebox.user | User name under which the storagebox exporter shall be run.
|
| services.sanoid.datasets.<name>.post_snapshot_script | Script to run after taking snapshot.
|
| services.tiddlywiki.listenOptions | Parameters passed to --listen command
|
| services.prometheus.exporters.ping.listenAddress | Address to listen on.
|
| services.prometheus.scrapeConfigs.*.ec2_sd_configs.*.filters.*.name | See this list
for the available filters.
|
| services.restic.backups.<name>.backupCleanupCommand | A script that must run after finishing the backup process.
|
| services.shoko.plugins | The plugins to install
|
| services.spacecookie.enable | Whether to enable spacecookie.
|
| services.squeezelite.enable | Whether to enable Squeezelite, a software Squeezebox emulator.
|
| services.sympa.database.port | Database port
|
| services.oauth2-proxy.nginx.domain | The domain under which the oauth2-proxy will be accesible and the path of cookies are set to
|
| services.opentsdb.port | Which port OpenTSDB listens on.
|
| services.prometheus.exporters.wireguard.group | Group under which the wireguard exporter shall be run.
|
| services.mattermost.database.socketPath | The database (Postgres or MySQL) socket path.
|
| services.networkd-dispatcher.rules.<name>.script | Shell commands executed on specified operational states.
|
| services.pdnsd.extraConfig | Extra configuration directives that should be added to
pdnsd.conf.
|
| services.pretix.settings.pretix.url | The installation’s full URL, without a trailing slash.
|
| services.samba-wsdd.interface | Interface or address to use.
|
| services.node-red.userDir | The directory to store all user data, such as flow and credential files and all library data
|
| services.peertube.configureNginx | Configure nginx as a reverse proxy for peertube.
|
| services.prometheus.exporters.artifactory.artiUsername | Username for authentication against JFrog Artifactory API.
|
| services.prometheus.exporters.wireguard.firewallRules | Specify rules for nftables to add to the input chain
when services.prometheus.exporters.wireguard.openFirewall is true.
|
| services.matomo.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.nextcloud.settings.mail_smtpstreamoptions | This depends on mail_smtpmode
|
| services.spark.package | The spark package to use.
|
| services.nginx.clientMaxBodySize | Set nginx global client_max_body_size.
|
| services.searx.uwsgiConfig | Additional configuration of the uWSGI vassal running searx
|
| services.openafsServer.roles.database.vlserverArgs | Arguments to the vlserver process
|
| services.riemann.extraJavaOpts | Extra Java options used when launching Riemann.
|
| services.prometheus.exporters.mikrotik.listenAddress | Address to listen on.
|
| services.swapspace.settings.upper_freelimit | Upper free-space threshold: if the percentage of free space exceeds this number, swapspace will attempt to free up swapspace
|
| services.paperless.consumptionDir | Directory from which new documents are imported.
|
| services.nifi.user | User account where Apache NiFi runs.
|
| services.maubot.settings.server.override_resource_path | Override path from where to load UI resources.
|
| services.pretix.settings.memcached.location | The host:port combination or the path to the UNIX socket of a memcached instance
|
| services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.authorization.credentials_file | Sets the credentials to the credentials read from the configured file
|
| services.subsonic.defaultPodcastFolder | Configure Subsonic to use this folder for Podcasts
|
| services.nagios.virtualHost.listen.*.ssl | Whether to enable SSL (https) support.
|
| services.ollama.group | Group under which to run ollama
|
| services.prometheus.exporters.dnssec.extraFlags | Extra commandline options when launching Prometheus.
|
| services.prometheus.exporters.dovecot.enable | Whether to enable the prometheus dovecot exporter.
|
| services.prosody.ssl | Paths to SSL files
|
| services.redmine.database.name | Database name.
|
| services.sympa.settingsFile.<name>.source | Path of the source file.
|
| services.teeworlds.port | Port the server will listen on.
|
| services.lk-jwt-service.port | Port that lk-jwt-service should listen on.
|
| services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.inactivity | Timeout before closing CHILD_SA after inactivity
|
| services.mautrix-discord.settings.logging | Logging configuration
|
| services.peering-manager.enable | Enable Peering Manager
|
| services.ocis.user | The user to run oCIS as
|
| services.statsd.port | Port that stats listens for messages on over UDP
|
| services.public-inbox.inboxes.<name>.address | The email addresses of the public-inbox.
|
| services.undervolt.p2.window | The P2 Time Window in seconds
|
| services.szurubooru.server.settings.show_sql | Whether to show SQL in server logs.
|
| services.malcontent.enable | Whether to enable Malcontent, parental control support for applications.
|
| services.pgbouncer.settings | Configuration for PgBouncer, see https://www.pgbouncer.org/config.html
for supported values.
|
| services.prefect.workerPools | define a set of worker pools with submodule config. example:
workerPools.my-pool = {
installPolicy = "never";
};
|
| services.tor.settings.AuthDirListBadExits | See torrc manual.
|
| services.memos.user | The user to run Memos as.
If changing the default value, you are responsible of creating the corresponding user with users.users.
|
| services.roundcube.hostName | Hostname to use for the nginx vhost
|
| services.pixelfed.nginx.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| services.sabnzbd.configFile | Path to config file (deprecated, use settings instead and set this value to null)
|
| services.thanos.receive.arguments | Arguments to the thanos receive command
|
| services.timesyncd.enable | Enables the systemd NTP client daemon.
|
| services.tor.settings.ClientPreferIPv6ORPort | See torrc manual.
|
| services.nextcloud.secrets | Secret files to read into entries in config.php
|
| services.open-web-calendar.calendarSettings | Configure the default calendar
|
| services.orthanc.settings | Configuration written to a json file that is read by orthanc
|
| services.samba.nsswins | Whether to enable WINS NSS (Name Service Switch) plug-in
|
| services.tor.settings.ReachableAddresses | See torrc manual.
|
| services.tsidp.enable | Whether to enable tsidp server.
|
| services.mullvad-vpn.enableExcludeWrapper | This option activates the wrapper that allows the use of mullvad-exclude
|
| services.nitter.preferences.squareAvatars | Square profile pictures.
|
| services.sabnzbd.settings.misc.email_full | Whether to send alerts for full disks
|
| services.prometheus.exporters.pgbouncer.connectionString | Connection string for accessing pgBouncer
|
| services.slskd.nginx.listen.*.extraParameters | Extra parameters of this listen directive.
|
| services.tayga.tunDevice | Name of the nat64 tun device.
|
| services.opengfw.settings.replay.realtime | Whether the packets in the PCAP file should be replayed in "real time" (instead of as fast as possible).
|
| services.sniproxy.config | sniproxy.conf configuration excluding the daemon username and pid file.
|