| services.gancio.settings.log_level | Gancio log level.
|
| services.tinyproxy.settings.Listen | Specify which address to listen to.
|
| services.mchprs.settings.schemati | Mimic the verification and directory layout used by the
Open Redstone Engineers
Schemati plugin
|
| services.postgrest.settings.db-uri | libpq connection parameters as documented in:
https://www.postgresql.org/docs/current/libpq-connect.html#LIBPQ-PARAMKEYWORDS
The settings.db-uri.password and settings.db-uri.passfile options are blocked
|
| services.opengfw.settings.ruleset | The path to load specific local geoip/geosite db files
|
| programs.gamemode.settings | System-wide configuration for GameMode (/etc/gamemode.ini)
|
| services.suricata.settings.vars.address-groups | The address group variables for suricata, if not defined the
default value of suricata (see example) will be used
|
| services.grafana.settings.database.user | The database user (not applicable for sqlite3).
|
| services.grafana.settings.smtp.key_file | File path to a key file.
|
| services.pretalx.settings.database.host | Database host or socket path.
|
| services.sabnzbd.settings.misc.email_to | Receiving address for email alerts
|
| services.parsedmarc.settings.smtp.to | The addresses to send outgoing mail to.
|
| services.frigate.settings.database.path | Path to the SQLite database used
|
| services.nsd.zones.<name>.requestXFR | Format: [AXFR|UDP] <ip-address> <key-name | NOKEY>
|
| services.scanservjs.settings.host | The IP to listen on.
|
| services.scanservjs.settings.port | The port to listen on.
|
| services.freeciv.settings.Newusers | Whether to enable new users to login if auth is enabled.
|
| services.aesmd.settings.whitelistUrl | URL to retrieve authorized Intel SGX enclave signers.
|
| services.suricata.settings.plugins | Plugins -- Experimental -- specify the filename for each plugin shared object.
|
| services.openssh.settings.PermitRootLogin | Whether the root user can login using ssh.
|
| security.pam.u2f.settings | Options to pass to the PAM module
|
| services.grafana.settings.database.wal | For sqlite3 only
|
| users.users.<name>.homeMode | The user's home directory mode in numeric format
|
| services.yggdrasil.settings | Configuration for yggdrasil, as a structured Nix attribute set
|
| services.tor.settings.FascistFirewall | See torrc manual.
|
| services.reposilite.settings | Configuration written to the reposilite.cdn file
|
| services.scanservjs.settings | Config to set in config.local.js's afterConfig.
|
| services.firezone.server.provision.accounts.<name>.resources.<name>.name | The name of this resource
|
| services.opengfw.settings.workers.queueSize | Worker queue size.
|
| services.h2o.hosts.<name>.http.port | Override the default HTTP port for this virtual host.
|
| services.dnsmasq.settings | Configuration of dnsmasq
|
| services.traccar.settings | config.xml configuration as a Nix attribute set
|
| services.h2o.hosts.<name>.host | Set the host address for this virtual host
|
| security.krb5.settings | Structured contents of the krb5.conf file
|
| services.grafana.settings.server.socket | Path where the socket should be created when protocol=socket
|
| services.sourcehut.settings."sr.ht".site-info | The top-level info page for your site.
|
| services.matrix-hookshot.settings | config.yml configuration as a Nix attribute set
|
| networking.nftables.tables.<name>.name | Table name.
|
| services.minidlna.settings.inotify | Whether to enable inotify monitoring to automatically discover new files.
|
| services.cryptpad.settings.httpSafeOrigin | Cryptpad sandbox URL
|
| services.reposilite.settings.port | The TCP port to bind to.
|
| services.postgresql.settings.port | The port on which PostgreSQL listens.
|
| services.waagent.settings.Logs.Verbose | If you set this option, log verbosity is boosted
|
| services.mautrix-discord.settings | config.yaml configuration as a Nix attribute set
|
| services.pretix.settings.redis.location | URI to the redis server, used to speed up locking, caching and session storage.
|
| services.warpgate.settings.log.send_to | Path of UNIX socket of log forwarder
|
| services.corosync.nodelist.*.name | Node name
|
| services.forgejo.settings.server.SSH_PORT | SSH port displayed in clone URL
|
| services.sourcehut.settings."hg.sr.ht".origin | URL hg.sr.ht is being served at (protocol://domain)
|
| services.sourcehut.settings."hg.sr.ht".hg_ssh | Path to hg-ssh (if not in $PATH).
|
| services.sourcehut.settings."hg.sr.ht".debug-host | Address to bind the debug server to.
|
| services.sourcehut.settings."hg.sr.ht".debug-port | Port to bind the debug server to.
|
| services.snapserver.settings.tcp.port | Port to listen on for snapclient connections.
|
| services.tlsrpt.fetcher.settings.storage | Path to the collectd sqlite database.
|
| services.matrix-conduit.settings | Generates the conduit.toml configuration file
|
| services.umami.settings.DISABLE_UPDATES | Disables the check for new versions of Umami.
|
| services.rosenpass.settings.listen | List of local endpoints to listen for connections.
|
| services.broadcast-box.settings | Attribute set of environment variables.
https://github.com/Glimesh/broadcast-box#environment-variables
The status API exposes stream keys so DISABLE_STATUS is enabled
by default.
|
| services.epgstation.settings | Options to add to config.yml
|
| boot.iscsi-initiator.name | Name of the iSCSI initiator to boot from
|
| security.auditd.settings | auditd configuration file contents
|
| services.fediwall.settings.hideReplies | Hide replies
|
| services.dsnet.settings.ExternalIP | The external IP address of the server
|
| services.routinator.settings.log | A string specifying where to send log messages to
|
| services.hickory-dns.settings.zones.*.file | Path to the .zone file
|
| services.netbox.settings.ALLOWED_HOSTS | A list of valid fully-qualified domain names (FQDNs) and/or IP
addresses that can be used to reach the NetBox service.
|
| services.headscale.settings.oidc.issuer | URL to OpenID issuer.
|
| services.c2fmzq-server.settings.verbose | The level of logging verbosity: 1:Error 2:Info 3:Debug
|
| services.evremap.settings.remap.*.output | The key sequence that should be output when the input sequence is entered
|
| services.grafana-to-ntfy.settings.ntfyBAuthPass | The path to the password for the specified ntfy-sh user
|
| services.epgstation.settings.port | HTTP port for EPGStation to listen on.
|
| services.tor.settings.VirtualAddrNetworkIPv4 | See torrc manual.
|
| services.tor.settings.AccountingMax | See torrc manual.
|
| services.snips-sh.settings.SNIPS_SSH_INTERNAL | The internal SSH address of the service
|
| services.tor.settings.VirtualAddrNetworkIPv6 | See torrc manual.
|
| services.veilid.settings.logging.api.enabled | Events of type 'api' will be logged.
|
| services.veilid.settings.logging.system.level | The minimum priority of system events to be logged.
|
| services.parsedmarc.settings.imap.ssl | Use an encrypted SSL/TLS connection.
|
| services.parsedmarc.settings.smtp.ssl | Use an encrypted SSL/TLS connection.
|
| services.gateone.settingsDir | Path of configuration files for GateOne.
|
| services.yggdrasil.settings.Peers | List of outbound peer connection strings
|
| services.metricbeat.settings | Configuration for metricbeat
|
| services.routinator.settings | Configuration for Routinator 3000, see https://routinator.docs.nlnetlabs.nl/en/stable/manual-page.html#configuration-file for options.
|
| hardware.deviceTree.name | The name of an explicit dtb to be loaded, relative to the dtb base
|
| services.sourcehut.settings."sr.ht".site-blurb | Blurb for your site.
|
| services.lasuite-meet.settings.LIVEKIT_API_URL | URL to the livekit server
|
| services.wg-access-server.settings.storage | A storage backend connection string
|
| services.journalbeat.name | Name of the beat
|
| services.firezone.server.provision.accounts.<name>.name | The account name
|
| services.postsrsd.settings.chroot-dir | Path to chroot into at runtime as an additional layer of protection.
We confine the runtime environment through systemd hardening instead, so this option is read-only.
|
| services.tahoe.nodes.<name>.nickname | The nickname of this Tahoe node.
|
| services.sourcehut.settings.mail.error-from | Address sending application exceptions
|
| services.sourcehut.settings."hub.sr.ht".debug-port | Port to bind the debug server to.
|
| services.sourcehut.settings."man.sr.ht".debug-host | Address to bind the debug server to.
|
| services.sourcehut.settings."git.sr.ht".debug-port | Port to bind the debug server to.
|
| services.sourcehut.settings."man.sr.ht".debug-port | Port to bind the debug server to.
|
| services.sourcehut.settings."git.sr.ht".debug-host | Address to bind the debug server to.
|
| services.sourcehut.settings."man.sr.ht".origin | URL man.sr.ht is being served at (protocol://domain)
|
| services.sourcehut.settings."hub.sr.ht".debug-host | Address to bind the debug server to.
|
| services.sourcehut.settings."git.sr.ht".origin | URL git.sr.ht is being served at (protocol://domain)
|