| security.please.wheelNeedsPassword | Whether users of the wheel group must provide a password to run
commands or edit files with please and
pleaseedit respectively.
|
| services.bookstack.appURL | The root URL that you want to host BookStack on
|
| security.rtkit.args | Command-line options for rtkit-daemon.
|
| services.actkbd.enable | Whether to enable the actkbd key mapping daemon
|
| services.xserver.imwheel.extraOptions | Additional command-line arguments to pass to
imwheel.
|
| services.linux-enable-ir-emitter.device | IR camera device to depend on
|
| services.restic.backups.<name>.pruneOpts | A list of options (--keep-* et al.) for 'restic forget
--prune', to automatically prune old snapshots
|
| services.physlock.enable | Whether to enable the physlock screen locking mechanism
|
| programs.npm.enable | Whether to enable npm global config.
|
| programs.cdemu.group | Group that users must be in to use cdemu.
|
| fileSystems.<name>.fsType | Type of the file system
|
| services.ttyd.signal | Signal to send to the command on session close.
|
| services.robustirc-bridge.extraFlags | Extra flags passed to the robustirc-bridge command
|
| services.thelounge.public | Make your The Lounge instance public
|
| documentation.info.enable | Whether to install info pages and the info command
|
| services.bind.extraArgs | Additional command-line arguments to pass to named.
|
| services.knot.extraArgs | List of additional command line parameters for knotd
|
| services.ntp.extraFlags | Extra flags passed to the ntpd command.
|
| services.k3s.extraFlags | Extra flags to pass to the k3s command.
|
| services.openssh.knownHosts.<name>.publicKey | The public key data for the host
|
| users.users.<name>.initialHashedPassword | Specifies the initial hashed password for the user, i.e. the
hashed password assigned if the user does not already
exist
|
| programs.criu.enable | Install criu along with necessary kernel options.
|
| services.rke2.extraFlags | Extra flags to pass to the rke2 command.
|
| programs.cdemu.enable | cdemu for members of
programs.cdemu.group.
|
| services.fcron.enable | Whether to enable the fcron daemon.
|
| services.lldpd.extraArgs | List of command line parameters for lldpd
|
| users.extraUsers.<name>.initialHashedPassword | Specifies the initial hashed password for the user, i.e. the
hashed password assigned if the user does not already
exist
|
| services.xserver.xautolock.extraOptions | Additional command-line arguments to pass to
xautolock.
|
| services.autosuspend.settings.suspend_cmd | The command to execute in case the host shall be suspended
|
| virtualisation.fileSystems | The file systems to be mounted
|
| services.angrr.extraArgs | Extra command-line arguments pass to angrr.
|
| services.u9fs.extraArgs | Extra arguments to pass on invocation,
see man 4 u9fs
|
| security.pki.certificateFiles | A list of files containing trusted root certificates in PEM
format
|
| services.pcscd.extraArgs | Extra command line arguments to be passed to the PCSC daemon.
|
| services.rumno.extraArgs | Extra command-line arguments to pass to the rumno daemon.
|
| services.osrm.extraFlags | Extra command line arguments passed to osrm-routed
|
| security.pam.u2f.enable | Enables U2F PAM (pam-u2f) module
|
| boot.loader.grub.fsIdentifier | Determines how GRUB will identify devices when generating the
configuration file
|
| programs.ssh.knownHosts.<name>.publicKeyFile | The path to the public key file for the host
|
| programs.qdmr.enable | Whether to enable QDMR - a GUI application and command line tool for programming DMR radios.
|
| services.jotta-cli.enable | Whether to enable Jottacloud Command-line Tool.
|
| services.byedpi.extraArgs | Extra command line arguments.
|
| services.zwave-js.extraFlags | Extra flags to pass to command
|
| security.pam.services.<name>.gnupg.noAutostart | Don't start gpg-agent if it is not running
|
| systemd.oomd.extraConfig | Extra config options for systemd-oomd
|
| services.mihomo.extraOpts | Extra command line options to use.
|
| services.udev.extraHwdb | Additional hwdb files
|
| services.tuned.settings.recommend_command | Whether to enable recommend functionality.
|
| services.dragonflydb.keysOutputLimit | Maximum number of returned keys in keys command.
keys is a dangerous command
|
| services.athens.sumDBs | List of fully qualified URLs that Athens will proxy
that the go command can use a checksum verifier.
|
| services.loki.extraFlags | Specify a list of additional command line flags,
which get escaped and are then passed to Loki.
|
| documentation.nixos.enable | Whether to install NixOS's own documentation.
|
| programs.ydotool.group | Group which users must be in to use ydotool.
|
| services.gpsd.extraArgs | A list of extra command line arguments to pass to gpsd
|
| services.deconz.extraArgs | Extra command line arguments for deCONZ, see
https://github.com/dresden-elektronik/deconz-rest-plugin/wiki/deCONZ-command-line-parameters.
|
| services.sftpgo.extraArgs | Additional command line arguments to pass to the sftpgo daemon.
|
| networking.jool.siit | Definitions of SIIT instances of Jool
|
| environment.debuginfodServers | List of urls of debuginfod servers for tools like gdb and valgrind to use
|
| services.chrony.extraFlags | Extra flags passed to the chronyd command.
|
| programs.zoxide.enable | Whether to enable zoxide, a smarter cd command that learns your habits.
|
| services.jotta-cli.options | Command-line options passed to jottad.
|
| services.locate.extraFlags | Extra flags to pass to updatedb.
|
| security.pam.services.<name>.gnupg.enable | If enabled, pam_gnupg will attempt to automatically unlock the
user's GPG keys with the login password via
gpg-agent
|
| fileSystems.<name>.autoFormat | If the device does not currently contain a filesystem (as
determined by blkid), then automatically
format it with the filesystem type specified in
fsType
|
| programs.light.enable | Whether to install Light backlight control command
and udev rules granting access to members of the "video" group.
|
| services.echoip.extraArgs | Extra command line arguments to pass to echoip
|
| programs.tmux.enable | Whenever to configure tmux system-wide.
|
| services.mimir.extraFlags | Specify a list of additional command line flags,
which get escaped and are then passed to Mimir.
|
| services.udev.extraRules | Additional udev rules
|
| services.whoami.extraArgs | Extra command line arguments to pass to whoami
|
| containers | A set of NixOS system configurations to be run as lightweight
containers
|
| networking.jool.nat64 | Definitions of NAT64 instances of Jool
|
| services.doh-proxy-rust.flags | A list of command-line flags to pass to doh-proxy
|
| services.openssh.knownHosts.<name>.publicKeyFile | The path to the public key file for the host
|
| services.znapzend.features.sendRaw | Whether to enable sendRaw feature which adds the options -w to the
zfs send command
|
| services.nix-serve.extraParams | Extra command line parameters for nix-serve.
|
| virtualisation.podman.enable | This option enables Podman, a daemonless container engine for
developing, managing, and running OCI Containers on your Linux System
|
| virtualisation.podman.dockerCompat | Create an alias mapping docker to podman.
|
| services.karma.extraOptions | Extra command line options.
|
| services.go-camo.extraOptions | Extra options passed to the go-camo command.
|
| services.nncp.daemon.extraArgs | Extra command-line arguments to pass to daemon.
|
| services.nncp.caller.extraArgs | Extra command-line arguments to pass to caller.
|
| hardware.printers.ensurePrinters | Will regularly ensure that the given CUPS printers are configured as declared here
|
| virtualisation.docker.extraOptions | The extra command-line options to pass to
docker daemon.
|
| programs.thefuck.enable | Whether to enable thefuck, an app which corrects your previous console command.
|
| security.please.enable | Whether to enable please, a Sudo clone which allows a users to execute a command or edit a
file as another user
.
|
| services.slurm.rest.options | Extra command-line options to pass to slurmrestd.
|
| services.public-inbox.mda.args | Command-line arguments to pass to public-inbox-mda(1).
|
| services.lorri.enable | Enables the daemon for lorri, a nix-shell replacement for project
development
|
| services.uptermd.extraFlags | Extra flags passed to the uptermd command.
|
| services.factorio.allowedPlayers | If non-empty, only these player names are allowed to connect
|
| virtualisation.kvmgt.vgpus | Virtual GPUs to be used in Qemu
|
| boot.loader.grub.memtest86.params | Parameters added to the Memtest86+ command line
|
| security.pam.u2f.settings.authfile | By default pam-u2f module reads the keys from
$XDG_CONFIG_HOME/Yubico/u2f_keys (or
$HOME/.config/Yubico/u2f_keys if XDG variable is
not set)
|
| virtualisation.docker.enable | This option enables docker, a daemon that manages
linux containers
|
| services.acpid.handlers | Event handlers.
Handler can be a single command.
|
| services.guix.gc.extraArgs | List of arguments to be passed to guix gc
|
| services.nfs.server.statdPort | Use a fixed port for rpc.statd
|
| programs.ydotool.enable | Whether to enable ydotoold system service and ydotool for members of
programs.ydotool.group.
.
|
| services.glances.extraArgs | Extra command-line arguments to pass to glances
|