| services.restic.backups.<name>.repositoryFile | Path to the file containing the repository location to backup to.
|
| services.litellm.environmentFile | Environment file to be passed to the systemd service
|
| services.pyload.credentialsFile | File containing PYLOAD_DEFAULT_USERNAME and
PYLOAD_DEFAULT_PASSWORD in the format of an EnvironmentFile=,
as described by systemd.exec(5)
|
| services.orthanc.environmentFile | Environment file to be passed to the systemd service
|
| services.xserver.windowManager.mlvwm.configFile | Path to the mlvwm configuration file
|
| systemd.user.services.<name>.reloadTriggers | An arbitrary list of items such as derivations
|
| virtualisation.msize | The msize (maximum packet size) option passed to 9p file systems, in
bytes
|
| services.xserver.windowManager.bspwm.configFile | Path to the bspwm configuration file
|
| services.invidious.extraSettingsFile | A file including Invidious settings
|
| services.anuko-time-tracker.database.passwordFile | Database user password file.
|
| image.repart.partitions.<name>.contents.<name>.source | Path of the source file.
|
| services.lavalink.environmentFile | Add custom environment variables from a file
|
| boot.loader.grub.fsIdentifier | Determines how GRUB will identify devices when generating the
configuration file
|
| services.buildkite-agents.<name>.privateSshKeyPath | OpenSSH private key
A run-time path to the key file, which is supposed to be provisioned
outside of Nix store.
|
| services.dokuwiki.sites.<name>.settings | Structural DokuWiki configuration
|
| services.discourse.admin.passwordFile | A path to a file containing the admin user's password
|
| services.lidarr.environmentFiles | Environment file to pass secret configuration values
|
| services.ghostunnel.servers.<name>.cacert | Path to CA bundle file (PEM/X509)
|
| boot.loader.systemd-boot.netbootxyz.sortKey | systemd-boot orders the menu entries by their sort keys,
so if you want something to appear after all the NixOS entries,
it should start with o or onwards
|
| services.radarr.environmentFiles | Environment file to pass secret configuration values
|
| services.rathole.credentialsFile | Path to a TOML file to be merged with the settings
|
| services.readeck.environmentFile | File containing environment variables to be passed to Readeck
|
| services.lighttpd.mod_userdir | If true, requests in the form /~user/page.html are rewritten to take
the file public_html/page.html from the home directory of the user.
|
| services.sonarr.environmentFiles | Environment file to pass secret configuration values
|
| services.lasuite-docs.settings.DJANGO_SECRET_KEY_FILE | The path to the file containing Django's secret key
|
| services.kubernetes.apiserver.tlsKeyFile | Kubernetes apiserver private key file.
|
| services.lasuite-meet.settings.DJANGO_SECRET_KEY_FILE | The path to the file containing Django's secret key
|
| services.prometheus.scrapeConfigs.*.marathon_sd_configs.*.authorization.credentials_file | Sets the credentials to the credentials read from the configured file
|
| services.prometheus.scrapeConfigs.*.puppetdb_sd_configs.*.authorization.credentials_file | Sets the credentials to the credentials read from the configured file
|
| services.foundationdb.maxLogSize | Delete the oldest log file when the total size of all log
files exceeds the specified size
|
| services.vsftpd.userDbPath | Only applies if enableVirtualUsers is true
|
| services.limesurvey.virtualHost.enableUserDir | Whether to enable serving ~/public_html as
/~«username».
|
| services.ntfy-sh.environmentFile | Path to a file containing extra ntfy environment variables in the systemd EnvironmentFile
format
|
| services.triggerhappy.extraConfig | Literal contents to append to the end of triggerhappy configuration file.
|
| services.tor.relay.onionServices.<name>.secretKey | Secret key of the onion service
|
| services.kubernetes.apiserver.tlsCertFile | Kubernetes apiserver certificate file.
|
| services.vlagent.remoteWrite.basicAuthPasswordFile | File that contains the Basic Auth password used to connect to remote_write endpoint
|
| services.vmagent.remoteWrite.basicAuthPasswordFile | File that contains the Basic Auth password used to connect to remote_write endpoint
|
| services.kubernetes.apiserver.etcd.caFile | Etcd ca file.
|
| services.prometheus.scrapeConfigs.*.digitalocean_sd_configs.*.basic_auth.password_file | HTTP password file
|
| services.tinc.networks.<name>.chroot | Change process root directory to the directory where the config file is located (/etc/tinc/netname/), for added security
|
| services.ethercalc.enable | ethercalc, an online collaborative spreadsheet server
|
| services.beszel.hub.environmentFile | Environment file to be passed to the systemd service
|
| services.icingaweb2.groupBackends | groups.ini contents
|
| services.easytier.instances.<name>.configFile | Path to easytier config file
|
| security.wrappers.<name>.permissions | The permissions of the wrapper program
|
| services.freeswitch.enableReload | Issue the reloadxml command to FreeSWITCH when configuration directory changes (instead of restart)
|
| services.grafana.settings.server.cert_key | Path to the certificate key file (if protocol is set to https or h2).
|
| services.gotenberg.downloadFrom.maxRetries | The maximum amount of times to retry downloading a file specified with downloadFrom.
|
| services.bookstack.settings | Options for Bookstack configuration
|
| services.gitlab.secrets.secretFile | A file containing the secret used to encrypt variables in
the DB
|
| services.tinyproxy.settings.Filter | Tinyproxy supports filtering of web sites based on URLs or domains
|
| services.moosefs.chunkserver.enable | Whether to enable MooseFS chunkserver daemon that stores file data.
|
| services.prometheus.enableReload | Reload prometheus when configuration file changes (instead of restart)
|
| services.mediawiki.httpd.virtualHost.enableUserDir | Whether to enable serving ~/public_html as
/~«username».
|
| services.munin-node.disabledPlugins | Munin plugins to disable, even if
munin-node-configure --suggest tries to enable
them
|
| services.kubernetes.apiserver.etcd.keyFile | Etcd key file.
|
| services.lasuite-docs.environmentFile | Path to environment file
|
| services.wordpress.sites.<name>.database.socket | Path to the unix socket file to use for authentication.
|
| services.lasuite-meet.environmentFile | Path to environment file
|
| services.mautrix-signal.settings | config.yaml configuration as a Nix attribute set
|
| services.wordpress.sites.<name>.extraConfig | Any additional text to be appended to the wp-config.php
configuration file
|
| services.hylafax.faxqclean.enable.spoolInit | Whether to enable purging old files from the spooling area with
faxqclean
each time the spooling area is initialized
.
|
| services.prometheus.scrapeConfigs.*.docker_sd_configs.*.tls_config.ca_file | CA certificate to validate API server certificate with.
|
| services.prometheus.scrapeConfigs.*.triton_sd_configs.*.tls_config.ca_file | CA certificate to validate API server certificate with.
|
| services.prometheus.scrapeConfigs.*.linode_sd_configs.*.tls_config.ca_file | CA certificate to validate API server certificate with.
|
| services.prometheus.scrapeConfigs.*.eureka_sd_configs.*.tls_config.ca_file | CA certificate to validate API server certificate with.
|
| services.prometheus.scrapeConfigs.*.consul_sd_configs.*.tls_config.ca_file | CA certificate to validate API server certificate with.
|
| services.prometheus.scrapeConfigs.*.kubernetes_sd_configs.*.oauth2.client_secret_file | Read the client secret from a file
|
| services.postfix.settings.main.smtpd_tls_chain_files | List of paths to the server private keys and certificates.
The order of items matters and a private key must always be followed by the corresponding certificate.
https://www.postfix.org/postconf.5.html#smtpd_tls_chain_files
|
| services.davis.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.movim.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.slskd.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.limesurvey.virtualHost.sslServerChain | Path to server SSL chain file.
|
| services.firefox-syncserver.secrets | A file containing the various secrets
|
| services.invidious.database.passwordFile | Path to file containing the database password.
|
| services.inadyn.settings.provider.<name>.include | File to include additional settings for this provider from.
|
| services.namecoind.rpc.certificate | Certificate file for securing RPC connections.
|
| services.meilisearch.masterKeyFile | Path to file which contains the master key
|
| services.mautrix-telegram.settings | config.yaml configuration as a Nix attribute set
|
| services.spacecookie.settings | Settings for spacecookie
|
| services.traefik.dynamic.settings | Dynamic configuration for Traefik, written in Nix
|
| services.suricata.settings.default-log-dir | The default logging directory
|
| services.screego.environmentFile | Environment file (see systemd.exec(5) "EnvironmentFile="
section for the syntax) passed to the service
|
| services.snipe-it.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.bookstack.database.passwordFile | A file containing the password corresponding to
database.user.
|
| services.karakeep.environmentFile | An optional path to an environment file that will be used in the web and workers
services
|
| environment.systemPackages | The set of packages that appear in
/run/current-system/sw
|
| services.beszel.agent.environmentFile | File path containing environment variables for configuring the beszel-agent service in the format of an EnvironmentFile
|
| services.librenms.environmentFile | File containing env-vars to be substituted into the final config
|
| services.easytier.instances.<name>.settings | Settings to generate easytier-‹name›.toml
|
| services.gotenberg.environmentFile | Environment file to load extra environment variables from.
|
| services.commafeed.environmentFile | Environment file as defined in systemd.exec(5).
|
| services.opengfw.settings.replay.realtime | Whether the packets in the PCAP file should be replayed in "real time" (instead of as fast as possible).
|
| services.postgresql.settings | PostgreSQL configuration
|
| services.mediawiki.httpd.virtualHost.sslServerChain | Path to server SSL chain file.
|
| services.mediawiki.database.passwordFile | A file containing the password corresponding to
database.user.
|
| services.matrix-alertmanager.tokenFile | File that contains a valid Matrix token for the Matrix user.
|
| services.saunafs.metalogger.settings | Contents of metalogger config file (see sfsmetalogger.cfg(5)).
|
| services.hylafax.modems.<name>.config | Attribute set of values for the given modem
|