| services.mastodon.database.passwordFile | A file containing the password corresponding to
database.user.
|
| services.misskey.meilisearch.keyFile | The path to a file containing the Meilisearch API key
|
| services.pgadmin.initialPasswordFile | Initial password file for the pgAdmin account
|
| services.netbird.server.coturn.passwordFile | The path to a file containing the password of the user used by netbird to connect to the coturn server.
|
| services.searx.environmentFile | Environment file (see systemd.exec(5) "EnvironmentFile=" section for the syntax) to define variables for Searx
|
| services.sabnzbd.secretFiles | Path to a list of ini file containing confidential settings such as credentials
|
| services.limesurvey.database.socket | Path to the unix socket file to use for authentication.
|
| services.zabbixWeb.nginx.virtualHost.basicAuthFile | Basic Auth password file for a vhost
|
| swapDevices.*.encrypted.keyFile | Path to a keyfile used to unlock the backing encrypted
device
|
| services.zigbee2mqtt.settings | Your configuration.yaml as a Nix attribute set
|
| services.zabbixServer.database.passwordFile | A file containing the password corresponding to
database.user.
|
| services.zammad.secretKeyBaseFile | The path to a file containing the
secret_key_base secret
|
| services.kubernetes.scheduler.kubeconfig.keyFile | Kubernetes scheduler client key file used to connect to kube-apiserver.
|
| services.openvpn.servers.<name>.authUserPass.username | The username to store inside the credentials file.
|
| services.openvpn.servers.<name>.authUserPass.password | The password to store inside the credentials file.
|
| services.discourse.redis.passwordFile | File containing the Redis password
|
| services.headscale.settings.derp.paths | List of file paths containing DERP maps
|
| services.cyrus-imap.cyrusSettings.SERVICES | This section is the heart of the cyrus.conf file
|
| services.keyd.keyboards.<name>.extraConfig | Extra configuration that is appended to the end of the file.
Do not write ids section here, use a separate option for it
|
| services.headscale.settings.policy.mode | The mode can be "file" or "database" that defines
where the ACL policies are stored and read from.
|
| boot.specialFileSystems.<name>.options | Options used to mount the file system
|
| services.crowdsec.settings.console.tokenFile | The Console Token file to use.
|
| services.agorakit.database.passwordFile | A file containing the password corresponding to
|
| services.cross-seed.useGenConfigDefaults | Whether to use the option defaults from the configuration generated by
cross-seed gen-config
|
| services.displayManager.dms-greeter.logs.path | File path where DMS greeter logs will be saved
|
| services.privoxy.settings.enable-edit-actions | Whether the web-based actions file editor may be used.
|
| services.szurubooru.server.settings | Configuration to write to config.yaml
|
| services.wastebin.secretFile | Path to file containing sensitive environment variables
|
| services.kubernetes.scheduler.kubeconfig.certFile | Kubernetes scheduler client certificate file used to connect to kube-apiserver.
|
| services.drupal.sites.<name>.database.passwordFile | A file containing the password corresponding to
database.user.
|
| networking.resolvconf.extraOptions | Set the options in /etc/resolv.conf.
|
| services.actual.settings.serverFiles | The server will put an account.sqlite file in this directory, which will contain the (hashed) server password, a list of all the budget files the server knows about, and the active session token (along with anything else the server may want to store in the future).
|
| security.pki.certificateFiles | A list of files containing trusted root certificates in PEM
format
|
| services.amule.ExternalConnectPasswordFile | File containing the password for connecting with amule-gui,
set this only if you didn't set `settings
|
| programs.tsmClient.servers | Server definitions ("stanzas")
for the client system-options file
|
| services.litellm.environmentFile | Environment file to be passed to the systemd service
|
| services.orthanc.environmentFile | Environment file to be passed to the systemd service
|
| services.mautrix-discord.registerToSynapse | Whether to add the bridge's app service registration file to
services.matrix-synapse.settings.app_service_config_files.
|
| services.pyload.credentialsFile | File containing PYLOAD_DEFAULT_USERNAME and
PYLOAD_DEFAULT_PASSWORD in the format of an EnvironmentFile=,
as described by systemd.exec(5)
|
| services.restic.backups.<name>.repositoryFile | Path to the file containing the repository location to backup to.
|
| services.mpd.credentials.*.passwordFile | Path to file containing the password.
|
| systemd.user.services.<name>.reloadTriggers | An arbitrary list of items such as derivations
|
| virtualisation.msize | The msize (maximum packet size) option passed to 9p file systems, in
bytes
|
| services.prometheus.scrapeConfigs.*.digitalocean_sd_configs.*.tls_config.ca_file | CA certificate to validate API server certificate with.
|
| boot.supportedFilesystems | Names of supported filesystem types, or an attribute set of file system types
and their state
|
| services.lavalink.environmentFile | Add custom environment variables from a file
|
| services.buildkite-agents.<name>.privateSshKeyPath | OpenSSH private key
A run-time path to the key file, which is supposed to be provisioned
outside of Nix store.
|
| boot.loader.systemd-boot.netbootxyz.sortKey | systemd-boot orders the menu entries by their sort keys,
so if you want something to appear after all the NixOS entries,
it should start with o or onwards
|
| services.ghostunnel.servers.<name>.cacert | Path to CA bundle file (PEM/X509)
|
| services.anuko-time-tracker.database.passwordFile | Database user password file.
|
| services.invidious.extraSettingsFile | A file including Invidious settings
|
| services.discourse.admin.passwordFile | A path to a file containing the admin user's password
|
| boot.loader.grub.fsIdentifier | Determines how GRUB will identify devices when generating the
configuration file
|
| services.dokuwiki.sites.<name>.settings | Structural DokuWiki configuration
|
| image.repart.partitions.<name>.contents.<name>.source | Path of the source file.
|
| services.lidarr.environmentFiles | Environment file to pass secret configuration values
|
| services.rathole.credentialsFile | Path to a TOML file to be merged with the settings
|
| services.sonarr.environmentFiles | Environment file to pass secret configuration values
|
| services.lighttpd.mod_userdir | If true, requests in the form /~user/page.html are rewritten to take
the file public_html/page.html from the home directory of the user.
|
| services.radarr.environmentFiles | Environment file to pass secret configuration values
|
| services.readeck.environmentFile | File containing environment variables to be passed to Readeck
|
| services.kubernetes.apiserver.tlsKeyFile | Kubernetes apiserver private key file.
|
| services.lasuite-docs.settings.DJANGO_SECRET_KEY_FILE | The path to the file containing Django's secret key
|
| services.lasuite-meet.settings.DJANGO_SECRET_KEY_FILE | The path to the file containing Django's secret key
|
| services.prometheus.scrapeConfigs.*.digitalocean_sd_configs.*.authorization.credentials_file | Sets the credentials to the credentials read from the configured file
|
| services.limesurvey.virtualHost.enableUserDir | Whether to enable serving ~/public_html as
/~«username».
|
| services.foundationdb.maxLogSize | Delete the oldest log file when the total size of all log
files exceeds the specified size
|
| services.triggerhappy.extraConfig | Literal contents to append to the end of triggerhappy configuration file.
|
| services.tor.relay.onionServices.<name>.secretKey | Secret key of the onion service
|
| services.ntfy-sh.environmentFile | Path to a file containing extra ntfy environment variables in the systemd EnvironmentFile
format
|
| services.vmagent.remoteWrite.basicAuthPasswordFile | File that contains the Basic Auth password used to connect to remote_write endpoint
|
| services.vlagent.remoteWrite.basicAuthPasswordFile | File that contains the Basic Auth password used to connect to remote_write endpoint
|
| services.kubernetes.apiserver.etcd.caFile | Etcd ca file.
|
| services.kubernetes.apiserver.tlsCertFile | Kubernetes apiserver certificate file.
|
| services.ethercalc.enable | ethercalc, an online collaborative spreadsheet server
|
| services.freeswitch.enableReload | Issue the reloadxml command to FreeSWITCH when configuration directory changes (instead of restart)
|
| services.gotenberg.downloadFrom.maxRetries | The maximum amount of times to retry downloading a file specified with downloadFrom.
|
| services.icingaweb2.groupBackends | groups.ini contents
|
| services.grafana.settings.server.cert_key | Path to the certificate key file (if protocol is set to https or h2).
|
| security.wrappers.<name>.permissions | The permissions of the wrapper program
|
| services.bookstack.settings | Options for Bookstack configuration
|
| services.gitlab.secrets.secretFile | A file containing the secret used to encrypt variables in
the DB
|
| services.beszel.hub.environmentFile | Environment file to be passed to the systemd service
|
| services.munin-node.disabledPlugins | Munin plugins to disable, even if
munin-node-configure --suggest tries to enable
them
|
| services.tinyproxy.settings.Filter | Tinyproxy supports filtering of web sites based on URLs or domains
|
| services.prometheus.enableReload | Reload prometheus when configuration file changes (instead of restart)
|
| services.moosefs.chunkserver.enable | Whether to enable MooseFS chunkserver daemon that stores file data.
|
| services.mediawiki.httpd.virtualHost.enableUserDir | Whether to enable serving ~/public_html as
/~«username».
|
| services.tinc.networks.<name>.chroot | Change process root directory to the directory where the config file is located (/etc/tinc/netname/), for added security
|
| services.kubernetes.apiserver.etcd.keyFile | Etcd key file.
|
| services.mautrix-signal.settings | config.yaml configuration as a Nix attribute set
|
| services.lasuite-meet.environmentFile | Path to environment file
|
| services.wordpress.sites.<name>.database.socket | Path to the unix socket file to use for authentication.
|
| services.lasuite-docs.environmentFile | Path to environment file
|
| services.wordpress.sites.<name>.extraConfig | Any additional text to be appended to the wp-config.php
configuration file
|
| services.limesurvey.virtualHost.sslServerChain | Path to server SSL chain file.
|
| services.firefox-syncserver.secrets | A file containing the various secrets
|
| services.invidious.database.passwordFile | Path to file containing the database password.
|
| services.inadyn.settings.provider.<name>.include | File to include additional settings for this provider from.
|
| services.meilisearch.masterKeyFile | Path to file which contains the master key
|