| services.routinator.settings.expire | An integer value specifying the number of seconds an RTR client is requested to use a data set if it cannot get an update before throwing it away and continuing with no data at all.
|
| programs.spacefm.settings | The system-wide spacefm configuration
|
| users.extraUsers.<name>.homeMode | The user's home directory mode in numeric format
|
| services.firefox-syncserver.settings.port | Port to bind to.
|
| services.misskey.settings.redisForTimelines | ioredis options for timelines
|
| boot.initrd.network.ifstate.settings | Content of IfState's initrd configuration file
|
| services.iodine.clients | Each attribute of this option defines a systemd service that
runs iodine
|
| services.grafana.settings.users.home_page | Path to a custom home page
|
| services.epgstation.database.name | Name of the MySQL database that holds EPGStation's data.
|
| services.spacecookie.settings.log.hide-time | If enabled, spacecookie will not print timestamps
at the beginning of every log line.
|
| services.spacecookie.settings.log.enable | Whether to enable logging for spacecookie.
|
| services.snapserver.settings.tcp-control.port | Port to listen on for snapclient connections.
|
| services.tor.settings.DirAllowPrivateAddresses | See torrc manual.
|
| services.tor.settings.AuthDirSharedRandomness | See torrc manual.
|
| services.tor.settings.EnforceDistinctSubnets | See torrc manual.
|
| services.tinc.networks.<name>.hostSettings | The name of the host in the network as well as the configuration for that host
|
| services.netbird.tunnels.<name>.user.group | A system group name for this client instance.
|
| services.netbird.clients.<name>.user.group | A system group name for this client instance.
|
| services.evremap.settings.dual_role.*.hold | The key sequence that should be output when the input key is held
|
| services.pppd.peers.<name>.config | pppd configuration for this peer, see the pppd(8) man page.
|
| services.netbird.tunnels.<name>.dir.baseName | A systemd service name to use (without .service suffix).
|
| services.netbird.clients.<name>.dir.baseName | A systemd service name to use (without .service suffix).
|
| services.reposilite.settings.sslEnabled | Whether to listen for encrypted connections on settings.sslPort.
|
| services.wgautomesh.settings.peers.*.pubkey | Wireguard public key of this peer.
|
| services.nginx.virtualHosts.<name>.locations.<name>.root | Root directory for requests.
|
| services.lemmy.settings.captcha.difficulty | The difficultly of the captcha to solve.
|
| services.grafana-image-renderer.settings.server.addr | Listen address of the service.
|
| services.etebase-server.settings.database.engine | The database engine to use.
|
| services.taler.merchant.settings.merchant.SERVE | Whether the HTTP server should listen on a UNIX domain socket ("unix") or on a TCP socket ("tcp").
|
| services.postsrsd.settings.separator | SRS tag separator used in generated sender addresses
|
| services.healthchecks.settings.DB | Database engine to use.
|
| services.opensearch.settings."network.host" | Which port this service should listen on.
|
| services.oncall.settings.oncall_host | FQDN for the Oncall instance.
|
| services.scrutiny.settings.web.listen.basepath | If Scrutiny will be behind a path prefixed reverse proxy, you can override this
value to serve Scrutiny on a subpath.
|
| services.sslh.settings.transparent | Whether the services behind sslh (Apache, sshd and so on) will see the
external IP and ports as if the external world connected directly to
them.
|
| services.maubot.settings.server.public_url | Public base URL where the server is visible.
|
| services.stash.settings.stash_boxes | Stash-box facilitates automated tagging of scenes and performers based on fingerprints and filenames
|
| services.szurubooru.server.settings.smtp.passFile | File containing the password associated to the given user for the SMTP server.
|
| services.sourcehut.settings."builds.sr.ht".shell | Scripts used to launch on SSH connection.
/usr/bin/master-shell on master,
/usr/bin/runner-shell on runner
|
| services.evremap.settings.dual_role.*.input | The key that should be remapped
|
| services.guacamole-client.settings | Configuration written to guacamole.properties.
The Guacamole web application uses one main configuration file called
guacamole.properties
|
| services.postgrest.settings.server-unix-socket | Unix domain socket where to bind the PostgREST web server.
|
| services.headscale.settings.dns.magic_dns | Whether to use MagicDNS.
|
| services.quicktun.<name>.privateKey | Local secret key in hexadecimal form.
This option is deprecated
|
| nix.settings.trusted-public-keys | List of public keys used to sign binary caches
|
| services.tor.settings.DoSConnectionEnabled | See torrc manual.
|
| services.tor.settings.DormantCanceledByStartup | See torrc manual.
|
| services.tor.settings.ExtORPortCookieAuthFileGroupReadable | See torrc manual.
|
| services.i2pd.outTunnels.<name>.type | Tunnel type.
|
| services.rspamd.locals.<name>.text | Text of the file.
|
| services.suricata.settings.logging.outputs.file.level | Loglevel for logs written to the logfile.
|
| services.grafana.settings.server.http_addr | Listening address.
This setting intentionally varies from upstream's default to be a bit more secure by default.
|
| services.i2pd.inTunnels.<name>.keys | Keyset used for tunnel identity.
|
| services.phpfpm.pools.<name>.group | Group account under which this pool runs.
|
| services.spacecookie.settings.root | The directory spacecookie should serve via gopher
|
| services.snapserver.settings.stream.source | One or multiple URIs to PCM input streams.
|
| services.geth.<name>.metrics.port | Port number of Go Ethereum metrics service.
|
| services.geth.<name>.http.address | Listen address of Go Ethereum HTTP API.
|
| services.doh-server.settings.upstream | Upstream DNS resolver
|
| programs.regreet.cursorTheme.name | Name of the cursor theme to use for regreet.
|
| services.anuko-time-tracker.settings.emailRequired | Defines whether an email is required for new registrations.
|
| services.matrix-synapse.settings.turn_uris | The public URIs of the TURN server to give to clients
|
| services.autorandr.profiles.<name>.config.<name>.dpi | Output DPI configuration.
|
| services.writefreely.settings.server.port | The port WriteFreely should listen on.
|
| services.wastebin.settings.WASTEBIN_BASE_URL | Base URL for the QR code display
|
| services.sourcehut.settings."lists.sr.ht::worker".sock | Path for the lmtp daemon's unix socket
|
| services.sourcehut.settings."lists.sr.ht".webhooks | The Redis connection used for the webhooks worker.
|
| services.froide-govplan.settings.ALLOWED_HOSTS | A list of valid fully-qualified domain names (FQDNs) and/or IP
addresses that can be used to reach the Froide-Govplan service.
|
| services.nextcloud.settings.log_type | Logging backend to use.
systemd automatically adds the php-systemd extensions to services.nextcloud.phpExtraExtensions
|
| services.reposilite.settings.idleTimeout | Default idle timeout used by Jetty.
|
| services.wastebin.settings.WASTEBIN_MAX_BODY_SIZE | Number of bytes to accept for POST requests
|
| services.suricata.settings.af-xdp.*.interface | af-xdp capture interface, see upstream docs.
|
| services.sourcehut.settings.objects.s3-access-key | Access key to the S3-compatible object storage service
|
| services.szurubooru.server.settings.domain | Full URL to the homepage of this szurubooru site (with no trailing slash).
|
| services.sourcehut.settings."lists.sr.ht::worker".reject-url | Reject URL.
|
| services.forgejo.settings.session.COOKIE_SECURE | Marks session cookies as "secure" as a hint for browsers to only send
them via HTTPS
|
| services.geth.<name>.network | The network to connect to
|
| services.pid-fan-controller.settings.fans.*.cutoff | Whether to stop the fan when minPwm is reached.
|
| services.lasuite-docs.settings.DJANGO_ALLOWED_HOSTS | Comma-separated list of hosts that are able to connect to the server
|
| services.lasuite-meet.settings.DJANGO_ALLOWED_HOSTS | Comma-separated list of hosts that are able to connect to the server
|
| services.botamusique.settings.server.host | Hostname of the mumble server to connect to.
|
| services.botamusique.settings.server.port | Port of the mumble server to connect to.
|
| services.livekit.ingress.settings.whip_port | TCP port for WHIP connections
|
| services.livekit.ingress.settings.rtmp_port | TCP port for RTMP connections
|
| services.rosenpass.settings.verbosity | Verbosity of output produced by the service.
|
| services.tor.settings.DoSCircuitCreationEnabled | See torrc manual.
|
| users.extraUsers.<name>.uid | The account UID
|
| services.suricata.settings.pcap.*.interface | pcap capture interface, see upstream docs.
|
| services.geth.<name>.authrpc.port | Port number of Go Ethereum Auth RPC API.
|
| services.tts.servers.<name>.useCuda | Whether to offload computation onto a CUDA compatible GPU.
|
| services.prowlarr.settings.update.mechanism | which update mechanism to use
|
| services.saunafs.metalogger.settings.DATA_PATH | Data storage directory
|
| services.whisparr.settings.update.mechanism | which update mechanism to use
|
| services.h2o.hosts.<name>.tls.policy | add will additionally listen for TLS connections. only will
disable TLS connections. force will redirect non-TLS traffic
to the TLS connection.
|
| i18n.inputMethod.fcitx5.settings.addons | The addon configures in conf folder in ini format with global sections
|
| services.privoxy.settings.filterfile | List of paths to Privoxy filter files
|
| services.opensnitch.settings.Firewall | Which firewall backend to use.
|
| services.sourcehut.settings."builds.sr.ht".oauth-client-id | builds.sr.ht's OAuth client id for meta.sr.ht.
|
| services.sourcehut.settings."hg.sr.ht".oauth-client-secret | hg.sr.ht's OAuth client secret for meta.sr.ht.
|
| services.watchdogd.settings.meminfo.enabled | Whether to enable watchdogd plugin meminfo.
|