| systemd.enableEmergencyMode | Whether to enable emergency mode, which is an
sulogin shell started on the console if
mounting a filesystem fails
|
| networking.nftables.enable | Whether to enable nftables and use nftables based firewall if enabled.
nftables is a Linux-based packet filtering framework intended to
replace frameworks like iptables
|
| programs.nix-required-mounts.presets.nvidia-gpu.enable | Whether to enable Declare the support for derivations that require an Nvidia GPU to be
available, e.g. derivations with requiredSystemFeatures = [ "cuda" ]
|
| services.nebula-lighthouse-service.enable | Whether to enable nebula-lighthouse-service.
|
| services.matrix-appservice-discord.enable | Whether to enable a bridge between Matrix and Discord.
|
| services.networkd-dispatcher.enable | Whether to enable Networkd-dispatcher service for systemd-networkd connection status
change
|
| services.angrr.settings.profile-policies.<name>.enable | Whether to enable this angrr policy.
|
| services.cloudlog.update-clublog-scp.enable | Whether to periodically update the Clublog SCP database
|
| services.calibre-web.options.enableKepubify | Whether to enable kepub conversion support.
|
| programs.fish.vendor.completions.enable | Whether fish should use completion files provided by other packages.
|
| security.pam.services.<name>.ttyAudit.enablePattern | For each user matching one of comma-separated
glob patterns, enable TTY auditing
|
| services.xserver.displayManager.lightdm.greeters.gtk.enable | Whether to enable lightdm-gtk-greeter as the lightdm greeter.
|
| services.memcached.enableUnixSocket | Whether to enable Unix Domain Socket at /run/memcached/memcached.sock instead of listening on an IP address and port
|
| security.pam.services.<name>.duoSecurity.enable | If set, use the Duo Security pam module
pam_duo for authentication
|
| hardware.facter.detected.fingerprint.enable | Whether to enable Fingerprint devices.
|
| services.mediawiki.httpd.virtualHost.enableUserDir | Whether to enable serving ~/public_html as
/~«username».
|
| services.radicle.ci.adapters.native.instances.<name>.enable | Whether to enable this radicle-native-ci instance.
|
| services.dysnomia.enableLegacyModules | Whether to enable Dysnomia legacy process and wrapper modules
|
| security.pam.services.<name>.enableUMask | If enabled, the pam_umask module will be loaded.
|
| services.firezone.relay.enableTelemetry | Whether to enable telemetry.
|
| services.prometheus.exporters.nvidia-gpu.enable | Whether to enable the prometheus nvidia-gpu exporter.
|
| hardware.system76.kernel-modules.enable | Whether to make the system76 out-of-tree kernel modules available
|
| programs.singularity.enableSuid | Whether to enable the SUID support of Singularity/Apptainer.
|
| services.blockbook-frontend.<name>.enable | Whether to enable blockbook-frontend application.
|
| services.globalprotect.enable | Whether to enable globalprotect.
|
| programs.opengamepadui.enable | Whether to enable opengamepadui.
|
| services.elasticsearch.enable | Whether to enable elasticsearch.
|
| services.matrix-continuwuity.enable | Whether to enable continuwuity.
|
| programs.proxychains.proxies.<name>.enable | Whether to enable this proxy.
|
| services.xserver.displayManager.lightdm.greeters.enso.enable | Whether to enable enso-os-greeter as the lightdm greeter
|
| hardware.facter.detected.networking.intel._2200BG.enable | Whether to enable the Facter Intel 2200BG module.
|
| services.keepalived.snmp.enableChecker | Enable SNMP handling of checker element of KEEPALIVED MIB.
|
| services.netbird.server.dashboard.enableNginx | Whether to enable Nginx reverse-proxy to serve the dashboard.
|
| services.mattermost.matterircd.enable | Whether to enable Mattermost IRC bridge.
|
| services.hddfancontrol.enable | Whether to enable hddfancontrol daemon.
|
| services.torrentstream.enable | Whether to enable TorrentStream daemon.
|
| services.matrix-alertmanager.enable | Whether to enable matrix-alertmanager.
|
| services.networkaudiod.enable | Whether to enable Networkaudiod (NAA).
|
| services.warpgate.settings.recordings.enable | Whether to enable session recording.
|
| services.peertube.enableWebHttps | Whether clients will access your PeerTube instance with HTTPS
|
| services.suricata.settings.logging.outputs.console.enable | Whether to enable logging to console.
|
| services.privatebin.enableNginx | Whether to enable nginx or not
|
| services.outline.enableUpdateCheck | Have the installation check for updates by sending anonymized statistics
to the maintainers.
|
| hardware.nvidia.modesetting.enable | Whether to enable kernel modesetting when using the NVIDIA proprietary driver
|
| services.anuko-time-tracker.nginx.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| services.nextcloud.notify_push.enable | Whether to enable Notify push.
|
| virtualisation.qemu.guestAgent.enable | Enable the Qemu guest agent.
|
| services.wyoming.openwakeword.enable | Whether to enable Wyoming protocol server for openWakeWord wake word detection system.
|
| services.nullidentdmod.enable | Whether to enable the nullidentdmod identd daemon.
|
| services.trafficserver.enable | Whether to enable Apache Traffic Server.
|
| services.wasabibackend.enable | Whether to enable Wasabi backend service.
|
| services.hylafax.faxcron.enable.frequency | purging old files from the spooling area with
faxcron with the given frequency
(see systemd.time(7))
|
| services.consul-template.instances.<name>.enable | Whether to enable this consul-template instance.
|
| documentation.doc.enable | Whether to install documentation distributed in packages' /share/doc
|
| hardware.facter.detected.networking.intel._3945ABG.enable | Whether to enable the Facter Intel 3945ABG module.
|
| boot.loader.generationsDir.enable | Whether to create symlinks to the system generations under
/boot
|
| documentation.info.enable | Whether to install info pages and the info command
|
| virtualisation.vmware.guest.enable | Whether to enable VMWare Guest Support.
|
| services.movim.precompressStaticFiles.brotli.enable | Whether to enable Brotli precompression.
|
| programs.foot.enableZshIntegration | Whether to enable foot zsh integration.
|
| networking.resolvconf.enable | Whether DNS configuration is managed by resolvconf.
|
| programs.coolercontrol.enable | Whether to enable CoolerControl GUI & its background services.
|
| services.mqtt2influxdb.enable | Whether to enable BigClown MQTT to InfluxDB bridge.
|
| services.zabbixWeb.httpd.virtualHost.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| services.zabbixWeb.nginx.virtualHost.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| services.geoclue2.enableNmea | Whether to fetch location from NMEA sources on local network.
|
| services.prometheus.exporters.apcupsd.enable | Whether to enable the prometheus apcupsd exporter.
|
| services.prometheus.exporters.klipper.enable | Whether to enable the prometheus klipper exporter.
|
| services.prometheus.exporters.dovecot.enable | Whether to enable the prometheus dovecot exporter.
|
| services.prometheus.exporters.postfix.enable | Whether to enable the prometheus postfix exporter.
|
| services.prometheus.exporters.mongodb.enable | Whether to enable the prometheus mongodb exporter.
|
| services.prometheus.exporters.systemd.enable | Whether to enable the prometheus systemd exporter.
|
| services.prometheus.exporters.ecoflow.enable | Whether to enable the prometheus ecoflow exporter.
|
| services.prometheus.exporters.varnish.enable | Whether to enable the prometheus varnish exporter.
|
| services.prometheus.exporters.libvirt.enable | Whether to enable the prometheus libvirt exporter.
|
| services.prometheus.exporters.unbound.enable | Whether to enable the prometheus unbound exporter.
|
| services.prometheus.exporters.process.enable | Whether to enable the prometheus process exporter.
|
| services.prometheus.exporters.bitcoin.enable | Whether to enable the prometheus bitcoin exporter.
|
| services.prometheus.exporters.dnsmasq.enable | Whether to enable the prometheus dnsmasq exporter.
|
| services.prometheus.exporters.sabnzbd.enable | Whether to enable the prometheus sabnzbd exporter.
|
| services.networking.websockify.enable | Whether to enable websockify to forward websocket connections to TCP connections.
|
| services.cpuminer-cryptonight.enable | Whether to enable the cpuminer cryptonight miner.
|
| services.invoiceplane.sites.<name>.enable | Whether to enable InvoicePlane web application.
|
| systemd.enableCgroupAccounting | Whether to enable cgroup accounting; see cgroups(7).
|
| services.lighthouse.validator.metrics.enable | Whether to enable Validator node prometheus metrics.
|
| services.librenms.enableLocalBilling | Enable billing Cron-Jobs on the local instance
|
| services.go-shadowsocks2.server.enable | Whether to enable go-shadowsocks2 server.
|
| services.xserver.displayManager.lightdm.greeters.slick.enable | Whether to enable lightdm-slick-greeter as the lightdm greeter.
|
| services.tsidp.settings.enableFunnel | Use Tailscale Funnel to make tsidp available on the public internet so it works with SaaS products.
|
| services.journaldriver.enable | Whether to enable journaldriver to forward journald logs to
Stackdriver Logging.
|
| services.gitea-actions-runner.instances.<name>.enable | Whether to enable Gitea Actions Runner instance.
|
| services.postgresql.systemCallFilter.<name>.enable | Whether to enable ‹name› in postgresql's syscall filter.
|
| services.jitsi-meet.videobridge.enable | Jitsi Videobridge instance and configure it to connect to Prosody
|
| services.invoiceplane.sites.<name>.cron.enable | Enable cron service which periodically runs Invoiceplane tasks
|
| services.openafsServer.roles.database.enable | Database server role, maintains the Volume Location Database,
Protection Database (and Backup Database, see
backup role)
|
| services.discourse.enableACME | Whether an ACME certificate should be used to secure
connections to the server.
|
| services.nextcloud-spreed-signaling.enable | Whether to enable Spreed standalone signaling server.
|
| services.bookstack.nginx.enableACME | Whether to ask Let's Encrypt to sign a certificate for this vhost
|
| services.transmission.enable | Whether to enable the headless Transmission BitTorrent daemon
|
| services.mastodon.redis.enableUnixSocket | Use Unix socket
|