| services.restic.server.appendOnly | Enable append only mode
|
| services.zabbixWeb.nginx.virtualHost.listen.*.ssl | Enable SSL.
|
| services.moodle.virtualHost.listen.*.ssl | Whether to enable SSL (https) support.
|
| services.nagios.virtualHost.listen.*.ssl | Whether to enable SSL (https) support.
|
| services.vwifi.server.openFirewall | Whether to enable opening the firewall for the TCP and spy ports.
|
| services.i2pd.ssu2.published | Whether to enable SSU2 publication.
|
| services.bookstack.nginx.quic | Whether to enable the QUIC transport protocol
|
| services.zabbixWeb.nginx.virtualHost.kTLS | Whether to enable kTLS support
|
| services.immich.database.createDB | Whether to enable the automatic creation of the database for immich..
|
| services.matomo.nginx | With this option, you can customize an nginx virtualHost which already has sensible defaults for Matomo
|
| services.anuko-time-tracker.nginx.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| services.deconz.openFirewall | Whether to enable opening up the service ports in the firewall.
|
| services.prosody.extraModules | Enable custom modules
|
| services.freeciv.settings.exit-on-end | Whether to enable exit instead of restarting when a game ends.
|
| services.anuko-time-tracker.nginx.listen.*.ssl | Enable SSL.
|
| services.desktopManager.gnome.debug | Whether to enable pkgs.gnome-session debug messages.
|
| services.radicle.node.openFirewall | Whether to enable opening the firewall for radicle-node.
|
| services.avahi.nssmdns4 | Whether to enable the mDNS NSS (Name Service Switch) plug-in for IPv4
|
| services.nylon.<name>.logging | Enable logging, default is no logging.
|
| services.murmur.openFirewall | Whether to enable opening ports in the firewall for the Mumble server.
|
| services.monado.highPriority | Whether to enable high priority capability for monado-service.
|
| services.zabbixWeb.httpd.virtualHost.listen.*.ssl | Whether to enable SSL (https) support.
|
| services.bookstack.nginx.addSSL | Whether to enable HTTPS in addition to plain HTTP
|
| services.redis.servers.<name>.syslog | Enable logging to the system logger.
|
| services.anuko-time-tracker.nginx.kTLS | Whether to enable kTLS support
|
| programs.sway.wrapperFeatures.gtk | Whether to enable the wrapGAppsHook wrapper to execute sway with required environment
variables for GTK applications.
|
| services.nagios.virtualHost.http2 | Whether to enable HTTP 2
|
| services.moodle.virtualHost.http2 | Whether to enable HTTP 2
|
| services.bookstack.nginx.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| services.deconz.allowRebootSystem | Whether to enable rebooting the system.
|
| services.samba-wsdd.discovery | Enable discovery operation mode.
|
| services.grafana.settings.analytics.reporting_enabled | When enabled Grafana will send anonymous usage statistics to stats.grafana.org
|
| services.meme-bingo-web.openFirewall | Whether to enable Opens the specified port in the firewall.
.
|
| services.lifecycled.json | Enable JSON logging.
|
| services.cachix-watch-store.verbose | Enable verbose output
|
| services.collectd.autoLoadPlugin | Enable plugin autoloading.
|
| services.bookstack.nginx.listen.*.ssl | Enable SSL.
|
| services.restic.server.privateRepos | Enable private repos
|
| services.zabbixWeb.httpd.virtualHost.http2 | Whether to enable HTTP 2
|
| services.i2pd.ntcp2.published | Whether to enable NTCP2 publication.
|
| services.miniupnpd.natpmp | Whether to enable NAT-PMP support.
|
| services.eris-server.backends | List of backend URLs
|
| services.doh-server.settings.verbose | Enable logging
|
| services.bookstack.nginx.kTLS | Whether to enable kTLS support
|
| services.jirafeau.nginxConfig.quic | Whether to enable the QUIC transport protocol
|
| services.xserver.displayManager.gdm.debug | Whether to enable debugging messages in GDM.
|
| services.mailhog.setSendmail | Whether to enable set the system sendmail to mailhogs's.
|
| services.freeciv.settings.Guests | Whether to enable guests to login if auth is enabled.
|
| security.pam.services.<name>.pamMount | Enable PAM mount (pam_mount) system to mount filesystems on user login.
|
| services.i2pd.proto.socksProxy.outproxyEnable | Whether to enable SOCKS outproxy.
|
| networking.dhcpcd.IPv6rs | Force enable or disable solicitation and receipt of IPv6 Router Advertisements
|
| services.geth.<name>.websocket.apis | APIs to enable over WebSocket
|
| services.davis.nginx.http3_hq | Whether to enable the HTTP/0.9 protocol negotiation used in QUIC interoperability tests
|
| services.slskd.nginx.http3_hq | Whether to enable the HTTP/0.9 protocol negotiation used in QUIC interoperability tests
|
| services.movim.nginx.http3_hq | Whether to enable the HTTP/0.9 protocol negotiation used in QUIC interoperability tests
|
| networking.ucarp.preempt | Enable preemptive failover
|
| systemd.network.networks.<name>.DHCP | Whether to enable DHCP on the interfaces matched.
|
| services.amule.settings.WebServer.Enabled | Set to 1 to enable the web server
|
| boot.loader.systemd-boot.graceful | Invoke bootctl install with the --graceful option,
which ignores errors when EFI variables cannot be written or when the EFI System Partition
cannot be found
|
| services.openssh.settings.PrintMotd | Whether to enable printing /etc/motd when a user logs in interactively.
|
| services.snipe-it.nginx.http3_hq | Whether to enable the HTTP/0.9 protocol negotiation used in QUIC interoperability tests
|
| services.pgadmin.openFirewall | Whether to enable firewall passthrough for pgadmin4.
|
| services.nsd.reuseport | Whether to enable SO_REUSEPORT on all used sockets
|
| services.jirafeau.nginxConfig.addSSL | Whether to enable HTTPS in addition to plain HTTP
|
| programs.mosh.withUtempter | Whether to enable libutempter for mosh
|
| programs.tmux.withUtempter | Whether to enable libutempter for tmux
|
| services.stash.mutablePlugins | Whether to enable Whether plugins/themes can be installed, updated, uninstalled manually..
|
| services.displayManager.dms-greeter.logs.save | Whether to enable saving logs from the DMS greeter to a file.
|
| programs.sway.wrapperFeatures.base | Whether to enable the base wrapper to execute extra session commands and prepend a
dbus-run-session to the sway command.
|
| services.librenms.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| services.dolibarr.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| services.fediwall.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| services.kanboard.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| services.agorakit.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| services.pixelfed.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| services.mainsail.nginx.http3 | Whether to enable the HTTP/3 protocol
|
| services.xserver.desktopManager.mate.debug | Whether to enable mate-session debug messages.
|
| services.biboumi.openFirewall | Whether to enable opening of the identd port in the firewall.
|
| services.lifecycled.debug | Enable debugging information.
|
| services.jirafeau.nginxConfig.onlySSL | Whether to enable HTTPS and reject plain HTTP connections
|
| services.caddy.openFirewall | Whether to enable opening the specified http(s) ports in the firewall
|
| services.infinoted.plugins | Plugins to enable
|
| services.jirafeau.nginxConfig.listen.*.ssl | Enable SSL.
|
| services.freeciv.openFirewall | Whether to enable opening the firewall for the port listening for clients.
|
| services.vector.journaldAccess | Enable Vector to access journald.
|
| hardware.sane.extraBackends | Packages providing extra SANE backends to enable.
The example contains the package for HP scanners, and the package for
Apple AirScan and Microsoft WSD support (supports many
vendors/devices).
|
| services.syncplay.isolateRooms | Enable room isolation.
|
| services.openldap.package | The openldap package to use
|
| services.tomcat.purifyOnStart | On startup, the baseDir directory is populated with various files,
subdirectories and symlinks
|
| services.nginx.validateConfigFile | Whether to enable validating configuration with pkgs.writeNginxConfig.
|
| services.vsftpd.anonymousUser | Whether to enable the anonymous FTP user.
|
| services.jirafeau.nginxConfig.kTLS | Whether to enable kTLS support
|
| services.headscale.settings.derp.auto_update_enabled | Whether to automatically update DERP maps on a set frequency.
|
| services.zabbixWeb.nginx.virtualHost.http3 | Whether to enable the HTTP/3 protocol
|
| services.undervolt.verbose | Whether to enable verbose logging.
|
| hardware.nvidia.prime.allowExternalGpu | Whether to enable configuring X to allow external NVIDIA GPUs when using Prime [Reverse] sync optimus
.
|
| users.allowNoPasswordLogin | Disable checking that at least the root user or a user in the wheel group can log in using
a password or an SSH key
|
| services.haste-server.openFirewall | Whether to enable firewall passthrough for haste-server.
|
| programs.nano.syntaxHighlight | Whether to enable syntax highlight for various languages.
|
| hardware.uni-sync.devices.*.sync_rgb | Enable ARGB header sync.
|