| services.zabbixWeb.nginx.virtualHost.basicAuthFile | Basic Auth password file for a vhost
|
| services.clamsmtp.instances.*.xClient | Send the XCLIENT command to the receiving server, for forwarding
client addresses and connection information if the receiving
server supports this feature.
|
| services.gitlab-runner.clear-docker-cache.enable | Whether to periodically prune gitlab runner's Docker resources
|
| services.cross-seed.useGenConfigDefaults | Whether to use the option defaults from the configuration generated by
cross-seed gen-config
|
| services.znc.useLegacyConfig | Whether to propagate the legacy options under
services.znc.confOptions.* to the znc config
|
| services.matrix-synapse.extraConfigFiles | Extra config files to include
|
| services.gitlab-runner.services.<name>.preBuildScript | Runner-specific command script executed after code is pulled,
just before build executes.
|
| services.borgbackup.jobs.<name>.extraCreateArgs | Additional arguments for borg create
|
| services.neo4j.directories.home | Path of the Neo4j home directory
|
| hardware.printers.ensurePrinters.*.deviceUri | How to reach the printer.
lpinfo -v shows a list of supported device URIs and schemes.
|
| services.btrfs.autoScrub.fileSystems | List of paths to btrfs filesystems to regularly call btrfs scrub on
|
| services.zfs.autoSnapshot.flags | Flags to pass to the zfs-auto-snapshot command
|
| services.xserver.windowManager.xmonad.xmonadCliArgs | Command line arguments passed to the xmonad binary.
|
| services.borgbackup.jobs.<name>.exclude | Exclude paths matching any of the given patterns
|
| services.gitlab-runner.services.<name>.postBuildScript | Runner-specific command script executed after code is pulled
and just after build executes.
|
| services.triggerhappy.extraConfig | Literal contents to append to the end of triggerhappy configuration file.
|
| services.triggerhappy.bindings | Key bindings for triggerhappy.
|
| services.wstunnel.clients.<name>.settings | Command line arguments to pass to wstunnel
|
| services.wstunnel.servers.<name>.settings | Command line arguments to pass to wstunnel
|
| systemd.tmpfiles.packages | List of packages containing systemd-tmpfiles rules
|
| security.wrappers.<name>.permissions | The permissions of the wrapper program
|
| services.freeswitch.enableReload | Issue the reloadxml command to FreeSWITCH when configuration directory changes (instead of restart)
|
| services.keepalived.vrrpScripts.<name>.script | (Path of) Script command to execute followed by args, i.e. cmd [args]...
|
| services.homebridge.uiSettings.restart | Command to restart the homebridge UI service
|
| boot.initrd.systemd.network.wait-online.extraArgs | Extra command-line arguments to pass to systemd-networkd-wait-online
|
| services.suricata.settings.default-log-dir | The default logging directory
|
| services.xserver.xautolock.nowlocker | The script to use when manually locking the computer with xautolock -locknow.
|
| services.hadoop.yarn.nodemanager.extraFlags | Extra command line flags to pass to the service
|
| services.borgbackup.jobs.<name>.extraCompactArgs | Additional arguments for borg compact
|
| services.languagetool.jvmOptions | Extra command line options for the JVM running languagetool
|
| services.davis.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.movim.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.thanos.sidecar.arguments | Arguments to the thanos sidecar command
|
| services.postgresqlBackup.pgdumpAllOptions | Command line options for pg_dumpall
|
| services.slskd.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.lighthouse.validator.extraArgs | Additional arguments passed to the lighthouse validator command.
|
| services.thanos.compact.arguments | Arguments to the thanos compact command
|
| services.thanos.receive.arguments | Arguments to the thanos receive command
|
| services.kubernetes.scheduler.extraOpts | Kubernetes scheduler extra command line options.
|
| services.vmalert.instances.<name>.settings | vmalert configuration, passed via command line flags
|
| services.kubernetes.apiserver.extraOpts | Kubernetes apiserver extra command line options.
|
| nixpkgs.flake.setFlakeRegistry | Whether to pin nixpkgs in the system-wide flake registry (/etc/nix/registry.json) to the
store path of the sources of nixpkgs used to build the NixOS system
|
| services.clamsmtp.instances.*.virusAction | Command to run when a virus is found
|
| services.cassandra.fullRepairInterval | Set the interval how often full repairs are run, i.e.
nodetool repair --full is executed
|
| services.hadoop.hdfs.journalnode.extraFlags | Extra command line flags to pass to HDFS JournalNode
|
| services.tor.settings.ServerTransportPlugin.exec | Command of pluggable transport.
|
| services.snipe-it.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| virtualisation.kvmgt.device | PCI ID of graphics card
|
| services.rsnapshot.enableManualRsnapshot | Whether to enable manual usage of the rsnapshot command with this module.
|
| services.znapzend.features.oracleMode | Whether to enable destroying snapshots one by one instead of using one long argument list
|
| virtualisation.cri-o.pauseCommand | Override the default pause command
|
| services.gitlab-runner.services.<name>.preGetSourcesScript | Runner-specific command script executed before code is pulled.
|
| services.squeezelite.extraArguments | Additional command line arguments to pass to Squeezelite.
|
| services.hardware.deepcool-digital-linux.extraArgs | Extra command line arguments to be passed to the deepcool-digital-linux daemon.
|
| services.borgbackup.jobs.<name>.failOnWarnings | Fail the whole backup job if any borg command returns a warning
(exit code 1), for example because a file changed during backup.
|
| programs.uwsm.waylandCompositors.<name>.extraArgs | Extra command-line arguments pass to to the compsitor.
|
| services.akkoma.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.fluidd.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.fedimintd.<name>.nginx.config.basicAuthFile | Basic Auth password file for a vhost
|
| services.gancio.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.flarum.createDatabaseLocally | Create the database and database user locally, and run installation
|
| boot.initrd.luks.reusePassphrases | When opening a new LUKS device try reusing last successful
passphrase
|
| services.monica.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.matomo.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|
| services.postgresqlBackup.pgdumpOptions | Command line options for pg_dump
|
| services.nullmailer.config.helohost | Sets the environment variable $HELOHOST which is used by the
SMTP protocol module to set the parameter given to the HELO command
|
| services.duplicati.parameters | This option can be used to store some or all of the options given to the
commandline client
|
| services.gitlab-runner.services.<name>.postGetSourcesScript | Runner-specific command script executed after code is pulled.
|
| hardware.printers.ensurePrinters.*.ppdOptions | Sets PPD options for the printer.
lpoptions [-p printername] -l shows supported PPD options for the given printer.
|
| services.victorialogs.extraOptions | Extra options to pass to VictoriaLogs
|
| services.dsnet.settings | The settings to use for dsnet
|
| virtualisation.xen.bootParams | Xen Command Line parameters passed to Domain 0 at boot time
|
| services.zwave-js.secretsConfigFile | JSON file containing secret keys
|
| services.borgbackup.jobs.<name>.appendFailedSuffix | Append a .failed suffix
to the archive name, which is only removed if
borg create has a zero exit status.
|
| networking.resolvconf.package | The package that provides the system-wide resolvconf command
|
| security.tpm2.tctiEnvironment.interface | The name of the TPM command transmission interface (TCTI) library to
use.
|
| services.beesd.filesystems.<name>.extraOptions | Extra command-line options passed to the daemon
|
| services.matrix-continuwuity.admin.enable | Add conduwuit command to PATH for administration
|
| environment.enableDebugInfo | Some NixOS packages provide debug symbols
|
| services.parsedmarc.settings.mailbox.watch | Use the IMAP IDLE command to process messages as they arrive.
|
| services.tarsnap.archives | Tarsnap archive configurations
|
| services.wgautomesh.gossipSecretFile | File containing the gossip secret, a shared secret key to use for gossip
encryption
|
| services.duplicati.parametersFile | This file can be used to store some or all of the options given to the
commandline client
|
| services.fail2ban.jails | The configuration of each Fail2ban “jail”
|
| services.znc.config | Configuration for ZNC, see
https://wiki.znc.in/Configuration for details
|
| networking.wireless.interfaces | The interfaces wpa_supplicant will use
|
| networking.jool.enable | Whether to enable Jool, an Open Source implementation of IPv4/IPv6
translation on Linux
|
| programs.singularity.systemBinPaths | (Extra) system-wide /**/bin paths
for Apptainer/Singularity to find command-line utilities in.
"/run/wrappers/bin" is included by default to make
utilities with SUID bit set available to Apptainer/Singularity
|
| networking.wg-quick.interfaces.<name>.privateKeyFile | Private key file as generated by wg genkey.
|
| virtualisation.xen.boot.params | Xen Command Line parameters passed to Domain 0 at boot time.
|
| virtualisation.podman.autoPrune.flags | Any additional flags passed to podman system prune.
|
| virtualisation.docker.autoPrune.flags | Any additional flags passed to docker system prune.
|
| services.blockbook-frontend.<name>.extraCmdLineOptions | Extra command line options to pass to Blockbook
|
| services.rkvm.server.settings.certificate | TLS certificate path.
This should be generated with rkvm-certificate-gen.
|
| services.rkvm.client.settings.certificate | TLS ceritficate path.
This should be generated with rkvm-certificate-gen.
|
| services.tarsnap.archives.<name>.cachedir | The cache allows tarsnap to identify previously stored data
blocks, reducing archival time and bandwidth usage
|
| users.users.<name>.initialPassword | Specifies the initial password for the user, i.e. the
password assigned if the user does not already exist
|
| services.elasticsearch.extraJavaOptions | Extra command line options for Java.
|
| services.xserver.displayManager.startx.enable | Whether to enable the dummy "startx" pseudo-display manager, which
allows users to start X manually via the startx command from a
virtual terminal.
The X server will run under the current user, not as root.
|
| services.dolibarr.nginx.locations.<name>.basicAuthFile | Basic Auth password file for a vhost
|