| services.outline.secretKeyFile | File path that contains the application secret key
|
| swapDevices.*.device | Path of the device or swap file.
|
| services.discourse.backendSettings | Additional settings to put in the
discourse.conf file
|
| services.prometheus.scrapeConfigs.*.tls_config.key_file | Key file for client cert authentication to the server.
|
| services.cfssl.metadata | Metadata file for root certificate presence
|
| services.angrr.settings.profile-policies | Profile GC root policies.
|
| virtualisation.fileSystems.<name>.overlay.useStage1BaseDirectories | If enabled, lowerdir, upperdir and workdir will be prefixed with /sysroot
|
| services.fail2ban.jails | The configuration of each Fail2ban “jail”
|
| services.thanos.sidecar.objstore.config | Object store configuration
|
| services.thanos.compact.objstore.config | Object store configuration
|
| services.sssd.environmentFile | Environment file as defined in systemd.exec(5)
|
| services.thanos.receive.objstore.config | Object store configuration
|
| services.filesender.settings.site_url | Site URL
|
| security.doas.extraRules | Define specific rules to be set in the
/etc/doas.conf file
|
| services.factorio.configFile | The server's configuration file
|
| services.couchdb.uriFile | This file contains the full URI that can be used to access this
instance of CouchDB
|
| services.pairdrop.rtcConfig | Configuration for STUN/TURN servers
|
| services.phpfpm.pools.<name>.phpOptions | "Options appended to the PHP configuration file php.ini used for this PHP-FPM pool."
|
| services.supybot.plugins | Attribute set of additional plugins that will be symlinked to the
plugin subdirectory
|
| services.rabbitmq.configItems | Configuration options in RabbitMQ's new config file format,
which is a simple key-value format that can not express nested
data structures
|
| systemd.mounts.*.type | File system type.
|
| services.pangolin.settings | Additional attributes to be merged with the configuration options and written to Pangolin's config.yml file.
|
| services.prosody.modules.http_files | Serve static files from a directory over HTTP
|
| services.tarsnap.keyfile | The keyfile which associates this machine with your tarsnap
account
|
| services.logrotate.settings.<name>.files | Single or list of files for which rules are defined
|
| services.foundationdb.pidfile | Path to pidfile for fdbmonitor.
|
| services.pretalx.settings.filesystem.static | Path to the directory that contains static files.
|
| programs.less.lessclose | When less closes a file opened in such a way, it will call another program, called the input postprocessor,
which may perform any desired clean-up action (such as deleting the replacement file created by LESSOPEN).
|
| environment.etc.<name>.user | User name of file owner
|
| services.syncplay.saltFile | Path to the file that contains the server salt
|
| services.seafile.gc.persistent | Takes a boolean argument
|
| services.prometheus.scrapeConfigs.*.tls_config.cert_file | Certificate file for client cert authentication to the server.
|
| services.neo4j.https.sslPolicy | Neo4j SSL policy for HTTPS traffic
|
| programs.zsh.histFile | Change history file.
|
| services.mqtt2influxdb.environmentFiles | File to load as environment file
|
| hardware.deviceTree.overlays.*.dtsFile | Path to .dts overlay file, overlay is applied to
each .dtb file matching "compatible" of the overlay.
|
| services.strongswan.setup | A set of options for the ‘config setup’ section of the
ipsec.conf file
|
| services.xserver.config | The contents of the configuration file of the X server
(xorg.conf)
|
| services.sogo.configReplaces | Replacement-filepath mapping for sogo.conf
|
| services.seafile.gc.randomizedDelaySec | Add a randomized delay before each garbage collection
|
| services.autorandr.profiles.<name>.config.<name>.dpi | Output DPI configuration.
|
| services.prometheus.exporters.snmp.environmentFile | EnvironmentFile as defined in systemd.exec(5)
|
| services.mosquitto.listeners.*.users.<name>.hashedPasswordFile | Specifies the path to a file containing the
hashed password for the MQTT user
|
| services.thanos.query-frontend.tracing.config | Tracing configuration
|
| services.beesd.filesystems.<name>.hashTableSizeMB | Hash table size in MB; must be a multiple of 16
|
| services.gokapi.settingsFile | Path to config file to parse and append to settings
|
| fonts.fontconfig.includeUserConf | Include the user configuration from
~/.config/fontconfig/fonts.conf or
~/.config/fontconfig/conf.d.
|
| services.teleport.settings | Contents of the teleport.yaml config file
|
| services.k3s.extraKubeletConfig | Extra configuration to add to the kubelet's configuration file
|
| services.autorandr.profiles.<name>.config.<name>.mode | Output resolution.
|
| services.autorandr.profiles.<name>.config.<name>.rate | Output framerate.
|
| services.syslogd.defaultConfig | The default syslog.conf file configures a
fairly standard setup of log files, which can be extended by
means of extraConfig.
|
| services.filesender.settings.log_facilities | Defines where FileSender logging is sent
|
| services.traccar.environmentFile | File containing environment variables to substitute in the configuration before starting Traccar
|
| services.ifm.dataDir | Directory to serve throught the file managing service
|
| services.etcd.keyFile | Key file to use for clients
|
| environment.etc.<name>.group | Group name of file owner
|
| services.calibre-server.auth.userDb | Choose users database file to use for authentication
|
| services.dnsproxy.settings | Contents of the config.yaml config file
|
| services.livekit.keyFile | LiveKit key file holding one or multiple application secrets
|
| services.lighttpd.cgit.configText | Verbatim contents of the cgit runtime configuration file
|
| services.rke2.extraKubeletConfig | Extra configuration to add to the kubelet's configuration file
|
| services.openafsServer.roles.fileserver.salvagerArgs | Arguments to the dasalvager process
|
| environment.profileRelativeEnvVars | Attribute set of environment variable
|
| services.autorandr.profiles.<name>.config.<name>.crtc | Output video display controller.
|
| services.watchdogd.settings.filenr.enabled | Whether to enable watchdogd plugin filenr.
|
| services.librechat.credentialsFile | Path to a file that contains environment variables
|
| services.nominatim.database.passwordFile | Password file used for Nominatim database connection
|
| services.kubernetes.addons.dns.corefile | Custom coredns corefile configuration
|
| services.suricata.settings.unix-command.filename | Filename for unix-command socket.
|
| boot.loader.grub.users.<name>.passwordFile | Specifies the path to a file containing the
clear text password for the account
|
| services.maubot.extraConfigFile | A file for storing secrets
|
| services.prometheus.globalConfig.query_log_file | Path to the file prometheus should write its query log to.
|
| services.watchdogd.settings.filenr.warning | The high watermark level
|
| boot.iscsi-initiator.extraConfigFile | Append an additional file's contents to /etc/iscsid.conf
|
| services.watchdogd.settings.filenr.logmark | Whether to log current stats every poll interval.
|
| fonts.fontDir.enable | Whether to create a directory with links to all fonts in
/run/current-system/sw/share/X11/fonts.
|
| boot.tmp.useZram | Whether to mount a zram device on /tmp during boot.
Large Nix builds can fail if the mounted zram device is not large enough
|
| boot.tmp.useTmpfs | Whether to mount a tmpfs on /tmp during boot.
Large Nix builds can fail if the mounted tmpfs is not large enough
|
| services.osrm.dataFile | Data file location
|
| services.radicle.ci.broker.checkConfig | Whether to enable checking the ci-broker.yaml file resulting from services.radicle.ci.broker.settings.
|
| services.weblate.smtp.passwordFile | Location of a file containing the SMTP password
|
| services.autorandr.profiles.<name>.config.<name>.gamma | Output gamma configuration.
|
| security.dhparams.params.<name>.path | The resulting path of the generated Diffie-Hellman parameters
file for other services to reference
|
| services.send.redis.passwordFile | The path to the file containing the Redis password
|
| services.unpoller.influxdb.pass | Path of a file containing the password for influxdb
|
| services.hylafax.sendmailPath | Path to sendmail program
|
| services.thanos.downsample.tracing.config | Tracing configuration
|
| boot.plymouth.font | Font file made available for displaying text on the splash screen.
|
| services.etcd.certFile | Cert file to use for clients
|
| services.ttyd.certFile | SSL certificate file path.
|
| services.ttyd.caFile | SSL CA file path for client certificate verification.
|
| systemd.mounts.*.what | Absolute path of device node, file or other resource. (Mandatory)
|
| services.ddclient.secretsFile | A file containing the secrets for the dynamic DNS provider
|
| programs.hyprland.enable | Whether to enable Hyprland, the dynamic tiling Wayland compositor that doesn't sacrifice on its looks
|
| services.prometheus.remoteWrite.*.sigv4.profile | The named AWS profile used to authenticate.
|
| services.openafsServer.roles.fileserver.volserverArgs | Arguments to the davolserver process
|
| services.immich.settings | Configuration for Immich
|
| security.pam.services.<name>.u2fAuth | If set, users listed in
$XDG_CONFIG_HOME/Yubico/u2f_keys (or
$HOME/.config/Yubico/u2f_keys if XDG variable is
not set) are able to log in with the associated U2F key
|
| services.sympa.domains.<name>.settings | The robot.conf configuration file as key value set
|