| services.incron.enable | Whether to enable the incron daemon
|
| services.i2pd.reseed.zipfile | Path to local .zip file to reseed from.
|
| services.darkhttpd.rootDir | Path from which to serve files.
|
| services.nagios.plugins | Packages to be added to the Nagios PATH
|
| services.rspamd.localLuaRules | Path of file to link to /etc/rspamd/rspamd.local.lua for local
rules written in Lua
|
| services.rutorrent.dataDir | Storage path of ruTorrent.
|
| services.public-inbox.imap.cert | Path to TLS certificate to use for connections to public-inbox-imapd(1).
|
| services.public-inbox.nntp.cert | Path to TLS certificate to use for connections to public-inbox-nntpd(1).
|
| services.rtorrent.rpcSocket | RPC socket path.
|
| services.rke2.agentTokenFile | File path containing the rke2 token agents can use to connect to the server
|
| programs.uwsm.waylandCompositors.<name>.binPath | The wayland-compositor binary path that will be called by UWSM
|
| services.neo4j.ssl.policies.<name>.trustedDir | Path to directory of X.509 certificates in PEM format for
trusted parties
|
| security.dhparams.params | Diffie-Hellman parameters to generate
|
| services.ceph.global.mgrModulePath | Path at which to find ceph-mgr modules.
|
| services.disnix.profiles | Names of the Disnix profiles to expose in the system's PATH
|
| services.bluemap.maps.<name>.world | Path to world folder containing the dimension to render
|
| services.cyrus-imap.imapdConfigFile | Path to the configuration file used for cyrus-imap.
|
| services.dolibarr.nginx.root | The path of the web root directory.
|
| services.gocd-agent.packages | Packages to add to PATH for the Go
|
| power.ups.users.<name>.passwordFile | The full path to a file that contains the user's (clear text)
password
|
| services.fediwall.nginx.root | The path of the web root directory.
|
| services.agorakit.nginx.root | The path of the web root directory.
|
| services.librenms.nginx.root | The path of the web root directory.
|
| services.ceph.global.rgwMimeTypesFile | Path to mime types used by radosgw.
|
| programs.command-not-found.dbPath | Absolute path to programs.sqlite
|
| services.kanboard.nginx.root | The path of the web root directory.
|
| services.athens.unixSocket | Path to the unix socket file
|
| services.pixelfed.nginx.root | The path of the web root directory.
|
| services.mainsail.nginx.root | The path of the web root directory.
|
| services.syncplay.motdFile | Path to text to display when users join
|
| services.monero.banlist | Path to a text file containing IPs to block
|
| services.sickbeard.dataDir | Path where to store data files.
|
| services.nsd.keys.<name>.keyFile | Path to the file which contains the actual base64 encoded
key
|
| services.xserver.modules | Packages to be added to the module search path of the X server.
|
| services.redmine.components.minimagick_font_path | MiniMagick font path
|
| systemd.watchdog.device | The path to a hardware watchdog device which will be managed by systemd
|
| services.angrr.configFile | Path to the angrr configuration file in TOML format
|
| services.dovecot2.sslServerKey | Path to the server's private key.
|
| services.beszel.agent.extraPath | Extra packages to add to beszel path (such as nvidia-smi or rocm-smi).
|
| services.gitea.metricsTokenFile | Path to a file containing the metrics authentication token.
|
| boot.initrd.systemd.storePaths.*.target | Path of the symlink.
|
| services.datadog-agent.apiKeyFile | Path to a file containing the Datadog API key to associate the
agent with your account.
|
| environment.localBinInPath | Add ~/.local/bin/ to $PATH
|
| services.syncthing.dataDir | The path where synchronised directories will exist.
|
| services.syncthing.key | Path to the key.pem file, which will be copied into Syncthing's
configDir.
|
| services.sftpgo.loadDataFile | Path to a json file containing users and folders to load (or update) on startup
|
| services.uhub.<name>.plugins.*.plugin | Path to plugin file.
|
| services.oxidized.routerDB | Path to the file/database which contains the targets for oxidized.
|
| services.portunus.seedPath | Path to a portunus seed file in json format
|
| services.stash.settings.cache | Path to cache
|
| services.wiki-js.settings.db.host | Hostname or socket-path to connect to.
|
| services.beesd.filesystems.<name>.spec | Description of how to identify the filesystem to be duplicated by this
instance of bees
|
| services.multipath.devices.*.dev_loss_tmo | Specify the number of seconds the SCSI layer will wait after a problem has
been detected on a FC remote port before removing it from the system
|
| services.alloy.configPath | Alloy configuration file/directory path
|
| services.kubernetes.pki.etcClusterAdminKubeconfig | Symlink a kubeconfig with cluster-admin privileges to environment path
(/etc/<path>).
|
| services.pds.pdsadmin.enable | Add pdsadmin script to PATH
|
| services.gotenberg.rootPath | Root path for the Gotenberg API.
|
| services.asusd.asusdConfig.source | Path of the source file.
|
| services.dspam.domainSocket | Path to local domain socket which is used for communication with the daemon
|
| services.asusd.animeConfig.source | Path of the source file.
|
| services.honk.passwordFile | Password for admin account
|
| security.wrappers.<name>.source | The absolute path to the program to be wrapped.
|
| services.forgejo.dump.backupDir | Path to the directory where the dump archives will be stored.
|
| services.iperf3.rsaPrivateKey | Path to the RSA private key (not password-protected) used to decrypt authentication credentials from the client.
|
| boot.initrd.systemd.storePaths.*.source | Path of the source file.
|
| services.envfs.enable | Fuse filesystem that returns symlinks to executables based on the PATH
of the requesting process
|
| services.sabnzbd.configFile | Path to config file (deprecated, use settings instead and set this value to null)
|
| services.radicle.publicKey | An SSH public key (as an absolute file path or directly as a string),
usually generated by rad auth.
|
| services.paisa.settings.dataDir | Path to paisa data directory.
|
| services.oauth2-proxy.proxyPrefix | The url root path that this proxy should be nested under.
|
| services.opendkim.keyPath | The path that opendkim should put its generated private keys into
|
| services.outline.sslKeyFile | File path that contains the Base64-encoded private key for HTTPS
termination
|
| services.nitter.server.staticDir | Path to the static files directory.
|
| services.oxidized.configFile | Path to the oxidized configuration file.
|
| services.xray.settingsFile | The absolute path to the configuration file
|
| security.tpm2.pkcs11.enable | Whether to enable TPM2 PKCS#11 tool and shared library in system path
(/run/current-system/sw/lib/libtpm2_pkcs11.so)
.
|
| services.dendrite.tlsKey | The path to the TLS key.
nix-shell -p dendrite --command "generate-keys --tls-cert server.crt --tls-key server.key"
|
| services.hadoop.hdfs.httpfs.tempPath | HTTPFS_TEMP path used by HTTPFS
|
| services.libinput.mouse.dev | Path for mouse device
|
| services.harmonia.signKeyPath | DEPRECATED: Use services.harmonia.signKeyPaths instead
|
| hardware.deviceTree.dtbSource | Path to dtb directory that overlays and other processing will be applied to
|
| services.dovecot2.sslServerCert | Path to the server's public key.
|
| services.outline.sslCertFile | File path that contains the Base64-encoded certificate for HTTPS
termination
|
| services.rspamd.locals.<name>.source | Path of the source file.
|
| services.syncthing.cert | Path to the cert.pem file, which will be copied into Syncthing's
configDir.
|
| services.oauth2-proxy.keyFile | oauth2-proxy allows passing sensitive configuration via environment variables
|
| services.ncps.cache.secretKeyPath | The path to load the secretKey for signing narinfos
|
| services.routedns.configFile | Path to RouteDNS TOML configuration file.
|
| services.radicle.httpd.nginx.root | The path of the web root directory.
|
| services.lk-jwt-service.keyFile | Path to a file containing the credential mapping (<keyname>: <secret>) to access LiveKit
|
| services.stash.sessionStoreKeyFile | Path to file containing a secret for session store.
|
| services.matrix-continuwuity.settings.global.unix_socket_path | Listen on a UNIX socket at the specified path
|
| programs.ssh.setXAuthLocation | Whether to set the path to xauth for X11-forwarded connections
|
| services.jenkins.packages | Packages to add to PATH for the jenkins process.
|
| services.cfdyndns.apiTokenFile | The path to a file containing the API Token
used to authenticate with CloudFlare.
|
| services.gocd-server.packages | Packages to add to PATH for the Go
|
| services.unpoller.loki.pass | Path of a file containing the password for Loki
|
| services.netbox.ldapConfigPath | Path to the Configuration-File for LDAP-Authentication, will be loaded as ldap_config.py
|
| services.snapserver.streams.<name>.location | For type pipe or file, the path to the pipe or file
|
| services.multipath.devices.*.detect_checker | If set to "yes", multipath will try to detect if the device supports
SCSI-3 ALUA
|