| services.printing.cups-pdf.instances.<name>.settings.GhostScript | location of GhostScript binary
|
| services.openssh.authorizedKeysFiles | Specify the rules for which files to read on the host
|
| programs.ssh.extraConfig | Extra configuration text prepended to ssh_config
|
| services.hitch.frontend | The port and interface of the listen endpoint in the
form [HOST]:PORT[+CERT].
|
| nix.settings.extra-sandbox-paths | Directories from the host filesystem to be included
in the sandbox.
|
| services.mobilizon.settings.":mobilizon".":instance".hostname | Your instance's hostname
|
| services.keycloak.settings.hostname-backchannel-dynamic | Enables dynamic resolving of backchannel URLs,
including hostname, scheme, port and context path
|
| nix.buildMachines.*.sshUser | The username to log in as on the remote host
|
| services.gitea.database.port | Database host port.
|
| services.davis.nginx.serverName | Name of this virtual host
|
| services.movim.nginx.serverName | Name of this virtual host
|
| services.slskd.nginx.serverName | Name of this virtual host
|
| services.mailman.ldap.serverUri | LDAP host to connect against.
|
| services.flannel.publicIp | IP accessible by other nodes for inter-host communication
|
| services.snipe-it.nginx.serverName | Name of this virtual host
|
| services.snipe-it.appURL | The root URL that you want to host Snipe-IT on
|
| services.snipe-it.database.port | Database host port.
|
| programs.ssh.knownHostsFiles | Files containing SSH host keys to set as global known hosts.
/etc/ssh/ssh_known_hosts (which is
generated by programs.ssh.knownHosts) is
always included.
|
| services.fedimintd.<name>.nginx.config.acmeFallbackHost | Host which to proxy requests to if ACME challenge is not found
|
| services.strongswan-swanctl.swanctl.connections.<name>.children.<name>.hostaccess | Hostaccess variable to pass to updown script
|
| virtualisation.forwardPorts | When using the SLiRP user networking (default), this option allows to
forward ports to/from the host/guest.
If the NixOS firewall on the virtual machine is enabled, you also
have to open the guest ports to enable the traffic between host and
guest.
Currently QEMU supports only IPv4 forwarding.
|
| services.hostapd.radios.<name>.networks.<name>.dynamicConfigScripts | All of these scripts will be executed in lexicographical order before hostapd
is started, right after the bss segment was generated and may dynamically
append bss options to the generated configuration file
|
| services.echoip.virtualHost | Name of the nginx virtual host to use and setup
|
| services.dolibarr.h2o.tls.port | Override the default TLS port for this virtual host.
|
| services.sunshine.enable | Whether to enable Sunshine, a self-hosted game stream host for Moonlight.
|
| services.jibri.enable | Whether to enable Jitsi BRoadcasting Infrastructure
|
| networking.useHostResolvConf | In containers, whether to use the
resolv.conf supplied by the host.
|
| services.tomcat.logPerVirtualHost | Whether to enable logging per virtual host.
|
| services.pretalx.nginx.domain | The domain name under which to set up the virtual host.
|
| services.pretalx.nginx.enable | Whether to set up an nginx virtual host.
|
| services.httpd.virtualHosts | Specification of the virtual hosts served by Apache
|
| services.nagios.objectDefs | A list of Nagios object configuration files that must define
the hosts, host groups, services and contacts for the
network that you want Nagios to monitor.
|
| services.bookstack.mail.port | Mail host port.
|
| services.gancio.nginx.serverName | Name of this virtual host
|
| services.fluidd.nginx.serverName | Name of this virtual host
|
| services.bosun.listenAddress | The host address and port that bosun's web interface will listen on.
|
| services.akkoma.nginx.serverName | Name of this virtual host
|
| services.dolibarr.h2o.http.port | Override the default HTTP port for this virtual host.
|
| services.fail2ban.bantime | Number of seconds that a host is banned.
|
| services.monica.database.port | Database host port.
|
| services.monica.nginx.serverName | Name of this virtual host
|
| services.moodle.database.port | Database host port.
|
| services.movim.h2o.tls.identity | Key / certificate pairs for the virtual host.
|
| services.matomo.nginx.serverName | Name of this virtual host
|
| services.oauth2-proxy.passHostHeader | Pass the request Host Header to upstream.
|
| services.warpgate.settings.external_host | Configure the domain name of this Warpgate instance
|
| services.doh-server.useACMEHost | A host of an existing Let's Encrypt certificate to use.
Note that this option does not create any certificates, nor it does add subdomains to existing ones – you will need to create them manually using security.acme.certs.
|
| networking.ucarp.neutral | Do not run downscript at start if the host is the backup.
|
| services.convos.listenAddress | Address or host the web interface should listen on
|
| virtualisation.restrictNetwork | If this option is enabled, the guest will be isolated, i.e. it will
not be able to contact the host and no guest IP packets will be
routed over the host to the outside
|
| services.samba-wsdd.enable | Whether to enable Web Services Dynamic Discovery host daemon
|
| services.nullmailer.config.adminaddr | If set, all recipients to users at either "localhost" (the literal string)
or the canonical host name (from the me control attribute) are remapped to this address
|
| virtualisation.libvirtd.qemu.vhostUserPackages | Packages containing out-of-tree vhost-user drivers.
|
| services.prometheus.exporters.fritz.settings.devices.*.hostname | Hostname under which the target device is reachable.
|
| services.hardware.lcd.serverHost | Host on which LCDd is listening.
|
| services.ntopng.redis.address | Redis address - may be a Unix socket or a network host and port.
|
| services.zabbixWeb.database.port | Database host port.
|
| services.pgbackrest.stanzas.<name>.instances | An attribute set of database instances as described in:
https://pgbackrest.org/configuration.html#section-stanza
Each instance defaults to set pg-host to the attribute's name
|
| services.anki-sync-server.address | IP address anki-sync-server listens to
|
| services.fakeroute.route | Fake route that will appear after the real
one to any host running a traceroute.
|
| services.nebula.networks.<name>.key | Path or reference to the host key.
|
| services.prefect.databaseHost | database host for postgres only
|
| services.monica.appURL | The root URL that you want to host monica on
|
| services.lxd-image-server.nginx.domain | Domain to use for nginx virtual host.
|
| services.movim.h2o.serverAliases | Additional names of virtual hosts served by this virtual host
configuration.
|
| services.ghostunnel.servers.<name>.disableAuthentication | Disable client authentication, no client certificate will be required.
|
| services.limesurvey.nginx.virtualHost.acmeFallbackHost | Host which to proxy requests to if ACME challenge is not found
|
| services.bosun.opentsdbHost | Host and port of the OpenTSDB database that stores bosun data
|
| services.dockerRegistry.redisUrl | Set redis host and port.
|
| services.flannel.subnetLen | The size of the subnet allocated to each host
|
| services.ente.web.domains.api | The domain under which the api is served
|
| services.nebula.networks.<name>.cert | Path to the host certificate.
|
| services.jirafeau.nginxConfig | Extra configuration for the nginx virtual host of Jirafeau.
|
| services.go-httpbin.settings.HOST | The host to listen on.
|
| services.forgejo.database.port | Database host port.
|
| services.diod.statfsPassthru | This option configures statfs to return the host file system's type
rather than V9FS_MAGIC.
|
| services.redmine.database.port | Database host port.
|
| services.part-db.enableNginx | Whether to enable nginx or not
|
| networking.ucarp.preempt | Enable preemptive failover
|
| services.movim.h2o.settings | Attrset to be transformed into YAML for host config
|
| services.moonraker.address | The IP or host to listen on.
|
| users.mysql.pam.logging.rHostColumn | The name of the column in the log table to which the name of the remote
host that initiates the session is stored
|
| services.pcscd.extendReaderNames | String to append to every reader name
|
| services.misskey.reverseProxy.webserver.caddy.listenAddresses | A list of host interfaces to bind to for this virtual host.
|
| services.fail2ban.maxretry | Number of failures before a host gets banned.
|
| services.riemann-tools.riemannHost | Address of the host riemann node
|
| services.zabbixProxy.database.port | Database host port.
|
| services.dolibarr.h2o.serverName | Server name to be used for this virtual host
|
| nix.buildMachines.*.publicHostKey | The (base64-encoded) public host key of this builder
|
| services.hostapd.radios.<name>.networks.<name>.ignoreBroadcastSsid | Send empty SSID in beacons and ignore probe request frames that do not
specify full SSID, i.e., require stations to know SSID
|
| services.davis.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.slskd.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.movim.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.documize.db | Database specific connection string for example:
- MySQL/Percona/MariaDB:
user:password@tcp(host:3306)/documize
- MySQLv8+:
user:password@tcp(host:3306)/documize?allowNativePasswords=true
- PostgreSQL:
host=localhost port=5432 dbname=documize user=admin password=secret sslmode=disable
- MSSQL:
sqlserver://username:password@localhost:1433?database=Documize or
sqlserver://sa@localhost/SQLExpress?database=Documize
|
| services.plantuml-server.listenHost | Host to listen on.
|
| networking.fqdn | The fully qualified domain name (FQDN) of this host
|
| services.snipe-it.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.kimai.sites.<name>.database.port | Database host port.
|
| services.graphite.seyren.seyrenUrl | Host where seyren is accessible.
|
| services.davis.nginx.listen | Listen addresses and ports for this virtual host
|