| power.ups.ups.<name>.driver | Specify the program to run to talk to this UPS. apcsmart,
bestups, and sec are some examples.
|
| security.wrappers.<name>.program | The name of the wrapper program
|
| services.autossh.sessions.*.name | Name of the local AutoSSH session
|
| services.firezone.gateway.name | The name of this gateway as shown in firezone
|
| services.zabbixProxy.database.name | Database name.
|
| services.firezone.server.provision.accounts.<name>.gatewayGroups.<name>.name | The name of this gateway group
|
| services.logstash.dataDir | A path to directory writable by logstash that it uses to store data
|
| environment.etc.<name>.target | Name of symlink (relative to
/etc)
|
| programs.neovim.runtime.<name>.target | Name of symlink
|
| services.firezone.server.provision.accounts.<name>.resources.<name>.name | The name of this resource
|
| services.multipath.devices.*.san_path_err_threshold | If set to a value greater than 0, multipathd will watch paths and check
how many times a path has been failed due to errors
|
| services.stash.settings.blobs_path | Path to blobs
|
| services.iodine.clients | Each attribute of this option defines a systemd service that
runs iodine
|
| services.selfoss.database.name | Name of the existing database (has no effect if type is "sqlite").
|
| services.grafana.provision.dashboards.settings.providers.*.options.path | Path grafana will watch for dashboards
|
| services.prometheus.pushgateway.web.telemetry-path | Path under which to expose metrics.
null will default to /metrics.
|
| services.legit.settings.server.name | Server name.
|
| fileSystems.<name>.enable | Whether to enable the filesystem mount.
|
| services.zammad.secretKeyBaseFile | The path to a file containing the
secret_key_base secret
|
| services.castopod.dataDir | The path where castopod stores all data
|
| services.gitwatch.<name>.user | The name of services's user
|
| security.agnos.settings.accounts.*.private_key_path | Path of the PEM-encoded private key for this account
|
| security.acme.certs.<name>.domain | Domain to fetch certificate for (defaults to the entry name).
|
| services.cgit.<name>.user | User to run the cgit service as.
|
| services.nsd.zones.<name>.zoneStats | When set to something distinct to null NSD is able to collect
statistics per zone
|
| services.corosync.nodelist.*.name | Node name
|
| users.extraGroups.<name>.gid | The group GID
|
| services.dolibarr.database.name | Database name.
|
| services.castopod.database.name | Database name.
|
| services.agorakit.database.name | Database name.
|
| services.mastodon.database.name | Database name.
|
| services.peertube.database.name | Database name.
|
| services.pixelfed.database.name | Database name.
|
| services.windmill.database.name | Database name.
|
| services.zabbixServer.database.name | Database name.
|
| services.journalbeat.name | Name of the beat
|
| power.ups.ups.<name>.summary | Lines which would be added inside ups.conf for handling this UPS.
|
| services.multipath.devices.*.rr_min_io_rq | Number of I/O requests to route to a path before switching to the next in the
same path group
|
| security.doas.extraRules.*.cmd | The command the user is allowed to run
|
| services.thanos.rule.query.sd-files | Path to file that contain addresses of query peers
|
| services.i2pd.inTunnels.<name>.port | Bind port for ‹name› endpoint.
|
| services.dawarich.database.name | The name of the dawarich database.
|
| services.cloudlog.database.name | MySQL database name.
|
| services.freshrss.database.name | Database name for FreshRSS.
|
| services.wyoming.satellite.name | Name of the satellite.
|
| services.invoiceplane.sites.<name>.database.name | Database name.
|
| services.frr.pathd.options | Options for the FRR pathd daemon.
|
| nix.registry.<name>.flake | The flake input from is rewritten to.
|
| services.mongodb.dbpath | Location where MongoDB stores its files
|
| services.firezone.server.provision.accounts.<name>.name | The account name
|
| nix.registry.<name>.to | The flake reference from is rewritten to
|
| users.users.<name>.enable | If set to false, the user account will not be created
|
| users.users.<name>.extraGroups | The user's auxiliary groups.
|
| services.factorio.game-name | Name of the game as it will appear in the game listing.
|
| services.i2pd.outTunnels.<name>.port | Bind port for ‹name› endpoint.
|
| services.multipath.devices.*.failback | Tell multipathd how to manage path group failback
|
| fileSystems.<name>.fsType | Type of the file system
|
| services.opengfw.rules.*.modifier.name | Name of the modifier.
|
| services.youtrack.statePath | Path were the YouTrack state is stored
|
| image.filePath | Path of the image, relative to $out in system.build.image
|
| services.prometheus.exporters.pve.configFile | Path to the service's config file
|
| systemd.user.units.<name>.text | Text of this systemd unit.
|
| ec2.zfs.datasets.<name>.mount | Where to mount this dataset.
|
| services.hadoop.yarn.nodemanager.useCGroups | Use cgroups to enforce resource limits on containers
|
| services.terraria.worldPath | The path to the world file (.wld) which should be loaded
|
| virtualisation.interfaces.<name>.name | Interface name
|
| services.github-runners.<name>.replace | Replace any existing runner with the same name
|
| nix.buildMachines.*.sshKey | The path to the SSH private key with which to authenticate on
the build machine
|
| services.thanos.query.store.sd-files | Path to files that contain addresses of store API servers
|
| services.anuko-time-tracker.database.name | Database name.
|
| services.cgit.<name>.group | Group to run the cgit service as.
|
| services.nginx.virtualHosts.<name>.serverName | Name of this virtual host
|
| services.geth.<name>.port | Port number Go Ethereum will be listening on, both TCP and UDP.
|
| programs.tsmClient.servers.<name>.nodename | Target node name on the IBM TSM server.
|
| virtualisation.allInterfaces.<name>.name | Interface name
|
| nix.registry.<name>.from | The flake reference to be rewritten
|
| power.ups.users.<name>.upsmon | Add the necessary actions for a upsmon process to work
|
| boot.initrd.luks.devices.<name>.header | The name of the file or block device that
should be used as header for the encrypted device.
|
| users.users.<name>.createHome | Whether to create the home directory and ensure ownership as well as
permissions to match the user.
|
| services.bookstack.database.name | Database name.
|
| services.mediawiki.database.name | Database name.
|
| boot.loader.grub.font | Path to a TrueType, OpenType, or pf2 font to be used by Grub.
|
| boot.loader.grub.theme | Path to the grub theme to be used.
|
| services.k3s.manifests.<name>.target | Name of the symlink (relative to /var/lib/rancher/k3s/server/manifests)
|
| virtualisation.lxd.zfsSupport | Enables lxd to use zfs as a storage for containers
|
| services.nsd.zones.<name>.requestXFR | Format: [AXFR|UDP] <ip-address> <key-name | NOKEY>
|
| security.acme.certs.<name>.s3Bucket | S3 bucket name to use for HTTP-01 based challenges
|
| services.discourse.database.name | Discourse database name.
|
| boot.initrd.luks.devices.<name>.keyFile | The name of the file (can be a raw device or a partition) that
should be used as the decryption key for the encrypted device
|
| services.nylon.<name>.port | What port to listen for client requests, default is 1080.
|
| services.openafsClient.cellServDB.<name>.*.dnsname | DNS full-qualified domain name of a database server
|
| services.openafsServer.cellServDB.<name>.*.dnsname | DNS full-qualified domain name of a database server
|
| hardware.alsa.controls.<name>.card | Name of the PCM card to control (slave).
|
| services.tahoe.nodes.<name>.nickname | The nickname of this Tahoe node.
|
| virtualisation.vlans | Virtual networks to which the container or VM is connected
|
| services.prometheus.remoteRead.*.name | Name of the remote read config, which if specified must be unique among remote read configs
|
| services.hebbot.botPasswordFile | A path to the password file for your bot
|
| services.immich.database.host | Hostname or address of the postgresql server
|
| services.rke2.manifests.<name>.target | Name of the symlink (relative to /var/lib/rancher/rke2/server/manifests)
|
| services.h2o.hosts.<name>.tls | TLS options for virtual host
|