| programs.river.package | The river package to use
|
| services.asusd.profileConfig.source | Path of the source file.
|
| security.apparmor.packages | List of packages to be added to AppArmor's include path
|
| services.hledger-web.stateDir | Path the service has access to
|
| services.movim.h2o.tls.identity.*.key-file | Path to key file
|
| services.oauth2-proxy.clientSecretFile | The path to a file containing the OAuth Client Secret.
|
| services.lubelogger.dataDir | Path to LubeLogger config and metadata inside of /var/lib/.
|
| services.szurubooru.dataDir | The path to the data directory in which Szurubooru will store its data.
|
| services.traefik.dynamic.file | Path to Traefik's dynamic configuration file.
You cannot use this option alongside the declarative configuration options.
|
| services.jirafeau.nginxConfig.root | The path of the web root directory.
|
| containers.<name>.bindMounts.<name>.hostPath | Location of the host path to be mounted.
|
| services.webdav-server-rs.configFile | Path to config file
|
| services.xinetd.services.*.server | Path of the program that implements the service.
|
| system.preSwitchChecks | A set of shell script fragments that are executed before the switch to a
new NixOS system configuration
|
| programs.k3b.enable | Whether to enable k3b, the KDE disk burning application
|
| services.multipath.devices.*.hardware_handler | The hardware handler to use for this device type
|
| services.i2pd.reseed.floodfill | Path to router info of floodfill to reseed from.
|
| services.ergochat.configFile | Path to configuration file
|
| services.chhoto-url.settings.db_url | The path of the sqlite database.
|
| services.code-server.extraPackages | Additional packages to add to the code-server PATH.
|
| services.gitea.repositoryRoot | Path to the git repositories.
|
| services.athens.storage.mongo.certPath | Path to the certificate file for the mongo database.
|
| services.outline.utilsSecretFile | File path that contains the utility secret key
|
| services.mackerel-agent.apiKeyFile | Path to file containing the Mackerel API key
|
| services.podgrab.passwordFile | The path to a file containing the PASSWORD environment variable
definition for Podgrab's authentication.
|
| services.mailman.serve.virtualRoot | Path to mount the mailman-web django application on.
|
| services.waagent.extraPackages | Additional packages to add to the waagent PATH.
|
| xdg.portal.extraPortals | List of additional portals to add to path
|
| services.kea.ctrl-agent.configFile | Kea Control Agent configuration as a path, see https://kea.readthedocs.io/en/kea-3.0.2/arm/agent.html
|
| services.oauth2-proxy.upstream | The http url(s) of the upstream endpoint or file://
paths for static files
|
| services.traefik.staticConfigFile | Path to traefik's static configuration to use.
(Using that option has precedence over staticConfigOptions and dynamicConfigOptions)
|
| services.ente.api.settings | Museum yaml configuration
|
| boot.initrd.systemd.contents.<name>.target | Path of the symlink.
|
| hardware.deviceTree.overlays.*.dtboFile | Path to .dtbo compiled overlay file.
|
| services.airsonic.contextPath | The context path, i.e., the last part of the Airsonic
URL
|
| services.subsonic.contextPath | The context path, i.e., the last part of the Subsonic
URL
|
| services.outline.secretKeyFile | File path that contains the application secret key
|
| services.moodle.database.socket | Path to the unix socket file to use for authentication.
|
| services.ncdns.dnssec.keys.zonePrivate | Path to the file containing the ZSK private key.
|
| services.rkvm.server.settings.key | TLS key path.
This should be generated with rkvm-certificate-gen.
|
| services.mirakurun.unixSocket | Path to unix socket to listen on
|
| services.k3s.manifests.<name>.source | Path of the source .yaml file.
|
| systemd.shutdownRamfs.storePaths.*.target | Path of the symlink.
|
| services.zabbixWeb.nginx.virtualHost.root | The path of the web root directory.
|
| services.matrix-synapse.settings.media_store_path | Directory where uploaded images and attachments are stored.
|
| services.jupyter.kernels.<name>.logo64 | Path to 64x64 logo png.
|
| services.cross-seed.settingsFile | Path to a JSON file containing settings that will be merged with the
settings option
|
| boot.loader.external.installHook | The full path to a program of your choosing which performs the bootloader installation process
|
| services.jupyter.kernels.<name>.logo32 | Path to 32x32 logo png.
|
| boot.initrd.systemd.contents.<name>.source | Path of the source file.
|
| services.hound.settings | The full configuration of the Hound daemon
|
| services.pihole-ftl.stateDirectory | Path for pihole state files.
|
| services.nix-serve.secretKeyFile | The path to the file used for signing derivation data
|
| services.moodle.virtualHost.sslServerKey | Path to server SSL certificate key.
|
| services.nagios.virtualHost.sslServerKey | Path to server SSL certificate key.
|
| services.pairdrop.rtcConfig | Configuration for STUN/TURN servers
|
| services.outline.smtp.passwordFile | File path containing the password to authenticate with.
|
| services.minetest-server.logPath | Path to logfile for logging
|
| services.sympa.settingsFile.<name>.source | Path of the source file.
|
| services.oauth2-proxy.cookie.secretFile | The path to a file containing the seed string for secure cookies.
|
| services.tailscaleAuth.socketPath | Path of the socket listening to authorization requests.
|
| services.rke2.manifests.<name>.source | Path of the source .yaml file.
|
| systemd.shutdownRamfs.storePaths.*.source | Path of the source file.
|
| services.matrix-synapse.configFile | Path to the configuration file on the target system
|
| virtualisation.fileSystems.<name>.depends | List of paths that should be mounted before this one
|
| services.snapserver.http.docRoot | Path to serve from the HTTP servers root.
|
| programs.xwayland.defaultFontPath | Default font path
|
| services.actual.settings | Server settings, refer to the documentation for available options
|
| services.hickory-dns.configFile | Path to an existing toml file to configure hickory-dns with
|
| services.bepasty.servers.<name>.workDir | Path to the working directory (used for config and pidfile)
|
| services.h2o.hosts.<name>.tls.identity.*.key-file | Path to key file
|
| fileSystems.<name>.device | The device as passed to mount
|
| services.hadoop.hdfs.datanode.dataDirs | Tier and path definitions for datanode storage.
|
| services.komodo-periphery.ssl.keyFile | Path to SSL key file.
|
| services.paperless.manage | The package derivation for the paperless-manage wrapper script
|
| services.patroni.namespace | Path within the configuration store where Patroni will keep information about the cluster.
|
| services.syncthing.configDir | The path where the settings and keys will exist.
|
| services.transfer-sh.secretFile | Path to file containing environment variables
|
| services.nagios.virtualHost.sslServerCert | Path to server SSL certificate.
|
| services.pretix.settings.tools.pdftk | Path to the pdftk executable.
|
| services.peering-manager.secretKeyFile | Path to a file containing the secret key.
|
| services.moodle.virtualHost.sslServerCert | Path to server SSL certificate.
|
| services.prosody.virtualHosts.<name>.ssl.key | Path to the key file.
|
| services.thanos.rule.web.route-prefix | Prefix for API and UI endpoints
|
| services.zabbixWeb.database.socket | Path to the unix socket file to use for authentication.
|
| services.postsrsd.secretsFile | Secret keys used for signing and verification.
The secret will be generated, if it does not exist at the given path.
|
| services.lasuite-docs.settings.DATA_DIR | Path to the data directory
|
| hardware.sensor.hddtemp.drives | List of drives to monitor
|
| services.freeradius.configDir | The path of the freeradius server configuration directory.
|
| services.athens.storage.s3.forcePathStyle | Force path style for the S3 storage backend.
|
| services.headphones.configFile | Path to config file.
|
| services.tahoe.nodes.<name>.sftpd.hostPublicKeyFile | Path to the SSH host public key.
|
| services.nipap.nipap-www.xmlrpcURIFile | Path to file containing XMLRPC URI for use by web UI - this is a secret, since it contains auth credentials
|
| services.syncplay.saltFile | Path to the file that contains the server salt
|
| containers.<name>.bindMounts.<name>.isReadOnly | Determine whether the mounted path will be accessed in read-only mode.
|
| services.zitadel.settings.TLS.KeyPath | Path to the TLS certificate private key.
|
| services.zitadel.settings.TLS.CertPath | Path to the TLS certificate.
|
| documentation.man.mandoc.settings.output.includes | A string of relative path used as a template for the output path of
linked header files (usually via the In macro) in HTML output
|
| services.traefik.dynamicConfigFile | Path to traefik's dynamic configuration to use.
(Using that option has precedence over dynamicConfigOptions)
|
| services.komodo-periphery.ssl.certFile | Path to SSL certificate file.
|