| services.bind.zones.<name>.master | Master=false means slave server
|
| services.rauc.slots.<name>.*.enable | Whether to enable this RAUC slot.
|
| services.nsd.zones.<name>.minRetrySecs | Limit retry time for secondary zones.
|
| systemd.user.paths.<name>.description | Description of this unit used in systemd messages and progress indicators.
|
| systemd.targets.<name>.startLimitIntervalSec | Configure unit start rate limiting
|
| systemd.sockets.<name>.startLimitIntervalSec | Configure unit start rate limiting
|
| services.netbird.tunnels.<name>.user.group | A system group name for this client instance.
|
| services.netbird.clients.<name>.user.group | A system group name for this client instance.
|
| services.strongswan-swanctl.swanctl.connections.<name>.remote.<name>.cert.<name>.module | Optional PKCS#11 module name.
|
| services.autorandr.profiles.<name>.config.<name>.rotate | Output rotate configuration.
|
| services.autorandr.profiles.<name>.config.<name>.enable | Whether to enable the output.
|
| containers.<name>.flake | The Flake URI of the NixOS configuration to use for the container
|
| services.ax25.axports.<name>.baud | The serial port speed of this interface.
|
| services.writefreely.database.name | The name of the database to store data in.
|
| services.redis.servers.<name>.logfile | Specify the log file name
|
| systemd.user.slices.<name>.startLimitIntervalSec | Configure unit start rate limiting
|
| systemd.user.timers.<name>.startLimitIntervalSec | Configure unit start rate limiting
|
| services.netbird.tunnels.<name>.dir.baseName | A systemd service name to use (without .service suffix).
|
| services.netbird.clients.<name>.dir.baseName | A systemd service name to use (without .service suffix).
|
| services.hostapd.radios.<name>.networks.<name>.macAllow | Specifies the MAC addresses to allow if macAcl is set to "allow" or "radius"
|
| systemd.network.networks.<name>.dhcpV4Config | Each attribute in this set specifies an option in the
[DHCPv4] section of the unit
|
| systemd.network.networks.<name>.dhcpV6Config | Each attribute in this set specifies an option in the
[DHCPv6] section of the unit
|
| services.phpfpm.pools.<name>.phpEnv | Environment variables used for this PHP-FPM pool.
|
| services.geth.<name>.syncmode | Blockchain sync mode.
|
| services.bitcoind.<name>.user | The user as which to run bitcoind.
|
| services.i2pd.inTunnels.<name>.type | Tunnel type.
|
| services.geth.<name>.maxpeers | Maximum peers to connect to.
|
| services.netbird.clients | Attribute set of NetBird client daemons, by default each one will:
- be manageable using dedicated tooling:
netbird-<name> script,
NetBird - netbird-<name> graphical interface when appropriate (see ui.enable),
- run as a
netbird-<name>.service,
- listen for incoming remote connections on the port
51820 (openFirewall by default),
- manage the
netbird-<name> wireguard interface,
- use the /var/lib/netbird-/config.json configuration file,
- override /var/lib/netbird-/config.json with values from /etc/netbird-/config.d/*.json,
- (
hardened) be locally manageable by netbird-<name> system group,
With following caveats:
- multiple daemons will interfere with each other's DNS resolution of
netbird.cloud, but
should remain fully operational otherwise
|
| services.mpd.settings | Configuration for MPD
|
| services.nsd.keys.<name>.keyFile | Path to the file which contains the actual base64 encoded
key
|
| services.nginx.virtualHosts.<name>.locations.<name>.proxyPass | Adds proxy_pass directive and sets recommended proxy headers if
recommendedProxySettings is enabled.
|
| services.nginx.virtualHosts.<name>.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| services.borgbackup.jobs.<name>.startAt | When or how often the backup should run
|
| systemd.network.networks.<name>.qdiscConfig | Each attribute in this set specifies an option in the
[QDisc] section of the unit
|
| systemd.network.networks.<name>.pfifoConfig | Each attribute in this set specifies an option in the
[PFIFO] section of the unit
|
| systemd.network.networks.<name>.bfifoConfig | Each attribute in this set specifies an option in the
[BFIFO] section of the unit
|
| systemd.shutdownRamfs.contents.<name>.target | Path of the symlink.
|
| services.gitwatch.<name>.path | The path to repo in local machine
|
| services.netbird.tunnels.<name>.bin.suffix | A system group name for this client instance.
|
| services.netbird.clients.<name>.bin.suffix | A system group name for this client instance.
|
| services.homebridge.settings.bridge.name | Name of the homebridge
|
| services.h2o.hosts.<name>.acme.root | Directory for the ACME challenge, which is public
|
| users.extraGroups.<name>.gid | The group GID
|
| systemd.shutdownRamfs.contents.<name>.source | Path of the source file.
|
| services.i2pd.outTunnels.<name>.type | Tunnel type.
|
| services.rspamd.locals.<name>.text | Text of the file.
|
| services.bacula-sd.autochanger.<name>.changerDevice | The specified name-string must be the generic SCSI device name of the
autochanger that corresponds to the normal read/write Archive Device
specified in the Device resource
|
| services.tinc.networks.<name>.hostSettings.<name>.settings | Configuration for this host
|
| power.ups.ups.<name>.summary | Lines which would be added inside ups.conf for handling this UPS.
|
| services.thanos.query.grpc-client-server-name | Server name to verify the hostname on the returned gRPC certificates
|
| services.openafsServer.roles.backup.cellServDB.<name>.*.dnsname | DNS full-qualified domain name of a database server
|
| virtualisation.interfaces.<name>.name | Interface name
|
| services.etebase-server.settings.database.name | The database name.
|
| services.nginx.virtualHosts.<name>.locations.<name>.basicAuth | Basic Auth protection for a vhost
|
| services.prosody.virtualHosts.<name>.domain | Domain name
|
| services.i2pd.inTunnels.<name>.keys | Keyset used for tunnel identity.
|
| services.bitcoind.<name>.port | Override the default port on which to listen for connections.
|
| services.phpfpm.pools.<name>.group | Group account under which this pool runs.
|
| services.strongswan-swanctl.swanctl.connections.<name>.remote.<name>.cacert.<name>.module | Optional PKCS#11 module name.
|
| systemd.user.targets.<name>.restartTriggers | An arbitrary list of items such as derivations
|
| systemd.user.sockets.<name>.restartTriggers | An arbitrary list of items such as derivations
|
| systemd.targets.<name>.description | Description of this unit used in systemd messages and progress indicators.
|
| systemd.sockets.<name>.description | Description of this unit used in systemd messages and progress indicators.
|
| services.drupal.sites.<name>.virtualHost.locations.<name>.index | Adds DirectoryIndex directive
|
| services.drupal.sites.<name>.virtualHost.locations.<name>.alias | Alias directory for requests
|
| nix.registry.<name>.flake | The flake input from is rewritten to.
|
| services.gvpe.nodename | GVPE node name
|
| containers.<name>.extraVeths.<name>.hostBridge | Put the host-side of the veth-pair into the named bridge
|
| systemd.user.sockets.<name>.listenDatagrams | For each item in this list, a ListenDatagram
option in the [Socket] section will be created.
|
| users.users.<name>.extraGroups | The user's auxiliary groups.
|
| services.autosuspend.checks.<name>.class | Name of the class implementing the check
|
| systemd.shutdownRamfs.contents.<name>.enable | Whether to enable copying of this file and symlinking it.
|
| services.openvpn.servers | Each attribute of this option defines a systemd service that
runs an OpenVPN instance
|
| systemd.user.sockets.<name>.reloadTriggers | An arbitrary list of items such as derivations
|
| systemd.user.targets.<name>.reloadTriggers | An arbitrary list of items such as derivations
|
| systemd.network.netdevs.<name>.l2tpSessions | Each item in this array specifies an option in the
[L2TPSession] section of the unit
|
| systemd.network.networks.<name>.ipv6SendRAConfig | Each attribute in this set specifies an option in the
[IPv6SendRA] section of the unit
|
| services.geth.<name>.metrics.port | Port number of Go Ethereum metrics service.
|
| services.geth.<name>.http.address | Listen address of Go Ethereum HTTP API.
|
| systemd.user.timers.<name>.description | Description of this unit used in systemd messages and progress indicators.
|
| systemd.user.slices.<name>.description | Description of this unit used in systemd messages and progress indicators.
|
| services.znapzend.zetup.<name>.destinations.<name>.dataset | Dataset name to send snapshots to.
|
| services.postfix.settings.master.<name>.command | A program name specifying a Postfix service/daemon process
|
| services.bitcoind.<name>.dataDir | The data directory for bitcoind.
|
| services.rsync.jobs.<name>.sources | Source directories.
|
| services.nebula.networks.<name>.tun.device | Name of the tun device
|
| services.k3s.autoDeployCharts.<name>.package | The packaged Helm chart
|
| services.pppd.peers.<name>.config | pppd configuration for this peer, see the pppd(8) man page.
|
| services.httpd.virtualHosts.<name>.locations.<name>.extraConfig | These lines go to the end of the location verbatim.
|
| services.nginx.virtualHosts.<name>.locations.<name>.extraConfig | These lines go to the end of the location verbatim.
|
| services.cgit.<name>.settings | cgit configuration, see cgitrc(5)
|
| services.uhub.<name>.settings | Configuration of uhub
|
| virtualisation.allInterfaces.<name>.name | Interface name
|
| services.h2o.hosts.<name>.tls.quic | Enables HTTP/3 over QUIC on the UDP port for TLS
|
| services.autorandr.profiles.<name>.config.<name>.primary | Whether output should be marked as primary
|
| services.i2pd.outTunnels.<name>.keys | Keyset used for tunnel identity.
|
| systemd.network.netdevs.<name>.macvlanConfig | Each attribute in this set specifies an option in the
[MACVLAN] section of the unit
|
| containers.<name>.extraVeths.<name>.hostAddress | The IPv4 address assigned to the host interface.
(Not used when hostBridge is set.)
|
| services.szurubooru.server.settings.name | Name shown in the website title and on the front page.
|
| services.geth.<name>.authrpc.port | Port number of Go Ethereum Auth RPC API.
|