| services.gammu-smsd.device.path | Device node or address of the phone
|
| services.anuko-time-tracker.settings.email.mode | Mail sending mode
|
| services.jack.loopback.config | ALSA config for loopback device.
|
| services.bcg.baseTopicPrefix | Topic prefix added to all MQTT messages.
|
| services.baikal.enable | Whether to enable baikal.
|
| services.bird.checkConfig | Whether the config should be checked at build time
|
| services.dokuwiki.sites.<name>.poolConfig | Options for the DokuWiki PHP pool
|
| image.repart.partitions | Specify partitions as a set of the names of the partitions with their
configuration as the key.
|
| services.autorandr.profiles.<name>.config.<name>.enable | Whether to enable the output.
|
| networking.wireguard.interfaces.<name>.dynamicEndpointRefreshSeconds | Periodically refresh the endpoint hostname or address for all peers
|
| services.gitea.stateDir | Gitea data directory.
|
| hardware.sensor.hddtemp.extraArgs | Additional arguments passed to the daemon.
|
| services.ghostunnel.servers.<name>.keystore | Path to keystore (combined PEM with cert/key, or PKCS12 keystore)
|
| security.virtualisation.flushL1DataCache | Whether the hypervisor should flush the L1 data cache before
entering guests
|
| services.guacamole-client.package | The guacamole-client package to use.
|
| services.hostapd.radios.<name>.networks.<name>.authentication.saePasswords.*.passwordFile | The password for this entry, read from the given file when starting hostapd
|
| services.kanboard.nginx.sslCertificateKey | Path to server SSL certificate key.
|
| services.cocoon.settings.COCOON_DATABASE_URL | Database connection URL
|
| services.bind.listenOn | Interfaces to listen on.
|
| services.graphite.web.port | Graphite web frontend port.
|
| services.borgbackup.jobs.<name>.patterns | Include/exclude paths matching the given patterns
|
| services.gollum.address | IP address on which the web server will listen.
|
| networking.bonds.<name>.driverOptions | Options for the bonding driver
|
| services.coder.listenAddress | Listen address.
|
| services.fractalart.height | Screen height
|
| programs.nixbit.enable | Whether to enable Nixbit configuration.
|
| services.devmon.enable | Whether to enable devmon, an automatic device mounting daemon.
|
| programs.appimage.package | The appimage-run package to use.
|
| services.gocd-server.extraOptions | Specifies additional command line arguments to pass to Go
|
| services.headscale.settings.dns.nameservers.global | List of nameservers to pass to Tailscale clients.
|
| services.fedimintd.<name>.nginx.config.quic | Whether to enable the QUIC transport protocol
|
| networking.interfaces.<name>.ipv4.routes.*.type | Type of the route
|
| services.bacula-dir.tls.require | Require TLS or TLS-PSK encryption
|
| i18n.inputMethod.fcitx5.settings.globalOptions | The global options in config file in ini format.
|
| services.displayManager.sddm.stopScript | A script to execute when stopping the display server.
|
| services.docuseal.redis.createLocally | Whether to create a local redis automatically.
|
| services.librenms.nginx.listen.*.addr | Listen address.
|
| services.bluesky-pds.settings.PDS_DATA_DIRECTORY | Directory to store state
|
| services.cloudflared.tunnels.<name>.originRequest.connectTimeout | Timeout for establishing a new TCP connection to your origin server
|
| services.kanboard.nginx.locations.<name>.extraConfig | These lines go to the end of the location verbatim.
|
| services.jibri.enable | Whether to enable Jitsi BRoadcasting Infrastructure
|
| services.komodo-periphery.allowedIps | IP addresses or subnets allowed to call the periphery API
|
| networking.networkmanager.ensureProfiles.secrets.package | The nm-file-secret-agent package to use.
|
| services.gancio.nginx.locations.<name>.fastcgiParams | FastCGI parameters to override
|
| programs.less.clearDefaultCommands | Clear all default commands
|
| hardware.nvidia-container-toolkit.enable-hooks | List of hooks to enable when generating the CDI specification
|
| services.gmediarender.initialVolume | A default volume attenuation (in dB) for the endpoint.
|
| services.hedgedoc.settings.allowOrigin | List of domains to whitelist.
|
| hardware.alsa.enableBluetooth | Whether to enable Bluetooth audio support via BlueALSA.
|
| services.buildkite-agents.<name>.extraGroups | Groups the user for this buildkite agent should belong to
|
| security.doas.wheelNeedsPassword | Whether users of the wheel group must provide a password to
run commands as super user via doas.
|
| environment.ldso32 | The executable to link into the normal FHS location of the 32-bit ELF loader
|
| services.gitlab.registry.host | GitLab container registry host name.
|
| services.hardware.lcd.serverHost | Host on which LCDd is listening.
|
| services.cassandra.jmxRoles.*.password | Password for JMX
|
| services.fedimintd.<name>.nginx.config.locations.<name>.uwsgiPass | Adds uwsgi_pass directive and sets recommended proxy headers if
recommendedUwsgiSettings is enabled.
|
| programs.regreet.cageArgs | Additional arguments to be passed to
cage.
|
| services.gitlab-runner.services.<name>.dockerAllowedServices | Whitelist allowed services.
|
| services.dolibarr.h2o.acme.enable | Whether to ask Let’s Encrypt to sign a certificate for this
virtual host
|
| services.graphite.carbon.storageAggregation | Defines how to aggregate data to lower-precision retentions.
|
| fileSystems.<name>.encrypted.blkDev | Location of the backing encrypted device.
|
| services.getty.greetingLine | Welcome line printed by agetty
|
| services.httpd.logDir | Directory for Apache's log files
|
| services.freeciv.settings.exit-on-end | Whether to enable exit instead of restarting when a game ends.
|
| openstack.zfs.datasets | Datasets to create under the tank and boot zpools.
NOTE: This option is used only at image creation time, and
does not attempt to declaratively create or manage datasets
on an existing system.
|
| programs.nix-required-mounts.allowedPatterns.<name>.unsafeFollowSymlinks | Whether to enable Instructs the hook to mount the symlink targets as well, when any of
the paths contain symlinks
|
| hardware.hackrf.enable | Enables hackrf udev rules and ensures 'plugdev' group exists
|
| services.distccd.stats.port | The TCP port which the distccd statistics HTTP server will listen
on.
|
| hardware.nvidia.prime.amdgpuBusId | Bus ID of the AMD APU
|
| services.jupyter.package | The jupyter package to use.
|
| services.kapacitor.defaultDatabase.url | The URL to an InfluxDB server that serves as the default database
|
| services.librenms.nginx.listen.*.extraParameters | Extra parameters of this listen directive.
|
| services.hadoop.hbase.package | The hbase package to use.
|
| hardware.nvidia-container-toolkit.mounts | Mounts to be added to every container under the Nvidia CDI profile.
|
| hardware.amdgpu.overdrive.ppfeaturemask | Sets the amdgpu.ppfeaturemask kernel option
|
| services.ceph.mgr.enable | Whether to enable Ceph MGR daemon.
|
| services.glpiAgent.stateDir | Directory where GLPI Agent stores its state.
|
| services.anubis.instances.<name>.settings | Freeform configuration via environment variables for Anubis
|
| boot.loader.refind.additionalFiles | A set of files to be copied to /boot
|
| programs.nncp.enable | Whether to enable NNCP (Node to Node copy) utilities and configuration.
|
| services.dependency-track.logLevel | Log level for dependency-track
|
| services.lambdabot.script | Lambdabot script
|
| services.gitea.dump.backupDir | Path to the dump files.
|
| boot.plymouth.tpm2-totp.enable | Whether to display a TOTP during boot using tpm2-totp and Plymouth.
|
| services.bookstack.user | User bookstack runs as
|
| services.headscale.settings.prefixes.v6 | Each prefix consists of either an IPv4 or IPv6 address,
and the associated prefix length, delimited by a slash
|
| services.journald.console | If non-empty, write log messages to the specified TTY device.
|
| programs.xfs_quota.projects.<name>.sizeSoftLimit | Soft limit of the project size
|
| hardware.fw-fanctrl.enable | Whether to enable the fw-fanctrl systemd service and install the needed packages.
|
| services.journalwatch.mailTo | Mail address to send journalwatch reports to.
|
| services.activemq.configurationURI | The URI that is passed along to the BrokerFactory to
set up the configuration of the ActiveMQ broker service
|
| services.cloudflare-ddns.domains | List of domain names (FQDNs) to manage
|
| services.davmail.config | Davmail configuration
|
| services.caddy.environmentFile | Environment file as defined in systemd.exec(5)
|
| services.dspam.user | User for the dspam daemon.
|
| services.athens.hgrcPath | Path to the .hgrc file.
|
| services.grafana.provision.alerting.muteTimings.path | Path to YAML mute timings configuration
|
| services.ananicy.extraTypes | Types to write in 'nixTypes.types'
|
| services.bitwarden-directory-connector-cli.sync.groupPath | Group directory, relative to root.
|
| services.alice-lg.package | The alice-lg package to use.
|