| services.agorakit.nginx.forceSSL | Whether to add a separate nginx server block that redirects (defaults
to 301, configurable with redirectCode) all plain HTTP traffic to
HTTPS
|
| services.chisel-server.host | Address to listen on, falls back to 0.0.0.0
|
| services.icingaweb2.pool | Name of existing PHP-FPM pool that is used to run Icingaweb2
|
| services.hologram-server.groupClassAttr | The objectclass attribute to search for groups when enableLdapRoles is true
|
| services.jibri.xmppEnvironments.<name>.call.login.username | User part of the JID for the recorder.
|
| networking.enableIPv6 | Whether to enable support for IPv6.
|
| services.evdevremapkeys.settings | config.yaml for evdevremapkeys
|
| services.firewalld.package | The firewalld package to use.
|
| services.discourse.unicornTimeout | Time in seconds before a request to Unicorn times out
|
| services.SystemdJournal2Gelf.package | The systemd-journal2gelf package to use.
|
| services.anuko-time-tracker.nginx.useACMEHost | A host of an existing Let's Encrypt certificate to use
|
| services.fluidd.nginx.locations.<name>.alias | Alias directory for requests.
|
| services.factorio.bind | The address to which the service should bind.
|
| services.foundationdb.pidfile | Path to pidfile for fdbmonitor.
|
| services.bitmagnet.enable | Whether to enable Bitmagnet service.
|
| services.consul-template.instances.<name>.group | Group under which this instance runs.
|
| boot.loader.systemd-boot.windows.<name>.efiDeviceHandle | The device handle of the EFI System Partition (ESP) where the Windows bootloader is
located
|
| services.homer.virtualHost.domain | Domain to use for the virtual host
|
| services.knot.extraArgs | List of additional command line parameters for knotd
|
| boot.initrd.unl0kr.settings | Configuration for unl0kr
|
| programs.dconf.packages | A list of packages which provide dconf profiles and databases in /etc/dconf.
|
| services.autorandr.profiles.<name>.hooks.predetect | Predetect hook executed before autorandr attempts to run xrandr.
|
| security.tpm2.fapi.ekFingerprint | The fingerprint of the endorsement key
|
| environment.systemPackages | The set of packages that appear in
/run/current-system/sw
|
| services.dependency-track.settings."alpine.database.username" | Specifies the username to use when authenticating to the database.
|
| services.icecream.scheduler.extraArgs | Additional command line parameters
|
| services.galene.certFile | Path to the server's certificate
|
| services.gitea.mailerPasswordFile | Path to a file containing the SMTP password.
|
| services.couchdb.package | The couchdb3 package to use.
|
| powerManagement.powertop.enable | Whether to enable powertop auto tuning on startup.
|
| services.dnsdist.extraConfig | Extra lines to be added verbatim to dnsdist.conf.
|
| services.echoip.package | The echoip package to use.
|
| documentation.man.enable | Whether to install manual pages
|
| services.ax25.axports.<name>.baud | The serial port speed of this interface.
|
| services.isso.enable | Whether to enable isso, a commenting server similar to Disqus
|
| services.below.dirs.store | Where to store below's data
|
| services.fluidd.nginx.listenAddresses | Listen addresses for this virtual host
|
| services.kubo.settings.Addresses.Swarm | Where Kubo listens for incoming p2p connections
|
| security.loginDefs.settings | Config options for the /etc/login.defs file, that defines
the site-specific configuration for the shadow password suite
|
| security.rtkit.package | The rtkit package to use.
|
| hardware.sane.brscan4.netDevices.<name>.model | The model of the network device.
|
| services.davis.nginx.locations | Declarative location config
|
| services.aesmd.enable | Whether to enable Intel's Architectural Enclave Service Manager (AESM) for Intel SGX.
|
| services.gitlab.databaseCreateLocally | Whether a database should be automatically created on the
local host
|
| services.agorakit.nginx.sslTrustedCertificate | Path to root SSL certificate for stapling and client certificates.
|
| services.cloudflare-ddns.ip6Domains | Explicit list of domains to manage only for IPv6
|
| services.grafana.provision.alerting.contactPoints.settings.deleteContactPoints.*.uid | Unique identifier for the receiver
|
| boot.initrd.network.ssh.shell | Login shell of the remote user
|
| services.hadoop.hdfs.datanode.extraEnv | Extra environment variables for HDFS DataNode
|
| hardware.rasdaemon.enable | Whether to enable RAS logging daemon.
|
| services.cocoon.settings.COCOON_DB_TYPE | Type of database to use (sqlite or postgres)
|
| services.kanata.keyboards.<name>.config | Configuration other than defcfg
|
| services.elasticsearch-curator.enable | Whether to enable elasticsearch curator.
|
| services.castopod.database.createLocally | Create the database and database user locally.
|
| services.immichframe.settings | Configuration for ImmichFrame
|
| services.howdy.control | PAM control flag to use for Howdy
|
| services.buildbot-master.home | Buildbot home directory.
|
| services.datadog-agent.site | The datadog site to point the agent towards
|
| services.journalwatch.mailBinary | Sendmail-compatible binary to be used to send the messages.
|
| services.h2o.defaultHTTPListenPort | If hosts do not specify listen.port, use these ports for HTTP by default.
|
| services.dovecot2.imapsieve.mailbox | Configure Sieve filtering rules on IMAP actions
|
| services.hostapd.radios.<name>.networks.<name>.ssid | SSID to be used in IEEE 802.11 management frames.
|
| services.i2pd.proto.http.auth | Whether to enable webconsole authentication.
|
| services.buffyboard.settings.quirks.ignore_unused_terminals | If true, buffyboard won't automatically update the layout of a new terminal and
draw the keyboard, if the terminal is not opened by any process
|
| services.invoiceplane.sites.<name>.database.user | Database user.
|
| services.fwupd.uefiCapsuleSettings | UEFI capsule configurations for the fwupd daemon.
|
| boot.initrd.systemd.fido2.enable | Whether to enable systemd FIDO2 support.
|
| services.jellyfin.transcoding.hardwareDecodingCodecs.vp9 | Enable hardware decoding for vp9 codec.
|
| services.grocy.dataDir | Home directory of the grocy user which contains
the application's state.
|
| services.i2pd.enable | Enables I2Pd as a running service upon activation
|
| services.deconz.enable | Whether to enable deCONZ, a Zigbee gateway for use with ConBee/RaspBee hardware (https://phoscon.de/).
|
| services.drupal.sites.<name>.package | The drupal package to use.
|
| services.cloudflare-ddns.provider.ipv6 | IP detection provider for IPv6
|
| services.flexget.package | The flexget package to use.
|
| services.filebrowser.settings.root | The directory where FileBrowser stores files.
|
| boot.consoleLogLevel | The kernel console loglevel
|
| networking.supplicant.<name>.extraConf | Configuration options for wpa_supplicant.conf
|
| services.httpd.enable | Whether to enable the Apache HTTP Server.
|
| services.imaginary.port | Bind port
|
| services.cgit.<name>.package | The cgit package to use.
|
| services.gnunet.tcp.port | The TCP port for use by GNUnet.
|
| programs.weylus.openFirewall | Open ports needed for the functionality of the program.
|
| services.gitea.database.path | Path to the sqlite3 database file.
|
| programs.singularity.enableSuid | Whether to enable the SUID support of Singularity/Apptainer.
|
| programs.sway.xwayland.enable | Whether to enable XWayland.
|
| services.athens.index.mysql.params.parseTime | Parse time for the MySQL database.
|
| boot.initrd.network.ssh.enable | Start SSH service during initrd boot
|
| services.grafana.provision.alerting.contactPoints.settings.apiVersion | Config file version.
|
| services.headscale.settings.derp.server.private_key_path | Path to derp private key file, generated automatically if it does not exist.
|
| services.fluidd.nginx.kTLS | Whether to enable kTLS support
|
| image.extension | Extension of the image filename (e.g. raw).
|
| hardware.uni-sync.devices.*.device_id | Unique device ID displayed at each startup.
|
| programs.bash.completion.package | The bash-completion package to use.
|
| services.dovecot2.mailPlugins.globally.enable | mail plugins to enable as a list of strings to append to the top-level $mail_plugins configuration variable
|
| services.gnome.tinysparql.enable | Whether to enable TinySPARQL services, a search engine,
search tool and metadata storage system.
|
| nixpkgs.flake.source | The path to the nixpkgs sources used to build the system
|
| services.biboumi.settings.password | The password used to authenticate the XMPP component to your XMPP server
|
| services.epmd.package | The erlang package to use.
|
| services.hadoop.hbase.thrift.extraFlags | Extra flags for the thrift service.
|
| programs.rust-motd.enable | Whether to enable rust-motd, a Message Of The Day (MOTD) generator.
|