| services.httpd.virtualHosts.<name>.sslServerKey | Path to server SSL certificate key.
|
| services.bacula-sd.director.<name>.tls.key | The path of a PEM encoded TLS private key
|
| services.immich-kiosk.settings | Configuration for immich-kiosk
|
| hardware.deviceTree.overlays.*.dtsFile | Path to .dts overlay file, overlay is applied to
each .dtb file matching "compatible" of the overlay.
|
| services.bacula-fd.director.<name>.tls.key | The path of a PEM encoded TLS private key
|
| services.rustus.storage.data_dir | path to the local directory where all files are stored
|
| services.outline.storage.forcePathStyle | Force S3 path style.
|
| services.prosody.virtualHosts.<name>.ssl.cert | Path to the certificate file.
|
| services.phylactery.library | Path to CBZ library
|
| services.soju.tlsCertificate | Path to server TLS certificate.
|
| services.pomerium.secretsFile | Path to file containing secrets for Pomerium, in systemd
EnvironmentFile format
|
| services.stash.settings.database | Path to the SQLite database
|
| services.multipath.devices.*.fast_io_fail_tmo | Specify the number of seconds the SCSI layer will wait after a problem has been
detected on a FC remote port before failing I/O to devices on that remote port
|
| services.multipath.devices.*.delay_wait_checks | This option is deprecated, and mapped to san_path_err_recovery_time
|
| services.forgejo.database.socket | Path to the unix socket file to use for authentication.
|
| services.gokapi.settingsFile | Path to config file to parse and append to settings
|
| services.libinput.touchpad.dev | Path for touchpad device
|
| services.fedimintd.<name>.dataDir | Path to the data dir fedimintd will use to store its data
|
| services.code-server.extensionsDir | Path to the extensions directory.
|
| services.bluesky-pds.pdsadmin.enable | Add pdsadmin script to PATH
|
| services.buildbot-master.masterCfg | Optionally pass master.cfg path
|
| services.httpd.virtualHosts.<name>.sslServerCert | Path to server SSL certificate.
|
| services.forgejo.settings.log.ROOT_PATH | Root path for log files.
|
| services.shibboleth-sp.configFile | Path to shibboleth config file
|
| services.outline.storage.secretKeyFile | File path that contains the S3 secret key.
|
| services.redmine.database.socket | Path to the unix socket file to use for authentication.
|
| services.restic.server.htpasswd-file | The path to the servers .htpasswd file
|
| services.syncplay.passwordFile | Path to the file that contains the server password
|
| services.ncps.cache.storage.s3.accessKeyIdPath | The path to a file containing only the access-key-id.
|
| services.lasuite-docs.secretKeyPath | Path to the Django secret key
|
| services.lasuite-meet.secretKeyPath | Path to the Django secret key
|
| boot.loader.grub.mirroredBoots.*.devices | The path to the devices which will have the GRUB MBR written
|
| services.multipath.devices.*.product_blacklist | Products with the given vendor matching this string are blacklisted
|
| services.cockroachdb.certsDir | The path to the certificate directory.
|
| security.pam.makeHomeDir.skelDirectory | Path to skeleton directory whose contents are copied to home
directories newly created by pam_mkhomedir.
|
| programs.sway.package | The sway package to use
|
| services.dnsproxy.settings | Contents of the config.yaml config file
|
| services.hebbot.templates.report | A path to the Markdown file for the report template.
|
| services.thanos.query.web.route-prefix | Prefix for API and UI endpoints
|
| services.moodle.virtualHost.sslServerChain | Path to server SSL chain file.
|
| services.plausible.server.baseUrl | Public URL where plausible is available
|
| services.sympa.domains.<name>.webLocation | URL path part of the web interface.
|
| services.pleroma.secretConfigFile | Path to the file containing your secret pleroma configuration.
DO NOT POINT THIS OPTION TO THE NIX
STORE, the store being world-readable, it'll
compromise all your secrets.
|
| services.thinkfan.fans | List of fans thinkfan will control.
This section slightly departs from the thinkfan.conf syntax
|
| services.misskey.redis.passwordFile | The path to a file containing the Redis password
|
| services.nagios.virtualHost.sslServerChain | Path to server SSL chain file.
|
| services.xserver.synaptics.dev | Path for touchpad device
|
| containers.<name>.allowedDevices.*.node | Path to device node
|
| boot.loader.grub.users.<name>.passwordFile | Specifies the path to a file containing the
clear text password for the account
|
| services.dawarich.smtp.passwordFile | Path to file containing the SMTP password.
|
| services.immich.secretsFile | Path of a file with extra environment variables to be loaded from disk
|
| services.soju.tlsCertificateKey | Path to server TLS certificate key.
|
| services.sharkey.settings.socket | If specified, creates a UNIX socket at the given path that Sharkey listens on.
|
| services.mastodon.smtp.passwordFile | Path to file containing the SMTP password.
|
| services.zabbixProxy.extraPackages | Packages to be added to the Zabbix PATH
|
| services.zabbixAgent.extraPackages | Packages to be added to the Zabbix PATH
|
| services.zabbixProxy.database.socket | Path to the unix socket file to use for authentication.
|
| services.warpgate.settings.http.key | Path to HTTPS listener private key.
|
| services.gitlab.smtp.passwordFile | File containing the password of the SMTP server for GitLab
|
| services.filesender.settings.storage_filesystem_path | When using storage type filesystem this is the absolute path to the file system where uploaded files are stored until they expire
|
| services.buildbot-master.packages | Packages to add to PATH for the buildbot process.
|
| services.gitea.settings.server.HTTP_ADDR | Listen address
|
| services.forgejo.repositoryRoot | Path to the git repositories.
|
| services.buildbot-worker.packages | Packages to add to PATH for the buildbot process.
|
| services.tahoe.nodes.<name>.sftpd.accounts.file | Path to the accounts file.
|
| services.thanos.rule.tracing.config-file | Path to YAML file that contains tracing configuration
|
| services.ncps.cache.storage.s3.forcePathStyle | Force path-style S3 addressing (bucket/key vs key.bucket).
|
| services.radicle.ci.broker.settings.db | Database file path.
|
| services.rspamd.overrides.<name>.source | Path of the source file.
|
| services.moonraker.klipperSocket | Path to Klipper's API socket.
|
| services.minetest-server.configPath | Path to the config to use
|
| services.tinc.networks.<name>.rsaPrivateKeyFile | Path of the private RSA keyfile.
|
| services.tahoe.nodes.<name>.sftpd.hostPrivateKeyFile | Path to the SSH host private key.
|
| services.warpgate.settings.ssh.keys | Path to store SSH host & client keys.
|
| services.weblate.smtp.passwordFile | Location of a file containing the SMTP password
|
| services.kimai.sites.<name>.database.socket | Path to the unix socket file to use for authentication.
|
| services.dockerRegistry.configFile | Path to CNCF distribution config file
|
| services.kmonad.keyboards.<name>.device | Path to the keyboard's device file.
|
| services.httpd.virtualHosts.<name>.sslServerChain | Path to server SSL chain file.
|
| services.geth.<name>.authrpc.jwtsecret | Path to a JWT secret for authenticated RPC endpoint.
|
| boot.iscsi-initiator.extraConfigFile | Append an additional file's contents to /etc/iscsid.conf
|
| services.invidious.hmacKeyFile | A path to a file containing the hmac_key
|
| services.send.redis.passwordFile | The path to the file containing the Redis password
|
| services.unpoller.influxdb.pass | Path of a file containing the password for influxdb
|
| services.nsd.remoteControl.serverKeyFile | Path to the server private key, which is used by the server
but not by nsd-control
|
| services.hylafax.sendmailPath | Path to sendmail program
|
| services.strongswan-swanctl.swanctl.authorities.<name>.cacert | The certificates may use a relative path from the swanctl
x509ca directory or an absolute path
|
| services.vmalert.settings.rule | Path to the files with alerting and/or recording rules.
Consider using the services.vmalert.rules option as a convenient alternative for declaring rules
directly in the nix language.
|
| services.flannel.kubeconfig | Path to kubeconfig to use for storing flannel config using the
Kubernetes API
|
| services.duplicity.secretFile | Path of a file containing secrets (gpg passphrase, access key...) in
the format of EnvironmentFile as described by
systemd.exec(5)
|
| services.slskd.settings.web.url_base | The base path in the url for web requests.
|
| services.mailman.ldap.bindPasswordFile | Path to the file containing the bind password of the service account
defined by services.mailman.ldap.bindDn.
|
| services.tcsd.conformanceCred | Path to the conformance credential for your TPM
|
| services.tcsd.endorsementCred | Path to the endorsement credential for your TPM
|
| services.warpgate.settings.mysql.key | Path to MySQL listener private key.
|
| services.prometheus.scrapeConfigs.*.nerve_sd_configs.*.paths | Paths can point to a single service, or the root of a tree of services.
|
| services.journald.remote.settings.Remote.ServerCertificateFile | A path to a SSL certificate file in PEM format
|
| services.hebbot.templates.project | A path to the Markdown file for the project template.
|
| services.gitlab-runner.extraPackages | Extra packages to add to PATH for the gitlab-runner process
|
| services.grafana-to-ntfy.settings.bauthPass | The path to the password you will use in the Grafana webhook settings.
|