| services.bookstack.dataDir | BookStack data directory
|
| services.flannel.etcd.keyFile | Etcd key file
|
| services.corosync.nodelist.*.name | Node name
|
| boot.plymouth.themePackages | Extra theme packages for plymouth.
|
| services.anki-sync-server.baseDirectory | Base directory where user(s) synchronized data will be stored.
|
| services.i2pd.proto.i2cp.enable | Whether to enable i2cp.
|
| boot.initrd.luks.devices.<name>.preLVM | Whether the luksOpen will be attempted before LVM scan or after it.
|
| services.fluidd.package | The fluidd package to use.
|
| services.firezone.server.provision.accounts.<name>.features.idp_sync | Whether to enable the idp_sync feature for this account.
|
| services.h2o.hosts.<name>.tls.redirectCode | HTTP status used by globalRedirect & forceSSL
|
| boot.kernelModules | The set of kernel modules to be loaded in the second stage of
the boot process
|
| programs.flashprog.package | The flashprog package to use.
|
| networking.macvlans.<name>.mode | The mode of the macvlan device.
|
| services.bonsaid.enable | Whether to enable bonsaid.
|
| programs.nautilus-open-any-terminal.terminal | The terminal emulator to add to context-entry of nautilus
|
| programs.feedbackd.theme-package | The feedbackd-device-themes package to use.
|
| services.gitlab-runner.services.<name>.tagList | Tag list
|
| services.angrr.settings.temporary-root-policies.<name>.filter.program | Path to the external filter program.
|
| documentation.man.mandoc.settings.output.paper | This option is for generating PostScript and PDF output
|
| services.compton | Alias of services.picom.
|
| networking.wlanInterfaces.<name>.flags | Flags for interface of type monitor.
|
| services.airsonic.user | User account under which airsonic runs.
|
| networking.networkmanager.logLevel | Set the default logging verbosity level.
|
| services.blockbook-frontend.<name>.cssDir | Location of the dir with main.css CSS file
|
| services.bookstack.nginx.locations.<name>.proxyPass | Adds proxy_pass directive and sets recommended proxy headers if
recommendedProxySettings is enabled.
|
| services.beszel.hub.dataDir | Data directory of beszel-hub.
|
| networking.supplicant.<name>.bridge | Name of the bridge interface that wpa_supplicant should listen at.
|
| services.chrony.directory | Directory where chrony state is stored.
|
| networking.interfaces.<name>.ipv4.routes.*.type | Type of the route
|
| services.coturn.tls-listening-port | TURN listener port for TLS
|
| services.gitlab-runner.services.<name>.dockerImage | Docker image to be used.
|
| security.dhparams.params | Diffie-Hellman parameters to generate
|
| services.ddclient.usev4 | Method to determine the IPv4 address to send to the dynamic DNS provider
|
| services.headphones.port | Port to bind to.
|
| services.gitlab.sidekiq.memoryKiller.graceTime | The time MemoryKiller waits after noticing excessive memory
consumption before killing Sidekiq.
|
| services.goss.package | The goss package to use.
|
| services.i2pd.proto.socksProxy.keys | File to persist SOCKSPROXY keys.
|
| services.i2pd.ssu2.port | Port to listen for incoming SSU2 connections (0=auto).
|
| services.jackett.openFirewall | Open ports in the firewall for the Jackett web interface.
|
| services.karakeep.browser.enable | Enable the karakeep-browser service that runs a chromium instance in
the background with debugging ports exposed
|
| boot.initrd.systemd.network.wait-online.enable | Whether to enable the systemd-networkd-wait-online service.
systemd-networkd-wait-online can timeout and fail if there are no network interfaces
available for it to manage
|
| services.ayatana-indicators.packages | List of packages containing Ayatana Indicator services
that should be brought up by a SystemD "ayatana-indicators" user target
|
| services.keepalived.vrrpScripts | Declarative vrrp script config
|
| hardware.printers.ensurePrinters.*.location | Optional human-readable location.
|
| environment.enlightenment.excludePackages | Which packages Enlightenment should exclude from the default environment
|
| security.pam.services.<name>.nodelay | Whether the delay after typing a wrong password should be disabled.
|
| environment.corePackages | Set of core packages for a normal interactive system
|
| services.athens.index.postgres.params.sslmode | SSL mode for the Postgres database.
|
| services.greenclip.enable | Whether to enable Greenclip, a clipboard manager.
|
| services.invidious.settings | The settings Invidious should use
|
| programs.msmtp.extraConfig | Extra lines to add to the msmtp configuration verbatim
|
| services.druid.historical.enable | Whether to enable Druid Historical.
|
| services.fediwall.nginx.serverAliases | Additional names of virtual hosts served by this virtual host configuration.
|
| services.dawarich.webPort | TCP port used by the dawarich web service.
|
| services.bitmagnet.settings.http_server | HTTP server settings
|
| services.librenms.nginx.locations.<name>.recommendedProxySettings | Enable recommended proxy settings.
|
| services.komga.enable | Whether to enable Komga, a free and open source comics/mangas media server.
|
| boot.postBootCommands | Shell commands to be executed just before systemd is started.
|
| services.crowdsec.hub.branch | The git branch on which cscli is going to fetch configurations
|
| services.anubis.defaultOptions.extraFlags | A list of extra flags to be passed to Anubis.
|
| services.crowdsec.localConfig.acquisitions | A list of acquisition specifications, which define the data sources you want to be parsed
|
| services.chhoto-url.settings.public_mode | Whether to enable public mode.
|
| services.erigon.package | The erigon package to use.
|
| services.dependency-track.oidc.teams.default | Defines one or more team names that auto-provisioned OIDC users shall be added to
|
| services.asusd.asusdConfig | The content of /etc/asusd/asusd.ron
|
| programs.corefreq.package | The corefreq package to use.
|
| services.flannel.kubeconfig | Path to kubeconfig to use for storing flannel config using the
Kubernetes API
|
| services.avahi.extraConfig | Extra config to append to avahi-daemon.conf.
|
| services.foldingathome.enable | Whether to enable Folding@home client.
|
| services.hostapd.radios.<name>.wifi5.operatingChannelWidth | Determines the operating channel width for VHT.
- "20or40": 20 or 40 MHz operating channel width
- "80": 80 MHz channel width
- "160": 160 MHz channel width
- "80+80": 80+80 MHz channel width
|
| services.httpd.virtualHosts.<name>.locations.<name>.extraConfig | These lines go to the end of the location verbatim.
|
| networking.firewall.interfaces.<name>.allowedTCPPorts | List of TCP ports on which incoming connections are
accepted.
|
| hardware.nvidia-container-toolkit.mount-nvidia-executables | Mount executables nvidia-smi, nvidia-cuda-mps-control, nvidia-cuda-mps-server,
nvidia-debugdump, nvidia-powerd and nvidia-ctk on containers.
|
| services.crab-hole.settings.blocklist.allow_list | List of allowlists
|
| services.easytier.instances.<name>.settings.ipv4 | IPv4 cidr address of this peer in the virtual network
|
| services.gitlab.secrets.jwsFile | A file containing the secret used to encrypt session
keys
|
| services.i2pd.proto.http.auth | Whether to enable webconsole authentication.
|
| services.icingaweb2.modules.monitoring.transports | Command transports to define
|
| services.immich.package | The immich package to use.
|
| boot.loader.grub.memtest86.params | Parameters added to the Memtest86+ command line
|
| programs.labwc.enable | Whether to enable labwc.
|
| services.amule.user | The user the aMule daemon should run as
|
| services.elasticsearch-curator.actionYAML | curator action.yaml file contents, alternatively use curator-cli which takes a simple action command
|
| services.firewalld.zones.<name>.forwardPorts.*.to-addr | Destination IP address.
|
| services.flarum.enable | Whether to enable Flarum discussion platform.
|
| services.gancio.nginx.rejectSSL | Whether to listen for and reject all HTTPS connections to this vhost
|
| services.goatcounter.enable | Whether to enable goatcounter.
|
| programs.throne.tunMode.enable | Whether to enable TUN mode of Throne.
|
| security.agnos.settings.accounts | A list of ACME accounts
|
| services.borgmatic.settings.repositories.*.label | Label to the repository
|
| services.dolibarr.h2o.http.port | Override the default HTTP port for this virtual host.
|
| services.jicofo.userName | User part of the JID for XMPP user connection.
|
| services.chhoto-url.settings | Configuration of Chhoto URL
|
| services.bluemap.enableNginx | Enable configuring a virtualHost for serving the bluemap webapp
|
| services.bird-lg.proxy.extraArgs | Extra parameters documented here.
|
| environment.loginShellInit | Shell script code called during login shell initialisation
|
| networking.firewall.allowedTCPPorts | List of TCP ports on which incoming connections are
accepted.
|
| powerManagement.powertop.preStart | Shell commands executed before powertop is started.
|
| programs.regreet.enable | Enable ReGreet, a clean and customizable greeter for greetd
|
| services.ente.web.package | The ente-web package to use.
|