| cache.anonymousRead | boolean | Whether the default cache view permits anonymous reads. |
| cache.bootstrapSocket | string matching /run/aos-registry-server/[A-Za-z0-9._-]+ | Volatile bootstrap control socket. |
| cache.bootstrapSocketGroup | string matching [A-Za-z_][A-Za-z0-9_-]* | Group assigned to the bootstrap socket. |
| cache.enable | boolean | Whether to run the AOS binary-cache server. |
| cache.listenAddress | string matching [^:[:space:]]+ | Binary-cache listen address. |
| cache.maxConcurrentBuilds | signed integer | Maximum concurrent builds admitted by the default view. |
| cache.port | TCP/UDP port number (1-65535) | Binary-cache listen port. |
| config | attribute set of attribute set of any value | Desired values for the package's declared config artifacts. |
| credentials | attribute set of submodule | Opaque references for the package's declared credentials. |
| enable | boolean | Whether at least one AOS registry-server workload may run. |
| git.basePath | string matching /var/lib/aos-registry-server(/[A-Za-z0-9._/-]+)? | Registry repository root beneath package-managed state. |
| git.enable | boolean | Whether to serve registry Git repositories. |
| git.exportAll | boolean | Whether git daemon exports repositories without git-daemon-export-ok. |
| git.listenAddress | string matching [^[:space:]]+ | Address passed to git daemon. |
| git.port | TCP/UDP port number (1-65535) | Git protocol listen port. |