aboutsummaryrefslogtreecommitdiffstats
path: root/README.md
blob: d210eaa477e4851bedfbf08b99618f53465e8be0 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
# A mkosi-template for Vaultwarden

This is a mkosi-template for
[Vaultwarden](https://github.com/dani-garcia/vaultwarden). In order to set
this up you need Mkosi >=5.

To build this, run `sudo mkosi`. This will create a new container in
`/var/lib/machines` called `vaultwarden`. Next you should symlink the
`.nspawn`-config to `/etc/systemd/nspawn` using `sudo ln -s
/var/lib/machines/vaultwarden.nspawn /etc/systemd/nspawn/`.

After that you need to create the folders we mount into the image. This is
`/etc/vaultwarden` and `/var/local/vaultwarden`. These should be owned by
root, and have `700` set as permissions.

Then you need to copy `etc/vaultwarden/vaultwarden.env` to
`/etc/vaultwarden/`, and set all your variables. You also need to create a
database (using PostgreSQL). Lastly you need to set up a web-proxy - see the
[vaultwarden wiki](https://github.com/dani-garcia/vaultwarden/wiki) for
[examples](https://github.com/dani-garcia/vaultwarden/wiki/Proxy-examples).

Now all you need to do is to run it - `machinectl start vaultwarden`. You can
drop into the container to troubleshoot using `machinectl shell vaultwarden`,
and you can view logs using `journalctl -M vaultwarden` from the host, or
`journalctl -u vaultwarden` from inside the container.