bitwarden
Unterschiede
Hier werden die Unterschiede zwischen zwei Versionen angezeigt.
| Beide Seiten der vorigen RevisionVorhergehende ÜberarbeitungNächste Überarbeitung | Vorhergehende Überarbeitung | ||
| bitwarden [2024-04-03 21:10:53] – [Konfiguration von vaultwarden] manfred | bitwarden [2024-05-27 17:53:04] (aktuell) – [Konfiguration von vaultwarden] manfred | ||
|---|---|---|---|
| Zeile 69: | Zeile 69: | ||
| === Konfiguration von vaultwarden === | === Konfiguration von vaultwarden === | ||
| - | dedizierten Benutzer anlegen: | + | > touch /var/log/vaultwarden.log |
| - | # pw groupadd -n vaultwarden | + | |
| - | | + | |
| - | # touch /var/log/vaultwarden.log | + | <file bash /usr/local/etc/rc.conf.d/ |
| - | # chown vaultwarden: | + | #------------------------------------------------------------------------------# |
| - | + | vaultwarden_enable=" | |
| - | # mkdir / | + | |
| - | # vim / | + | |
| - | # chmod 0700 /home/ | + | |
| - | # chown -R vaultwarden: | + | |
| - | + | ||
| - | | + | |
| - | <file bash / | + | #Warning : Some of these settings may be overridden when changing settings on the admin page or in the config.json file |
| - | #!/usr/bin/env bash | + | #located by default at: /usr/local/www/ |
| - | cd /home/ | + | LOG_FILE=' |
| - | mkdir -p data web-vault/ | + | export LOG_FILE |
| - | # | + | ROCKET_ADDRESS=::1 |
| - | # Dieser Server wird per Umgebungsvariablen gesteuert: | + | |
| - | # https:// | + | |
| - | # | + | |
| - | ROCKET_ADDRESS=0.0.0.0 | + | |
| export ROCKET_ADDRESS | export ROCKET_ADDRESS | ||
| - | ROCKET_PORT=8000 | + | |
| + | ROCKET_PORT=4567 # your port here | ||
| export ROCKET_PORT | export ROCKET_PORT | ||
| - | # https://github.com/dani-garcia/vaultwarden/ | + | # ROCKET_TLS=' |
| - | WEB_VAULT_ENABLED=false | + | # LOG_FILE='/ |
| - | export WEB_VAULT_ENABLED | + | |
| - | LOG_FILE=/ | + | SIGNUPS_ALLOWED=false |
| - | export | + | export |
| - | # | + | |
| - | screen -d -m -S vaultwarden / | + | SIGNUPS_VERIFY=true |
| - | </ | + | export SIGNUPS_VERIFY |
| - | <file bash / | + | INVITATIONS_ALLOWED=false |
| - | # | + | export INVITATIONS_ALLOWED |
| - | su - vaultwarden -c /home/ | + | DOMAIN=' |
| + | export DOMAIN | ||
| + | |||
| + | # ADMIN_TOKEN= # generate one with ~$ openssl rand -base64 48 | ||
| + | # export ADMIN_TOKEN | ||
| + | |||
| + | SMTP_HOST=' | ||
| + | export SMTP_HOST | ||
| + | |||
| + | SMTP_FROM=' | ||
| + | export SMTP_FROM | ||
| + | |||
| + | SMTP_PORT=465 | ||
| + | export SMTP_PORT | ||
| + | |||
| + | SMTP_SECURITY=force_tls | ||
| + | export SMTP_SECURITY | ||
| + | |||
| + | SMTP_USERNAME=' | ||
| + | export SMTP_USERNAME | ||
| + | |||
| + | SMTP_PASSWORD=' | ||
| + | export SMTP_PASSWORD | ||
| + | |||
| + | # Beta feature | ||
| + | # ORG_GROUPS_ENABLED=false | ||
| + | # export ORG_GROUPS_ENABLED | ||
| </ | </ | ||
| - | ... und jetzt starten wir ihn: | + | <file c / |
| - | # /usr/local/bin/ | + | # https://github.com/dani-garcia/ |
| - | # cat /var/log/vaultwarden.log | + | |
| - | [2024-04-03 22:26:38.536][start][INFO] Rocket has launched from http://0.0.0.0:8000 | + | ### vaultwarden |
| + | upstream vaultwarden { | ||
| + | zone vaultwarden 64k; | ||
| + | server [:: | ||
| + | keepalive 2; | ||
| + | } | ||
| + | |||
| + | # Needed to support websocket connections | ||
| + | # See: https://nginx.org/en/ | ||
| + | # Instead of " | ||
| + | # Else all keepalive connections will not work. | ||
| + | map $http_upgrade $connection_upgrade { | ||
| + | default upgrade; | ||
| + | '' | ||
| + | } | ||
| + | |||
| + | server { | ||
| + | listen | ||
| + | server_name vaultwarden.domain.de; | ||
| + | |||
| + | include | ||
| + | |||
| + | client_max_body_size 525M; | ||
| + | |||
| + | location / { | ||
| + | include / | ||
| + | proxy_pass http:// | ||
| + | } | ||
| + | } | ||
| + | </ | ||
/home/http/wiki/data/attic/bitwarden.1712178653.txt · Zuletzt geändert: von manfred
