Why this Configuration?
- True Data Sovereignty: 100% GDPR-compliant on-premises deployment. You own your configuration and data without vendor lock-in.
- Hardware Agnostic: Optimized and verified across low-power ARM64 SBCs (Raspberry Pi 5) and x86_64 hypervisors (Proxmox VE LXC & VM).
- Engine Freedom: Tested and supported under standard Docker Engine and unprivileged rootless Podman.
- Platform Verification: Tested on Proxmox LXC: docker (11.8.9, 2026-09-14), podman (11.8.9, 2026-09-14); Proxmox VM: docker (11.8.9, 2026-09-14), podman (11.8.9, 2026-09-14).
Quick Start (Standalone Docker Compose)
The snippet below is immediately ready to run in any standard Docker or Podman environment:
services:
romm:
image: "ghcr.io/zurdi15/romm:latest"
container_name: njorddeploy-romm
restart: unless-stopped
environment:
- "ROMM_AUTH_SECRET_KEY=f47ac10b58cc4372a5670e02b2c3d4e5"
- "DB_HOST=njorddeploy-romm-db"
- "DB_NAME=romm"
- "DB_USER=romm_user"
- "DB_PASSWD=romm_db_secure_pass_123"
volumes:
- "./data/romm/resources:/romm/resources"
- "./data/romm/library:/romm/library"
- "./data/romm/assets:/romm/assets"
- "./data/romm/config:/romm/config"
ports:
- "8090:8080"
depends_on:
- romm-db
user: "0:0"
networks:
- njorddeploy_net
romm-db:
image: mariadb:11
container_name: njorddeploy-romm-db
restart: unless-stopped
environment:
- "MARIADB_ROOT_PASSWORD=romm_db_secure_pass_123"
- "MARIADB_DATABASE=romm"
- "MARIADB_USER=romm_user"
- "MARIADB_PASSWORD=romm_db_secure_pass_123"
volumes:
- "./data/romm/mysql:/var/lib/mysql"
user: "0:0"
networks:
- njorddeploy_net
networks:
njorddeploy_net:
Start the service directly via the command line: docker compose up -d
Configuration & Environment Variables
Key configuration parameters and defaults derived from the NjordDeploy component template:
| Variable | Default Value | Description |
|---|---|---|
ROMM_WEB_PORT |
8090 |
Port for the RomM web interface. |
ROMM_AUTH_SECRET_KEY |
f47ac10b58cc4372a5670e02b2c3d4e5 |
Secret key for authentication (32-character string). |
ROMM_DB_PASSWORD |
romm_db_secure_pass_123 |
Password for MariaDB romm database. |
Ecosystem & Enterprise Integration
- Reverse Proxy Ingress Ready: Pre-configured for Caddy, Traefik, or Nginx Proxy Manager with automatic Let's Encrypt TLS certificates.
- Zero-Trust Mesh VPN: Seamless integration with WireGuard or Tailscale/Headscale mesh networks for secure remote administration.
- Transactional State Backups: Ready for point-in-time database dumps and container-safe persistent volume freezing.
Effortless Management with NjordDeploy
Deploy, monitor, and update this service with a single click on your own hardware via the NjordDeploy Configurator.