Why this Configuration?
- True Data Sovereignty: 100% GDPR-compliant on-premises deployment. You own your configuration and data without vendor lock-in.
- Hardware Agnostic: Optimized and verified across low-power ARM64 SBCs (Raspberry Pi 5) and x86_64 hypervisors (Proxmox VE LXC & VM).
- Engine Freedom: Tested and supported under standard Docker Engine and unprivileged rootless Podman.
- Platform Verification: Tested on Proxmox LXC: docker (2026.9.13-d4ce87c23, 2026-09-14), podman (7.4.11, 2026-09-14); Proxmox VM: docker (2026.9.13-d4ce87c23, 2026-09-14), podman (7.4.11, 2026-09-14).
Quick Start (Standalone Docker Compose)
The snippet below is immediately ready to run in any standard Docker or Podman environment:
services:
searxng:
container_name: njorddeploy-searxng
image: "searxng/searxng:latest"
ports:
- "8888:8080"
environment:
- "SEARXNG_BASE_URL=http://8888"
- "SEARXNG_SECRET_KEY=a1b2c3d4e5f6a7b8c9d0e1f2a3b4c5d6e7f8a9b0c1d2e3f4a5b6c7d8e9f0a1b2"
- "SEARXNG_REDIS_URL=redis://njorddeploy-searxng-redis:6379/0"
volumes:
- "data_root/searxng/settings.yml:/etc/searxng/settings.yml:ro"
networks:
- njorddeploy_net
user: "0:0"
depends_on:
- searxng-redis
restart: unless-stopped
searxng-redis:
container_name: njorddeploy-searxng-redis
image: redis:7-alpine
volumes:
- "./data/searxng/redis-data:/data"
networks:
- njorddeploy_net
restart: unless-stopped
networks:
njorddeploy_net:
Start the service directly via the command line: docker compose up -d
Configuration & Environment Variables
Key configuration parameters and defaults derived from the NjordDeploy component template:
| Variable | Default Value | Description |
|---|---|---|
SEARXNG_WEB_PORT |
8888 |
The port for accessing the SearXNG web interface. |
SEARXNG_SECRET |
a1b2c3d4e5f6a7b8c9d0e1f2a3b4c5d6e7f8a9b0c1d2e3f4a5b6c7d8e9f0a1b2 |
A secret key used by SearXNG for session management and security. Generate a strong, random string. |
Ecosystem & Enterprise Integration
- Reverse Proxy Ingress Ready: Pre-configured for Caddy, Traefik, or Nginx Proxy Manager with automatic Let's Encrypt TLS certificates.
- Zero-Trust Mesh VPN: Seamless integration with WireGuard or Tailscale/Headscale mesh networks for secure remote administration.
- Transactional State Backups: Ready for point-in-time database dumps and container-safe persistent volume freezing.
Effortless Management with NjordDeploy
Deploy, monitor, and update this service with a single click on your own hardware via the NjordDeploy Configurator.