Waarom deze configuratie?
- Echte data-soevereiniteit: 100% AVG/GDPR compliant. Lokale gegevens en configuratie blijven op eigen hardware zonder cloud-afhankelijkheid.
- Hardware agnostisch: Geoptimaliseerd voor Raspberry Pi 5 (ARM64) en Proxmox VE hypervisors (x86_64 LXC & VM).
- Engine vrijheid: Getest en gevalideerd voor Docker CE en rootless Podman zonder root-privileges.
- Platform verificatie: Tested on Proxmox LXC: docker (1.37.3, 2026-09-18), podman (1.37.3, 2026-09-14); Proxmox VM: docker (1.37.3, 2026-09-14), podman (1.37.3, 2026-09-14).
Snelle Start (Standalone Docker Compose)
Onderstaand compose-fragment is direct te gebruiken in elke Docker- of Podman-omgeving:
services:
vaultwarden:
image: vaultwarden/server:latest
container_name: vaultwarden
restart: unless-stopped
volumes:
- './data/vaultwarden:/data'
ports:
- '8088:80'
environment:
- ADMIN_TOKEN_HASH={{ DOTENV.VAULTWARDEN_ADMIN_TOKEN }}
- SIGNUPS_ALLOWED=true
- WEB_VAULT_ENABLED=true
networks:
- njorddeploy_net
networks:
njorddeploy_net:
Start de service direct via de commandline: docker compose up -d
Configuratie & Omgevingsvariabelen
Belangrijkste configuratieparameters en standaardwaarden uit de NjordDeploy component-sjabloon:
| Variable | Default Value | Description |
|---|---|---|
SIGNUPS_ALLOWED |
true |
Set to 'true' to allow new users to register, or 'false' to disable registration. |
WEB_VAULT_ENABLED |
true |
Set to 'true' to enable the web-based vault interface. |
VAULTWARDEN_WEB_PORT |
8088 |
The external TCP port for the Vaultwarden web interface. |
VAULTWARDEN_ADMIN_TOKEN |
{{ DOTENV.VAULTWARDEN_ADMIN_TOKEN }} |
Secure hashed token for the admin panel. Generate one via docker exec -it vaultwarden ./vaultwarden hash. For maximum security, leave this blank in your .env file to disable the admin panel entirely. |
Ecosysteem & Bedrijfsintegratie
- Reverse Proxy Klaar: Direct te koppelen met Caddy, Traefik of Nginx Proxy Manager inclusief automatische Let's Encrypt TLS.
- Veilige Remote Toegang: Naadloos te combineren met WireGuard of Tailscale/Headscale voor veilige toegang buiten het lokale netwerk.
- Transactieve Back-ups: Geschikt voor point-in-time database dumps en container-safe volume snapshotting via NjordDeploy.
Eenvoudig beheren via NjordDeploy
Installeer, bewaak en update deze service met 1 klik op uw eigen Raspberry Pi of Proxmox server via de NjordDeploy Configurator.