Тёмный

Let's Install: Vaultwarden with Docker and Cloudflare 

Techdox
Подписаться 13 тыс.
Просмотров 16 тыс.
50% 1

Опубликовано:

 

6 окт 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 54   
@Practical-IT
@Practical-IT 11 месяцев назад
Hello from a fellow content creator in Michigan, USA. Just wanted to drop a line to let you know I enjoyed this video. Short and to the point. I appreciate your efforts and look forward to future videos.
@Techdox
@Techdox 11 месяцев назад
Thank you, that means a lot :) hope you are well
@diszydreams
@diszydreams 11 месяцев назад
Wow! I had been banging my head against the wall with cloudflare, letsencrypt and bitwarden for a few days, ,making progress and learning but not getting it to work. Then I used this tutorial and bam, in 15 minutes I had everything up and running. Thank you so much!
@Techdox
@Techdox 11 месяцев назад
Glad I could help :)
@Glatze603
@Glatze603 6 месяцев назад
Hi and thanks for this content. I have a few comments about the content of this video: I would use another Port than 80, I would create locale certificates in order to be able to login localy without any dependencies (reverse proxy, internet connection), then I would show activating MFA because Vaultwarden is reachable for everyone! Then, in addition to the actual CF tunnel, at least one application rule should be created (even if in the Vaultwarden example it is just a GEO restriction). In addition, some security settings should also be made within Vaultwarden for secure operation on the Internet (disallow signup, disallow invitations, disallow show password hint, activate yubikey...). Deploying an application is one thing, but safely deploying it is much more demanding.
@Techdox
@Techdox 6 месяцев назад
Yeah, in the referenced video Cloudflare Zero Trust, I walk through the application policies and how to lock down and secure them around the 1:10 mark :)
@MrTrilock
@MrTrilock 4 месяца назад
I'd like to know more about the whole how do I disallow new signups. . I was testing this and if someone had my cloud flare name they could sign up on vautlwarden
@Techdox
@Techdox 4 месяца назад
@@MrTrilock From their offical docs - After you have completed signed up new members to your Vaultwarden server, it is highly recommended that you disable new user signups inside your Admin Dashboard -> General Settings -> Allow new signups -> uncheck the box. Tell the user to create an account on your Vaultwarden server.
@MrTrilock
@MrTrilock 4 месяца назад
@@Techdox thank you yet again for your very prompt replies.. all these projects and my ADHD goes crazy. Just set up traefik , now to get authentik to work with it and finish vault warden security sides and try my hand at wordpress
@ikonFXX
@ikonFXX 2 месяца назад
Thank you so much for creating this, i was fiddling with caddy for far too long!
@ianjharris
@ianjharris 6 месяцев назад
Dude, offering 1on1 for YT members is so fucking smart
@tankareno
@tankareno 8 месяцев назад
This is interesting. I can log in to vaultwarden on the machine I installed Cloudflared tunnel on, but not my other one. I can also log into the self-hosted app on my phone, selecting the option the same way you did.
@Guinhowbr
@Guinhowbr 9 месяцев назад
Thank you, this helped me a lot!
@sheuves
@sheuves 8 месяцев назад
Thanks for the tutorial! I managed to finally get access to my Vault Warden instance throught the web. I am using a third party hosting for my domain, and managed to route it by changing the nameserver. Only issue I know have, is that it is still a HTTP connection, and can't seem to manage to get HTTPS to work. I would be ever grateful if you could help me figure out what to do! Thanks in advance, Sam
@Techdox
@Techdox 8 месяцев назад
Hey, have you looked at Cloudflare tunnels? It’s a great way to expose services using https and making it secure. I have a few videos about it
@sdram7395
@sdram7395 2 месяца назад
Hello! Thank you for this tutorial. How can I set up automatic and encrypted backups of the Vaultwarden database to another server? Isn't it risky to store passwords on a single server in case of an interruption? Thanks.
@Chetclocknarokmeejing
@Chetclocknarokmeejing Месяц назад
why css not load on my domain, but can load on my private ip
@mariobrandt2984
@mariobrandt2984 2 месяца назад
How can i install it with Portaier ? Is there a yml file ?
@whoanelly-
@whoanelly- 19 дней назад
question tho. While innternal shouldnt we want this to be on another port other than 80? We are a small company and want to push this out the user base but port 80 is throwing me off
@Techdox
@Techdox 19 дней назад
@@whoanelly- you can set it to any port you like, ideally you should have this publicly exposed anyway and should be behind a VPN or something like Cloudflare tunnel etc
@DavidWX877
@DavidWX877 5 месяцев назад
Great video, i just did this and it works great! But my worry is if someone knows the web address they can get to the vaultwarden log in page. I tried setting up some security on cloud flare where it would require a pin but doing so makes the bitwarden app not work for obvious reasons. How do you add security that will work with the bitwarden app?
@Techdox
@Techdox 5 месяцев назад
What I did was white list my home IP in Cloudflare so the app worked, then when I’m away I could connect via VPN which then allowed me to connect to my service. You could also look at Cloudflare WARP as well
@DavidWX877
@DavidWX877 5 месяцев назад
@@Techdox so basically only your IP is the only one allowed to use it? Where in cloud flare would i enter the IP to be white listed?
@Techdox
@Techdox 5 месяцев назад
Check this documentation out - developers.cloudflare.com/cloudflare-one/policies/gateway/network-policies/ Let me know if you still need a hand
@joelnohnn1
@joelnohnn1 Месяц назад
How secure is it to expose vaultwarden to the internet?
@Techdox
@Techdox Месяц назад
@@joelnohnn1 I wouldn’t, I would make it accessible via a VPN or a Cloudflare tunnel
@hawsroy
@hawsroy 10 месяцев назад
thanks for the videos they are very helpful for a noobie like me to all this. is there any way to get this set up completely free or will you always end up having to pay for a domain? eventually i think I would like to get this set up completely locally, so maybe I will just get a domain anyway.
@Techdox
@Techdox 10 месяцев назад
If you wanted you could have this setup for free locally without a domain name and then connect to it using a vpn?
@mogallapu_ram
@mogallapu_ram 9 месяцев назад
hello thanks for the video, i configured vaultwarden with your help, i have a question, how to disable signup at the login page, can you just add it to the end of the video, it would be a great help, stopping other users to login
@Techdox
@Techdox 9 месяцев назад
Feel free to join the Discord to explain this more, but you could add the Cloudflare SSO auth in-front of vaultwarden so people will see that and not your vaultwarden page
@hollyh00d12
@hollyh00d12 4 месяца назад
I got all the way to the end, but when I went to make something in vaultwarden I got an error and it is pointing to the cloudflare tunnel as the issue? I can get to the site fine but not add anything?
@Techdox
@Techdox 4 месяца назад
What’s the error?
@hollyh00d12
@hollyh00d12 4 месяца назад
@@Techdox I figured it out, needed to run the CF tunnel as a service in Ubuntu. When I closed the putty terminal it killed the tunnel. (Duh)
@kiranjadhav4125
@kiranjadhav4125 8 месяцев назад
Have you figured out a way to have the additional authentication to work with the iOS bitwarden app with this setup?
@Techdox
@Techdox 8 месяцев назад
As in if you have the Cloudflare sso in front of your app? I have white listed my public IP address in Cloudflare zero trust which means my phone app can hit bitwarden and then I use my VPN while away from home
@kiranjadhav4125
@kiranjadhav4125 8 месяцев назад
@@Techdox you got my question right. How do you whitelist your phone’s public IP address in Cloudflare? Also wouldn’t it change at some time by your phone carrier?
@Techdox
@Techdox 8 месяцев назад
@@kiranjadhav4125 when I’m at home it’s my public IP for my home network and then when I’m away I use my VPN so I continue to use my public IP of my home network. This IP is static. Check this out - developers.cloudflare.com/cloudflare-one/policies/access/
@ms7165
@ms7165 7 месяцев назад
Thanks!
@Techdox
@Techdox 7 месяцев назад
Appreciate the support! ❤
@Hazardus320
@Hazardus320 8 месяцев назад
Is there any need to renew https certificates using cloudflare tunnels? Or do they handle that automatically on their end?
@Techdox
@Techdox 8 месяцев назад
All handled for you :)
@bavmoody
@bavmoody 9 месяцев назад
Hi I managed to set up Vaultwarden with Cloudflare tunnel.. I am able to access via Web on my PC/Linux/android/iPhone.. However I cannot log in onto the apps or browser extentions.. Any way you could help? I am unable to find an answer 😭
@Techdox
@Techdox 9 месяцев назад
Is your Cloudflare tunnel behind a security policy? For example you can access vault warden via the web but need to login via SSO or do you just hit the vaultwarden UI when accessing the address?
@bavmoody
@bavmoody 9 месяцев назад
@@Techdox I hit the VW Web UI straight
@jonyskids
@jonyskids 6 месяцев назад
Does not seem very secure?
@Techdox
@Techdox 6 месяцев назад
Selfhosting comes with the security risks and it’s up to you how you want to secure it the most. Vaultwarden itself is a solid service and then putting it behind something like a vpn or Cloudflare makes it pretty robust
@ms7165
@ms7165 7 месяцев назад
After getting this setup as per the vid, what would you expect to happen if you access via web IP? Is the https issue corrected? If not, how?
@Techdox
@Techdox 7 месяцев назад
Access it via the domain name which will be via https
@ms7165
@ms7165 7 месяцев назад
What if I want to connect via IP rather than domain?
@Techdox
@Techdox 7 месяцев назад
@@ms7165 then you will need to create signed certificates for that IP address. Like you just want to access it locally but via https?
@ms7165
@ms7165 7 месяцев назад
Ok. Now ill just need to figure out how to do that. Thanks
@Techdox
@Techdox 7 месяцев назад
@@ms7165 I’ll need to make a video to cover it at some point, until then check out deliciousbrains.com/ssl-certificate-authority-for-local-https-development/
Далее
Traefik 3 and FREE Wildcard Certificates with Docker
39:37
НЮША УСПОКОИЛА КОТЯТ#cat
00:43
Просмотров 1 млн
Bitwarden Vs Vaultwarden: Review & Comparison
18:22
Просмотров 43 тыс.
Dockge: The New Docker Manager You Need To See!
22:23
Bitwarden: The Best Selfhosted Password Manager?
28:54
Self-Host PhotoPrism with Docker Compose
14:34
Просмотров 5 тыс.
Nginx Proxy Manager Tutorial - Easy SSL Certificates
17:54