← All guides
Vaultwarden
Lightweight, self-hosted password manager server, compatible with official Bitwarden apps and browser extensions.
This guide is synthesized from Vaultwarden's own official documentation, linked above — always cross-check exact package/version names there before running these commands on a production server, since distro and project versions move over time.
1Run the container
docker run -d --name vaultwarden -e WEBSOCKET_ENABLED=true -v /vw-data/:/data/ -p 8080:80 vaultwarden/server:latest2Put it behind HTTPS
The official Bitwarden apps refuse to connect to a server without valid HTTPS — put Vaultwarden behind a reverse proxy (nginx, Caddy, or Nginx Proxy Manager) with a real certificate before connecting any client.
3Disable public signups once your accounts exist
Set SIGNUPS_ALLOWED=false as an extra -e flag once you and anyone else you want have created accounts — otherwise anyone who finds the server can register.