Easy to install and highly configurable debian packages for running Vaultwarden on your system natively without docker - with mysql, postgresql, sqlite and s3 support. Out of the box it can be installed and built on Debian stable, Debian oldstable and latest Ubuntu LTS.
The easiest way to install vaultwarden is using the apt repository on apt.crunchy.run/vaultwarden. Installation instructions are available directly on the repository page.
Quick installation:
sudo apt install curl
curl -fsSL https://apt.crunchy.run/vaultwarden/install.sh | sudo bash -
sudo apt install vaultwardenAlternatively, download prebuilt packages from the releases section and verify signatures with the signing-key. Packages are automatically built in Github Actions. You will also need vaultwarden-web-vault-deb.
After installation, you can configure the service to your liking by editing /etc/vaultwarden/vaultwarden.env. Restart the service afterwards using systemctl restart vaultwarden. Visit the Vaultwarden wiki for additional resources.
- Get in touch - For issues with Vaultwarden
- Issues and Discussions - For issues with or related to these packages
These packages favour the distribution-native way of running software. Wherever possible the packages link against system libraries and reuse distribution packages, so they receive the distribution's regular security updates and stability, with newer distributions or backports providing more recent versions.
By default the systemd services are extensively sandboxed, isolating the service from the rest of the system, while the configuration and data directories are restricted to the service's own user. Complex setups may need extra configuration, freely adjustable in the service file, whose comments and/or the Wiki should cover the common cases.
This project aims to closely match the releases of upstream. The first release in each minor version series starts as a prerelease with a 3-day waiting period to allow upstream to fix oversights in new features or changes. Subsequent releases follow the same waiting period. After the waiting period has passed, all prereleases are automatically promoted to normal releases including new releases. Important releases may skip the waiting period.
This debian source package builds Vaultwarden natively on your build environment. No annoying docker! It is managed with git-buildpackage and aims to be a pretty good quality debian source package. You can find the maintaining command summary in debian/gbp.conf.
Installed git-buildpackage from your apt, clone with it and switch to the folder:
gbp clone https://github.com/dionysius/vaultwarden-deb.git
cd vaultwarden-debInstalled build dependencies as defined in debian/control Build-Depends (will notify you in the build process otherwise). mk-build-deps can help you automate the installation, for example:
mk-build-deps -i -r debian/control -t "apt-get -o Debug::pkgProblemResolver=yes --no-install-recommends --yes"If your distro doesn't package rustup, check *-updates/*-backports or install it using the rustup installer.
There are many arguments to fine-tune the build (see gbp buildpackage --help and dpkg-buildpackage --help), notable options: -b (binary-only, no source files), -us (unsigned source package), -uc (unsigned .buildinfo and .changes file), --git-export-dir=<somedir> (before building the package export the source there), for example:
gbp buildpackage -b -us -ucOn successful build packages can now be found in the parent directory ls ../*.deb.
Add the target architecture with dpkg --add-architecture <arch> and update package lists with apt update.
Install build dependencies using mk-build-deps from above with additional --host-arch <arch> flag.
Use the build command from above with additional -a<arch> and -Pcross,nocheck flags.