-
-
Notifications
You must be signed in to change notification settings - Fork 2.2k
Disable admin token
docgalaxyblock edited this page Mar 10, 2024
·
6 revisions
Important
Your administration page will be accessible to anyone
If you have another method you would like to use for authentication to the /admin
page then you can set the DISABLE_ADMIN_TOKEN
variable to true. This will disable the built in ADMIN_TOKEN
used for authentication while also enabling the admin panel. Anyone with access to the URL will be able to access the admin panel. You will need to take extra steps to secure it. This includes externally and locally.
docker run -d --name bitwarden \
-e DISABLE_ADMIN_TOKEN=true \
-v /vw-data/:/data/ \
-p 80:80 \
vaultwarden/server:latest
- Which container image to use
- Starting a container
- Using Docker Compose
- Using Podman
- Updating the vaultwarden image
- Overview
- Enabling admin page
- SMTP configuration
- Disable registration of new users
- Disable invitations
- Enabling WebSocket notifications
- Enabling Mobile Client push notification
- Other configuration
- Using the MariaDB (MySQL) Backend
- Using the PostgreSQL Backend
- Running without WAL enabled
- Migrating from MariaDB (MySQL) to SQLite
- Hardening Guide
- Password hint display
- Enabling U2F and FIDO2 WebAuthn authentication
- Enabling YubiKey OTP authentication
- Fail2Ban Setup
- Fail2Ban + ModSecurity + Traefik + Docker
- Translating the email templates
- Translating admin page
- Customize Vaultwarden CSS
- Using custom website icons
- Disabling or overriding the Vault interface hosting
- Building binary
- Building your own docker image
- Git hooks
- Differences from the upstream API implementation