update vaultwarden uid and gid and removed yubikey variables since i switched to trezor

This commit is contained in:
titanz 2025-02-06 18:45:03 +01:00
parent a41430e9c4
commit 0e238c80bc
Signed by: titanz
GPG Key ID: EABC72179C71D4F5

View File

@ -1,7 +1,7 @@
services: services:
vaultwarden: vaultwarden:
container_name: vaultwarden container_name: vaultwarden
image: ghcr.io/polarix-containers/vaultwarden:latest image: git.conorz.at/titanz-containers/vaultwarden:latest
restart: always restart: always
volumes: volumes:
- /home/titanz/vaultwarden:/data:Z - /home/titanz/vaultwarden:/data:Z
@ -19,9 +19,7 @@ services:
- DOMAIN=${DOMAIN} - DOMAIN=${DOMAIN}
- ROCKET_PORT=8080 - ROCKET_PORT=8080
- DATABASE_URL=postgresql://${POSTGRES_USER}:${POSTGRES_PASSWORD}@postgres:5432/${POSTGRES_USER} - DATABASE_URL=postgresql://${POSTGRES_USER}:${POSTGRES_PASSWORD}@postgres:5432/${POSTGRES_USER}
- YUBICO_CLIENT_ID=82851 user: "200003:200003"
- YUBICO_SECRET_KEY=mLPiA1hxQGOan61RXAtL63xLrLE=
user: "3001:3001"
read_only: true read_only: true
security_opt: security_opt:
- "no-new-privileges=true" - "no-new-privileges=true"
@ -30,7 +28,7 @@ services:
postgres: postgres:
container_name: vaultwarden-postgres container_name: vaultwarden-postgres
image: ghcr.io/polarix-containers/postgres:17 image: git.conorz.at/titanz-containers/postgres:17
restart: always restart: always
volumes: volumes:
- ./postgres:/var/lib/postgresql/data:Z - ./postgres:/var/lib/postgresql/data:Z
@ -41,9 +39,9 @@ services:
test: ["CMD", "pg_isready", "-U", "vaultwarden"] test: ["CMD", "pg_isready", "-U", "vaultwarden"]
interval: 15s interval: 15s
timeout: 5s timeout: 5s
user: "70:70" user: "200012:200012"
read_only: true read_only: true
tmpfs: tmpfs:
- /var/run/postgresql:size=50M,mode=0770,uid=70,gid=70,noexec,nosuid,nodev - /var/run/postgresql:size=50M,mode=0770,uid=200012,gid=200012,noexec,nosuid,nodev
security_opt: security_opt:
- "no-new-privileges=true" - "no-new-privileges=true"