diff --git a/Disable-admin-token.md b/Disable-admin-token.md new file mode 100644 index 0000000..67770a4 --- /dev/null +++ b/Disable-admin-token.md @@ -0,0 +1,11 @@ +**IMPORTANT**: Your administration page will be accessible to anyone + +If you have another method you would like to use for authentication to the `/admin` page then you can set the `DISABLE_ADMIN_TOKEN` variable to true. This will disable the built in `ADMIN_TOKEN` used for authentication and wile also enabling the admin panel. Anyone with access to the URL will be able to access the admin panel. You will need to take extra steps to secure it. This includes externally and locally. + +```sh +docker run -d --name bitwarden \ + -e DISABLE_ADMIN_TOKEN=true \ + -v /bw-data/:/data/ \ + -p 80:80 \ + mprasil/bitwarden:latest +``` \ No newline at end of file