0
0
Fork 0
mirror of https://github.com/dani-garcia/vaultwarden synced 2024-11-11 20:42:50 +01:00

Add ref to general discussion about subpath hosting for security

Robin Schneider 2020-01-19 21:47:30 +01:00
parent 9e74a89a87
commit d9f03821da

@ -96,7 +96,7 @@ server {
## Nginx (by ypid)
Ansible inventory example that uses DebOps to configure nginx as a reverse proxy for bitwarden_rs. I choose to go with the PSK in the URL for additional security to not expose the API to everyone on the Internet because the client apps do not support client certificates yet (I tested it). Note using subpath/PSK requires to patch the source code and recompile, ref: https://github.com/dani-garcia/bitwarden_rs/issues/241#issuecomment-436376497. /admin is untested.
Ansible inventory example that uses DebOps to configure nginx as a reverse proxy for bitwarden_rs. I choose to go with the PSK in the URL for additional security to not expose the API to everyone on the Internet because the client apps do not support client certificates yet (I tested it). Note using subpath/PSK requires to patch the source code and recompile, ref: https://github.com/dani-garcia/bitwarden_rs/issues/241#issuecomment-436376497. /admin is untested. For general discussion about subpath hosting for security refer to: https://github.com/debops/debops/issues/1233
```YAML
bitwarden__fqdn: 'vault.example.org'