Self-host Passbolt with Docker
An open-source password manager built for teams, compatible with the usual browser extensions.
This page describes the Levelrail template for Passbolt (Security). It deploys the services below as one Docker Compose app on your own server.
Project site: https://www.passbolt.com/docs.Recommended memory: about 512 MiB.
Services, ports and volumes
| Service | Image | Container ports | Volumes |
|---|---|---|---|
db | mariadb:11 | none | passbolt_db_data -> /var/lib/mysql |
passbolt | passbolt/passbolt:5.16.0-1-ce | 80 | passbolt_gpg -> /etc/passbolt/gpgpassbolt_jwt -> /etc/passbolt/jwt |
Environment variables
| Service | Variable | Value |
|---|---|---|
db | MARIADB_DATABASE | Preset in the template |
db | MARIADB_PASSWORD | Generated at deploy |
db | MARIADB_ROOT_PASSWORD | Generated at deploy |
db | MARIADB_USER | Preset in the template |
passbolt | APP_FULL_BASE_URL | Preset in the template |
passbolt | DATASOURCES_DEFAULT_DATABASE | Preset in the template |
passbolt | DATASOURCES_DEFAULT_HOST | Preset in the template |
passbolt | DATASOURCES_DEFAULT_PASSWORD | Generated at deploy |
passbolt | DATASOURCES_DEFAULT_USERNAME | Preset in the template |
passbolt | PASSBOLT_SSL_FORCE | Preset in the template |
Passwords and keys marked as generated are created for you when the app is deployed and stored as secrets. Values are not shown here.
Deploy Passbolt with Levelrail
In the dashboard, open Apps, choose New app, then Browse templates, and select Passbolt. Review the Compose body and deploy.
With the CLI:
levelrail-cli templates deploy passbolt --name my-passboltSee Service template catalog for how templates work, and Getting started if you have not installed Levelrail yet.
More Security templates
All templates are listed in the self-host gallery.