diff --git a/examples/vaultwarden/docker-compose.yml b/examples/vaultwarden/docker-compose.yml index 23af5a8..830907b 100644 --- a/examples/vaultwarden/docker-compose.yml +++ b/examples/vaultwarden/docker-compose.yml @@ -41,10 +41,16 @@ services: # - traefik.http.routers.vaultwarden.rule=Host(`bitwarden.example.com`) # - traefik.http.routers.vaultwarden.service=vaultwarden # - traefik.http.services.vaultwarden.loadbalancer.server.port=80 + ## Block access to the /admin dashboard from public ip ranges # - traefik.http.routers.vaultwarden-admin.rule=Host(`bitwarden.example.com`) && Path(`/admin`) # - traefik.http.routers.vaultwarden-admin.service=vaultwarden # - traefik.http.services.vaultwarden-admin.loadbalancer.server.port=80 # - traefik.http.routers.vaultwarden-admin.middlewares=local-ipwhitelist@file,authelia@file + ## Block access to the /api/version endpoint from public ip ranges + # - traefik.http.routers.vaultwarden-admin.rule=Host(`bitwarden.example.com`) && Path(`/api/version`) + # - traefik.http.routers.vaultwarden-admin.service=vaultwarden + # - traefik.http.services.vaultwarden-admin.loadbalancer.server.port=80 + # - traefik.http.routers.vaultwarden-admin.middlewares=local-ipwhitelist@file,authelia@file # this service will backup your vaultwarden instance correctly # see https://github.com/Bruceforce/vaultwarden-backup for more information