From 0d95c60bb603f6d5c80bad3c3ab923665f8a5a07 Mon Sep 17 00:00:00 2001 From: Tommy Date: Wed, 23 Nov 2022 08:17:23 -0500 Subject: [PATCH] Properly isolate networks Signed-off-by: Tommy --- README.md | 2 +- docker-compose.yml | 12 +++++++----- 2 files changed, 8 insertions(+), 6 deletions(-) diff --git a/README.md b/README.md index bbdb253..ebcd8be 100644 --- a/README.md +++ b/README.md @@ -1,4 +1,4 @@ -# Synapse-Docker-Compose +# Vaultwarden Docker-Compose Vaultwarden Docker-Compose 1. Update `docker-compose.yml` diff --git a/docker-compose.yml b/docker-compose.yml index 9f798b7..cfc996b 100644 --- a/docker-compose.yml +++ b/docker-compose.yml @@ -13,6 +13,7 @@ services: - vaultwarden:/data networks: - vaultwarden + - postgres read_only: true security_opt: - no-new-privileges:true @@ -45,7 +46,7 @@ services: - CAP_NET_BIND_SERVICE postgres: - image: postgres:alpine + image: docker.io/postgres-15:alpine container_name: postgres volumes: - postgres:/var/lib/postgresql/data @@ -53,8 +54,8 @@ services: - POSTGRES_USER=vaultwarden - POSTGRES_PASSWORD=YOUR_POSTGRESQL_PASSWORD restart: unless-stopped - networks: - - vaultwarden + networks: + - postgres user: "70:70" read_only: true tmpfs: @@ -65,8 +66,9 @@ services: - ALL volumes: - postgres: vaultwarden: + postgres: networks: - vaultwarden: \ No newline at end of file + vaultwarden: + postgres: