Skip to main content

Instance Settings

Access the Admin Portal

The System Administrator Portal for your instance is available at https://your.domain.com/admin

Settings to be aware about

If you are the main admin of the instance, it is good to be aware that there are a couple of settings that we do NOT set by default that you may wish to change. In order of appearance...

Allow new signups

2021-08-10-21-52-10-Vaultwarden Admin Panel.png

This may seem counter-intuitive until you realize that we set up the initial user based on this availability. This also lets us easily onboard any additional users onto the instance. However, it is worth looking into as an option to set when creating the instance. However, it does not cause a major attack vector, especially when additional restrictions are introduced. Also, it enables zero data-leakage, as it simply allows an additional account to be enabled on the system.

Set attachment limits

2021-08-10-21-51-51-Vaultwarden Admin Panel.png

Setting attachment limits avoids the really large attack vector from leaving account registrations open, which is to run an instance out of space by uploading very large attachments. This can be set from the instance setup, and from the admin page.

SMTP Email Settings

2021-08-10-21-53-26-Vaultwarden Admin Panel.png

Like most services offered, because there is currently no bundled SMTP service,  this is left blank. However, this can be connected to any email service that you have setup.

Email signup limitations

Implementing the above allows setting the below limitations on signups

image-1628647614573.png

This means that you can require signup emails to be verified for signups, but only to whitelisted domains. This works great if you work in an organization that uses their own domain addresses.