2026-09-29 12:09 UTC
Now for the gory details.
Yunohost uses an LDAP directory for authentication. Vaultwarden prefers an Open ID Connect server so the fix is to install another app called Dex and get them to talk to each other.
This requires both Dex and Vaultwarden to have OIDC configurations that match. Dex can only be configured through the command line and Vaultwarden doesn't (yet) auto-configure it.
On top, Yunohost strips basic auth HTTP headers that Dex needs for the OIDC exchange.
2/3
Replies (1)
-
@brunogirin@mastodon.me.uk 2026-09-29 12:21
So all this meant a lot of fiddling. But the cool thing about FOSS is that the maintainer of the Vaultwarden Yunohost integration added the Dex auto-config in a test branch this morning so it worked great so hopefully it will be available in main soon. Oh and last but not least, if you setup Vaultwarden on a sub-domain, you need to enable outgoing email on that sub-domain as it needs to send email notifications. Conclusion: Vaultwarden is not quite plug and play yet. 3/3