ivanchandRenovate Bot 250fa7ff5b Update vaultwarden/server Docker tag to v1.37.3 (#10)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [vaultwarden/server](https://github.com/dani-garcia/vaultwarden) | patch | `1.37.2` → `1.37.3` |

---

### Release Notes

<details>
<summary>dani-garcia/vaultwarden (vaultwarden/server)</summary>

### [`v1.37.3`](https://github.com/dani-garcia/vaultwarden/releases/tag/1.37.3)

[Compare Source](https://github.com/dani-garcia/vaultwarden/compare/1.37.2...1.37.3)

#### What's Changed

- Fix password change with newer web-vault by [@&#8203;BlackDex](https://github.com/BlackDex) in [#&#8203;7634](https://github.com/dani-garcia/vaultwarden/pull/7634)
- chore: remove duplicate "the" in ciphers.rs comment by [@&#8203;mvanhorn](https://github.com/mvanhorn) in [#&#8203;7254](https://github.com/dani-garcia/vaultwarden/pull/7254)
- Ignore reset-password auto-enroll when mail is disabled by [@&#8203;xhon-pelushi](https://github.com/xhon-pelushi) in [#&#8203;7585](https://github.com/dani-garcia/vaultwarden/pull/7585)
- Fix migration for MariaDB 12.2.2 by [@&#8203;Timshel](https://github.com/Timshel) in [#&#8203;7265](https://github.com/dani-garcia/vaultwarden/pull/7265)
- Add SSO\_SIGNUPS\_ALLOWED by [@&#8203;Timshel](https://github.com/Timshel) in [#&#8203;7272](https://github.com/dani-garcia/vaultwarden/pull/7272)
- log\_event take enum parameter not i32 by [@&#8203;Timshel](https://github.com/Timshel) in [#&#8203;7656](https://github.com/dani-garcia/vaultwarden/pull/7656)
- Misc Updates by [@&#8203;BlackDex](https://github.com/BlackDex) in [#&#8203;7676](https://github.com/dani-garcia/vaultwarden/pull/7676)
- Update rust docker version by [@&#8203;dani-garcia](https://github.com/dani-garcia) in [#&#8203;7689](https://github.com/dani-garcia/vaultwarden/pull/7689)
- Fix organization import failing with missing field groups by [@&#8203;tom27052006](https://github.com/tom27052006) in [#&#8203;7699](https://github.com/dani-garcia/vaultwarden/pull/7699)
- Add `pm-32413-multi-client-password-management` feature flag by [@&#8203;tom27052006](https://github.com/tom27052006) in [#&#8203;7677](https://github.com/dani-garcia/vaultwarden/pull/7677)
- Log IP/username on two-factor email-login credential failures by [@&#8203;crahn](https://github.com/crahn) in [#&#8203;7654](https://github.com/dani-garcia/vaultwarden/pull/7654)
- Support admin reset 2fa by [@&#8203;Timshel](https://github.com/Timshel) in [#&#8203;7435](https://github.com/dani-garcia/vaultwarden/pull/7435)
- fix(security): revoke 2FA remember tokens when credentials or 2FA change by [@&#8203;BryanFRD](https://github.com/BryanFRD) in [#&#8203;7682](https://github.com/dani-garcia/vaultwarden/pull/7682)
- fix(security): rate limit prelogin and auth request endpoints by [@&#8203;BryanFRD](https://github.com/BryanFRD) in [#&#8203;7681](https://github.com/dani-garcia/vaultwarden/pull/7681)
- fix: Correct invalid comment syntax in .dockerignore by [@&#8203;niniconi](https://github.com/niniconi) in [#&#8203;7274](https://github.com/dani-garcia/vaultwarden/pull/7274)
- Update Rust and adjust DockerSettings by [@&#8203;BlackDex](https://github.com/BlackDex) in [#&#8203;7690](https://github.com/dani-garcia/vaultwarden/pull/7690)
- Route service clients through shared HTTP setup by [@&#8203;txase](https://github.com/txase) in [#&#8203;7639](https://github.com/dani-garcia/vaultwarden/pull/7639)
- Fix iOS registration token response by [@&#8203;tom27052006](https://github.com/tom27052006) in [#&#8203;7714](https://github.com/dani-garcia/vaultwarden/pull/7714)
- Use insert\_into when possible by [@&#8203;Timshel](https://github.com/Timshel) in [#&#8203;6437](https://github.com/dani-garcia/vaultwarden/pull/6437)
- Fix archiveDate update by [@&#8203;BlackDex](https://github.com/BlackDex) in [#&#8203;7722](https://github.com/dani-garcia/vaultwarden/pull/7722)

#### New Contributors

- [@&#8203;mvanhorn](https://github.com/mvanhorn) made their first contribution in [#&#8203;7254](https://github.com/dani-garcia/vaultwarden/pull/7254)
- [@&#8203;xhon-pelushi](https://github.com/xhon-pelushi) made their first contribution in [#&#8203;7585](https://github.com/dani-garcia/vaultwarden/pull/7585)
- [@&#8203;crahn](https://github.com/crahn) made their first contribution in [#&#8203;7654](https://github.com/dani-garcia/vaultwarden/pull/7654)
- [@&#8203;BryanFRD](https://github.com/BryanFRD) made their first contribution in [#&#8203;7682](https://github.com/dani-garcia/vaultwarden/pull/7682)
- [@&#8203;niniconi](https://github.com/niniconi) made their first contribution in [#&#8203;7274](https://github.com/dani-garcia/vaultwarden/pull/7274)

**Full Changelog**: <https://github.com/dani-garcia/vaultwarden/compare/1.37.2...1.37.3>

</details>

---

### Configuration

📅 **Schedule**: (UTC)

- Branch creation
  - At any time (no schedule defined)
- Automerge
  - At any time (no schedule defined)

🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update again.

---

 - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box

---

This PR has been generated by [Mend Renovate CLI](https://github.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0NC4zOS4zIiwidXBkYXRlZEluVmVyIjoiNDQuMzkuMyIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOltdfQ==-->

---------

Co-authored-by: Renovate Bot <bot@renovateapp.com>
Reviewed-on: #10
2026-09-13 15:22:27 +00:00
2026-09-02 19:53:41 -03:00
2026-09-02 19:53:41 -03:00
2026-09-13 15:20:27 +00:00
2026-07-10 23:22:28 -03:00

Haven

A forever-work-in-progress self-hosted server setup

Runs on a multi-node k3s cluster deployed across VMs and bare-metal hosts.

Application configuration is stored on an NFS share located on a dedicated SSD. This uses nfs-subdir-external-provisioner as a dynamic storage provisioner with PVC-specific paths. Additional data is stored on a NAS exported via NFS.

The cluster runs k3s with nginx as the ingress controller. MetalLB is used in layer 2 mode for load balancing. cert-manager provides a local CA and issues certificates (required by Vaultwarden).

For setup details, see SETUP.md.

The repository name references my local TLD, .haven ;)

Repository Layout

haven/
├── bootstrap/
│   ├── namespaces.yaml        # cluster namespaces
│   ├── secretstores.yaml      # cluster secret stores for BitWarden ESO
│   ├── address-pool.yaml      # cluster IP pool for MetalLB
│   ├── argocd-install/        # Argo CD install manifests + ingress
│   └── root-app.yaml          # root Application watching apps/root
├── secrets/
│   ├── adguard.yaml           # adguard credentials from BitWarden
│   ├── <app>.yaml             # <app> credentials from BitWarden
│   └── ...
├── apps/
│   ├── root/
│   │   ├── kustomization.yaml # points to applicationset.yaml
│   │   └── applicationset.yaml# auto-discovers apps/*/*.yaml
│   └── <namespace>/           # e.g., dev/, default/, infra/, monitoring/
│       ├── <app-1>.yaml       # all-in-one manifest per app
│       ├── <app-2>.yaml       # ...
|       └──── ...
S
Description
Readme
323 KiB
Languages
Markdown 100%