Skip to content

Settings ​

Most installs only need the three settings in .env. Everything else has a sensible default.

Basics ​

Set these in .env, next to compose.yml.

SettingNeededWhat it does
POSTGRES_PASSWORDyesPassword of DockiUp's database
VAULT_MASTER_KEYyesEncrypts stored secrets and Git credentials. Create it with openssl rand -base64 32 and keep it safe: without it they can't be read
PUBLIC_URLfor more hostsAddress DockiUp is reached at, e.g. https://dockiup.example.com. Used for node setup and the webhook URLs DockiUp shows you

Advanced ​

To change one of these, add it to the environment of the dockiup service in compose.yml:

yaml
services:
  dockiup:
    environment:
      ImageUpdates__IntervalHours: 12
SettingDefaultWhat it does
ImageUpdates__IntervalHours6How often running images are checked for updates. 0 turns the automatic check off; Check for updates in the UI still works
SystemPaths__ProjectsPath/data/dockiup/projects (set in compose.yml)Where DockiUp keeps the projects it creates. Mount it at the same path inside and out
SystemPaths__DockerSocketthe mounted socketAnother Docker endpoint, e.g. tcp://docker-proxy:2375 for a socket proxy
ConnectionStrings__DockiUpDatabasebuilt from POSTGRES_PASSWORDUse your own PostgreSQL: Host=…;Port=5432;Database=dockiup;Username=…;Password=…
CORS_ALLOWED_ORIGINSnoneOnly needed when the web UI is served from another address than the API. A warning about it in the log is harmless otherwise
DockiUp__PublicUrlnoneSame as PUBLIC_URL; whichever you prefer

Sign-in ​

All optional; see Sign-in for the setup.

SettingDefaultWhat it does
Oidc__AuthoritynoneYour provider's issuer URL. Setting it turns sign-in on
Oidc__ClientIdnoneThe client you created for DockiUp
Oidc__PublicUrlthe request's addressAddress DockiUp is reached at, used for the sign-in redirect. Recommended in production
Oidc__RoleClaimrolesClaim that holds roles. Use groups for Pocket ID, Authentik and Entra
Oidc__InternalAuthorityOidc__AuthorityHow DockiUp itself reaches the provider, when that differs (e.g. over a Docker network)
Oidc__Scopeopenid profile email rolesScopes requested at sign-in

DockiUp uses Toamaisutaa for sign-in; every option listed there works here too, written as Oidc__<Key>.

Nodes ​

The compose file from Add node already fills these in. You only need them to change a node by hand.

SettingWhat it does
Node__ServerUrlAddress of your DockiUp. Setting it runs the container as a node instead of a full DockiUp
Node__TokenThe node's token from Add node
Node__NameName the node reports. The name given in Add node takes precedence
SystemPaths__ProjectsPathWhere the node keeps project files (/data/dockiup/projects)

Made with care by PianoNic.