adds a note about security

This commit is contained in:
Copple authored and GitHub committed 2022-01-12 09:31:21 +01:00
1 parent 230dec02c2
commit aff6188388
1 file changed
+5
+5
View File
@@ -64,6 +64,11 @@ Update the `.env` file with your own secrets. In particular, these are required:
- `SITE_URL`: the base URL of your site.
- `SMTP_*`: mail server credentials. You can use any SMTP server.
### Securing the Dashboard
The Docker setup doesn't include a management database for managing users and logins. If you plan to deploy the Studio to the web we suggest you put it behind a web proxy with Basic Auth or hide it behind a VPN.
## Configuration
To keep the setup simple, we made some choices that may not be optimal for production: