BahriyaBAHRIYAby Mamluk
Use CasesPricingLocationsBlogSecurityAboutContact
Sign inSign up

Vault

  • What is the Vault?
  • TLS Bundles
  • X.509 Certificates
  • GPG Keypairs
  • SSH Keypairs
  • Encryption Keys
  • Registries
  • Secrets
Getting Started→
  • Core Concepts
  • Deploy Your First Container
  • Platform Limits
  • What is Bahriya?
Quickstarts→
  • Deploy a Go app on Bahriya
  • Deploy a Next.js app on Bahriya
  • Deploy a Node.js app on Bahriya
  • Deploy a static site on Bahriya
  • Deploy any Docker image on Bahriya
  • Deploy Django on Bahriya
  • Deploy FastAPI on Bahriya
  • Deploy Laravel on Bahriya
  • Deploy Rails on Bahriya
  • Deploy your framework on Bahriya
Containers→
  • Basic Authentication
  • Choosing container storage
  • Containers
  • Cron Jobs
  • Environment Variables
  • Ephemeral Storage
  • Health Checks and Bootstrap Time
  • HTTP Containers
  • Init Jobs
  • Path Rules
  • Persistent Storage
  • Prometheus Metrics
  • Rate Limiting and IP Rules
  • Resources and Autoscaling
  • Worker Containers
Networking→
  • Network Policies
  • DNS Failover
  • DNS Modes
  • External Networking
  • Hostnames and DNS
  • Setting Up a Custom Domain
Caching→
  • Cache-Control and TTL
  • Proxy cache vs Memcached
  • Proxy Caching
Projects→
  • Project Attachments
  • Project Quotas
  • Projects
Configs→
  • Env Files
  • JSON Configs
  • YAML Configs
  • Plain Configs
Organisations→
  • Choosing which emails you receive
  • Activity Log
  • Organisations
  • Personal Access Tokens
  • Roles and Permissions
  • Sharing Individual Resources
  • Team Management and Invitations
  • Transferring Ownership
Regions→
  • Choosing Regions
  • Data Residency
  • Multi-Region Deployments
  • Regions
Memcached→
  • Common Memcached use cases
  • Connecting to Memcached
  • Memcached
  • Sizing and eviction
Valkey→
  • Valkey
  • Topologies
  • Connecting to Valkey
  • Eviction policies
  • External access
  • Persistence and backups
Billing→
  • Billing Details
  • CPU Classes
  • How Billing Works
  • Top-ups and Invoicing
Support→
  • Collaborating on a support ticket
Reis CLI→
  • Installing Reis
  • Reis CLI
  • Deploy JSON Configs with Reis (YAML Mode)
  • Deploy JSON Configs with Reis (Flag Mode)
  • Deploy Plain Configs with Reis (Flag Mode)
  • Deploy Plain Configs with Reis (YAML Mode)
  • Deploy Env Files with Reis (Flag Mode)
  • Deploy Env Files with Reis (YAML Mode)
  • Authentication
  • Commands Reference
  • Deploy a cron job with flags
  • Deploy a cron job with YAML
  • Deploy a worker with flags
  • Deploy a worker with YAML
  • Deploy an HTTP container with flags
  • Deploy an HTTP container with YAML
  • Deploy Encryption Keys with Reis (Flag Mode)
  • Deploy Encryption Keys with Reis (YAML Mode)
  • Deploy GPG Keypairs with Reis (Flag Mode)
  • Deploy GPG Keypairs with Reis (YAML Mode)
  • Deploy Memcached with flags
  • Deploy Memcached with YAML
  • Deploy Network Policies with Reis (YAML Mode)
  • Deploy SSH Keypairs with Reis (Flag Mode)
  • Deploy SSH Keypairs with Reis (YAML Mode)
  • Deploy TLS Bundles with Reis (Flag Mode)
  • Deploy TLS Bundles with Reis (YAML Mode)
  • Deploy Valkey with flags
  • Deploy Valkey with YAML
  • Deploy X.509 Certificates with Reis (Flag Mode)
  • Deploy X.509 Certificates with Reis (YAML Mode)
  • Deploy YAML Configs with Reis (Flag Mode)
  • Deploy YAML Configs with Reis (YAML Mode)
  • Flag mode
  • Manage Billing Details with Reis (Flag Mode)
  • Manage Billing Details with Reis (YAML Mode)
  • Manage HTTP container path rules with Reis (Flag Mode)
  • Manage HTTP container path rules with Reis (YAML Mode)
  • Manage Network Policies with Reis (Flag Mode)
  • Manage Roles and Sharing with Reis (Flag Mode)
  • Manage Roles with Reis (YAML Mode)
  • Using Reis in CI/CD Pipelines
  • YAML mode
Terraform→
  • Installing the Terraform Provider
  • Terraform Provider
  • Complete Terraform Example
  • Deploy a Cron Job with Terraform
  • Deploy a Project with Terraform
  • Deploy a Worker Container with Terraform
  • Deploy an HTTP Container with Terraform
  • Deploy Encryption Keys with Terraform
  • Deploy Env Files with Terraform
  • Deploy GPG Keypairs with Terraform
  • Deploy JSON Configs with Terraform
  • Deploy Memcached with Terraform
  • Deploy Network Policies with Terraform
  • Deploy Plain Configs with Terraform
  • Deploy Registry Credentials with Terraform
  • Deploy Secrets with Terraform
  • Deploy SSH Keypairs with Terraform
  • Deploy TLS Bundles with Terraform
  • Deploy Valkey with Terraform
  • Deploy X.509 Certificates with Terraform
  • Deploy YAML Configs with Terraform
  • Manage Billing Details with Terraform
  • Manage Custom Roles with Terraform
  • Manage HTTP container path rules with Terraform
  • Share Individual Resources with Terraform
Security→
  • Data Protection and Residency
  • Private Networking
  • Secrets and Vault Best Practices
  • Securing Your Container
  • Security
  • TLS and Certificates
Troubleshooting→
  • 502, 503 and 504 Errors From Your Container
  • Common Issues
  • Container Out of Memory
  • Container Won't Start or Keeps Crash-Looping
  • Custom Domain Not Resolving
  • Deployment Stuck in "Provisioning"
  • Health Check Failures
  • Image Cannot Be Pulled
  • TLS and Certificate Errors
Comparisons→
  • Choosing a container platform
  • Bahriya vs Amazon ECS
  • Bahriya vs Fly.io
  • Bahriya vs Google Cloud Run
  • Bahriya vs Heroku
  • Bahriya vs Railway
  • Bahriya vs Render
Migrating to Bahriya→
  • Migrate from Docker Compose to Bahriya
  • Migrate from Fly.io to Bahriya
  • Migrate from Heroku to Bahriya
  • Migrate from Railway to Bahriya
  • Migrate from Render to Bahriya
  • Migrating to Bahriya
Knowledgebase/Vault

Vault

Manage cryptographic keys, TLS certificates, image-pull registries, and encrypted credentials as versioned, org-scoped resources.

8 articles

  • What is the Vault?

    The Bahriya Vault stores cryptographic keys, TLS certificates, registries, and encrypted credentials, versioned and attached per project.

    2 min
  • TLS Bundles

    TLS bundles store a CA certificate, server certificate, and private key in the Bahriya vault, mounted into containers for HTTPS, mTLS, and internal TLS.

    2 min
  • X.509 Certificates

    X.509 certificates store a single PEM-encoded certificate in the Bahriya vault, delivered to containers as an exact file with versioned rotation.

    2 min
  • GPG Keypairs

    GPG keypairs store ASCII-armoured public and private keys in the Bahriya vault, mounted into containers as files with versioned rotation and rollback.

    2 min
  • SSH Keypairs

    SSH keypairs store a public key and PEM-encoded private key in the Bahriya vault, mounted into containers as files with versioned rotation and rollback.

    2 min
  • Encryption Keys

    Encryption keys store symmetric key material in the Bahriya vault, delivered to containers as a single file, with versioned rotation and rollback.

    2 min
  • Registries

    Registries store the credentials Bahriya uses to pull container images from private OCI registries like Docker Hub, GHCR, GitLab, ECR, or Harbor.

    3 min
  • Secrets

    Secrets store sensitive values like database passwords and API keys, encrypted at rest and injected into Bahriya containers as environment variables.

    4 min

Product

  • HTTP Containers
  • Worker Containers
  • Cron Jobs
  • Memcached
  • Valkey
  • Volume Storage
  • Network Policies
  • Vault
  • Configs
  • Pricing
  • Locations
  • Use Cases

Resources

  • Reis CLI
  • Terraform Provider
  • API Reference
  • Knowledgebase
  • Blog

Company

  • About
  • Careers
  • Investors
  • Contact

Trust

  • Security
  • Vendor policy

Legal

  • Terms
  • Privacy
  • DPA

Mamluk© Mamluk 2026. All rights reserved.