docs/versioned_docs/version-1.8.0/Deployment/deployment-caddyfile.mdx
Learn how to deploy Langflow on your own remote server with secure web access. This guide walks you through setting up Langflow on a remote server using Docker and configuring secure web access with Caddy.
Create an SSH key to connect to your server remotely. For example:
ssh-keygen -t ed25519 -C "[email protected]"
Replace [email protected] with the email address that you want to associate with the SSH key.
In your terminal, follow the instructions to create your SSH key pair. This creates both a private and public key. To copy the public key from your terminal, enter the following command:
cat ~/Downloads/host-lf.pub | pbcopy
In your remote server, add the SSH key you copied in the previous step. For example, if you are using a Hetzner cloud server, click Server, and then select SSH keys to add an SSH key.
To connect to your server with SSH, enter the following command.
ssh -i PATH_TO_PRIVATE_KEY/PRIVATE_KEY_NAME root@SERVER_IP_ADDRESS
Replace the following:
PATH_TO_PRIVATE_KEY/PRIVATE_KEY_NAME: The path to your private SSH key file that matches the public key you added to your serverSERVER_IP_ADDRESS: Your server's IP addressWhen prompted for a key fingerprint, type yes.
The terminal output indicates if the connection succeeds or fails. The following response was returned after connecting to a Hetzner cloud server:
System information as of Mon May 19 04:34:44 PM UTC 2025
System load: 0.0 Processes: 129
Usage of /: 1.5% of 74.79GB Users logged in: 0
Memory usage: 5% IPv4 address for eth0: 5.161.250.132
Swap usage: 0% IPv6 address for eth0: 2a01:4ff:f0:4de7::1
Now that your local machine is connected to your remote server with SSH, you can install Docker, create a docker-compose.yml file, and serve it publicly with a reverse proxy, such as Caddy.
Install Docker on your server.
Since this example server is an Ubuntu server, it can install snap packages. If you aren't using Ubuntu or you prefer a different installation method, see the official Docker installation guide for instructions for your operating system.
snap install docker
Create a file called docker-compose.yml, and then open it in a text editor:
touch docker-compose.yml && nano docker-compose.yml
Add the following values to docker-compose.yml, and then save the file.
The following example defines the Langflow service from the langflow:latest image and a Caddy service to expose Langflow through a reverse proxy.
:::tip
The host-langflow repository offers pre-built copies of this docker-compose.yml and Caddyfile, if you prefer to fork the repository to your server.
:::
version: "3.8"
services:
langflow:
image: langflowai/langflow:latest
ports:
- "7860:7860"
environment:
- LANGFLOW_HOST=0.0.0.0
- LANGFLOW_PORT=7860
caddy:
image: caddy:latest
ports:
- "80:80"
- "443:443"
volumes:
- ./Caddyfile:/etc/caddy/Caddyfile
- caddy_data:/data
- caddy_config:/config
depends_on:
- langflow
volumes:
caddy_data:
caddy_config:
Create a file called Caddyfile:
touch Caddyfile && nano Caddyfile
Add the following values to Caddyfile, and then save the file.
This Caddyfile configures Caddy to listen on port 80, and forward all incoming requests to port 80 to the Langflow service at port 7860.
:80 {
reverse_proxy langflow:7860
}
To deploy your server, run docker-compose up.
When the Welcome to Langflow message appears, Langflow is running and accessible internally at http://0.0.0.0:7860 inside the Docker network.
To access your Langflow server over the public internet, navigate to your server's public IP address, such as http://5.161.250.132.
This address uses HTTP because HTTPS isn't enabled yet.
Recommended: Enable HTTPS:
Modify your domain's A record to point to your server's IP address. For example:
Type: A
Name: langflow
Value: 5.161.250.132 # Set to your server's IP address
Stop your server.
Modify your Caddyfile to include port 443 so Caddy can forward both HTTP (port 80) and HTTPS (port 443) requests to the Langflow service:
:80, :443 {
reverse_proxy langflow:7860
}
Start your server.
When users visit your domain, Caddy recognizes the incoming traffic and automatically routes it to your server with a secure, encrypted connection.
To exit your SSH session, type exit.
To package your local flows into a custom Docker image, see Containerize a Langflow application.
For a step-by-step guide to deploying Langflow, including deployments to fly.io and Flightcontrol.dev, see How to Host Langflow Anywhere.