Backrest
| Description / name | Input element |
|---|---|
| Container Registry | |
| Container Configuration Root Path | |
| Timezone | |
| User ID | |
| Group ID | |
| Backrest Host Port | |
| Backrest /config Path | |
| Backrest /data Path |
Backrest is a web-accessible backup solution built on top of restic. Backrest provides a WebUI which wraps the restic CLI and makes it easy to create repos, browse snapshots, and restore files. Additionally, Backrest can run in the background and take an opinionated approach to scheduling snapshots and orchestrating repo health operations.
| Port | 9898 |
| Registry | ghcr.io/daemonless/backrest |
| Daemonless | daemonless/backrest |
| Source | garethgeorge/backrest |
| Website | garethgeorge.github.io/backrest |
Version Tags
Multi-arch manifests — resolve automatically to the right image for your platform.
| Tag | Description | Best For |
|---|---|---|
latest |
Upstream Binary. Built from official release. | Most users — recommended. |
pkg |
FreeBSD Quarterly. Uses stable, tested packages. | Production stability. |
pkg-latest |
FreeBSD Latest. Rolling package updates. | Staying current. |
| Tag | Description | Best For |
|---|---|---|
latest-amd64 |
Upstream Binary. Built from official release. | Most users — recommended. |
pkg-amd64 |
FreeBSD Quarterly. Uses stable, tested packages. | Production stability. |
pkg-latest-amd64 |
FreeBSD Latest. Rolling package updates. | Staying current. |
| Tag | Description | Best For |
|---|---|---|
latest-aarch64 |
Upstream Binary. Built from official release. | Most users — recommended. |
pkg-aarch64 |
FreeBSD Quarterly. Uses stable, tested packages. | Production stability. |
pkg-latest-aarch64 |
FreeBSD Latest. Rolling package updates. | Staying current. |
Before deploying, ensure your host environment is ready. See the Quick Start Guide for host setup instructions, including the security model for host vs. container privileges.
Deployment
Save as compose.yaml, then run podman-compose up -d.
Warning
Exposing ports in AppJail means that your service can be reached from remote hosts. If that is not your intention, do not expose the ports and communicate with the service using the jail's IPv4 address or hostname assigned by the virtual network.
Save the files above, then run appjail-director up.
Experimental
Bastille's OCI support is experimental. It requires buildah and shares the host network stack (inherit). Mount volumes with --volume HOST JAIL; without it, image-declared volumes are stored under ${bastille_volumesdir}/${jail}.
Save as bastille-compose.yml, then run bastille up.
Access at: http://localhost:9898
Interactive Configuration
Parameters
Environment Variables
| Variable | Default | Description |
|---|---|---|
PUID |
1000 |
User ID for the application process |
PGID |
1000 |
Group ID for the application process |
TZ |
UTC |
Timezone for the container |
BACKREST_PORT |
`` | Address and port to bind to (default: 0.0.0.0:9898) |
BACKREST_CONFIG |
`` | Path to configuration file (default: /config/config.json) |
BACKREST_DATA |
`` | Path to internal data directory (default: /config/data) |
Volumes
| Path | Description |
|---|---|
/config |
Configuration directory (config.json, cache, and state) |
/data |
Files to back up, or a local repository; mounted as-is, never re-owned |
Ports
| Port | Protocol | Description |
|---|---|---|
9898 |
TCP | Web UI |
Implementation Details
- Architectures: amd64, aarch64
- User:
bsd(UID/GID set via PUID/PGID). Defaults to1000:1000. - Base: Built on
ghcr.io/daemonless/base(FreeBSD 15.1).
Need help? Join our Discord community.