• Task
  • Create

Run Liquibase Secure server locally

Last updated: September 29, 2026

This guide gets the server running on a single machine using the liquibase-platform CLI and Docker Compose. It is intended for platform operators who want to evaluate Liquibase Secure server before committing to a production deployment.

Production deployments vary by environment. How you run the server long-term depends on your organization's infrastructure: Kubernetes, a cloud VM, an on-premises server, or another setup are all valid approaches. This guide is not a production deployment prescription. It gives you a working instance so you can see the server in action.

Before you begin

  • Docker 24+

  • Docker Compose v2

  • The Liquibase Secure server bundle for your host platform. Review Liquibase Secure server requirements lists the platforms the registry serves, and the bundle carries the server CLI and its configuration files.

Procedure

1

Extract the bundle

Extract the bundle for your host platform, then change into the folder it creates. The folder holds the liquibase-platform CLI and the docker-compose.yml file, and you run the remaining steps from it. The file name carries the version and the platform, for example:

loading
2

Run the install command

From the folder you extracted, run:

./liquibase-platform install

The CLI runs automatically. It checks prerequisites, generates secrets, pulls images, starts databases, runs migrations, and verifies that the API and web services are healthy. When it is complete the service will print the address of the web app.

  Access URL:  https://localhost
  TLS:         Self-signed certificate

On a local install the address is https://localhost. Give the server a different hostname with --domain, and that becomes both the address of the web app and the name on the certificate. To use your own certificate instead of the self-signed one the installer generates, reinstall with --tls-cert and --tls-key. The command reference covers the rest, including pinning an image tag.

3

Open the web app

When the install completes, the CLI prints the URL of the web app. Open it in a browser to confirm the deployment is running.

The first person to register becomes the workspace administrator. Anyone who signs up after them without an invitation lands in the Pending group with no permissions until an administrator places them.

Warning: On a deployment that other people can reach before you register, a stranger can sign up first and take the administrator account. To name the administrator up front instead, set LIQUIBASE_PLATFORM_INITIAL_ADMIN_EMAIL before anyone signs up. See Configure Liquibase Secure server.