Equal Aqua runs its own password vault on Vaultwarden, a self-hosted, fully compatible server for the standard Bitwarden apps. You use the normal Bitwarden apps — browser extension, desktop, or mobile — you just point them at our server first. Setup follows the same shape everywhere: install, set the server address, then sign in with Enterprise single sign-on through Microsoft Entra.
https://vaultwarden.equalaqua.org:8443/
Set this in the app's Settings screen — the one
with a gear icon, shown before you ever log in — under
“Self-hosted environment”. Port 8443 is part
of the address, so include it. Then on the login screen, enter your
email and choose Enterprise single sign-on (not
“Log in with master password”) and continue with your
Equal Aqua Microsoft account.
That screen will also ask for an “organization identifier”
— on our server this doesn't need to match anything specific,
so type anything (e.g. equalaqua) and
continue; Vaultwarden always sends you to our one Microsoft Entra
sign-in either way.
From the Bitwarden download page, get the extension for your browser (Chrome, Firefox, Edge, and others are all supported).
▶ Bitwarden downloadsClick the extension icon, then the gear/settings icon on the login screen. Toggle on Self-hosted environment and paste in https://vaultwarden.equalaqua.org:8443/ as the server URL.
Back on the login screen, type your Equal Aqua email address and continue.
Choose Enterprise single sign-on below the master password field, type anything for the organization identifier (it isn't checked — see the note above), and sign in with your Equal Aqua Microsoft account (approve the MFA prompt if you get one).
First time in, Bitwarden asks you to create a master/vault password. This is separate from your Microsoft password — it's what encrypts your vault locally, so pick something strong and memorable.
There's no reset link for this one: if you forget it, an admin can only reset your account, not recover the vault's contents. Consider a passphrase you'll actually remember.
Get the Windows installer from the Bitwarden download page and run it.
▶ Bitwarden downloadsOn the login screen, click the gear/settings icon. Toggle on Self-hosted environment and paste in https://vaultwarden.equalaqua.org:8443/ as the server URL.
Type your Equal Aqua email address and continue.
Choose Enterprise single sign-on, type anything for the organization identifier (it isn't checked — see the note above), and sign in with your Equal Aqua Microsoft account.
First time in, create a master/vault password — separate from your Microsoft password, used to encrypt your vault locally.
Get the macOS installer from the Bitwarden download page and run it.
▶ Bitwarden downloadsOn the login screen, click the gear/settings icon. Toggle on Self-hosted environment and paste in https://vaultwarden.equalaqua.org:8443/ as the server URL.
Type your Equal Aqua email address and continue.
Choose Enterprise single sign-on, type anything for the organization identifier (it isn't checked — see the note above), and sign in with your Equal Aqua Microsoft account.
First time in, create a master/vault password — separate from your Microsoft password, used to encrypt your vault locally.
Use the AppImage, .deb, or .rpm for your distribution from the Bitwarden download page.
▶ Bitwarden downloadsOn the login screen, click the gear/settings icon. Toggle on Self-hosted environment and paste in https://vaultwarden.equalaqua.org:8443/ as the server URL.
Type your Equal Aqua email address and continue.
Choose Enterprise single sign-on, type anything for the organization identifier (it isn't checked — see the note above), and sign in with your Equal Aqua Microsoft account.
First time in, create a master/vault password — separate from your Microsoft password, used to encrypt your vault locally.
On the welcome screen, tap the gear/settings icon (usually top-right). Toggle on Self-hosted environment and paste in https://vaultwarden.equalaqua.org:8443/ as the server URL.
Type your Equal Aqua email address and continue.
Tap Enterprise single sign-on, type anything for the organization identifier (it isn't checked — see the note above), and sign in with your Equal Aqua Microsoft account (approve the MFA prompt if you get one).
First time in, create a master/vault password — separate from your Microsoft password, used to encrypt your vault locally.
Screenshots for this tab are on the way — the layout is nearly identical to Android below.
On the welcome screen, tap the gear/settings icon (usually top-right). Toggle on Self-hosted environment and paste in https://vaultwarden.equalaqua.org:8443/ as the server URL.
Type your Equal Aqua email address and continue.
Tap Enterprise single sign-on, type anything for the organization identifier (it isn't checked — see the note above), and sign in with your Equal Aqua Microsoft account (approve the MFA prompt if you get one).
First time in, create a master/vault password — separate from your Microsoft password, used to encrypt your vault locally.
Screenshots for this tab are on the way.
Your vault opens and shows any items already shared with you. The bottom of the login screen also shows the server address you're pointed at — double-check it reads our Vaultwarden URL, not the default Bitwarden cloud.
Stuck on any step, or unsure which account to use? Reach out to your IT administrator with a screenshot of where you're stuck.