{"repo":"Demwunz/openclaw-pi-installation","free":true,"listed":false,"github":"https://github.com/Demwunz/openclaw-pi-installation","clone":"git clone https://github.com/Demwunz/openclaw-pi-installation.git","description":"Install and run Openclaw on a Raspberry Pi4 securely","language":"Shell","stars":28,"topics":["claude","openclaw","raspberrypi"],"license":null,"category":"auth-billing-email","readme_excerpt":"OpenClaw Raspberry Pi Secure Setup Guide A comprehensive, security-first guide to install and run OpenClaw on Raspberry Pi OS (SSD or SD), using SSH keys, UFW, Fail2ban, and safe-by-default gateway settings. Quick Start » Security Baseline · Raspberry Pi OS Install · Pi Hardening · OpenClaw Install · Onboarding Settings · Verification --- Table of Contents - Quick Start - About - Security Baseline - Prerequisites - Raspberry Pi OS Install - First Boot Checklist - Pi Hardening - SSH Key Authentication - Firewall (UFW) - Fail2ban - Swap - Install Node.js 22+ - Install OpenClaw - OpenClaw Onboarding Settings - Run as a Service - Security Audit - Common Issues - Links - Disclaimer --- Quick Start If you already have Raspberry Pi OS running and SSH access working: During onboarding, bind the gateway to localhost only : - ✅ 127.0.0.1 - ❌ not 0.0.0.0 Then install the Gateway service and run a security audit: --- About This guide installs OpenClaw on a Raspberry Pi using a security-first baseline: - SSH keys-only access - Firewall enabled (deny inbound by default) - Fail2ban enabled (SSH brute-force protection) - OpenClaw Gateway bound to localhost (no LAN exposure) - Gateway auth token set to a strong random value - Credential directory permissions locked down The goal is to build a stable “appliance-like” Pi host: boring, predictable, and safe. --- Security Baseline Non-negotiable defaults (recommended) - Do NOT expose OpenClaw Control UI directly to the internet. - Do NOT port-for","default_branch":null,"files":null,"tree":[],"storefront":"/r/Demwunz","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Demwunz/openclaw-pi-installation/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}