OFFICIAL REPOUpdated 3 days, 5 hours ago


Try on Desktop

Kitematic - GUI for Docker

Kitematic is not installed or is out-of-date. Click Download to install or update.

DownloadLearn More
The PostgreSQL object-relational database system provides reliability and data integrity.

Supported tags and respective Dockerfile links

For more information about this image and its history, please see the relevant manifest file (library/postgres) in the docker-library/official-images GitHub repo.

What is PostgreSQL?

PostgreSQL, often simply “Postgres”, is an object-relational database management system (ORDBMS) with an emphasis on extensibility and standards-compliance. As a database server, its primary function is to store data, securely and supporting best practices, and retrieve it later, as requested by other software applications, be it those on the same computer or those running on another computer across a network (including the Internet). It can handle workloads ranging from small single-machine applications to large Internet-facing applications with many concurrent users. Recent versions also provide replication of the database itself for security and scalability.

PostgreSQL implements the majority of the SQL:2011 standard, is ACID-compliant and transactional (including most DDL statements) avoiding locking issues using multiversion concurrency control (MVCC), provides immunity to dirty reads and full serializability; handles complex SQL queries using many indexing methods that are not available in other databases; has updateable views and materialized views, triggers, foreign keys; supports functions and stored procedures, and other expandability, and has a large number of extensions written by third parties. In addition to the possibility of working with the major proprietary and open source databases, PostgreSQL supports migration from them, by its extensive standard SQL support and available migration tools. And if proprietary extensions had been used, by its extensibility that can emulate many through some built-in and third-party open source compatibility extensions, such as for Oracle.


How to use this image

start a postgres instance

docker run --name some-postgres -e POSTGRES_PASSWORD=mysecretpassword -d postgres

This image includes EXPOSE 5432 (the postgres port), so standard container linking will make it automatically available to the linked containers. The default postgres user and database are created in the entrypoint with initdb.

The postgres database is a default database meant for use by users, utilities and third party applications.

connect to it from an application

docker run --name some-app --link some-postgres:postgres -d application-that-uses-postgres

… or via psql

docker run -it --link some-postgres:postgres --rm postgres sh -c 'exec psql -h "$POSTGRES_PORT_5432_TCP_ADDR" -p "$POSTGRES_PORT_5432_TCP_PORT" -U postgres'

Environment Variables

The PostgreSQL image uses several environment variables which are easy to miss. While none of the variables are required, they may significantly aid you in using the image.


This environment variable is recommended for you to use the PostgreSQL image. This environment variable sets the superuser password for PostgreSQL. The default superuser is defined by the POSTGRES_USER environment variable. In the above example, it is being set to “mysecretpassword”.


This optional environment variable is used in conjunction with POSTGRES_PASSWORD to set a user and its password. This variable will create the specified user with superuser power and a database with the same name. If it is not specified, then the default user of postgres will be used.


This optional environment variable can be used to define another location - like a subdirectory - for the database files. The default is /var/lib/postgresql/data, but if the data volume you're using is a fs mountpoint (like with GCE persistent disks), Postgres initdb recommends a subdirectory (for example /var/lib/postgresql/data/pgdata ) be created to contain the data.

How to extend this image

If you would like to do additional initialization in an image derived from this one, add a *.sql or *.sh script under /docker-entrypoint-initdb.d (creating the directory if necessary). After the entrypoint calls initdb to create the default postgres user and database, it will run any *.sql files and source any *.sh script found in that directory to do further initialization before starting the service.

You can also extend the image with a simple Dockerfile to set the locale. The following example will set the default locale to de_DE.utf8:

FROM postgres:9.4
RUN localedef -i de_DE -c -f UTF-8 -A /usr/share/locale/locale.alias de_DE.UTF-8
ENV LANG de_DE.utf8

Since database initialization only happens on container startup, this allows us to set the language before it is created.


If there is no database when postgres starts in a container, then postgres will create the default database for you. While this is the expected behavior of postgres, this means that it will not accept incoming connections during that time. This may cause issues when using automation tools, such as fig, that start several containers simultaneously.

Supported Docker versions

This image is officially supported on Docker version 1.7.1.

Support for older versions (down to 1.0) is provided on a best-effort basis.

User Feedback


Documentation for this image is stored in the postgres/ directory of the docker-library/docs GitHub repo. Be sure to familiarize yourself with the repository's file before attempting a pull request.


If you have any problems with or questions about this image, please contact us on the mailing list or through a GitHub issue.

You can also reach many of the official image maintainers via the #docker-library IRC channel on Freenode.


You are invited to contribute new features, fixes, or updates, large or small; we are always thrilled to receive pull requests, and do our best to process them as fast as we can.

Before you start to code, we recommend discussing your plans on the mailing list or through a GitHub issue, especially for more ambitious contributions. This gives other contributors a chance to point you in the right direction, give you feedback on your design, and help you find out if someone else is working on the same thing.


1 day, 18 hours ago
profile picturelev09

Who managed to run this container on Ubuntu 15.04 ? I got error / line 94: kill: (59) - No such process PostgreSQL init process failed

6 days, 16 hours ago
profile picturehouchaohan


1 week, 3 days ago
profile picturedacay

I am extending this image with a simple Docker file:

FROM postgres:9.3
ENV POSTGRES_PASSWORD md51f30adc18e8ff087c8a41939ba1d306e

Problem is that when I am connecting with psql, even if I write the password wrong, I can log in. When I start a container using the resulting image, I get a message indicating that the trust authentication is active. And when I look at the pg_hba.conf inside the $PGDATA, I can see that there are lines that allows trust authentication above the md5 directive.

I tried to change the pg_hba.conf with Dockerfile, but of couse since the DB wasn't started during the build, no pg_hba.conf was found.

Any help appreciated or I'll have to build my own image.

1 week, 6 days ago
profile picturey0ssar1an

What is the right way to edit postgresql.conf? RIght now I'm using a script in /docker-entrypoint-initdb.d/ to edit the config after it gets created at container start time. I could also try mounting postgresql.conf as a volume. Is there a reason why I can't just COPY my postgresql.conf into /var/lib/postgresql/data? I realize that prevents me from changing the config while the container is running, but I think if I needed to change the config, I'd prefer building a new image.

2 weeks, 1 day ago
profile picturey0ssar1an

Why is $PGDATA owned by root? Shouldn't it be owned by postgres:postgres?

docker run -it postgres:9.4 /bin/bash
ls -l $PGDATA/..
drwxr-xr-x 2 root root 4096 Jul 12 20:09 data

Also, the permissions for /var/lib/postgresql and /var/lib/postgresql/data are both 755. Shouldn't they be 700?

2 weeks, 1 day ago
profile picturemadageomapping

I created an image but i got “exec: ”/": permission denied" too when launching docker run…

2 weeks, 3 days ago
profile pictureb0c1

I created a docker container using external directory but after the first run I always got “permission denied” for the database files. Host os: centos 7.1

3 weeks, 5 days ago
profile picturewanghaven

@viniciusd application-that-uses-postgres is the name of the image that we're building the container from, and some-app is the name that we assign to the freshly built container that we can reference it by.

3 weeks, 6 days ago
profile pictureviniciusd

What's the difference between some-app and application-that-uses-postgres for connecting it from an application?

1 month, 2 weeks ago
profile pictureajite


I made a few scripts to connect to the docker container via psql. It uses the postgres client installed inside the docker image itself so it works with any version of postgres.

So far it handles simple features of the original psql, pg_dump, createdb and dropdb clients. The psql script can also restore a database using the following command:

`psql -C container_name -U user -d database_name -f your_file`

Scripts available on github

4 months, 1 week ago
profile pictureyellowiscool

@glamm Thank you for your script, it works fine.

This is my dockerfile:

FROM postgres:9.4
ADD /docker-entrypoint-initdb.d/
ADD db.pgdump /tmp/db.pgdump
4 months, 3 weeks ago
profile picturemiranext

Anyone know whats the way to properly stop this container when running docker stop? Just noticed this LOG: database system was interrupted; last known up at 2015-03-07 04:17:41 UTC LOG: database system was not properly shut down; automatic recovery in progress

4 months, 3 weeks ago
profile pictureglamm

For those looking to import a database as part of an init script dropped into /docker-entrypoint-initdb.d, I've found that starting postgres, performing the import via pg_restore, then stopping the database works (please forgive the terrible shell scripting):


: ${DB_USER:=db_user}
: ${DB_PASSWORD:=db_pass}
: ${DB_NAME:=db_name}
: ${DB_PG_DUMP_FILE:=/tmp/db.pgdump}

{ gosu postgres postgres --single -jE <<-EOSQL
} && { gosu postgres postgres --single -jE <<-EOSQL
} && { gosu postgres pg_ctl start -w && gosu postgres pg_restore -d "$DB_NAME" "$DB_PG_DUMP_FILE" && gosu postgres pg_ctl stop -w
} && /bin/rm -f ${DB_PG_DUMP_FILE}
5 months, 1 week ago
profile pictureoren432

How can I run sql scripts on it? Opened issue

5 months, 2 weeks ago
profile picturetrevmurray

How do I properly restart the postgres service using this container?

5 months, 3 weeks ago
profile picturedlouwers

Was having trouble importing a postgres dump as part of the build.

Using something like gosu postgres postgres --single < dumpfile.dump will cause all matter of syntax errors. Starting the container detached, execing bash on it and then running psql -U postgres < dumpfile.dump works fine.

Hope someone has run into this issue before and was able to fix it.

6 months ago
profile pictureufoscout

Could you please help me to configure this container to be accessible from my machine? I started it with: docker run --name some-app --link some-postgres:postgres -d application-that-uses-postgres but when I always get connection refused. I also tried to use “-p 5432:5432” but I cannot connect with telnet to the port.

6 months, 2 weeks ago
profile picturedebiki

I, and someone else below, was wondering about how to upgrade between major versions. Here's a GitHub issue about that:

6 months, 3 weeks ago
profile picturedkirrane

Is there any a way to restore a database from a dump file during docker build or run

6 months, 3 weeks ago
profile pictureaventurini

@matthiasblankenhaus Use a separate docker container to extract logs, e.g. progrium/logspout. It automatically attaches to all running containers on the host and routes log outputs to a destination of your choice.

7 months, 2 weeks ago
profile picturematthiasblankenhaus

Hi !

I am curious about how people handle postgresql logging with this container ? Is there a best practice approach ?

7 months, 3 weeks ago
profile picturegflarity

Could you please describe the best way to import a database? I have a dump file that works fine with psql, but doesn't seem to work with postgres single mode…

7 months, 3 weeks ago
profile picturejoriskoris

What is the method to backup the database? I currently have a data only container with /var/lib/postgresql/data volume, and I mount this container in the main database container using –volumes-from directive. I'd like to be able to dump and pg_restore the database.

7 months, 4 weeks ago
profile pictureaidanlister

Here's a simple extension of this official base image which enables the hstore module during the build:

8 months ago
profile picturetransistor1

From @itech's comment:

Simply once you expose the PostgreSQL port, anyone in the world (who can connect to this port on your server) will have FULL access to the database with no password whatsoever!

Someone please correct me if I'm wrong, but I thought that if you use container linking, the port security isn't an issue, because the containers can only see each other, and the PostgreSQL port isn't actually exposed. My understanding is that this is how a postgres backend should be run on Docker (obviously it won't be possible in every scenario).


docker run -d -p 80:80 --link postgres:postgres apache

In which case, the apache server can see the postgres server, but it can't be seen outside of the apache container.

I am not trying to minimize what @itech is saying – it is absolutely true that you will compromise security if you expose port 5432 without setting a password. But it should probably be noted that container linking might be a better solution, if it's possible in a deployment case.

8 months ago
profile picturemmarzantowicz

@magick: There are two possibilities: you can run postgres container without specifying any username/password or you can provide them with -e (–env) option to docker run command.

In first case (no username/password) you shouldn't have been asked any password because by default trust authentication is in action and no password is set for postgres user.

In second case, you can explicitly specify POSTGRES_PASSWORD and POSTGRES_USER and then you must use them because authentication method is set to md5. Below is sample command line with options:

docker run --name some-postgres -d -e "POSTGRES_PASSWORD=somesecret" postgres
8 months, 1 week ago
profile picturemagick

I'm following the advice from @justfalter on how to “automatically execute SQL commands as part of starting up”, and it seems fine. However when I go to log into the postgres shell, it is asking for a password. Where is this set? How do I know what it is?


8 months, 1 week ago
profile picturemmarzantowicz

One more note about “fixing” default authentication methods. One can use sed to change line which allows trust authentication to use md5 instead. Maybe it could be done in more sophisticated way but this one works for me:

sed -ri "s/host all all\/0 trust/host all all\/0 md5/" "$PGDATA"/pg_hba.conf

As in @justfalter's recipe, create script and COPY it to /docker-entrypoint-initdb.d/ directory. Remember to set some valid user/password before to be able to use your postgres container.

8 months, 2 weeks ago
profile pictureitech

Anyone using this image MUST be very careful because the default configuration is INSECURE.

Simply once you expose the PostgreSQL port, anyone in the world (who can connect to this port on your server) will have FULL access to the database with no password whatsoever!

Related to this issue:

9 months ago
profile picturejustfalter

By default, this image disables any requirement for authentication. The '/' script automatically adds the following line to /var/lib/postgres/data/pg_hba.conf:

host all all trust

Since modifies this file when the container is first started, you cannot simply ADD your desired pg_hba.conf from your Dockerfile. Rather, you need to create a script that performs the modifications, and ADD it to '/docker-entrypoint-initdb.d/' directory via your Dockerfile.

host all all md5

For example, here's a script, “”, that overwrites pg_hba.conf:

cat > /var/lib/postgresql/data/pg_hba.conf <<EOS
# Generated by
# TYPE  DATABASE        USER            ADDRESS                 METHOD
# "local" is for Unix domain socket connections only
local   all             all                                     trust
# IPv4 local connections:
host    all             all               trust
# IPv6 local connections:
host    all             all             ::1/128                 trust

# Allow anyone to connect remotely so long as they have a valid username and 
# password.
host all all md5

Add it to your Dockerfile:

FROM postgres:9.3
ADD /docker-entrypoint-initdb.d/

When the image is built, your pg_hba.conf will be set to the desired configuration.

9 months ago
profile picturejustfalter

For those looking for a concrete example on how to automatically execute SQL commands as part of starting up this docker image, I found the following useful:

Create a shell script “”:

gosu postgres postgres --single <<- EOSQL
   CREATE USER docker;
echo ""

And a Dockerfile:

FROM postgres:9.3
ADD /docker-entrypoint-initdb.d/

Build your image

docker build -t pg_with_my_stuff .

And run it:

docker run -d --name my_postgres -p 5432:5432 pg_with_my_stuff

You can then see that the script ran given the output of 'docker logs my_postgres':


PostgreSQL stand-alone backend 9.3.5
backend> backend> backend> backend> 

Now you can connect to the new database you've created:

$ psql -h -U docker docker
psql (9.3.5)
Type "help" for help.

9 months ago
profile picturedperetti

@mekanix … this is a container. It's only accessible from another dockerized app that has been purposely linked to it.

9 months, 1 week ago
profile picturedockerhubby

All the so called “official” images I checked are not ready for productive use - almost all of them have serious problems or totally stupid defaults or some other issue. I come to the conclusion that this docker hub is a place for distributing worst practices and should generally be avoided or could, at best, be a place to learn how not to do it. It is a real shame and does absolutely not fit the “we are cool devops masters”- image that docker guys want to show. Very disapponting. There should be some quality guys doing quality images, not hobbyists publishing every BS.

9 months, 2 weeks ago
profile picturemekanix

What is the best practice for using this image? As postgres user can be logged in without password, it's not really secure to run it on a host being DB server. How to overcome that?

10 months ago
profile picturecdancy

Anyone have any recommendations on how to edit the postgresql.conf file? I'm installing pljava and need to add variables to this file. Any help would be appreciated. Thanks

10 months, 2 weeks ago
profile pictureplindelauf

Can someone explain what the de facto standard is for upgrading from one “Dockerized” version of PostgreSQL (e.g. 9.2) to another (e.g. 9.3)?

10 months, 2 weeks ago
profile picturelrhazi

found it:

10 months, 2 weeks ago
profile picturelrhazi

Where is the Dockerfile?

10 months, 2 weeks ago
profile picturesalamandra

I agree with jamesstarr: It should be a link to GIT in each repository description. There always someone asking for it on comments.

10 months, 3 weeks ago
profile picturelatkins

Could someone clarify the correct way to increase the log level using this container? If I were running postgres from the command line, I might do something like -d 1.

11 months, 2 weeks ago
profile picturejoshjdevl

Why is this an official container when

1) It uses wheezy which is not LTS 2) It doesn't link to Github providing a Trusted Build

11 months, 3 weeks ago
profile picturehoni

I've posted one solution to fix the “could not create lock file / permission denied” error here.

11 months, 3 weeks ago
profile picturehoni

Thanks @miquella for the locale tip, I've put that in my Dockerfile and it works as expected.

Though I'm having another problem using postgres:9.4 I'm getting this error and postgres won't start. I'm using boot2docker (v1.1.2).

FATAL: could not create lock file “/var/run/postgresql/.s.PGSQL.5432.lock”: Permission denied

Does anybody have any ideas?

12 months ago
profile picturejamesstarr

The repo is here:

I really wish it was in the description, or if supported some kind of linking back to github.

12 months ago
profile picturebromanko

I am running into the same issue as @kcartmell. Is there any advice on this issue?

1 year ago
profile pictureblasthardcheese

@pondidum: As @georged said earlier, the container contains a “contrib” directory. I created a Dockerfile containing the following:

FROM postgres

RUN apt-get update && apt-get install -y libossp-uuid-dev

RUN ./configure --with-ossp-uuid
RUN cd contrib/uuid-ossp && make && make install && cd ../..

After that, CREATE EXTENSION works.

1 year ago
profile picturekolypto

Currently, the size of this image is 803.9 MB

1 year ago
profile picturekcartmell

I've noticed that the initdb invocation in doesn't always succeed on the first try when running in virtualbox (boot2docker) or on an Amazon Web Services EC2 instance running ubuntu 14.04. When the issue occurs, a call to gosu whoami returns postgres but a call to id returns root. If I just change the script to keep trying initdb, it seems to always work on the second try. I'm only using the postgres docker image for development instances at this time so I'm not super excited about heading down this rabbit hole, but if someone smarter than me would like to have a conversation or at least receive a proper bug report, I'd be happy to help.

1 year ago
profile pictureyosifkit

Just a big FYI for anyone looking at the Official Images: you can contribute improvements to make them better. Please, don't go making a different image just because this does not have feature X or needs an update. Pull requests are always welcome.

1 year ago
profile picturebaboon

Is there a way to customize the exposed port?

1 year, 1 month ago
profile picturebase698

I ran the postgres container interactive and discovered however postgres is setup it wasn't with apt-get (as I guess it wouldn't be). I am trying to install postgis. Anywhere I can get that?

1 year, 1 month ago
profile picturepondidum

Does anyone know what I need to do to make extensions work in postgres wit this?

create extension “uuid-ossp”; gives this error: could not open extension control file “/usr/local/pgsql/share/extension/uuid-ossp.control”:

1 year, 1 month ago
profile picturemiquella

@brainopia: would a docker run --name some-postgres -e LC_ALL=C.UTF-8 -d postgres do what you're looking for?

1 year, 1 month ago
profile picturebrainopia

The encoding of the template database is ASCII, not UTF-8 :(

1 year, 1 month ago
profile picturetianon

jberkus - see

1 year, 1 month ago
profile picturejberkus

Hey, I'd like to have the PostgreSQL community, meaning probably me, take over maintenance of this Official Image. How do I go about doing that?

1 year, 1 month ago
profile picturegeetotes

Where can I see the Dockerfile for this image?

1 year, 1 month ago
profile picturecryptix

I'd like to make my own Image based on this one, basically just loading my schema into the db but I don't know how to startup the db without it blocking further execution.

I could write my own script but I wanted to see if there is another way, using this as a base, as it is.

my Dockerfile so far:

1 year, 1 month ago
profile picturegeorged

If anyone is wondering how to install extensions, there is a contrib directory inside the container. To install hstore I made a Dockerfile that ran the following:

RUN cd contrib/hstore && make && make install

Creating the extension with CREATE EXTENSION then succeeds.

1 year, 1 month ago
profile picturegeorged

Fantastic, thanks @ubergarm. That works nicely for me.

1 year, 1 month ago
profile pictureubergarm

docker run –name my_postgres \ -d \ -v pwd/volumes/data:/var/lib/postgresql/data \ postgres

Note that the postgres container uses uid/gid: postgres:x:999:999

The config file in the container is at: /var/lib/postgresql/data/postgresql.conf

1 year, 1 month ago
profile picturenamxam

Yeah, I actually asked myself the exact same thing ;)

1 year, 1 month ago
profile picturegeorged

I'm curious as to why the examples don't have any mapped volumes. Is the data intended to be stored inside the container?