How to self-host an Emby server
Watch your movies and shows anywhere — apps on most devices. Cresdock runs it on a server you own, from a catalogue, with no Docker and no reverse proxy to configure.
What Cresdock does for you with Emby
Emby owns its own first-run setup, so Cresdock locks that wizard to your IP address until you finish it. Nobody else can reach the box in the minute between the app starting and you claiming it.
Given its own web address, with its own login seeded in advance. Emby can't live under a shared path, and apps like this are reached by clients that don't carry a browser session — so it gets a real password rather than being left open.
If your library lives on cloud storage rather than the server's own disk, this app can read it from there.
Sonarr, Radarr and Lidarr can tell Emby to look for new arrivals as soon as they land. The key that needs is made inside Emby, after you've created your account there on first open — so that step stays yours.
Install Jellyseerr and the people you share with can ask for things themselves, signing in with their Emby accounts.
Why run Emby yourself
Streaming services remove things. A film you paid to watch last year can simply stop being there, and nothing tells you in advance. Running your own means the library is whatever you put in it, and it stays.
It is also how you retire the streaming services that quietly remove things — one line in replacing cloud subscriptions, app by app.
What kind of server Emby needs
A media server is the one category where the hardware matters. Direct play — where the app hands the file straight to your TV or phone — costs almost nothing, and 2 GB of memory is plenty. Converting on the fly for a device that can't play the original is what gets expensive; if you expect that often, a machine with hardware video support pays for itself immediately.
Cresdock itself is undemanding — it runs on a small rented server, an old desktop or a mini PC, on Ubuntu or Debian. Everything it installs shares that machine, so the honest question is not "will this app run" but "how much am I going to put on here in total".
Where to run Emby
Emby runs wherever Cresdock runs, and the choice is about the machine, not the app:
- At home, on hardware you already own. A mini PC, an old desktop or a NAS that can run Debian. Cresdock works behind a home router with no port forwarding and no domain, so Emby is reachable on your own network first and from outside only if you choose.
- On a rented server. A small VPS is enough for most apps and is the usual answer when Emby should be reachable from anywhere. The setup guide covers the specs and the one-command install.
- Through a provider that runs Cresdock. Hosting companies deploy Cresdock workspaces for their customers, so Emby can come with a server you rent rather than one you set up — ask your provider, or see how providers offer it.
Installing Emby
- Put Cresdock on a server
One line on any Ubuntu or Debian machine — a rented VPS, a spare PC, a home server. It sets itself up.
- Pick Emby from the catalogue
Click Install. The panel pulls the image, writes the configuration, gets a certificate and starts it.
- Open it from your dashboard
Its address and any login details are on its card. Start, stop, update, roll back or remove it from the same place, any time.
What's left for you to do
Cresdock does not pretend to do the parts that are genuinely yours to decide. After it's running:
Open Emby and create your account. Do this now: the first visitor becomes the owner.
Add a library and point it at /media — that is your media folder, and the only one Emby can see
Your downloads are not in there, so a library aimed at them finds nothing. A library manager moves finished files across for you; without one, put what you want to watch into your media folder yourself
What this replaces
Doing it by hand means writing something like this, then keeping it working:
services:
emby:
image: lscr.io/linuxserver/emby:4.9.5.0-ls287
restart: unless-stopped
ports:
- "8096:8096"
environment:
- PUID=1000
- PGID=1000
- TZ=Etc/UTC
volumes:
- ./emby/config:/config
And that is the easy half. Still to do:
Install a reverse proxy and write a server block for it
Get a TLS certificate and set up automatic renewal
Create the folders above with the right ownership, or it will not start
Point a DNS record at the server, because Emby cannot run under a shared path
Repeat all of it for the next app, and again on every server rebuild
On Cresdock, Emby is one click and none of the above exists.
Common questions
Do I need to know Docker to run Emby?
No. Cresdock installs Emby in one click from its catalogue: it pulls the image, writes the configuration, gets an HTTPS certificate and starts it. Emby runs its own first-time setup, and Cresdock locks that screen to your IP address until you have finished it.
What happens to my Emby data when it updates?
Cresdock updates the Emby image and leaves its stored data in place. Emby keeps its own files in its own folder, which survives an update, a rebuild and a reinstall — and Cresdock never writes into it.
How is Emby protected if it isn't behind the panel login?
It gets its own password, generated and set before it first starts, shown on its card in your dashboard. Apps end up here when they are reached by programs rather than a web browser, so a shared login can't be used.
Can someone else claim my Emby before I do?
No. Its setup screen is locked to your IP address until you have finished it. This is the window that catches people out on a self-managed server.
Can my family use Emby too?
Yes. Cresdock is built for sharing a server: each person you add gets their own space, with their own apps and their own folders. The free plan covers one person, and adding more is what Pro is for. Emby also keeps its own accounts, so everyone signs in as themselves.
Can I run Emby at home instead of on a VPS?
Yes. Cresdock runs on a mini PC, an old desktop or anything that boots Debian, behind a normal home router with no port forwarding, and Emby is reachable on your own network first. A rented server is only needed when Emby must be reachable from anywhere without a VPN.
Can I remove Emby later?
Yes. Cresdock removes Emby in one click, and asks whether to keep its configuration for a future reinstall. Nothing else you have installed is affected.
Looking for what Emby itself can do? That lives in its own documentation — this page is only about running it.
Pairs well with: Jellyfin · Jellyseerr · File Browser · how Emby connects to your other apps
Before you start: where to rent a server · what it needs to run · Cresdock vs CasaOS