CPU RAM Disk Network Uptime Auth

NAT
Update

Server

Status
IP Address
IPv6 Address
Internal IP
Hostname
Operating System
Kernel
Platform
Uptime
Agent Version
Last Sync

Resources

CPU
RAM
Disk
Load (1/5/15)
Uptime
Swap

Tunnel & SSH

Tunnel Status
Connected At
Tunnel Uptime
Last Ping
Health
Active SSH Sessions
Authentication

Agent

Version
Auth Type
Last Sync
Next Sync
Heartbeat 60s
Behind NAT
Verified
Config Size

Mesh Network

Network
Mesh Name
Mesh IP
Status
Last Seen
WG Key
Network Range

SSL

UFW

Listening Ports

Deferred
Active

Postfix Dovecot

UTC
Swap
Uptime

Disk Usage Overview

CPU
RAM
Load Average
1 / 5 / 15 minute averages

Postfix
Dovecot
Rspamd
OpenDKIM
Amavis
ClamAV
System

Time range:

Stream size:

System Logs

Real-time logs from all agent services

Displayed:
Stream:
Filter:

iptables

UFW Firewall

Network Ports

DKIM

Selector
Key

DKIM

SPF Record

DMARC Record

Display Name
Last Login

IMAP
POP3
SMTP

Last Synced
Aliases

Your current subscription plan

Global

Manage your personal account settings

Password is managed through Firebase Authentication. Use the button below to request a password reset email.

Session Timeout

Auto-logout after inactivity. Your session will expire after the selected period of no activity.

:

Tag
Quarantine
Reject

[email protected] # specific email
*@trusted-partner.com # all from domain
@important-client.org # domain only

DKIM / DMARC / SPF

mail._domainkey.example.com # selector: mail
default._domainkey.example.com # selector: default
google._domainkey.example.com # selector: google

2048-bit Standard
3072-bit High
4096-bit Maximum

v=spf1 mx a ip4:1.2.3.4 -all

v=DMARC1; p=quarantine; rua=mailto:[email protected]
Policy
p=none
p=quarantine
p=reject

Active
Deferred
Hold

SSL / TLS

Standalone
Webroot
DNS

Fail2ban

postfix postfix-sasl dovecot sshd

online warning offline pending

TXT @ mailadmin-verify-abc123...

MX
SPF
DKIM
DMARC

active suspended disabled

synced pending error

BETA

Critical
High
Medium
Low

Security Audit

Run Lynis security audits on your servers and get AI-powered analysis reports.

No servers found. Add a server to start auditing.

Firewall Monitor LIVE

Real-time blocked connections from servers

Blocked
connections
Unique IPs
attackers
Countries
sources
Servers
reporting
Top Attacker
attacks

Attack Origins Map

mapped locations

Attack Sources

No attack data

Top Attackers

# IP Address Country ISP Attacked Ports Target Server Count
No attackers detected
Port colors: SSH Critical MySQL Database HTTP Web Other server = your attacked server

Live Feed

Auto-refresh 5s
No recent blocks

Loading firewall data...

Fail2ban Sync
UFW Sync

Blocklist.de

IPsum Level 3

Spamhaus DROP

# IP Hostname Country ISP Source Jail
-

Shared Blocklist
Mesh VPN
Container → Host
Online
Offline
Double-click to open server

No mesh networks yet

Create your first network to connect servers

Network Topology

Online
Pending
Offline
Allow (good)
Allow (medium)
Allow (slow)
Deny
Inactive

Available Servers

Drag to topology to add

All servers are in this network

Peer Details

Server
Mesh IP
Status
Last seen
WG Key

Peers in Network

No peers in this network yet

Mesh Name Server Mesh IP Status Last Seen Actions

Network Policies

Control traffic flow between peers in this network

Default Policy:

No policies defined

The default policy will apply to all traffic

Priority Name Source Destination Protocol Ports Action Status Actions

Threat Level
Total Events
Critical
Quarantined
Triggers

Security Events

No security events

Triggers

No triggers configured

Quarantine

No quarantined peers

All Mesh Policies

Manage traffic policies across all mesh networks

No policies defined

Create policies in individual network settings

Network Priority Name Source Destination Protocol Ports Action Status Actions
Name Profile Status Resources Worker Created Actions

No containers yet

Create your first container to get started

Create Container

Create a managed mini-server on a worker host

Starter
1 CPU, 512MB RAM, 5GB Disk

Install on Container

Install on a container

After selecting a container, the product will be installed using the standard RunBook system. The container's agent handles installation like a regular server.

.txt, .log, .png — max 5 MB, max 3 files

Current

Base

Core platform for server management and team collaboration.

/mo
  • Servers
  • Team users
  • Agent
  • Notifications
Extra server
Extra team user
Coming Soon

Extended

Everything in Base plus email, domains, support and automation.

  • Everything in Base
  • Mail
  • Domains
  • Support
  • Scheduled Tasks
Coming Soon

Enterprise

Full platform with all products, security, mesh networks and more.

  • Everything in Extended
  • SecureBase
  • Monitoring
  • Firewall Monitor
  • RunBook Products
  • Mesh Networks
  • Vulnerability Exposure
  • HTTP Tunnels
  • System Backups

1

2

3

4

🪟

Windows

🐧

Linux / Mac

🪟

Windows

🐧

Linux / Mac

:

🏠

Base

Advanced
DNS
Admin

·

VPN Users

OpenVPN
FreeRADIUS
AdGuard Home
ntopng
MinIO

Domain

IP

IP

CN

Vulnerability Exposure

No exposure data yet

To start, go to a server's details page and run a vulnerability scan, or use the server table below after data loads.

CVE Severity CVSS Package Affected Servers Fix Available
No vulnerabilities found
Total
Open
In Progress
Fixed / Verified
Overdue
CVE Priority Status Package SLA Due
No remediation tasks. Click "Auto-Create Tasks" to generate tasks for critical & high CVEs.

Active Overrides

CVE Type Scope Justification Expires

No products found

selected
Name Type Status Created Actions


                        

OpenVPN

OpenVPN

Secure VPN server with certificate-based authentication

Status
Port
Protocol
Clients
VPN Users
Subnet

VPN Users

selected
User Status Created Actions

No VPN Users

Create your first VPN user to get started

Connection Info

Server
Port
Protocol
Subnet

WireGuard

WireGuard

Fast, modern, secure VPN tunnel

Status
Port
Interface
wg0
Peers
Subnet

Peers

selected

No Peers

Add your first peer to connect devices

Connection Info

Endpoint
Interface wg0
Subnet
Scan QR code with WireGuard mobile app for easy setup

PostgreSQL

PostgreSQL

Advanced open-source relational database

Status
Port
Connections
Databases
Users
Data Size

Databases

Database Owner Status Created
No databases created yet

Database Users

Username Privileges Status Created
No users created yet

Connection Info

Host
Port
Connection String

MySQL

MySQL

Popular open-source relational database

Status
Port
Connections
Databases
Users
Uptime

Databases

Database Charset Status Created
No databases created yet

Database Users

Username Host Status Created
No users created yet

Connection Info

Host
Port
Connection String

Docker

Docker

Container runtime and orchestration

Status
Containers
/
Images
Volumes
Networks
Disk Usage

Containers

No containers found

Docker Info

Version
API Version
Storage Driver

Recent Logs


                        

Nginx

Nginx

High-performance web server and reverse proxy

Status
Workers
Connections
Sites
Requests/s

Sites

Domain Type SSL Status

No sites configured yet

Server Info

Version
Config Path /etc/nginx/nginx.conf
Sites Path /etc/nginx/sites-enabled/

Quick Actions

Apache2

Apache HTTP Server

The world's most used web server

Status
MPM
Workers
VHosts
Requests/s

Virtual Hosts

DomainDocument RootSSLStatus
No virtual hosts configured

Server Info

Version
MPM Mode
Config/etc/apache2/

Node.js

Node.js + PM2

Production process manager for Node.js

PM2 Active
Apps
Online
Stopped
CPU
Memory
Restarts

PM2 Applications

No PM2 applications deployed

Runtime Info

Node.js
PM2
npm

Redis

Redis

In-memory data structure store

Status
Memory
Keys
Clients
Ops/sec
Hit Rate

Memory Usage

Used Memory
Peak Memory
RSS
Fragmentation
Max Memory

Server Info

Version
Mode
Port
Uptime

Quick Actions

PHP

PHP-FPM

FastCGI Process Manager for PHP

Status
Pools
Active
Idle
Memory

FPM Pools

Pool NameListenPM ModeMax ChildrenStatus
No FPM pools configured (default: www)

PHP Info

Version
SAPIFPM/FastCGI
Memory Limit
Max Execution

Extensions

Extension info not available

MinIO

MinIO

High-performance S3-compatible object storage

Status
Buckets
Storage Used
Objects
API Port

Buckets

No buckets created yet

Connection Info

Endpoint
Console
Region

Access Key:

NPM

Nginx Proxy Manager

Easy reverse proxy with SSL

Status
Proxy Hosts
SSL Certs
Admin Port

Admin Panel

Nginx Proxy Manager provides a web-based admin interface for managing reverse proxies, SSL certificates, and access control.

Default credentials:

Email: [email protected]

Password: changeme

Port Configuration

HTTP
HTTPS
Admin

Features

  • Reverse Proxy
  • Free Let's Encrypt SSL
  • Access Lists
  • Redirection Hosts

main.cf Configuration

Parameter Value
Parameter Default Value Custom?
parameters

                            
/etc/postfix/main.cf (read-only)


                        

Product not found

/
/
/

Security & Authentication

Manage two-factor authentication, SSH access and encryption keys

Security Setup Required

SSH access requires security setup. Please enable TOTP or SSH Password below.

Two-Factor Authentication (TOTP)
Enabled

Use Google Authenticator or Authy app to generate time-based one-time passwords for enhanced security

SSH Access Password
Enabled

Additional password required for SSH terminal access, separate from your account password

Encryption Key
Configured

Encrypts sensitive downloads (VPN configs, certificates). Auto-decrypts with Vault storage.

Change Password

Update your account password regularly for better security

Password Requirements:

  • Minimum 8 characters
  • Securely encrypted
  • Use strong, unique password

Active Sessions

Manage your active login sessions across different devices

Current Session:

This device (current)

Security Requirement

At least one security method (TOTP or SSH Password) must be enabled to access SSH terminals. You cannot disable both.

.txt, .log, .png — max 5 MB, max 3 files

SSH Sessions ()

Enable Two-Factor Authentication

Scan this QR code with Google Authenticator or Authy
TOTP QR Code

Or enter this code manually:

Enter the 6-digit code from your authenticator app
TOTP enabled successfully!

Save your backup codes!

These codes can be used to recover access if you lose your device.

Disable TOTP

Confirm disable TOTP

SSH password must be enabled before disabling TOTP.

Password must be at least 12 characters

Disable SSH Password

TOTP must remain enabled to disable SSH password

Generate Encryption Key

Import PGP Public Key

Paste your ASCII-armored PGP public key below. You'll use your local GPG to decrypt files.

Delete Encryption Key

Warning: This action cannot be undone!

Previously encrypted files will no longer be decryptable.

Regenerate Encryption Key

Warning: This will replace your current key!

Previously encrypted files will no longer be decryptable with the old key.

Current Key Info:

Type:

Storage:

Fingerprint:

After deletion, you'll be able to generate a new key with your preferred storage option (Vault or Local).

Regenerate Backup Codes

1
2
/app/p/