MODULES EN - CyberMind-FR/secubox-deb GitHub Wiki

SecuBox Modules

Complete module documentation

Total modules: 124

πŸ‡¬πŸ‡§ English | πŸ‡«πŸ‡· FranΓ§ais | πŸ‡©πŸ‡ͺ Deutsch | πŸ‡¨πŸ‡³ δΈ­ζ–‡


Overview

Modules Category Description
🏠 SecuBox Hub Dashboard Central dashboard and control center
πŸ›‘οΈ Security Operations Center Dashboard SOC with world clock, threat map, tickets
πŸ“‹ Migration Roadmap Dashboard OpenWRT to Debian migration tracking
πŸ›‘οΈ CrowdSec Security Collaborative security engine
πŸ”₯ Web Application Firewall Security WAF with 300+ security rules
πŸ”₯ Vortex Firewall Security nftables threat enforcement
πŸ”’ System Hardening Security Kernel and system hardening
πŸ” MITM Proxy Security Traffic inspection and WAF proxy
πŸ” Auth Guardian Security Authentication management
πŸ›‘οΈ Network Access Control Security Client guardian and NAC
🌐 Network Modes Network Network topology configuration
πŸ“Š QoS Manager Network Quality of Service with HTB/VLAN
πŸ“ˆ Traffic Shaping Network TC/CAKE traffic shaping
⚑ HAProxy Network Load balancer dashboard
πŸš€ CDN Cache Network Content delivery cache
πŸ—οΈ Virtual Hosts Network Nginx virtual host management
🌍 DNS Server DNS BIND DNS zone management
πŸ›‘οΈ Vortex DNS DNS DNS firewall with RPZ
πŸ“‘ Mesh DNS DNS Mesh network domain resolution
πŸ”— WireGuard VPN VPN Modern VPN management
πŸ•ΈοΈ Mesh Network VPN Mesh networking (Yggdrasil)
πŸ”— P2P Network VPN Peer-to-peer networking
πŸ§… Tor Network Privacy Tor anonymity and hidden services
🌐 Exposure Settings Privacy Unified exposure (Tor, SSL, DNS, Mesh)
πŸ” Zero-Knowledge Proofs Privacy ZKP Hamiltonian management
πŸ“Š Netdata Monitoring Real-time system monitoring
πŸ”¬ Deep Packet Inspection Monitoring DPI with netifyd
πŸ“± Device Intelligence Monitoring Asset discovery and fingerprinting
πŸ‘οΈ Watchdog Monitoring Service and container monitoring
🎬 Media Flow Monitoring Media traffic analytics
πŸ“Š Metrics Dashboard Monitoring Real-time system metrics
πŸ” Login Portal Access Authentication portal with JWT
πŸ‘₯ User Management Access Unified identity management
πŸ“¦ Services Portal Services C3Box services portal
🦊 Gitea Services Git server (LXC)
☁️ Nextcloud Services File sync (LXC)
πŸ“§ Mail Server Email Postfix/Dovecot mail server
πŸ’Œ Webmail Email Roundcube/SOGo webmail
πŸ“° Publishing Platform Publishing Unified publishing dashboard
πŸ’§ Droplet Publishing File upload and publish
πŸ“ Metablogizer Publishing Static site publisher with Tor
🎨 Streamlit Apps Streamlit app platform
⚑ StreamForge Apps Streamlit app development
πŸ“¦ APT Repository Apps APT repository management
βš™οΈ System Hub System System configuration and management
πŸ’Ύ Backup Manager System System and LXC backup

Modules

🏠 SecuBox Hub

Category: Dashboard

Central dashboard and control center

Features:

  • System overview
  • Service monitoring
  • Quick actions
  • Metrics

SecuBox Hub


πŸ›‘οΈ Security Operations Center

Category: Dashboard

SOC with world clock, threat map, tickets

Features:

  • World clock
  • Threat map
  • Ticket system
  • P2P intel
  • Alerts

Security Operations Center


πŸ“‹ Migration Roadmap

Category: Dashboard

OpenWRT to Debian migration tracking

Features:

  • Progress tracking
  • Module status
  • Category view

Migration Roadmap


πŸ›‘οΈ CrowdSec

Category: Security

Collaborative security engine

Features:

  • Decision management
  • Alerts
  • Bouncers
  • Collections

CrowdSec


πŸ”₯ Web Application Firewall

Category: Security

WAF with 300+ security rules

Features:

  • OWASP rules
  • Custom rules
  • CrowdSec integration

Web Application Firewall


πŸ”₯ Vortex Firewall

Category: Security

nftables threat enforcement

Features:

  • IP blocklists
  • nftables sets
  • Threat feeds

Vortex Firewall


πŸ”’ System Hardening

Category: Security

Kernel and system hardening

Features:

  • Sysctl hardening
  • Module blacklist
  • Security score

System Hardening


πŸ” MITM Proxy

Category: Security

Traffic inspection and WAF proxy

Features:

  • Traffic inspection
  • Request logging
  • Auto-ban

MITM Proxy


πŸ” Auth Guardian

Category: Security

Authentication management

Features:

  • OAuth2
  • LDAP
  • 2FA
  • Session management

Auth Guardian


πŸ›‘οΈ Network Access Control

Category: Security

Client guardian and NAC

Features:

  • Device control
  • MAC filtering
  • Quarantine

Network Access Control


🌐 Network Modes

Category: Network

Network topology configuration

Features:

  • Router mode
  • Bridge mode
  • AP mode
  • VLAN

Network Modes


πŸ“Š QoS Manager

Category: Network

Quality of Service with HTB/VLAN

Features:

  • Bandwidth control
  • VLAN policies
  • 802.1p PCP

QoS Manager


πŸ“ˆ Traffic Shaping

Category: Network

TC/CAKE traffic shaping

Features:

  • Per-interface QoS
  • CAKE algorithm
  • Statistics

Traffic Shaping


⚑ HAProxy

Category: Network

Load balancer dashboard

Features:

  • Backend management
  • Stats
  • ACLs
  • SSL termination

HAProxy


πŸš€ CDN Cache

Category: Network

Content delivery cache

Features:

  • Cache management
  • Purge
  • Statistics

CDN Cache


πŸ—οΈ Virtual Hosts

Category: Network

Nginx virtual host management

Features:

  • Site management
  • SSL certificates
  • Reverse proxy

Virtual Hosts


🌍 DNS Server

Category: DNS

BIND DNS zone management

Features:

  • Zone management
  • Records
  • DNSSEC

DNS Server


πŸ›‘οΈ Vortex DNS

Category: DNS

DNS firewall with RPZ

Features:

  • Blocklists
  • RPZ
  • Threat feeds

Vortex DNS


πŸ“‘ Mesh DNS

Category: DNS

Mesh network domain resolution

Features:

  • mDNS/Avahi
  • Local DNS
  • Service discovery

Mesh DNS


πŸ”— WireGuard VPN

Category: VPN

Modern VPN management

Features:

  • Peer management
  • QR codes
  • Traffic stats

WireGuard VPN


πŸ•ΈοΈ Mesh Network

Category: VPN

Mesh networking (Yggdrasil)

Features:

  • Peer discovery
  • Routing
  • Encryption

Mesh Network


πŸ”— P2P Network

Category: VPN

Peer-to-peer networking

Features:

  • Direct connections
  • NAT traversal
  • Encryption

P2P Network


πŸ§… Tor Network

Category: Privacy

Tor anonymity and hidden services

Features:

  • Circuits
  • Hidden services
  • Bridges

Tor Network


🌐 Exposure Settings

Category: Privacy

Unified exposure (Tor, SSL, DNS, Mesh)

Features:

  • Tor exposure
  • SSL certs
  • DNS records
  • Mesh access

Exposure Settings


πŸ” Zero-Knowledge Proofs

Category: Privacy

ZKP Hamiltonian management

Features:

  • Proof generation
  • Verification
  • Key management

Zero-Knowledge Proofs


πŸ“Š Netdata

Category: Monitoring

Real-time system monitoring

Features:

  • Metrics
  • Alerts
  • Charts
  • Plugins

Netdata


πŸ”¬ Deep Packet Inspection

Category: Monitoring

DPI with netifyd

Features:

  • Protocol detection
  • App identification
  • Flow analysis

Deep Packet Inspection


πŸ“± Device Intelligence

Category: Monitoring

Asset discovery and fingerprinting

Features:

  • ARP scanning
  • MAC vendor lookup
  • OS detection

Device Intelligence


πŸ‘οΈ Watchdog

Category: Monitoring

Service and container monitoring

Features:

  • Health checks
  • Auto-restart
  • Alerts

Watchdog


🎬 Media Flow

Category: Monitoring

Media traffic analytics

Features:

  • Stream detection
  • Bandwidth usage
  • Protocol analysis

Media Flow


πŸ“Š Metrics Dashboard

Category: Monitoring

Real-time system metrics dashboard

Features:

  • System overview
  • Service status
  • WAF/CrowdSec stats
  • Connection monitoring
  • Live updates

Metrics Dashboard


πŸ” Login Portal

Category: Access

Authentication portal with JWT

Features:

  • JWT auth
  • Sessions
  • Password recovery

Login Portal


πŸ‘₯ User Management

Category: Access

Unified identity management

Features:

  • User CRUD
  • Groups
  • Service provisioning

User Management


πŸ“¦ Services Portal

Category: Services

C3Box services portal

Features:

  • Service links
  • Status overview
  • Quick access

Services Portal


🦊 Gitea

Category: Services

Git server (LXC)

Features:

  • Repositories
  • Users
  • SSH/HTTP
  • LFS

Gitea


☁️ Nextcloud

Category: Services

File sync (LXC)

Features:

  • File sync
  • WebDAV
  • CalDAV
  • CardDAV

Nextcloud


πŸ“§ Mail Server

Category: Email

Postfix/Dovecot mail server

Features:

  • Domains
  • Mailboxes
  • DKIM
  • SpamAssassin
  • ClamAV

Mail Server


πŸ’Œ Webmail

Category: Email

Roundcube/SOGo webmail

Features:

  • Web interface
  • Address book
  • Calendar

Webmail


πŸ“° Publishing Platform

Category: Publishing

Unified publishing dashboard

Features:

  • Multi-platform
  • Scheduling
  • Analytics

Publishing Platform


πŸ’§ Droplet

Category: Publishing

File upload and publish

Features:

  • File upload
  • Share links
  • Expiration

Droplet


πŸ“ Metablogizer

Category: Publishing

Static site publisher with Tor

Features:

  • Static sites
  • Tor publishing
  • Templates

Metablogizer


🎨 Streamlit

Category: Apps

Streamlit app platform

Features:

  • App hosting
  • Deployment
  • Management

Streamlit


⚑ StreamForge

Category: Apps

Streamlit app development

Features:

  • Templates
  • Code editor
  • Preview

StreamForge


πŸ“¦ APT Repository

Category: Apps

APT repository management

Features:

  • Package management
  • GPG signing
  • Multi-distro

APT Repository


βš™οΈ System Hub

Category: System

System configuration and management

Features:

  • Settings
  • Logs
  • Services
  • Updates

System Hub


πŸ’Ύ Backup Manager

Category: System

System and LXC backup

Features:

  • Config backup
  • LXC snapshots
  • Restore

Backup Manager


🚫 Ad Guard

Category: Security

Ad and tracker detection with per-device statistics

Features:

  • Blocklist management
  • Delayed blacklisting workflow
  • Device-type classification
  • Per-device statistics

πŸ–₯️ System Administration

Category: System

Advanced system administration dashboard

Features:

  • System status overview
  • Systemd service management
  • System logs viewer
  • APT updates management

πŸ€– AI Gateway

Category: AI

AI Data Sovereignty Gateway

Features:

  • Data sovereignty controls
  • AI traffic routing
  • Privacy-preserving AI access

🧠 AI Insights

Category: AI

ML-based threat detection and security insights

Features:

  • ML-based threat detection
  • Anomaly detection
  • Log analysis with trained models
  • CrowdSec and Suricata integration

🎭 Avatar Manager

Category: Access

Identity and avatar management

Features:

  • Avatar upload
  • Identity sync across services
  • Service integration

πŸ’Ύ System Cloner

Category: System

System backup and restore

Features:

  • Compressed backup creation
  • Backup management
  • System restore

πŸ”§ Config Advisor

Category: Security

Security configuration advisor

Features:

  • Security configuration analysis
  • Best practices recommendations
  • Configuration scoring

πŸ–₯️ Console TUI

Category: System

Terminal-based dashboard

Features:

  • Live system metrics
  • Service management
  • Network interface status
  • Real-time log viewer

πŸͺ Cookie Tracker

Category: Privacy

Cookie tracking and privacy compliance

Features:

  • Third-party cookie detection
  • Tracker identification
  • GDPR compliance checking

πŸ” CVE Triage

Category: Security

CVE vulnerability triage

Features:

  • Vulnerability assessment
  • CVE tracking
  • Risk prioritization

πŸ“‘ CyberFeed

Category: Security

Threat intelligence feed aggregator

Features:

  • Multi-source threat feed aggregation
  • IP and domain blocklist management
  • Export to nftables, unbound, dnsmasq

πŸ›‘οΈ DNS Guard

Category: DNS

DNS anomaly detection

Features:

  • DNS traffic analysis
  • Anomaly detection
  • Threat alerting

🌐 DNS Provider

Category: DNS

Multi-provider DNS API management

Features:

  • OVH, Gandi, Cloudflare, AWS Route53 support
  • ACME DNS-01 challenge support
  • Dynamic DNS

🏠 Domoticz

Category: Automation

Home automation management

Features:

  • Device management
  • Room/scene organization
  • Z-Wave, Zigbee, 433MHz support

πŸ“Š Glances

Category: Monitoring

System monitoring with Glances

Features:

  • Real-time CPU, memory, disk, network stats
  • Hardware sensors
  • Process list

🦣 GoToSocial

Category: Communication

ActivityPub/Fediverse server

Features:

  • Account management
  • Federation controls
  • Moderation tools

πŸ“ Hexo

Category: Publishing

Static blog generator

Features:

  • Multiple blog management
  • Theme gallery
  • Plugin management

🏑 Home Assistant

Category: Automation

IoT hub integration

Features:

  • Entity and device browser
  • Automation management
  • HACS integration

πŸ†” Identity

Category: Privacy

Decentralized identity

Features:

  • Decentralized identity management
  • Identity verification
  • Privacy-preserving auth

πŸ” Interceptor

Category: Security

HTTP/HTTPS traffic interception

Features:

  • SSL/TLS inspection
  • Request/response modification
  • Traffic recording

πŸ“± IoT Guard

Category: Security

IoT device security

Features:

  • IoT device monitoring
  • Security policy enforcement
  • Threat detection

🚫 IP Block

Category: Security

IP blocklist manager

Features:

  • Multiple blocklist sources
  • nftables set integration
  • Auto-update scheduling

πŸ’¬ Jabber/XMPP

Category: Communication

Prosody XMPP server

Features:

  • User accounts
  • Virtual hosts
  • Federation

🎬 Jellyfin

Category: Media

Media server management

Features:

  • Library configuration
  • Hardware acceleration
  • Backup/restore

πŸŽ₯ Jitsi Meet

Category: Communication

Video conferencing

Features:

  • JWT, LDAP authentication
  • Recording and streaming
  • Breakout rooms

πŸ’Ύ KSM

Category: System

Kernel Same-page Merging

Features:

  • Enable/disable KSM
  • Memory savings statistics
  • Configuration tuning

πŸ€– LocalAI

Category: AI

Self-hosted LLM inference

Features:

  • OpenAI-compatible API
  • Model gallery
  • Chat interface

🧠 LocalRecall

Category: AI

AI memory system

Features:

  • AI context storage
  • Memory retrieval
  • Context management

🎡 Lyrion Music Server

Category: Media

Lyrion Music Server for Squeezebox

Features:

  • Squeezebox player control
  • Library management
  • Backup and restore

πŸ”’ MAC Guard

Category: Security

MAC address-based network access control

Features:

  • MAC address whitelist/blacklist
  • Device discovery
  • Alert on unknown devices

πŸͺž MagicMirror

Category: Apps

Smart display platform

Features:

  • MagicMirror configuration
  • Module management
  • Display controls

πŸ“¬ Mail LXC

Category: Email

Mail server LXC container

Features:

  • Postfix MTA
  • Dovecot IMAP/POP3
  • OpenDKIM signing

πŸ”— Master Link

Category: Network

Mesh node enrollment

Features:

  • Node enrollment
  • Mesh link management
  • Topology coordination

πŸ’¬ Matrix Synapse

Category: Communication

Federated chat server

Features:

  • User and room management
  • Bridge support
  • Federation

πŸ€– MCP Server

Category: AI

Model Context Protocol server

Features:

  • AI context protocol support
  • Model communication
  • Context sharing

πŸ“‹ Metabolizer

Category: Monitoring

Log processor and analyzer

Features:

  • Journalctl log analysis
  • Pattern extraction
  • Error trend analysis

πŸ“š Metacatalog

Category: Services

Service catalog and registry

Features:

  • Service health status
  • Dependency mapping
  • API endpoint documentation

πŸͺž Mirror/CDN

Category: Network

Local mirror and CDN caching

Features:

  • Nginx caching proxy
  • Cache statistics
  • Bandwidth optimization

πŸ“¦ MMPM

Category: Apps

MagicMirror Package Manager

Features:

  • Browse MagicMirror modules
  • Install/update/remove modules

πŸ“‘ MQTT

Category: Automation

Mosquitto MQTT broker

Features:

  • Client connection tracking
  • Topic monitoring
  • User and ACL management

πŸ”¬ nDPId

Category: Monitoring

Deep Packet Inspection with nDPI

Features:

  • JA3/JA4 TLS fingerprinting
  • Protocol detection
  • Risk scoring

πŸ”§ Network Diagnostics

Category: Network

Network troubleshooting tools

Features:

  • Ping, traceroute, DNS lookup
  • WHOIS, MTR
  • Port scanning, bandwidth testing

βš™οΈ Network Tuning

Category: Network

Sysctl and TCP/IP optimization

Features:

  • Tuning profiles
  • TCP settings
  • Persistent configuration

πŸ” Network Anomaly

Category: Security

Network anomaly detection

Features:

  • Traffic analysis
  • Anomaly detection
  • Alert generation

πŸ“° Newsbin

Category: Apps

Usenet downloader (SABnzbd)

Features:

  • NZB file handling
  • Download queue
  • Category organization

πŸ¦™ Ollama

Category: AI

Local LLM inference

Features:

  • Model pulling
  • Chat completion
  • Text generation APIs

πŸ•΅οΈ OpenClaw OSINT

Category: Security

Open Source Intelligence

Features:

  • Domain reconnaissance
  • IP intelligence
  • Subdomain discovery

πŸ›‘οΈ OSSEC HIDS

Category: Security

Host-based Intrusion Detection

Features:

  • Alert viewing
  • File integrity monitoring
  • Rootkit detection

πŸ“Ή PeerTube

Category: Media

Federated video platform

Features:

  • Video and channel management
  • Federation (ActivityPub)
  • Plugin management

πŸ“Έ PhotoPrism

Category: Media

AI-powered photo management

Features:

  • AI-powered face recognition
  • Photo library indexing
  • Album management

🍺 PicoBrew

Category: Automation

Homebrew/fermentation controller

Features:

  • Temperature monitoring
  • Fermentation profiles
  • Recipe management

πŸ“± Redroid

Category: Apps

Android in container

Features:

  • Android container management
  • ADB access
  • App installation

πŸ“Š Reporter

Category: System

System report generation

Features:

  • PDF/HTML reports
  • Scheduled generation
  • Security reports

πŸ“¦ RezApp

Category: Apps

Application deployment

Features:

  • Application templates
  • Docker/LXC deployment
  • Health monitoring

πŸ›£οΈ Routes

Category: Network

Routing table manager

Features:

  • View IPv4/IPv6 routes
  • Add/delete routes
  • Policy routing rules

πŸ–₯️ RTTY

Category: System

Remote terminal access

Features:

  • Terminal sessions
  • Access token management
  • Web interface

πŸ”Œ SaaS Relay

Category: Services

Secure API proxy relay

Features:

  • Proxy configuration
  • API key management
  • Rate limiting

πŸ” SimpleX Chat

Category: Communication

Privacy-focused messaging

Features:

  • Zero-knowledge messaging
  • No user identifiers
  • TLS certificate management

πŸ“§ SMTP Relay

Category: Email

Email forwarding

Features:

  • Queue management
  • Smarthost configuration
  • Monitoring

πŸ›‘οΈ SOC Agent

Category: Security

Edge node agent

Features:

  • Metrics collection
  • Alert aggregation
  • Remote command execution

🏒 SOC Gateway

Category: Security

Central fleet monitoring hub

Features:

  • Node registration
  • Fleet-wide metrics
  • Threat correlation

🌐 SOC Web

Category: Dashboard

Fleet monitoring dashboard

Features:

  • Fleet overview
  • Real-time alerts
  • Threat visualization

πŸ€– Threat Analyst

Category: AI

AI threat analysis

Features:

  • AI-powered analysis
  • Automated assessment
  • Intelligence correlation

⚠️ Threats Dashboard

Category: Security

Unified security threats

Features:

  • Aggregated alerts
  • Threat intelligence
  • Incident tracking

πŸ“₯ Torrent

Category: Apps

BitTorrent client (Transmission)

Features:

  • Magnet links, URLs, files
  • Speed limiting
  • RSS feed subscriptions

πŸ“ž TURN/STUN Server

Category: Communication

WebRTC relay server

Features:

  • coturn service
  • User management
  • Temporary credentials

πŸ” Vault

Category: Security

Encrypted secrets management

Features:

  • Secure storage
  • Audit logging
  • Rotation support

πŸ’» VM Manager

Category: System

Virtual machine management

Features:

  • KVM/QEMU VMs
  • LXC containers
  • Resource management

πŸ“ž VoIP/PBX

Category: Communication

Asterisk/FreePBX management

Features:

  • Extension management
  • SIP trunks
  • Call detail records

πŸ›‘οΈ Wazuh SIEM

Category: Security

Wazuh SIEM integration

Features:

  • Agent/manager management
  • Alert viewing
  • Security monitoring

πŸ“¬ Webmail LXC

Category: Email

Roundcube webmail container

Features:

  • Roundcube webmail
  • Nginx + PHP-FPM
  • Auto-configuration

πŸ“» Web Radio

Category: Media

Internet radio streaming

Features:

  • Station management
  • Icecast/Liquidsoap server
  • Recording functionality

πŸ“‘ Zigbee

Category: Automation

Zigbee2MQTT gateway

Features:

  • Device pairing
  • MQTT integration
  • Network topology