Logo
Deploy Now

Stars

126

Forks

6

Watchers

1

Developer links

Usulnet

Usulnet packs container management, Trivy security scanning, Nginx reverse proxy, scheduled backups, WireGuard VPN, firewall rules, and multi-node orchestration into a single 70MB Go binary with zero external runtime dependencies. Every module ships in one download with no paid tiers, no telemetry, and no edition gating. Container lifecycle management covers creation, start, stop, restart, pause, kill, and removal with bulk operations, real-time resource statistics, filesystem browsing, and settings editing. Trivy integration scans images and running containers for CVEs with severity scoring, generates SBOMs, and validates CIS benchmarks. The multi-node architecture supports standalone, master, or agent modes where agents connect over NATS JetStream with mTLS encryption, enabling remote Docker host management from a central dashboard. Reverse proxy configuration handles Nginx with automatic Let's Encrypt certificates, TCP/UDP stream proxying, access lists, and dead host detection. Backup operations capture container volumes and Compose stacks on configurable schedules with retention policies and full restore capabilities. A built-in application catalog provides 60+ one-click templates for common services. JWT license validation uses an RSA-4096 public key embedded in the binary, requiring no call-home and working entirely offline. For teams tired of maintaining separate tools for each infrastructure concern, Usulnet collapses the entire stack into a single point of management with Docker Compose deployment alongside PostgreSQL, Redis, and NATS.

Usulnet
Usulnet
Usulnet
Usulnet
Usulnet

Benefits

  • Single Binary Simplicity
  • One compiled Go binary contains all 39 backend services with no external runtime dependencies, deploying in seconds without Node.js, Python, or plugin installations cluttering your server.
  • Zero Telemetry Architecture
  • No call-home, no analytics, no usage tracking. Offline JWT license validation with RSA-4096 public key embedded in the binary ensures complete operational privacy on your infrastructure.
  • Multi-Node Orchestration Built-In
  • Master and agent modes with NATS JetStream messaging and mTLS encryption enable managing remote Docker hosts from one dashboard without separate orchestration tool deployments.
  • All Features Without Gating
  • Every module ships in the standard AGPL binary, including security scanning, backups, WireGuard VPN, firewall management, and multi-node support without paid tiers or artificial feature restrictions.

Features

  • Container Lifecycle Management
  • Full create, start, stop, restart, remove operations with bulk actions, real-time stats, filesystem browser, settings editor, and log streaming for all running containers.
  • Trivy Security Scanning
  • Integrated CVE detection with severity scoring, SBOM generation, CIS benchmark validation, and HTML vulnerability reports for images and running container workloads.
  • Reverse Proxy Automation
  • Nginx configuration with automatic Let's Encrypt certificate provisioning, TCP and UDP stream proxying, access lists, and dead host detection from the web interface.
  • Stack Deployment Catalog
  • Docker Compose deployment from YAML files, Git repositories, or built-in template catalog with 60+ pre-configured applications across common service categories.
  • Backup and Restore
  • Scheduled volume and stack backups with configurable retention policies, verification checks, automated rollback capabilities, and full stack restore from snapshots.
  • WireGuard VPN Mesh
  • Built-in WireGuard configuration for encrypted inter-node communication and secure remote access without deploying separate VPN infrastructure alongside your containers.