[![Contributors][contributors-shield]][contributors-url] [![Forks][forks-shield]][forks-url] [![Stargazers][stars-shield]][stars-url] [![Issues][issues-shield]][issues-url] [![MIT License][license-shield]][license-url] [![Release][release-shield]][release-url]
🤔 What is Nexterm?
Nexterm is an open-source server management software that allows you to:
- Connect remotely via SSH, VNC and RDP
- Manage files through SFTP
- Deploy applications via Docker
- Manage Proxmox LXC and QEMU containers
- Secure access with two-factor authentication and OIDC SSO
- Separate users and servers into Organizations
📷 Screenshots
![]() |
![]() |
![]() |
![]() |
![]() |
![]() |
🚀 Install
You can install Nexterm by clicking here.
💻 Development
Prerequisites
- Node.js 18+
- Yarn
- FlatBuffers compiler (
flatc) - Docker (optional)
| Platform | Command |
|----------|---------|
| macOS | brew install flatbuffers |
| Ubuntu / Debian | sudo apt install flatbuffers-compiler |
| Windows | winget install Google.FlatBuffers |
Local Setup
Clone the repository
git clone https://github.com/gnmyt/Nexterm.git
cd Nexterm
Configure environment
Create a local environment file:
cp .env.example .env
Make sure ENCRYPTION_KEY is set in .env.
You can generate a secure key using:
| Platform | Command |
|----------|---------|
| macOS / Linux | openssl rand -hex 32 |
Install dependencies
yarn install
cd client && yarn install
cd ..
Generate FlatBuffers schemas
yarn schema:generate
This step is required before starting the development server.
Start development mode
yarn dev
Start an engine
The development server does not automatically start an engine. To connect to servers, an engine must be running separately:
yarn dev:engine
If using local engine registration, set LOCAL_ENGINE_TOKEN in the server environment and use the same value as REGISTRATION_TOKEN for the engine.
🔧 Configuration
Docker Images
| Image | Description |
|------------------|----------------------------------------------------------|
| nexterm/aio | All-In-One — server, client, and engine bundled together |
| nexterm/server | Server + web client only (requires external engine) |
| nexterm/engine | Engine only |
The server listens on port 6989 by default. You can modify this behavior using environment variables:
SERVER_PORT: Server listening port (default: 6989)CONTROL_PLANE_PORT: TCP port for engine communication (default: 7800)NODE_ENV: Runtime environment (development/production)ENCRYPTION_KEY: Encryption key for passwords, SSH keys and passphrases. Supports Docker secrets via
AI_SYSTEM_PROMPT: Extra instructions appended to the AI assistant's system prompt (example: Always explain destructive commands before running them.)
LOG_LEVEL: Logging level for application and engine (system/info/verbose/debug/warn/error, default: system)
TRUST_PROXY: Number of reverse proxies in front of Nexterm, so logs and audits show the real client IP instead of the proxy's (default: disabled). Use 1 for a single Nginx/Traefik, or pass trusted addresses (10.10.10.10,192.168.0.0/16).
Only enable this if your proxy sets X-Forwarded-For, otherwise clients can spoof their IP.
🛡️ Security
- Two-factor authentication
- Session management
- Password encryption
- Docker container isolation
- Oauth 2.0 OpenID Connect SSO
🤝 Contributing
Contributions are welcome! Please feel free to:
- Fork the project
- Create a feature branch (
git checkout -b feature/AmazingFeature)
Commit your changes ( git commit -m 'Add some AmazingFeature')
Push to the branch ( git push origin feature/AmazingFeature)
Open a Pull Request
🔗 Useful Links
💜 Powered by
📄 License
Distributed under the MIT license. See
LICENSE` for more information.
[contributors-shield]: https://img.shields.io/github/contributors/gnmyt/Nexterm.svg?style=for-the-badge [contributors-url]: https://github.com/gnmyt/Nexterm/graphs/contributors [forks-shield]: https://img.shields.io/github/forks/gnmyt/Nexterm.svg?style=for-the-badge [forks-url]: https://github.com/gnmyt/Nexterm/network/members [stars-shield]: https://img.shields.io/github/stars/gnmyt/Nexterm.svg?style=for-the-badge [stars-url]: https://github.com/gnmyt/Nexterm/stargazers [issues-shield]: https://img.shields.io/github/issues/gnmyt/Nexterm.svg?style=for-the-badge [issues-url]: https://github.com/gnmyt/Nexterm/issues [license-shield]: https://img.shields.io/github/license/gnmyt/Nexterm.svg?style=for-the-badge [license-url]: https://github.com/gnmyt/Nexterm/blob/master/LICENSE [release-shield]: https://img.shields.io/github/v/release/gnmyt/Nexterm.svg?style=for-the-badge [release-url]: https://github.com/gnmyt/Nexterm/releases/latest





