a portable network & security dashboard you carry on your laptop. One Docker container, one web UI
148
v2.2.0 — a portable network & security dashboard for network engineers, system administrators, and field technicians.
One Docker container. One web UI. Run it on your laptop, workstation, server, home lab, or client site.
Network and IT technicians often need several different tools during a site visit:
NetToolbox brings these tools together in a single browser-based dashboard running inside Docker.
No desktop installation. No separate applications. No account required.
Just pull the Docker image and start the container.
Pull the latest version:
docker pull sajadprp/nettoolbox:latest
Or pull a specific version:
docker pull sajadprp/nettoolbox:v2.2.0
docker run -d \
--restart unless-stopped \
--net=host \
--cap-add=NET_ADMIN \
--cap-add=NET_RAW \
--name nettoolbox \
sajadprp/nettoolbox:latest
Open your browser and go to:
http://127.0.0.1:8642
That's it.
If you want to run an exact version instead of latest:
docker run -d \
--restart unless-stopped \
--net=host \
--cap-add=NET_ADMIN \
--cap-add=NET_RAW \
--name nettoolbox \
sajadprp/nettoolbox:v2.2.0
Discover devices on the local network using ARP and ping scanning.
Features include:
Scan individual hosts using:
Perform one-shot connectivity checks or monitor latency continuously.
Trace the network path to a destination and inspect individual hops.
Live MTR monitoring with:
IPv4 CIDR calculator with:
Discover network neighbors using:
Useful for identifying connected switches, routers, and network equipment.
SNMP GET and WALK support for network devices such as:
Supports SNMP:
Information can include:
Inspect nearby wireless networks:
Check:
The speed test uses Cloudflare's speed test infrastructure.
Send Wake-on-LAN packets to compatible devices.
View the local ARP table directly from the dashboard.
Monitor RX/TX traffic for network interfaces.
Query multiple DNS record types:
Perform Whois lookups for domains and IP addresses.
Check the public IP address of the current network.
Look up geolocation information for an IP address.
Passive domain reconnaissance using public certificate transparency information.
The tool can identify:
No active scanning is performed for this feature.
Inspect SSL/TLS certificates, including:
Check HTTP security headers such as:
Client-side utilities for:
Use a full SSH terminal directly from the browser.
The terminal runs through ttyd and provides an interactive shell environment.
Connect to Telnet services directly from the browser.
Connect to Windows desktops using:
The RDP viewer runs inside the browser.
This is useful when working with Windows machines on the same LAN as the NetToolbox host.
Save frequently used hosts and connection information.
Profiles can contain:
Passwords are not stored in host profiles.
Keep frequently used administration commands in one place.
Supported environments include:
Scripts support variables such as:
{{HOST}}
{{USERNAME}}
{{IP}}
{{PORT}}
Scripts can be:
Scripts can also be used from the SSH/Telnet and RDP workflows.
Generate a report containing information collected during a network site visit.
Reports can include:
Reports can be downloaded as:
Useful for:
Generate QR codes for:
QR codes can be:
WiFi QR codes can be generated from the current network information or entered manually.
NetToolbox includes:
NetToolbox requires host networking and additional network capabilities for several network-discovery features.
Recommended Docker configuration:
docker run -d \
--restart unless-stopped \
--net=host \
--cap-add=NET_ADMIN \
--cap-add=NET_RAW \
--name nettoolbox \
sajadprp/nettoolbox:latest
--net=host?Host networking allows NetToolbox to see the actual network interfaces and local network environment of the machine running the container.
This is important for features such as:
NET_ADMIN?NET_ADMIN allows the container to perform certain network administration operations required by network-analysis tools.
NET_RAW?NET_RAW is required by several tools that use raw network packets, including network discovery and scanning functionality.
NetToolbox uses the following local services:
| Service | Port | Access |
|---|---|---|
| Dashboard | 8642 | Browser |
| Web Terminal | 7681 | Browser |
| RDP / noVNC | 7682 | Browser |
The dashboard is intended to be accessed locally.
Use:
http://127.0.0.1:8642
NetToolbox is a powerful network administration tool.
Because the container has access to the host network and additional network capabilities, you should understand the security implications before running it.
The container uses:
--net=host
This gives the container visibility into the host's network environment.
The container uses:
--cap-add=NET_ADMIN
--cap-add=NET_RAW
These capabilities are required by several network-analysis features.
The browser terminal provides a real shell environment with tools such as:
Treat the terminal as you would any other administrative shell.
RDP credentials are passed to FreeRDP through stdin rather than being placed directly on the command line.
NetToolbox can work with internal and self-signed certificates where certificate verification is intentionally bypassed for inspection purposes.
A small number of features communicate with external services:
Other functionality such as scanning, ARP discovery, CDP/LLDP, SSH/Telnet, RDP, and hashing is designed to operate locally.
Run NetToolbox only on systems and networks that you are authorized to administer.
Do not expose the dashboard publicly unless you have added your own authentication and network access controls.
If you are using the latest tag:
docker pull sajadprp/nettoolbox:latest
Remove the old container:
docker rm -f nettoolbox
Start the updated container:
docker run -d \
--restart unless-stopped \
--net=host \
--cap-add=NET_ADMIN \
--cap-add=NET_RAW \
--name nettoolbox \
sajadprp/nettoolbox:latest
Your configuration and container state should be treated as disposable unless you explicitly mount persistent storage.
Linux provides the most predictable behavior for network-discovery features because Docker can use the host network namespace directly.
Make sure Docker is enabled at boot:
sudo systemctl enable docker
sudo systemctl start docker
Then:
docker pull sajadprp/nettoolbox:latest
docker run -d \
--restart unless-stopped \
--net=host \
--cap-add=NET_ADMIN \
--cap-add=NET_RAW \
--name nettoolbox \
sajadprp/nettoolbox:latest
NetToolbox can be run using Docker Desktop.
Install Docker Desktop, then run:
docker pull sajadprp/nettoolbox:latest
Then:
docker run -d `
--restart unless-stopped `
--net=host `
--cap-add=NET_ADMIN `
--cap-add=NET_RAW `
--name nettoolbox `
sajadprp/nettoolbox:latest
Network discovery behavior may vary depending on the Docker Desktop and Windows networking configuration.
Linux is recommended when direct access to the physical network interface is required.
NetToolbox can also be run using Docker Desktop on macOS.
Pull the image:
docker pull sajadprp/nettoolbox:latest
Run:
docker run -d \
--restart unless-stopped \
--net=host \
--cap-add=NET_ADMIN \
--cap-add=NET_RAW \
--name nettoolbox \
sajadprp/nettoolbox:latest
Some low-level network features may behave differently because Docker Desktop runs containers inside a Linux virtual machine.
Docker Hub:
https://hub.docker.com/r/sajadprp/nettoolbox
Available images:
sajadprp/nettoolbox:latest
sajadprp/nettoolbox:v2.2.0
Pull latest:
docker pull sajadprp/nettoolbox:latest
Pull version 2.2.0:
docker pull sajadprp/nettoolbox:v2.2.0
The application is designed to be self-contained and does not require external CDN dependencies for the main web interface.
MIT License.
See LICENSE for the complete license text.
Content type
Image
Digest
sha256:9e9c42722…
Size
286.5 MB
Last updated
2 days ago
docker pull sajadprp/nettoolbox:v2.3.0