mcp-ssh-sre
An MCP server providing read-only server monitoring tools to AI assistants. Runs predefined diagnostic commands over SSH and passes only the results to the LLM - your server credentials and shell are never exposed.
MCP SSH SRE
An MCP server providing read-only server monitoring tools to AI assistants. Runs predefined diagnostic commands over SSH and passes only the results to the LLM - your server credentials and shell are never exposed.
Quick Start (Docker)
Pre-built images available on GitHub Container Registry.
docker run -d \
-p 3000:3000 \
-e SSH_HOST=server.local \
-e SSH_USERNAME=mcp-readonly \
-e SSH_KEY_PATH=/keys/id_ed25519 \
-v ~/.ssh/id_ed25519_mcp:/keys/id_ed25519:ro \
ghcr.io/ohare93/mcp-ssh-sre:latest
Then add to your MCP client:
{
"mcpServers": {
"ssh-sre": {
"url": "http://your-server:3000/mcp"
}
}
}
See DEPLOYMENT.md for Docker Compose, local installation, authentication setup, and security configuration.
Why Use This?
Managing a Linux server involves SSH-ing in, running commands, correlating logs, and interpreting metrics. This MCP server lets AI assistants do that work using natural language.
Ask questions like:
- "Why is my Plex container crashing?"
- "Is my array healthy and are there any drives showing signs of failure?"
- "Which containers are consuming the most resources?"
- "Help me debug network connectivity between my nginx and database containers"
Instead of manually running docker logs, smartctl, docker inspect, and correlating outputs, your AI assistant does it in seconds.
Supported Platforms
| Platform | Status | Tools |
|---|---|---|
| Unraid | Full support | 12 modules (10 core + 2 Unraid-specific) |
| Generic Linux | Full support | 10 core modules |
| TrueNAS | Untested (PRs welcome) | Core tools should work |
| Proxmox | Untested (PRs welcome) | Core tools should work |
The server auto-detects your platform at startup and loads appropriate tools.
Features
- 12 tool modules with 79+ actions for comprehensive server management
- Dual transport - Stdio (local) or HTTP/SSE (network-accessible)
- Read-only by design - Zero risk of accidental modifications
- Docker management - Logs, stats, environment, ports, network topology
- Storage & array - Parity checks, SMART data, temperatures, mover logs (Unraid)
- Health diagnostics - Aggregated status with automatic issue detection
- System monitoring - Processes, disk I/O, network connections
- Log analysis - Search across containers and system logs
- VM management - List, inspect, VNC details, libvirt logs
- Security auditing - Port scanning, login monitoring, permission audits
Why SSH Instead of Platform APIs?
| Feature | APIs | SSH |
|---|---|---|
| Docker container logs | ❌ | ✅ |
| SMART disk health data | ❌ | ✅ |
| Real-time CPU/load averages | ❌ | ✅ |
| Network bandwidth monitoring | ❌ | ✅ |
| Process monitoring (ps/top) | ❌ | ✅ |
| Log file analysis | ❌ | ✅ |
SSH provides unrestricted access to system tools without API rate limiting.
Architecture
src/
├── platforms/
│ ├── linux/ # Generic Linux (baseline)
│ └── unraid/ # Unraid-specific tools
├── tools/core/ # 10 core tool modules
├── index.ts # Stdio transport
└── http-server.ts # HTTP transport
Adding New Platforms
- Create
src/platforms/<platform>/index.tsimplementingPlatform - Add detection logic
- Create platform-specific tool modules
- Register in
src/platforms/index.ts
Development
npm run dev # Development with auto-reload
npm test # Run tests
npm run build # Build for production
License
ISC
Support
For issues and questions, open an issue on the GitHub repository.
Verwandte Server
Scout Monitoring MCP
SponsorPut performance and error data directly in the hands of your AI assistant.
Alpha Vantage MCP Server
SponsorAccess financial market data: realtime & historical stock, ETF, options, forex, crypto, commodities, fundamentals, technical indicators, & more
302AI Custom MCP Server
A customizable MCP service with flexible tool selection and configuration. Requires a 302AI API key.
CLI Exec
Execute shell commands with structured output via a powerful CLI server.
Storybook MCP
A universal MCP server that connects to any Storybook site and extracts documentation in real-time using Playwright. Use it with any AI or client that supports MCP (Model Context Protocol)—Cursor, Claude Desktop, Windsurf, or other MCP hosts.
clj-kondo-MCP
Clojure linter
RenderLens
Visual verification MCP server — render code to screenshots, run WCAG accessibility audits, and pixel-diff UI changes. Free, no API key.
SuzieQ
Interact with the SuzieQ network observability platform via its REST API.
Authless Remote MCP Server
An example of a remote MCP server without authentication, deployable on Cloudflare Workers or runnable locally.
Remote MCP Server (Authless)
An example of a remote MCP server without authentication, deployable on Cloudflare Workers.
JMeter MCP Server
Execute JMeter tests and analyze results through MCP-compatible clients.
Drupal Tools
A server providing resources, tools, and prompts for Drupal development.