Skip to content

DockSight

Manage every Docker host you own from one dashboard — without opening a single inbound port on any of them.

DockSight is an open-source Docker management and observability platform. A central platform runs the dashboard, API and database; lightweight agents run beside each Docker Engine and connect outbound to the platform over WebSocket.


The shape of it

graph LR
    subgraph Operator
        B[Browser]
    end

    subgraph "Platform — one central server"
        N[nginx] --> W[Web dashboard]
        N --> S[API + WebSocket gateway]
        S --> P[(PostgreSQL)]
        S --> R[(Redis)]
    end

    subgraph "Docker host A"
        A1[docksight-agent] --> D1[Docker Engine]
    end

    subgraph "Docker host B"
        A2[docksight-agent] --> D2[Docker Engine]
    end

    B -->|HTTPS| N
    A1 -.->|outbound WebSocket| N
    A2 -.->|outbound WebSocket| N

Every dotted line is initiated by the agent. Hosts behind NAT, in another cloud, or on a home network need no port forwarding, no VPN and no public IP. See Architecture for why this direction was chosen.


Install in three commands

curl -fLO https://github.com/rodriguecyber/docksight/releases/latest/download/docksight-cli-v0.0.13-linux-amd64
chmod +x docksight-cli-v0.0.13-linux-amd64
sudo ./docksight-cli-v0.0.13-linux-amd64 install

Installs the CLI to /usr/local/bin/docksight, unpacks the platform into /opt/docksight, generates credentials, and starts the Docker Compose stack. Full walkthrough: Installation.

curl -fLO https://github.com/rodriguecyber/docksight/releases/latest/download/docksight-cli-v0.0.13-linux-amd64
chmod +x docksight-cli-v0.0.13-linux-amd64
sudo ./docksight-cli-v0.0.13-linux-amd64 agent install --url https://platform.example.com

Installs the agent, writes /etc/docksight-agent/config.yaml, registers a systemd service and verifies the connection. Full walkthrough: Installation.

Use -f with curl

curl -fLO fails on a 404 instead of silently saving GitHub's HTML error page over your binary. This is the single most common installation problem — see the FAQ.


Where to go next

  • New here?

    Start with Introduction for the concepts, then Architecture for how the pieces fit together.

  • Installing

    Installation covers platform, agent, upgrades, requirements and troubleshooting.

  • Using the CLI

    CLI reference documents every command with real output.

  • Integrating

    WebSocket protocol explains the wire format; protocol.md is the field-level specification.

  • Running it safely

    Security is honest about what is protected today and what is not.

  • What's coming

    Roadmap separates what is built from what is planned.


Project status

DockSight is under active development. The installation system, agent lifecycle and container operations are implemented and usable; authentication and transport encryption for agent connections are not yet implemented.

Not production-hardened yet

Agent connections are currently unauthenticated — any process that can reach /agents can register as an agent. Run DockSight on a trusted network or behind a VPN until token authentication lands. See Security for the full picture.

Area Status
Platform installation and upgrades Implemented
Agent installation and upgrades Implemented
Agent registration, heartbeat, reconnect Implemented
Container list, inspect, start/stop/restart Implemented
Container log streaming Implemented
Metrics collection Planned
Agent authentication (tokens) Planned
TLS for agent connections Supported via wss://, not enforced

The full breakdown lives in the Roadmap.