Skip to main content

Local mode

Local mode checks the machine DeaconGuard runs on, without a server, agents or accounts.

ServerLocal mode
Forone dashboard for many machinesone machine on its own
Dashboardhttps://SERVER:8443, with sign-inhttp://127.0.0.1:7480, this machine only, no sign-in
Scansthe server's machine and every agentonly this machine

Dashboard​

deaconguard host add # add --allow-sudo to let the deeper checks use sudo
deaconguard serve # then open http://127.0.0.1:7480

The local dashboard listens only on a loopback address and rejects requests addressed to other host names or sent from other websites.

Terminal​

deaconguard host list
deaconguard scan HOST_ID --checks packages,malware,config
deaconguard report REPORT_ID --json

A one-off scan without registering the machine:

deaconguard scan --local --checks packages,integrity,malware,config --allow-sudo