MCP Server Control
Click on "Install Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@MCP Server Controlcheck disk space"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
MCP Server Control 🖥️
A production-grade MCP (Model Context Protocol) server that lets AI cloud services (Claude, ChatGPT, Gemini, Cursor, etc.) control and manage your Linux server securely via HTTP/SSE.
✨ Features
20 MCP Tools — run commands, manage files, control services, manage users & SSH keys
10 Security Layers — API key + JWT tokens + IP whitelist + rate limiting + audit logs + command blacklist + path sandboxing + HTTPS + Helmet + CORS
Role-Based Access —
admingets full control;useris sandboxed to their home directoryPer-User API Keys — issue scoped keys for different users/services
Audit Logging — every tool call logged with user, IP, duration, result (daily rotating JSON)
systemd Ready — auto-start on boot
🚀 Quick Start
# 1. Clone
git clone https://github.com/MarketingLimited/mcp-server-control.git
cd mcp-server-control
# 2. Install dependencies
npm install
# 3. Setup (generates secrets, .env, optional TLS cert)
node setup.js
# 4. Start
npm start
# 5. Or run as system service
cp mcp-server.service /etc/systemd/system/
systemctl enable --now mcp-server🔗 Connect Your AI Client
Claude Desktop
{
"mcpServers": {
"server-control": {
"type": "sse",
"url": "http://YOUR_SERVER_IP:4444/mcp",
"headers": { "X-API-Key": "YOUR_ADMIN_KEY" }
}
}
}Cursor / VS Code
{
"mcpServers": {
"server-control": {
"url": "http://YOUR_SERVER_IP:4444/mcp",
"type": "sse",
"headers": { "X-API-Key": "YOUR_ADMIN_KEY" }
}
}
}🛠️ Available Tools
Category | Tools |
System |
|
Files |
|
Services |
|
Users |
|
🔐 Security Architecture
AI Client → HTTPS → IP Whitelist → API Key/JWT → Rate Limit → Scope Check → Sandbox → ToolLayer | Details |
HTTPS/TLS | TLS 1.2+ with strong cipher suites |
IP Whitelist | Per-key or global CIDR restrictions |
API Key | 64-byte cryptographically random hex keys |
JWT Tokens | IP-bound, 8h expiry, issued per-session |
Rate Limiting | 60 req/min global, 10/15min auth |
Command Guard | Blacklist of destructive patterns |
Path Sandbox | Users restricted to |
Audit Logs | Structured JSON, 30-day retention |
📁 Project Structure
├── server.js # Main MCP server (Express + SSE)
├── security.js # All auth & security middleware
├── audit.js # Structured audit logging
├── keygen.js # API key generator
├── setup.js # First-time setup wizard
├── mcp-server.service # systemd unit file
├── .env.example # Config template
└── tools/
├── system.js # Shell commands, processes, system info
├── files.js # File system CRUD
├── services.js # systemd & firewall management
└── users.js # User & SSH key management⚙️ Configuration
Copy .env.example to .env and configure:
PORT=4444
USE_HTTPS=true
JWT_SECRET=<64-byte random hex>
ADMIN_API_KEY=<generated with keygen.js>
ALLOWED_IPS=203.0.113.10,192.168.1.0/24 # optional
RATE_LIMIT_MAX_REQUESTS=60
AUDIT_LOG_KEEP_DAYS=30🔑 Generate API Keys
# Generate admin key
node keygen.js admin admin
# Generate scoped user key
node keygen.js alice user run_command,read_file,write_file📊 Monitor
# Live audit log
tail -f logs/audit-$(date +%Y-%m-%d).log | jq
# View active sessions
curl http://localhost:4444/admin/sessions -H "X-API-Key: YOUR_KEY"
# Health check
curl http://localhost:4444/healthRequirements
Node.js 18+
Linux (systemd-based)
openssl(for HTTPS)Root or sudo for full admin tools
License
MIT
This server cannot be installed
Maintenance
Resources
Unclaimed servers have limited discoverability.
Looking for Admin?
If you are the server author, to access and configure the admin panel.
Latest Blog Posts
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/MarketingLimited/mcp-server-control'
If you have feedback or need assistance with the MCP directory API, please join our Discord server