WiFi Hotspot and Network Security Manager for Linux. Automated AP creation, captive portal with voucher system, real-time DNS traffic analysis, domain policy enforcement, SPAN port IDS, VPN/DoH bypass blocking, and a full-featured web dashboard.
Python
1
123 commits
updated Oct 8, 2026
WiFi Hotspot & Network Security Manager for Linux
Create WiFi hotspots, monitor DNS traffic, enforce domain policies, detect network anomalies, and block encrypted DNS bypass.
Big update, October 2026: after 2 months of quiet work, this sync brings the full OSHotspot stack (dashboard, live Events, authentication, captive portal, VPN, mail alerts, audit), about 4 months of development in total, including one month before the first GitHub commit. See "What's new in this update" below.
The OSHotspot web dashboard: live overview, traffic, clients, SPAN analysis, domain policy and more.
OSHotspot fixes broken WiFi hotspot sharing on Linux when NetworkManager's built-in hotspot fails. It provides automated Access Point creation, customizable Captive Portals, and a standalone SPAN Port Network Traffic & Intrusion Detection System (IDS).
OSHotspot is a lightweight Linux networking tool that creates a working WiFi hotspot using native networking tools:
hostapd → WiFi Access Point managementdnsmasq → Dedicated DHCP and DNS serviceiptables / nftables → NAT, DNS redirect, DoH/DoT/VPN blockingiw → Virtual WiFi interface management (ap0)span_analyzer → Raw packet inspection & anomaly detection (IDS)Python 3 + SSE → Real-time web dashboard with live event streamingstart, stop, repair, monitor, scan, qr, logs, doctor, web, set, setup-vpn, setup-mail...) and an 18-view vanilla JS SPA dashboard with no Node.js, no npm, and no build step. Application category blocking controls are embedded in the Domain Policy page.Launch the dashboard with:
sudo oshotspot web
The dashboard listens on port 8073.
| Page | Description |
|---|---|
| Overview | Live status, hostapd/dnsmasq health, active client count, traffic sparklines |
| Traffic Monitor | Real-time upload/download bandwidth charts with total RX/TX statistics |
| Controls | Start, stop, restart, and repair hotspot services with live console output |
| Clients | Connected devices table with kick, MAC blocking, known device labeling, and bulk import |
| Captive Portal | Configure access codes (with progressive rate limiting: +60s lockout every 5 failed attempts, capped at 1h), guest mode, custom logo, background color, and welcome message |
| SPAN Analysis | Switch mirror port, packet metrics, real-time traffic & anomaly stream, anomaly history (last 100) |
| Configuration | Edit SSID, password, channel, country code, remote access, inactivity timeout, logos, colors |
| Domain Policy | Edit wildcard lists for domain blocking, watched domains, and noise filtering with bulk import; application category blocking (messaging, gaming) by port and SNI |
| Live Activity | Real-time DNS/HTTP/TLS/alert stream delivered via Server-Sent Events (SSE) |
| Events | Live events feed, historical event search (type/MAC/time filters), and known devices inventory |
| User Management | Create/delete admin accounts, role assignment (superadmin/admin), password reset (superadmin only) |
| Audit Log | Admin action history with filters, pagination, and bulk delete (superadmin or granted audit access) |
| QR Code | Scannable terminal & browser WiFi QR code for instant mobile connections |
| Diagnostics | Run system readiness tests (oshotspot doctor) with one-click repair |
| Logs | Live hostapd, dnsmasq, web server, and event log viewer with auto-refresh |
| Email Alerts | Configure SMTP email alerts for domain policy violations and network anomalies (msmtp or direct SMTP) |
| VPN | Tailscale VPN status, connected devices, start/stop/restart controls, remote access setup guide |
| About | Version, author, license, technology stack, and features overview |
sudo oshotspot start # Start WiFi hotspot and NAT routing
sudo oshotspot stop # Stop hotspot services
sudo oshotspot restart # Restart hotspot and reload configuration
sudo oshotspot status # Display real-time status and connected devices
sudo oshotspot clients # List connected devices with MAC & IP
sudo oshotspot monitor # Terminal live monitoring dashboard (TUI)
sudo oshotspot repair # Automatic network repair & recovery
sudo oshotspot web # Launch web management dashboard
sudo oshotspot doctor # System readiness diagnostic
sudo oshotspot interfaces # List available WiFi network adapters
sudo oshotspot scan # Scan WiFi channels and recommend best channel
sudo oshotspot qr # Print scannable terminal WiFi QR code
sudo oshotspot logs # View and follow hotspot logs (--follow, --lines=N)
sudo oshotspot enable # Enable auto-start at boot via systemd
sudo oshotspot disable # Disable auto-start at boot
sudo oshotspot update # Update OSHotspot to latest version
sudo oshotspot config # Print current configuration
sudo oshotspot config reset # Restore config from example template
sudo oshotspot set ssid <name> # Change hotspot SSID (auto-restart if running)
sudo oshotspot set password <pass> # Change hotspot password (auto-restart if running)
sudo oshotspot set wifi_iface <iface> # Set internet WiFi adapter
sudo oshotspot setup-vpn # Install and configure Tailscale VPN for remote access
sudo oshotspot setup-mail # Configure email alerts (msmtp or direct SMTP)
sudo oshotspot uninstall [--purge] # Remove OSHotspot (--purge removes config & logs)
Note: OSHotspot is open source under Apache 2.0. You need
sudoon your Linux machine to run the installer.
One-liner install:
curl -fsSL https://raw.githubusercontent.com/King03-sam/OSHotspot/main/install.sh | sudo bash
Or manual install:
git clone https://github.com/King03-sam/OSHotspot.git
cd OSHotspot
chmod +x install.sh oshotspot
sudo ./install.sh
For complete technical specifications, architecture details, and API references, see oshotspot-fuc.md.
Copyright 2026 OLOJEDE Samuel. Licensed under the Apache License 2.0.
WiFi Hotspot and Network Security Manager for Linux. Automated AP creation, captive portal with voucher system, real-time DNS traffic analysis, domain policy enforcement, SPAN port IDS, VPN/DoH bypass blocking, and a full-featured web dashboard.
Python
1
123 commits
updated Oct 8, 2026
WiFi Hotspot & Network Security Manager for Linux
Create WiFi hotspots, monitor DNS traffic, enforce domain policies, detect network anomalies, and block encrypted DNS bypass.
Big update, October 2026: after 2 months of quiet work, this sync brings the full OSHotspot stack (dashboard, live Events, authentication, captive portal, VPN, mail alerts, audit), about 4 months of development in total, including one month before the first GitHub commit. See "What's new in this update" below.
The OSHotspot web dashboard: live overview, traffic, clients, SPAN analysis, domain policy and more.
OSHotspot fixes broken WiFi hotspot sharing on Linux when NetworkManager's built-in hotspot fails. It provides automated Access Point creation, customizable Captive Portals, and a standalone SPAN Port Network Traffic & Intrusion Detection System (IDS).
OSHotspot is a lightweight Linux networking tool that creates a working WiFi hotspot using native networking tools:
hostapd → WiFi Access Point managementdnsmasq → Dedicated DHCP and DNS serviceiptables / nftables → NAT, DNS redirect, DoH/DoT/VPN blockingiw → Virtual WiFi interface management (ap0)span_analyzer → Raw packet inspection & anomaly detection (IDS)Python 3 + SSE → Real-time web dashboard with live event streamingstart, stop, repair, monitor, scan, qr, logs, doctor, web, set, setup-vpn, setup-mail...) and an 18-view vanilla JS SPA dashboard with no Node.js, no npm, and no build step. Application category blocking controls are embedded in the Domain Policy page.Launch the dashboard with:
sudo oshotspot web
The dashboard listens on port 8073.
| Page | Description |
|---|---|
| Overview | Live status, hostapd/dnsmasq health, active client count, traffic sparklines |
| Traffic Monitor | Real-time upload/download bandwidth charts with total RX/TX statistics |
| Controls | Start, stop, restart, and repair hotspot services with live console output |
| Clients | Connected devices table with kick, MAC blocking, known device labeling, and bulk import |
| Captive Portal | Configure access codes (with progressive rate limiting: +60s lockout every 5 failed attempts, capped at 1h), guest mode, custom logo, background color, and welcome message |
| SPAN Analysis | Switch mirror port, packet metrics, real-time traffic & anomaly stream, anomaly history (last 100) |
| Configuration | Edit SSID, password, channel, country code, remote access, inactivity timeout, logos, colors |
| Domain Policy | Edit wildcard lists for domain blocking, watched domains, and noise filtering with bulk import; application category blocking (messaging, gaming) by port and SNI |
| Live Activity | Real-time DNS/HTTP/TLS/alert stream delivered via Server-Sent Events (SSE) |
| Events | Live events feed, historical event search (type/MAC/time filters), and known devices inventory |
| User Management | Create/delete admin accounts, role assignment (superadmin/admin), password reset (superadmin only) |
| Audit Log | Admin action history with filters, pagination, and bulk delete (superadmin or granted audit access) |
| QR Code | Scannable terminal & browser WiFi QR code for instant mobile connections |
| Diagnostics | Run system readiness tests (oshotspot doctor) with one-click repair |
| Logs | Live hostapd, dnsmasq, web server, and event log viewer with auto-refresh |
| Email Alerts | Configure SMTP email alerts for domain policy violations and network anomalies (msmtp or direct SMTP) |
| VPN | Tailscale VPN status, connected devices, start/stop/restart controls, remote access setup guide |
| About | Version, author, license, technology stack, and features overview |
sudo oshotspot start # Start WiFi hotspot and NAT routing
sudo oshotspot stop # Stop hotspot services
sudo oshotspot restart # Restart hotspot and reload configuration
sudo oshotspot status # Display real-time status and connected devices
sudo oshotspot clients # List connected devices with MAC & IP
sudo oshotspot monitor # Terminal live monitoring dashboard (TUI)
sudo oshotspot repair # Automatic network repair & recovery
sudo oshotspot web # Launch web management dashboard
sudo oshotspot doctor # System readiness diagnostic
sudo oshotspot interfaces # List available WiFi network adapters
sudo oshotspot scan # Scan WiFi channels and recommend best channel
sudo oshotspot qr # Print scannable terminal WiFi QR code
sudo oshotspot logs # View and follow hotspot logs (--follow, --lines=N)
sudo oshotspot enable # Enable auto-start at boot via systemd
sudo oshotspot disable # Disable auto-start at boot
sudo oshotspot update # Update OSHotspot to latest version
sudo oshotspot config # Print current configuration
sudo oshotspot config reset # Restore config from example template
sudo oshotspot set ssid <name> # Change hotspot SSID (auto-restart if running)
sudo oshotspot set password <pass> # Change hotspot password (auto-restart if running)
sudo oshotspot set wifi_iface <iface> # Set internet WiFi adapter
sudo oshotspot setup-vpn # Install and configure Tailscale VPN for remote access
sudo oshotspot setup-mail # Configure email alerts (msmtp or direct SMTP)
sudo oshotspot uninstall [--purge] # Remove OSHotspot (--purge removes config & logs)
Note: OSHotspot is open source under Apache 2.0. You need
sudoon your Linux machine to run the installer.
One-liner install:
curl -fsSL https://raw.githubusercontent.com/King03-sam/OSHotspot/main/install.sh | sudo bash
Or manual install:
git clone https://github.com/King03-sam/OSHotspot.git
cd OSHotspot
chmod +x install.sh oshotspot
sudo ./install.sh
For complete technical specifications, architecture details, and API references, see oshotspot-fuc.md.
Copyright 2026 OLOJEDE Samuel. Licensed under the Apache License 2.0.