Deutsche Version
Back to Overview
¶ Installation Commands
| Command |
Description |
install |
System-wide installation (see Installation) |
uninstall |
Uninstall (see Installation) |
--version, -v |
Show version number |
--config, -c |
Show active configuration |
--help, -h |
Show help |
¶ Database Commands
| Command |
Description |
db create --name <db> --user <user> [--password <pass>] |
Create DB + user |
db create-for-user --name <db> --user <user> |
Create DB for existing user |
db delete --name <db> [--user <user>] [--drop-user] |
Delete DB (optionally with user) |
db backup --name <db> |
Backup single DB |
db backup-all |
Backup all user databases |
db restore --name <db> --file <path> |
Restore DB from dump |
db import --name <db> --file <path> |
Import SQL file (.sql, .sql.gz, .sql.zip) |
db export --name <db> [--output <path>] |
Export DB to file |
db list |
List all databases and users |
db info --name <db> |
DB details (size, tables, users) |
db grant --name <db> --user <user> [--level all\|readonly\|readwrite] |
Assign permissions |
db grants --user <user> |
Show all grants for a user |
¶ Virtual Host Commands
| Command |
Description |
vhost create --domain <d> [--type php\|proxy] [--php <v>] [--backend <url>] [--websocket] [--aliases <list>] |
Create VHost (PHP or Reverse Proxy) |
vhost delete --domain <domain> |
Delete VHost |
vhost list |
List all VHosts |
vhost php --domain <domain> --version <php> |
Change PHP version |
vhost info --domain <domain> |
Show VHost details |
vhost redirect --from <domain> --to <url> [--code 301\|302] |
Create redirect |
vhost audit [--domain <domain>] |
Diff config against the canonical template, surface drift (no --domain: audits all VHosts) |
The webserver in use (Apache or Nginx) isn't an option of vhost create - it's a global setting (ST_WEBSERVER in the configuration), see Configuration.
| Option |
Description |
Default |
--type php\|proxy |
VHost type |
php |
--backend <url> |
Backend URL (required for proxy) |
- |
--websocket |
Enable WebSocket proxy |
Off |
--preserve-host on\|off |
ProxyPreserveHost header |
on |
VHost deletion is blocked when an SSH user is assigned to the domain. Delete the user first, then the VHost.
vhost audit currently only checks Apache VHosts (ProxyPass, ErrorLog/CustomLog, forwarded-header directives against the template). On an Nginx backend the command prints a notice and performs no check.
¶ SSH User Commands
| Command |
Description |
user create --domain <d> --username <u> |
Create SSH user for domain |
user delete --username <u> |
Delete user (ownership reverts to www-data) |
user list |
List all domain users |
user add-key --username <u> --key "ssh-ed25519 ..." |
Add SSH key |
user set-password --username <u> [--password <p>] |
Set/generate password |
user info --username <u> |
Show user details |
¶ SSL Commands
| Command |
Description |
ssl create --domain <domain> [--email <email>] |
Create certificate |
ssl delete --domain <domain> |
Delete certificate |
ssl wildcard --domain <domain> [--provider <name>] |
Wildcard SSL via DNS |
ssl list |
List all certificates |
ssl check [--days <n>] |
Check expiring certificates |
ssl renew |
Set up renewal cronjob |
SSL commands only work with ST_WEBSERVER=apache (default). On Nginx backends they abort with a clear notice.
¶ Cron Commands
| Command |
Description |
cron add --schedule '<cron>' --command '<cmd>' --name '<name>' |
Add cronjob |
cron remove --pattern <search> |
Remove cronjob |
cron list |
List all cronjobs |
¶ Firewall Commands
| Command |
Description |
firewall status |
Show UFW status |
firewall allow --port <port> [--proto tcp\|udp] |
Allow port |
firewall deny --port <port> [--proto tcp\|udp] |
Deny port |
Alias fw can be used instead of firewall, e.g. server-tools fw status.
¶ Fail2Ban Commands
| Command |
Description |
fail2ban status |
Show all jails with statistics |
fail2ban banned |
List all banned IPs |
fail2ban unban --ip <address> |
Unban IP from all jails |
Alias f2b can be used instead of fail2ban.
¶ Log Commands
| Command |
Description |
logs apache [--domain <d>] [--lines <n>] |
Apache access log |
logs apache-errors [--domain <d>] [--lines <n>] |
Apache error log |
logs mysql [--lines <n>] |
MySQL error log |
logs audit [--lines <n>] [--filter <text>] |
Audit log |
logs search --pattern <text> [--lines <n>] |
Cross-log search |
¶ Status Command
server-tools status
Shows: services, system resources, versions, configuration, backups.