HOST 13.140.175.42 SSH :48137 CONTAINERS 12 NETWORKS 3 ISOLATED PROXY NGINX + CERTBOT AGENT HERMES (RULE 9)
UTC Clock
--:--:--
UTC Date
----/--/--
Session Uptime
00:00:00
// active service nodes
AI Core — ai-net
OpenClaw WebUI
claw.aiworkbox.xyz
LIVE
Hermes Dashboard
hermes.aiworkbox.xyz
SECURED
Hermes API :8642
127.0.0.1 loopback — Rule 9 active
LOCKED
Mail Stack — mailu-net
SnappyMail Webmail
mail.aiworkbox.xyz
LIVE
SMTP / SMTPS / IMAP
:25 :465 :587 :143 :993
OPEN
Rspamd + ClamAV
Anti-spam & antivirus — internal
ACTIVE
Management — mgmt-net
SECURED
Uptime Kuma
kuma.aiworkbox.xyz
LIVE
Host Nginx + Certbot
:80 / :443 — Let's Encrypt SSL
ACTIVE
// network isolation matrix
ai-net
172.20.0.0/24
AI Core — openclaw + hermes (2 containers)
mailu-net
172.21.0.0/24
Mail Stack — 8 containers, subnet-locked
mgmt-net
172.22.0.0/24
Management — portainer + uptime-kuma (2 containers)
Rule 9 — Hermes API Lockdown Active. Port 8642 is permanently bound to 127.0.0.1 (loopback only) and protected behind HERMES_API_KEY bearer authentication. It is never proxied through Nginx. Access is restricted to container-internal ai-net communication (openclaw → hermes:8642) or authorized SSH tunneling exclusively. Public exposure of port 8642 constitutes a Critical Security Violation.
// quick access — 6 subdomains