For HestiaCP 1.10.5
HisarHestia
A package that adds a light and a dark theme, a FileGator file manager skin and optional administration modules to the HestiaCP control panel. It uses Hestia's own account, permission and service operations rather than replacing them.
User guide Write to us for details 1.1 release note
Version 1.1.2 · GPLv3 · 7 interface languages · Preparing for release: general download is not open yet
- Türkçe
- English
- Deutsch
- Español
- Français
- Português
- Русский
Three installation scopes
Appearance only
Two themes (light and dark) and a file manager skin. Hestia's HTML/PHP templates are left alone; uninstalling brings back the previous theme and settings.
Admin modules
--with-modules: 13 read-only modules such as SSL certificates, mail DNS checks, PHP profiles, storage health, package updates and a service error summary. Measurements are collected every five minutes by a service separate from the web request.
Full portal
--with-full: local and cloud backup, restore, DNS, mail, site health and an operations history. External connections ship switched off; each installation defines its own settings on the server.
New in 1.1
Site Reliability Centre
DNS, HTTPS, TLS expiry and response time for the domains in Hestia, with an event when a state changes. No address is taken from the user, and only public IPs are contacted.
WordPress Fleet Centre
An inventory of versions, plugins and themes; an update preview and a fixed-command update flow that takes a fresh account backup first.
Recovery and Repair
Previewed, queued restore of a web space or database from a local Hestia backup, with a fresh backup beforehand, plus read-only repair diagnostics.
Mail Delivery Centre
MX, SPF, DMARC, DKIM, PTR and mail TLS in one explainable score. Third-party blocklist queries are off by default.
Security boundaries
- The admin screens are open only to the real root panel administrator; a session impersonating another user is refused.
- Every state-changing action goes through POST and Hestia's own CSRF check.
- There are no arbitrary commands, arguments or paths: targets come from the live Hestia inventory and the commands are fixed.
- The installer runs a pre-check first and backs up what it changes; on failure it tries to roll back.
- Uninstalling keeps the configuration and secret files under
/etc/hisarhestia/.
Status
1.1.2 adds a choice between incremental and full scans for OneDrive backups, paging in the WordPress inventory and mobile layout fixes, on top of the backup-integrity and recovery work of 1.1.1. The package is not yet open for general download; we will announce it on this page when it is. If you would like to try it on your own installation, write to us.