ids-ips-dashboard
A dark-themed web dashboard that turns raw intrusion-detection/prevention alerts from a UniFi-based router into something a human can actually read at a glance: a live event feed, a world map of alert origins, and a fully-offline, rule-based explanation for each alert signature — what it means, why it likely fired, a severity rating — with no external API calls needed to understand an alert during an incident.
The backend authenticates to the router's local session API with a dedicated, narrowly-scoped service account and caches results briefly to avoid hammering the router.
Built with
- Python (standard library only, no external dependencies)
- Vanilla JavaScript
- Leaflet.js for the map
- systemd service management