weisiren000/dsh-remote-ssh-ops 预览 preview

weisiren000/dsh-remote-ssh-ops

Plugin插件 Native原生 ⭐ 3 Notifications & Remote通知与远程

DeepSeek Harness SSH远程运维插件,支持远程命令执行、文件管理、JumpServer及键盘交互认证。

Project Overview项目介绍

This is a native SSH remote operations plugin built specifically for DeepSeek Harness. It extends DSH with capabilities including direct SSH connection, remote-hostd pairing, remote command execution, remote file read and write, task management, and a dedicated remote workbench. It does not replace DSH’s built-in local tools, and DSH will only call its remote operation tools when a user explicitly requests work on a remote server or specified host. To install the plugin, users can run a one-line DSH command to pull the stable release from GitHub, no manual cloning or dependency setup is required.

The plugin supports two different ways to connect to a remote machine. For direct SSH connection, users just need to fill in the server address, port, username, and one-time login password in the DSH settings panel. After confirming the SSH fingerprint on the first connection, the plugin saves a local dedicated key and will not use or store passwords for future connections. For advanced pairing, users can run remote-hostd on the remote machine and input the generated one-time pairing code locally to connect.

If you do not have a global DSH command installed on your system, you can use npx to run the DSH package directly to install the plugin. The installation requires Git and pnpm to be available on your local machine, and npx additionally requires a working Node.js installation. After installation, you need to restart DSH Web to load the plugin, and you can verify the installation by checking for a 200 status response from the plugin’s API endpoint. To upgrade the plugin, simply re-run the install command with the new version tag.

这是一款专为 DeepSeek Harness 开发的原生 SSH 远程运维插件,为 DSH 新增了 SSH 直连、remote-hostd 配对、远程命令执行、远程文件读写、任务管理和远程工作台功能。插件不会替代 DSH 自带的本地工具,仅在用户明确要求对远程服务器或指定主机执行操作时才会触发使用。

插件支持两种连接远程主机的方式:SSH 直连只需要用户填写服务器地址、端口、用户名和首次登录密码,首次确认指纹后会保存本地专用密钥,后续无需密码;高级配对适合已经部署 hostd 的机器,只需输入地址和一次性配对码即可连接。

插件支持通过 DSH 内置命令一键安装,依赖本地 Git 和 pnpm,若没有全局 dsh 命令也可以用 npx 调用 Node.js 版本的 DSH 完成安装。升级只需重新执行安装命令更换版本号,卸载也仅需一条命令即可完成操作。

Pre-install check安装前体检Compatibility · Security兼容性 · 安全性 2 warnings2 项注意
  • No license declared - all rights reserved by default; ask the author before commercial use or redistribution未声明开源许可证 —— 默认「保留所有权利」,商用或再分发前先问作者
  • Only 3 stars - very few users, little community feedback星标只有 3,几乎没人在用,遇到问题缺少社区反馈
DSH walks through these 9 checksDSH 会逐条核对这 9 项

Compatibility兼容性

  • DSH, Node, OS and profile requirementsDSH 版本 / Node 版本 / 操作系统 / profile 是否满足要求
  • External dependencies and runtimes (Electron / Python / Docker, ...)外部依赖与运行时(Electron / Python / Docker 等)是否齐备
  • Conflicts with installed plugins: command names, skill / tool names, ports, duplicate MCP registration与已装插件是否冲突:命令名、skill / tool 重名、端口占用、重复 MCP 注册

Security安全性

  • Repo matches the facts registered here; archived or abandoned?仓库是否与页面登记一致,是否归档或长期停更
  • Safety of preinstall / install / postinstall and install.sh / setup.ps1preinstall / install / postinstall 与 install.sh、setup.ps1 是否安全
  • curl|bash, download-then-execute, obfuscation, unrelated domains → stop immediatelycurl|bash、下载即执行、混淆代码、无关域名 → 立刻停止
  • Typosquatting or unmaintained packages among the new dependencies新增依赖里有没有 typosquatting 或无人维护的包
  • Requested permissions vs. what the feature actually needs申请了哪些权限、是否超出功能所需(filesystem / network / shell / clipboard)
  • Any sudo / admin requirement, plus uninstall and rollback是否要求 sudo / 管理员权限,以及卸载与回滚方式

Anything uncertain must be marked unknown with a note on how to confirm it. This site's signal screen is a static snapshot, not a security audit.拿不准的必须标「未知」并说明要我怎么确认。本站的信号筛查是静态快照,不能替代安全审计。

Or use CLI install (for developers)或使用命令行安装(适合开发者)

CLI Install命令行安装

dsh plugin --profile web add github:weisiren000/dsh-remote-ssh-ops#v0.0.11

把 weisiren000/dsh-remote-ssh-ops 加入你的 DSH 配置(web profile)即可启用。

READMEREADME

dsh-remote-ssh-ops

dsh-remote-ssh-ops 是 DeepSeek Harness 的 SSH 远程运维插件。它为 DSH 增加 SSH 直连、remote-hostd 配对、远程命令执行、远程文件读写、任务管理和远程工作台。

插件不会替代 DSH 的本地工具:检查当前本地工作区时,应使用 DSH 自带的本地工具;只有用户明确要求远程、服务器或指定主机操作时,才使用 host_* 工具。

工作方式

  • SSH 直连:在 DSH 设置中填写服务器、端口、用户名和首次登录密码。首次连接确认 SSH 指纹后,插件保存本机专用密钥,后续不再保存或使用密码。
  • 高级配对:远端运行 remote-hostd,本地输入地址和一次性配对码。适合已经部署 hostd 的机器。
  • 远程工作台:会话标题栏的“服务器”入口用于浏览远程文件、运行远程命令和审阅远程文件变更。

界面预览

dsh-remote-ssh-ops 远程工作台界面预览

安装

从 GitHub 安装(推荐)

安装当前稳定版本:

dsh plugin --profile web add github:weisiren000/dsh-remote-ssh-ops#v0.0.11

DSH 会自动把插件安装到 Web profile,并将 dsh-remote-ssh-ops 注册到 dsh.profile.bundles。不需要克隆仓库、手动安装依赖、构建客户端或修改 profile 的 package.json。

如果系统没有全局 dsh 命令,可以通过 npx 执行:

npx @deepseek-ai/dsh plugin --profile web add github:weisiren000/dsh-remote-ssh-ops#v0.0.11

安装命令需要本机可以使用 Git 和 pnpm。使用 npx 时还需要 Node.js。

启动或重启 DSH Web

关闭旧的 DSH Web 进程,然后重新启动:

dsh web

使用 npx 的启动方式:

npx @deepseek-ai/dsh web

启动后进入“设置 → 插件 → 远程主机”。看到远程主机面板,说明插件已加载。

升级

发布新版本后,重新执行安装命令并替换 TAG:

dsh plugin --profile web add github:weisiren000/dsh-remote-ssh-ops#vX.Y.Z

随后重启 DSH Web。

卸载

dsh plugin --profile web remove dsh-remote-ssh-ops

没有全局 dsh 命令时:

npx @deepseek-ai/dsh plugin --profile web remove dsh-remote-ssh-ops

连接远程机器

SSH 直连(推荐)

在远程主机面板填写服务器、SSH 端口、用户名和首次登录密码,点击“连接主机”。首次连接显示服务器指纹时,只有确认指纹属于你的服务器才继续。

高级配对

在远端启动 remote-hostd,复制终端打印的一次性配对码,然后在面板切换到“高级配对”并填写地址和配对码。

验证安装

Invoke-WebRequest 'http://127.0.0.1:3080/remote-ssh-ops/v1/hosts' | Select-Object StatusCode

预期状态码为 200。然后在对话中明确说“列出远程主机”或“在指定服务器执行命令”验证 host_* 工具;检查本地代码时不要用远程请求作为验证。

远端安装 remote-hostd

remote-hostd 只在使用“高级配对”时需要。它把自己的工作目录作为远程工作区,因此启动前应先切换到要开放的项目目录。

本机回环监听(已有反向代理或只允许本机访问):

cd /path/to/remote-project
node /path/to/dsh-remote-ssh-ops/src/hostd/cli.js --listen 127.0.0.1:7680

直接对局域网或公网提供服务时必须使用 TLS:

cd /path/to/remote-project
node /path/to/dsh-remote-ssh-ops/src/hostd/cli.js \
  --listen 0.0.0.0:7680 \
  --tls-cert /path/to/fullchain.pem \
  --tls-key /path/to/privkey.pem

只有在临时隔离网络中,才使用不安全的明文监听:

node /path/to/dsh-remote-ssh-ops/src/hostd/cli.js --listen 0.0.0.0:7680 --allow-insecure

终端会打印监听地址和配对码。不要把配对码提交到代码仓库或写入公开日志。

模型工具

  • host_pair:配对一个远程主机。
  • host_list:列出已配对主机和在线状态。
  • host_use:切换当前远程目标。
  • host_bash:在远程主机执行前台或后台命令。
  • host_jobs / host_job_log:查询远程任务和日志。
  • host_list_files / host_read_file:浏览、读取远程文件。
  • host_write_file:按版本校验写入远程文件并创建待审阅变更。
  • host_review_changes:查看或处理远程文件变更。

所有远程工具都是显式远程能力。用户没有明确指定远程操作时,Agent 不应调用它们。

← 上一个 Prev DSH-arena 下一个 Next dsh-plugin-diraud →