MuPiBox Documentation MuPiBox NG

Security & MuPiBox app

Set an admin password, pair the MuPiBox app, enable remote access without VPN and change the Linux password for SSH.

Under Settings → Security you protect the admin interface, pair the MuPiBox app and change the system access.

Admin password

Without a password anybody in the home network can manage the box – including parental control. Set your own long password. It is only stored as a salted hash. Failed attempts are slowed down.

MuPiBox app

The installable MuPiBox app controls the box from a smartphone – playback, volume, messages, power.

  1. Create a one-time pairing code.
  2. On the smartphone open app.mupibox.de and enter the box address and the code.
  3. The app appears under Connected apps and can be removed there.

In the home network all commands go directly to the box.

Remote access without VPN

With "Enable remote access without VPN" the app reaches the box on the road as well. The connection then runs through the MuPiBox relay, end-to-end encrypted: the relay only sees technically necessary connection data (IP addresses, a random channel, times, packet sizes), not the commands themselves. Media, covers, credentials or the box database never go through the relay.

  • Remote access requires an admin password.
  • After enabling it, pair all apps again once so that each gets its own key.

System access (SSH / console)

Changes the Linux password of the accounts root, dietpi or both (8–100 characters, no colons or line breaks). The password is not stored in MuPiBox. An admin password must be set first.