PluginBench
MCP Server
Active
MIT

io.github.antonio-mello-ai/mcp-proxmox MCP Server

io.github.antonio-mello-ai/mcp-proxmox

Manage Proxmox VE clusters through AI assistants — provision VMs, containers, snapshots, and storage via natural language.

What is the io.github.antonio-mello-ai/mcp-proxmox MCP server?

The mcp-proxmox MCP server enables AI assistants like Claude and Cursor to manage Proxmox VE infrastructure through natural language commands. It provides tools to provision, monitor, and control virtual machines, containers, storage, backups, and networking across your entire cluster.

mcp-proxmox bridges Proxmox VE cluster management and AI assistants, letting you create and manage VMs and containers, handle snapshots and backups, monitor resources, execute commands, interact with consoles, and configure firewalls—all through conversational AI. It's ideal for infrastructure automation, rapid VM provisioning, and hands-free cluster administration.

How to install io.github.antonio-mello-ai/mcp-proxmox

Copy-paste configuration for popular MCP clients.

transport: stdio
Config generated by PluginBench — verify against the source before use.
~/Library/Application Support/Claude/claude_desktop_config.json
{
  "mcpServers": {
    "mcp-proxmox": {
      "command": "uvx",
      "args": [
        "mcp-proxmox"
      ]
    }
  }
}

Tools & capabilities

Tools this server exposes to the agent.

  • list_nodes — List all cluster nodes with CPU, memory, and uptime
  • get_node_status — Detailed node info: CPU model, memory, disk, versions
  • list_vms — List QEMU VMs (filter by node or status)
  • list_containers — List LXC containers (filter by node or status)
  • get_guest_status — Detailed VM/CT status by VMID (auto-detects type and node)
  • start_guest — Start a stopped VM or container
  • stop_guest — Force-stop (requires confirmation)
  • shutdown_guest — Graceful ACPI/init shutdown
  • reboot_guest — Reboot (requires confirmation)
  • list_storages — List storage pools with capacity and usage (filter by node)
  • list_storage_content — Browse ISOs, templates, backups, and disk images
  • create_vm — Create a QEMU VM with configurable CPU, memory, disk, ISO, and network
  • create_container — Create an LXC container from a template
  • clone_guest — Clone a VM or CT (full or linked clone, cross-node support)
  • delete_guest — Permanently delete a stopped VM or CT (requires confirmation)
  • list_backups — List backup files (filter by node, storage, or VMID)
  • create_backup — Create a vzdump backup (snapshot/suspend/stop modes, zstd/lzo/gzip)
  • restore_backup — Restore a VM or CT from a backup file (requires confirmation)
  • exec_command — Run a command inside a QEMU VM via guest agent
  • vm_screenshot — Capture a PNG screenshot of a QEMU VM's display

Use cases

  • Provision new VMs and containers with custom CPU, memory, and disk configurations via natural language
  • Monitor cluster health, node status, and guest resource usage (CPU, memory, network, disk I/O) in real time
  • Create, manage, and rollback snapshots for safe testing and disaster recovery
  • Automate backup and restore operations across your Proxmox infrastructure
  • Execute commands and interact with VM consoles (screenshots, keyboard input) for troubleshooting and automation

io.github.antonio-mello-ai/mcp-proxmox MCP server FAQ

What is the mcp-proxmox server?

mcp-proxmox is an MCP server that connects AI assistants (Claude, Cursor, Cline) to Proxmox VE clusters, enabling natural-language management of VMs, containers, storage, backups, networking, and monitoring.

Is mcp-proxmox free?

Yes, mcp-proxmox is open-source under the MIT license and free to use.

How do I install mcp-proxmox in Claude Desktop?

Add the server to ~/.claude/claude_desktop_config.json with the uvx command and your Proxmox credentials (PROXMOX_HOST, PROXMOX_TOKEN_ID, PROXMOX_TOKEN_SECRET) in the env block.

What authentication does mcp-proxmox require?

You need a Proxmox API token (created in Datacenter > Permissions > API Tokens) with appropriate privileges such as VM.Audit, VM.PowerMgmt, VM.Snapshot, and Datastore.Audit.

Does mcp-proxmox work with self-signed certificates?

Yes; set PROXMOX_VERIFY_SSL=false (the default) for self-signed certificates, or PROXMOX_VERIFY_SSL=true if your certificate chains to a trusted CA.

Can I run commands inside VMs with mcp-proxmox?

Yes, the exec_command tool runs commands inside QEMU VMs that have qemu-guest-agent installed and running; LXC containers are not supported for command execution.

README (reference)

Source of truth, from the repository.

mcp-proxmox

<!-- mcp-name: io.github.antonio-mello-ai/mcp-proxmox --> <a href="https://glama.ai/mcp/servers/antonio-mello-ai/mcp-proxmox"> <img width="380" height="200" src="https://glama.ai/mcp/servers/antonio-mello-ai/mcp-proxmox/badge" alt="mcp-proxmox MCP server" /> </a>

MCP server for managing Proxmox VE clusters through AI assistants like Claude, Cursor, and Cline.

Provision, manage, and monitor your entire Proxmox infrastructure through natural language. Create VMs and containers, manage snapshots, browse storage, and more.

Quick Start

# Run directly with uvx (no install needed)
uvx mcp-proxmox

# Or install with pip
pip install mcp-proxmox

Configuration

Set these environment variables (or create a .env file):

PROXMOX_HOST=192.168.1.100          # Your Proxmox VE host
PROXMOX_TOKEN_ID=user@pam!mcp       # API token ID
PROXMOX_TOKEN_SECRET=xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx  # API token secret

Optional:

PROXMOX_PORT=8006                   # Default: 8006
PROXMOX_VERIFY_SSL=false            # Default: false

Creating a Proxmox API Token

  1. Log into your Proxmox web UI
  2. Go to Datacenter > Permissions > API Tokens
  3. Click Add and create a token for your user
  4. Uncheck "Privilege Separation" for full access, or assign specific permissions:
    • VM.Audit — read VM/CT status and config
    • VM.PowerMgmt — start/stop/shutdown/reboot
    • VM.Snapshot — create/rollback/delete snapshots
    • VM.Allocate — create/delete/clone VMs and containers
    • VM.Clone — clone operations
    • Datastore.Audit — list storages and browse content
    • Datastore.AllocateSpace — allocate disk space for new VMs/CTs
    • Sys.Audit — read node status and tasks
    • VM.Config.Disk — resize disks
    • VM.Config.CPU — change CPU allocation
    • VM.Config.Memory — change memory allocation
    • VM.Monitor — access QEMU monitor (for metrics)
    • VM.Console — console interaction tools (screenshots, keyboard input)
    • VM.Migrate — migrate VMs/CTs between nodes
    • Sys.Modify — manage firewall rules
    • VM.Config.Cloudinit — configure cloud-init parameters

Integration

Claude Desktop

Add to ~/.claude/claude_desktop_config.json:

{
  "mcpServers": {
    "proxmox": {
      "command": "uvx",
      "args": ["mcp-proxmox"],
      "env": {
        "PROXMOX_HOST": "192.168.1.100",
        "PROXMOX_TOKEN_ID": "user@pam!mcp",
        "PROXMOX_TOKEN_SECRET": "your-token-secret"
      }
    }
  }
}

Claude Code

Add to .claude/settings.json or ~/.claude/settings.json:

{
  "mcpServers": {
    "proxmox": {
      "command": "uvx",
      "args": ["mcp-proxmox"],
      "env": {
        "PROXMOX_HOST": "192.168.1.100",
        "PROXMOX_TOKEN_ID": "user@pam!mcp",
        "PROXMOX_TOKEN_SECRET": "your-token-secret"
      }
    }
  }
}

Cursor

Add to Cursor Settings > MCP with the same configuration as above.

Available Tools

Discovery

ToolDescription
list_nodesList all cluster nodes with CPU, memory, and uptime
get_node_statusDetailed node info: CPU model, memory, disk, versions
list_vmsList QEMU VMs (filter by node or status)
list_containersList LXC containers (filter by node or status)
get_guest_statusDetailed VM/CT status by VMID (auto-detects type and node)

Lifecycle

ToolDescription
start_guestStart a stopped VM or container
stop_guestForce-stop (requires confirmation)
shutdown_guestGraceful ACPI/init shutdown
reboot_guestReboot (requires confirmation)

Storage

ToolDescription
list_storagesList storage pools with capacity and usage (filter by node)
list_storage_contentBrowse ISOs, templates, backups, and disk images

Provisioning

ToolDescription
create_vmCreate a QEMU VM with configurable CPU, memory, disk, ISO, and network
create_containerCreate an LXC container from a template
clone_guestClone a VM or CT (full or linked clone, cross-node support)
delete_guestPermanently delete a stopped VM or CT (requires confirmation)

Backup & Restore

ToolDescription
list_backupsList backup files (filter by node, storage, or VMID)
create_backupCreate a vzdump backup (snapshot/suspend/stop modes, zstd/lzo/gzip)
restore_backupRestore a VM or CT from a backup file (requires confirmation)

Command Execution

ToolDescription
exec_commandRun a command inside a QEMU VM via guest agent

Note: exec_command requires qemu-guest-agent installed and running inside the VM. Not supported for LXC containers (Proxmox API limitation).

Console Interaction

ToolDescription
vm_screenshotCapture a PNG screenshot of a QEMU VM's display (login prompt, boot messages, installer, GUI)
vm_send_keySend a key or combination to a VM console (requires confirmation)
vm_send_textType ASCII text into a VM console (US layout; requires confirmation)

Note: Console tools do not require qemu-guest-agent and need only the VM.Console privilege. vm_screenshot opens the same VNC websocket tunnel the Proxmox web UI uses (RFB 3.8 with DES-based VNC auth) and is implemented in pure stdlib (custom WebSocket client + DES). Only QEMU VMs are supported. Text entry is layout-dependent: vm_send_text maps ASCII to a US keyboard layout (Shift-mapping for uppercase and symbols); non-ASCII input (e.g. Cyrillic) is not supported by the sendkey protocol.

Snapshots

ToolDescription
list_snapshotsList all snapshots for a VM/CT
create_snapshotCreate a new snapshot
rollback_snapshotRollback to a snapshot (requires confirmation)
delete_snapshotDelete a snapshot (requires confirmation)

Network

ToolDescription
list_networksList bridges, bonds, and physical interfaces on a node

Resize

ToolDescription
resize_guestResize CPU, memory, and/or disk of a VM or container (requires confirmation)

Monitoring

ToolDescription
get_guest_metricsCPU, memory, network, disk I/O over time
list_tasksRecent tasks on a node (backups, migrations, etc.)

Firewall

ToolDescription
list_firewall_rulesList firewall rules for a VM/CT, node, or the cluster
add_firewall_ruleAdd a firewall rule (action, direction, protocol, port, source/dest)
delete_firewall_ruleDelete a firewall rule by position (requires confirmation)

Migration

ToolDescription
migrate_guestLive or offline migrate a VM/CT to another node (requires confirmation)

Templates & Cloud-init

ToolDescription
list_templatesList all VM templates available for cloning
create_templateConvert a stopped VM into a template (requires confirmation, irreversible)
configure_cloud_initSet user, password, SSH keys, IP config, and DNS on a VM

Safety

Destructive operations (stop_guest, reboot_guest, rollback_snapshot, delete_snapshot, delete_guest, resize_guest, restore_backup, delete_firewall_rule, migrate_guest, create_template) require explicit confirm=true. The first call returns a warning describing the impact; only a second call with confirmation executes the action.

Examples

Once connected, you can ask your AI assistant:

  • "List all my VMs and their status"
  • "How much memory is VM 100 using?"
  • "Shut down container 105"
  • "Create a snapshot of VM 200 called before-upgrade"
  • "Show me the CPU usage of VM 100 over the last day"
  • "What tasks ran on node pve recently?"
  • "Which VMs are stopped?"
  • "What storage pools do I have and how full are they?"
  • "Show me available ISO images"
  • "Create a new Ubuntu VM with 4 cores and 8GB RAM"
  • "Clone VM 100 as a test environment"
  • "Create a Debian container from template"
  • "Delete the old test VM 999"
  • "Back up VM 100 to the zfs-backup-storage"
  • "Show me all backups for VM 200"
  • "Restore the latest backup of container 101"
  • "Run 'df -h' on VM 100"
  • "Check if nginx is running on VM 200"
  • "Take a screenshot of VM 100 so I can see the console"
  • "The VM is stuck at a login prompt — type 'root' and press Enter"
  • "Show me the network bridges on node pve"
  • "Give VM 100 more CPU — bump it to 8 cores"
  • "Add 50GB of disk to container 101"
  • "Show me the firewall rules on VM 100"
  • "Allow TCP port 443 on container 101"
  • "Migrate VM 200 to node pve2"
  • "List all templates in the cluster"
  • "Convert VM 102 into a template"
  • "Set cloud-init on VM 100: user admin, IP dhcp, DNS 8.8.8.8"

Troubleshooting

Missing required environment variables

This error means one or more required connection settings are not available to the server process. Copy .env.example to .env, then set PROXMOX_HOST, PROXMOX_TOKEN_ID, and PROXMOX_TOKEN_SECRET. If you configure an MCP client directly, make sure the same variables are present in that client's env block.

403 Permission check failed

A 403 usually means the API token is valid but does not have enough Proxmox privileges for the requested operation. Revisit Creating a Proxmox API Token and either uncheck "Privilege Separation" for full access or assign the specific privileges listed there, such as VM.Audit, VM.PowerMgmt, VM.Snapshot, or storage permissions for datastore operations.

exec_command fails for guest-agent or LXC reasons

exec_command only works for QEMU VMs with qemu-guest-agent installed and running inside the guest. If the tool reports that the QEMU guest agent is not responding, start or install the agent in the VM and retry. LXC containers are not supported by this Proxmox API path, so use another container access method instead.

ModuleNotFoundError: No module named 'mcp.server.fastmcp'

The MCP Python SDK 2.0 removed the mcp.server.fastmcp module that mcp-proxmox 1.2.1 and earlier import. Fresh installs (uvx mcp-proxmox, uv tool install, pip install) resolved mcp 2.x and failed on startup — in Claude Desktop this only shows up as "Server disconnected". Upgrade to mcp-proxmox 1.2.2 or later, which pins mcp<2. If you must stay on an older mcp-proxmox, constrain the SDK yourself: uvx --with "mcp<2" mcp-proxmox.

Self-signed certificate or connection errors

Proxmox commonly runs on port 8006, so check that PROXMOX_HOST and PROXMOX_PORT point to the same endpoint you use for the Proxmox web UI. For homelab clusters with self-signed certificates, leave PROXMOX_VERIFY_SSL=false or set it explicitly. Use PROXMOX_VERIFY_SSL=true only when the Proxmox certificate chains to a CA trusted by your runtime.

Development

git clone https://github.com/antonio-mello-ai/mcp-proxmox.git
cd mcp-proxmox
python -m venv .venv
source .venv/bin/activate
pip install -e ".[dev]"

# Run tests
pytest

# Lint
ruff check src/ tests/
ruff format src/ tests/

# Type check
mypy src/

License

MIT

Related MCP servers

Manage pfSense firewalls through AI assistants — rules, DHCP, DNS, and more

3
Python
MIT
View repository →
COCourier logo

Courier

Active

Continuity protocol for autonomous AI agents. Agent messaging with SMTP bridge and LN payments.

0
JavaScript
MIT
View repository →

Local MCP server generating complete App Store & Google Play screenshot sets.

1
TypeScript
AGPL-3.0
View repository →
POPostgreSQL logo

MCP server for PostgreSQL: query and manage local, Docker, RDS, Neon, Supabase, or SSH-tunneled databases.

23
TypeScript
MIT
View repository →

241 RF & electronics calculators + 13 simulation tools for AI agents.

2
TypeScript
MIT
View repository →

A simple MCP server for getting weather information.