Webmin: twenty-plus years of administering Unix servers from a browser
Powerful and flexible web-based server management control panel
At a glance
- What is it?
- Webmin is a BSD-licensed web-based system administration tool for Unix-like servers with roughly one million yearly installations, configuring operating system internals like users, quotas and services alongside applications like BIND, Apache, PHP and MySQL through 116 standard modules with a Perl 5.10 floor. Extended by Virtualmin for web hosting and Usermin for end users, developed under lead developer Jamie Cameron, it released version 2.670 in September 2026 on a steady monthly cadence.
- Who is it for?
- Use Webmin when a Unix server should be administered through a browser with broad module coverage rather than file-by-file editing, particularly where less experienced operators need guarded access to tasks like quota changes and service restarts. Prefer Cockpit for a minimal, distribution-integrated monitoring surface, or plain configuration management for fleets where a GUI adds risk rather than removing it.
- Can I use it commercially?
- Yes. BSD-3-Clause is a permissive licence: you can use, modify and sell software built on it, as long as you keep its copyright and licence notices.
- Is it still maintained?
- Yes. The repository last received commits 2 days ago.
- What is it written in?
- Mainly HTML, according to GitHub's language statistics.
Answers come from the project's GitHub data, last synced on September 29, 2026, and from our analysis. They are not legal advice.
Editorial analysis
A million installations, stated plainly
Webmin is a web-based system administration tool for Unix-like servers and services, and the README attaches a number, about one million yearly installations worldwide, the kind of adoption figure most projects cannot cite. Using it, an administrator configures operating system internals such as users, disk quotas, services and configuration files, and modifies and controls open-source applications such as the BIND DNS Server, Apache HTTP Server, PHP and MySQL, and many more. The scope is the classic sysadmin surface, everything from account management to service control, exposed as web forms instead of file edits. The requirement list is a single line, Perl 5.10 or higher, remarkable for a system tool in an era of bundled runtimes, and the project runs on the interpreter virtually every Unix-like system already ships. Version 2.670 arrived on 2026-09-21, continuing a monthly release rhythm maintained by a small named team under lead developer Jamie Cameron.
116 modules and a per-distribution config file for each OS
The module count is stated exactly, 116 standard modules, with at least as many third-party modules, and modules can be custom made, the extension unit that has kept the tool relevant as the software it manages changed. The repository layout makes the coverage tactile, directories named apache, bind8, bacula-backup, bandwidth and more, each a module wrapping a service in forms. The cluster family is the quietly ambitious part, cluster-copy, cluster-cron, cluster-passwd, cluster-shell, cluster-software, cluster-useradmin and cluster-webmin, modules for running the same administrative action across many machines, the feature that turns a single-panel tool into a fleet tool. Beside the modules sits a row of per-platform config files, config-debian-linux, config-freebsd, config-macos, config-openbsd, config-aix, config-hpux, config-irix and more, the adaptation layer where the same module learns each operating system's quirks, a maintenance burden the project has carried for decades and the reason the porting surface stays wide.
Virtualmin and Usermin, the two satellites
Two sibling projects extend the platform in opposite directions, and the README introduces both. Virtualmin is described as a web-hosting control panel for Linux and BSD systems with over 150,000 installations worldwide, available in an open-source community-supported version and a more feature-filled version with premium support, the commercial arm of the ecosystem built on Webmin's foundations, managing the domains, mailboxes and databases that hosting entails. Usermin inverts the audience, presenting and controlling a subset of user-centred features rather than administrator-level tasks, so an end user manages their own password and mail forwarding without seeing system-wide controls. The three-tier shape, administrator panel, hosting panel, user panel, covers the roles a shared system actually has, and the shared substrate means the satellites inherit the module mechanism and the platform coverage rather than reimplementing them.
Perl, CGI and a codebase that predates the frameworks
The primary language statistics read HTML, and the code behind it is Perl, WebminCore.pm, OsChooser.pm, acl_security.pl, chooser.cgi, the module structure of .pm libraries and .cgi entry points that marks a codebase older than every modern web framework. The listing shows a perlcritic configuration for style enforcement, comments-to-pod and compare_lang scripts for documentation and translation workflows, and a LICENCE.ja beside the standard LICENCE file with a Chinese README, the bilingual furniture of a long-lived international project. Nothing about the tree chases novelty, and that is the evaluation point, this is administrative software whose value is continuity, the same architecture answering the same questions across decades, with the changelog recording the steady accumulation. Reading the repository is also a lesson in what a module requires, a directory, config files, the Perl logic, and forms, a shape simple enough that third parties produced at least a hundred more of them.
Installation through the official guide
The README's installation section is a pointer rather than a procedure, detailed instructions live on the webmin.com/download page, the maintained guide covering the supported platforms and package paths. That choice fits the project's age and breadth, installation differs meaningfully across the dozens of Unix variants it supports, from Linux distribution packages to BSD ports, and a single README command block would either be wrong somewhere or useless everywhere. The development section complements it with the people, Jamie Cameron as lead developer, Ilia Rostovtsev and Joe Cooper as developers, and a contributor list extending past ninety names, a small core with a long tail, the staffing pattern of infrastructure that survives its founders' full-time attention. Documentation, a FAQ, a security page and screenshots live on the project site, and community support runs through the Virtualmin forum's Webmin category, the shared venue of the ecosystem's three projects.
The security question deserves the directness it gets asked with, and the material's answer is structural, a dedicated security page on the project site and a SECURITY.md in the repository, the channels through which vulnerabilities are reported and fixes announced, alongside the monthly release cadence that carries them. A web-accessible root-level administration tool is a high-value target by definition, and the project's answer is the standard one, published policy and steady patching rather than obscurity.
Against Cockpit and cPanel, by role
The comparisons people reach for are Cockpit and cPanel, and both are role questions more than feature questions. Cockpit is the distribution-integrated server console, lighter and modern, the choice when the need is monitoring and basic administration on a distribution that ships it. Webmin's answer is breadth and history, 116 modules across dozens of Unix variants, configuration depth that a lean console deliberately does not attempt, and cluster operations. cPanel is commercial hosting control, and Webmin's family answers it through Virtualmin, the open-source community edition with a premium tier, rather than through the core tool. The honest selection rule is by operator, deep and varied Unix administration across mixed platforms favors Webmin, single-distribution server dashboards favor Cockpit, and hosting reseller workflows map to Virtualmin on top of it. A million yearly installations suggest the role it occupies remains common.
Still shipping monthly in 2026
The maintenance facts close the picture. Releases run monthly, 2.653 on 2026-07-27, 2.660 on 2026-08-21 and 2.670 on 2026-09-21, with the repository pushed on 2026-09-28, and the CHANGELOG.md records each step. The license is BSD, three-clause per the LICENCE file, permissive for redistribution and embedding in commercial appliances, the licensing that helped it spread into vendor products over the years. The ecosystem numbers, one million yearly installations for the core and 150,000 for Virtualmin, are the project's own and worth treating as self-reported, but the artifact checks out against them, the module depth, the platform configs, the decades of changelog. For an operator meeting it for the first time, the surprise is that a tool this old still receives this attention, and the explanation is in the tree, the problems it solves, users, quotas, services, DNS, across every Unix variant, have not gone away, and the panel that already solves them keeps being the cheapest answer.
Editorial conclusion
Use Webmin when a Unix server should be administered through a browser with broad module coverage rather than file-by-file editing, particularly where less experienced operators need guarded access to tasks like quota changes and service restarts. Prefer Cockpit for a minimal, distribution-integrated monitoring surface, or plain configuration management for fleets where a GUI adds risk rather than removing it. Verify first that your platform is among the supported Unix variants, follow the installation guide at webmin.com/download rather than improvising, read the security page and SECURITY.md before exposing the port anywhere beyond localhost, and check the module list for your specific services before committing.
Frequently asked questions
What is Webmin used for?
Webmin is a web-based system administration tool for Unix-like servers, used to configure operating system internals such as users, disk quotas, services and configuration files, and to control applications such as BIND DNS Server, Apache HTTP Server, PHP and MySQL through 116 standard modules, extensible with third-party and custom modules.
Is Webmin safe to use?
The project maintains a security page at webmin.com/security and a SECURITY.md in the repository for reporting and tracking vulnerabilities, with monthly releases carrying fixes. As with any web-accessible administration tool, exposure should be restricted and the release notes followed for security updates.
How do you install Webmin?
Detailed installation instructions are maintained on the webmin.com/download page, covering the supported Unix platforms. The only stated requirement is Perl 5.10 or higher.
Official sources
Add this badge to your README
If you maintain this project, the badge below links readers to this analysis and shows its maintenance status from the daily GitHub snapshot. Paste the markdown into your README; add ?metric=license or ?metric=stars to the image URL for a different field.
[](https://hysenlabs.com/projects/webmin-webmin)