rapidscada-admin
A Linux command-line utility for administering Rapid SCADA v6 BaseDAT configuration files.
What is Rapid SCADA?
Rapid SCADA is an open-source industrial automation and SCADA system. It stores configuration -- users, roles, rights, and other tables -- in binary BaseDAT (.dat) files. Editing these files normally requires the Windows Administrator application. This tool fills the gap for Linux environments.
Why this tool?
- Automate user management from shell scripts and Ansible playbooks
- Inspect and modify
user.datwithout the Windows GUI - Validate file integrity before and after changes
- Export/import user data as JSON for backup and migration
- No third-party dependencies -- pure Python standard library
Supported platforms
- Linux (primary target)
- macOS / Windows (should work, but untested)
Requires Python 3.11+.
Installation
From PyPI
pip install rapidscada-admin
Or with pipx (recommended for CLI tools):
pipx install rapidscada-admin
From source
git clone https://github.com/Shadow21AR/rapidscada-admin.git
cd rapidscada-admin
pip install .
For development:
pip install -e .
pip install pytest ruff
Verify installation
rapidscada-admin --version
Usage
Every command takes the .dat file path as a positional argument. No files are hardcoded.
rapidscada-admin <command> [file] [options]
rapidscada-admin users <file> <subcommand> [options]
User management
# List all users
rapidscada-admin users user.dat list
# Show one user (displays full details including password hash)
rapidscada-admin users user.dat show --user admin
# Add a user
rapidscada-admin users user.dat add \
--name operator \
--password 'S3cur3P@ss!' \
--role 2 \
--description "Shift operator"
# Delete a user
rapidscada-admin users user.dat delete --user operator
# Rename a user
rapidscada-admin users user.dat rename --old-name operator --new-name op2
# Change password
rapidscada-admin users user.dat passwd --user admin --password 'NewP@ssw0rd!'
# Enable / disable account
rapidscada-admin users user.dat enable --user admin
rapidscada-admin users user.dat disable --user admin
Export and import
# Export all users to JSON
rapidscada-admin users user.dat export > users.json
# Import users from JSON
rapidscada-admin users user.dat import --input users.json
Password hashing
Compute a Rapid SCADA password hash without modifying any file:
rapidscada-admin hash --password secret
rapidscada-admin hash --user-id 11 --password scada
Validation
Check a BaseDAT file for corruption, schema errors, and duplicate entries:
rapidscada-admin verify user.dat
Exit code 0 means valid, 1 means errors found.
Safety
Every mutating command follows a 7-step safety protocol:
- Verify schema -- required fields (
UserID,Enabled,Name,Password,RoleID) must be present - Create backup -- timestamped
.bakfile alongside the original, with automatic pruning (keeps last 5) - Write temporary file -- changes go to a temp file first
- Re-read temporary file -- parse the file we just wrote
- Validate -- check schema, duplicates, integrity
- Atomic replace --
os.replace()ensures no partial writes - Preserve permissions -- original file mode bits are restored after replace
A malformed .dat file can prevent Rapid SCADA from starting. Always verify before and after operations.
Backup pruning
By default, a maximum of 5 backup files are kept per .dat file. Older backups are automatically deleted when this limit is exceeded. The backup filename format is <name>.YYYYMMDD-HHMMSS.bak.
Limitations
- Only supports BaseDAT format version 4.x (Rapid SCADA v6)
- Does not support editing the Windows Administrator application's in-memory state
- Password hashing uses MD5 (matching the Rapid SCADA protocol -- not a general security recommendation)
- Does not validate RoleID values against
role.dat(role table is not yet supported)
Publishing to PyPI
This project uses Trusted Publishing (OIDC) -- no API tokens needed.
Setup
- Create an account on pypi.org
- Create the project at pypi.org/manage/project/publishing
- Add a GitHub publisher:
- Owner:
Shadow21AR - Repository:
rapidscada-admin - Workflow:
release.yml - Environment:
pypi
- Owner:
- In GitHub repo settings, create an environment named
pypi
Release
git tag v1.0.0
git push origin v1.0.0
The CI workflow runs on every push. The release workflow runs only on v* tags and publishes to PyPI.
Contributing
Contributions are welcome. Please:
- Fork the repository
- Create a feature branch
- Add tests for new functionality
- Run
pytestandruff checkbefore submitting - Open a pull request
License
Metadata
Release files for rapidscada-admin 1.0.2
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| rapidscada_admin-1.0.2.tar.gz | 22.0 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| rapidscada_admin-1.0.2-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 39.2 kB
Release files / rapidscada_admin-1.0.2.tar.gz
| Download URL | rapidscada_admin-1.0.2.tar.gz |
|---|---|
| Size | 22.0 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
daf880e2778d7ffc78ab6e84da9d79333be2560c81873f06feecac7fbafddf7e
|
|
BLAKE2b-256 checksum How to use checksums |
ee01f9c38579a4fe431ae16255a5f9eae22074d2fe80acc8a950f4c827e8da73
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/6.1.0 CPython/3.13.12
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Jul 16, 2026.
Transparency logRelease files / rapidscada_admin-1.0.2-py3-none-any.whl
| Download URL | rapidscada_admin-1.0.2-py3-none-any.whl |
|---|---|
| Size | 17.2 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
d40fdf2b60ff72b067555b0f92369d95728f4ee46cf72a9837640481646fce52
|
|
BLAKE2b-256 checksum How to use checksums |
7fa17bd9e715291dff337bfde1aacfb8c7714b54eb2be5ccd2b10337d51443bb
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/6.1.0 CPython/3.13.12
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Jul 16, 2026.
Transparency log