NETworkManager is a free, GPL v3 Windows toolbox with an IP scanner, port scanner and remote-session clients in one window. Alternatives are worth it for one reason above all: it does not run on macOS or Linux. Angry IP Scanner is the closest cross-platform match; Nmap goes deeper on one machine.
By Ahmad Abdur Rehman, Maintainer, IPScanner.ProLast reviewed 2026-09-14Sources verified 2026-09-14
You use NETworkManager on Windows and now need something equivalent elsewhere, or you want just the scanner without the rest of the toolbox.
NETworkManager is one of the better-kept secrets in this category, and it is worth describing accurately before listing alternatives. It is free and open source under the GNU General Public License v3, the project states plainly that there are no ads, no subscriptions and no selling of user data, and the feature list is genuinely wide: IP scanner, port scanner, WiFi analyzer, ping monitor, traceroute, DNS lookup and LLDP/CDP capture, sitting alongside Remote Desktop, PuTTY, PowerShell and TigerVNC clients. The project publishes x64 downloads as both an MSI setup and a portable build.
For a Windows administrator that combination is hard to beat, and the honest summary of this page is that most people searching for an alternative are not unhappy with it. They have hit the one wall it has: it is Windows software. There is no macOS build and no Linux build, so a mixed fleet administered from a Mac needs something else.
The other reason is narrower: some people want a scanner, not a toolbox. Breadth has a cost, and if all you do is discovery then a tool designed entirely around discovery will suit you better.
Side by side
Every cell about a product we do not make is what that vendor or project publishes about itself. “Not stated in the source we cite” means exactly that — the source does not cover the point, so it is left blank rather than filled in from memory.
Competitor entries come from the sources in the citation table below, each retrieved on the date shown there. Our own row states shipped capabilities only.
Tool
Platforms
Licence and price
Account or cloud
Where results live
What it is good at
Sources
Angry IP ScannerThe Angry IP Scanner project
Windows, macOS and Linux. The current release bundles a Java runtime with the Windows and macOS builds; the Linux packages declare a Java dependency instead.
Free and open source.
No account is described in the project’s own documentation.
Scanning and results stay on the machine that ran them. The project added an optional anonymous error-report setting in Preferences in 3.8.1.
The most portable of the free scanners: one tool, three operating systems, no installation required, and an export format for nearly anything you want to do with the list afterwards.
Windows 7 and newer, macOS (the official installer is published for x86-64 and tested on macOS 10.9 and later), Linux packages, and source for other systems.
Free, under custom licence terms derived from the GNU GPL.
Not stated on the page we cite.
Scanning and output stay on the machine that ran them.
Nothing else on this page is in the same class for depth. Service and version detection, OS fingerprinting, and a scripting engine make it the tool you graduate to when “which hosts are up” stops being the question.
Windows 11, 10, 8 and 7, per the vendor. No macOS or Linux build is published.
Free.
Not stated on the page we cite.
Not stated on the page we cite.
It asks the least of you of anything on a Windows network: no install decisions, a familiar list, and shared-folder and Radmin actions built into the same window.
A free Fing account is required, and the desktop app signs in to Fing’s cloud services for device recognition and to sync network data.
Fing’s own documentation describes signing in to its cloud services for device recognition and to sync your network data. Results are not confined to your machine by design.
Device recognition is the product. Fing names the make and model of consumer hardware more often than a purely local tool can, because it matches against a database it maintains centrally.
A native macOS application. A Windows x64 portable build is implemented, but native acceptance testing is not complete.
Free-first for individuals. Paid organisation features are planned, not available.
No account for local scanning. The current desktop workflow is Local Only; optional online sync is designed but not built.
On the machine that scanned, encrypted, keyed to the macOS Keychain or Windows DPAPI. Online sync is designed as a per-device opt-in on top of that, and it does not exist yet — there is no upload path in the product today.
It shows the evidence behind every identification instead of asserting an answer, keeps encrypted history so you can see what changed since last time, and prices an expensive action before it runs rather than after.
Our own product, not a citation.
Which one to pick
A comparison that steers every reader to the same answer is an advertisement. These are the conditions under which each tool here is the right choice — including the ones that are not ours.
Angry IP Scanner
You want one free, open-source scanner that behaves the same on Windows, macOS and Linux, and you are comfortable with a Java application.
Nmap with Zenmap
You need scripting, service and version detection, or auditable output you can diff — and you are willing to learn the options rather than click a button.
Advanced IP Scanner
Every machine you administer runs Windows, you want a free tool that a colleague will already recognise, and you do not need it on a Mac.
Fing Desktop
You want the clearest possible answer to “what is that device?” on a home or small-office network, and a cloud account in exchange for it is a trade you are happy to make.
IPScanner.Pro
You want to know why a device was identified the way it was, and you want the result to stay on your machine unless you deliberately decide otherwise.
If you need it on macOS or Linux
Angry IP Scanner is the closest cross-platform equivalent for the scanning part, and it is also free and open source. It does not bring the remote-session clients, the WiFi analyzer or the LLDP/CDP capture with it — on macOS and Linux those are separate tools, and assembling them is the tax you pay for leaving Windows.
Nmap covers the deep end on every platform. Between them, Angry IP Scanner for the sweep and Nmap for the detail, you can reconstruct most of what NETworkManager gives you in one window, in two windows and with more typing.
If you want just the scanner
On Windows, Advanced IP Scanner is the minimal version of the same job — free, native, no runtime conversation, and a device list in seconds. It is closed source, which is a real step down from GPL v3 if auditability is why you chose NETworkManager in the first place.
The narrower case we build for is the one where the scan result has to be defensible: every identification showing the evidence behind it, encrypted history on the machine that scanned, and NEW, GONE and CHANGED marked against the previous scan of the same scope. That is a different product shape from a toolbox, and it is not something you can install today — there is no public download.
What each of these cannot do
Every entry below includes the tool we make, on the same terms and in the same list. The competitor entries state capabilities, not quality judgements.
Angry IP Scanner — The Angry IP Scanner project
It is a Java application. The current release requires Java 21 or newer and bundles a runtime with the Windows and macOS builds, so the download is larger than a native binary.
Plugins load into the running application. The project added a plugin trust confirmation dialog in 3.10.0 for exactly that reason.
The project website’s news page stops in 2019, which makes the project look dormant. The release history says otherwise — 3.10.0 shipped with a bundled runtime, modern Java support and security fixes. Judge the repository, not the news page.
Device identification is deliberately thin. It tells you what answered, not what the thing is.
It is built for operators. The primary interface is a command line and the output is text; Zenmap is a front end, not a substitute for learning the flags.
The official macOS package is published for x86-64, so an Apple-silicon Mac means relying on translation or building from source as the project documents.
It is a general-purpose auditing tool, so it does not attempt the “what is this device, and why do we think so?” presentation the other entries here aim for.
Its defaults are powerful enough to alarm an IDS or upset a fragile device. That is a feature for an auditor and a hazard for someone who just wanted a device list.
It has no macOS or Linux version. The vendor’s download page lists Windows only, so “Advanced IP Scanner for Mac” has nothing official to install, and a Mac download offered by some other site would not be the vendor’s.
The vendor’s page does not state how results are stored or whether anything is sent anywhere, so this comparison does not claim either way.
It is closed source, so its behaviour cannot be audited the way an open-source scanner’s can.
It requires a free Fing account, and its documentation says the desktop app signs in to Fing’s cloud services for device recognition and to sync your network data. That is how the product works — it is simply a different data path from a tool that keeps everything on one machine.
Free personal use sits underneath paid subscriptions, so features can move between tiers over time.
On a network whose owner has told you nothing may leave the site, the account requirement is a blocker rather than an inconvenience.
There is no public download. Signed and notarized distribution does not exist yet, so nothing on this site offers an installer or a version number.
macOS is the verified platform. The Windows x64 build is implemented but has not completed native acceptance testing.
Full ports is not a whole-range sweep. It runs only on devices you select from a completed discovery in the same session.
Restored inventory is labelled historical and never claims a device is reachable now. Startup restore covers the newest retained scan and stops at 256 devices; the History dialog covers the rest.
Device identification can be incomplete. Private MAC addresses, blocked responses and thin evidence limit what any local tool can conclude.
Online sync, accounts and organisation features are not built. The design keeps local storage as the default and adds sync as an opt-in, but none of it ships today.
Scanning on macOS requires Local Network permission; Windows may show a firewall prompt or apply an organisation policy.
What we have built, and what we have not
The row above is a summary. This is the full list, marked by whether it exists today. A feature marked planned is a design decision, not a promise with a date, and nothing on this site should be bought or downloaded on the strength of one — there is nothing to buy or download yet.
ShippedBounded discovery with visible evidence. Quick, Balanced and Thorough discovery inside a scope you authorize, showing provisional rows while the scan runs and the evidence behind every identification.
ShippedFull ports on devices you select. A selected-device action on a finished discovery in the same session, priced as devices × 65,535 attempts before you confirm. It is not a whole-range sweep.
ShippedEncrypted local history. Scans are retained encrypted on the machine that ran them, keyed to the macOS Keychain or Windows DPAPI, with a one-year default retention you can change.
ShippedNEW, GONE and CHANGED against earlier scans. Manual records compare against earlier evidence for the same scope, preserve matched first-seen dates, and suppress GONE on a partial scan so an interrupted run cannot invent a disappearance.
ShippedLocal Only as the default data path. The current desktop workflow is Local Only: results are written to the machine that scanned and there is no upload path in the product today.
PlannedOptional online sync of results. The design keeps local storage as the default and adds sync as a per-device opt-in, so a result reaches a server only when you turn it on. It is not built: there are no accounts, no registered agents and no durable storage yet, and nothing on this site should be read as offering it today.
PlannedSigned, public downloads. There is no public download. Signed and notarized distribution does not exist yet, which is why no page on this site carries a download button or a version number.
Every claim, and where it came from
Every statement about another product on this page comes from that vendor’s or project’s own published material, with the retrieval date shown for each source. Where a source does not cover a point, the table says so instead of guessing. This page contains no benchmarks, no speed or accuracy comparisons and no hands-on measurements of the other tools: we did not test them to write it.
Each row is a claim this page makes about a product we do not make, and the publication it came from.
Claim on this page
Source
Retrieved
Angry IP Scanner is free, open source and cross-platform for Windows, macOS and Linux, and needs no installation.
Angry IP Scanner 3.10.0 requires Java 21 or newer, bundles a Java runtime with the Windows and macOS builds, and its macOS build no longer requires Rosetta.
Angry IP Scanner 3.10.0 added a plugin trust confirmation dialog, quoted shell arguments passed to openers to prevent command injection via DNS poisoning, and fixed a possible SQL injection in its SQL exporter.
Nmap is distributed for Windows 7 and newer, macOS (x86-64, tested on macOS 10.9 and later), Linux RPM packages and source, under custom licence terms derived from the GNU GPL.
Competitor platforms, licence models and account requirements change. These pages are re-checked quarterly, and immediately when a cited product changes. If something here is out of date, telling us is the fastest way to get it fixed.
About this page and who wrote it
This page was written from the vendors’ and projects’ own published documentation and from the IPScanner.Pro codebase, including the scope, consent and Full-ports rules the desktop application enforces. It makes no first-hand claim about how any other tool behaves in practice, because we did not test them to write it.
Where it is wrong, or where a cited product has changed, support@ipscanner.pro reaches the person who maintains it, and corrections are made rather than argued with. A suspected security issue in IPScanner.Pro goes to security@ipscanner.pro instead — there is a disclosure policy setting out what happens next.
Written by
Ahmad Abdur Rehman — Maintainer, IPScanner.Pro
Relevant experience
Writes and maintains the scanning engine described on this page, including the scope, consent and Full-ports rules the desktop application enforces.
Last reviewed
2026-09-14
Sources verified
2026-09-14
What this page is based on
The vendors’ and projects’ own published documentation, and the IPScanner.Pro codebase. No benchmark, and no hands-on test of any other tool listed here.
Questions people ask
Is NETworkManager free?
Yes. It is released under the GNU General Public License v3, and the project describes it as open source, free and without ads, with no subscriptions and no selling of user data. Optional third-party integrations exist and can be enabled or disabled.
Does NETworkManager run on macOS or Linux?
No. It is a Windows application, and the project publishes x64 MSI setup and portable builds. For macOS and Linux, Angry IP Scanner is the closest free, open-source equivalent for the scanning features.
Is there a portable version of NETworkManager?
Yes — the project publishes a portable x64 build alongside the MSI setup, which is useful on machines where you cannot install software. Angry IP Scanner also requires no installation on any of its platforms.
What Windows versions does NETworkManager support?
The project pages we cite do not state a minimum Windows version, so we do not claim one. It is a .NET application, so the required runtime is a genuine prerequisite to check on a locked-down machine.
Found something out of date on this page? Tell us at support@ipscanner.pro and it gets corrected — a comparison is only worth reading if the person who wrote it fixes it when it is wrong.