Linux Edge Cluster • Mission Center Telemetry

Verified Cluster Telemetry & Edge SCADA Operations

High-performance distributed edge infrastructure orchestrated via K3s and WireGuard mesh. Featuring live per-thread telemetry inspired by Mission Center and real-time plant floor automation.

System Performance & Telemetry

Cluster Telemetry Snapshot • Live Verified Oct 03, 2026
19% / 12% / 4%
RKE2 Master (VM 101 @ Host x) • K3s Edge Fleet (x1, x2) • ec2 Gateway
RKE2 Cluster API: 100% Healthy (:6443)
Host x Hypervisor: Online (58°C • Headless)
K3s Master (x1): Online (Family Compute Tier)
Sovereign Fleet Telemetry • ec2, Host x, VM 101, x1, x2 All Sovereign & Edge Tiers Operational • Verified
Sovereign Control Plane & Enterprise Hypervisor Tier • Online
VM 101 · RKE2 Master19% · Online
6 vCPUs • 16GB RAM • All 21 Workloads Operational
Host x · Proxmox Hypervisor12% · 58°C
i9 8C/16T • 32GB RAM • 2TB NVMe Pool • Headless
K3s Edge Fleet & Family Infrastructure Tier • Online
x1 · Master CPU12%
Memory 15% • Ready • Family Compute & HA Standby
x2 · Worker CPU4%
Memory 9% • Ready • Edge Worker & HDMI Kiosk
ec2 · Cloud Ingress3% · Active
WireGuard Hub • Nginx HA Reverse Proxy Router
Verified Oct 03: Sovereign architecture consists strictly of ec2 (Cloud Ingress Gateway), Host x (Proxmox VE 9.2 Hypervisor hosting VM 101 RKE2 Master), x1 (Edge Master & Family Compute), and x2 (Edge Worker & HDMI Kiosk).
Host x · Hypervisor RAM 22.1 / 32.0 GiB (69%)
VM 101 (16G) + VM 100 (8G) Proxmox VE 9.2 Online
VM 101 · RKE2 Master RAM 10.8 / 16.0 GiB (68%)
21 Microservices Active Ubuntu 24.04 Active
K3s x1 · Family Compute RAM 2.5 / 15.0 GiB (16%)
K3s Core • Family Infra Node Ready Verified Oct 03
K3s x2 · Worker RAM 0.7 / 8.0 GiB (9%)
HDMI Kiosk • Gitea Git Node Ready Verified Oct 03
ec2 · Gateway RAM 0.6 / 1.0 GiB (61%)
Nginx • WireGuard Hub AWS Cloud Active
Swap & ZRAM Reservation 352 MiB / 8.0 GiB
Active Swap: 4% Zero Throttling Status: Healthy
Host x Hypervisor NVMe Pool 24 / 94 GB (27%)
2 TB NVMe Pool 16 GB NFS k8s-storage Proxmox VE
x1 Master NVMe (/dev/nvme0n1p2) 57 / 939 GB (7%)
Available: 844 GB Family Storage Tier NVMe PCIe SSD
ec2 Gateway EBS (/dev/root) 15 / 24 GB (62%)
Available: 8.9 GB AWS gp3 EBS System Root
WireGuard Site-to-Cloud (wg0) 10.10.0.0/24 • 10.20.0.0/24
ec2: xx.xx.xx.1 • x1: xx.xx.xx.2 x2: xx.xx.xx.3 • Host x: xx.xx.xx.4 VM 101: 10.20.0.101 • Encrypted C2 Mesh
Zero-Trust C2 (tailscale0) 100.64.0.0/10
Host x: xx.xx.xx.102 • x1: xx.xx.xx.43 x2: xx.xx.xx.80 • mba: xx.xx.xx.91 mbp: xx.xx.xx.17 • dphone: xx.xx.xx.78
Local Area Network (LAN 192.168.4.0/24) Ultra-Low Latency
Host x: xx.xx.xx.59 (Wi-Fi 5GHz 866.6 Mbps) x1: xx.xx.xx.139 • x2: xx.xx.xx.146 mba: xx.xx.xx.141 • mbp: xx.xx.xx.175
Host x Discrete GPU (AMD Radeon) Radeon Pro 5500M
VRAM: 4 GB GDDR6 Power Draw: Idle at 15W Role: PCIe Passthrough / Compute Ready
Host x Integrated GPU (Intel UHD) Intel UHD 630
QuickSync Video: Hardware Transcode Panel Backlight: 0 (Disabled via GMUX) Thermals: 58°C Cool • Stable
Edge Kiosk Display Pipeline (x2) VideoCore VII · 60 FPS
HDMI Output: 1080p60 Active Driver: V3D / Mesa Gallium Target: x2 Kiosk Dashboard
ACTIVE
Live Log Ingestion & Historian Store
InfluxDB v2: Port 30086
Log Stream: Port 31950
Buckets: telemetry, logs, telemetry_uns
Unified Log Streaming & InfluxDB Pipeline ● Real-Time Feed • Continuous Influx Latency <0.2s
[SYS] InfluxDB v2 Historian synchronized: org='industrial' buckets='telemetry', 'logs', 'telemetry_uns'
[RKE2] VM 101 control plane active at 10.20.0.101:6443 • Canal CNI • All 21 workloads operational (1/1 Running)
[NFS] Host x 2TB NVMe backing NFS storage at 10.20.0.1:/srv/nfs/k3s-storage • 19 PVs Bound • 16 GB dataset operational
[INGRESS] EC2 Nginx primary upstream routed to 10.20.0.101 with automated failover to x1
[NODE-X] Host x Proxmox VE 9.2-1 operational: Wi-Fi (192.168.4.59) & Tailscale (100.89.48.102)
[NODE-X-PWR] turn-off-backlight.service active: GMUX brightness 0 • thermals 58°C • headless operation verified
[NODE-X1] x1 active in family infra tier • 15GB RAM • K3s master • High-availability backup upstream
[UNS] EMQX broker routed Sparkplug B telemetry from Node-RED & Neuron to InfluxDB
[AUDIT] Nginx click engine & cluster sentinel metrics streaming to PostgreSQL & InfluxDB
[SEC] OT Cyber Threat Intel Enclave (cyber.xk3s.com) updated vulnerability signatures
[SYS] Telegraf daemons collecting host and mqtt_consumer metrics every 10s

Active Fleet Services & Applications

Verified production workloads across cluster nodes. High-availability industrial edge fabric.

Ignition SCADA Logo
SCADA Prod Master :30188
SCADA Master Kubernetes Active Master

Primary Ignition 8.1 Industrial Automation Gateway. High-availability plant execution controller with real-time tag engine and database connectivity.

Ignition Redundant Standby Logo
SCADA Prod Backup :30288
High Availability Kubernetes Standby Synced

Redundant warm-standby Ignition gateway. Real-time state replication and instant failover protection for mission-critical automation.

Ignition Development Logo
SCADA Dev Gateway :30388
Engineering Staging Kubernetes Healthy

Engineering development and validation gateway for designing automation logic, testing Python modules, and rapid prototyping.

Ignition EAM Controller Logo
SCADA EAM Central :30488
Enterprise Admin Kubernetes Healthy

Enterprise Administration Module (EAM) Controller. Centralized management of gateway agents, project distributions, and remote tasks.

OpenPLC Soft PLC Logo
OpenPLC Runtime :30880
IEC 61131-3 Kubernetes Online

Complete IEC 61131-3 soft programmable logic controller runtime. Executes Structured Text (ST) and Ladder Diagram (LD) programs with Modbus TCP server.

Gitea Industrial Git Logo
Gitea Industrial DevOps :31410
Git • CI/CD Node x2 Healthy

Self-hosted Git version control system. Hosts PLC project files, Ignition gateway backups, automation scripts, and CI/CD pipelines.

Kubernetes Headlamp Cluster Logo
K3s Headlamp HUD :32619
Kubernetes Dashboard Kubernetes Healthy

Clean, modern Kubernetes web UI. Real-time pod lifecycle monitoring, namespace inspections, container logs, and cluster events.

InfluxDB Time-Series Historian Logo
InfluxDB Historian :30086
Time-Series DB Kubernetes Healthy

High-velocity time-series sensor historian. Stores continuous plant floor telemetry, soft PLC process variables, and environmental metrics.

Grafana Metrics HUD Logo
Grafana Observability :30300
Metrics & HUD Kubernetes Healthy

Unified operational observability dashboards. Real-time telemetry visualization, node hardware metrics, alerting rules, and process trends.

EMQX MQTT Sparkplug B Logo
EMQX UNS Broker :31808
MQTT Sparkplug B Kubernetes Healthy

High-performance distributed MQTT broker powering the Unified Namespace (UNS). Supports millions of messages with Sparkplug B edge specifications.

Node-RED Flow Studio Logo
Node-RED Flow Studio :31880
Flow Orchestration Kubernetes Healthy

Low-code visual event wiring tool. Seamlessly bridges Modbus registers, MQTT UNS topics, REST webhooks, and automation logic.

Mattermost ChatOps Logo
Mattermost ChatOps :32758
Secure Messaging Kubernetes Healthy

Self-hosted encrypted operator messaging and C2 alerts channel. Includes the official public xk3s community hub and automated Kubernetes webhooks.

Pi-hole DNS Shield Logo
Pi-hole DNS Shield :30990
DNS Sinkhole Kubernetes Active Filter

Cluster-wide zero-trust DNS filtering and query sinkhole. Blocks tracking, telemetry leakage, and unwanted network connections.

Portainer Container Engine Logo
Portainer CE :30779
Container Engine Kubernetes Healthy

Container orchestration and image lifecycle manager. Provides container stack deployments, volume monitoring, and log inspection.

RabbitMQ Message Broker Logo
RabbitMQ Broker :31672
AMQP Message Bus Kubernetes Healthy

Robust distributed AMQP message broker for asynchronous plant floor event queues, reliable message buffering, and service pub/sub.

Documentation Architecture Logo
Architecture Docs :443
Manuals • Guides Hub Online

Comprehensive cluster architecture manuals, runbooks, ingress matrices, WireGuard network topology, and deployment manifests.

OT Cyber Threat Intel Logo
OT Cyber Threat Intel :30850
Cyber Defense Node x1 Live Ingestion

Live OT/ICS threat intelligence, CVE tracking, CISA KEV advisories, and active MITRE ATT&CK ICS telemetry across cluster nodes.

OTSec Asset Hub Logo
OT Cyber & Asset Hub :30860
Asset Intel Node x1 Online

OT/ICS/BAS asset intelligence, 86 manufacturers, 1,350 hardware records, 1,265 software records, firmware compatibility and Purdue zone mapping.

Home Assistant :31823
Home Automation Node x2 Online Gateway

Open-source sovereign home automation hub. Centralizes smart energy monitors, environmental telemetry, Zigbee/Matter devices, and local automation rules.

Neuron IIoT Gateway Logo
EMQX Neuron Gateway :30700
Protocol Bridge Kubernetes Healthy

Industrial edge connectivity gateway. Converts Modbus, OPC UA, Siemens, and fieldbus protocols directly into MQTT / Sparkplug B for the Unified Namespace.

JupyterLab Analytics :30895
Data Science Kubernetes Healthy

Interactive data science workspace. Preloaded with Python kernels, Pandas, InfluxDB clients, and automated SCADA analytics notebooks.

PostgreSQL Database Adminer Logo
Adminer Database Studio :30875
SQL Manager Kubernetes Healthy

Lightweight SQL management interface. Direct visual access to the fleet PostgreSQL instance (ignition_db), telemetry schemas, and transaction tables.

SCADA Gateway Logs Logo
SCADA Gateway Logs :31950
Telemetry Node x1 Live Stream

Real-time log aggregation and wrapper console monitor across all SCADA gateways (Prod Master, Backup, Dev, and EAM).

Sovereign Fleet Portal Logo
Fleet Intelligence Portal :8095
Fleet C2 Node aws-hub Active Gateway

Tactical edge infrastructure portal hosted on the AWS ingress hub. Displays continuous node telemetry, WireGuard mesh routing, and edge health analytics.

Production Fleet Architecture & Network Coordinates

Sovereign Personal Infrastructure: Sovereign Control Plane (VM 101 RKE2 Master hosted on Proxmox VE Node x), K3s Edge Fleet (x1 Master & Family Compute, x2 Worker & HDMI Kiosk), and AWS EC2 Ingress Gateway (ec2). All nodes interconnected via encrypted WireGuard site-to-cloud mesh and Zero-Trust Tailscale C2.

Cloud Ingress & Automated HA Gateway Tier
ec2 Emblem
ec2 (Cloud Gateway)
Cloud Ingress • Automated HA Failover Router • WireGuard Hub
Gateway Active
WireGuard Mesh: xx.xx.xx.1 (wg0 Hub)
Display / Public: xx.xx.xx.95
HA Failover Upstream: Primary: VM 101 (RKE2 10.20.0.101) • Failover Backup: Node x1 (10.10.0.2)
Hardware Tier: AWS EC2 Cloud • Linux x86_64
Primary Services: Nginx Reverse Proxy, 21 Production Microservices, WireGuard C2 Hub
Tier 1: Sovereign Enterprise Hypervisor & RKE2 Master Tier
Proxmox VE 9.2 • 100% Headless Clamshell • RKE2 v1.36.5
x Emblem
Host x (Headless Hypervisor)
Headless Hypervisor • Proxmox VE 9.2 • 8C/16T • 32 GB RAM • 2 TB NVMe Pool
Hypervisor Online • Headless Ready
Primary Wi-Fi GUI: xx.xx.xx.59:8006 ↗ (DOX 5GHz · 866.6 Mbps)
Tailscale Mesh C2: xx.xx.xx.102:8006 ↗
WireGuard Mesh: xx.xx.xx.4 (wg0 Hub Peer to EC2 xx.xx.xx.1)
Hosted VMs: VM 101 (RKE2 Master • 16GB) • VM 100 (TrueNAS • 8GB)
Remote Terminal: ssh pve (Mutual Ed25519 Key Auth) • Trusted Multi-SAN SSL
Headless Operation Ready (No Monitor Needed)
External monitor safely disconnected. The machine is configured to run 100% headless:
1. Screen Backlight OFF
GMUX brightness=0 via turn-off-backlight.service. No bleed, lower power, cooler thermals.
2. Operating Thermals Verified
CPU: ~58°C–60°C • NVMe: 37.9°C • Battery: 37.9°C (83% threshold) • AMD GPU: 15W idle.
3. 100% Remote Operation
Web GUI at :8006 • Terminal via ssh pve. Zero peripherals required.
RKE2 Emblem
VM 101 (RKE2 Master)
Sovereign Control Plane • Ubuntu 24.04 LTS • 6 vCPUs • 16 GB RAM • 100 GB SSD
RKE2 Operational
RKE2 Control Plane: 10.20.0.101:6443 (Canal CNI • Multi-SAN TLS)
High-Performance NVMe: Host x NFS Export • 19 PVs Bound (16 GB Synced)
Active Microservices: All 21 Workloads Healthy (1/1 Running across 11 Namespaces)
Architecture Tier: Native AMD64 • Q35 • Hardware Virtualization
Primary Services: SCADA (Ignition Master/Backup/Dev/EAM), DBs (Postgres, InfluxDB), IoT (EMQX, Node-RED, Neuron, RabbitMQ), OT Security, Portainer, Headlamp
Tier 2: K3s Edge Fleet & Family Infrastructure Tier
Flannel CNI • Family Compute • High-Availability Standby
x1 Emblem
x1 (Edge Master • Family Compute)
K3s Edge Master • Family Infrastructure • HA Standby
Master Online
WireGuard Mesh: xx.xx.xx.2
Display / LAN: xx.xx.xx.139
Tailscale C2: xx.xx.xx.43
Hardware Tier: 4C • 15 GB RAM • 939 GB NVMe Storage
Primary Services: Family Infrastructure Compute, Mattermost Hub, High-Availability Backup
x2 Emblem
x2 (Edge Worker • HDMI Kiosk)
Secondary Edge Worker • VideoCore VII Kiosk Display
Worker Online
WireGuard Mesh: xx.xx.xx.3
Display / LAN: xx.xx.xx.146
Tailscale C2: xx.xx.xx.80
Hardware Tier: 4C • 8 GB RAM • 29 GB Storage
Primary Services: HDMI 1080p60 Kiosk, Sparkplug B Edge Ingestion, Gitea Git Mirror

Service Details

Service architecture and deployment specifications.