Linux Edge Cluster • Mission Center Telemetry

Verified Cluster Telemetry & Edge SCADA Operations

High-performance distributed edge infrastructure orchestrated via K3s and WireGuard mesh. Featuring live per-thread telemetry inspired by Mission Center and real-time plant floor automation.

System Performance & Telemetry

Cluster Telemetry Snapshot • Live Verified Oct 03, 2026
19% / 12% / 4% / 2%
RKE2 Master (VM 101 @ Host x) • K3s Edge Fleet (x1, x2, x3) • ec2 Gateway
RKE2 Cluster API: 100% Healthy (:6443)
Host x Hypervisor: Online (58°C • Headless)
K3s Master (x1): Online (Family Compute Tier)
Compute Worker (x3): Online (Ubuntu 24.04 • Kernel 7.0)
Sovereign Fleet Telemetry • ec2, Host x, VM 101, x1, x2, x3 All Sovereign & Edge Tiers Operational • Verified
Sovereign Control Plane & Enterprise Hypervisor Tier • Online
VM 101 · RKE2 Master19% · Online
6 vCPUs • 16GB RAM • All 21 Workloads Operational
Host x · Proxmox Hypervisor12% · 58°C
i9 8C/16T • 32GB RAM • 2TB NVMe Pool • Headless
K3s Edge Fleet & Family Infrastructure Tier • Online
x1 · Master CPU12%
Memory 15% • Ready • Family Compute & HA Standby
x2 · Worker CPU4%
Memory 9% • Ready • Edge Worker & HDMI Kiosk
x3 · Compute Worker2% · Online
Memory 15% • Ready • Ubuntu 24.04 • Offload
ec2 · Cloud Ingress3% · Active
WireGuard Hub • Nginx HA Reverse Proxy Router
Verified Oct 04: Sovereign architecture consists of ec2 (Cloud Ingress Gateway), Host x (Proxmox VE 9.2 Hypervisor hosting VM 101 RKE2 Master), x1 (Edge Master & Family Compute), x2 (Edge Worker & HDMI Kiosk), and x3 (Linux Compute Worker).
Host x · Hypervisor RAM 22.1 / 32.0 GiB (69%)
VM 101 (16G) + VM 100 (8G) Proxmox VE 9.2 Online
VM 101 · RKE2 Master RAM 10.8 / 16.0 GiB (68%)
21 Microservices Active Ubuntu 24.04 Active
K3s x1 · Family Compute RAM 2.5 / 15.0 GiB (16%)
K3s Core • Family Infra Node Ready Verified Oct 03
K3s x2 · Worker RAM 0.7 / 8.0 GiB (9%)
HDMI Kiosk • Gitea Git Node Ready Verified Oct 04
x3 · Compute Worker RAM 1.2 / 8.0 GiB (15%)
Linux Offload Worker Ubuntu 24.04 Verified Online
ec2 · Gateway RAM 0.6 / 1.0 GiB (61%)
Nginx • WireGuard Hub AWS Cloud Active
Swap & ZRAM Reservation 352 MiB / 8.0 GiB
Active Swap: 4% Zero Throttling Status: Healthy
Host x Hypervisor NVMe Pool 24 / 94 GB (27%)
2 TB NVMe Pool 16 GB NFS k8s-storage Proxmox VE
x1 Master NVMe (/dev/nvme0n1p2) 57 / 939 GB (7%)
Available: 844 GB Family Storage Tier NVMe PCIe SSD
ec2 Gateway EBS (/dev/root) 15 / 24 GB (62%)
Available: 8.9 GB AWS gp3 EBS System Root
WireGuard Site-to-Cloud (wg0) 10.10.0.0/24 • 10.20.0.0/24
ec2: xx.xx.xx.1 • x1: xx.xx.xx.2 • x2: xx.xx.xx.3 x3: xx.xx.xx.5 • Host x: xx.xx.xx.8 VM 101: 10.20.0.101 • Encrypted C2 Mesh
Zero-Trust C2 (tailscale0) 100.64.0.0/10
Host x: xx.xx.xx.102 • x1: xx.xx.xx.43 x2: xx.xx.xx.80 • x3: xx.xx.xx.65 mba: xx.xx.xx.91 • dphone: xx.xx.xx.78
Local Area Network (LAN 192.168.4.0/22) Ultra-Low Latency
Host x: xx.xx.xx.59 • x1: xx.xx.xx.139 x2: xx.xx.xx.210 • x3: xx.xx.xx.172 / 12.234 mba: xx.xx.xx.141
Host x Discrete GPU (AMD Radeon) Radeon Pro 5500M
VRAM: 4 GB GDDR6 Power Draw: Idle at 15W Role: PCIe Passthrough / Compute Ready
Host x Integrated GPU (Intel UHD) Intel UHD 630
QuickSync Video: Hardware Transcode Panel Backlight: 0 (Disabled via GMUX) Thermals: 58°C Cool • Stable
Edge Kiosk Display Pipeline (x2) VideoCore VII · 60 FPS
HDMI Output: 1080p60 Active Driver: V3D / Mesa Gallium Target: x2 Kiosk Dashboard
ACTIVE
Live Log Ingestion & Historian Store
InfluxDB v2: Port 30086
Log Stream: Port 31950
Buckets: telemetry, logs, telemetry_uns
Unified Log Streaming & InfluxDB Pipeline ● Real-Time Feed • Continuous Influx Latency <0.2s
[SYS] InfluxDB v2 Historian synchronized: org='industrial' buckets='telemetry', 'logs', 'telemetry_uns'
[RKE2] VM 101 control plane active at 10.20.0.101:6443 • Canal CNI • All 21 workloads operational (1/1 Running)
[NFS] Host x 2TB NVMe backing NFS storage at 10.20.0.1:/srv/nfs/k3s-storage • 19 PVs Bound • 16 GB dataset operational
[INGRESS] EC2 Nginx primary upstream routed to 10.20.0.101 with automated failover to x1
[NODE-X] Host x Proxmox VE 9.2-1 operational: Wi-Fi (192.168.4.59) & Tailscale (100.89.48.102)
[NODE-X-PWR] turn-off-backlight.service active: GMUX brightness 0 • thermals 58°C • headless operation verified
[NODE-X1] x1 active in family infra tier • 15GB RAM • K3s master • High-availability backup upstream
[UNS] EMQX broker routed Sparkplug B telemetry from Node-RED & Neuron to InfluxDB
[AUDIT] Nginx click engine & cluster sentinel metrics streaming to PostgreSQL & InfluxDB
[SEC] OT Cyber Threat Intel Enclave (cyber.xk3s.com) updated vulnerability signatures
[SYS] Telegraf daemons collecting host and mqtt_consumer metrics every 10s

Active Fleet Services & Applications

Verified production workloads across cluster nodes. High-availability industrial edge fabric.

Ignition SCADA Logo
SCADA Prod Master :30188
SCADA Master VM 101 (RKE2) Active Master

Primary Ignition 8.1 Industrial Automation Gateway. High-availability plant execution controller with real-time tag engine and database connectivity.

Ignition Redundant Standby Logo
SCADA Prod Backup :30288
High Availability VM 101 (RKE2) Standby Synced

Redundant warm-standby Ignition gateway. Real-time state replication and instant failover protection for mission-critical automation.

Ignition Development Logo
SCADA Dev Gateway :30388
Engineering Staging VM 101 (RKE2) Healthy

Engineering development and validation gateway for designing automation logic, testing Python modules, and rapid prototyping.

Ignition EAM Controller Logo
SCADA EAM Central :30488
Enterprise Admin VM 101 (RKE2) Healthy

Enterprise Administration Module (EAM) Controller. Centralized management of gateway agents, project distributions, and remote tasks.

OpenPLC Soft PLC Logo
OpenPLC Runtime :30880
IEC 61131-3 VM 101 (RKE2) Online

Complete IEC 61131-3 soft programmable logic controller runtime. Executes Structured Text (ST) and Ladder Diagram (LD) programs with Modbus TCP server.

Gitea Industrial Git Logo
Gitea Industrial DevOps :31410
Git • CI/CD VM 101 (RKE2) Healthy

Self-hosted Git version control system. Hosts PLC project files, Ignition gateway backups, automation scripts, and CI/CD pipelines.

Kubernetes Headlamp Cluster Logo
Headlamp K8s HUD :32619
Kubernetes Dashboard VM 101 (RKE2) Healthy

Clean, modern Kubernetes web UI. Real-time pod lifecycle monitoring, namespace inspections, container logs, and cluster events.

InfluxDB Time-Series Historian Logo
InfluxDB Historian :30086
Time-Series DB VM 101 (RKE2) Healthy

High-velocity time-series sensor historian. Stores continuous plant floor telemetry, soft PLC process variables, and environmental metrics.

Grafana Metrics HUD Logo
Grafana Observability :30300
Metrics & HUD VM 101 (RKE2) Healthy

Unified operational observability dashboards. Real-time telemetry visualization, node hardware metrics, alerting rules, and process trends.

EMQX MQTT Sparkplug B Logo
EMQX UNS Broker :31808
MQTT Sparkplug B VM 101 (RKE2) Healthy

High-performance distributed MQTT broker powering the Unified Namespace (UNS). Supports millions of messages with Sparkplug B edge specifications.

Node-RED Flow Studio Logo
Node-RED Flow Studio :31880
Flow Orchestration VM 101 (RKE2) Healthy

Low-code visual event wiring tool. Seamlessly bridges Modbus registers, MQTT UNS topics, REST webhooks, and automation logic.

Mattermost ChatOps Logo
Mattermost ChatOps :32758
Secure Messaging VM 101 (RKE2) Healthy

Self-hosted encrypted operator messaging and C2 alerts channel. Includes the official public xk3s community hub and automated Kubernetes webhooks.

Pi-hole DNS Shield Logo
Pi-hole DNS Shield :30990
DNS Sinkhole VM 101 (RKE2) Active Filter

Cluster-wide zero-trust DNS filtering and query sinkhole. Blocks tracking, telemetry leakage, and unwanted network connections.

Portainer Container Engine Logo
Portainer CE :30779
Container Engine VM 101 (RKE2) Healthy

Container orchestration and image lifecycle manager. Provides container stack deployments, volume monitoring, and log inspection.

RabbitMQ Message Broker Logo
RabbitMQ Broker :31672
AMQP Message Bus VM 101 (RKE2) Healthy

Robust distributed AMQP message broker for asynchronous plant floor event queues, reliable message buffering, and service pub/sub.

Documentation Architecture Logo
Architecture Docs :443
Manuals • Guides Node ec2 Online

Comprehensive cluster architecture manuals, runbooks, ingress matrices, WireGuard network topology, and deployment manifests.

OT Cyber Threat Intel Logo
OT Cyber Threat Intel :30850
Cyber Defense Node x1 Live Ingestion

Live OT/ICS threat intelligence, CVE tracking, CISA KEV advisories, and active MITRE ATT&CK ICS telemetry across cluster nodes.

OTSec Asset Hub Logo
OT Cyber & Asset Hub :30860
Asset Intel VM 101 (RKE2) Online

OT/ICS/BAS asset intelligence, 86 manufacturers, 1,350 hardware records, 1,265 software records, firmware compatibility and Purdue zone mapping.

Home Assistant :31823
Home Automation VM 101 (RKE2) Online Gateway

Open-source sovereign home automation hub. Centralizes smart energy monitors, environmental telemetry, Zigbee/Matter devices, and local automation rules.

Neuron IIoT Gateway Logo
EMQX Neuron Gateway :30700
Protocol Bridge VM 101 (RKE2) Healthy

Industrial edge connectivity gateway. Converts Modbus, OPC UA, Siemens, and fieldbus protocols directly into MQTT / Sparkplug B for the Unified Namespace.

JupyterLab Analytics :30895
Data Science VM 101 (RKE2) Healthy

Interactive data science workspace. Preloaded with Python kernels, Pandas, InfluxDB clients, and automated SCADA analytics notebooks.

PostgreSQL Database Adminer Logo
Adminer Database Studio :30875
SQL Manager VM 101 (RKE2) Healthy

Lightweight SQL management interface. Direct visual access to the fleet PostgreSQL instance (ignition_db), telemetry schemas, and transaction tables.

SCADA Gateway Logs Logo
SCADA Gateway Logs :31950
Telemetry Node x1 Live Stream

Real-time log aggregation and wrapper console monitor across all SCADA gateways (Prod Master, Backup, Dev, and EAM).

Sovereign Fleet Portal Logo
Fleet Intelligence Portal :8095
Fleet C2 Node ec2 Active Gateway

Tactical edge infrastructure portal hosted on the AWS ingress hub. Displays continuous node telemetry, WireGuard mesh routing, and edge health analytics.

Production Fleet Architecture & Network Coordinates

Sovereign Personal Infrastructure: Sovereign Control Plane (VM 101 RKE2 Master hosted on Proxmox VE Node x), K3s Edge Fleet (x1 Master & Family Compute, x2 Worker & HDMI Kiosk), and AWS EC2 Ingress Gateway (ec2). All nodes interconnected via encrypted WireGuard site-to-cloud mesh and Zero-Trust Tailscale C2.

Cloud Ingress & Automated HA Gateway Tier
ec2 Emblem
ec2 (Cloud Gateway)
Cloud Ingress • Automated HA Failover Router • WireGuard Hub
Gateway Active
WireGuard Mesh: xx.xx.xx.1 (wg0 Hub)
Display / Public: xx.xx.xx.95
HA Failover Upstream: Primary: VM 101 (RKE2 10.20.0.101) • Failover Backup: Node x1 (10.10.0.2)
Hardware Tier: AWS EC2 Cloud • Ubuntu 24.04 LTS • Kernel 6.8.0-1017-aws
Primary Services: Nginx Reverse Proxy, 21 Production Microservices, WireGuard C2 Hub
Tier 1: Sovereign Enterprise Hypervisor & RKE2 Master Tier
Proxmox VE 9.2 • 100% Headless Clamshell • RKE2 v1.36.5
x Emblem
Host x (Headless Hypervisor)
Headless Hypervisor • Proxmox VE 9.2 (Debian 13) • Kernel 7.0.14-20-pve • 8C/16T • 32 GB RAM • 2 TB NVMe Pool
Hypervisor Online • Headless Ready
Primary Wi-Fi GUI: xx.xx.xx.59:8006 ↗ (DOX 5GHz · 866.6 Mbps)
Tailscale Mesh C2: xx.xx.xx.102:8006 ↗
WireGuard Mesh: xx.xx.xx.4 (wg0 Hub Peer to EC2 xx.xx.xx.1)
Hosted VMs: VM 101 (RKE2 Master • 16GB) • VM 100 (TrueNAS • 8GB)
Remote Terminal: ssh pve (Mutual Ed25519 Key Auth) • Trusted Multi-SAN SSL
Headless Operation Ready (No Monitor Needed)
External monitor safely disconnected. The machine is configured to run 100% headless:
1. Screen Backlight OFF
GMUX brightness=0 via turn-off-backlight.service. No bleed, lower power, cooler thermals.
2. Operating Thermals Verified
CPU: ~58°C–60°C • NVMe: 37.9°C • Battery: 37.9°C (83% threshold) • AMD GPU: 15W idle.
3. 100% Remote Operation
Web GUI at :8006 • Terminal via ssh pve. Zero peripherals required.
RKE2 Emblem
VM 101 (RKE2 Master)
Sovereign Control Plane • Ubuntu 24.04.5 LTS • Kernel 6.8.0-146-generic • RKE2 v1.36.5 • 6 vCPUs • 16 GB RAM
RKE2 Operational
RKE2 Control Plane: 10.20.0.101:6443 (Canal CNI • Multi-SAN TLS)
High-Performance NVMe: Host x NFS Export • 19 PVs Bound (16 GB Synced)
Active Microservices: All 21 Workloads Healthy (1/1 Running across 11 Namespaces)
Architecture Tier: Native AMD64 • Q35 • Hardware Virtualization
Primary Services: SCADA (Ignition Master/Backup/Dev/EAM), DBs (Postgres, InfluxDB), IoT (EMQX, Node-RED, Neuron, RabbitMQ), OT Security, Portainer, Headlamp
Tier 2: K3s Edge Fleet & Family Infrastructure Tier
Flannel CNI • Family Compute • High-Availability Standby
x1 Emblem
x1 (Edge Master • Family Compute)
K3s Edge Master • Debian 13 (Trixie) • Kernel 6.18.50+rpt-rpi-2712 • K3s v1.36.4
Master Online
WireGuard Mesh: xx.xx.xx.2
Display / LAN: xx.xx.xx.139
Tailscale C2: xx.xx.xx.43
Hardware Tier: 4C • 15 GB RAM • 939 GB NVMe Storage
Primary Services: Family Infrastructure Compute, Mattermost Hub, High-Availability Backup
x2 Emblem
x2 (Edge Worker • HDMI Kiosk)
Secondary Edge Worker • Debian 12 (Bookworm) • Kernel 6.12.109+rpt • EEPROM 28.33
Worker Online
WireGuard Mesh: xx.xx.xx.3
Display / LAN: xx.xx.xx.146
Tailscale C2: xx.xx.xx.80
Hardware Tier: 4C • 8 GB RAM • 29 GB Storage
Primary Services: HDMI 1080p60 Kiosk, Sparkplug B Edge Ingestion, Gitea Git Mirror
x3 Emblem
x3 (Compute Worker • Linux Offload)
Secondary Compute Worker • Ubuntu 24.04.5 LTS • HWE Kernel 7.0.0-38-generic • Mesa 25.2.8
Worker Online
WireGuard Mesh: xx.xx.xx.5
Display / LAN: xx.xx.xx.172 / 12.234
Tailscale C2: xx.xx.xx.65
Hardware Tier: 2C AMD64 • 8 GB RAM • 64 GB SSD
Primary Services: Linux Compute Offload, Container Worker, Workload Expansion

Service Details

Service architecture and deployment specifications.