Linux Edge Cluster • Mission Center Telemetry

Verified Cluster Telemetry & Edge SCADA Operations

High-performance distributed edge infrastructure orchestrated via K3s and WireGuard mesh. Featuring live per-thread telemetry inspired by Mission Center and real-time plant floor automation.

System Performance & Telemetry

Waiting for measured telemetry

Temperature: every 5 minutes · CPU / RAM: every 10 minutes · Storage: every 12 hours. Hardware sensors only; each value has its own timestamp.

RKE2 · All cluster nodes and workload placement

Naming, endpoints & collection guide ↗

Active Fleet Services & Applications

Services grouped by category, with device and environment filters. Runtime placement is verified where inventory is available; RKE2 routes are configured targets until the API is reachable.

pve-cl-102-x-db:5432
pve · clInventory verified

PostgreSQL · Runtime: x-db. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

pve-cl-103-x-mosquitto:1883
pve · clInventory verified

Mosquitto · Runtime: x-mosquitto. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

pve-cl-104-x-rabbitmq:15672
pve · clInventory verified

RabbitMQ · Runtime: x-rabbitmq. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

pve-cl-105-x-ignition:8088
pve · clInventory verified

Ignition · Runtime: x-ignition. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

x1-clx-scada:8088
x1 · clxInventory verified

Ignition SCADA · Runtime: lxc-scada. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

x1-clx-mes:8088
x1 · clxInventory verified

Ignition MES · Runtime: lxc-mes. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

x1-clx-influx:8086
x1 · clxInventory verified

InfluxDB · Runtime: lxc-influx. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

x1-clx-postgres:5432
x1 · clxInventory verified

PostgreSQL · Runtime: lxc-postgres. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

x1-clx-rabbitmq:15672
x1 · clxInventory verified

RabbitMQ · Runtime: lxc-rabbitmq. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

x1-clx-mosquitto:1883
x1 · clxInventory verified

Mosquitto · Runtime: lxc-mosquitto. Listener verified Oct 05, 2026. Running container status appears in telemetry; application health is separate.

Ignition SCADA Logo
pve-rke2-ignition-prod-master :30188
SCADA Master pve · rke2 · VM 101 · configured route API verification pending

Primary Ignition 8.1 Industrial Automation Gateway. High-availability plant execution controller with real-time tag engine and database connectivity.

Ignition Redundant Standby Logo
pve-rke2-ignition-prod-backup :30288
High Availability pve · rke2 · VM 101 · configured route API verification pending

Redundant warm-standby Ignition gateway. Real-time state replication and instant failover protection for mission-critical automation.

Ignition Development Logo
pve-rke2-ignition-dev-gateway :30388
Engineering Staging pve · rke2 · VM 101 · configured route API verification pending

Engineering development and validation gateway for designing automation logic, testing Python modules, and rapid prototyping.

Ignition EAM Controller Logo
pve-rke2-ignition-eam-central :30488
Enterprise Admin pve · rke2 · VM 101 · configured route API verification pending

Enterprise Administration Module (EAM) Controller. Centralized management of gateway agents, project distributions, and remote tasks.

OpenPLC Soft PLC Logo
pve-rke2-openplc-runtime :30880
IEC 61131-3 pve · rke2 · VM 101 · configured route API verification pending

Complete IEC 61131-3 soft programmable logic controller runtime. Executes Structured Text (ST) and Ladder Diagram (LD) programs with Modbus TCP server.

Gitea Industrial Git Logo
pve-rke2-gitea-industrial-devops :31410
Git • CI/CD pve · rke2 · VM 101 · configured route API verification pending

Self-hosted Git version control system. Hosts PLC project files, Ignition gateway backups, automation scripts, and CI/CD pipelines.

Kubernetes Headlamp Cluster Logo
pve-rke2-headlamp-k8s-hud :32619
Kubernetes Dashboard pve · rke2 · VM 101 · configured route API verification pending

Clean, modern Kubernetes web UI. Real-time pod lifecycle monitoring, namespace inspections, container logs, and cluster events.

InfluxDB Time-Series Historian Logo
pve-rke2-influxdb-historian :30086
Time-Series DB pve · rke2 · VM 101 · configured route API verification pending

High-velocity time-series sensor historian. Stores continuous plant floor telemetry, soft PLC process variables, and environmental metrics.

Grafana Metrics HUD Logo
pve-rke2-grafana-observability :30300
Metrics & HUD pve · rke2 · VM 101 · configured route API verification pending

Unified operational observability dashboards. Real-time telemetry visualization, node hardware metrics, alerting rules, and process trends.

EMQX MQTT Sparkplug B Logo
pve-rke2-emqx-uns-broker :31808
MQTT Sparkplug B pve · rke2 · VM 101 · configured route API verification pending

High-performance distributed MQTT broker powering the Unified Namespace (UNS). Supports millions of messages with Sparkplug B edge specifications.

Node-RED Flow Studio Logo
pve-rke2-node-red-flow-studio :31880
Flow Orchestration pve · rke2 · VM 101 · configured route API verification pending

Low-code visual event wiring tool. Seamlessly bridges Modbus registers, MQTT UNS topics, REST webhooks, and automation logic.

Mattermost ChatOps Logo
pve-rke2-mattermost-chatops :32758
Secure Messaging pve · rke2 · VM 101 · configured route API verification pending

Self-hosted encrypted operator messaging and C2 alerts channel. Includes the official public xk3s community hub and automated Kubernetes webhooks.

Pi-hole DNS Shield Logo
pve-rke2-pi-hole-dns-shield :30990
DNS Sinkhole pve · rke2 · VM 101 · configured route API verification pending

Cluster-wide zero-trust DNS filtering and query sinkhole. Blocks tracking, telemetry leakage, and unwanted network connections.

Portainer Container Engine Logo
pve-rke2-portainer-ce :30779
Container Engine pve · rke2 · VM 101 · configured route API verification pending

Container orchestration and image lifecycle manager. Provides container stack deployments, volume monitoring, and log inspection.

RabbitMQ Message Broker Logo
pve-rke2-rabbitmq-broker :31672
AMQP Message Bus pve · rke2 · VM 101 · configured route API verification pending

Robust distributed AMQP message broker for asynchronous plant floor event queues, reliable message buffering, and service pub/sub.

Documentation Architecture Logo
ec2-host-architecture-docs :443
Manuals • Guides ec2 · host Online

Comprehensive cluster architecture manuals, runbooks, ingress matrices, WireGuard network topology, and deployment manifests.

OT Cyber Threat Intel Logo
x1-host-ot-cyber-threat-intel :30850
Cyber Defense x1 · host Live Ingestion

Live OT/ICS threat intelligence, CVE tracking, CISA KEV advisories, and active MITRE ATT&CK ICS telemetry across cluster nodes.

OTSec Asset Hub Logo
pve-rke2-ot-cyber-amp-asset-hub :30860
Asset Intel pve · rke2 · VM 101 · configured route API verification pending

OT/ICS/BAS asset intelligence, 86 manufacturers, 1,350 hardware records, 1,265 software records, firmware compatibility and Purdue zone mapping.

pve-rke2-home-assistant :31823
Home Automation pve · rke2 · VM 101 · configured route API verification pending

Open-source X home automation hub. Centralizes smart energy monitors, environmental telemetry, Zigbee/Matter devices, and local automation rules.

Neuron IIoT Gateway Logo
pve-rke2-emqx-neuron-gateway :30700
Protocol Bridge pve · rke2 · VM 101 · configured route API verification pending

Industrial edge connectivity gateway. Converts Modbus, OPC UA, Siemens, and fieldbus protocols directly into MQTT / Sparkplug B for the Unified Namespace.

pve-rke2-jupyterlab-analytics :30895
Data Science pve · rke2 · VM 101 · configured route API verification pending

Interactive data science workspace. Preloaded with Python kernels, Pandas, InfluxDB clients, and automated SCADA analytics notebooks.

PostgreSQL Database Adminer Logo
pve-rke2-adminer-database-studio :30875
SQL Manager pve · rke2 · VM 101 · configured route API verification pending

Lightweight SQL management interface. Direct visual access to the fleet PostgreSQL instance (ignition_db), telemetry schemas, and transaction tables.

SCADA Gateway Logs Logo
x1-host-ignition-gateway-logs :31950
Telemetry x1 · host Live Stream

Real-time log aggregation and wrapper console monitor across all SCADA gateways (Prod Master, Backup, Dev, and EAM).

X Fleet Portal Logo
ec2-host-fleet-intelligence-portal :8095
Fleet C2 ec2 · host Active Gateway

Tactical edge infrastructure portal hosted on the AWS ingress hub. Displays continuous node telemetry, WireGuard mesh routing, and edge health analytics.

Production Fleet Architecture & Network Coordinates

X Personal Infrastructure: X Control Plane (VM 101 RKE2 Master hosted on Proxmox VE Node x), K3s Edge Fleet (x1 Master & Family Compute, x2 Worker & HDMI Kiosk), and AWS EC2 Ingress Gateway (ec2). All nodes interconnected via encrypted WireGuard site-to-cloud mesh and Zero-Trust Tailscale C2.

Cloud Ingress & Automated HA Gateway Tier
ec2 Emblem
ec2 (Cloud Gateway)
Cloud Ingress • Automated HA Failover Router • WireGuard Hub
Gateway Active
WireGuard Mesh: xx.xx.xx.1 (wg0 Hub)
Display / Public: xx.xx.xx.95
HA Failover Upstream: Primary: RKE2 (VM 101 @ 10.20.0.101) • Failover Backup: Node x1 (10.10.0.2)
Hardware Tier: AWS EC2 Cloud • Ubuntu 24.04 LTS • Kernel 6.8.0-1017-aws
Primary Services: Nginx Reverse Proxy, 21 Production Microservices, WireGuard C2 Hub
Tier 1: X Enterprise Hypervisor & RKE2 Master Tier
Proxmox VE 9.2 • 100% Headless Clamshell • RKE2 v1.36.5
x Emblem
Host x (Headless Hypervisor)
Headless Hypervisor • Proxmox VE 9.2 (Debian 13) • Kernel 7.0.14-20-pve • 8C/16T • 32 GB RAM • 2 TB NVMe Pool
Hypervisor Online • Headless Ready
Primary Wi-Fi GUI: xx.xx.xx.59:8006 ↗ (DOX 5GHz · 866.6 Mbps)
Tailscale Mesh C2: xx.xx.xx.102:8006 ↗
WireGuard Mesh: xx.xx.xx.4 (wg0 Hub Peer to EC2 xx.xx.xx.1)
Hosted VMs: RKE2 (VM 101 • 16GB) • VM 100 (TrueNAS • 8GB)
Remote Terminal: ssh pve (Mutual Ed25519 Key Auth) • Trusted Multi-SAN SSL
Headless Operation Ready (No Monitor Needed)
External monitor safely disconnected. The machine is configured to run 100% headless:
1. Screen Backlight OFF
GMUX brightness=0 via turn-off-backlight.service. No bleed, lower power, cooler thermals.
2. Operating Thermals Verified
CPU: ~58°C–60°C • NVMe: 37.9°C • Battery: 37.9°C (83% threshold) • AMD GPU: 15W idle.
3. 100% Remote Operation
Web GUI at :8006 • Terminal via ssh pve. Zero peripherals required.
RKE2 Emblem
RKE2 (VM 101 @ Host x)
X Control Plane • Ubuntu 24.04.5 LTS • Kernel 6.8.0-146-generic • RKE2 v1.36.5 • 6 vCPUs • 16 GB RAM
RKE2 Operational
RKE2 Control Plane: 10.20.0.101:6443 (Canal CNI • Multi-SAN TLS)
High-Performance NVMe: Host x NFS Export • 19 PVs Bound (16 GB Synced)
Active Microservices: All 21 Workloads Healthy (1/1 Running across 11 Namespaces)
Architecture Tier: Native AMD64 • Q35 • Hardware Virtualization
Primary Services: SCADA (Ignition Master/Backup/Dev/EAM), DBs (Postgres, InfluxDB), IoT (EMQX, Node-RED, Neuron, RabbitMQ), OT Security, Portainer, Headlamp
Tier 2: K3s Edge Fleet & Family Infrastructure Tier
Flannel CNI • Family Compute • High-Availability Standby
x1 Emblem
x1 (Edge Master • Family Compute)
K3s Edge Master • Debian 13 (Trixie) • Kernel 6.18.50+rpt-rpi-2712 • K3s v1.36.4
Master Online
WireGuard Mesh: xx.xx.xx.2
Display / LAN: xx.xx.xx.33 (eth0 wired) • xx.xx.xx.139 (wlan0)
Tailscale C2: xx.xx.xx.43
Hardware Tier: 4C • 15 GB RAM • 939 GB NVMe Storage
Primary Services: K3s Master Control Plane, Mattermost Hub & DB, Pi-hole DNS, Telemetry Relay & NVMe Fabric
x2 Emblem
x2 (Edge Worker • HDMI Kiosk)
Secondary Edge Worker • Debian 12 (Bookworm) • Kernel 6.12.109+rpt • EEPROM 28.33
Worker Online
WireGuard Mesh: xx.xx.xx.3
Display / LAN: xx.xx.xx.42 (eth0 wired) • xx.xx.xx.210 (wlan0)
Tailscale C2: xx.xx.xx.80
Hardware Tier: 4C • 8 GB RAM • 29 GB Storage
Primary Services: HDMI 1080p60 Kiosk, Sparkplug B Edge Ingestion, Gitea Git Mirror
x3 Emblem
x3 (Compute Worker • Linux Offload)
Secondary Compute Worker • Ubuntu 24.04.5 LTS • HWE Kernel 7.0.0-38-generic • Mesa 25.2.8
Worker Online
WireGuard Mesh: xx.xx.xx.5
Display / LAN: xx.xx.xx.172 / 12.234
Tailscale C2: xx.xx.xx.65
Hardware Tier: 2C AMD64 • 8 GB RAM • 64 GB SSD
Primary Services: Linux Compute Offload, Container Worker, Workload Expansion

Service Details

Service architecture and deployment specifications.