IoT Device Fleet Management · WireGuard · EU Servers · LAN/WiFi/LTE

FLEET From device to central control plane

A centralized platform for managing fleets of edge single-board computers - zero-touch provisioning, fully encrypted WireGuard networking, real-time telemetry, and OTA updates. EU-hosted servers, support for thousands of devices, and LAN/WiFi/LTE connectivity.

🖥️
FLT-DEVICE
Edge SBC · eMMC · LTE/WiFi
↓ WireGuard VPN
🔒
FLT-VPN
WireGuard Overlay · Zero-Trust
↓ MQTT / REST API
☁️
FLT-PLATFORM
Provision API · MQTT · Device DB
↓ React Dashboard
📊
FLT-DASHBOARD
Live UI · OTA · Alerts
Zero-Touch Automated provisioning
1000+ Devices concurrently
EU Servers - no foreign clouds
E2E Encrypted WireGuard network
Architecture

Full stack under one roof

From factory to site - one solution for provisioning, monitoring, and updating edge devices.

01
🖥️
FLT-DEVICE
Edge Single-Board Computer
  • Automatic provisioning on first boot
  • eMMC + A/B rootfs layout
  • LAN / WiFi / LTE connectivity
  • NVMe offload for data
  • Watchdog and boot verification
WireGuard
02
🔒
FLT-VPN
WireGuard Overlay Network
  • Per-device keypairs and IP addresses
  • Zero-trust architecture
  • Regional server pools
  • Technicians on isolated subnet
  • Fleet-internal DNS (fleet.lan)
MQTT/REST
03
☁️
FLT-PLATFORM
Provision API · MQTT Broker · Device Registry
  • Provision API — auto hostname + creds
  • MQTT broker per-device credentials
  • Device registry with full history
  • Ansible - repeatable provisioning
  • SSH authorized keys management
React / WS
04
📊
FLT-DASHBOARD
React 18 · TypeScript · Vite
  • Live device status and telemetry
  • Detail panel - 20+ metrics
  • OTA management and guardrails
  • QR activation by technicians
  • One-click SSH command copy
Key capabilities

Built for production IoT

Fleet is not a dashboard - it is infrastructure for operating hundreds of real-world devices.

Zero-touch provisioning

Devices are fully configured automatically on first boot - hostname by serial number, WireGuard keypair, MQTT credentials, and technician status token. From factory to site with no manual intervention.

🔒
WireGuard - full security

Every connection is end-to-end encrypted with WireGuard, a modern VPN protocol. Devices communicate only over encrypted tunnels whether on LAN, WiFi, or LTE. No unencrypted traffic leaves the device.

📡
Real-time telemetry

20+ metrics per device collected every 30 minutes via MQTT: CPU temperature, memory, disk, network traffic, LTE signal (RSRP/RSRQ), NVMe health, firmware version, and rootfs slot.

🔄
OTA with A/B rootfs

Safe OTA updates with dual rootfs partitions - if an update fails, the device rolls back. LTE guardrails include size limits, LTE blocked by default, and maintenance window restrictions.

🛠️
Field operations

A QR code on each device brings technicians to its status page. The system records which technician activated the device and when. VPN with fixed technician IPs and one-click SSH access from the dashboard.

🌍
EU infrastructure and scale

Servers are hosted in Europe - no opaque foreign clouds. Infrastructure is managed with Ansible for repeatable, auditable provisioning. Supports thousands of devices concurrently over LAN, WiFi, or LTE.

Use cases

For every edge deployment

One hardware baseline, one platform - manage distributed IoT installations at any scale.

🏭
Industrial IoT

Edge devices on production sites. Local data processing with remote monitoring and centralized update management.

📡
Telemetry networks

Networks of metering points with LTE connectivity. Fleet ensures reliable data delivery and centralized management even with constrained internet.

🏗️
Distributed infrastructure

Hundreds of devices across geographically remote sites. Zero-touch provisioning reduces field costs. OTA updates without sending technicians on-site.

🔬
Smart Building & Campus

Edge computing nodes for building automation. WireGuard overlay provides a secure internal network. The dashboard gives a centralized view of the entire infrastructure.

Deployment

Your server. Your data.
Full independence.

The full Fleet stack - VPN server, MQTT broker, Provision API, device registry, and dashboard - can be installed on your own server and run fully independently, without dependency on any external cloud. Your data never leaves your infrastructure.

🏢
On-Premise

Installed on your own server on-site. Full control over data and networking. Operates without internet - even during full connectivity outages.

☁️
Managed Cloud

Managed by Smart Data Systems on EU servers. No operational burden for platform maintenance and updates. Ready from day one.

Ready to get started?

Request a demo with
your fleet

Contact the Smart Data Systems team. We will show you the platform with live devices and a real provisioning scenario.