For Kubernetes
Kubernetes on Edge, without the platform tax
Free to sign up. No egress fees on any product.
Why Kubernetes on Edge
The primitives Kubernetes assumes, without the markup
Your distribution, your call
k3s for lightweight clusters, RKE2 for hardened production, kubeadm for upstream. No proprietary control plane.A private network for the cluster
Nodes talk over a private network, so etcd and API traffic stays off the public internet. VM-to-VM bandwidth is free.Volumes that persist
Local NVMe for IOPS-hungry pods, plus S3-compatible storage for backups, snapshots and shared blob data.The CDN in front of ingress
Put Traefik, ingress-nginx or Istio behind 988 CDN locations. Automatic SSL and zero egress on the way out.No control-plane fee
Managed Kubernetes typically bills about $73 a month per cluster before a single node. Here the control plane is a VM you already pay for.GitOps-ready
Point Flux or Argo CD at the cluster and deploy from a repository. The Edge CLI builds the nodes; Git does the rest.
Reference architecture
How a cluster maps to Edge
Users
app.acme.io, api.acme.io
*.acme.io
static routes + images cached
traefik :443
k3s ingress on every worker
k3s server × 3
embedded etcd · s-2vcpu-4gb
k3s agent × 3
workloads · s-4vcpu-8gb
k8s-backups
Velero schedules and restores
- Compute
VMs for control-plane and worker nodes, sized independently.
- Storage
Velero backups, snapshots and shared blob data over the S3 API.
- CDN
Sits in front of your ingress controller for global delivery.
- Image optimisation
On-the-fly transforms for any media your pods serve.
- DNS
Anycast DNS for *.acme.io; pairs well with ExternalDNS.
- Shield
Scores logins, sign-ups and forms from any service in the cluster.
- Assist
An answer box for whatever the cluster serves, one script tag.
Deploy
A six-node k3s cluster in five steps
- 01
Write the bootstrap scripts
Startup scripts substitute ${param} values before they run. The first server starts etcd; the rest join it.
k3s-server.sh · k3s-agent.sh#!/bin/bash # k3s-server.sh: empty join_ip starts a new cluster set -e ARGS="--cluster-init" [ -n "${join_ip}" ] && ARGS="--server https://${join_ip}:6443" curl -sfL https://get.k3s.io | K3S_TOKEN="${k3s_token}" \ sh -s - server $ARGS #!/bin/bash # k3s-agent.sh set -e curl -sfL https://get.k3s.io | K3S_URL="https://${server_ip}:6443" \ K3S_TOKEN="${k3s_token}" sh - - 02
Bring up the control plane
Register both scripts, then create three servers. cp-1 initialises etcd and the other two join it.
shell$ edge compute scripts create --name k3s-server --file k3s-server.sh $ edge compute scripts create --name k3s-agent --file k3s-agent.sh $ TOKEN=$(openssl rand -hex 32) $ edge compute create --name cp-1 --size s-2vcpu-4gb \ --image ubuntu-24 --region london --script k3s-server \ --script-param k3s_token=$TOKEN $ for n in 2 3; do edge compute create --name cp-$n \ --size s-2vcpu-4gb --image ubuntu-24 --region london \ --script k3s-server --script-param k3s_token=$TOKEN \ --script-param join_ip=10.0.0.2; done - 03
Add the workers
Performance VMs give pods 160 GB of local NVMe each. Copy the kubeconfig and swap 127.0.0.1 for cp-1's address.
shell$ for n in 1 2 3; do edge compute create --name worker-$n \ --size s-4vcpu-8gb --image ubuntu-24 --region london \ --script k3s-agent --script-param k3s_token=$TOKEN \ --script-param server_ip=10.0.0.2; done $ scp root@<cp-1-ip>:/etc/rancher/k3s/k3s.yaml ~/.kube/config $ kubectl get nodes - 04
Lock it down and front the ingress
Only HTTPS is public; the API server answers on the private range. The CDN caches what it can and passes the rest to Traefik.
shell$ edge compute groups create --name k8s-nodes $ edge compute groups add-rule grp-abc123 --port 443 \ --protocol tcp --source 0.0.0.0/0 $ edge compute groups add-rule grp-abc123 --port 6443 \ --protocol tcp --source 10.0.0.0/8 $ edge cdn create --name acme-cluster $ edge cdn domains add cdn-a1b2c3 \ --domain app.acme.io --origin https://<worker-ip> - 05
Back up the cluster to Edge Storage
Velero's AWS plugin speaks to any S3 endpoint. Schedule nightly backups and test a restore before you need one.
shell$ edge storage create k8s-backups $ S3=https://storage.edge.network $ velero install --provider aws --bucket k8s-backups \ --plugins velero/velero-plugin-for-aws:v1.12.0 \ --secret-file ./edge-credentials \ --use-volume-snapshots=false \ --backup-location-config \ region=us-east-1,s3ForcePathStyle=true,s3Url=$S3 $ velero schedule create nightly --schedule="0 3 * * *"
Prefer to hand it off? Give the job to your AI agent or have our engineers do it.
What it costs
A production cluster, itemised
- No control-plane or cluster-management fee
- ~2 TB of egress costs $0
- 200 GB of volumes on included local NVMe
- Hourly billing with optional hard caps
Estimated monthly bill on Edge
3 control-plane + 3 worker nodes · 200 GB persistent storage · ~2 TB egress
- Control plane$57.723 × Standard VM (2 vCPU · 4 GiB) at $19.24
- Workers$115.413 × Performance VM (4 vCPU · 8 GiB · 160 GB NVMe) at $38.47
- CDN$2.5010.5M requests: 500k free, then 10M × $0.25 per million
- Storage$3.00205 GB of Velero backups: 5 GB free, then 200 GB × $0.015
- DNS$0.00Wildcard zone for *.acme.io
- Egress$0.00
Indicative monthly cost · modest production cluster
- EKS + EC2 + EBS + NLB + egress~$700–1,400
- GKE Standard + nodes + LB~$600–1,200
- Edge (6 VMs + CDN + Storage)~$120–280
Indicative figures. On the hyperscalers, egress alone often dwarfs the control-plane fee.
FAQ
Kubernetes on Edge, answered
Which distribution should I use?
How does this compare to EKS, GKE or AKS?
Local volumes or S3?
Can a cluster span regions?
How do upgrades work?
Drop-in services
Add these without touching the stack
- Edge ShieldBot protection
POST /siteverify → score: 94Call Shield from any service in the cluster to score logins, sign-ups and forms. A 1–100 humanity score instead of a puzzle.
Free for most sites. No puzzles, no widget to style.Explore - Edge AssistAI answers
<script src="…/assist.js">Add an answer box grounded in your own content to whatever the cluster serves. One script tag on any page.
Free tier: 250 answered questions a monthExplore
Run Kubernetes the cheap way
Start free and stand up a cluster in minutes, or have our Expert Services team design and run it for you.
Free tiers hard-cap. Nothing bills until you add a card.