Skip to content
Where did you find out about us? If you have 30 seconds, let us know.
Sidero Labs Logo
  • Products
    • OmniOmni
      Integrate across Kubernetes environments to make infrastructure consistent, seamless, and scalable.
      Integrate across Kubernetes environments to make infrastructure consistent, seamless, and scalable.
    • Talos LinuxTalos Linux
      API Managed, declarative, minimal Linux for K8s. Easier updates, simpler scale.
      API Managed, declarative, minimal Linux for K8s. Easier updates, simpler scale.
    • SupportSupport
      Comprehensive enterprise production coverage for Talos Linux and Omni
      Comprehensive enterprise production coverage for Talos Linux and Omni
  • Solutions
    • Omni data centerOmni data center
      Extend the value of Kubernetes to the infrastructure level with a minimal, secure-by-default platform.
      Extend the value of Kubernetes to the infrastructure level with a minimal, secure-by-default platform.
    • Omni edgeOmni edge
      Edge is hard. We make it easy. Focus on your business, not your platform.
      Edge is hard. We make it easy. Focus on your business, not your platform.
    • Omni bare metalOmni bare metal
      Streamlined, automated, and reliable bare metal infrastructure.
      Streamlined, automated, and reliable bare metal infrastructure.
    • SecuritySecurity
      Minimal by design, secure by default. Talos Linux and Omni.
      Minimal by design, secure by default. Talos Linux and Omni.
    • FIPS Talos LinuxFIPS Talos Linux
      FIPS-compliant Kubernetes OS builds for highly regulated environments.
      FIPS-compliant Kubernetes OS builds for highly regulated environments.
  • Resources
    • About usAbout us
      Sidero Labs® was born out of real-world experience of running Kubernetes in production. Read our story.
      Sidero Labs® was born out of real-world experience of running Kubernetes in production. Read our story.
    • Omni DocsOmni Docs
      From quick start tips & getting familiar with Omni, Omni Docs has everything you need
      From quick start tips & getting familiar with Omni, Omni Docs has everything you need
    • Case StudiesCase Studies
      See how organizations innovate and build better infrastructure across data center, cloud, and edge
      See how organizations innovate and build better infrastructure across data center, cloud, and edge
    • Talos DocsTalos Docs
      From quick start tips & getting familiar with Talos, to meeting the community, Talos Docs has you covered.
      From quick start tips & getting familiar with Talos, to meeting the community, Talos Docs has you covered.
    • Blog & NewsBlog & News
      Discover the latest news on Talos Linux, Omni, and Kubernetes
      Discover the latest news on Talos Linux, Omni, and Kubernetes
    • Learning resourcesLearning resources
      Talos Linux and Omni resources, all in one place.
      Talos Linux and Omni resources, all in one place.
    • PartnersPartners
      Our ecosystem of partners enable Kubernetes across bare metal, data center, edge, AI, and private cloud
      Our ecosystem of partners enable Kubernetes across bare metal, data center, edge, AI, and private cloud
    • CareersCareers
      Help shape the future of Kubernetes,
      Help shape the future of Kubernetes,
PricingContactTry OmniBook a DemoTry Omni On-Prem
PricingContactTry OmniBook a DemoTry Omni On-Prem

Case Studies

CrossnoKaye production jumps 10X with support of Talos Linux

EdgeEdge On-premRetailIndustrial AutomationLocationNorth America

CrossnoKaye builds cutting-edge software that brings modern AI control and automation to enterprise heavy industrial facilities, enabling customers to reduce electricity and labor costs, while significantly decreasing environmental impact. Their software is deployed across a distributed edge fleet of 227 single-node clusters to control mission-critical infrastructure in environments where reliability, resilience, and low operational overhead are essential.

Challenge

  • Lack of rollback options
  • Manual provisioning
  • Inefficient remote upgrades

Environment

  • 100s of devices shipped per year
  • 227 edge devices running single-node clusters
  • Kubernetes running in AWS
Impact

Impact

  • Increased provisioning speed
  • Highly automated and programmatic operations
  • Predictable upgrades with immediate feedback and rollback capabilities
  • Fully repeatable and auditable infrastructure-as-code workflows
Question

Why Sidero and Omni

  • Simple, unopinionated OS
  • No shell, SSH, or unnecessary services
  • Declarative, API-first provisioning enables zero-touch automation
Challenge

Manual and inefficient work

CrossnoKaye previously relied on k3OS to manage its edge clusters. As k3OS approached end-of-life, CrossnoKaye sought a modern OS with a more simplistic footprint.

One of the biggest concerns was non-idempotent upgrades. k3OS made it difficult for CrossnoKaye to push updates to remote devices. The team needed an operating system that provided immediate feedback on issues and enabled easy rollbacks as necessary. A clearly defined upgrade path and centralized identity management were essential.

The team also needed a solution to laborious provisioning, as installing k3OS, configuring it, and shipping it to customer sites could take hours. Technicians often had to remotely access customer laptops through TeamViewer just to get devices online.

Solution

API-first operations with Talos Linux

“My favorite outcome is when you finally provision a machine with Talos Linux, it comes up, it’s reachable, and Kubernetes has the minimum amount of stuff in it needed to run.”

Raymond Douglas, Senior Infrastructure Engineer, CrossnoKaye

CrossnoKaye was drawn to Talos Linux because of its focus on safety, resilience, and programmatic control. The minimal, unopinionated approach fit perfectly with CrossnoKaye’s deployment model and provided them with a “clean slate.” Talos Linux includes only the core Kubernetes components and allows CrossnoKaye developers to run software on both edge and cloud using nearly identical pipelines.

Talos Linux provides them with a robust keying infrastructure with no shell access and no unnecessary services. Each machine has a unique identity, including certificate chains for Talos API and Kubernetes, and a revocable WireGuard identity tied to its hardware serial number. Even if a device is lost or stolen, it cannot be tampered with, providing the team with a “hermetically sealed box.”

Talos Linux’s API-first design and network boot capabilities have fundamentally changed how CrossnoKaye manufactures and ships its devices. Each unit now boots directly from the network, retrieves a signed Talos kernel and filesystem, and pulls its unique configuration securely from an API without the need for manual intervention. Visual indicators on the enclosure signal when provisioning is complete. By combining this hands-off, declarative process with Talos’s built-in security and immutability, CrossnoKaye has fully automated device provisioning at the manufacturing site. This transformation has streamlined production, reduced complexity, and led to significant savings in both time and operational costs.

CrossnoKaye also leverages bespoke system extensions to run software below Kubernetes, tunneling all traffic to their AWS endpoints and making processes auditable and source-controlled.

Results

Fleet-wide management that’s secure, efficient, and scalable

Talos Linux enabled CrossnoKaye to transform their edge infrastructure and manufacturing processes. What once required a hands-on approach is now entirely automated and programmatic. Manufacturing partners can provision entire enclosures themselves, without intervention from CrossnoKaye engineers, booting bare-metal devices with Talos Linux, fetching configurations from their platform, and shipping with no human intervention. This has enabled CrossnoKaye to scale from 10s of facilities per year to hundreds.

Additionally, the platform is predictable and auditable. Each device dynamically requests its configuration using the serial number templated into the configuration request at boot, ensuring repeatable, traceable, and secure provisioning every time.

With Talos Linux, CrossnoKaye guarantees safe, reliable upgrades. They can push updates, receive immediate feedback, and roll back quickly if needed. The YAML required has gotten smaller and smaller over the years, to the point where they don’t even keep YAML around anymore, instead using Talos’s Go packages.

Operational efficiency has skyrocketed. What once required TeamViewer, manual installs, and on-site coordination now runs with fully automated delivery, from firmware to Kubernetes, and the team can now ship devices directly from the manufacturer to a customer site without ever touching them.

And they’re not done. CrossnoKaye is already looking to Talos’s TPM support to enable disk encryption across the fleet and see potential for multi-node clusters as part of their future plans. For now, they have a platform that’s not just stable but built for long-term scale. Raymond Douglas comments, “I couldn’t imagine pivoting to a different OS product right now.”

“It used to take us hours to install k3OS, make sure everything was running properly. Now, we’ve automated the entire process and we don’t have to touch anything anymore. It’s largely only possible because of Talos’s API first approach and pure repeatability.”

Raymond Douglas, Senior Infrastructure Engineer, CrossnoKaye

 

Thanks for reading!

Sidero Labs, the creator of Talos Linux and Omni, focuses on bringing simplicity and security to Kubernetes on bare metal, data center, edge, and hybrid cloud.

Try OmniBook a demo
  • Omni
  • Talos Linux
  • Support and services
  • Omni data center
  • Omni edge
  • Talos Docs
  • Omni Docs
  • Learning resources
  • News & Insight
  • About us
  • Partners
  • Contact
  • FAQ

Address:

5662 Calle Real #471
Goleta CA 93117

Get in touch:

e: info@SideroLabs.com
t: (888) 488-2567

Sidero Footer
  • GitHub
  • LinkedIn
  • X
  • BlueSky
  • YouTube
© 2026 Sidero Labs, Inc - All Rights ReservedPrivacy PolicyTerms & Conditions