NQRust · HyperVisor · v1.7

A complete hypervisor and HCI stack for teams that keep their own infrastructure.

NQRust-HyperVisor is a commercially licensed, hyper-converged virtualization platform. Run virtual machines, manage storage, configure networks, take backups, and watch every node — all from one dashboard, on hardware you already own.

  • KVM & libvirt-based virtualization
  • Kubernetes-native, runs in-cluster
  • Air-gapped & on-prem deployable
Built on a battle-tested HCI foundation
KVM Kubernetes KubeVirt Longhorn storage Grafana
What you get

One platform for the full virtualization lifecycle.

NQRust-HyperVisor packages compute, storage, networking, backup, and observability into a single signed distribution. It deploys from an installer ISO onto bare metal, runs as a service inside the Kubernetes cluster it manages, and exposes everything through one permissioned dashboard.

01

Hyper-converged by design

Compute, storage and networking collapse into the same cluster. No separate SAN, no separate storage admin. Add a node and you add capacity to all three at once.

02

Operated from one dashboard

A single web console manages VMs, hosts, volumes, images, networks, snapshots, backups and monitoring. No SSH-tour required to keep a cluster healthy.

03

Yours, on your hardware

Air-gap friendly. The dashboard ships inside the installer ISO, license checks fall back to a signed offline file, and the BFF layer never exposes internal APIs to the browser.

Capabilities

Everything your operators reach for, in one place.

The dashboard is the surface; under it sits a 50-route BFF that brokers every browser action to the Kubernetes & KubeVirt APIs server-side — so credentials, certificates and license checks never leave the cluster.

Virtual Machine lifecycle

Create, clone, live-migrate, snapshot, back up and templatize VMs. Hotplug CPU and memory, insert and eject CD-ROMs, soft-reboot guests, and attach to the noVNC console — directly in the browser.

  • Live migration between hosts
  • vCPU & memory hotplug
  • Browser VNC + xterm.js console
  • Generate template from running VM

Hosts

Cordon, drain and put hosts into maintenance with one click. Per-node controls for power, KSMTuned, HugePages, CPU manager and disks.

Volumes

PVC management with clone, snapshot, export-as-image and cancellable expand. Longhorn-backed with per-disk controls per host.

Images

Upload, stream and download OS images. Build templates from running VMs and share them across namespaces.

Namespaces

Multi-tenant grouping for every resource. RBAC, quotas and secrets are scoped per namespace so teams stay isolated on shared hardware.

Networks

Full software-defined networking surface — not just a VLAN picker. Configure the cluster network, expose VM networks, carve out VPCs, and front workloads with policies, load balancers and IP pools.

  • Cluster Network Configuration
  • Virtual Machine Networks (VLAN)
  • Virtual Private Cloud
  • Network Policies
  • Load Balancers
  • IP Pools

Backup & Snapshots

Schedule recurring VM backups, take VM and volume snapshots for fast rollback, and browse retention history per resource.

  • VM Schedules
  • VM Backups & Snapshots
  • Volume Snapshots
  • External backup targets

Monitoring & Logging

Embedded Grafana with the AlertManager UI beside it, plus a Fluent-based pipeline for cluster & namespace logs (Flows and Outputs).

Device passthrough

Surface PCI, SR-IOV NICs, vGPU, vGPU MIG configurations and USB controllers per host, then attach them to the right VMs.

Templates & cloud-init

VM templates and Cloud Configuration Templates make new VMs reproducible. Edit the rendered YAML inline with the embedded Monaco editor.

Secrets & SSH keys

First-class secret and SSH-key management under Advanced. All CRUD flows through the BFF so credentials never round-trip the browser.

Storage classes & add-ons

Manage storage class provisioners and tags, install cluster add-ons (nvidia-driver-toolkit, pci-devices), and tune cluster settings — all from one Advanced surface.

Support & kubeconfig

Generate and download a full support bundle in one click, plus a kubeconfig for break-glass cluster access — both gated by license state.

Operations

The console your platform team will actually keep open.

Every screen is built around the work an operator does in a shift — starting a stuck VM, draining a host before a kernel update, restoring a snapshot, finding the loud tenant. No marketing dashboards.

Browser VNC, no jump host Open a guest console straight from the VM row — xterm.js renders the screen, the BFF brokers the WebSocket.
Live migration with guards Routes block invalid state transitions server-side: you can't enter maintenance on a node already draining.
Snapshots and rollback Per-VM history with one-click restore. Backups schedule against an external target you configure once.
Escape hatch when you need it Monaco editor opens any Kubernetes resource as YAML, with the same RBAC enforced through the BFF.
db-primary-01
node-03 · 8 vCPU · 32 GiB · 240 GiB rootfs
Overview Console Snapshots Backups YAML
CPU
38%
Memory
22.4 GiB
Disk I/O
84 MB/s
Net
142 Mbps
Snapshot · pre-schema-migration 2 days ago Ready
Backup · weekly-prod last run 18:00 OK
NIC · vlan-prod-200 10.42.7.21 Up
root@db-primary-01 ~ # uptime
 14:22:08 up 37 days, 02:11, 1 user, load avg: 0.41, 0.55, 0.62
root@db-primary-01 ~ # systemctl status postgresql
postgresql.service - PostgreSQL 16
    Active: active (running) since Mon 2026-05-12 03:11:42 UTC
root@db-primary-01 ~ # _
How it deploys

Ships as an ISO. Runs inside the cluster it manages.

The dashboard, license service and control-plane binary all travel together as a signed container image baked into the installer ISO. No internet round-trips during install. No external admin plane to firewall. No browser-side credentials.

Operator
Browser
HTTPS to cluster VIP
Inside the Kubernetes cluster
Cluster ingress
/dashboard/*
NQRust dashboard
Next.js 15 · BFF · 50+ routes
Auth License Audit
Cluster API
Kubernetes + KubeVirt
Longhorn storage
PVC + snapshots
Grafana / Alerts
Proxied via BFF
License plane
Billing service
Online verify + 7-day grace
Offline .lic
RSA-SHA256 signed
Single signed artifact Dashboard image, control-plane binary and Helm chart ship together inside the installer ISO.
License at the edge Edge Middleware blocks every non-public route until the license cookie is verified server-side.
Works air-gapped If the billing service is unreachable, a signed .lic file or the local cache keeps the cluster operating.
Commercial licensing

Sold per-cluster, not per-VM.

NQRust-HyperVisor is a commercial product. We don't publish a public price list — license terms, included support hours, and offline provisions are scoped to your deployment. Talk to us to size a tier.

Standard
Single cluster

For a single production HCI cluster with online license verification and standard business-hours support.

  • Full dashboard & BFF
  • Online license checks
  • Business-hours support
  • Minor version upgrades included
Request quote
Most teams start here
Enterprise
Multi-cluster & HA

For teams running more than one cluster, with 24×7 escalation, architectural reviews and direct access to engineering.

  • Everything in Standard
  • Up to 5 production clusters
  • 24×7 escalation channel
  • Quarterly architecture review
  • Custom backup target integration
Contact sales
Air-gapped
Sovereign / regulated

For deployments behind a strict firewall or with no outbound connectivity. Signed offline license files and on-prem update mirroring.

  • Signed offline .lic files
  • Local image registry mirror
  • Hardened build with attestation
  • Dedicated CSM, named engineers
Talk to us

Pricing is sized against node count, support hours and offline requirements. We are happy to share comparable references once we understand your environment.

Get in touch

Let's scope a deployment.

Tell us where you want to run it — racks you already own, a regulated environment, a dev cluster for a proof-of-value — and we will come back within one business day with a sizing and a price.