Route drift
The link is up. The traffic is leaving through the wrong source or gateway.
Edge-first network operations
Observe Ethernet, Wi-Fi, and cellular paths. Prove the connection you intend to use. Run guarded diagnostics and recovery through an assigned edge—even after the browser disappears.
Account and DDNS hostname now. Hardware coordinated separately.
The gap below the dashboard
The link is up. The traffic is leaving through the wrong source or gateway.
The address changed, but ordinary monitoring cannot tell whether inbound access is possible.
The remembered network still exists; the router simply stopped using it.
IKE, NAT-T, DNS, or a required port fails before the tunnel has a chance.
Smart Hands at the edge
CloudControl turns a supported edge router into a careful pair of remote hands—not a blind command pipe.
Interfaces, source addresses, gateways, route evidence, and edge-observed public IP.
Run a specific test from the place where the connection is supposed to work.
Apply capability-gated operations with explicit confirmation and an audit trail.
Restore known-good connectivity and move through viable underlay candidates.
Multi-connectivity
CloudControl can observe and recover across configured Ethernet, Wi-Fi, USB, and cellular underlays, then prove the overlay you depend on.
Route ready
Proven
Standby
Available
Optional connection layer
Recovery ladder
The exact path remains profile- and capability-aware. CloudControl works from known-good evidence rather than promising a universal sequence.
Restore edge-proven configuration
Re-establish DHCP and route fallthrough
Promote a viable Ethernet, USB, or cellular path
Rejoin a remembered Wi-Fi network
Refresh networking and radios
Use a supervised restart when warranted
Field diagnostics
Measure what the active path can actually deliver from the remote site.
See where loss and latency enter the route instead of guessing from an offline dot.
Test the exact port, protocol, resolver, and direction an overlay depends on.
Separate underlay performance from WireGuard or IPsec tunnel performance.
Check whether the network can carry an IPsec negotiation before changing configuration.
Use nonce-based evidence to show that the intended connection works both ways.
Guarded operations
Inspect interfaces, storage, power, thermals, cellular modems, USB devices, clients, and policies. Capability-gated controls make the hardware boundary visible before you act.
Remote operation
Automation with a reason
Prove the overlay after an accepted public-IP change.
Collect diagnostics after repeated failure, not a single dropped packet.
Notify operators before and after supervised work.
Stage a signed agent upgrade with rollback available.
Trust architecture
Bound devices communicate with their assigned edge—not the public sales site. Commands have durable custody, duplicate-safe IDs, capability checks, and auditable results.
Request with authenticated intent
Admission · audit · durable custody
MQTT QoS 1 + HTTPS fallback
Unique credentials · capability-gated execution
Lucent Drift DDNS
Your account can reserve a managed name.lucentdrift.online immediately. When hardware reports a usable public address, CloudControl updates and independently verifies DNS.
Stable naming is not NAT traversal. CGNAT still requires the assigned edge or a proven overlay path.
Hostname lifecycle
Held for your account; no fake address while hardware is in transit.
The assigned edge accepts the active path’s public address evidence.
A deduplicated update reaches Lucent Drift without another device command.
CloudControl resolves the name independently and reports convergence.
Start today
Create your account, reserve your hostname, and describe the first sites without waiting for a call. Completed profiles target same-business-day control-plane preparation; hardware is coordinated separately.
Create your CloudControl account ↗Sign in, name the organization, and claim DDNS.
We review the completed profile and prepare the dedicated runtime.
Sales confirms a compatible supported device and shipping.
Bind the device to its assigned edge, prove paths, and establish the baseline.
Guided pilot
Every pilot is scoped to the sites, connectivity, hardware, and recovery outcome that matter. You can build the account and technical profile before a commercial conversation.
Questions worth asking
No. It observes and recovers across configured path candidates; it does not market Ethernet, Wi-Fi, and cellular as a bonded zero-loss connection.
The stable DDNS name still updates, but inbound reachability needs the assigned edge or a proven WireGuard, IPsec, OpenVPN, or custom path.
The pilot targets supported OpenWrt and GL.iNet profiles. Hardware-dependent functions appear only when the device advertises them.
Yes. Account, owner workspace, technical profile, and initial managed hostname are available immediately.
The control service, assigned edge, and bound device continue their work. The browser is not in the device communication path.
Ready when the site is not
Create the account. Claim the hostname. Build the pilot profile today.
Create account ↗