CelAI VMS

UNCOMPROMISING ZERO TRUST SECURITY

AI-Driven. Air-Gappable. Engineered for the Field.

CelAI VMS revolutionises enterprise surveillance by eliminating corporate bloat and forced cloud dependencies. Built on a high-performance Linux Docker backend with native Wireguard integration, it delivers seamless situational awareness with an impenetrable, strictly minimised attack surface. True security, designed by security technicians.

Our History

Founded in 2009, Celcius Technical Services spent over a decade delivering uncompromising solutions across the telecommunications and electronic security sectors. Working in the trenches gave us a frontline view of the vulnerabilities inherent in traditional network deployments.

In 2025, recognising that traditional perimeter-based security was no longer sufficient against modern threats, we left the contracting game behind to focus entirely on specialised software development.

The driving force behind this evolution is our founder and lead developer, Paul "Fonsi" Fisher. With nearly 20 years of hands-on electronic security experience, Paul is the architectural brains of the operation. Embracing the unique analytical strengths, extreme attention to detail, and systemic thinking that come with being autistic, he saw right through the bloat and vulnerabilities of legacy platforms.

By pairing his rigorous field expertise with the advanced coding and problem-solving capabilities of Gemini AI, Paul engineered the ruthlessly lean, highly efficient, and impenetrable codebase of CelAI VMS.

The result is a revolutionary video management platform made by a security technician, for security technicians—designed to eliminate trust assumptions and secure critical infrastructure from the ground up.

"A person dies twice in their lifetime: once when they leave this mortal coil, and a second time when their name is no longer spoken."
— Anonymous
Driven by this philosophy. Celcius Technical Services is built to endure, to protect, and to become a foundational, household name in Australian security.

CelAI VMS Architecture

The new direction of Celcius Technical Services is focused entirely on absolute security. By integrating Wireguard directly into our core, we've built a true Zero Trust architecture from the ground up.

  • Robust Linux Backend: Containerized via Docker to deploy seamlessly on any Linux system, with a strong recommendation for Gentoo Linux to maximize bare-metal hardware performance for intensive video processing.
  • Intuitive Windows Frontend: A seamless, rich client experience providing total situational awareness without compromising security.
  • Native Wireguard Integration: True Zero Trust networking that secures video streams across any infrastructure, completely bypassing vulnerable traditional VPNs.
  • Hardened Network Interface: A minimized external profile that only allows secure SSL web traffic and Wireguard connections from the internet. External access strictly requires the use of an FQDN* to ensure secure, authenticated connections while minimizing system exposure.
CelAI VMS Interface Preview

The CelAI Advantage

A head-to-head comparison against leading legacy platforms heavily deployed in Australia, such as Milestone, Genetec, and Nx Witness.

Architecture Metric CelAI VMS Milestone, Genetec & Nx Witness
Deployment & Backend Lightweight Docker (Gentoo Linux recommended) Tied to bloated Windows Server & MS SQL (Milestone/Genetec)
Attack Surface (Ports) Strictly SSL & Wireguard ONLY (via FQDN*) Dozens of open ports required (TCP 7563, 5000, 7001)
Remote Access Security Native Wireguard (Zero Trust) Relies on 3rd-party VPNs or external cloud brokers (Nx Cloud)
Cloud Dependency 100% Air-Gapped. No cloud needed. Forced cloud telemetry (Kite) or hybrid SaaS (Security Center SaaS)
Licensing & Support 2-year support renewal. Systems remain fully operational air-gapped. Continuous online licence verification; stops working if cloud connection drops.

* FQDN (Fully Qualified Domain Name) ensures that remote access is strictly routed through an authenticated hostname rather than exposing a raw, easily scannable IP address to the internet.

Client-Side Decoding & Live View

CelAI VMS Live View Interface

Uncluttered, High-Performance Situational Awareness

Unlike legacy VMS platforms that force the server to constantly decode and transcode video for web clients, CelAI pushes live video decoding directly to the local Windows client app. This localized processing provides buttery-smooth live viewing, zero latency, and an uncluttered interface designed specifically for the operator.

Lean Server Architecture (Diagnostics)

Ruthless Hardware Efficiency

Extreme efficiency was a core design constraint right alongside Zero Trust. Because the client app handles the standard video decoding, our containerized Linux backend remains incredibly lightweight—so lightweight, in fact, that it can be fully deployed on a Raspberry Pi 5 for ultra-edge environments.

We validate this extreme efficiency by running our core platform on 15-year-old enterprise hardware (a Supermicro X8DAL-i) where it comfortably idles at just ~16% total server usage. Astonishingly, that 16% usage isn't just running the VMS. That same legacy testbed is simultaneously hosting an MMORPG server, a Matrix/Synapse communications server, four websites, and our OSL project. That is the definition of a highly optimized, bloat-free codebase.

By offloading standard tasks, expensive Nvidia GPUs are strictly reserved for on-demand decoding when triggered by advanced AI features (ANPR, Human Detection, and Forensic Search). This drastically reduces server power consumption, heat generation, and overall hardware costs.

Testbed Hardware Specifications

  • Motherboard Supermicro X8DAL-i
  • Processors 2x Intel® Xeon® E5606 @ 2.13GHz (8 Cores)
  • Memory 24GB DDR3 ECC RAM
  • Operating System Gentoo Linux (Custom Compiled)
  • Server Load ~16% (Running VMS + 5 other enterprise services)
CelAI VMS Server Diagnostics showing low usage

Commercial Schedule (Perpetual Licencing)

CelAI VMS features transparent, perpetual licencing structured for integrators and distributors. All prices are in AUD.

Settlement Tier Camera Capacity Base Hardware Target Licence Price (AUD)
Village Node 1 – 8 Channels ARM64 / RPi 5 Edge Boxes $199
Town Node 9 – 32 Channels High-spec Workstation / Server $899
City Node 32+ Channels Multi-socket Enterprise Rack $2,799
Capital Upgrade Inherited from Node N/A (Software unlock) +$1,500
Federal Capital (Lite) Village Nodes Only Lightweight Cloud VM $899
Federal Capital Unlimited Nodes High-Availability Cluster $5,499
White Label (OEM) Custom / Unlimited Full Software Rebranding Price Upon Negotiation

Note: Wholesale, integrator, and distributor pricing is available upon request.

* A 2-year support renewal applies to maintain access to critical updates, however systems remain fully operational indefinitely without cloud connectivity.

Licence Tier Breakdown & Scalability

CelAI VMS is built on a federated architecture, allowing it to scale from a single edge device to a massive, multi-national deployment without replacing your existing licences.

  • Village Node: Designed to replace traditional, insecure hardware NVRs for small business and edge deployments. Supports up to 8 cameras on compatible hardware (like the Raspberry Pi 5). Runs standalone with direct, secure external access. (Note: Does not support AI functions and cannot be upgraded to a Capital licence).
  • Town Node: Supports up to 32 cameras on capable hardware. Unlocks advanced AI functions (ANPR, Human Detection, Forensic Search). Runs standalone with direct external access, and can be upgraded to a Capital licence as your site grows.
  • City Node: Unlimited camera support (32+, limited only by the host hardware). Includes all AI functions and runs standalone with direct external access. Fully upgradeable to a Capital licence.
  • Capital Upgrade (Site Hub): Designed for multi-server deployments on a single site. This upgrades a Town or City node to act as a centralised hub. Subordinate nodes (Village, Town, City) link directly to the Capital server. All external access is securely routed through the Capital server, providing users with a single, unified interface for the entire site.
  • Federal Capital Lite (Small Business Hub): An accessible multi-site aggregator specifically for small businesses. Designed to securely link multiple standalone Village Nodes together. Perfect for retail owners with several small shops who want a single pane of glass without paying enterprise prices.
  • Federal Capital (Global Hub): The ultimate multi-site aggregator. Typically deployed on a Cloud VM or central datacenter, its sole job is to securely link multiple Capital servers across different geographic locations. Users log in once and can view their entire global enterprise infrastructure.