🧭✓ shipped
Fleet DNS switch-over playbook
Ansible playbook run through GitLab CI that flips primary/secondary DNS across a mixed Linux fleet (Ubuntu, CentOS, RHEL, Alma). Auto-detects Netplan vs NetworkManager, with a fallback for minimal hosts and safe exclusions for DNS servers themselves.
AnsibleGitLab CINetplannmcli
🗂️⚙ in progress
LDAP server replacement
Replacing the existing LDAP server with a freshly automated OpenLDAP build — config, data restore and web account manager — deployed end-to-end from a GitLab pipeline.
OpenLDAPAnsibleGitLab CILAM
☎️⚙ in progress
FreePBX HA cluster
Designing a highly available FreePBX/Asterisk setup with SIP trunking so voice keeps flowing even when a node doesn't.
FreePBXAsteriskSIPHA
🛡️✓ shipped
LinkGuard
Python threat-intelligence tool that discovers and classifies suspicious domains (gambling, adult, phishing) automatically.
PythonThreat intelAutomation
🚫✓ shipped
Blocklist automation
Turns regulator domain lists into DNS RPZ blocklists for BIND, so compliance updates stop being a manual chore.
BINDDNS RPZScripting
📦✓ shipped
Inventory auto-filler
Python/openpyxl tool that fills in hardware specs on a NetBox server export so the spreadsheet stops being a treasure hunt.
PythonopenpyxlNetBox
🔐✓ shipped
Vendor-access VPN
StrongSwan IPSec VPN for third-party vendors, authenticating with EAP/RADIUS against Windows NPS.
StrongSwanRADIUSNPS