Infrastructure
-
Understanding Ansible Semaphore by Building a Hardening Audit Pipeline with Lynis, and Prometheus
Building an automated Linux hardening audit pipeline using Ansible Semaphore, Lynis, and Prometheus
-
An Agentic Workflow for YARA-L: Automatic Rule Generation with Gemini CLI and Chronicle
This is a small framework I put together to generate YARA-L detection rules with an LLM in a self-correcting feedback loop. It aims at automating Detection Engineering for Google SecOps (Chronicle)
-
Architecture overview: Designing a Self-Managing Linux Fleet
I needed an All-Terrain Linux fleet that could take care of itself: configure, monitor, patch, and protect itself across any environment. This post covers the architecture I designed to make that happen.
-
Agentic Sysadmin. No Playbooks, No YAML
This post shows the minimal proof of concept SSH tool I built for Opencode AI, and how it could be used to "talk to" remote machines.
-
Firewall Inception: My pfSense Lab with Proxmox, Cloudflared, and Tailscale
A simple pfSense ACL project turned into a homelab adventure: Proxmox networking, Cloudflared proxying, and Tailscale inception for remote access.