IT services for stable infrastructure
Secure infrastructure, built for quiet and predictable operations.
I plan, install and operate Linux servers, Proxmox environments, VPN connections, hosting stacks and monitoring as a reliable foundation for daily operations.
Positioning
Clear architecture. Controlled access. Maintainable by design.
Servers, VPNs, backups and monitoring should not become visible only when something breaks. The goal is an environment that is documented, secure to access and reliable to operate.
Hardening, updates, access control, SSL, firewall and clean roles.
Monitoring, health checks, backups and restore strategy for critical systems.
Proxmox, VLAN, VPN, reverse proxy and hosting built in a traceable way.
Services
Technical building blocks for stable digital systems.
VPS, Rootserver & Hardening
Debian/Ubuntu administration, systemd services, cronjobs, Bash scripting, updates, security and performance optimization.
- Initial setup & migration
- Firewall, SSH, SSL & access protection
- Troubleshooting and optimization
Virtualization & clusters
Installation, ZFS, Storage, LXC, Windows/Linux VMs, backup concepts, restore and troubleshooting.
WireGuard, Headscale, VLAN
Site-to-Site, Remote Access, Subnet Routing, Exit Nodes, OPNsense/OpenWRT and firewall rules.
Nginx, CloudPanel, Cloudflare
Reverse Proxy, DNS, SSL, PHP, CDN, backups and maintainable hosting environments.
Uptime, Health Checks, Alerts
Uptime Kuma, Grafana, InfluxDB, notifications, reports and automatic restarts.
Technical scope
Separate what must be built, secured and operated.
Infrastructure projects become safer when setup, access, backups and monitoring are treated as connected layers.
Linux & hosting baseline
For VPS/root servers, CloudPanel, Nginx, PHP, SSL, DNS and reverse proxy setups that should be stable and documented.
- Hardening, updates and access control
- Web stack, SSL and DNS checks
- Migration and troubleshooting support
Proxmox & virtualization
For hosts, storage, ZFS, LXC, VMs, backup concepts, restore tests and performance issues.
- Host and storage architecture
- Backup, restore and migration planning
- VM/LXC structure and documentation
VPN, network & monitoring
For WireGuard, Headscale, VLAN, routing, firewall rules, uptime checks and alerting.
- Remote access and site-to-site VPN
- Firewall, NAT and subnet routing
- Uptime, health checks and notifications
Technical start check
Infrastructure work starts safer when the current state is explicit.
The first review separates urgent risks from useful improvements before changing servers, VPNs or virtualization layers.
Access & ownership
Which accounts, SSH keys, panels, DNS zones and responsibilities already exist?
Risk points
Where are backups, updates, exposed ports, certificates, firewall rules or monitoring unclear?
Target state
What should be migrated, hardened, documented, automated or kept running without interruption?
Operations plan
Which checks, alerts, restore expectations and maintenance rhythm should stay after the project?
Architecture
From a single server to a managed platform.
Every component is planned to work together: networking, virtualization, hosting, backups, monitoring and security.
Connected support
Need a website, SEO or customer-facing frontend on top?
Infrastructure becomes more valuable when the public website, landing page, contact flow or SEO foundation is clean as well. The Web Studio track covers that layer.
Care models
Packages for setup, migration and ongoing operations.
The right scope depends on risk, access, workloads and restore requirements — these models create a clear first estimate path.
Server / VPN setup
Clean initial installation, hardening, documentation and handover.
- Linux, hosting or VPN baseline
- Security and access setup
- Handover notes
Server care & monitoring
Updates, checks, backups, alerts, small adjustments and ongoing stabilization.
- Patch and security rhythm
- Uptime/health monitoring
- Backup and restore review
Managed care & troubleshooting
VMs, LXC, ZFS, storage, restore, performance and cluster topics.
- Host and storage review
- Backup and migration planning
- Performance troubleshooting
Use cases
For systems that are too important to run undocumented.
Servers, backups and access under control
Clean hardening, monitoring, backup routines and understandable documentation.
Professionalize existing setups
Reverse proxy, VPN, Cloudflare, container workloads and secure remote access.
Move systems without chaos
Plan target architecture, migrate step by step and verify restore paths before relying on them.
Operational proof
Example scenarios for infrastructure work that has to stay maintainable.
Neutral examples until real infrastructure diagrams, screenshots or before/after metrics are added.
Virtualization made understandable
Hosts, storage, VMs, LXC, backup routines and restore expectations are documented before growth.
- Storage and backup review
- VM/LXC structure
- Monitoring and restore notes
VPN, routing and remote work under control
WireGuard or Headscale, firewall rules, subnet routing and access paths become easier to maintain.
- Site-to-site or remote access
- Firewall and routing cleanup
- Access documentation
Process
Understand first, then secure things properly.
- 01Audit
Review existing systems, access, risks, backups and priorities.
- 02Plan
Define target architecture, security, networking, migration and care.
- 03Build
Implement servers, VPN, hosting, monitoring and backups cleanly.
- 04Operate
Monitor, update, document and improve long term.
Safety checklist
Technical work should leave fewer unknowns than before.
The checklist focuses on practical operational safety: access, backups, monitoring, updates and recovery expectations.
Access paths
SSH, panels, DNS, VPN users, firewall rules and responsibility boundaries are made explicit.
Backup reality
Backup existence, restore expectations and risky single points are identified before relying on them.
Monitoring signals
Uptime, service health, storage, certificates or alerts are aligned with what matters operationally.
Change notes
Important commands, changes, assumptions and next risks stay documented after implementation.
Operational handover
The result should be understandable when something breaks.
Infrastructure work is only useful when access, backups, risks and next actions are clear after implementation.
Documented baseline
Servers, services, access paths and important decisions are written down so the setup can be maintained later.
- System and access notes
- Service and port overview
- Known risks and assumptions
Restore-aware operations
Backups, monitoring and update rhythms are planned around what actually has to be restored or kept online.
- Backup and restore expectations
- Health checks and alerts
- Update and maintenance rhythm
Next-step roadmap
After the first stabilization, the remaining work is separated into urgent fixes, useful improvements and optional growth.
- Priority list
- Security improvements
- Scaling or automation ideas
Decision guide
Infrastructure work should reduce risk, not add mystery.
These questions clarify when a review, setup, migration or care model is the right next step.
When should a server be reviewed?
When access, backups, updates, SSL, DNS, firewall rules or monitoring are unclear — especially before migrations or growth.
What matters most for Proxmox?
Storage layout, backups, restore expectations, VM/LXC structure, network separation and documentation are more important than feature overload.
Is VPN work only about remote access?
No. WireGuard, Headscale, routing, firewall rules and ACLs should create controlled access paths, not just another open door.
What belongs in ongoing care?
Updates, health checks, backup reviews, alerts, small fixes and documentation so systems remain understandable when something breaks.
Start options
Start with the right technical context.
Choose the scenario that fits best. The email template asks for the details needed to judge risk, effort and next steps.
System review
Need stable servers, VPN, Proxmox or managed hosting?
Send a short note about what is currently running and what your goal is. From there, a sensible technical roadmap can be defined.
Request infrastructure review