Networking • Cybersecurity • Homelab Infrastructure

Building real networking and infrastructure skills through hands-on lab work.

I am an aspiring network and cybersecurity professional focused on learning by building, breaking, troubleshooting, and documenting real systems. My portfolio highlights lab projects involving VLAN design, DNS architecture, reverse proxying, observability, and layered access control.

Instead of listing tools without context, I show the problem, the approach, the technical decisions, and what changed after the fix.

Featured Projects

These selected projects turn lab work into employer-readable case studies. Each one centers on a real problem, what I changed, and what I learned.

View all projects →

Network Segmentation

VLAN Segmentation and Access Control Design

Designed a segmented homelab network with management, services, clients, IoT, and lab VLANs, then applied narrow Layer 3 access rules instead of broad trust between networks.

VLANs ACLs Router Policy Troubleshooting
DNS and Service Design

Split DNS with AdGuard and Bootstrap Resilience

Reworked DNS responsibilities so infrastructure devices were not fully dependent on the same internal DNS stack they needed in order to recover or boot correctly.

AdGuard Home DNS Resilience Dependency Mapping
Networking Fundamentals

End-to-End Packet Flow Analysis Across a Segmented Network.

Traced how traffic moves from a client VLAN to an internal service through DNS resolution, switching, routing, VLAN tagging, and ACL evaluation to build a stronger troubleshooting model.

Packet Flow VLAN Behavior ACL Placement DNS Dependancy Troubleshooting Flow
Web and Edge Access

Cloudflare, Reverse Proxy, and Public Service Exposure

Published selected services behind Cloudflare and reverse proxying while separating public access from internal management paths and validating the correct upstream targets.

Cloudflare Nginx Proxy Manager TLS Public Exposure
Observability

Metrics Node Hardening and Visibility Improvements

Audited a monitoring node with multiple exposed services, improved visibility and management access patterns, and extended diagnostics through a Raspberry Pi jump box and read-only AI-assisted analysis.

Grafana VictoriaMetrics Homepage Host Hardening
Remote Access

Raspberry Pi Management Jump Box

Built a dedicated management node to provide redundant remote access, internal troubleshooting capability, and a safer path for administration when primary tooling is unavailable.

Raspberry Pi Tailscale SSH Diagnostics

Contact

Use these links to connect with me and view more of my work as the portfolio expands.