A homelab for infrastructure tinkering, self-hosting, and learning by breaking things.
Bare-metal and virtual machines running on Harvester HCI, provisioned via PXE and managed with Kubernetes.
Workloads running on Kubernetes clusters with software-defined networking via KubeOVN and VPC isolation.
Tailscale mesh VPN, Nginx reverse proxy, Let's Encrypt TLS, and Fail2ban for intrusion prevention.
CalDAV/CardDAV via Radicale for calendar and contacts, plus this site — all self-hosted on a VPS.