close

DEV Community

david profile picture

david

Cloud Infrastructure Engineer · Azure Terraform blueprints for ISO 27001 & NIS2 environments · woitzik.dev

Location Cologne, Germany Joined Joined on  Personal website https://woitzik.dev github website

Work

System Engineer · Cloud Infrastructure Solutions

SLO Burn-Rate Alerting with Prometheus: Beyond Threshold Alerts

SLO Burn-Rate Alerting with Prometheus: Beyond Threshold Alerts

Comments
5 min read
I Hardened Pod securityContext and Broke 9 Containers in Production

I Hardened Pod securityContext and Broke 9 Containers in Production

Comments
6 min read
Hardening Unattended Raspberry Pi Edge Nodes: Watchdog, fail2ban, nftables, and the Mistakes That Take Down DNS

Hardening Unattended Raspberry Pi Edge Nodes: Watchdog, fail2ban, nftables, and the Mistakes That Take Down DNS

Comments
9 min read
IPv6 NAT66 Behind a FritzBox: The RouterOS 7 Bug That Broke WiFi Clients

IPv6 NAT66 Behind a FritzBox: The RouterOS 7 Bug That Broke WiFi Clients

Comments
6 min read
My Firewall Had 77 Rules. Terraform Knew About 22 of Them.

My Firewall Had 77 Rules. Terraform Knew About 22 of Them.

Comments
5 min read
Kyverno: Supply Chain Security as Admission Control on Kubernetes

Kyverno: Supply Chain Security as Admission Control on Kubernetes

Comments
5 min read
I Ran Gitleaks Against My Own Repo and Found 12 Real Secrets

I Ran Gitleaks Against My Own Repo and Found 12 Real Secrets

Comments
6 min read
ArgoCD Gotchas: Cache Staleness and the SharedResourceWarning Nobody Explains

ArgoCD Gotchas: Cache Staleness and the SharedResourceWarning Nobody Explains

Comments
5 min read
How a 1 GiB Memory Limit Took Down My Entire k3s Cluster

How a 1 GiB Memory Limit Took Down My Entire k3s Cluster

Image 1
Comments
6 min read
External Secrets Operator + HashiCorp Vault: GitOps Secret Lifecycle in Kubernetes

External Secrets Operator + HashiCorp Vault: GitOps Secret Lifecycle in Kubernetes

Image 1
Comments
6 min read
Full Observability on k3s: kube-prometheus-stack + Loki + Grafana OIDC

Full Observability on k3s: kube-prometheus-stack + Loki + Grafana OIDC

Comments
6 min read
HA DNS for Homelab: Unbound + AdGuard Home + Keepalived on Raspberry Pi

HA DNS for Homelab: Unbound + AdGuard Home + Keepalived on Raspberry Pi

Comments
5 min read
k3s Backup Without the Complexity: Velero + Garage S3 on Longhorn

k3s Backup Without the Complexity: Velero + Garage S3 on Longhorn

Comments
5 min read
Enterprise Homelab: K3s, Authelia & Longhorn on Proxmox with Terraform

Enterprise Homelab: K3s, Authelia & Longhorn on Proxmox with Terraform

Comments
6 min read
Self-Hosted Tailscale Control Plane: Headscale on k3s with Authelia OIDC

Self-Hosted Tailscale Control Plane: Headscale on k3s with Authelia OIDC

Comments
4 min read
Bare-Metal LoadBalancer on K3s: MetalLB + Traefik with ArgoCD

Bare-Metal LoadBalancer on K3s: MetalLB + Traefik with ArgoCD

Comments
4 min read
GitOps on K3s: Managing a Complete Homelab with ArgoCD

GitOps on K3s: Managing a Complete Homelab with ArgoCD

Comments
4 min read
Deploying Gemma 4 26B on Proxmox: IaC Setup with Terraform, Ansible & AMD iGPU

Deploying Gemma 4 26B on Proxmox: IaC Setup with Terraform, Ansible & AMD iGPU

Comments
4 min read
Automating MikroTik Bridge VLAN Filtering & Proxmox Trunks with Terraform

Automating MikroTik Bridge VLAN Filtering & Proxmox Trunks with Terraform

Comments
4 min read
Automating MikroTik WireGuard VPN with Role-Based Access via Terraform

Automating MikroTik WireGuard VPN with Role-Based Access via Terraform

Comments
3 min read
Implementing a Zero-Trust MikroTik Firewall with Terraform

Implementing a Zero-Trust MikroTik Firewall with Terraform

Comments
3 min read
Hardening Azure Acmebot for ISO 27001 & NIS2 Compliance

Hardening Azure Acmebot for ISO 27001 & NIS2 Compliance

Comments
4 min read
Zero-Trust RAG: Defeating the Shared Private Link Deadlock in Azure Terraform

Zero-Trust RAG: Defeating the Shared Private Link Deadlock in Azure Terraform

Comments
5 min read
NIS2 Article 21 in Azure: Implementing Network Security Controls with Terraform

NIS2 Article 21 in Azure: Implementing Network Security Controls with Terraform

Comments
5 min read
Wildcard TLS Certificates on K3s with cert-manager and Cloudflare DNS

Wildcard TLS Certificates on K3s with cert-manager and Cloudflare DNS

Comments
4 min read
Architecting an Enterprise-Grade Homelab: My Ansible Master Playbook

Architecting an Enterprise-Grade Homelab: My Ansible Master Playbook

Comments
3 min read
Surviving Azure Policies: Zero-Trust Hub & Spoke with Terraform

Surviving Azure Policies: Zero-Trust Hub & Spoke with Terraform

Comments
4 min read
Breaking the Loop: Solving Circular Dependencies in Azure Firewall Routing

Breaking the Loop: Solving Circular Dependencies in Azure Firewall Routing

Comments
4 min read
loading...