
A private cloud and homelab architecture using Tailscale, Caddy, private DNS, browser-trusted TLS, nftables, and DOCKER-USER filtering to keep internal services reachable to trusted devices only.

A Wazuh SIEM lab used to monitor a Windows endpoint, detect vulnerabilities, investigate malware alerts, and configure automated email notifications.