Open Source Specialist

As a passionate open source enthusiast, I have been helping companies migrate their IT landscapes to open and transparent solutions for over two decades. What began as a degree in electrical engineering and computer science is now both my profession and my calling:
I plan, implement, and operate Linux server infrastructures, design and administer networks, virtualize environments, and manage applications and databases deployed with Kubernetes, Docker, or KVM.

My work method

  • I build systems in a way that I would like to take over myself.
  • I document extensively because I know how much time poor handovers cost.
  • I automate recurring tasks in order to free up time for thinking, which is more valuable than clicking through pages.

Infrastructure

Consulting and setup of IT networks

  • Network design (OPNsense, flexiWan, OpenWrt, WireGuard) and security concepts.
  • Server and system hardening
  • Identity & access management
  • Storage management
  • Monitoring and logging

Virtualization

Consulting and setup of virtualization.

  • KVM (Proxmox, Virsh)
  • Containerization (Docker/Kubernetes)
  • Open Stack
  • Automation:
    • Python, PHP, GIT
    • Ansible
    • Bash

Applications

Consulting, solutions, and their implementation.

  • Databases & Migration
  • Email & Collaboration
  • Project Management & DevOps
  • Monitoring & Logging
  • Documentation & Wikis
  • Web Servers & Reverse Proxies

What I offer

Trainings

Over the past 20 years, I have been offering trainings on open source, networks, and databases – all based on real-world experience and the latest technology. My portfolio includes:

  • Linux administration: from the basics to professional server operation, including shell scripting, permissions management, and troubleshooting.
  • Network security with OPNsense: planning and configuration of firewalls, VPN solutions, and security concepts for companies.
  • Container and cloud technologies: Workshops on Docker, Kubernetes, and OpenStack – from container orchestration and clustering to the setup of private cloud infrastructures.
  • Automation with Ansible: Introductory and advanced training on infrastructure as code, playbook development, and automated deployments.
  • Mail & collaboration solutions: Setting up and operating email systems with Postfix and Dovecot, spam and virus protection with Rspamd/ClamAV, and collaboration platforms with SOGo and mailcow.
  • Databases & migration: Administration and migration of Oracle systems, as well as design and operation of PostgreSQL and MariaDB databases.

Books

In addition to my work as an IT architect and network specialist, I have published several specialized books on SQL Server, XML, Oracle, Java, and PHP. This background knowledge in databases and programming now feeds into my role as an administrator, network, and Kubernetes specialist: it helps me to understand complex systems in their entirety and to seamlessly integrate solutions at all levels—from databases to container orchestration.

My first books in the year 2000 dealt with XML and databases. They were published by Rheinwerk (formerly Galileo Computing), Addison Wesley, and mitp.
In addition, there are my two- and six-page quick references. The two-page ones were popular in IT training for many years.

Through our in-house specialist publishing brand Comelio Medien, I plan to publish specialist books on Kubernetes and PostgreSQL in the future. As I am simultaneously expanding my certifications in Kubernetes, cloud security, and databases, balancing writing projects and further training is a challenge—nevertheless, my goal remains to pass on my expertise in book form.

Projects

I assist companies with the planning, implementation, and hardening of complex IT infrastructures—from the initial concept to stable, continuous operation.

  • Analysis of existing system and network architectures
  • Migration from VMware to KVM/Proxmox or OpenStack
  • A/Gatekeeper
  • Setting up CI/CD pipelines and DevOps automation with Ansible, Bash, Python
  • Database migrations (Oracle → PostgreSQL, MySQL, MariaDB)
  • Integration of security mechanisms (SELinux, TLS, OpenSCAP, VPN hardening)
  • Documentation and knowledge transfer in Markdown / Bookstack

Competence Call

Flexible expert support without lengthy project contracts – ideal for short-term or specific issues.

  • Troubleshooting for Linux, network, or storage problems
  • Remote analysis of Kubernetes deployments or Docker stacks
  • Support for CI/CD errors or Ansible playbook adjustments
  • Security checks, log analyses, and system hardening
  • Code or infrastructure audits (e.g., for PostgreSQL, Kubernetes, Ceph)
  • Ad hoc knowledge transfer or mini-training via screen sharing

Trainings

Pass on technical know-how that can be applied immediately in everyday work – with fully virtualized Linux lab environments.

  • Kubernetes: Cluster setup, Helm, Kustomize, GitOps, security
  • Docker & containerization: Best practices, troubleshooting, CI/CD integration
  • Ansible & infrastructure as code: Automation, roles, templates
  • Hands-on training via browser-based Guacamole system – no local setup required
  • Open source platforms: OpenStack, Proxmox, Ceph storage, WireGuard
  • Security & compliance: SELinux, AppArmor, OpenSCAP, TLS management
  • Databases: PostgreSQL administration, high availability, migration

References

After working on projects and seminars in India and the USA (2010–2015), I now mainly travel within the European Economic Area – particularly in the Netherlands, Belgium, France, England, and the DACH region. I have a very good command of English in a business and scientific context and use it as my primary project language. This means I am happy to support projects and training courses in an international environment.

In recent years, I have primarily supported companies in modernizing their IT infrastructure: from planning and setting up scalable Linux server and network architectures to implementing virtualization and container platforms (KVM, Proxmox, Kubernetes, Docker) and introducing open server applications and databases.

Migration from VMware to KVM and introduction of Kubernetes (Munich)

Complete migration from VMware to KVM (OLVM) with network cabling, VLAN configuration, and CPU pinning; subsequent dockerization of central services (Jenkins, PostgreSQL, SVN) and setup of a Kubernetes cluster for their orchestration.

Public sector

Setup of a self-hosted Kubernetes cluster with training environment (Dülmen)

Operation of our own data center with fiber optic connection, OPNsense firewall, and KVM virtualization; planning and implementation of a Kubernetes cluster and setup of a browser-based training lab with Guacamole for interactive training.

IT service providers

Implementation of a highly available private cloud with OpenStack and Ceph (Frankfurt)

Design and setup of a private cloud infrastructure based on OpenStack, KVM, and Ceph storage; integration of a Kubernetes cluster for the provision of microservices and automated deployments; setup of monitoring with Prometheus and Grafana.

Logistics/industry

Migration from Oracle to PostgreSQL/MariaDB with database refactoring (Zurich)

Database migration from Oracle to PostgreSQL/MariaDB, including data cleansing and performance optimization; containerization of applications and deployment on Kubernetes to increase scalability and reliability; subsequent training for the DevOps team. Industry: Banking/Finance.

Banking/finance