Kent, UK
How I present versions: “Deployed” means the version I use in my own environment. “Current upstream” is included only as useful release context; I do not claim that every service is upgraded immediately.
LayerTechnologyDeployed / usedRoleCurrent upstream context
VirtualisationProxmox VE9.2.3KVM VMs, LXC containers, storage, backups and host administration; screenshot snapshot shows 28 LXC and 10 KVM resources9.2 ISO track
EdgepfSense CE2.8.1Stateful firewall, routing, NAT, VLANs, DNS controls and traffic policy2.8.1 supported CE release
SecurityWazuh4.14.3-1Endpoint telemetry, log analysis, file-integrity monitoring, rules and dashboards4.14.5 maintenance release available
MonitoringZabbix6.0.42 LTSHost, service and network monitoring with alerting and historical trends7.4 current; 7.0 is newer LTS generation
Remote accessPangolin / NewtNewt 1.13+Secure publication and site connectivity without direct inbound exposurePangolin 1.19.3; remote desktop features require Newt 1.13+
Mesh networkingTailscaleRolling clientSubnet routing, exit-node access, device-to-device connectivity and LAN bridge1.96.5 public release track
CloudNextcloud32.0.1.2Private file sync, sharing and collaboration32.0.12 on the same supported branch; 34.0.1 latest major
MessagingMatrix SynapseDebian 13 package deploymentFederated messaging at disfree.1337.blue with coturn for callsSynapse 1.154.0 current release
ContainersDocker / PortainerMain host + ARM labApplication stacks, lifecycle management, Watchtower and experimentsPodroid lab: Docker 29.5.2, Portainer CE 2.39.3
CCTVAgent DVR / ShinobiPrivate servicesCamera recording and monitoring; access kept on LAN/private overlayPublished only where licensing and security model permit
Voice3CXProxmox VMPBX, SIP trunking and remote voice services behind pfSense policyFirewall/STUN behaviour validated rather than hidden behind web proxying
MY WORKLOADS

Services and systems I operate

Proxmox workloads

  • 28 LXC containers in the screenshot snapshot
  • 10 KVM virtual machines
  • Wazuh VM 200 and Ubuntu Docker VM 201
  • 3CX production VM 211
  • NextcloudPi 119, Agent DVR 204 and AdGuard Home 400
See my infrastructure screenshots →

Docker estate

  • Multiple Docker hosts managed through Hawser
  • AshleyMine game-hosting node with Crafty, Hawser and Portainer
  • Portainer CE administration
  • Watchtower update workflow
  • Fing Agent in host-network mode
  • Newt and application stacks

Communications

  • Matrix Synapse on Debian 13
  • coturn at turn.1337.blue
  • Nextcloud Talk TURN integration
  • 3CX PBX and WebMate SIP trunk
  • Pangolin for web applications, not SIP/RTP

Operator systems

  • CachyOS KDE is my main daily driver
  • Ryzen 7 3700X / RX 6900 XT / 64 GB
  • Dell XPS 15 9520 running CachyOS
  • Comfortable administering Debian, Ubuntu and Red Hat family systems
  • Linux audio, graphics, packaging and desktop debugging

Mobile lab

  • /e/OS 4 on OnePlus hardware
  • Magisk and OTA-safe update process
  • Termux with rooted administration tooling
  • Alpine Podroid VM on ARM64
  • Docker and Portainer experiments on Android

Operational disciplines

  • Backups before upgrades
  • Private access before public exposure
  • Logs, routes and packet flow before guesses
  • Service-specific firewall policy
  • Documented recovery commands
MY LAB IN SCREENSHOTS

Container hosts I operate

The screenshots show the Docker side of my environment across several hosts and connect the technology list to the systems I actually manage.

HomeLab

Examples shown include Immich, OnlyOffice, Newt, Portainer, Syncthing, Transmission and WireGuard-related services.

TrueNAS and utility hosts

Examples shown include Hawser, cloudflared, Collabora, draw.io, SearXNG, Tailscale and Uptime Kuma.

Application VMs

Examples shown include Home Assistant, i-spy, Navidrome, Librespeed, Yacht, Watchtower and WordPress-related containers.

Open screenshots →
PUBLIC RELEASE SOURCES

Version references