A privately operated, production-disciplined private cloud and homelab — built from the ground up with dual segregated network zones, enterprise-grade tooling, and the same documentation standards I apply in production environments. Not a hobby project. A second job that doesn't page me at 3am.
Two physically separated network zones with explicit inter-zone policy. No implicit trust. Every service placed deliberately. A Tailscale mesh overlay provides secure management access across zones without punching holes in the firewall.
"Boring, observable, reversible."
Stability over novelty. Every architectural decision earns its place by solving a real problem. Prefer native tooling, explicit configuration, and documented deployments over clever or opaque solutions. If something breaks, it should fail safely — not creatively.
Stable, proven tooling over bleeding-edge novelty. No added complexity without clear operational benefit. The goal is still running five years from now with minimal intervention.
Monitoring agents across both zones feed centralized dashboards. Alerting tuned by severity and context. Nothing fails silently — and alert fatigue is treated as seriously as the alerts themselves.
Changes are snapshotted before execution. A nightly backup chain writes to offsite object storage. Recovery procedures are documented, scheduled for testing, and written for a stressed operator — not a rested one.
Coverage across network, compute, storage, operations, and AI — with deliberate choices at every layer and a preference for tools that will still be maintained in five years.
Every component has a wiki page. Every procedure has an SOP. The same documentation discipline I've spent a career applying to production environments — applied here, because documentation saves lives and I learned that before I ever worked in IT.
The environment runs a self-hosted wiki documented to a three-tier SSOT standard. Tier 3 owns facts. Tier 2 owns relationships. Tier 1 owns narrative. A single infrastructure change should require updating exactly one tier. If it touches more than that, something structural needs fixing — not patching.