VAULTEC / OPERATIONS MANUAL EDITION I — MMXXVI

Enterprise Infrastructure Initiative

Practical infrastructure, disciplined by engineering — and answered in code.

Enterprise infrastructure, designed and run as code. Every layer is repeatable, observable, and version-controlled.

0+ Core technologies A
0+ GitLab projects B
0+ Automation repos C
0+ Virtual machines D
CONTINUE
§ 01 Overview

What is Vaultec?

Vaultec is a platform, automation, and infrastructure company focused on making operations secure, flexible, and responsive.

Built from hands-on engineering practice, it develops repeatable operational knowledge across infrastructure, orchestration, virtualisation, storage, and automation — standardising complex environments through practical architecture, disciplined security, and automation-first delivery using tools such as Ansible and Terraform.

§ 02 Mission Statement

Mastering modern infrastructure —
through discipline, automation,
and continuous learning.

i.

We design, build, and operate enterprise-grade environments across Kubernetes, Linux, virtualisation, networking, and infrastructure automation — with scalability, reliability, security, and observability at every layer.

ii.

By integrating Ansible, Terraform, GitLab, AWX, NetBox, Zabbix, Grafana, and Prometheus, Vaultec develops repeatable, resilient operational systems aligned with modern infrastructure best practice.

PLATE I

Automation-First

Every layer —
designed, operated,
and automated.

From bare-metal hosts to Kubernetes workloads, every tier of Vaultec is provisioned, configured, and maintained through code — repeatable, documented, and version-controlled.

§ 03 Platform Catalog

Core Technologies

A field index of the platforms, runtimes, and operational tooling that compose the Vaultec stack — grouped by domain.

A Platform
FIG. 01Kubernetes

Kubernetes

Three-node RKE2 cluster with Cilium networking and ingress-nginx. Workload deployment, platform services, and replicated persistent storage via Longhorn.

FIG. 02VMware

VMware

Virtual machine infrastructure, vCenter management, platform services, and system lifecycle management.

FIG. 03Linux

Linux

Rocky Linux, Ubuntu, and RHEL — server administration, configuration, hardening, and day-to-day platform operations.

FIG. 04Oracle

Oracle

Database platform learning for administration, structure, backup validation, and operational confidence.

B Infrastructure
FIG. 05NetApp

NetApp

ONTAP storage — NFS, iSCSI, snapshots, SnapMirror, and S3 object storage, automated through the ONTAP REST API and Ansible.

FIG. 06Cisco UCS

Cisco UCS

Compute platform focused on enterprise hardware, service profiles, and infrastructure operations.

FIG. 07Cisco Switching

Cisco Switching

Datacenter switching for network design, VLAN segmentation, enterprise fabric, and connectivity management.

FIG. 08OPNsense

OPNsense

Automated certificate issuance and renewal (ACME, DNS-01) for Vaultec services, alongside a pfSense perimeter firewall.

C Automation
FIG. 09AWX

AWX

Ansible automation controller — job templates, workflow orchestration, credentials, and execution environments running on Kubernetes.

FIG. 10GitLab

GitLab

Self-hosted source control, CI/CD pipelines, container registry, and structured project management across all Vaultec automation.

FIG. 11Terraform

Terraform

Infrastructure as code for repeatable provisioning, environment consistency, and controlled platform changes.

FIG. 12n8n

n8n

Workflow automation for connecting services, reducing manual steps, and experimenting with operational automations.

D Operations
FIG. 13NetBox

NetBox

Infrastructure source of truth — IPAM, CMDB, device inventory, and documentation for the entire Vaultec platform.

FIG. 14Grafana

Monitoring

Zabbix, Grafana, and Prometheus — metrics collection, dashboards, alerting, and full-stack observability across the platform.

FIG. 15Active Directory

Active Directory

Windows domain services, GPO management, certificate services, DNS, and enterprise identity for the Vaultec platform.

§ 04 Schematic — Technology Flow

Schematic.

A vertical reading of the platform — from hardware to container runtime — with Ansible orchestrating across every tier and NetBox documenting the result.

Layer 00 Ansible Automation layer — orchestrates hardware, virtualisation, storage, Linux, and Kubernetes.
Layer 01 GitLab GitLab CI/CD — builds execution environments, runs linting, delivers to the container registry.
Layer 02 — Hardware
ESXi hosts ×3
10 GbE core
Layer 03 — Virtualisation
VMware
Layer 04 — Virtual Machines
Rocky Linux
Ubuntu
Red Hat Enterprise Linux
Layer 05 — Container Platform
KubernetesRKE2
Longhorn
Layer ∞ NetBox Source of truth — documents and tracks every layer of the platform.
§ 05 Projects

Selected Projects

  1. P-01

    GitLab Platform Build

    Designed and built a full enterprise-grade GitLab namespace — 100+ projects across Vaultec and Production hierarchies covering Platform, Automation, Operations, and Source-of-Truth domains.

  2. P-02

    AWX Execution Environment CI/CD

    Custom Ansible Execution Environment built and published via GitLab CI/CD. Docker-in-Docker build with automated tagging, verification, and push to the Vaultec container registry.

  3. P-03

    Ansible Automation Library

    18+ playbook repositories covering VMware, Kubernetes, Linux, NetApp, networking, patching, monitoring, and infrastructure provisioning — structured and committed to GitLab.

  4. P-04

    RKE2 Kubernetes Cluster

    Highly available three-node RKE2 cluster with Cilium, ingress-nginx behind HAProxy and keepalived, Longhorn storage, AWX, Keycloak single sign-on, and a full Prometheus and Grafana monitoring stack.

  5. P-05

    NetBox ↔ Snipe-IT Sync

    Infrastructure source-of-truth integration linking NetBox CMDB with Snipe-IT asset management. Investigating sync methods and Cisco EoX lifecycle data via the DevNet API.

  6. P-06

    OpenClaw AI Gateway

    Self-hosted AI orchestration platform running on the Vaultec network. Manages subordinate AI sessions, Discord integration, voice, file transfer, and multi-model routing.

  7. P-07

    Hermes

    Dedicated AI service node on the Vaultec network. Acts as a secondary AI gateway, providing model routing, API proxying, and session management alongside OpenClaw.

  8. P-08

    Claude Managed Agents

    Structured agent workflows built on the Anthropic API using Claude as the reasoning layer. Covers infrastructure automation, documentation generation, and operational decision support across the Vaultec platform.

§ 06 Hardware

Hardware.

H-01

Compute Platform

Three-host VMware ESXi cluster under vCenter, with live vMotion on a dedicated network — the compute backbone for virtual machines, Kubernetes nodes, and platform services.

H-02

Storage Platform

NVMe datastores on every host, Longhorn replicated volumes for Kubernetes, and an ONTAP environment for storage automation and testing.

H-03

Network Fabric

10 GbE core switching with VLAN segmentation for management, vMotion, storage, and service networks — jumbo frames on the vMotion and storage paths.

H-04

Perimeter & Routing

pfSense firewall for perimeter security and inter-VLAN routing, with OPNsense automating TLS certificates across every service.

§ 07 Automation Practice
Terraform FIG. T

Infrastructure, in code.

Vaultec uses Terraform to define and manage infrastructure in a structured, repeatable way — cleaner provisioning workflows, improved consistency, and a stronger IaC practice across VMware, NetBox, OPNsense, and Cloudflare.

  • Defining infrastructure in code
  • Improving provisioning consistency
  • Supporting repeatable environment builds
  • Learning infrastructure as code through practice
Ansible FIG. A

Operations, standardised.

The Vaultec automation-first approach uses Ansible to standardise and automate core tasks across the platform. AWX provides a centralised control plane for job execution, credential management, and workflow orchestration across every infrastructure domain.

  • Standardising setup, preventing configuration drift
  • Automating changes across VMware, Linux, K8s, storage
  • Repeatable workflows via AWX templates & workflows
  • Custom Execution Environments built via GitLab CI/CD
PLATE II

Always Building

A platform that
is never finished —
and keeps growing.

Vaultec is continuously designed, documented, and expanded — a hands-on platform for turning enterprise infrastructure knowledge into repeatable, operational practice.

§ 08 Contact

Make contact.

Vaultec is an evolving infrastructure and automation platform. For collaboration, deployment, or project discussion — the following channels are open.

FIG. 17

Focus

Platform engineering, infrastructure learning, automation, and operations.

FIG. 18

Status

Actively building and documenting the Vaultec platform.