We design, build, and operate enterprise-grade environments across Kubernetes, Linux, virtualisation, networking, and infrastructure automation — with scalability, reliability, security, and observability at every layer.
What is Vaultec?
Vaultec is a platform, automation, and infrastructure company focused on making operations secure, flexible, and responsive.
Built from hands-on engineering practice, it develops repeatable operational knowledge across infrastructure, orchestration, virtualisation, storage, and automation — standardising complex environments through practical architecture, disciplined security, and automation-first delivery using tools such as Ansible and Terraform.
Mastering modern infrastructure —
through discipline, automation,
and continuous learning.
By integrating Ansible, Terraform, GitLab, AWX, NetBox, Zabbix, Grafana, and Prometheus, Vaultec develops repeatable, resilient operational systems aligned with modern infrastructure best practice.
Automation-First
Every layer —
designed, operated,
and automated.
From bare-metal hosts to Kubernetes workloads, every tier of Vaultec is provisioned, configured, and maintained through code — repeatable, documented, and version-controlled.
Core Technologies
A field index of the platforms, runtimes, and operational tooling that compose the Vaultec stack — grouped by domain.
Kubernetes
Three-node RKE2 cluster with Cilium networking and ingress-nginx. Workload deployment, platform services, and replicated persistent storage via Longhorn.
VMware
Virtual machine infrastructure, vCenter management, platform services, and system lifecycle management.
Linux
Rocky Linux, Ubuntu, and RHEL — server administration, configuration, hardening, and day-to-day platform operations.
Oracle
Database platform learning for administration, structure, backup validation, and operational confidence.
NetApp
ONTAP storage — NFS, iSCSI, snapshots, SnapMirror, and S3 object storage, automated through the ONTAP REST API and Ansible.
Cisco UCS
Compute platform focused on enterprise hardware, service profiles, and infrastructure operations.
Cisco Switching
Datacenter switching for network design, VLAN segmentation, enterprise fabric, and connectivity management.
OPNsense
Automated certificate issuance and renewal (ACME, DNS-01) for Vaultec services, alongside a pfSense perimeter firewall.
AWX
Ansible automation controller — job templates, workflow orchestration, credentials, and execution environments running on Kubernetes.
GitLab
Self-hosted source control, CI/CD pipelines, container registry, and structured project management across all Vaultec automation.
Terraform
Infrastructure as code for repeatable provisioning, environment consistency, and controlled platform changes.
n8n
Workflow automation for connecting services, reducing manual steps, and experimenting with operational automations.
NetBox
Infrastructure source of truth — IPAM, CMDB, device inventory, and documentation for the entire Vaultec platform.
Monitoring
Zabbix, Grafana, and Prometheus — metrics collection, dashboards, alerting, and full-stack observability across the platform.
Active Directory
Windows domain services, GPO management, certificate services, DNS, and enterprise identity for the Vaultec platform.
Schematic.
A vertical reading of the platform — from hardware to container runtime — with Ansible orchestrating across every tier and NetBox documenting the result.
Selected Projects
-
P-01
GitLab Platform Build
Designed and built a full enterprise-grade GitLab namespace — 100+ projects across Vaultec and Production hierarchies covering Platform, Automation, Operations, and Source-of-Truth domains.
-
P-02
AWX Execution Environment CI/CD
Custom Ansible Execution Environment built and published via GitLab CI/CD. Docker-in-Docker build with automated tagging, verification, and push to the Vaultec container registry.
-
P-03
Ansible Automation Library
18+ playbook repositories covering VMware, Kubernetes, Linux, NetApp, networking, patching, monitoring, and infrastructure provisioning — structured and committed to GitLab.
-
P-04
RKE2 Kubernetes Cluster
Highly available three-node RKE2 cluster with Cilium, ingress-nginx behind HAProxy and keepalived, Longhorn storage, AWX, Keycloak single sign-on, and a full Prometheus and Grafana monitoring stack.
-
P-05
NetBox ↔ Snipe-IT Sync
Infrastructure source-of-truth integration linking NetBox CMDB with Snipe-IT asset management. Investigating sync methods and Cisco EoX lifecycle data via the DevNet API.
-
P-06
OpenClaw AI Gateway
Self-hosted AI orchestration platform running on the Vaultec network. Manages subordinate AI sessions, Discord integration, voice, file transfer, and multi-model routing.
-
P-07
Hermes
Dedicated AI service node on the Vaultec network. Acts as a secondary AI gateway, providing model routing, API proxying, and session management alongside OpenClaw.
-
P-08
Claude Managed Agents
Structured agent workflows built on the Anthropic API using Claude as the reasoning layer. Covers infrastructure automation, documentation generation, and operational decision support across the Vaultec platform.
Hardware.
Compute Platform
Three-host VMware ESXi cluster under vCenter, with live vMotion on a dedicated network — the compute backbone for virtual machines, Kubernetes nodes, and platform services.
Storage Platform
NVMe datastores on every host, Longhorn replicated volumes for Kubernetes, and an ONTAP environment for storage automation and testing.
Network Fabric
10 GbE core switching with VLAN segmentation for management, vMotion, storage, and service networks — jumbo frames on the vMotion and storage paths.
Perimeter & Routing
pfSense firewall for perimeter security and inter-VLAN routing, with OPNsense automating TLS certificates across every service.
Infrastructure, in code.
Vaultec uses Terraform to define and manage infrastructure in a structured, repeatable way — cleaner provisioning workflows, improved consistency, and a stronger IaC practice across VMware, NetBox, OPNsense, and Cloudflare.
- Defining infrastructure in code
- Improving provisioning consistency
- Supporting repeatable environment builds
- Learning infrastructure as code through practice
Operations, standardised.
The Vaultec automation-first approach uses Ansible to standardise and automate core tasks across the platform. AWX provides a centralised control plane for job execution, credential management, and workflow orchestration across every infrastructure domain.
- Standardising setup, preventing configuration drift
- Automating changes across VMware, Linux, K8s, storage
- Repeatable workflows via AWX templates & workflows
- Custom Execution Environments built via GitLab CI/CD
Always Building
A platform that
is never finished —
and keeps growing.
Vaultec is continuously designed, documented, and expanded — a hands-on platform for turning enterprise infrastructure knowledge into repeatable, operational practice.
Make contact.
Vaultec is an evolving infrastructure and automation platform. For collaboration, deployment, or project discussion — the following channels are open.
Channels
- info→ info@vaultec.ch
- sales→ sales@vaultec.ch
Focus
Platform engineering, infrastructure learning, automation, and operations.
Status
Actively building and documenting the Vaultec platform.