Networking & Infrastructure
Built and administer a centrally managed dual-stack network using
a dedicated gateway, multi-gigabit managed switching, Power over
Ethernet, wired wireless-access-point backhaul, and VLAN
segmentation.
Configured managed switch ports, tagged uplinks, access ports,
DHCP reservations, IPv4 and IPv6 addressing, and segmented IoT
connectivity.
Implemented controlled inter-VLAN communication so isolated devices
can reach required infrastructure services without providing
unrestricted access to the primary network.
Worked with Ethernet cabling, wireless deployment, network-path
testing, jumbo-frame testing, and end-to-end MTU verification.
DNS, IPv6 & Network Services
Deployed a Raspberry Pi 5 running Pi-hole as a centralized DNS
filtering server for both IPv4 and IPv6 clients.
Configured IPv6 prefix delegation, Router Advertisements, SLAAC,
RDNSS, ICMPv6, Neighbor Discovery, and stable IPv6 server
addressing.
Configured firewall and access-control rules allowing DNS over
TCP and UDP port 53 while preserving network segmentation.
Used Pi-hole query logs and client-side DNS testing to verify
name resolution across the network and confirm that clients were
using the intended DNS services.
Systems, Virtualization & Administration
Built a Hyper-V lab using Windows 11, Windows Server, and Ubuntu
virtual machines for systems administration, networking,
troubleshooting, and recovery practice.
Installed and configured Active Directory Domain Services and DNS,
joined Windows clients to the domain, created administrative and
standard-user accounts, and worked with authentication,
permissions, and domain connectivity.
Administer Windows and Linux systems using PowerShell, Bash, SSH,
services, logs, permissions, storage tools, networking utilities,
Task Scheduler, and remote-management technologies.
Use the Raspberry Pi 5 as an ARM Linux home server for DNS,
shared storage, backups, monitoring, SSH administration, and
additional network services.
Security, Automation & Troubleshooting
Practiced least privilege, SSH public-key authentication,
Microsoft Defender, Windows Firewall, UFW, nftables, MFA,
malware-response procedures, recovery planning, and
hardware-backed authentication.
Created PowerShell automation and scheduled tasks for system
administration, logging, monitoring, configuration collection,
and routine maintenance.
Troubleshoot by testing each layer independently using tools such
as ping, dig, nslookup, Test-NetConnection, tcpdump, system logs,
service status, firewall inspection, and packet captures.
One troubleshooting project isolated an IPv6 DNS failure where
ping succeeded but DNS did not. Packet capture confirmed queries
reached the server, port testing identified the blocked service,
and missing IPv6 firewall rules were corrected and verified.