Runbooks

Step-by-step operational procedures for common infrastructure tasks. Written to be followed under pressure, not studied at leisure. Each runbook includes prerequisites, numbered steps, verification, and rollback procedures.

Runbook
6 min read

Proxmox SSH Hardening

Step-by-step SSH hardening procedure for Proxmox LXC containers and VMs: disable root login, configure key-based auth, deploy fail2ban, and lock down the firewall.

proxmoxsshsecurityhardeningfail2banrunbook
Runbook
5 min read

K3s Cluster Maintenance

Step-by-step operational procedure for K3s cluster maintenance: pre-checks, backup, node drain, binary upgrade, health verification, and rollback.

k3skubernetesmaintenanceupgraderunbook
Runbook
5 min read

Add a New Service Behind Authentik

Step-by-step procedure for adding a new web service to the Authentik identity provider with Traefik routing and Cloudflare Tunnel exposure.

authentiktraefikidentityssorunbook