Skip to content
View patrickbloem-it's full-sized avatar
  • Joined Dec 28, 2025

Block or report patrickbloem-it

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
patrickbloem-it/README.md

Hi there, I'm Patrick ๐Ÿ‘‹

Senior Infrastructure Engineer (Public Sector) | Open Source Advocate

I specialize in designing resilient, high-availability infrastructure for the public sector. My focus is on robust Linux environments, virtualization with Proxmox VE, and secure storage solutions using ZFS. I believe in the power of Open Source to build transparent and secure government IT systems.


๐Ÿ› ๏ธ Tech Stack & Focus

  • Virtualization: Proxmox VE, Docker, KVM
  • Storage: ZFS (Replication, Snapshots, Encryption), Ceph
  • OS: Debian / Ubuntu LTS (Hardened)
  • Automation: Ansible, Bash Scripting, Cloud-Init
  • Security: BSI IT-Grundschutz compliance, Network Segmentation, Fail2Ban

๐Ÿ”ญ Current Projects & Interests

I maintain a collection of tools and scripts to simplify the life of sysadmins in restricted environments.

  • ๐Ÿ” hardened-vps-bootstrap
    • Automated setup script to secure fresh Debian/Ubuntu instances according to security best practices.
  • ๐Ÿ“ฆ proxmox-zfs-snapshot-manager
    • Lightweight tool to manage and rotate ZFS snapshots on Proxmox hosts for disaster recovery.
  • ๐Ÿ›ก๏ธ secure-docker-stack-template
    • Template for deploying secure, isolated web services using Docker Compose.
  • ๐ŸŒ Netbird-self-hosted-stack
    • *Reference implementation for a compliant, self-hosted overlay network infrastructure featuring CrowdSec integration and strict service isolation.

๐Ÿ“œ My Philosophy

"Complexity is the enemy of security."

In my daily work in the public sector, I strive to replace opaque legacy systems with transparent, auditable open-source solutions. My goal is to build infrastructure that remains stable and secure, even under critical conditions.


๐Ÿ“ซ Connect with me

Popular repositories Loading

  1. patrickbloem-it patrickbloem-it Public

  2. hardened-vps-bootstrap- hardened-vps-bootstrap- Public

    Small collection of scripts to bootstrap and harden fresh Debian/Ubuntu servers.

  3. proxmox-zfs-snapshot-manager proxmox-zfs-snapshot-manager Public

    Shell

  4. secure-docker-stack-template secure-docker-stack-template Public

    This repository provides a standardized, compliant boilerplate for deploying web services using Docker Compose. It focuses on infrastructure hardening, network segregation, and automated certificatโ€ฆ

    Shell

  5. Netbird-self-hosted-stack Netbird-self-hosted-stack Public

    Shell