Skip to content
Intervention logIași, România

When production goes down, you find out why.

Infrastructure consulting, migrations and incident response. I work on the systems that are not allowed to fail: Proxmox clusters, production databases, Laravel and Next.js applications. Independent, based in Iași, working with clients in Romania and the UK.

I don’t deliver workarounds. I deliver the cause, the fix and the documentation.

In production since
2019
Servers under management
100+
VMs migrated without loss
40+
Incident response
same day
Services
6 areas

What I do, in the words of your problem

Infrastructure & virtualisation

Clusters that survive a node failing, not just a good day.

  • Design and administration of Proxmox VE, OpenNebula, KVM
  • Storage, high availability, backups with tested retention
  • Audit of existing infrastructure, delivered as a written report
  • Node renames and reconfiguration without stopping the machines

Migrations & cutover

I move production systems without losing data or weekends.

  • On-prem to cloud, cPanel to Docker, VM to VM
  • Incremental sync, then a final delta verified by checksum
  • IP and MAC preserved where clients cannot be reconfigured
  • Rollback window kept open for days after cutover

Security & incident response

The server is compromised now. First job is to stop data leaving.

  • Triage, containment, cleanup, identifying the real vector
  • Persistence removed from cron, systemd, profiles and shells
  • Secret rotation and a written post-mortem
  • Preventive hardening: firewall, SSH, secrets out of the webroot

Local AI & automation

Models running on your hardware. Data never leaves the network.

  • Self-hosted LLMs on your own GPU, with Ollama or LM Studio
  • Search and question answering over internal documentation (RAG)
  • Cron agents that check systems and report into Slack or Discord
  • Operational automation with Salt, Ansible, Python, Bash

Development & deployment

I write the application and stay accountable for it in production.

  • Laravel, Next.js, React, NestJS, Django, Drupal, WordPress
  • CI/CD on Jenkins or GitLab, with repeatable deploys
  • Containerising legacy applications stuck on shared hosting
  • Taking over projects abandoned by the previous team

Monitoring & email

Alerts that mean something, and email that reaches the inbox.

  • Zabbix, Grafana, Prometheus, with thresholds calibrated on reality
  • Cutting false alerts until alerts become credible again
  • SPF, DKIM and DMARC configured and verified at the recipient
  • Deliverability diagnosis: why messages are landing in spam
Log
9 entries

Real interventions, with the cause written at the end

Published anonymised, with no client names, addresses or system names. Each entry says what was broken, what I did, and what was left behind.

How I work
in order

Four steps, in this order, every time

  1. Step 01

    You tell me what’s broken

    Thirty minutes, free, no questionnaire. If the problem isn’t mine to solve, I say so in that same conversation.

  2. Step 02

    You give me read-only access

    First I inventory what exists: services, backups, versions, single points of failure. I touch nothing in production until I know what I’m touching.

  3. Step 03

    I work with a rollback plan

    Fixed price for fixed scope, agreed before we start. Every intervention has a way back, tested before it is needed.

  4. Step 04

    You keep the documentation

    What changed, why, and how to fix it at three in the morning without me. Consultant lock-in is a defect, not a business model.

Pricing
VAT not applicable

The prices are here, not in an emailed quote

Audit
1,500
RON, from

You learn what you have, what’s broken and what fails next.

  • Inventory of servers, services and versions
  • Backups verified by performing a real restore
  • Single points of failure and security exposure
  • Written report with priorities and effort estimates
  • Delivered in 3–5 working days
Request an audit
ProjectMost requested
4,000
RON, from

Defined scope, fixed price, a delivery date.

  • On-prem to cloud migrations, or between hypervisors
  • Containerisation and CI/CD for existing applications
  • Monitoring and alerting implementation
  • Rollback plan documented before we start
  • No billing above estimate unless the scope changes
Request a project
Retainer
2,000
RON/month, from

Someone looks at your infrastructure every month.

  • Blocks of 10, 20 or 35 hours per month
  • Unused hours roll over to the following month
  • Patching, verified backups, monitoring
  • Monthly activity report with hours itemised
  • Contract and invoicing as a registered sole trader
Request a retainer
Incident in progress
350 RON/hour

Compromised server, production down, data lost. I respond the same day and I don’t ask for a signed contract before we stop the bleeding. No minimum hours.

Call me now

Standard rate 150 RON/hour for work outside the packages. On-site travel billed separately. All prices exclude VAT — I am not VAT registered. Invoicing in EUR or GBP available for clients outside Romania.

Technology
in production

What I bring when I arrive

Virtualisation
Proxmox VEOpenNebulaKVM / libvirtLXCProxmox Backup Server
Containers
DockerComposeKubernetesHelm
Cloud
Oracle CloudAWSCloudflareDigitalOcean
Linux
DebianUbuntuAlmaLinuxRockysystemdnetplan
Automation
SaltAnsibleBashPythonJenkinsGitLab CI
Databases
PostgreSQLPostGISMySQLMariaDBRedis
Applications
LaravelNext.jsReactNestJSDjangoDrupalWordPress
Networking
CaddyNginxOPNsenseWireGuardCARPSplit-horizon DNS
Messaging & auth
RabbitMQCASEntra IDLDAPSAML
Monitoring
ZabbixGrafanaPrometheusLoki
Email
PostfixMailcowSPF / DKIM / DMARC
Self-hosted AI
OllamaLM StudioClaude APIRAGAutonomous agents
Questions
7 answers

What everyone asks before signing

Do you work with small companies?

Yes. Most of my clients have fewer than fifty staff and nobody dedicated to infrastructure. That is exactly where the gap between "it works" and "it worked" is widest.

Will you want production access on day one?

No. The first stage is read-only: inventory, versions, backups, logs. Write access comes once I have a map of the system and a rollback plan.

What happens if you break something?

That is why there is a restore-verified backup and a rollback plan before every intervention. I have moved dozens of production virtual machines without data loss, including databases holding decades of history.

Can you take over infrastructure someone else built?

Yes. The takeover audit exists precisely for the case where nobody remembers how the system is configured and the documentation left with the person who wrote it.

Can I run AI without sending my data to an external cloud?

Yes, and it is one of the things I have done most often over the past year. Twenty-billion-parameter models run usably on a consumer GPU, inside your network, without a single token leaving the company.

Will you sign an NDA?

Yes, as standard, before any access. The case studies on this site are published anonymised, with no client names, IP addresses or system names.

How quickly do you reply?

Same working day for ordinary enquiries. For an incident in progress, hours.

Contact
same-day reply

Tell me what’s broken

Thirty minutes, free. If the problem isn’t mine to solve, I tell you in the first conversation, and if I know the right person, I point you there.