Posts
-
SSO Across the Stack: Building a Unified Lab Identity Layer
Single sign-on isn't just a convenience feature. It's a security control. Building a unified identity layer across a self-hosted lab stack is harder than it looks — and what the vendors don't tell you about "free" SSO costs more in time than it saves in money. -
The Commute Calculator: What a Hybrid Offer Actually Costs
Hybrid role offers look different once you account for the time cost of commuting and gross up the numbers to pre-tax. I asked Claude to build a calculator. Here's what it showed us. -
Home SOC: Security Research with TheHive and Cortex
A Security Operations Center doesn't require a security operations budget. TheHive and Cortex give you professional-grade incident management and threat intelligence tooling — if you're willing to run the infrastructure. -
The Self-Hosted AI Stack: Privacy, Power, and Local Models
Cloud AI is convenient. Local AI is yours. The Mosburn Lab runs both, on the same workstation, managed by the same Ansible role — with no telemetry, no rate limits, and no training data contribution. -
The Self-Hosted Dev Stack: Forgejo, Redmine, and Docmost
Three services, one identity provider, zero subscriptions. Here's why I moved code hosting, project tracking, and documentation in-house, and what running them on Ansible-managed Docker actually looks like. -
Infrastructure as Code, Test-First: Ansible TDD for the Home Lab
Writing Ansible roles without tests is writing Ansible roles you'll regret. Test-driven development for infrastructure isn't overhead — it's the discipline that makes the rest of the lab trustworthy. -
Identity is Infrastructure: Why Keycloak Comes First
Every service you add to your lab creates another password to manage, another login page to remember, another place where access control can drift. The fix is to treat identity as infrastructure — and deploy it first. -
From Chaos to Control: The Case for a Business-Grade Home Lab
Most home labs are archaeological sites — layers of half-remembered decisions, one SSH session away from being unrecoverable. This is the story of building something better.
subscribe via RSS