Skip to content
View mdziegiel's full-sized avatar

Block or report mdziegiel

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
mdziegiel/README.md

Hi, I'm Michael Dziegiel 👋

Senior Network & Systems Administrator | Cloud, Security & Automation
Merrimack Valley, MA • 20+ Years in IT • Homelab + Hybrid Infrastructure Engineer

Available for Consulting Open to Work

👨‍💻 About Me

  • 20+ years managing and securing hybrid infrastructure with a focus on Cloud, Security & Automation
  • Expertise in Network Management, Virtualization, and Endpoint Engineering
  • Building scalable, secure, repeatable solutions across enterprise + homelab
  • Automating infrastructure and workflows with PowerShell, Microsoft Graph, GitHub Actions, and n8n
  • Building intelligent automation using AI Agents, MCP Servers, RAG, and Hermes
  • Always experimenting with Zero Trust, monitoring, and self-hosted platforms
  • Running hybrid self-hosted and cloud infrastructure across on-premises and cloud platforms
  • Available for remote, consulting, freelance, and contract IT opportunities

🧰 Tech & Tools I Use

Infrastructure: Proxmox · QNAP · Hyper-V · UniFi · pfSense · Proxmox Backup Server · Veeam · Backblaze B2
OS: Windows Server · Ubuntu Server · Debian · Linux
Containers: Docker · Compose · Portainer
Cloud: Azure · Microsoft 365 · Intune · Autopilot · Entra ID · Exchange Online · Teams · SharePoint
Automation: PowerShell · Graph API · GitHub/GitLab CI · n8n · AI Agents · MCP · RAG · Grafana · Prometheus
Networking: VLAN Design · WireGuard/Tailscale · Nginx Reverse Proxy/WAF · Cloudflare Tunnels · Fing
Self-Hosted: AdGuard · Home Assistant · RustDesk · Uptime Kuma · Plex · LinkStack · Seafile · UrBackup · WikiDocs · Bitwarden
Security: Wazuh · CrowdSec · LimaCharlie · Cloudflare Zero Trust · UniFi IDS/IPS · pfSense Firewall
Enterprise: ConnectWise · ScreenConnect · Auvik · Sophos · Proofpoint · Microsoft Defender · Cisco Umbrella · CrowdStrike · Mimecast · ManageEngine · KnowBe4 · Meraki


📂 Projects

🏠 Homelab & Infrastructure

  • NOC Dashboard — Self-hosted Network Operations Center for homelab infrastructure: Proxmox VMs, Docker containers, UPS status, and backup coverage FastAPI React Docker
  • SIEM + CrowdSec Detection — Wazuh SIEM custom detection rules and CrowdSec bouncer configs across a multi-host homelab, with OpenCanary honeypot integration Wazuh CrowdSec Security
  • Prometheus + Grafana Alerting (n8n) — Self-hosted homelab observability — Prometheus + Grafana + node_exporter + cAdvisor across multiple Docker hosts, with alerting via n8n polling the Prometheus API into Telegram (no Alertmanager required) Prometheus Grafana n8n
  • Uptime Kuma Monitoring — Uptime monitoring and alerting stack for all homelab services Docker Cloudflare Tunnel
  • AdGuard + Unbound Stack — Redundant network-wide DNS filtering with recursive resolution and centralized sync DNS Docker

🤖 AI, Automation & Integrations

  • Vault RAG Pipeline — Self-hosted RAG pipeline for an AI homelab agent — semantic search over an Obsidian vault with automated secrets/IP redaction before embedding, Qdrant + Ollama (nomic-embed-text) + gitleaks Qdrant Ollama RAG Python
  • Multi-Server MCP Gateway — Hardened, read-only MCP gateway exposing Portainer, GitHub, Filesystem, Proxmox, PBS, and Vault RAG visibility to an AI agent — loopback-only, SSH-tunneled, zero client-side credentials MCP Docker Security Python
  • n8n Self-Healing Infrastructure — Automated VM/container recovery, backup-failure alerting, and SIEM event routing to Telegram n8n Proxmox CrowdSec
  • Job Watch — Job-search aggregator with AI match scoring and per-listing alerting Python RapidAPI Telegram
  • Obsidian Vault Setup — Personal knowledge base built on Obsidian, structured as long-term memory for a self-hosted AI agent — RAG-indexed, auto-logged, secrets-redacted before embedding Obsidian Knowledge Base

🛠️ Tools & Remote Access

  • System Tools Suite — Sysadmin and security toolkit: network diagnostics, DevOps helpers, digital forensics Docker
  • RustDesk Self-Hosted — Fully self-hosted remote desktop replacing TeamViewer/AnyDesk Docker Linode
  • Exam Prep — AI-powered IT certification prep with spaced repetition and timed exams (MD-102, AZ-104, CompTIA) Python AI

📊 GitHub Stats


🌍 Connect with Me


Always building, improving, and securing IT environments — one project at a time.

Pinned Loading

  1. noc-dashboard noc-dashboard Public

    Self-hosted Network Operations Center dashboard for homelab infrastructure monitoring. Real-time visibility into Proxmox VMs, Docker containers, UPS status, backup coverage, security posture, stora…

    Python 2

  2. vault-rag-pipeline vault-rag-pipeline Public

    Self-hosted RAG pipeline for an AI homelab agent — semantic search over an Obsidian vault with automated secrets/IP redaction before embedding. Qdrant + Ollama (nomic-embed-text) + gitleaks.

    Python 2

  3. n8n-self-healing-infra n8n-self-healing-infra Public

    n8n automation workflows for self-healing infrastructure — Proxmox/Docker VM recovery, backup failure alerting, and SIEM/CrowdSec event routing to Telegram

    1

  4. siem-crowdsec-detection siem-crowdsec-detection Public

    Wazuh SIEM custom detection rules and CrowdSec bouncer configs across a multi-host homelab, with OpenCanary honeypot integration

    1

  5. mrdtech-mcp-gateway mrdtech-mcp-gateway Public

    Hardened, read-only MCP gateway exposing Portainer, GitHub, Filesystem, Proxmox, PBS, and Vault RAG visibility to an AI agent — loopback-only, SSH-tunneled, zero client-side credentials.

    Python 1

  6. prometheus-n8n-alerting prometheus-n8n-alerting Public

    Self-hosted homelab observability: Prometheus + Grafana + node_exporter + cAdvisor across multiple Docker hosts, with alerting via n8n polling the Prometheus API into Telegram — no Alertmanager req…

    1