Diego Rueda Galán

Infrastructure Engineer

Featured Projects

NixOS Infrastructure as Code

NixOS Infrastructure as Code

Implemented comprehensive Infrastructure as Code repository using NixOS for declarative, version-controlled system management across multiple systems (desktop, laptop, servers, WSL). Created replicable multi-system infrastructure ensuring consistent configurations, security hardening, and automated deployments. Established DRY principles eliminating manual system configuration and enabling instant system rebuilds with full reproducibility.

NixOSInfrastructure as CodeSystem Configuration
VPS WireGuard VPN Server with Home Network Integration

VPS WireGuard VPN Server with Home Network Integration

Designed and deployed production-grade WireGuard VPN server on a $7/month VPS providing secure remote access to home network resources and serving as self-hosted reverse proxy alternative to Cloudflare Tunnels. Integrated public VPS with private pfSense router via site-to-site WireGuard tunnel enabling bidirectional routing between cloud and on-premises infrastructure. Implemented defense-in-depth security through Fail2Ban, Cloudflare API integration, and Nginx hardening ensuring robust network security architecture.

WireGuardVPNNetwork SecurityVPS

Self-Hosted Homelab Infrastructure

Designed and deployed containerized homelab infrastructure with security-first network isolation architecture using Docker Compose. Implemented separate Docker networks for different service categories ensuring defense-in-depth security and network segmentation. Created comprehensive reverse proxy setup with Nginx, automated SSL certificate management, and integrated pfSense firewall with TrueNAS storage for robust, replicable infrastructure.

pfSenseTrueNASNetwork ArchitectureSecurity
Personal Scripts Repository

Personal Scripts Repository

Developed infrastructure automation toolkit with 68+ shell scripts for cross-platform system management, backup infrastructure, maintenance automation, and remote system administration. Created replicable automation solutions for dotfiles management, browser data backups, phone backups, and system maintenance tasks across Linux and macOS. Established systematic approach to infrastructure automation enabling consistent, reliable system management with minimal manual intervention.

BashAutomationSystem Administration

My Infrastructure

HOME
Services
192.168.8.0
172.26.5.0
192.168.20.0
192.168.9.0
TrueNAS
Loading...
Loading...

Internet

generic_cloud_logo 1

Loading...
Loading...
Loading...
Loading...
Loading...

Remote Access 💻

- Seamless access to Home Network

VPN network is paired with Home network as an extension.

Loading...
Loading...

Guest Device 💻

Loading...

Guest Device 📱

Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...

Experience

DB Schenker

IT Engineer

Jan 2022 - PresentWarsaw, Poland · Remote

SQL Developer

Sep 2019 - Jan 2022Warsaw, Poland
IMS Health

Technical Support

Jan 2018 - Jul 2019Warsaw, Poland · Hybrid
Diebold Nixdorf

Technical Support

Dec 2016 - Jan 2018Warsaw, Poland