Deployment Guides
The infrastructure patterns I build and run, documented as guides with real configuration excerpts — not as downloadable products. Each guide shows the architecture, a deployment example, and a production checklist. If you want any of this in your own environment: consulting and workshops, €1,000/day.
- Production k3s Cluster with Rancher, Longhorn and MetalLB — A complete Kubernetes lab-to-production pattern: k3s in Docker with the embedded etcd datastore, Rancher for management, MetalLB for Layer-2 LoadBalancer IPs, Longhorn replicated storage, and Traefik ingress.
- Observability Stack — Prometheus, Loki, Grafana — Metrics, logs, and dashboards in one compose file: Prometheus scraping node-exporter and cAdvisor, Loki with Alloy for log aggregation, and a pre-provisioned Grafana.
- Self-Hosted AI — Ollama, Open WebUI and LiteLLM — Run LLMs on your own GPU hardware: Ollama as the serving engine, Open WebUI as the ChatGPT-style frontend, and LiteLLM as an OpenAI-compatible router in front of everything — so local models and external APIs stay interchangeable.
- Dify in Production — LLM App Platform — Dify — visual LLM app builder with RAG, agents, and prompt workflows — backed by PostgreSQL, Redis, Weaviate, an SSRF proxy and a code sandbox.
- n8n Workflow Automation in Production — n8n in queue mode with Redis, PostgreSQL persistence, and proper process supervision — the boring, reliable setup that survives restarts and workload spikes.
- PostgreSQL + Redis as a Production Foundation — The two services almost every application needs, tuned instead of defaulted: production-tuned PostgreSQL (shared buffers, WAL compression), Redis with AOF + RDB persistence, and a scheduled backup job with retention.
- MinIO as an S3-Compatible Backup Target — Self-hosted S3-compatible object storage for backups: MinIO behind an Nginx proxy, with an rclone-based backup agent and versioned buckets.
- SeaweedFS — Distributed S3 Backup at Scale — When one node is not enough: SeaweedFS provides distributed, replicated S3 storage with a master/filer/volume architecture — ideal as a large-scale backup target on commodity hardware.
- TLS Reverse Proxy with Let's Encrypt and CrowdSec — The front door pattern: Nginx terminating TLS with automated Let's Encrypt renewal via Certbot, hardened by CrowdSec WAF/IPS with the nginx bouncer, kept fresh by Watchtower.
Deutsche Version
Die Infrastruktur-Muster, die ich baue und betreibe — dokumentiert als Guides mit echten Konfigurationsauszügen, nicht als herunterladbare Produkte. Jeder Guide zeigt Architektur, ein Deployment-Beispiel und eine Produktions-Checkliste. Wenn Sie das in Ihrer eigenen Umgebung wollen: , 1.000 €/Tag.