About


I'm a network engineer. Most of my work is on the unglamorous middle of the stack: getting traffic between clouds and regions reliably, and building the automation that stops me from having to touch forty devices by hand.

Concretely, that means BGP design and policy across a multi-cloud backbone, running a multi-vendor estate (Cisco, H3C, Arista, FortiGate, Aruba, Meraki) without letting the per-vendor quirks turn into per-site snowflakes, and keeping a source of truth that the devices actually agree with. Monitoring and observability sit on top of that.

I write here because the useful version of this knowledge mostly lives in other people's scattered notes, and because writing something down is the fastest way to find out whether I actually understand it.

What I write about

  • Backbone and routing design — BGP, path selection, failure modes
  • Network automation and source-of-truth driven operations
  • Operating a multi-vendor, multi-region estate without losing your mind
  • Observability: what is actually worth alerting on

Anything here is my own opinion and my own lab or sanitized production experience. No employer, customer, or vendor is speaking through this site, and no internal topology, addressing, or config makes it onto these pages.

The best way to reach me is the RSS feed — or find me on the links in the header.