Terraform Provider for pfSense
Configure pfSense firewall/router devices with Terraform. Written in Go with the Terraform Plugin Framework.


I am a Platform Engineer with deep expertise in site reliability and DevSecOps principles. My background in Full Stack Web Development provides an engineering-centric perspective when architecting platforms.
My areas of focus include:
Within the web development space, I have experience with:
Have a question for me? Looking for my resume? Shoot me an email. Looking forward to hearing from you!
Configure pfSense firewall/router devices with Terraform. Written in Go with the Terraform Plugin Framework.
Run Ansible playbooks using Terraform, without the local-exec provisioner. Supports execution environments and jq queries against playbook artifacts, among other features. Written in Go, with acceptance tests and published coverage reports. GitHub Actions is used for CI/CD.
Provision and operate a Kubernetes cluster with the convenience of a managed offering. Targets Fedora CoreOS, with SELinux support and Butane submodules for machine configuration. Highly available control plane via HAProxy and Keepalived. Supports air-gapped installs, upgrades, and certificate rotation. Built on my Ansible provider and used for my homelab clusters.
Fedora CoreOS VM provisioned on Proxmox with Terraform and configured with Ansible. All workloads run as Podman Quadlets. Zigbee2MQTT bridges devices from an SLZB-MR2 network-attached coordinator to Home Assistant over Mosquitto. Caddy runs rootless with systemd socket activation and terminates HTTPS with certificates from lego.
Measured whether two USB fans actually helped. Uses an OpenTelemetry Collector, Prometheus, and Grafana, with dashboards generated from Jsonnet. Scripts mark changes and compare the windows on either side.
This very website. Rendered with Hugo and styled with Tailwind CSS. Pages are precompressed with Brotli and served by Caddy from a reproducible, signed container image with an SBOM. Deployed to GCP Cloud Run with Terraform. CI/CD with GitHub Actions includes Lighthouse audits and security scans.