Available for new engagements
Networking — Routing, Switching & Wi-Fi
Firewalling — Check Point · FortiGate · pfSense
Virtualization — ESXi · Hyper-V · Proxmox
IP Telephony — Asterisk · 3CX · Call Manager
CCTV — DVR / NVR Surveillance
Telecom Towers — Fiber & Wireless Backhaul
Lefiltech logoLefiltech

All About Network
Technology

Networking — Routing, Switching & Wi-Fi

I'm an independent network architect. I design, deploy and secure the infrastructure that keeps modern businesses connected — from the rack to the cloud.

25+
Years of experience
100+
Projects delivered
99.99%
Uptime engineered
Services

Every layer of your IT, engineered.

Seven dedicated practice areas — from the cable in the wall to the firewall at the edge and the website on top.

Cisco routers, switches & enterprise wireless

Networking — Routing, Switching & Wi-Fi

Design and deployment of enterprise LAN/WAN: Cisco routing & switching (OSPF, BGP, EIGRP, MPLS), VLAN segmentation, stacking, QoS and high-density Wi-Fi for offices, campuses and warehouses.

Cisco IOS logo
Cisco IOS

Routers and Catalyst switches — the backbone of most enterprise networks. Dynamic routing with OSPF/BGP, redundancy with HSRP/VRRP.

Cisco Meraki logo
Cisco Meraki

Cloud-managed switches and access points for multi-site networks with zero-touch provisioning.

Ubiquiti UniFi logo
Ubiquiti UniFi

Cost-effective Wi-Fi 6 access points and switches for SMB and prosumer deployments.

Aruba logo
Aruba

Enterprise Wi-Fi and switching with ClearPass policy enforcement.

Asterisk, 3CX & Cisco Call Manager

IP Telephony & Unified Communications

Full VoIP lifecycle: PBX design, SIP trunk integration, IVR, call queues, voicemail-to-email, softphone deployment and PSTN gateway configuration.

Asterisk logo
Asterisk

Open-source PBX engine — flexible dial-plans, custom IVR and SIP/PJSIP trunking for tailored telephony platforms.

3CX logo
3CX

Modern Windows/Linux PBX with web client, mobile apps, WebRTC video conferencing and easy SIP trunk onboarding.

Cisco Call Manager (CUCM) logo
Cisco Call Manager (CUCM)

Enterprise-grade unified communications — IP phones, presence, video endpoints and contact-center integration.

FreePBX logo
FreePBX

Web GUI on top of Asterisk for faster provisioning, extensions management and module-based features.

VMware, Microsoft & Proxmox hypervisors

Virtualization — ESXi & Hyper-V

Design, deployment and migration of virtual infrastructures: clustering, vMotion/Live Migration, shared storage (iSCSI, NFS, SAN), backup strategies and disaster recovery.

VMware ESXi / vSphere logo
VMware ESXi / vSphere

Industry-leading hypervisor with vCenter for centralized management, HA and DRS for resource balancing.

Microsoft Hyper-V logo
Microsoft Hyper-V

Built-in Windows Server virtualization with Failover Clustering and Storage Spaces Direct.

Proxmox VE logo
Proxmox VE

Open-source KVM + LXC platform with built-in clustering, ZFS and Ceph storage.

Veeam Backup logo
Veeam Backup

Image-level backup and replication for VMware and Hyper-V environments.

Identity, GPO, Entra ID & hybrid cloud

Active Directory & Microsoft 365 / Azure

Active Directory design (forests, domains, sites), Group Policy hardening, Entra ID (Azure AD) hybrid sync, Conditional Access, Intune device management and Microsoft 365 migrations.

Active Directory logo
Active Directory

On-premise directory services — users, groups, OUs, GPOs and Kerberos authentication.

Microsoft Entra ID logo
Microsoft Entra ID

Cloud identity with SSO, MFA, Conditional Access and SCIM provisioning for SaaS apps.

Azure logo
Azure

Cloud infrastructure — VMs, VNets, ExpressRoute, Azure Files and site-to-site VPN to on-prem.

Microsoft 365 logo
Microsoft 365

Exchange Online, SharePoint, Teams and Intune deployments with secure baselines.

Check Point, Cisco ASA, FortiGate, pfSense

Firewalling & Perimeter Security

Next-gen firewall deployment and hardening: rule-base design, IPsec / SSL VPN, IDS/IPS, web filtering, application control, HA clusters and security audits.

Check Point logo
Check Point

Enterprise NGFW with SmartConsole, Threat Prevention, Identity Awareness and clustered ClusterXL deployments.

Cisco ASA / Firepower logo
Cisco ASA / Firepower

Stateful firewalling, AnyConnect remote access VPN and FTD with Snort-based IPS.

Fortinet FortiGate logo
Fortinet FortiGate

High-performance NGFW with SD-WAN, FortiGuard threat intelligence and the Security Fabric.

pfSense / OPNsense logo
pfSense / OPNsense

Open-source firewall on FreeBSD — perfect for SMB perimeter, branch VPN concentrators and lab environments.

IP cameras, recorders & remote monitoring

CCTV — DVR / NVR Surveillance

Site surveys, IP/analog camera installation, NVR/DVR configuration, PoE switching, storage sizing, secure remote viewing and integration with alarm systems.

Hikvision logo
Hikvision

IP cameras and NVRs with HikCentral management and Hik-Connect mobile access.

Dahua logo
Dahua

Full range of IP/HDCVI cameras, NVR/DVR recorders and ANPR/AI analytics.

Axis Communications logo
Axis Communications

Premium IP cameras with edge analytics and ONVIF-compliant integration.

ONVIF / RTSP logo
ONVIF / RTSP

Open protocols for vendor-agnostic camera integration into any NVR or VMS.

Vitrine sites, landing pages & web hosting

Website Creation & Hosting

Modern, responsive websites with secure hosting: domain & DNS setup, SSL/TLS, CDN, email hosting and lightweight CMS — all from someone who also operates the network underneath.

React logo
React

Modern component-based front-end framework powering fast, dynamic interfaces.

WordPress logo
WordPress

Flexible CMS for content-driven sites — themes, plugins and easy content management.

Nginx logo
Nginx

High-performance reverse proxy and web server for hosting, SSL termination and load balancing.

Cloudflare logo
Cloudflare

DNS, CDN, DDoS protection and Zero Trust access for secure, fast websites.

Selected work

Real networks, real outcomes.

Enterprise

Multi-site SD-WAN rollout

Deployed SD-WAN across 28 branches — 45% lower MPLS spend, sub-second failover.

Data Center

Spine-leaf migration

Re-architected a legacy 3-tier DC to VXLAN/EVPN spine-leaf with zero downtime.

Security

Zero-trust segmentation

Rolled out micro-segmentation for a fintech — 100% east-west traffic policy coverage.

Cloud

Hybrid AWS landing zone

Designed Transit Gateway hub, Direct Connect and routing for a 9-VPC environment.

Credentials

Certified across the stack.

Cisco CertifiedNakivo Certified Partner3CX Certified
Contact

Let's design your next network.

Tell me a bit about your project — I usually reply within 24 hours.