$ Initializing portfolio...
$ Loading modules... [OK]
$ Connecting to server... [OK]
$ Ready. Welcome!

Hi, I'm

Mohammed Alefari

DevOps Engineer

Self-taught DevOps Engineer from Yemen with a background in PHP/Laravel development. Driven by passion for infrastructure automation, security hardening, and building reliable CI/CD pipelines.

// 7+ Projects Completed | 20+ Technologies | 3+ Years Experience

📄 Download My CV

PDF • Last updated N/A

Who I Am

Self-taught DevOps Engineer from Yemen with a background in PHP/Laravel development. Transitioned into DevOps driven by passion for infrastructure automation, security hardening, and building reliable CI/CD pipelines.

Believes in learning by building real-world projects and sharing knowledge with the community.

"Automate everything, secure by default"

Languages: Arabic (Native), English

Mar 2025 — Present
DevOps Engineer & Freelancer
Offering professional DevOps services including CI/CD automation, container orchestration, infrastructure as code, and security hardening. Building production-grade systems for clients worldwide.
Jan 2022
Started PHP/Laravel Development
Began self-teaching PHP and Laravel framework, building web applications and learning backend development fundamentals.
Jan 2023
Discovered DevOps & Infrastructure
Transitioned focus to DevOps driven by passion for infrastructure automation, security hardening, and CI/CD pipelines.
Jun 2023
Docker & Container Orchestration
Mastered Docker containerization, Docker Compose, and began exploring Kubernetes (K3s) for container orchestration.
Jan 2024
CI/CD & Automation Mastery
Built production-grade CI/CD pipelines using Jenkins and GitHub Actions. Implemented Ansible for configuration managemen...
Jun 2024
DevOps Engineer
Building production-grade infrastructure, open-source DevOps tools, and sharing knowledge with the community. Focused on...
> $ count --projects
=> 0
> $ count --technologies
=> 0
> $ get --experience
=> 0

What I Offer

bash
root@mmsal512:~$ deploy --pipeline

CI/CD Pipeline Setup

Automate your software delivery process with robust, secure, and scalable CI/CD pipelines.

  • GitHub Actions, Jenkins, GitLab CI
  • Automated Testing & Deployment
  • Zero-downtime releases
bash
root@mmsal512:~$ ansible-playbook setup.yml

Cloud Infrastructure (IaC)

Design and provision cloud infrastructure using code for consistency and rapid scaling.

  • Linux VPS, DigitalOcean
  • Ansible
  • Infrastructure scaling & optimization
bash
root@mmsal512:~$ kubectl apply -f production.yml

Docker & Kubernetes

Containerize applications and orchestrate them for maximum availability and resource efficiency.

  • Docker containerization
  • Kubernetes (K8s) / K3s clusters
  • Microservices architecture
bash
root@mmsal512:~$ secure --server

Server Hardening & Security

Protect your infrastructure against threats with proactive security hardening and firewalls.

  • Linux security configuration
  • CrowdSec & UFW firewall setup
  • SSL/TLS certificates & audit
bash
root@mmsal512:~$ watch --metrics

Monitoring & Observability

Gain deep insights into your systems with real-time monitoring and alerting solutions.

  • Prometheus & Grafana dashboards
  • Log management (ELK/Loki)
  • Automated incident alerting
bash
root@mmsal512:~$ php artisan serve

Laravel/PHP Full-Stack

Build high-performance, robust backend APIs and applications with Laravel.

  • Custom Laravel applications
  • RESTful API development
  • Database design & optimization

Flexible Plans For Your Project

bash
root@mmsal512:~$ plan --subscribe

STARTER

$149 / one-time

// For individuals and small projects that need a solid foundation.

# Ideal for: Developers deploying their first project · Personal websites and portfolios · Small side projects

# VPS Setup & Hardening
  • SSH key-only authentication
  • Fail2Ban + UFW firewall configuration
  • Automatic security updates enabled
  • Non-root user setup with sudo privileges
# Docker Environment
  • Docker & Docker Compose installation (latest stable)
  • Configured for production use
  • Log rotation configured
# Single Application Deployment
  • Dockerized deployment for one application
  • Traefik reverse proxy setup
  • Free SSL certificate (Let's Encrypt auto-renewal)
  • Domain DNS configuration guidance
# Basic Monitoring
  • Server uptime monitoring
  • Disk space alerts
# Documentation
  • Setup guide with all credentials
  • Basic maintenance commands cheat sheet
# إعداد وتأمين السيرفر
  • مصادقة بمفتاح SSH فقط
  • إعداد جدار الحماية Fail2Ban + UFW
  • تفعيل التحديثات الأمنية التلقائية
  • إنشاء مستخدم غير root بصلاحيات sudo
# بيئة Docker
  • تثبيت Docker & Docker Compose (أحدث إصدار مستقر)
  • مُهيأ للاستخدام الإنتاجي
  • إعداد تدوير السجلات
# نشر تطبيق واحد
  • نشر تطبيق واحد داخل حاوية Docker
  • إعداد Traefik كـ Reverse Proxy
  • شهادة SSL مجانية (تجديد تلقائي عبر Let's Encrypt)
  • إرشاد لإعداد DNS الخاص بالدومين
# مراقبة أساسية
  • مراقبة وقت تشغيل السيرفر
  • تنبيهات مساحة القرص
# التوثيق
  • دليل الإعداد مع جميع بيانات الدخول
  • ورقة مرجعية لأوامر الصيانة الأساسية
> $ show --details
  • Delivery: 2-3 business days
  • Support: 7 days post-delivery (bug fixes only)
bash
root@mmsal512:~$ plan --subscribe

ENTERPRISE

$899 / one-time

// For organizations that need production-grade infrastructure with zero compromise.

# Ideal for: Companies with critical production workloads · Teams migrating to containerized infrastructure · Organizations requiring compliance & security audits

// includes everything in Professional +
# High Availability Architecture
  • K3s / Nomad container orchestration
  • Auto-healing: crashed services restart automatically
  • Zero-downtime deployments (rolling updates)
  • Service discovery via Consul
  • Load balancing (Fabio / Traefik)
# Unlimited Application Deployment
  • Microservices architecture support
  • Inter-service communication configured
  • Shared secrets management
  • Per-service scaling policies
# Advanced CI/CD Architecture
  • Multi-environment pipeline (Dev / Staging / Prod)
  • Canary or Blue-Green deployment strategy
  • Automated security scanning in pipeline
  • Infrastructure as Code (Terraform + Ansible)
  • GitOps workflow
# Enterprise Monitoring & Observability
  • Prometheus + Grafana + Loki (metrics + logs)
  • Custom dashboards per application
  • Alerting rules (Slack / Email / WhatsApp)
  • Log aggregation and search
  • Incident response runbooks
# Disaster Recovery Plan
  • Automated backup with cloud redundancy
  • Full server restoration playbook (Ansible)
  • Recovery Time Objective (RTO): < 1 hour
  • Tested recovery procedure documentation
# Security Audit & Compliance
  • Full server security audit report
  • Container security scanning
  • Network penetration surface analysis
  • Monthly security report (with retainer)
# Premium Documentation & Knowledge Transfer
  • Complete infrastructure-as-code repository
  • Architecture diagrams (Mermaid / Draw.io)
  • Video documentation of full setup
  • On-call support procedures
  • Team training session (up to 2 hours)
// يشمل كل ما في Professional بالإضافة إلى
# معمارية عالية التوفر
  • تنسيق الحاويات عبر K3s / Nomad
  • التعافي الذاتي: الخدمات المتعطلة تُعاد تلقائياً
  • نشر بدون توقف (تحديثات متدرجة)
  • اكتشاف الخدمات عبر Consul
  • موازنة الأحمال (Fabio / Traefik)
# نشر تطبيقات غير محدود
  • دعم معمارية الخدمات المصغرة
  • إعداد التواصل بين الخدمات
  • إدارة الأسرار المشتركة
  • سياسات توسع لكل خدمة
# معمارية CI/CD متقدمة
  • خط أنابيب متعدد البيئات
  • استراتيجية نشر Canary أو Blue-Green
  • فحص أمني تلقائي في خط الأنابيب
  • البنية التحتية ككود (Terraform + Ansible)
  • سير عمل GitOps
# مراقبة ورصد على مستوى المؤسسات
  • Prometheus + Grafana + Loki (مقاييس + سجلات)
  • لوحات مراقبة مخصصة لكل تطبيق
  • قواعد تنبيه (Slack / Email / WhatsApp)
  • تجميع وبحث السجلات
  • أدلة الاستجابة للحوادث
# خطة التعافي من الكوارث
  • نسخ احتياطي تلقائي مع تكرار سحابي
  • دليل استعادة السيرفر بالكامل (Ansible)
  • هدف وقت الاستعادة: أقل من ساعة واحدة
  • توثيق إجراءات استعادة مُختبرة
# التدقيق الأمني والامتثال
  • تقرير تدقيق أمني شامل للسيرفر
  • فحص أمان الحاويات
  • تحليل سطح الاختراق الشبكي
  • تقرير أمني شهري (مع الاشتراك)
# توثيق متقدم ونقل المعرفة
  • مستودع كامل للبنية التحتية ككود
  • رسوم بيانية للمعمارية (Mermaid / Draw.io)
  • توثيق فيديو للإعداد الكامل
  • إجراءات الدعم عند الطلب
  • جلسة تدريب للفريق (حتى ساعتين)
> $ show --details
  • Delivery: 10-14 business days
  • Support: 60 days post-delivery

Client Logs

/var/log/clients.log

Tech Stack & Tools

Operating Systems & Scripting

Linux
Ubuntu
Debian
Bash Scripting

Containers & Orchestration

Docker
Kubernetes
K3s
HashiCorp Nomad

CI/CD & Automation

Jenkins
GitHub Actions
Ansible
Terraform

Monitoring & Observability

Prometheus
Grafana

Security & Networking

CrowdSec
UFW
Fail2Ban
Tailscale VPN
Cloudflare

Web & Reverse Proxy

Traefik
Nginx

Databases & Caching

PostgreSQL
Redis
MySQL

Service Discovery & Load Balancing

HashiCorp Consul
Fabio

Development Background

PHP
Laravel

Featured Projects

Infra Full Stack

Featured

Production-grade DevOps portfolio showcasing end-to-end infrastructure automation — Terraform → Ansible → Docker → K3s → CI/CD → Monitoring. Everything automated, secure, and production-ready.

Terraform K3s GitHub Actions Prometheus Grafana Flask Docker Ansible Gunicorn
  • Multi-stage Docker build
  • HPA auto-scaling
  • Rolling updates
  • Telegram notifications
  • Full CI/CD pipeline
0 0

Ultimate Secure Setup

Featured

Ansible Playbook for full server hardening and security automation.

Ansible CrowdSec UFW
  • Full server hardening
  • Automated security policies
  • CrowdSec integration
0 0

Hybrid CI/CD Pipeline

Featured

Jenkins inside K3s with Docker builds via SSH — hybrid approach for CI/CD.

Jenkins K3s Docker
  • Jenkins on K3s
  • SSH-based Docker builds
  • Hybrid architecture
0 0

Server Boilerplate

Full production stack deployment in one command using Docker Compose and Traefik.

Docker Compose Traefik
  • One-command deployment
  • Traefik reverse proxy
  • Production-ready stack
0 0

Nomad & Consul Cluster

Automated HashiCorp cluster deployment with service discovery using Nomad, Consul, and Fabio.

Nomad Consul Fabio
  • Automated cluster setup
  • Service discovery
  • Load balancing with Fabio
0 0

Stack Backup Automation

Automated backups to Google Drive via rclone with scheduling and notifications.

Bash Rclone Cron
  • Google Drive integration
  • Scheduled backups
  • Notification support
0 0

Server Cleanup

Comprehensive server reset and cleanup automation script for maintaining clean environments.

Bash Automation
  • Full server cleanup
  • Automated reset
  • Environment maintenance
0 0

Production Architecture

Cloudflare
DNS + CDN + WAF
CF Tunnel
Secure Connection
Traefik
Reverse Proxy + TLS
Docker
Containers
K3s
Orchestration
Prometheus
Metrics
Grafana
Dashboards
CrowdSec
Security
Tailscale
VPN Mesh

Full production architecture: Cloudflare protection → Secure tunnel → Traefik reverse proxy → Docker/K3s orchestration → Prometheus & Grafana monitoring

Latest Articles

root@mmsal512:~$
root@mmsal512:~$ cat how-i-automated-my-entire-deployment-pipeline.md
[2026-03-05 00:00:00]

How I Automated My Entire Deployment Pipeline

Six months ago, my deployment process was manual and error-prone. Now, a single push to main triggers a fully automated CI/CD pipeline with health checks and auto-rollbacks.

#github-actions #ci-cd #automation #docker #traefik
8 min read
root@mmsal512:~$
root@mmsal512:~$ cat docker-security-best-practices.md
[2026-03-12 00:00:00]

Docker Security Best Practices for Production

Running Docker in production is more than just "docker run". Learn the essential hardening steps: non-root users, read-only filesystems, resource limits, and CrowdSec.

#docker #security #hardening #crowdsec #production
10 min read
root@mmsal512:~$
root@mmsal512:~$ cat from-laravel-dev-to-devops.md
[2026-03-20 00:00:00]

From Laravel Developer to DevOps Engineer: My Journey

Two years ago, I was completely blind to everything after "git push". Here is the story of my transition: the learning path, the tools, and the mindset shift.

#career #laravel #devops #journey
7 min read

// 3 articles loaded. More coming soon... _

Get in Touch

contact@mmsal512.cloud ~ terminal
0/30
0/30
0/30
0/50 words | 0/200
Download CV $ ping --whatsapp