Skip to main content
TCPGrid
Engineering work

Projects & engineering work

TCPGrid is an emerging practice. These are representative infrastructure and automation projects, lab builds, and engineering work, not attributed client case studies.

Infrastructure Design

Multi-Site Network Architecture

Design of a segmented, multi-site network topology with centralized routing policy and site-to-site connectivity.

  • VLAN and subnet architecture designed for multiple sites with distinct trust boundaries.
  • Site-to-site connectivity with route redundancy and documented failover behavior.
  • Configuration standards written so any site could be replicated from the design documents alone.
Cisco IOSOSPFVLANsSite-to-Site VPN
Automation

Network Automation Toolkit

A Python toolkit for automated configuration backup, drift detection, and device health reporting.

  • Scheduled backup and version comparison of network device configurations.
  • Drift detection that flags out-of-band changes against a known-good baseline.
  • Health checks and reporting delivered without manual polling.
PythonNetmikoCronGit
Monitoring

Infrastructure Monitoring Stack

A self-hosted monitoring stack tracking device, link, and server health across a lab network.

  • Metrics collection across routers, switches, and servers.
  • Alerting tuned to reduce noise while catching real degradation early.
  • Dashboards built for at-a-glance status, not vanity metrics.
LinuxSNMPGrafanaPrometheus
Security & Networking

Secure WAN Architecture

A wide-area network design connecting distributed sites over encrypted tunnels with segmented internal access.

  • Site-to-site VPN architecture with policy-based routing.
  • Internal segmentation separating management, user, and server traffic.
  • Firewall policy documented and reviewed against least-privilege principles.
IPsec VPNFirewall PolicyVLAN Segmentation
Systems Administration

Mixed Windows/Linux Server Environment

Administration of a mixed-OS server environment with centralized identity and consistent patching discipline.

  • Active Directory domain structure with Group Policy-managed baselines.
  • Linux servers administered alongside Windows Server roles under one patching schedule.
  • DNS and DHCP infrastructure standardized across the environment.
Windows ServerActive DirectoryLinuxGroup Policy
Lab Engineering

Network Engineering Lab Environment

A persistent lab environment used to design, break, and rebuild network topologies before changes reach production.

  • Virtualized routers, switches, and endpoints mirroring production topology patterns.
  • A staging ground for testing configuration changes and automation before deployment.
  • Ongoing environment for evaluating new protocols, tooling, and failure scenarios.
CiscoGNS3/EVE-NGVirtualizationLinux

Have infrastructure that needs this kind of attention?

Tell us about the environment you're working with. We'll tell you what a project like this would actually take.

Talk to an Expert