Production hybrid / multi-cloud platform

Hybrid. Connected. Operated.

The environment connects local servers, virtual machines, and devices with Microsoft 365, Azure, and other cloud platforms. A central identity, shared security principles, and visible operating cost hold the pieces together.

Running in productionCentral identityLocal AI included
HABA Platform Mapconnected
Control planeHybrid
Operations
LocalOn-premVMs · NASIdentityEntra IDAccess · rolesPrivate fabricLocal AITailscaleWorkplaceMicrosoft 365IntuneCloud platformAzureAI · apps · dataMulti-cloudAWS · Google CloudWorkloads · APIs
IdentityDevices & dataSecurityCost & operations

Architecture in context

One platform. Five lines. Every connection explainable.

The system metro begins with only the essential stations. Select a line or station to explore identity, devices, security, operations, and AI in context.

The foundation

A real environment—built for learning, validation, demonstrations, and operations.

This platform is not a static architecture diagram. Services, devices, data, and agents are genuinely used. Long-lived components remain in place; short-lived Azure resources are removed after tests when they no longer provide operational value.

01 · LOCAL

On-premises remains real

Hyper-V VMs, a domain controller, Synology NAS, a dedicated Mac mini, and further Windows and Apple devices form the local layer. Tailscale connects important systems across locations.

02 · MICROSOFT

Microsoft cloud at the centre

A maintained Microsoft 365 tenant with SharePoint, Teams, Intune, and managed devices meets Azure resources for apps, storage, files, Foundry, AI services, and infrastructure as code.

03 · MULTI-CLOUD

Adjacent clouds connected deliberately

AWS with federated identity and Defender integration, several Google Cloud projects, Wasabi object storage, GitHub, and specialist SaaS services extend the platform where they fit.

Tools & services

Microsoft-centred. Not Microsoft-blind.

The selection follows the purpose: collaboration and device management in Microsoft 365, flexible workloads in Azure, complementary cloud and storage services, and local control where it creates genuine value.

CORE

M365 & Intune

Users, content, SharePoint, Teams, and device management in a continuously maintained enterprise environment.

CLOUD

Azure & Foundry

Apps, Static Web Apps, storage, files, AI Services, Foundry projects, managed identities, and Terraform-based labs.

ADJACENT

AWS, GCP & Wasabi

Federated AWS use, connected security signals, several GCP projects, and production object storage.

CONTROL

GitHub & Admin By Request

Version control, automated deployments, and controlled local admin rights as part of the same operating discipline.

DefenderPurviewSentinelTailscaleSynologyOllamaOpenClawHome AssistantAzure DevOpsWispr Flow

Why it matters

Hands-on credibility rather than slideware architecture.

The platform creates a place where identity, devices, security, AI, cost, and operations can be tested together. Consulting becomes more concrete: architecture decisions are not merely described, but exercised under real conditions.

  • Visible in one placeThe Home AI Portal brings together system health, infrastructure, contracts, and cloud and AI cost.
  • Cost consciousLong-lived and short-lived resources are separated; usage and fixed cost remain traceable.
  • Security orientedIdentity, endpoint control, privileged rights, and cloud signals are treated as one connected layer.
  • Designed to evolveThe environment is simultaneously a production platform, a test lab, a demo, and a foundation for new applications.