Skip to content
View gprocunier's full-sized avatar

Block or report gprocunier

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
gprocunier/README.md

Greg Procunier

I'm an Associate Principal Specialist Solution Architect at Red Hat. I work on OpenShift, OpenStack, identity, automation, infrastructure labs, and security patterns for privileged automation.

These repositories are my public technical notes, demos, and experiments. They mostly center on reproducible infrastructure labs, identity-aware automation, and operational patterns for platforms that need to survive real constraints.

Current work

I'm currently using Calabi, eigenstate-ipa, and Blastwall to explore how OpenShift, Red Hat IdM, Ansible Automation Platform, and SELinux can work together as a coherent control plane for privileged automation.

Project families

Calabi and OpenShift lab automation
  • calabi - Ansible-driven disconnected OpenShift 4 lab on one bare-metal host, with nested KVM, OVS segmentation, IdM/AD/Keycloak auth, agent-based install, and day-2 automation.
  • calabi-shell - Starship shell UI for the Calabi project.
  • eigenstate-ipa - Ansible collection for Red Hat IdM / FreeIPA with live inventory, Kerberos, secrets, policy, and OpenShift ecosystem workflows for AAP.
  • eigenstate-openshift-app-demo - OpenShift application identity onboarding demo with AAP workflow assets.
Privileged automation and host security
  • blastwall - SELinux, IdM, and AAP proof of concept for confining privileged automation and denying kernel exploit surfaces before jobs reach managed RHEL hosts.
Terminal and local interface experiments
  • yaft-drm - DRM/KMS framebuffer terminal with Sixel graphics, mouse support, and Nerd Font rendering.
OpenStack and platform automation

Selected writing

Find me

Pinned Loading

  1. calabi calabi Public

    Ansible-driven disconnected OpenShift 4 lab on one bare-metal host: nested KVM, OVS segmentation, IdM/AD/Keycloak auth, agent-based install, and day-2 automation

    Shell 3

  2. eigenstate-ipa eigenstate-ipa Public

    Ansible collection for Red Hat IdM / FreeIPA with live inventory, Kerberos, secrets, policy, and OpenShift ecosystem workflows for AAP.

    Python 1

  3. blastwall blastwall Public

    SELinux, IdM, and AAP proof of concept for confining privileged automation and denying kernel exploit surfaces before jobs reach managed RHEL hosts.

    Python 1

  4. privileged-automation-security privileged-automation-security Public

    Some ideas about the problems surrounding privileged automation

    HTML

  5. deterministic-density deterministic-density Public

    A practical reflection on deterministic virtualization, cgroup tiering, and symmetric CPU capacity planning.

    HTML

  6. openstack-cgroup-tiering openstack-cgroup-tiering Public

    Ideas about nova / watcher in RHOSO.