| Proxmox, vCenter, virt-manager | libvirt (KVM/QEMU), Lima and VirtualBox virtualisation: machine lifecycle, browser console, snapshots, cloud-init, live migration between hypervisors. | Usable as is |
| Portainer, Rancher, kubectl | Docker, Podman, LXD, Incus and LXC containers, and multi-cluster Kubernetes across thirteen resource types — one console for all three families. | Usable as is |
| pfSense, nftables scripts | A driven nftables firewall: profiles, zones, ordered rules, a diff before applying and lock-out protection. | Foundation to describe |
| BIND, dnsmasq, Kea, ISC DHCP | DNS across six supported engines and DHCP across three: zones, records, scopes, reservations, all versioned. | Foundation to describe |
| cert-manager, Caddy, ACME scripts | Authorities, certificates and distribution: ACME with nine challenge types, renewal and installation on targets. | Foundation to describe |
| Guacamole, home-grown bastions | RDP, VNC and SSH consoles in the browser, through a jump host, with encrypted credentials and a traced session. | Usable as is |
| Ad-hoc Ansible, Foreman, Spacewalk | Software estate: aggregated inventory, per-machine version gap, a security-only filter, bulk apply and follow-up. | Usable as is |
| Terraform, cloud consoles | AWS and Cloudflare: templates, planning, apply and continuous drift detection, with no local Terraform. | Foundation to describe |
| Lucidchart, Visio diagrams | A map built from the real inventory — machines, containers, pods, rules, tunnels — rather than redrawn by hand. | Usable as is |