Skip to content
View wassimsmt's full-sized avatar

Block or report wassimsmt

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
wassimsmt/README.md

Hi, I'm Wassim 👋

IT infrastructure and systems administration — with a focus on Windows Server, Active Directory, networking, and virtualization. CCNA certified. Currently preparing for an Ausbildung as Fachinformatiker Systemintegration in Germany.


🏗 Featured Projects

Netzplan

Six-week infrastructure project for a simulated 20-employee company: Active Directory domain, three-zone network segmentation with OPNsense, file server with AGDLP permissions, Nextcloud with LDAPS authentication and an internal CA, 3-2-1 backup with tested restore, and CheckMK monitoring. Includes a 59-page German project documentation with test protocol and operations manual.

Automated Active Directory user onboarding: a web form triggers an n8n workflow that creates the AD user in the correct OU with the matching department group via a PowerShell REST bridge, and reports the result via Telegram. Built on the Atlas-Rhein lab environment.

Python network automation toolkit for Cisco devices — six modules for first-touch configuration, bulk config generation, AI-assisted diagnostics, security auditing, backups and network scanning. Built with Netmiko and Rich, with an offline simulation mode for Packet Tracer testing.

Internal penetration test simulation: LDAP, Kerberos and SMB enumeration, BloodHound graph analysis, privilege escalation reasoning.

SOC-style defensive lab: network traffic monitoring, SSH attack detection, log analysis and incident response.


🛠 Skills & Tools

Infrastructure: Windows Server 2025, Active Directory, DNS/DHCP, Group Policy, Hyper-V, File Services (NTFS/AGDLP)
Network: OPNsense, VLAN/zone segmentation, firewall rule design, routing, Cisco (CCNA)
Linux: Ubuntu Server, Apache, MariaDB, SSH, systemd
Automation: PowerShell, Python (Netmiko), Bash
Security: LDAPS, PKI/certificate services, least-privilege design, log analysis
Operations: Veeam Backup, CheckMK monitoring, Git, technical documentation Automation: PowerShell, Python (Netmiko), Bash, n8n (Workflow-Automatisierung) Operations: Veeam Backup, CheckMK monitoring, Docker, Git, technical documentation


📜 Certifications

Cisco Networking Academy

  • CCNA 1: Introduction to Networks — Verify
  • CCNA 2: Switching, Routing & Wireless Essentials — Verify
  • CCNA 3: Enterprise Networking, Security & Automation — Verify

CCNA (200-301) — exam scheduled for August 2026

Certified LLM Security Expert (CLLMSE)


🌍 Languages

Arabic (native) · French · English · German (B1, working toward B2)


📫 Contact


All security labs are conducted in controlled environments for educational purposes only.

Pinned Loading

  1. atlas-rhein-infrastructure atlas-rhein-infrastructure Public

    Six-week IHK-style IT infrastructure project: Active Directory domain, OPNsense network segmentation, file server with AGDLP permissions, Nextcloud with LDAPS authentication, 3-2-1 backup, and Chec…

    PowerShell

  2. ad-onboarding-automation ad-onboarding-automation Public

    Automated Active Directory user onboarding: an n8n workflow creates AD users in the correct OU and department group via a PowerShell REST bridge, with Telegram notifications. Built on a Hyper-V lab…

    PowerShell

  3. netforge netforge Public

    Python network automation toolkit for Cisco devices: six modules for first-touch configuration, bulk config generation, AI-assisted diagnostics, security auditing, backups and network scanning. Bui…

    Python

  4. active-directory-attack-path-lab active-directory-attack-path-lab Public

    Active Directory attack-path analysis lab simulating an internal penetration test. Includes LDAP, Kerberos, SMB enumeration, BloodHound graph analysis, privilege escalation reasoning, and professio…

  5. traffic-monitoring-mitigation-lab traffic-monitoring-mitigation-lab Public

    Hands-on cybersecurity lab simulating SOC operations using Ubuntu Server and Kali Linux. Focused on network traffic monitoring, SSH attack detection, log analysis, and incident response using tools…