Akram El Asouly

IT Support & Systems Administration

Google-certified and self-directed. I build and document IT environments across networking, identity, support, mail, and security monitoring, then test them against real failures so the work shows not just what exists, but how it behaves when things break.

Morocco — open to IT Support / Junior Sysadmin / Helpdesk roles
Portfolio focus

Infrastructure, support workflows, and security monitoring presented as independent work areas, not a single showcase.

How I work

Root-cause debugging, verbose log analysis, and honest documentation of what failed, what changed, and why.

What to expect

A practical systems portfolio that reads like a real technical profile instead of a one-project landing page.

pfsense[ ok ]edge firewall — WAN/LAN segmentation, NAT
dc01 + dc02[ ok ]AD DS, DNS, DHCP failover, replication
filesrv01[ ok ]FSRM shares, GPO-deployed printer
ticket01[ ok ]osTicket helpdesk
mail01[ ok ]Postfix / Dovecot / Roundcube
sentinel[ monitor ]Azure Arc hybrid onboarding, live KQL detections
Credentials

Certifications & Languages

Google IT Support Professional Certificate

Comprehensive training covering computer networking, operating systems (Windows & Linux), system administration, troubleshooting methodology, and customer service in IT environments.

EnglishFluent
ArabicProficient
FrenchConversational
About

Profile

I hold the Google IT Support Professional Certificate and built HelpDeskLab to go beyond scripted tutorials: seven services that actually depend on each other, on one network, producing the kind of subtle, multi-layered failures a real environment produces — not a clean happy-path walkthrough.

Every module is documented with real screenshots, configuration detail, and an honest account of what broke and how I diagnosed it. That diagnostic process, more than any single service, is the point of the project.

Projects

Selected work

These are the individual systems and service layers that make up the broader HelpDeskLab environment.

01network

Firewall & Network Edge

WAN/LAN segmentation, NAT, and pfSense rule design for the lab edge.

Debug focus: interface assignment and host-only adapter behavior
02identity

AD Domain Lab

Windows Server identity core with OUs, GPOs, DNS, DHCP, and permissions testing.

Debug focus: an unattended-install account that looked like admin but wasn’t
03availability

Second DC & High Availability

Failover testing that keeps the domain alive when DC01 is offline.

Debug focus: a rename cascade that created multiple unrelated failures
04operations

File & Print Server

Shares, FSRM quotas, and a printer rollout managed through Group Policy.

Debug focus: stale DNS placeholders and a skipped migration step
05support

Ticketing System (osTicket)

A helpdesk stack that covers the full ticket lifecycle on a Linux web stack.

Debug focus: an HTTP 500 caused by a rejected MySQL password change
06messaging

Mail Server

Postfix, Dovecot, and Roundcube delivering mail across Linux services.

Debug focus: a hidden inbox path override in Dovecot
09security

SIEM with Microsoft Sentinel

Azure Arc hybrid onboarding, Log Analytics, and KQL detections for visibility.

Debug focus: a DNS, auth, and RBAC chain plus a platform limitation
Case study

HelpDeskLab as the umbrella project

The full lab still ties everything together: VirtualBox-hosted infrastructure, pfSense at the edge, two domain controllers, file and print services, osTicket, mail, and Sentinel monitoring. The difference is that the page now presents those systems as separate portfolio entries first, so the site reads like a broader technical profile rather than one oversized project page.

Troubleshooting highlight

The DC rename cascade

Renaming a domain controller mid-project (DC1DC01) cascaded into six independent, hard-to-connect failures: a Kerberos error that was actually about stale DNS, a DHCP authorization failure, a loopback self-authentication quirk, a stale AD computer object, a DHCP scope missing failover DNS options, and a GPO that accidentally locked out the DCs themselves. Each layer needed its own diagnosis — fixing one didn't fix the next.

Troubleshooting highlight

Chasing a ghost in the mailbox

Roundcube threw an internal error loading the inbox, even though Postfix logs confirmed every message was delivered. Permission and package fixes made partial progress but never solved it. Reading Dovecot's own verbose debug trace (doveadm -Dv force-resync) revealed a mail_inbox_path override in 10-mail.conf silently pointing IMAP at an empty directory — a completely different location than where mail was actually landing. Every symptom pointed to a plausible-but-wrong cause; only the debug log revealed the real one.

Two originally-planned modules — VLAN segmentation and scripted endpoint hardening — were deliberately descoped due to time, in favor of finishing the seven services above to a high standard rather than spreading thinner across nine.

Skills

Skills & Technologies

Windows Server & Identity
Active Directory Domain Services · DNS & DHCP (incl. failover) · Group Policy Objects · NTFS permissions & security groups · FSRM storage quotas
Networking & Security
pfSense firewall / NAT / edge routing · network segmentation & subnetting · Microsoft Sentinel SIEM & KQL · Azure Arc hybrid management · detection engineering
Linux & Services
Ubuntu Server administration · LAMP stack (Apache/MySQL/PHP) · Postfix & Dovecot mail delivery · osTicket helpdesk platform · service/log-level debugging
Diagnostic Method
Root-cause isolation over guesswork · reading verbose/debug logs · systematic elimination of causes · documenting scope limits honestly · live failure testing (kill tests)
Hardware
Custom PC assembly & compatibility research · boot-failure and performance-bottleneck diagnostics · structured root-cause repair
Contact

Get in touch

Send an email