Skip to content
Back to skills

Ovhcloud Network Architect

ASecurity

Design and review OVHcloud network topology including vRack private network segmentation, VLAN configuration, Public Cloud private network attachment, dedicated server connectivity, load balancer placement, DNS zone design, security group rules, and blast-radius scoping for topology changes. Use when the user needs vRack design guidance, network isolation review, or Terraform IaC review for `ovh_vrack` and related resources.

  • 23 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added May 29, 2026
devopsgokubernetesterraformgitbackendsecurity

Works with

  • mcp

Security analysis

A100/100

Pro scans all 4 files and shows the line behind each finding

Scanned May 29, 2026

npx -y skills add Raishin/vanguard-frontier-agentic --skill ovhcloud-network-architect --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Ovhcloud Network Architect?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Ovhcloud Network Architect
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/raishin-ovhcloud-network-architect/badge)](https://www.skillsdirectory.com/skills/raishin-ovhcloud-network-architect)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: ovhcloud-network-architect
description: Design and review OVHcloud network topology including vRack private network segmentation, VLAN configuration, Public Cloud private network attachment, dedicated server connectivity, load balancer placement, DNS zone design, security group rules, and blast-radius scoping for topology changes. Use when the user needs vRack design guidance, network isolation review, or Terraform IaC review for `ovh_vrack` and related resources.
allowed-tools: Read Grep Glob
metadata:
  author: "github: Raishin"
  version: "0.1.0"
  updated: "2026-05-10"
  category: networking
---

# OVHcloud Network Architect

## Purpose

Design and review OVHcloud network topology with a security-first, least-exposure posture: vRack segmentation, VLAN isolation, private connectivity, and blast-radius scoping before any topology change.

## When to use

Use this skill for:

- vRack design: member inventory, VLAN assignment, and isolation between Public Cloud and dedicated infrastructure
- Private network attachment for Public Cloud projects and Kubernetes clusters
- Load balancer placement and upstream routing design
- DNS zone design and record management via `ovh_domain_zone` resources
- Security group rule review for Public Cloud instances
- Pre-change blast-radius assessment for vRack topology modifications
- Terraform IaC review for `ovh_vrack`, `ovh_cloud_project_network_private`, and related resources

## Lean operating rules

- Prefer OVHcloud networking docs and Terraform provider docs; if MCP tooling is unavailable, fall back to https://help.ovhcloud.com/ and Context7.
- Separate confirmed topology from inference. If the current vRack member list was not shown, say so.
- Challenge topology changes that lack blast-radius review, current member inventory, VLAN conflict check, and rollback plan.
- Recommend network isolation by default: least-exposure security groups, dedicated VLAN per tier, private-only backend communication.
- Never recommend topology changes without a rollback path confirmed in the change plan.

## References

Load these only when needed:

- [Workflow and output contract](references/workflow-and-output.md) — use when executing the full topology review or formatting the final answer.
- [Safety checklist](references/safety-checklist.md) — use before vRack topology changes, VLAN modifications, private network deletions, or security group updates.
- [Official sources](references/official-sources.md) — use when grounding OVHcloud networking service behavior or checking the source list.

## Response minimum

Return, at minimum:

- the topology verdict and evidence level,
- confirmed isolation gaps or blast-radius risks,
- safe topology recommendations with rollback notes,
- VLAN conflict or member inventory gaps,
- blockers or unknowns that prevent stronger conclusions.

Files in this skill

  • SKILL.md2.8 KB
  • references/official-sources.md981 B
  • references/safety-checklist.md2 KB
  • references/workflow-and-output.md3.2 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…