Matteo

Franzil

Researcher Network Engineer Photographer and more

I am Matteo Franzil, a PhD student in Information Engineering
and Computer Science in the University of Trento.
Currently, my research focuses on cloud orchestration and security,
network monitoring, and virtualization.

My research interests include network management, monitoring, and observability; virtualization and containerization; network security. My PhD focuses on the development of scalable and adaptable monitoring solutions in cloud-to-edge environments.

Technically, I am a computer scientist with a strong background in networks, systems, and security. I am proficient in data center and server deployment and management, cloud computing, and automation. I have a passion for learning and problem solving, and like to tinker with all sorts of new technologies on my own.

In my free time, I am an unstoppable explorer and photographer: my backpack is always ready for the next hike or trip when the time calls for it. I am also an avid nerd, with a passion for electronics and PC building.

Sociality is at the core of my lifestyle: I love to work in groups, and I have led and organized several events since high school. Managing my time is essential for me, in order to achieve a healthy life-work balance.

Certifications and languages
🇮🇹
Italian mother-tongue
🇬🇧
English C2 (Cambridge certificate)
🇪🇸
Spanish A2
Azure Fundamentals certification (AZ-900)

Cloud and Virtualization

Docker, Kubernetes
Falco, Prometheus, Grafana
Azure, Google Cloud Platform
AWS, OpenStack
Proxmox, MaaS,
VMWare/ESXi, Hyper-V,
Ansible, Terraform

Web and Development

Python: NetworkX, OpenCV,
Numpy, TensorFlow
HTML, CSS, JavaScript
Python-, Java-, PHP- and JS-based frameworks

Networks and Security

Network and system administration
Linux network stack (iptables, eBPF, XDP)
Fortinet/FortiOS, Juniper, Cisco platforms
Bash scripting, Ansible, Terraform
Hardware and software deployment and maintenance
LAN design and management
Penetration testing: Metasploit, Nmap, Wireshark, OpenVAS, Nessus

Other skills

LaTeX typesetting
Databases, SQL (PostgreSQL, MySQL)
Rust, Lua, Go, R, C, C++
PC building and electronic board testing
Adobe Creative Suite, Microsoft Office
Cross-OS experience: Linux, MacOS, Windows

My work and study experience is summarized here.

For further information, my CV is available for download.

This section shows a selection of my publications, works, and projects.

On Google Scholar, you may find a list of my academic publications.

On my GitHub profile, you may find the source code for most projects.

An archive of past projects is available here.

Academic Works

Sharpening Kubernetes Audit Logs with Context Awareness

M. Franzil, V. Armani, L. A. Dias Knob, D. Siracusa

Under review; preprint available here
Keywords: Kubernetes, Machine Learning, Audit logs

Exploiting Kubernetes' Image Pull Implementation to Deny Node Availability

L. A. Dias Knob, M. Franzil, D. Siracusa

Under review; preprint available here
Keywords: Kubernetes, APIs, Denial-of-Service attacks, containerd

Carbon-Aware Spatio-Temporal Workload Shifting in Edge-Cloud Environments: A Review and Novel Algorithm

N. Asadov, V. Coroamă, M. Franzil, S. Galantino, M. Finkbeiner

in Sustainability. DOI: 10.3390/su17146433
Keywords: Scheduling, energy efficiency, edge computing, cloud computing

Work-in-Progress: A Sidecar Proxy for Usable and Performance-Adaptable
End-to-End Protection of Communications in Cloud Native Applications

S. Berlato, M. Rizzi, M. Franzil, S. Cretti, P. De Matteis and R. Carbone

in 1st Workshop on Operating Systems and Virtualization Security (OSVS 2024). DOI: 10.1109/EuroSPW61312.2024.00086, download
Keywords: Sidecar proxies, end-to-end encryption, cloud native

Projects and Other Works

FLUIDOS Project

Flexible, scaLable and secUre decentralIzeD Operating System

Task Leader of T6.3, "AI for performance prediction and enhancement", within Work Package WP6 "Cost-effective and energy-aware infrastructure".
Exploration of machine learning techniques for predicting energy demand of edge computing tasks. CORDIS website

Fast and Scalable Shortest Path Recovery for Multi-Domain Segment Routing Networks

Efficient shortest path recovery algorithms for Segment Routing deployments. Project funded by Cisco Systems Inc.

Real-Time Monitoring of the QUIC Protocol

Master's Degree Thesis

My Master's Degree thesis explores the tradeoffs and the engineering required when building a monitoring system tailor-made for the QUIC protocol. Download; Project GitHub

Configuration of threat protection systems for the enterprise

Bachelor's Degree Thesis

My Bachelor's Degree thesis expands the work made during my internship into a quantitative methodology for deploying and gathering data from an honeypot network in an automated way. Download

This is a selection of my recent works.

On franzilmedia.com, I regularly publish all new galleries (save for privacy-sensitive ones).

I primarily shoot with my trusty Sony Alpha 7 IV.

You can contact me for any kind of requests, from asssignments to copies of old photos.