networking
Three attempts to separate the planes: VLANs in a two-node Proxmox homelab
Separating hypervisor management, out-of-band access, and guest traffic onto dedicated VLANs — what went wrong twice, and what the architecture looks like now.
Tailscale: reaching your lab from anywhere, safely
Tailscale builds a private mesh network over WireGuard so you can reach home services remotely without opening a single port.
Measuring your network: iperf3, LibreSpeed, and Speedtest Tracker
Three tools that answer three different questions about your network — and why running them yourself tells you more than Ookla ever will.
ntopng: actually seeing what is on your network
A plain-language look at network traffic monitoring for homelabs, and why ntopng earned a permanent spot in the rack.
Cloudflare Tunnel: exposing a service without opening a port
How to publish a homelab service to the internet without touching your router or exposing your IP address.
Nginx Proxy Manager: one front door for every service
How a reverse proxy with a friendly web UI tames the chaos of dozens of self-hosted services — no config files required.
OPNsense: turning a PC into a serious firewall
OPNsense brings enterprise-grade routing, firewalling, and VLAN segmentation to commodity hardware — here's why it belongs in a homelab.