Networking

Networking Hub

A collection of practical guides, configs, checklists, and workflows focused on real-world networking — from home-lab setups to secure VPN tunneling, MikroTik engineering, Traefik routing and DNS infrastructure.

Jump to:
WireGuard · MikroTik · Network Infrastructure · Security & Hardening


WireGuard

  • WireGuard fundamentals
    A clean overview of how WireGuard works, why it’s secure, and how it routes traffic.

  • Site-to-site tunnel (VPS ↔ Home)
    Stable overlay network for remote access, container routing, and edge reverse-proxying.

  • Split vs Full tunnel
    Practical comparison and when to use each mode for mobile clients.


MikroTik

  • Basic RouterOS configuration
    First-boot hardening, interface setup, Wi-Fi profiles, DHCP and DNS config.

  • Firewall best practices
    Secure default ruleset, LAN/WAN separation, WG/LAN bridging, and logging strategy.

  • WinBox essentials
    A functional overview of the most important WinBox panels and flows.


Network Infrastructure

  • Traefik as an edge reverse-proxy
    File provider, routers, services and middleware. Cloudflare DNS-01 ACME.

  • Pi-hole DNS
    Local DNS sinkhole with upstream filtering and metrics.

  • Docker network design
    Bridge networks, service isolation, routing services through VPN tunnels.


Security & Hardening

  • Cloudflare “Full Strict” SSL model
    Certificate flow, pitfalls, and origin protection.

  • nftables firewall on VPS
    Production-ready minimal ruleset with SSH/WG/TLS only.

  • Fail2ban
    Protection against brute-force, useful jail patterns.


Networking Articles

Below is a complete list of networking-related posts in chronological order.


Networking Articles & Workflows