Network Security

Homelab
Homelab VLAN Design: Simple Network Segmentation That Works

A practical VLAN design guide for homelabs, covering trust zones, VLAN IDs, trunks, access ports, firewall rules, mDNS, and rollback planning.

Read more
Cisco
Post-Quantum Networking: What Cisco’s Quantum-Ready Push Means

Post-quantum networking is about inventory, crypto-agility, long-lived data risk, secure boot, VPNs, certificates, and refresh planning before the emergency arrives.

Read more
Network Security
Designing Networks With DoD IL5 in Mind: Campus, Data Center, IT, and OT Security

A network is not "Department of Defense (DoD) Impact Level 5 (IL5) compliant" by itself. A network can, however, be designed to support a mission system categorized at IL5 or pursuing a DoD IL5 authorization. That distinction matters. IL5 is about the mission system, the authorization boundary, the data being protected, the controls that are […]

Read more
Cisco
Live Protect and Runtime Vulnerability Shielding for Network Infrastructure

Live Protect is Cisco’s runtime shielding approach for reducing exposure while teams plan upgrades. It should complement patching, segmentation, and lifecycle management, not replace them.

Read more
Homelab
WireGuard Home VPN: Secure Remote Access for Your Homelab

A practical WireGuard home VPN guide for secure homelab access, including routing design, firewall rules, DNS, validation, and gear recommendations.

Read more
Cisco
Cisco Multicloud Fabric: The Network-as-a-Service Push

Cisco Multicloud Fabric aims to simplify site-to-cloud and cloud-to-cloud networking with a Cisco-operated fabric, zero-trust routing, firewall chaining, and ThousandEyes visibility.

Read more
Homelab
Ubiquiti Site Magic: Practical UniFi SD-WAN for Multi-Site Networks

Ubiquiti Site Magic turns UniFi gateways into a managed SD-WAN fabric for branch offices, shops, labs, and home-office links. Here is when to use it, how to design the topology, what to secure, and where its limits still matter.

Read more
Cisco
Catalyst Campus Fabric: eBGP, EVPN, VXLAN, and the Path to Macro and Microsegmentation

A design-focused look at Catalyst campus fabric, eBGP/EVPN/VXLAN, VRF macrosegmentation, TrustSec SGT microsegmentation, and how campus fabrics mature toward zero-trust segmentation.

Read more
AI
Cisco Secure Access: Where SSE, ZTNA, SD-WAN, and AI Security Meet

A practical look at Cisco Secure Access, SSE, ZTNA, Meraki SD-WAN integration, AI application control, and how to design a migration away from legacy VPN assumptions.

Read more
Homelab
My Ubiquiti UniFi Home Network: Business-Grade Networking at Home

Why I built my home network around Ubiquiti UniFi: UXG Pro, UCKP, USW Pro 48, PoE switching, Flex Mini edge switches, U6 Pro Wi-Fi 6 coverage, dual WAN, VLAN segmentation, security, visibility, and business-grade control without recurring licenses.

Read more