Firewall
How to Audit Your Exposed ServicesNew!!
A practical exposure-audit guide for finding public ports, reverse proxies, tunnels, UPnP, IPv6 paths, vendor clouds, and forgotten services.
What to Do When a Device Hits CISA KEVNew!!
An incident-style response guide for routers, firewalls, VPNs, NAS devices, and other systems that appear in CISA's KEV catalog.
NAT vs Routing: What Happens When Traffic Leaves Your LAN
Routing decides where packets go. NAT rewrites addresses. Home networks usually use both, but they are not the same job.
What Is the Right VLAN Layout for a Beginner Homelab?
Start with four networks: trusted devices, guest devices, IoT/smart-home devices, and management or lab infrastructure. Add more only when a new trust boundary is clear, because every VLAN also adds firewall, DNS.
OPNsense, pfSense, UniFi, or Consumer Router: Which Should Run Your Homelab?
Use a consumer router if you need simplicity, UniFi if you want integrated routing/switching/AP management, and OPNsense or pfSense if firewall policy, VPNs, VLANs, logging, and control matter more than polish.
What Is the Safest Way to Expose One Self-Hosted App Publicly?
The safest path is usually to avoid public exposure unless the app truly needs it. If it does, isolate the app, put it behind a maintained reverse proxy or tunnel, require strong.






