← Tags

#networking

2 posts

Dotfiles, Part 4: Network-Aware Services — From Split Tunneling to Topology-Driven DNS

ProtonVPN with network namespace split tunneling, ad-blocking derived from VLAN topology, DHCP-to-DNS sync, and dynamic WireGuard peer onboarding — all as composable NixOS modules.

nixnetworkingsecurityinfrastructure

Dotfiles, Part 2: A NixOS Home Router — From VLANs to Declarative DNS

Building a full home router as composable NixOS modules — typed options, auto-derived nftables rules, VLAN isolation, and a custom Go CLI for Cloudflare DNS sync.

nixnetworkinginfrastructure