Fix WireGuard network documentation (10.0.8.0/24 → 10.0.9.0/24)
- Corrected VPN network from deprecated 10.0.8.0/24 to current 10.0.9.0/24 - Added VPS WireGuard IP: 10.0.9.1 (vps.nianticbooks.com) - Added UCG Ultra WireGuard IP: 10.0.9.2 (client mode) - Documented traffic flow: VPS → WireGuard → UCG Ultra → homelab - Added Caddy domain handling (*.nianticbooks.com, *.deadeyeg4ming.vip) - Created new NETWORK-ARCHITECTURE.md with complete network documentation - Removed references to deprecated old VPS (55.XX...) and 10.0.9.3 peer Updated files: - docs/COMPLETE-HOMELAB-INVENTORY-2026-02-05.md - docs/INFRASTRUCTURE-AUDIT-COMPLETE-2026-02-05.md - infrastructure/TOOLS.md - docs/NETWORK-ARCHITECTURE.md (NEW)
This commit is contained in:
@@ -9,7 +9,7 @@
|
||||
## Network Overview
|
||||
|
||||
**Main Network:** 10.0.10.0/24
|
||||
**VPN Network:** 10.0.8.0/24 (WireGuard)
|
||||
**VPN Network:** 10.0.9.0/24 (WireGuard)
|
||||
**External VPS:** 66.63.182.168 (vps.nianticbooks.com)
|
||||
|
||||
**Proxmox Hosts:** 3 active
|
||||
@@ -146,10 +146,11 @@ None (all workloads in VM)
|
||||
|
||||
### VPS (66.63.182.168 - vps.nianticbooks.com)
|
||||
- **SSH Access:** ❌ Not configured (no public key)
|
||||
- **WireGuard IP:** 10.0.9.1
|
||||
- **Known Services:**
|
||||
- Caddy reverse proxy (handles external access)
|
||||
- WireGuard VPN endpoint
|
||||
- Routes traffic to internal homelab
|
||||
- Caddy reverse proxy (*.nianticbooks.com, *.deadeyeg4ming.vip)
|
||||
- WireGuard VPN server (10.0.9.0/24)
|
||||
- Routes traffic to UCG Ultra (10.0.9.2) → homelab (10.0.10.0/24)
|
||||
- LetsEncrypt SSL certificates
|
||||
- **Estimated Role:** Public-facing gateway for homelab services
|
||||
|
||||
@@ -219,8 +220,8 @@ None (all workloads in VM)
|
||||
| vmbr0 | pve-storage | 10.0.10.4/24 | Main network bridge |
|
||||
|
||||
### External Access
|
||||
- **VPS Caddy** → WireGuard VPN (10.0.8.0/24) → Internal services
|
||||
- **LetsEncrypt SSL** on VPS for public services
|
||||
- **VPS Caddy** (10.0.9.1) → WireGuard VPN (10.0.9.0/24) → UCG Ultra (10.0.9.2) → Internal services (10.0.10.0/24)
|
||||
- **LetsEncrypt SSL** on VPS for public services (*.nianticbooks.com, *.deadeyeg4ming.vip)
|
||||
- **Step-CA** (10.0.10.15) for internal certificates
|
||||
|
||||
---
|
||||
|
||||
Reference in New Issue
Block a user