Fix WireGuard network documentation (10.0.8.0/24 → 10.0.9.0/24)

- Corrected VPN network from deprecated 10.0.8.0/24 to current 10.0.9.0/24
- Added VPS WireGuard IP: 10.0.9.1 (vps.nianticbooks.com)
- Added UCG Ultra WireGuard IP: 10.0.9.2 (client mode)
- Documented traffic flow: VPS → WireGuard → UCG Ultra → homelab
- Added Caddy domain handling (*.nianticbooks.com, *.deadeyeg4ming.vip)
- Created new NETWORK-ARCHITECTURE.md with complete network documentation
- Removed references to deprecated old VPS (55.XX...) and 10.0.9.3 peer

Updated files:
- docs/COMPLETE-HOMELAB-INVENTORY-2026-02-05.md
- docs/INFRASTRUCTURE-AUDIT-COMPLETE-2026-02-05.md
- infrastructure/TOOLS.md
- docs/NETWORK-ARCHITECTURE.md (NEW)
This commit is contained in:
Funky (OpenClaw)
2026-02-06 02:21:14 +00:00
parent 7485e82b2f
commit db9ea38783
4 changed files with 201 additions and 13 deletions

View File

@@ -9,7 +9,7 @@
## Network Overview
**Main Network:** 10.0.10.0/24
**VPN Network:** 10.0.8.0/24 (WireGuard)
**VPN Network:** 10.0.9.0/24 (WireGuard)
**External VPS:** 66.63.182.168 (vps.nianticbooks.com)
**Proxmox Hosts:** 3 active
@@ -146,10 +146,11 @@ None (all workloads in VM)
### VPS (66.63.182.168 - vps.nianticbooks.com)
- **SSH Access:** ❌ Not configured (no public key)
- **WireGuard IP:** 10.0.9.1
- **Known Services:**
- Caddy reverse proxy (handles external access)
- WireGuard VPN endpoint
- Routes traffic to internal homelab
- Caddy reverse proxy (*.nianticbooks.com, *.deadeyeg4ming.vip)
- WireGuard VPN server (10.0.9.0/24)
- Routes traffic to UCG Ultra (10.0.9.2) → homelab (10.0.10.0/24)
- LetsEncrypt SSL certificates
- **Estimated Role:** Public-facing gateway for homelab services
@@ -219,8 +220,8 @@ None (all workloads in VM)
| vmbr0 | pve-storage | 10.0.10.4/24 | Main network bridge |
### External Access
- **VPS Caddy** → WireGuard VPN (10.0.8.0/24) → Internal services
- **LetsEncrypt SSL** on VPS for public services
- **VPS Caddy** (10.0.9.1) → WireGuard VPN (10.0.9.0/24) → UCG Ultra (10.0.9.2) → Internal services (10.0.10.0/24)
- **LetsEncrypt SSL** on VPS for public services (*.nianticbooks.com, *.deadeyeg4ming.vip)
- **Step-CA** (10.0.10.15) for internal certificates
---