Browse Lab topics
Follow a subject from first principles to a practical decision. Every collection includes reading context and related guides.
VPN basics
Compare architecture first; measure any claimed improvement second.
View collectionRouting
Write down the permitted destination and expected return path.
View collectionPrivacy
Ask what remains visible after the tunnel ends.
View collectionSelf-hosting
Treat maintenance and recovery as part of the design.
View collectionWireGuard
One device should have one identifiable, revocable peer identity.
View collectionAWS
Bring the client, destination, and identity model to the same planning session.
View collectionAzure
A supported client combination matters more than a generic platform badge.
View collectionRemote access
Test a removed identity before onboarding the whole team.
View collectionDNS
Check the name, returned address, port, and application in that order.
View collectionZero trust
A private address is not a complete authorization policy.
View collectionAI & LLM
Map prompt storage and tool permissions separately from the tunnel.
View collectionWeb3
Draw the packet path and payment path as different diagrams.
View collectionGaming
An unfavorable result is still useful evidence.
View collectionPrivate chat
Choose message protections first; add a tunnel for a specific network need.
View collection