I’ve never used any type of vpn outside of a “privacy vpn” (e.g. protonvpn, nordvpn, etc.)
I have a home network w/ several vlans (private, iot, servers, guests, etc), running pfsense, ubiquiti, proxmox, and truenas. windows on desktops. I also have a few VPS’s in the cloud.
My question is regarding netbird (and possibly other networks… was looking at zerotier… but they seem to have lessened their free offering… other friends are using it though.).
I’d like to use an overlay network like netbird to connect to my VPSs, connect back to home from outside (which would be rare), and maybe connect to friend’s networks to share files or serve as each other’s off-site backup.
Questions…
- Can I use this/these to connect to my VPS’s outbound without letting the VPS’s connect inbound to my home network? Asking b/c I’d likely be running a client from my private VLAN and, should a VPS get pwned, I don’t want free access back into my home network… at all.
- In the case of friends, where I do want to allow SOME access to CERTAIN resources, can I limit what they can access via netbird/other overlays at the overlay level?
- In the case of friends, if they too are running netbird/ whatever same overlay I end up chosing (let’s say they are using the same brand overlay network to connect to their other friends / vps’s / whatever), how does that affect me? and them? do they then run 2 instances of the client? do their vps’s get connected to me and my vps’s to them?
Just trying to work out the security implications in my head. Thank you.