<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Homelab on myl3z.me</title><link>https://myl3z.me/posts/homelab/</link><description>Homelab on myl3z.me</description><generator>Hugo</generator><language>en</language><lastBuildDate>Sun, 23 Aug 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://myl3z.me/posts/homelab/index.xml" rel="self" type="application/rss+xml"/><item><title>Homelab, step three — cutting the network into segments</title><link>https://myl3z.me/posts/homelab/vlan-umbau/</link><pubDate>Sun, 23 Aug 2026 00:00:00 +0000</pubDate><guid>https://myl3z.me/posts/homelab/vlan-umbau/</guid><description>&lt;h1 id="homelab-step-three--cutting-the-network-into-segments"&gt;Homelab, step three — cutting the network into segments&lt;a class="anchor" href="#homelab-step-three--cutting-the-network-into-segments"&gt;#&lt;/a&gt;&lt;/h1&gt;
&lt;p&gt;&lt;a href="https://myl3z.me/posts/homelab/dns-upstream/"&gt;Part two&lt;/a&gt; ended with a clean setup and a plan for
the next step: five segments instead of one flat &lt;code&gt;/16&lt;/code&gt;. The plan had been sitting there
finished for days, with a numbered order for the rebuild evening.&lt;/p&gt;
&lt;p&gt;Step one of that order worked. After that the network started talking back.&lt;/p&gt;
&lt;h2 id="why-cut-it-up-at-all"&gt;Why cut it up at all&lt;a class="anchor" href="#why-cut-it-up-at-all"&gt;#&lt;/a&gt;&lt;/h2&gt;
&lt;p&gt;Until that evening the home network was a single room. Everything in it: the Dream Machine, the
thin client running the DNS filter, phones, the work laptop, the TV, the printer, a handful of
smart home devices. Every device could reach every other one directly. Not because it was
configured that way somewhere, but because nothing prevented it.&lt;/p&gt;</description></item><item><title>Homelab, step two — who the DNS server trusts</title><link>https://myl3z.me/posts/homelab/dns-upstream/</link><pubDate>Thu, 20 Aug 2026 00:00:00 +0000</pubDate><guid>https://myl3z.me/posts/homelab/dns-upstream/</guid><description>&lt;h1 id="homelab-step-two--who-the-dns-server-trusts"&gt;Homelab, step two — who the DNS server trusts&lt;a class="anchor" href="#homelab-step-two--who-the-dns-server-trusts"&gt;#&lt;/a&gt;&lt;/h1&gt;
&lt;p&gt;&lt;a href="https://myl3z.me/posts/homelab/thin-client/"&gt;Part one&lt;/a&gt; ended with Pi-hole running and the
observation that a service that runs and a service that gets used are two different things.
Three points were left open. Two are now done, and the third deliberately is not.&lt;/p&gt;
&lt;h2 id="the-one-catch-in-the-router"&gt;The one catch in the router&lt;a class="anchor" href="#the-one-catch-in-the-router"&gt;#&lt;/a&gt;&lt;/h2&gt;
&lt;p&gt;The filter had been running for days and filtering nothing, because nobody asked it. The UDM
kept handing out its own address as the nameserver over DHCP, and every device in the house
went along with that — a directory sitting on the shelf while everyone keeps consulting the
old one.&lt;/p&gt;</description></item><item><title>Homelab, Step One — A Thin Client Running Debian 13</title><link>https://myl3z.me/posts/homelab/thin-client/</link><pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate><guid>https://myl3z.me/posts/homelab/thin-client/</guid><description>&lt;h1 id="homelab-step-one--a-thin-client-running-debian-13"&gt;Homelab, Step One — A Thin Client Running Debian 13&lt;a class="anchor" href="#homelab-step-one--a-thin-client-running-debian-13"&gt;#&lt;/a&gt;&lt;/h1&gt;
&lt;p&gt;I am building a homelab. Not a rack in the basement, but something that grows one piece at a
time: one machine, one service, write it down, keep going.&lt;/p&gt;
&lt;p&gt;The first node is a thin client. For a start that is the right class of hardware — silent,
barely any power draw when running around the clock, and cheap second-hand. For the services
I want on it first, it is plenty.&lt;/p&gt;</description></item></channel></rss>