06-29-2026, 08:35 PM
Been slowly reworking my home network and reached the point where I need to decide how paranoid to actually be.
Currently:
Thinking about adding:
At what point does this stop being useful and start being overhead you never maintain properly? I know people who have 10+ VLANs and their firewall rules are a mess.
What is your segmentation like and where did you draw the line?
Currently:
- Main LAN - trusted devices, laptops, workstations
- IoT VLAN - smart plugs, lights, thermostat, isolated with no internet except updates
- Guest WiFi - completely separate, internet only
Thinking about adding:
- A media VLAN for consoles and streaming sticks - semi-trusted, can reach Plex server only
- A lab VLAN for VMs and containers I experiment with
At what point does this stop being useful and start being overhead you never maintain properly? I know people who have 10+ VLANs and their firewall rules are a mess.
What is your segmentation like and where did you draw the line?
