Hey guys,
I am moving into a new flat in a month or so and thinking about the future home network. It is a 2-story flat, the developer installed RJ45 cables with LAN outlets to each room (I haven't tested them tho, I hope they work!). The best ISP in that area is fibre optics, I am gonna get 300/20Mbps link + static IP (I guess I need one because of VPN?). The ISP requires to take their modem/WiFi router, but I don't wanna use it as a router - I was thinking of turning off WiFi and use it just as a modem.
What I want from my network:
What I was thinking would work (and here I would very much appreciate any comments / recommendations):
Some additional questions:
Thanks a lot to everyone, have a nice weekend!
N.
I am moving into a new flat in a month or so and thinking about the future home network. It is a 2-story flat, the developer installed RJ45 cables with LAN outlets to each room (I haven't tested them tho, I hope they work!). The best ISP in that area is fibre optics, I am gonna get 300/20Mbps link + static IP (I guess I need one because of VPN?). The ISP requires to take their modem/WiFi router, but I don't wanna use it as a router - I was thinking of turning off WiFi and use it just as a modem.
What I want from my network:
- WiFi everywhere (duh)
- home server (gonna do Raspberry Pi with some external hard drives) - mostly for backups, NAS, maybe multimedia centre in the future (with Kodi) - home server absolutely needs to be accessible from the outside via VPN (because of my files on NAS and backups), hence I guess I need a VPN-capable router
- ideally, the VPN should be IKEv2 protocol, so it's natively supported by Apple devices (also iPhones and iPads)
- router / AP capable of a guest network - i.e. our guests shouldn't be able to see our home server
What I was thinking would work (and here I would very much appreciate any comments / recommendations):
- get a nice VPN WiFi router, e.g. some cheaper DrayTek Vigor series (e.g. this), since they support IKEv2 - any recommendations for another WiFi router with VPN?
- build a server from RPi and connect it via ethernet to the router - set it up, so it's accessible from a local network
- connect the router to LAN inlet in my flat - so I get the "juice" to every LAN outlet in the flat
- get some WiFi AP for the second story in my flat - I was thinking about Ubiquiti UniFi UAP-AC-LITE (because this one will be visible and my wife would kill me if it's not nice ); on the AP I would set the same SSID and pass - it this enough to get roaming with my devices? will my e.g. phone or laptop automatically connect to this AP if it's signal is stronger than the router? The AP would be connected to the LAN outlet in the room.
Some additional questions:
- What if my ISP does not offer static IP? Can I set up a VPN on the router and connect from the outside world even with dynamic IP?
- Will I see all my local network stuff when I am connected to the AP on the second story and not directly to the router (will my laptop see the NAS)?
- is setting the same SSID and pass on AP enough to get reasonable roaming? or is it more complex? Should I look for some features in my router and AP for this? Do they have to be the same manufacturer?
- what about a guest network? Most routers support it, but what about APs? Is it possible to just set our main network and guest network with different SSIDs and passes on the router and do the same setting on the AP and it will just work? Are some additional steps necessary?
- maybe we will get a printer/scanner and if so, I would love to be it also on the network - is running e.g. CUPS on my server RPi enough? Any more modern solutions than CUPS? What if the printer is capable of WiFi? Can I add it to the home network via WiFi (printer would be on the second story, hence connecting to the AP, not directly to the router)?
- in theory, I won't need to connect to my home network via VPN per se, only to the RPi server. Is it possible to not have VPN-capable router and just set VPN server on RPi4 and connect directly to that? Any drawbacks to this? What would you recommend? Whole network VPN (i.e. on the router) or just server (i.e. on RPi)?
- of course, any recommendations for good VPN-capable router and/or AP is much appreciated
Thanks a lot to everyone, have a nice weekend!
N.