Overview
This project focuses on redesigning network layout to separate user, IoT, management, and work devices into clearly defined segments.
What I built
- VLAN model separating trust zones
- Firewall rules to control cross-network access
- DNS strategy that works across segments
Why it matters
Segmentation limits blast radius, improves security posture, and makes troubleshooting simpler.