Hello everyone!
I just began my journey with OpenWRT yesterday. I bought ASUS AX-1800U/RT AX-53U, properly installed OpenWRT by SSH (I am actually amazed by how quick and smooth this process was), and currently I am trying to figure out proper configuration for my setup. I read documentations, but the amount of topics, options and setting is quite overwhelming for me and I am stuck deciding what should I configure for my network setup. I will be really grateful for any advice or recommendations. I get the basics concepts of networking, but I am far away from calling myself an expert.
So, first thing, here is my current setup which is, I believe almost the one I am aiming for (I did not set up Wireless yet however, still using one from ISP modem but I will turn it off after setup of one on Asus):
I have ISP modem which unfortunately I cant get rid of (it is something ZTE based and does not have bridge mode unfortunately), because it has ONT built in and making ISP change it for ONT is very difficult, also IPTV and VOIP phone are dependent on it. So I want to built a private, reasonably safe home network behind my new router, with only IPTV and VOIP being in "unsecured" zone.
What are the things that are most important for me in network setup?
-
I want my home network to be secure as much as it is possible, without affecting for example my parent phone or laptop in terms of ease of use of these devices (so that they do not need to regularly configure or change) and without greatly reducing speed of network (I have 1Gbps FTTH).
-
Top priority for security of network is my freshly set up Synology DS223 NAS, which safety is upmost priority for me (and is probably now the main reason of why I am doing changes to network). The catch is that I want to open it a little bit to internet, for example to use remote connection to it, or things like Synology Photos or Drive. I am often abroad and I would like to have possibility to access some files remotely on not-so-secure network like the ones in an hotels. So I am thinking about setting up some VPN or something, but I am still figuring it out.
So the main question is, considering all above, what should I configure, read about and try to set up to achieve it?
Thank you very much for your time in advance.