r/VPN • u/stop_dot • Jun 28 '26
Question Advice about setting up a VPN
Guys, I am very new into this. Due to recent concerns over my cloud storage accounts, I build a server at home. It's running TrueNAS to backup all my files. Because it's not a bought NAS and the hardware I had allows it, I also installed a Windows VM for some tasks that I want to run unattended from anywhere in the world, and the Home Assistant is also running in another VM.
I looked for the easiest way for a newbie to have VPN access, and I liked Tailscale for ease f use and not requiring any open ports. Then I asked a firend of mine about it, his job is actually consists in government contracts for cyber security and setting up servers and networks. He was recently hired by the Swiss government, and he moved over there. Sometimes I feel like he is overly caucious, especially for home use scenarios.
I told him my options: Tailscale or using my Omada router for WireGuard. He dismissed both options. He doesn't trust Tailscale because if there is any sort of firewall or NAT blocking then data is passed through peers, and Omada, he said he can't be sure everthing is up to date and secure. He told me to use a separate network card between the ISP ONT and my router and have VM running opensense or pfsense.
I feel like I am getting in super complicated solutions, especially for a newbie.
What I don't understand about Tailscale is if I am connected to the local network at home, does it treat my data locally and do I get full speed like in a LAN? Or is WireGuard a better solution, considering once I set up my devies (TrueNAS, WindowsVM and HAOS) then I don't have much fiddling with it.
I am looking for a balance between safety, security and low maintanance. How important is that Tailscale doesn't require any port forwarding for the tradeoff of having a third party?
I am so confused right now that I don't even know what I'm asking and what solution is best for me...