Zero-Trust Edge Routing: Connecting Public VPS Endpoints to Homelab Cores via WireGuard and Caddy
A production architecture guide for routing public HTTPS web traffic from a cheap cloud edge VPS back to an unexposed residential homelab core using WireGuard kernel tunnels, Caddy reverse proxies, and strict MTU optimization.