What problem does it solve? Changing a home or small-lab network that mixes VLANs, Pi-hole DNS filtering, firewall rules, and VPN access can lock the operator out of the gateway, switch, or DNS resolver. This Skill turns an informal network idea into a staged, reversible migration plan with validation evidence and rollback steps. ## Core Features & Use Cases - Readiness Inventory: Collects required facts about the internet edge, gateway, switching, Wi-Fi, addressing, DNS/DHCP, management access, and recovery paths before any change. - Trust-Zone and VLAN Planning: Defines trusted, server, IoT, guest, management, and VPN zones with default-deny firewall policies and named exceptions. - DNS and VPN Readiness: Introduces Pi-hole or another local resolver without creating a single point of failure, and scopes WireGuard-style remote access with narrow routes and revocable keys. - Use Case: Before splitting a flat home network into IoT and trusted VLANs, use this Skill to produce a staged change sequence, per-step validation checks, and a documented rollback path. ## Quick Start Ask the assistant to review your planned homelab network segmentation and produce a staged migration plan with validation and rollback steps.