Project Hearthmind
Hearthnet
A private network segment so the Spark is reachable at home without being exposed to the internet.
Progress
0% complete
Objective
What this quest sets out to do
Isolate the DGX Spark on its own VLAN with a household-only reverse proxy, so other devices can reach it locally and, later, securely from outside without opening the machine to the open internet.
Why it matters
Why Solystopia cares
Sovereignty fails at the network layer if the "private" machine ships every request through a third-party tunnel or sits on a flat home network next to every other device. Hearthnet is the quest that keeps the boundary real.
Components
What this is actually made of
Milestones
Where this quest stands
2026 Q1
VLAN segmentation designed
Planned2026 Q2
WireGuard remote access configured
PlannedOpen design questions
What is not yet decided
- Is a commercial mesh router acceptable for the household boundary, or does a self-hosted router OS (e.g. OPNsense) better match the sovereignty argument?
- How is remote access handled when the household is away — a permanent WireGuard tunnel, or no remote access at all by default?
- At what point, if any, does a second Spark and clustered fabric become justified for this specific household's workload?