Network Insights

Network Insights

Expert perspectives on MikroTik, OpenWRT, and IoT network management.

Could USP / TR-369 Use a WireGuard-Style Noise Transport? What the Standard Allows Today
Standards11 min read
Featured
TR-369USPWireGuard
Karim Ouazmir· Co-founder & CTOApril 8, 2026

Could USP / TR-369 Use a WireGuard-Style Noise Transport? What the Standard Allows Today

A source-backed engineering read on whether a Noise- or WireGuard-inspired transport can fit USP / TR-369, where the current standard stops, and what a real extension would need.

Read more →
STUN-Like WireGuard Coordination: What Wantastic Can Open-Source Without Giving Away the Entire Control Plane
Architecture
12 min read
Karim OuazmirApr 7, 2026

STUN-Like WireGuard Coordination: What Wantastic Can Open-Source Without Giving Away the Entire Control Plane

How a STUN-like rendezvous layer fits around WireGuard, why direct P2P still wins, and where licensing really influences the decision to open-source coordination code.

WireGuardSTUNICE
Why Weak IoT Protocol Stacks Become Global Botnets
Security
12 min read
Adnane Ait ZaidApr 6, 2026

Why Weak IoT Protocol Stacks Become Global Botnets

Mirai, BADBOX 2.0, and recent FBI / CISA warnings all point to the same pattern: insecure protocols plus weak device defaults turn cheap edge hardware into internet-scale attack infrastructure.

IoTBotnetsTelnet
Zero-Hop Remote Winbox Access: How Wantastic Eliminates Port 8291 Exposure
Technology
9 min read
Karim OuazmirMar 10, 2026

Zero-Hop Remote Winbox Access: How Wantastic Eliminates Port 8291 Exposure

How a purpose-built overlay network routes Winbox sessions without exposing a single public port — and why P2P matters more than you think.

WinboxMikroTikRemote Access
NAT, CGNAT, and UDP Hole Punching: How wantasticd Enables P2P Through Any Network
Networking
11 min read
Karim OuazmirMar 1, 2026

NAT, CGNAT, and UDP Hole Punching: How wantasticd Enables P2P Through Any Network

A plain-language guide to NAT types, carrier-grade NAT, and UDP hole punching — and how wantasticd achieves P2P connectivity even behind symmetric CGNAT.

NATCGNATHole Punching
wantasticd P2P Throughput: 2.72 Gbits/sec Measured Over a Custom WireGuard Overlay
Performance
10 min read
Karim OuazmirFeb 20, 2026

wantasticd P2P Throughput: 2.72 Gbits/sec Measured Over a Custom WireGuard Overlay

Real iperf3 results from the wantasticd open-source repository: 2.72 Gbits/sec container-to-container P2P, zero retransmissions, using a custom WireGuard implementation with native TUN routing.

PerformanceWireGuardP2P
Zero-Trust Networking for Network Administrators: Fleet Control, Concurrent Access, and Post-Quantum Security
Security
10 min read
Adnane Ait ZaidFeb 8, 2026

Zero-Trust Networking for Network Administrators: Fleet Control, Concurrent Access, and Post-Quantum Security

How zero-trust architecture replaces implicit network trust, why it matters for distributed router fleets, and how multiple engineers work simultaneously without shared credentials.

Zero-TrustSecurityMikroTik
Network Insights