Lachlan Roche is a network engineer at Serverside.com, where he manages the Arista backbone and the company's public IPv4 and IPv6 address space. He designed and operates the real-time monitoring that gives the team gNMI-based visibility into routing, interfaces and system health across global operations, plus a Syslog-to-Loki pipeline that centralizes network device logs.
He has spent his career operating and automating production networks at scale (multi-POP, multi-vendor environments spanning Juniper, Arista, Cisco and Fortinet) with a focus on BGP transit and peering, traffic engineering and IPv6 rollout. Alongside Serverside he works as a systems and network engineer at Sparked Host, automating hundreds of servers across eight locations with Python and Ansible.
Lachlan also runs his own autonomous system, AS25735 (Sloth Networks), working directly with transit providers and internet exchanges on routing policy, RPKI validation and peering strategy. He writes hands-on networking guides here: VyOS routing, WireGuard site-to-site VPNs and the practical side of running production networks on bare metal.
Areas of expertise
- BGP routing, transit and peering
- IPv4 and IPv6 backbone operations
- Network automation with Python and Ansible
- Network telemetry and monitoring (gNMI, Prometheus)
- Multi-vendor data center networking (Juniper, Arista, Cisco)
Articles by Lachlan Roche

December 01, 2025
by Lachlan Roche
Building a Flexible Router/VPN Backbone with VyOS, From Scratch to VPS Edition
Networking can feel intimidating at first, but with the right approach you can turn a simple virtual server into a capable routing backbone that spans from your home lab to a cloud VPS. This guide walks through building such a topology using VyOS. By the end you will have a home router, a public VPS router, a secure tunnel between them, and routing for multiple internal subnets.
Networking
Read more

October 29, 2025
by Lachlan Roche
Secure Site-to-Site VPN with WireGuard on VyOS 1.5 for Inter-Site Connectivity
Connecting multiple office sites or datacenters securely and efficiently is a critical challenge for modern businesses. Traditional VPN solutions like IPsec or OpenVPN can be complex to configure and maintain, especially in multi-site environments. WireGuard offers a lightweight, fast alternative that's easier to set up. VyOS 1.5 fully supports WireGuard, making it an excellent choice for organizations looking to interconnect multiple datacenters or sites. In this guide, we'll show you how to set up a site-to-site WireGuard tunnel on VyOS 1.5. We'll cover routing, firewall configuration, and best practices. By the end, your sites will be securely connected over the internet with traffic routed effectively between LANs.
Networking
Read more
