Code RoomZero-trust VPN mesh
HardPrep Room Coding #3807

Zero-trust VPN mesh

System designSecurityNetworking & APIsSenior–Staff~45 min

Design a managed VPN / secure-tunnel service (a mesh overlay like a WireGuard-based zero-trust network) connecting 500k client devices and 50k servers across many private networks. You need encrypted point-to-point tunnels, sub-100 ms added latency, key rotation, and a control plane that programs who-can-reach-whom. How do you separate control and data planes, route packets, and handle key distribution?

What a strong answer looks like

Clarify scale and constraints first. Propose a clean component breakdown, then go deep on the hard parts (data model, bottlenecks, consistency, failure modes) and name the trade-offs you are making.

Clarify5:00 left
Estimate5:00 planned
Design15:00 planned
Deep dive12:00 planned
Failure8:00 planned
0:00
Which questions mattered is sealed until you submit. Telling you now would just be handing over the edge cases.