You seem to have almost everything under control and already planned. For the VPN I’d suggest Tailscale since it’s the easiest VPN to set up (if you don’t have a public IP). You can do a lot of things with it, but if you only want the basics, then there’s not much reading to do. Some people recommend ZeroTier, but I havent tried it, tbh.
BTW, I would keep in mind that Tailscale is planning to go IPO (if you care about that):
I mean, Mexico has never been a beacon of privacy or regulations (just for super specific technologies that were implemented first, mostly banking ones), but the government has also been pushing weird changes to how they handle surveillance and personal identifications, giving more power to the authorities while they’re exempt for most of the transparency laws (everything they do, even public infrastructure is managed as some kind of ‘state secret’).
I am scared.