@tbowmo
Thats right.
But more imprtantly, the whole purpose of my signing development is to allow sensor nodes to trust the "sender". But this of course chains all the way to the controller, and with the MiOS tunnel, that chains outside the walls and then signing does not matter at all. Anybode with access to my MiOS account (which is hackable) can then access potentially my doorlock. And that would be...bad...
I know that MiOS intention is sort of honorable; easily provide remote access to your HA system. However, they should provide better support to opt-out of that option. If I wanted to access stuff remotely, I open a SSH tunnel with my two-factor authentication and then I have total access to my LAN.
But we are gliding off topic here @epierre basically answered my question and killed the overall topic since my query was if the current HW design could support this. If a much more gateway HW is required, then there are better alternatives to pursue.