My next adventure is going even further into the budget realms. My router setup is working just fine but I had to do so many workarounds to do what I wanted.
First I had to double nat via the eero as mentioned before.
Next I wanted to set up a split tunnel VPN for a subnet. Well the Asus couldn't do that. VPN set up was a piece of cake but static routes can only point to an IP address, not a tunnel. And VPN config only allows you to assign devices - so its all or nothing for a given device! So I set up the VPN client on my Synology NAS, used the router to create a static route for the subnet to the NAS and then use the NAS to reroute via the VPN, easy and performant cos the NAS has 2 wired NICs and runs Linux inside so it was probably under 5 minutes using SSH.
Then I figured I may as well get use out of the NordVPN subscription I'm paying for and set that up, using device assignments. Well it worked great but also assigned other devices (like the NAS) and I couldn't unassign them. While I do use it as a low(ish) volume home NAS its main purpose in life is to receive backups over the internet, it doesn't actually need to connect out to anything. But NordVPN broke this - so I had to turn it off (I also cancelled auto renew

).
I had decided to live with what I had because it does work, and most high end consumer devices are ridiculously expensive and you're paying for gaming perfomance, flashing LEDs and an easy setup via a phone app (none of which I need), and still can't perform basic routing (which I do need). The other alternative is a pro router - but they don't come cheap, or build my own.
Then I spotted these on special
https://www.amazon.co.uk/Cudy-WR3000-MU-MIMO-WireGuard-OpenVPN/dp/B0BRK3CYY3
I can live with that as a zero risk (I have a working system) and no regrets option. So I ordered a couple. Not sure that I will need to install OpenWRT - but I have the option, and it might be fun to get my hands dirty. I know its only dual band and limited by the processor but I reckon performance will be at least as good as my early AX setup which cost me ten times as much - and is good enough for my performance needs.