You can use different manufacturers, just make sure they are the SAME size and speed. You can also get the same ones from the same vendor, just from different online shops to try and offset getting a bad batch.
You can use CF Tunnel so you don't need to expose any ports from your router. They'll also do SSL termination for you as well. You can use their free plan for this AFAIK.
You can also run your own SSL proxy as well with HAProxy or Nginx.
I'd just use CF, it's easier TBH.
Pain is your body's way of staying stop. Doing your own carpentry tends to override this response 🤣