Send traffic filter down to clients as part of the resources #4789
Labels
area/connlib
Firezone's core connectivity library
area/portal
Portal, panel, web, control plane, you name it!
Solves #2030 (comment)
The idea is, we request access to the gateway, based not only the IP but also on the port.
Ideally, we can send traffic for ports that aren't allowed within our resources back into the kernel to go out the appropriate network card (though I think this might lead to a routing loop so we might need to drop them)
With this we can also multi site resources with conflicting routes but non-conflicting ports.
The text was updated successfully, but these errors were encountered: