Gabi
Gabi
> > > > Also we need to make a new compatibility entry, clients after #6335 will need to have gateways after this PR > > > > > >...
@jamilbk Fixed here 
@jamilbk ready for another review
> Summary from discussion with @AndrewDryga: > > We only ever want to authorise each resource once, even if it is just a wildcard resource, otherwise we'll see quite a...
> Thinking more about it, it might be better to buffer explicitly and wait for a response. That way, the experience is guaranteed to always be the same, regardless of...
> So the proptests just found a "bug": Sending multiple DNS queries to a resolver through the tunnel drops all later ones because they get discarded during the throttling of...
> > > Should we buffer more than 1 packet here per intent? Should we make that specific to UDP & ICMP and only buffer the first one for TCP?...
> So after much testing, I think I've discovered the issue. We do successfully replay buffered packets into the tunnel, but the replies are not received by the application for...
I could have missed something in this conversation, in `/etc/resolv.conf`(or platform-equivalent) we replace the non-firezone search domains? I think It'd make sense that we try to capture the previously set...
> @conectado Do you have some commits that could be pushed onto this PR? I quickly threw #6654 together, to see if it fixed the bug but since we never...