Daniel Micay
Daniel Micay
> but now that you have mentioned it, the VPN lockdown mode ("block connections without VPN") breaks this functionality It's currently intentional that it does this It can be worked...
> What would cause the checkbox to make a built-in IPsec VPN profile 'always-on' be greyed out? It's not relevant to it.
@graphener Wi-Fi captive portals are detected by connectivity checks with a VPN active and the OS captive portal handling bypasses the VPN automatically. If you want to have applications bypass...
The captive portal app is supposed to bypass the VPN similar to connectivity checks.
VPNs can already allow local traffic if they do it properly.
> Mullvad states that VPNs can't work around "Block connections without VPN" to provide local network sharing. That's not true. They can route the traffic themselves. > That was my...
> So like—reflected back to the VPN client, if the traffic is determined to be destined for a subnet 'local' to said client?! Jesus christ. Whatta mess. I don't know...
You're misunderstanding what was stated. If Mullvad wants to make a feature for enabling local traffic to bypass the VPN while blocking non-VPN connections is done, they can do that...
We don't need a carrier override for this, we can just make sure the Wi-Fi calling toggle is always available.
@mar0ni That's a different issue and https://github.com/GrapheneOS/os-issue-tracker/issues/4487 can be used to track it.