I'm gonna post this for feedback one more time to see if anyone else has opinions. We'd like to replace 0.0.0.0/0 as the "internet" gateway range with a collection of ranges that omits the standard private IP space. This is what it would look like:
We think this will do better at avoiding collisions, and in testing will work with the current setup. You can test it right now by just copy/pasting that range into the egress gateway ranges. This is also apparently what wireguard already does for Android by default. Let us know if you have any thoughts on this.