tailscale/wgengine/router
Nick Khyl 9e1c86901b wgengine\router: fix the Tailscale-In firewall rule to work on domain networks
The Network Location Awareness service identifies networks authenticated against
an Active Directory domain and categorizes them as "Domain Authenticated".
This includes the Tailscale network if a Domain Controller is reachable through it.

If a network is categories as NLM_NETWORK_CATEGORY_DOMAIN_AUTHENTICATED,
it is not possible to override its category, and we shouldn't attempt to do so.
Additionally, our Windows Firewall rules should be compatible with both private
and domain networks.

This fixes both issues.

Fixes #11813

Signed-off-by: Nick Khyl <nickk@tailscale.com>
2024-04-19 15:43:15 -05:00
..
callback.go wgengine/router: implement UpdateMagicsockPort for CallbackRouter (#10494) 2023-12-07 10:45:14 -05:00
ifconfig_windows.go wgengine\router: fix the Tailscale-In firewall rule to work on domain networks 2024-04-19 15:43:15 -05:00
ifconfig_windows_test.go all: use Go 1.22 range-over-int 2024-04-16 15:32:38 -07:00
router.go cmd/tailscaled: move cleanup to an implicit action during startup 2024-04-09 12:44:08 -07:00
router_darwin.go cmd/tailscaled: move cleanup to an implicit action during startup 2024-04-09 12:44:08 -07:00
router_default.go cmd/tailscaled: move cleanup to an implicit action during startup 2024-04-09 12:44:08 -07:00
router_fake.go util/linuxfw, wgengine: allow ingress to magicsock UDP port on Linux (#10370) 2023-12-05 18:12:02 -05:00
router_freebsd.go cmd/tailscaled: move cleanup to an implicit action during startup 2024-04-09 12:44:08 -07:00
router_linux.go wgengine/router: don't attempt route cleanup on Synology 2024-04-15 09:49:25 -07:00
router_linux_test.go all: use Go 1.22 range-over-int 2024-04-16 15:32:38 -07:00
router_openbsd.go cmd/tailscaled: move cleanup to an implicit action during startup 2024-04-09 12:44:08 -07:00
router_test.go all: use Go 1.22 range-over-int 2024-04-16 15:32:38 -07:00
router_userspace_bsd.go util/linuxfw, wgengine: allow ingress to magicsock UDP port on Linux (#10370) 2023-12-05 18:12:02 -05:00
router_windows.go wgengine\router: fix the Tailscale-In firewall rule to work on domain networks 2024-04-19 15:43:15 -05:00
router_windows_test.go wgengine/router: look up absolute path to netsh.exe on Windows 2024-01-10 20:20:19 -05:00
runner.go all: update copyright and license headers 2023-01-27 15:36:29 -08:00