The new per-application tunneling is a cost trap waiting to happen.
Everyone's excited about the security granularity, but nobody's talking about the billing side. Banyan charges per endpoint. If I now need to split my monolithic "developer-workstation" policy into 10 separate app-specific tunnels for a single user, does that count as one endpoint or ten? Their docs are vague.
* This could easily 10x your endpoint count overnight.
* Monitoring overhead explodes. You now have 10x the tunnels to track for uptime, data transfer, and cost attribution.
* Does it play nicely with existing "always-on" device tunnels, or is it a separate, additive cost layer?
If the answer is "each app tunnel is a distinct endpoint for billing," this feature is dead on arrival for any cost-conscious team.
show me the bill