<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>Firezone Blog</title>
    <link>https://www.firezone.dev/blog</link>
    <description>Zero trust access announcements, networking deep dives, security analysis, and engineering notes from the Firezone team.</description>
    <language>en-us</language>
    <atom:link href="https://www.firezone.dev/blog/rss.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Action required: Windows MDM policies move to the machine scope in 1.5.13</title>
      <link>https://www.firezone.dev/blog/windows-1-5-13-mdm-update</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/windows-1-5-13-mdm-update</guid>
      <pubDate>Thu, 04 Jun 2026 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>Windows Client 1.5.13 reads MDM policy from the machine-scoped registry hive instead of the per-user hive. If you manage the Client with Intune or another MDM, learn how to import the updated ADMX template and migrate your policy.</p>]]></description>
    </item>
    <item>
      <title>The enterprise identity crisis: Who&apos;s Alice?</title>
      <link>https://www.firezone.dev/blog/the-enterprise-identity-crisis-part-one</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/the-enterprise-identity-crisis-part-one</guid>
      <pubDate>Mon, 11 May 2026 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>Alice signs in with Google and Okta. Same email address. Different identities. Which one got production access? In this post we answer this question and more by exploring the challenges of multi-provider identity in zero trust applications.</p>]]></description>
    </item>
    <item>
      <title>A New Look for Firezone</title>
      <link>https://www.firezone.dev/blog/new-ui-launch</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/new-ui-launch</guid>
      <pubDate>Tue, 14 Apr 2026 00:00:00 GMT</pubDate>
      <dc:creator>Brian Manifold</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>Announcing the new user interface for the Firezone portal, designed to be more intuitive, faster, and more accessible.</p>]]></description>
    </item>
    <item>
      <title>April 2026 Devlog</title>
      <link>https://www.firezone.dev/blog/devlog/2026-04</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/devlog/2026-04</guid>
      <pubDate>Thu, 30 Apr 2026 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>Filter-aware routing on clients fixes a long-standing overlapping-resource bug, the macOS menu bar app stays running under memory pressure, smarter RTT-aware relay selection, and improved Linux network-change detection.</p>]]></description>
    </item>
    <item>
      <title>March 2026 Devlog</title>
      <link>https://www.firezone.dev/blog/devlog/2026-03</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/devlog/2026-03</guid>
      <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>A 25% reduction in client and gateway CPU usage from connlib performance optimizations, Google Workspace group filtering for directory sync, and smaller fixes for DNS forwarding and relay reliability.</p>]]></description>
    </item>
    <item>
      <title>February 2026 Devlog</title>
      <link>https://www.firezone.dev/blog/devlog/2026-02</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/devlog/2026-02</guid>
      <pubDate>Sat, 28 Feb 2026 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>Faster sign-ins from distant regions via regional read replicas, automatic tunnel-service recovery on Windows and Linux, OS-native connection-failure notifications on clients, and browser-based authentication for headless clients.</p>]]></description>
    </item>
    <item>
      <title>January 2026 Devlog</title>
      <link>https://www.firezone.dev/blog/devlog/2026-01</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/devlog/2026-01</guid>
      <pubDate>Sat, 31 Jan 2026 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>Multi-region infrastructure with database read replicas and Postgres clustering. Portal performance improvements with Bandit HTTP server and WebSocket rate limiting. Enhanced partition tolerance for gateways and relays.</p>]]></description>
    </item>
    <item>
      <title>December 2025 Devlog</title>
      <link>https://www.firezone.dev/blog/devlog/2025-12</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/devlog/2025-12</guid>
      <pubDate>Wed, 31 Dec 2025 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>Major portal architecture refactor collapsing umbrella apps, authentication system restructuring, relay connection reliability improvements, and database performance optimizations.</p>]]></description>
    </item>
    <item>
      <title>November 2025 Devlog</title>
      <link>https://www.firezone.dev/blog/devlog/2025-11</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/devlog/2025-11</guid>
      <pubDate>Sun, 30 Nov 2025 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>DNS over HTTPS support, Swift 6.2 upgrade for Apple clients, Wayland support for the Linux GUI client, and various Gateway reliability improvements.</p>]]></description>
    </item>
    <item>
      <title>Nov 28 2025 Incident Post-Mortem</title>
      <link>https://www.firezone.dev/blog/2025-11-28-incident-post-mortem</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/2025-11-28-incident-post-mortem</guid>
      <pubDate>Fri, 28 Nov 2025 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>On November 28, 2025, a PII leak incident occurred affecting a small number of user names and email addresses. This post-mortem details the incident, its impact, and the steps we&apos;re taking to prevent future occurrences.</p>]]></description>
    </item>
    <item>
      <title>Scheduled Maintenance - December 6, 2025</title>
      <link>https://www.firezone.dev/blog/2025-12-06-scheduled-maintenance</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/2025-12-06-scheduled-maintenance</guid>
      <pubDate>Sat, 22 Nov 2025 00:00:00 GMT</pubDate>
      <dc:creator>Firezone Team</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>Firezone will undergo scheduled maintenance on Saturday, December 6, 2025 from 8:00 PM to 10:00 PM Pacific Time to roll out major improvements to authentication, directory sync, and user and group management. We expect only a few minutes of downtime.</p>]]></description>
    </item>
    <item>
      <title>October 2025 Devlog</title>
      <link>https://www.firezone.dev/blog/devlog/2025-10</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/devlog/2025-10</guid>
      <pubDate>Fri, 31 Oct 2025 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>October delivered substantial improvements to Gateway observability, Linux networking stack refinements, and new deployment mechanisms. This month&apos;s work focused on implementing comprehensive flow logging, addressing routing conflicts through tiered routing tables, and introducing native Debian packages for easier deployments.</p>]]></description>
    </item>
    <item>
      <title>September 2025 Devlog</title>
      <link>https://www.firezone.dev/blog/devlog/2025-09</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/devlog/2025-09</guid>
      <pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Engineering</category>
      <description><![CDATA[<p>September brought significant improvements to Firezone&apos;s networking stack, administrative tooling, and cross-platform reliability. This month&apos;s work focused on optimizing relay performance through eBPF, improving DNS resolution behavior, and enhancing the admin portal&apos;s visibility into client and Gateway states.</p>]]></description>
    </item>
    <item>
      <title>Migrate your Internet Resource by March 15, 2025</title>
      <link>https://www.firezone.dev/blog/migrate-your-internet-resource</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/migrate-your-internet-resource</guid>
      <pubDate>Sun, 16 Feb 2025 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>We&apos;re making some changes to the way Internet Resources work to improve security and performance. Migrate your Internet Resources by <strong>March 15, 2025</strong> to avoid any interruptions.</p>]]></description>
    </item>
    <item>
      <title>September 2024 update</title>
      <link>https://www.firezone.dev/blog/sep-2024-update</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/sep-2024-update</guid>
      <pubDate>Mon, 02 Sep 2024 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<div><div>In this update:</div><ul><li><strong>New feature:</strong> Internet Resources</li><li><strong>New feature:</strong> REST API Beta</li><li><strong>New feature:</strong> Improved wildcard matching for DNS Resources</li><li><strong>Blog post:</strong> <a href="https://www.firezone.dev/blog/sans-io">sans-IO: The secret to effective Rust for network services</a></li></ul></div>]]></description>
    </item>
    <item>
      <title>sans-IO: The secret to effective Rust for network services</title>
      <link>https://www.firezone.dev/blog/sans-io</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/sans-io</guid>
      <pubDate>Tue, 02 Jul 2024 00:00:00 GMT</pubDate>
      <dc:creator>Thomas Eizinger</dc:creator>
      <category>Learn</category>
      <description><![CDATA[<p>Firezone&apos;s data plane extensively uses the sans-IO design pattern. This post explains why we chose it and how you too can make use of it.</p>]]></description>
    </item>
    <item>
      <title>June 2024 update</title>
      <link>https://www.firezone.dev/blog/jun-2024-update</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/jun-2024-update</guid>
      <pubDate>Fri, 21 Jun 2024 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<div><div>In this update:</div><ul><li><strong>New feature:</strong> Conditional access policies</li><li><strong>Blog post:</strong> <a href="https://www.firezone.dev/blog/using-tauri">Using Tauri to build a cross-platform security app</a></li><li><strong>Blog post:</strong> <a href="https://www.firezone.dev/blog/improving-reliability-for-dns-resources">Improving reliability for DNS Resources</a></li><li>New <a href="https://www.firezone.dev/support">support</a> page for getting help with Firezone.</li><li>New <a href="https://www.firezone.dev/changelog">changelog</a> page with release notes for every component we ship.</li></ul></div>]]></description>
    </item>
    <item>
      <title>Improving reliability for DNS Resources</title>
      <link>https://www.firezone.dev/blog/improving-reliability-for-dns-resources</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/improving-reliability-for-dns-resources</guid>
      <pubDate>Thu, 20 Jun 2024 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>We&apos;re making some changes to the way DNS Resources are routed in Firezone. These changes will be coming in Client and Gateway versions 1.1 and later. Continue reading to understand how these changes will affect your network and what you need to do to take advantage of them.</p>]]></description>
    </item>
    <item>
      <title>Using Tauri to build a cross-platform security app</title>
      <link>https://www.firezone.dev/blog/using-tauri</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/using-tauri</guid>
      <pubDate>Tue, 11 Jun 2024 00:00:00 GMT</pubDate>
      <dc:creator>ReactorScram</dc:creator>
      <category>Learn</category>
      <description><![CDATA[<p>We chose Tauri over other frameworks because it was the fastest way to get the Firezone Client working on Linux and Windows.</p>]]></description>
    </item>
    <item>
      <title>How DNS works in Firezone</title>
      <link>https://www.firezone.dev/blog/how-dns-works-in-firezone</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/how-dns-works-in-firezone</guid>
      <pubDate>Wed, 08 May 2024 00:00:00 GMT</pubDate>
      <dc:creator>Gabriel Steinberg</dc:creator>
      <category>Learn</category>
      <description><![CDATA[<p>Firezone&apos;s approach to DNS works a bit differently than one might expect. One question we often get from new users is, &quot;why do my DNS Resources resolve to a different IP address with Firezone enabled?&quot;. Great question -- read on to find out.</p>]]></description>
    </item>
    <item>
      <title>May 2024 update</title>
      <link>https://www.firezone.dev/blog/may-2024-update</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/may-2024-update</guid>
      <pubDate>Wed, 01 May 2024 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<div><div>In this update:</div><ul><li><strong>New feature:</strong> Traffic restrictions</li><li>Blog: <a href="https://www.firezone.dev/blog/how-dns-works-in-firezone">How DNS works in Firezone</a></li><li>Connectivity and reliability improvements</li></ul></div>]]></description>
    </item>
    <item>
      <title>April 2024 update: GA</title>
      <link>https://www.firezone.dev/blog/apr-2024-update</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/apr-2024-update</guid>
      <pubDate>Mon, 01 Apr 2024 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>Firezone <a href="https://www.firezone.dev/blog/apr-2024-update">1.0 GA is now available</a>! Also in this update:</p><ul><li>Firezone 1.0 signups are <a href="https://app.firezone.dev/sign_up">now open</a></li><li>New Team plan with self-serve billing</li><li>Clients available for Windows, macOS, iOS, Android, and Linux</li><li>Network roaming support</li></ul>]]></description>
    </item>
    <item>
      <title>March 2024 update</title>
      <link>https://www.firezone.dev/blog/mar-2024-update</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/mar-2024-update</guid>
      <pubDate>Fri, 01 Mar 2024 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[ <p>Firezone <a href="https://www.firezone.dev/blog/mar-2024-update">1.0.0-pre.9 is released</a>! In this update:</p><ul><li>Windows and Linux betas</li><li>Directory sync for Microsoft Entra ID and Okta</li><li>Improved performance and stability</li></ul>]]></description>
    </item>
    <item>
      <title>January 2024 update</title>
      <link>https://www.firezone.dev/blog/jan-2024-update</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/jan-2024-update</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>Happy new year from the Firezone team!</p><p>After a long year of building, we&apos;re incredibly excited to announce 1.0 beta testing for Apple and Android platforms. Firezone 1.0 is an entirely new product with a brand new architecture that includes many of the features you&apos;ve been asking for. To summarize just a few:</p>]]></description>
    </item>
    <item>
      <title>Enterprises choose open source</title>
      <link>https://www.firezone.dev/blog/enterprises-choose-open-source</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/enterprises-choose-open-source</guid>
      <pubDate>Wed, 06 Dec 2023 00:00:00 GMT</pubDate>
      <dc:creator>Jeff Spencer</dc:creator>
      <category>Insights</category>
      <description><![CDATA[<p>More enterprises are turning to open source software (OSS) to reduce costs, improve efficiency, and extend their competitive advantage. The core technologies chosen by organizations often persist for decades, so decisions that IT leaders make today are bound to affect their organizations’ ability to function and adapt in the future — whether that’s one year, or 10.</p>]]></description>
    </item>
    <item>
      <title>Secure remote access makes remote work a win-win</title>
      <link>https://www.firezone.dev/blog/secure-access</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/secure-access</guid>
      <pubDate>Fri, 17 Nov 2023 00:00:00 GMT</pubDate>
      <dc:creator>Jeff Spencer</dc:creator>
      <category>Insights</category>
      <description><![CDATA[<p>The number of employees working remotely is accelerating, so secure remote access should be a large part of any organization’s cybersecurity strategy. Secure remote access lets remote and hybrid employees work from anywhere in the world, on any device, without compromising your organization’s network, data, and system security.</p>]]></description>
    </item>
    <item>
      <title>Firezone 1.0</title>
      <link>https://www.firezone.dev/blog/firezone-1-0</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/firezone-1-0</guid>
      <pubDate>Sat, 15 Jul 2023 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>Firezone comes from humble roots.</p><p>When we launched on Hacker News nearly two years ago, we never envisioned Firezone to be more than a simple tool for managing your WireGuard configurations.</p>]]></description>
    </item>
    <item>
      <title>Release 0.6.0</title>
      <link>https://www.firezone.dev/blog/release-0-6-0</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/release-0-6-0</guid>
      <pubDate>Mon, 17 Oct 2022 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>Today, I&apos;m excited to announce we&apos;ve closed the first public issue on our GitHub repository, more than a year after it was originally opened: Containerization support! We&apos;re also releasing preliminary support for SAML 2.0 identity providers like Okta and OneLogin.</p>]]></description>
    </item>
    <item>
      <title>Release 0.5.0</title>
      <link>https://www.firezone.dev/blog/release-0-5-0</link>
      <guid isPermaLink="true">https://www.firezone.dev/blog/release-0-5-0</guid>
      <pubDate>Mon, 25 Jul 2022 00:00:00 GMT</pubDate>
      <dc:creator>Jamil Bou Kheir</dc:creator>
      <category>Announcement</category>
      <description><![CDATA[<p>As the first post on our new blog, we thought it&apos;d be fitting to kick things off with a release announcement. So without further ado, we&apos;re excited to announce: Firezone 0.5.0 is here! It&apos;s packed with new features, bug fixes, and other improvements — more on that below.</p>]]></description>
    </item>
  </channel>
</rss>
