VPN was never designed for tunneling all traffic. It was designed to get you virtually into a private network to allow access to computers there. There was never a promise of “full tunnel” by design. So what’s the brouhaha?
It most definitely does not state anything as such in the VPN configuration section of the settings app.
I have been a network administrator and have managed our company VPN networks (site to site, as well as client-site). I have considered "Virtual Private Network" to be a "not-physical private network" where one becomes part of that network (whether physical or virtual - since a VPN server can serve as a hub between various VPN clients/sites as well).
With the right settings, one can set up a VPN to carry DNS queries as well - thus effectively giving us a "full tunnel" by design?
Could you share your thoughts and point of view on the above?