What if you rent a bare metal server in a data center? Or rent a VPS from a basic provider that expects you to do your own firewalling? Or run your home lab docker host on the same vlan as other less trusted hosts?
It would be nice if there was a reliable way to run a firewall on the same host that’s running docker.
You may say these are obscure use cases and that they are Wrong and Bad. Maybe you’re right, but personally I think it’s an unfortunate gap in expected functionality, if for no other reason than defense-in-depth.





I’m a month in as my daily driver, and much the same experience as you. I’ll be sticking with it despite a few shortcomings.
Regarding the sleep power consumption, I’m interested to know what you find. Im plugging it in overnight in the meantime.
Regarding the USBC ports, does the mismatched functionality reset with a reboot? I’m finding that my HP USB-C dock sometimes brings a port down, particularly if I plug and unplug multiple times while sleeping, and then switching ports (or even just flipping the connector) can fix it. A reboot always fixes it all though. I updated my dock firmware and so far it is much improved so maybe it’s more about my dock.