Without it the WG can not exit from the read loop
Add default allow rules for input and output chains as part of the allownetbird call for userspace mode
Add netstack support for the agent to run it without privileges. - use interface for tun device - use common IPC for userspace WireGuard integration - move udpmux creation and sharedsock to tun layer