2c32ec0f3a
A *.example.com wildcard host now chooses between two routing modes: - wildcard_matchAny=false (default): only subdomains explicitly defined in redis route; undefined subdomains get no match (406) - wildcard_matchAny=true: any subdomain catches-all to the wildcard parent host, preserving the previous behavior The gate lives in the host_lookup socket service, which is only reached for domains missing a direct redis entry, so defined children and **-style hosts are unaffected. Adds the matching-mode selector to the host add/edit form, shown for wildcard hosts. Note: existing wildcard hosts have no wildcard_matchAny field and so default to the stricter "only defined" mode until re-saved. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>