When this config option was created, it was as part of an OSSA/CVE and
non-disruptiveness was the #1 priority. Now that we're well past that,
we need to make this a good default -- rather than one that just
describes existing downstream use cases.
Operators who need the existing paths should update their config.
Change-Id: I29f24490d97026bd039c667b9de0610131ea48ee
Signed-off-by: Jay Faulkner <jay@jvf.cc>