In case of "zero trust network" the answer is no it doesn't violate.
With WireGuard or TailScale/CloudFlare/etc you still know/verify identity of every person/device that has access to the (virtual and through it real) network.