How can I prevent Harvester workloads from being accidentally exposed to the public internet?
In a Harvester deployment, administrators need to guarantee that newly created virtual machines and container workloads remain reachable only within the trusted internal network. The default installation does not automatically block external exposure mechanisms such as LoadBalancer services, NodePorts, or ingress controllers, which could lead to unintended p