i dont want to leave my prometheus (metrics, not dashboard) endpoints unsecured and i cant decide which layer i should implement it on so i'll just do whatever the result of this poll is gonna be
oauth2
LDAP??
route between VRFs with bird2 and hope no one gets into the network namespace
tun/tap wireguard p2p interfaces per namespaced systemd service squared (been there, done that)
mTLS (by abstracting lego with nix)
mTLS but cert-manager in k8s
Poll ended at .
