@astrid but .. since worker nodes really have to reach the apiserver (and many workloads need to, too) and the apiserver is the most critical part ... not sure if that network separation is worth it for security reasons?
@astrid I see the benefits and this should work :)