Restrict some Ingresses to NYU
Using haproxy.org/whitelist
with the NYU IP ranges.
@diego-lopez8 did you get confirmation of the full NYU IP space?
Alternatively, we could make Ingresses be NYU-only by default, and require a special annotation to be public. It would probably improve our security, but is a big change. This can be done with Kyverno, or creating a separate ingress class.