Kubernetes service unreachable from external hosts

I have an on-premise Kubernetes cluster running Calico as CNI. The cluster has been configured to peer with multiple BGP ToR routers. Thus the pod networks are reachable from outside. The service subnet is announced as well to make services available to external hosts. First tests showed that a connection to the services was possible […]