As part of T297596: have cloud hardware servers in the cloud realm using a dedicated LB layer and T324992: cloudlb: create PoC on codfw, the cloudservices nodes should be reachable in the cloud-private vlan. This also has implications for T307357: Move cloud vps ns-recursor IPs to host/row-independent addressing.
But as of this writing they are physically connected to asw switches which makes that impossible (that vlan is cloud realm and only defined in cloud switches).
For now, the most simple / sensible way moving forward is to run an additional cable from the servers into cloudsw so we can enable cloud-private vlan on them and continue developing whatever service architecture with them.
In https://phabricator.wikimedia.org/T327919#8699523 there seems to be a switch port proposal:
|Existing port (keep)
|New Port (additional net new)