On the other hand this stuff really isn't rocket science and shouldn't be as complicated as we are making it.
This looks more like something in the spirit of systemd-nspawn plus templates if I'd compare it to the Linux domain.
Yes, of course, there are ways around that, but it just doesn’t make economical sense for most organizations.
https://www.daemonology.net/blog/2018-12-26-the-many-ways-to...
I run a research cluster, and here’s how I built it.
Firewall+DNS= OpenBSD(pf)
File server(NFS) = FreeBSD (ZFS)
Compute nodes = Fedora latest with some optimizations.
Identity provider = CentOS( FreeIPA)
Database server = CentOS(Postgres)
Web servers = CentOS podman(nginx)
FreeBSD for ZFS fileserver has been solid and dependable like nothing I have ever worked with before - it is hard to believe that it is free in cost and open source. I probably would not even think about running FreeBSD for compute nodes because it is not its thing.... almost all research software in the wild are being written with Linux in mind.
This feature seems to be missing here.