Hey @gpotti,
I’m sorry, I’m not able to answer your specific blocker. Hopefully someone else can chime in.
I can answer:
You have mentioned that “how to expose a service from your local kubernetes to your wider network” is the way to go. But could you let us know which service should we target to expose? Is it the “istio-ingressgateway-workload” which has the external ip 10.64.140.43 or should it be the “istio-ingressgateway” service. Please clarify.
Your instincts were correct - you want to expose the istio-ingressgateway-workload
(the one that gets an external IP). That is the workload that actually functions as the ingress