Basically, for internal infrastructure, where autossh wont work and/or where something simpler than ssh is desired.
So the strawmen arguments about it not replacing TLS is not the point.
stud, nginx, stunnel, f5 load balancers and cloudflare will still be needed for now, until 'moxie0 or someone comes up with a viable CA alternative AND something way, way simpler than TLS (brain-hurt ASN1, even with Wireshark).