Skip to content

a2a: TLS upstream agents via caCertSecretRef #7

Description

@Aman-Cool

A2AAgentRegistration has no caCertSecretRef, so an upstream agent serving TLS with a private CA can't be registered — MCPServerRegistration supports this (labeled CA secret, PEM validation, size cap, http->https scheme upgrade). Port the same field and machinery once there's a demand signal ; deliberately excluded from the steel thread (#3) as breadth. The MCP implementation is directly reusable, including validateCACertPEM.

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions