Skip to content

[X.509] Multi-CA Trust via Label Selectors #897

@averevki

Description

@averevki

Summary

Test Authorino's fine-grained multi-CA trust capability via label selectors — demonstrating that AuthPolicy can trust multiple intermediate CAs independently, unlike the single root CA approach at the gateway level.

Setup

  • AuthPolicy trusting multiple intermediate CAs via label selectors
  • Multiple CA Secrets with different labels (e.g., ca-team-a, ca-team-b)

Tests

  • Client cert signed by CA with matching label → 200 OK
  • Client cert signed by CA without matching label → 403 Forbidden

References

Metadata

Metadata

Assignees

No one assigned

    Labels

    Test caseNew test caseenhancementImprovement to existing test

    Type

    No type

    Projects

    Status

    🆕 New

    Status

    No status

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions