0

Actually, I have two questions, but firstly I'm just started to study istio...

It is possible to enable mtls authentication on egress pod? I tried to apply PeerAuthentication in mtls STRICT mode on egress service, but envoy still allows for http traffic.

And also, it's possible to apply a DestinationRule to a http traffic from ingress to make it mTLS? I also tried to apply the dsr on ingress service with mode ISTIO_MUTUAL or MUTUAL (with custom secret), but traffic is still http... Can it be related to Citadel (enabled/disabled)?

ldoctori
  • 1
  • 1

0 Answers0