Skip to main content

TLS Support For Phoenix Server

Phoenix now supports Transport Layer Security (TLS) for both HTTP and gRPC connections, enabling encrypted communication and optional mutual TLS (mTLS) authentication. This enhancement provides a more secure foundation for production deployments.

Highlights:

  • Secure HTTP & gRPC Connections: Phoenix can now serve over HTTPS and secure gRPC.
  • Flexible TLS Configuration: TLS settings are managed via environment variables.
  • Optional Client Verification: Support for mTLS with configurable client certificate validation.
  • Improved Testing: TLS-aware infrastructure added to integration tests.
  • Better Visibility: Server startup logs now display TLS status.

Configuration Options

Set the following environment variables to enable and customize TLS:
Note: Encrypted private keys require the cryptography Python package for decryption.

feat: environment variables for TLS by RogerHYang · Pull Request #7296 · Arize-ai/phoenix

GitHub