As part of testing this for a small Envoy deployment, we noticed that the current implementation of forward_auth() specifies that the request must be of the GET Method type.
This is fine for the default traefik configuration, as the configuration for forward auth specified preserveRequestMethod as defaulting to false, converting any request to a GET request to the backend.
However, Envoy (and in turn EnvoyGateway, kgateway, agentgateway...) don't have that as an option, and thus a request to another method (like POST, DELETE, PUT...) will fail with a 405 Method Not Allowed.
As part of testing this for a small Envoy deployment, we noticed that the current implementation of
forward_auth()specifies that the request must be of theGETMethod type.This is fine for the default
traefikconfiguration, as the configuration for forward auth specified preserveRequestMethod as defaulting tofalse, converting any request to a GET request to the backend.However, Envoy (and in turn EnvoyGateway, kgateway, agentgateway...) don't have that as an option, and thus a request to another method (like POST, DELETE, PUT...) will fail with a
405 Method Not Allowed.