Onboard a Foundry Workload to the Governance Hub
Connect a Foundry workload spoke to shared governance by registering its AI assets, publishing approved runtime endpoints through API Management, authorizing hub-to-spoke paths, and correlating gateway and workload telemetry.
Architecture
Core capabilities
-
Register the APIs, tools, agents, skills, and ownership metadata that the workload consumes or exposes through the central catalog
-
Publish approved workload endpoints through the governed runtime boundary and prevent unintended direct access to protected backends
-
Authorize builder, gateway, application, and agent identities independently at each hub-to-spoke boundary
-
Preserve request and consumer correlation as traffic crosses the central gateway into the workload
-
Correlate gateway evidence with application, agent, model, retrieval, and tool execution traces inside the workload spoke
Supporting capabilities 3
-
Carry assessment and conformance evidence into the approval decision before endpoints are published for reuse
-
Publish approved MCP and A2A interfaces through supported gateway contracts when the workload exposes those protocols
-
Permit only the private or otherwise approved network paths required between hub services and workload dependencies