Skip to main content
← Back to list
01Issue
BugShippedSwamp CLIPublic
Assigneeshammz

Relationships

#2360 workflow run and model method run reject --ca-cert, but their TLS error tells users to pass it

Opened by hammz · 9/22/2026· Shipped 9/28/2026

Summary

Most commands that take --server accept --ca-cert (via withRemoteOptions), but swamp workflow run and swamp model method run define --server themselves and do not. Their TLS failure message still recommends the flag, so following it fails.

Reproduction (v20260922.185723.0-sha.33229b53, serve with a self-signed CA)

swamp model method run hello execute --server wss://127.0.0.1:19443 --token admin.x
Error: TLS certificate rejected: the server's certificate issuer is not trusted. If using a self-signed certificate, pass it with --ca-cert /path/to/cert.pem or set SWAMP_CA_CERT=/path/to/cert.pem

swamp model method run hello execute --server wss://127.0.0.1:19443 --token admin.x --ca-cert ./ca.pem
error: Unknown option "--ca-cert". Did you mean option "--quiet"?

The same applies to swamp workflow run. SWAMP_CA_CERT works for both.

Expected

swamp workflow run and swamp model method run accept --ca-cert like the other --server commands (the access commands, auth login and repo init also define --server without it), or the error message only suggests what the command accepts.

02Bog Flow
✓OPEN✓TRIAGED✓IN PROGRESS✓SHIPPED+ 1 MOREASSIGNED+ 2 MOREREVIEW+ 7 MOREPR_MERGED+ 2 MORESESSION_SUMMARIZED

Shipped

9/28/2026, 6:56:46 PM

Click a lifecycle step above to view its details.

03Sludge Pulse
hammz assigned hammz9/28/2026, 6:21:35 PM

Sign in to post a ripple.