50ce1a5e83
* Initial plan * Fix insecure TLS configuration - make secure by default - Changed util/tls/Config() to be secure by default (InsecureSkipVerify=false) - Added MICRO_TLS_INSECURE=true environment variable for development/testing - Updated documentation to emphasize security-first approach - Added comprehensive tests for TLS configuration - All existing broker tests pass Co-authored-by: asim <17530+asim@users.noreply.github.com> * Revert to backward-compatible TLS defaults to avoid breaking changes - Reverted default to InsecureSkipVerify=true for backward compatibility - Changed environment variable to MICRO_TLS_SECURE=true (opt-in security) - Added deprecation warning that logs once per process - Updated tests to reflect backward-compatible behavior - Added comprehensive migration guide - No breaking changes - production systems safe to upgrade - Security improvement is opt-in via environment variable - Planned breaking change for v6 with proper major version bump Co-authored-by: asim <17530+asim@users.noreply.github.com> * Add TLS security update documentation Co-authored-by: asim <17530+asim@users.noreply.github.com> --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com> Co-authored-by: asim <17530+asim@users.noreply.github.com>