- Getting started
- Notifications
- Licensing
- Troubleshooting
- Coding agents
- Connector Builder
- Act! 365
- ActiveCampaign
- Active Directory - Preview
- Adobe Acrobat Sign
- Adobe PDF Services
- Agent 2 Agent - Preview
- About the Agent 2 Agent connector
- Agent 2 Agent authentication
- Agent 2 Agent events
- Amazon Bedrock
- Amazon Connect
- Amazon Polly
- Amazon SES
- Amazon Transcribe
- Amazon Web Services
- Anthropic Claude
- Asana
- AWeber
- Azure AI Document Intelligence
- Azure Defender for Cloud
- Azure Maps
- BambooHR
- Box
- Brevo
- Calendly
- Campaign Monitor
- Cisco Webex Teams
- Citrix Hypervisor
- Citrix ShareFile
- Clearbit
- Confluence Cloud
- Constant Contact
- Coupa
- CrewAI – Preview
- Customer.io
- Database Hub
- Databricks Agent
- Datadog
- DeepSeek
- Deputy
- Discord - Preview
- DocuSign
- Drip
- Dropbox
- Dropbox Business
- Egnyte
- Epic FHIR - Preview
- Eventbrite
- Exchangerates
- Exchange Server - Preview
- Expensify
- Facebook
- Freshbooks
- Freshdesk
- Freshsales
- Freshservice
- GetResponse
- GitHub
- Gmail
- Google Cloud Platform
- Google Docs
- Google Drive
- Google Forms - Preview
- Google Maps
- Google Sheets
- Google Speech-to-Text
- Google Text-to-Speech
- Google Tasks - Preview
- Google Vertex
- Google Vision
- Google Workspace
- GoToWebinar
- Greenhouse
- Hootsuite
- HTTP
- HTTP Webhook
- Hubspot CRM
- HubSpot Marketing
- HyperV - Preview
- Icertis
- iContact
- Insightly CRM
- Intercom
- Jina.ai
- Jira
- Keap
- Klaviyo
- LinkedIn
- Mail
- Mailchimp
- Mailgun
- Mailjet
- MailerLite
- Marketo
- MCP
- Microsoft 365
- Microsoft Azure
- Microsoft Azure Active Directory
- Microsoft Azure AI Foundry
- Microsoft Azure OpenAI
- Microsoft Azure Sentinel
- Microsoft Dynamics 365 CRM
- Microsoft OneDrive & Sharepoint
- Microsoft Outlook 365
- Microsoft Power Automate – Preview
- Microsoft Sentiment
- Microsoft Sentinel Threat Intelligence
- Microsoft Teams
- Microsoft Translator
- Microsoft Vision
- Miro
- NetIQ eDirectory
- Nvidia NIM
- Okta
- OpenAI
- OpenAI V1 Compliant LLM
- Oracle Eloqua
- Oracle NetSuite
- PagerDuty
- PayPal
- PDFMonkey
- Perplexity
- Pinecone
- Pipedrive
- QuickBooksOnline
- Quip
- Salesforce
- Salesforce Agentforce & Flows
- Salesforce Marketing Cloud
- SAP BAPI
- SAP Cloud for Customer
- SAP Concur
- SAP OData
- SendGrid
- ServiceNow
- Shopify
- Slack
- SmartRecruiters
- Smartsheet
- Snowflake
- Snowflake Cortex
- Stripe
- Sugar Enterprise
- Sugar Professional
- Sugar Sell
- Sugar Serve
- System Center - Preview
- TangoCard
- Todoist
- Trello
- Twilio
- UiPath Apps - Preview
- UiPath Data Fabric
- UiPath Test Manager
- UiPath GenAI Activities
- UiPath Orchestrator
- X (formerly Twitter)
- Xero
- watsonx.ai
- WhatsApp Business
- WooCommerce
- Workable
- Workday
- Workday REST
- VMware ESXi vSphere
- YouTube
- Zendesk
- Zoho Campaigns
- Zoho Desk
- Zoho Mail
- Zoom
- ZoomInfo
Agent 2 Agent authentication
Connect Integration Service to a remote Agent2Agent (A2A) agent by entering its service URL and the credentials for the authentication type the agent requires.
Each Agent 2 Agent connection points to one remote agent. Create a connection for every agent you want to call from Maestro.
Prerequisites
- The remote agent meets the remote agent requirements.
- The base URL of the agent, used as the Service URL. Enter the base URL only, without a path or a trailing slash. The connector adds the A2A paths, such as
/.well-known/agent-card.json, itself. - The credentials for the authentication type that the agent requires. The agent declares its supported security schemes in its Agent Card.
Authentication types
All authentication types require the Service URL. The other fields depend on the authentication type.
| Authentication type | Fields |
|---|---|
| Basic Authentication | Username, Password (optional), Authentication validation API (optional) |
| API Key | Parameter name, Value, Add to (Header or Query, default Header), Authentication validation API (optional) |
| Personal Access Token | Token prefix (default Bearer), Token, Authentication validation API (optional) |
| OAuth 2.0 Authorization code | Client ID, Client secret, Authorization URL, Token URL, Scope (optional) |
| OAuth 2.0 Client credentials | Client ID, Client secret, Token URL, Scope (optional) |
| OAuth 2.0 Password | Client ID, Client secret, Authorization URL, Token URL, Username, Password (optional), Scope (optional) |
| OAuth 2.0 JWT Bearer | Client ID, Client secret, Authorization URL, Token URL, JWT base64 encoded key, Scope (optional) |
The following fields need more context:
- Parameter name: the exact name of the header or query parameter that carries the API key, for example
X-API-Key. - Token prefix: the prefix added before the token in the
Authorizationheader. Leave it empty if the agent expects the token without a prefix. - Authentication validation API: a relative path that returns a successful response when the credentials are valid, for example
/api/v1/me. - Scope: the OAuth scopes requested from the authorization server of the agent, as declared in its Agent Card. Separate multiple scopes with spaces or commas. Leave it empty to use the default scopes of the authorization server.
- JWT base64 encoded key: the Base64-encoded private key used to sign the JWT. Follow the instructions of your identity provider to generate and encode it.
Add the Agent 2 Agent connection
-
Select Orchestrator from the product launcher.
-
Select a folder, and then navigate to the Connections tab.
-
Select Add connection.
-
To open the connection creation page, select the Agent 2 Agent connector from the list. You can use the search bar to find the connector.
-
In Service URL, enter the base URL of the agent.
-
Select the Authentication Type.
-
Enter the fields required for the selected authentication type.
Where available, select the menu next to a field and choose Use credential asset or Use Orchestrator asset to reference an Orchestrator asset instead of entering the value directly. For more information, see Use credential assets for connections.
-
Select Connect.
The connection is created and named after the agent, as declared in the name field of its Agent Card.