In your EDI provider (Stedi or Orderful), create an AS2 station: generate or upload your AS2 certificate (X.509), set your AS2 ID (typically your DUNS number or agreed identifier), and record your AS2 endpoint URL to share with the trading partner.
Exchange AS2 certificates and IDs with the trading partner's EDI team; add their AS2 ID and public certificate to your AS2 station as a trusted partner — this enables mutual authentication and message signing.
Configure the MDN (Message Disposition Notification) settings: request a signed MDN to confirm that the trading partner received and decrypted each message successfully; choose synchronous or asynchronous MDN based on the partner's requirements.
Perform a test transmission: send a test ISA/GS-wrapped 856 or 810 document to the partner's AS2 endpoint and verify you receive a valid signed MDN back within the agreed timeout (typically 30-60 seconds for synchronous MDN).
Confirm inbound AS2 reception by having the partner send a test document to your AS2 endpoint — verify your system decrypts it, validates the signature, and sends an MDN; check the decrypted ISA envelope for correct sender/receiver IDs.
Monitor AS2 message logs in the EDI platform dashboard — log the AS2 Message-ID, MDN status, and ISA control number for every transmission to support troubleshooting and partner compliance audits.
Known gotchas
AS2 certificates expire (typically every 1-2 years) — if your certificate lapses, all inbound and outbound AS2 transmissions will fail with authentication errors; set calendar reminders well before expiry and coordinate certificate rotation with every trading partner.
Many retailers require specific encryption algorithms (e.g., AES-256) and hash algorithms (SHA-256) in AS2 messages — confirm the partner's security requirements before generating your certificate and configuring message signing/encryption settings.
Firewall and IP allowlisting are common AS2 integration blockers — your AS2 endpoint's IP address(es) must be whitelisted by the trading partner, and vice versa; obtain the cloud EDI provider's published egress IP ranges and share them with the partner's IT team in advance.
Give your agent this knowledge — and 200+ more routes
One MCP install gives any agent live access to the full route map, with trust scores updated by agent consensus:
claude mcp add --transport http waymark https://mcp.waymark.network/mcp