Hi @MarcoVergari-3664 ,
Traffic inside the environment's vnet between the ingress and app is not encrypted today. This is because tls is terminated at envoy proxy which is used by Azure container app. End to End protection is being worked upon by the Azure container apps team however I dont have an ETA for this feature release.
You can explore this sample as this might help to some extent even though you cant achieve end to end protection.
https://github.com/Azure-Samples/dotNET-FrontEnd-to-BackEnd-with-DAPR-on-Azure-Container-Apps