cisco-umbrella-mcp
Server Configuration
Describes the environment variables required to run the server.
| Name | Required | Description | Default |
|---|---|---|---|
| AUTH_MODE | No | gateway = credentials per-request via headers; env = shared credentials from env vars (local dev only) | gateway |
| MCP_HTTP_PORT | No | HTTP server port | 8080 |
| MCP_TRANSPORT | No | stdio (Claude Desktop) or http (gateway) | stdio |
| UMBRELLA_API_KEY | No | Cisco Umbrella API Key (Admin > API Keys) | |
| UMBRELLA_KEY_SECRET | No | Cisco Umbrella Key Secret (shown once at creation time) |
Capabilities
Features and capabilities supported by this server
| Capability | Details |
|---|---|
| tools | {
"listChanged": false
} |
| prompts | {
"listChanged": false
} |
| resources | {
"subscribe": false,
"listChanged": false
} |
| experimental | {} |
Tools
Functions exposed to the LLM to take actions
| Name | Description |
|---|---|
| cisco_umbrella_get_activity_dnsA | List DNS activity events. |
| cisco_umbrella_get_activity_proxyA | List proxy (Secure Web Gateway) activity events. |
| cisco_umbrella_get_activity_firewallA | List network firewall activity events. |
| cisco_umbrella_get_activity_amp_retrospectiveA | List AMP (Advanced Malware Protection) retrospective activity events — files that were re-classified as malicious after they were first seen. |
| cisco_umbrella_list_roaming_computersA | List roaming computers (endpoints running the Umbrella roaming client). |
| cisco_umbrella_list_applicationsA | List discovered cloud applications (App Discovery). |
| cisco_umbrella_list_protocolsA | List discovered network protocols (App Discovery). |
| cisco_umbrella_list_application_categoriesB | List application categories (App Discovery). |
| cisco_umbrella_list_customersA | List customer organizations under this Umbrella Managed Provider (MSP) account. |
| cisco_umbrella_get_providers_consoleA | Get this Umbrella Managed Provider console's subscription/usage summary (package name, total/used seats, customer count, status, renewal/expiry dates). Not a list — returns a single object. |
Prompts
Interactive templates invoked by user choice
| Name | Description |
|---|---|
No prompts | |
Resources
Contextual data attached and managed by the client
| Name | Description |
|---|---|
No resources | |
Latest Blog Posts
- Who's Calling? MCP Hosts Are an Identity Blind Spot (And the Spec Knows It)By Om-Shree-0709 on .mcpAgent IdentityOAuth 2.1
- Your AI Chatbot Just Exposed Your CEO's Salary to an InternBy Om-Shree-0709 on .Agent IdentityMCP SecurityOAuth Delegation
- Why MCP Servers Need Execution Sandboxing (And Why Your Current Stack Isn't Enough)By Om-Shree-0709 on .Agentic AiPrompt InjectionWebAssembly
MCP directory API
We provide all the information about MCP servers via our MCP API.
curl -X GET 'https://glama.ai/api/mcp/v1/servers/MSPbotsAI/cisco-umbrella-mcp'
If you have feedback or need assistance with the MCP directory API, please join our Discord server