Skip to main content
Glama
andreimelneichuk

mcp-secure-server

Server Configuration

Describes the environment variables required to run the server.

NameRequiredDescriptionDefault
HOSTNoListening address
PORTNoListening port
MCP_ISSUERYesIssuer URL of the IdP that issues JWT tokens, e.g. https://sso.example.com/realms/corp
POLICY_PATHNoPath to the RBAC policy file (default policy.yaml)
API_AUDIENCEYesAudience of the corporate API
API_BASE_URLYesAddress of the corporate API
MCP_AUDIENCEYesPublic URL of the MCP server, e.g. https://mcp.example.com/mcp
MCP_JWKS_URLYesJWKS endpoint of the IdP used to verify token signatures, e.g. https://sso.example.com/realms/corp/protocol/openid-connect/certs
MCP_CLIENT_IDYesClient ID of the confidential MCP-server client with token exchange allowed
MCP_ALLOWED_HOSTSNoAllow-list for the Host header
MCP_CLIENT_SECRETYesClient secret of the confidential MCP-server client with token exchange allowed
MAX_RESPONSE_BYTESNoResponse size limit in bytes (default 8000)
MCP_TOKEN_ENDPOINTYesToken endpoint of the IdP used for RFC 8693 token exchange, e.g. https://sso.example.com/realms/corp/protocol/openid-connect/token

Instructions

Guidance the server publishes about itself, which clients place ahead of the tool catalog so the model reads it before choosing anything.

This server publishes no instructions, or was last inspected before Glama recorded them.

Capabilities

Server capabilities have not been inspected yet.

Tools

Functions exposed to the LLM to take actions

NameDescription

No tools

Prompts

Interactive templates invoked by user choice

NameDescription

No prompts

Resources

Contextual data attached and managed by the client

NameDescription

No resources