Kubernetes MCP Server – 5G Core Edition
Provides tools to manage and monitor Kubernetes clusters with specialized awareness for 5G Core network functions, allowing users to inspect pods, deployments, services, and telecom-specific data like SBI endpoints, network slices, and DPDK configurations.
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@Kubernetes MCP Server – 5G Core EditionShow me the 5G core topology and check for any network slice issues"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
Kubernetes MCP Server – 5G Core Edition
An MCP (Model Context Protocol) server that exposes your Kubernetes cluster state with full 5G Core / telecom awareness to any MCP-compatible LLM (Claude Desktop, etc.).
Features
Generic Kubernetes tools
Tool | Description |
| List pods with optional NF-type filter |
| Deployment replicas and health |
| Services + SBI endpoint detection |
| Logs with 5G error annotations |
| Full pod spec + events |
| ConfigMaps with 5G field extraction |
| Node capacity, DPDK/SR-IOV labels |
| Cluster events |
5G Telecom-specific tools
Tool | Description |
| Full NF map: pods, SBI endpoints, PLMN, slices |
| Deep status for a specific NF (AMF/SMF/UPF/…) |
| N3/N4/N6/N9 interfaces, DPDK, hugepages |
| S-NSSAI / DNN / PLMN from ConfigMaps |
| Full health report with recommendations |
MCP Resources (static reference)
5g://nf-reference– 3GPP TS 23.501 NF descriptions, SBI APIs, interface mapping5g://interface-map– N1–N26 reference-point descriptions
Related MCP server: K8s AI Assistant MCP Server
Supported 5G NFs (auto-detected from pod/deployment names & labels)
AMF · SMF · UPF · NRF · AUSF · UDM · UDR · PCF · NSSF · BSF · CHF · AF · N3IWF · SEPP
Tested against: Open5GS, free5GC, SD-Core, OAI-CN5G
Requirements
Python ≥ 3.11
kubectlconfigured (in-cluster or local~/.kube/config)
Installation
pip install -r requirements.txtRunning the server (stdio)
python server.pyThe server communicates over stdio using the MCP protocol.
It auto-detects in-cluster config, then falls back to ~/.kube/config.
If neither is available it runs in mock mode with representative 5G core data.
HTTP Streamable transport (network-accessible)
This project also supports the MCP Streamable HTTP transport, which exposes an HTTP/SSE endpoint suitable for remote clients and deployments in Kubernetes.
Run locally:
export MCP_TRANSPORT=http
export MCP_HTTP_HOST=0.0.0.0
export MCP_HTTP_PORT=8000
# Require auth (recommended)
export DANGEROUSLY_OMIT_AUTH=false
export MCP_HTTP_BEARER_TOKEN="<your-long-random-token>"
python server.py
# Health checks
curl http://localhost:8000/health
curl http://localhost:8000/readyMCP endpoint URL: http://localhost:8000/mcp
Register with Claude (example):
claude mcp add --transport http k8s-5g http://localhost:8000/mcpKubernetes deployment is provided under k8s/. The container image defaults to
MCP_TRANSPORT=http and exposes port 8000 with readiness/liveness probes.
Notes:
Streamable HTTP requires Accept headers that include both
application/jsonandtext/event-streamfor POST requests.The server uses SSE for streaming responses by default.
Authentication (HTTP transport)
When running with MCP_TRANSPORT=http, this server supports a simple Bearer token guard on the /mcp endpoint.
Set
DANGEROUSLY_OMIT_AUTH=false(default in Docker image) to enforce authProvide the secret in
MCP_HTTP_BEARER_TOKENHealth endpoints (
/health,/ready) remain unauthenticated
Examples:
# Start server locally with a token
export MCP_TRANSPORT=http
export DANGEROUSLY_OMIT_AUTH=false
export MCP_HTTP_BEARER_TOKEN="s3cret-EXAMPLE-TOKEN"
python server.py
# Unauthorized request (401)
curl -i -X POST \
-H 'Accept: application/json, text/event-stream' \
-H 'Content-Type: application/json' \
--data '{"jsonrpc":"2.0","id":"1","method":"initialize","params":{}}' \
http://localhost:8000/mcp
# Authorized request (will advance handshake rather than 401)
curl -i -X POST \
-H 'Authorization: Bearer s3cret-EXAMPLE-TOKEN' \
-H 'Accept: application/json, text/event-stream' \
-H 'Content-Type: application/json' \
--data '{"jsonrpc":"2.0","id":"1","method":"initialize","params":{}}' \
http://localhost:8000/mcpKubernetes:
# Create secret with your token
kubectl -n mcp5g create secret generic mcp5g-auth \
--from-literal=token="s3cret-EXAMPLE-TOKEN"
# Apply namespace/RBAC/deployment
kubectl apply -f k8s/namespace.yaml
kubectl apply -f k8s/rbac.yaml
kubectl apply -f k8s/deployment.yamlSecurity notes:
Use a long, random token. Rotate via Secret update and rollout.
For public endpoints, place this behind TLS and a network perimeter/proxy.
For advanced OAuth 2.1 integration, consider wiring
mcp.server.authas a future enhancement.
Claude Desktop integration (stdio)
Edit ~/Library/Application Support/Claude/claude_desktop_config.json:
{
"mcpServers": {
"k8s-5g": {
"command": "python",
"args": ["/absolute/path/to/k8s-5g-mcp/server.py"],
"env": {
"KUBECONFIG": "/home/youruser/.kube/config"
}
}
}
}Example LLM prompts
Show me the full 5G core topology in my cluster.
What is the health status of the AMF?
Are there any PFCP errors in the UPF logs?
What S-NSSAIs (slices) are configured?
Is DPDK enabled on my UPF node?
Run a full 5G core health check and give me recommendations.
Show me all pods in the open5gs namespace and classify them by NF type.Architecture
LLM (Claude Desktop / any MCP client)
│ MCP (stdio / JSON-RPC 2.0)
▼
┌─────────────────────────────────────┐
│ server.py (MCP Server) │
│ ┌───────────┐ ┌─────────────────┐ │
│ │ k8s_client│ │telecom_analyzer │ │
│ │ (k8s SDK)│ │ (3GPP logic) │ │
│ └─────┬─────┘ └────────┬────────┘ │
└────────┼─────────────────┼──────────┘
│ kubernetes API │ ConfigMap / log parsing
▼
Kubernetes Cluster
(5G Core workloads: AMF, SMF, UPF, NRF, …)Mock mode
If no kubeconfig is found, the server starts in mock mode and returns
a representative open5gs-style cluster with 8 NFs, DPDK on worker-2,
and pre-seeded log entries for testing.
This server cannot be deployed
Maintenance
Related MCP Connectors
MCP-Native LLM Orchestration Agent
The Google GKE MCP server is a managed Model Context Protocol server that provides AI applications with tools to manage Google Kubernetes Engine (GKE) clusters and Kubernetes resources. It exposes a structured, discoverable interface that allows AI agents to interact with GKE and Kubernetes APIs, enabling them to inspect cluster configurations, retrieve Kubernetes resource YAMLs, monitor operations like cluster upgrades, diagnose issues, and optimize costs—all without needing to parse text output or use complex kubectl commands.
MCP server providing access to the Scorecard API to evaluate and optimize LLM systems.
MCP server unifying ERPs, CRMs, APIs and knowledge base for Claude, ChatGPT and Gemini.
Related MCP Servers
- AlicenseAqualityBmaintenanceProvides a set of read-only Kubernetes functions via an MCP server, enabling interaction with Kubernetes clusters through agents or coding assistants like GitHub Copilot.9436 PyPI3Apache 2.0
- AlicenseNot gradedqualityDmaintenanceEnables AI-powered Kubernetes management using natural language, supporting kubectl, Helm, diagnostics, and port forwarding via MCP protocol.MIT
- AlicenseAqualityCmaintenanceExposes a Kubernetes cluster to MCP-compatible AI clients, enabling read-only and optional write operations on cluster resources like pods, deployments, and namespaces through natural language.91MIT
- AlicenseNot gradedqualityBmaintenanceMCP server that connects LLMs to Kubernetes clusters for troubleshooting, scanning failing pods, diagnosing root causes, and applying guarded fixes or generating manifests via natural language.MIT