The .spec.incomingAuth.oidc inline block is not a valid field in the v0.29.3 VirtualMCPServer CRD schema, causing ArgoCD ComparisonErrors. The correct v0.29.3 API separates OIDC provider config into a dedicated MCPOIDCConfig (v1beta1) resource, referenced from the VirtualMCPServer via spec.incomingAuth.oidcConfigRef.name. - Add MCPOIDCConfig resources for state-docs-vmcp and full-vmcp (inline type, Keycloak issuer, replicated client secrets from keycloak ns) - Update state-docs-vmcp and full-vmcp VirtualMCPServer manifests to reference the new MCPOIDCConfig resources via oidcConfigRef - Register new MCPOIDCConfig files in vmcp-servers kustomization Co-Authored-By: Claude Sonnet 4.6 <[email protected]>
43 lines
1.2 KiB
YAML
43 lines
1.2 KiB
YAML
apiVersion: toolhive.stacklok.dev/v1alpha1
|
|
kind: VirtualMCPServer
|
|
metadata:
|
|
name: state-docs-vmcp
|
|
namespace: toolhive-system
|
|
annotations:
|
|
toolhive.stacklok.dev/registry-export: "true"
|
|
toolhive.stacklok.dev/registry-title: Document State Virtual MCP
|
|
toolhive.stacklok.dev/registry-description: Virtual MCP which is focused on enabling documentation of the current state
|
|
toolhive.stacklok.dev/registry-url: https://state-docs.ngorse.com
|
|
spec:
|
|
groupRef:
|
|
name: homelab-core
|
|
embeddingServerRef:
|
|
name: homelab-embedding
|
|
incomingAuth:
|
|
type: oidc
|
|
oidcConfigRef:
|
|
name: state-docs-vmcp-oidc
|
|
config:
|
|
aggregation:
|
|
conflictResolution: prefix
|
|
excludeAllTools: false
|
|
tools:
|
|
- workload: gitea-mcp
|
|
toolConfigRef:
|
|
name: state-doc-tools
|
|
- workload: automem
|
|
toolConfigRef:
|
|
name: state-doc-tools
|
|
- workload: argocd-mcp
|
|
toolConfigRef:
|
|
name: state-doc-tools
|
|
- workload: kubernetes-mcp
|
|
toolConfigRef:
|
|
name: state-doc-tools
|
|
- workload: radar
|
|
excludeAll: true
|
|
compositeTools: []
|
|
operational:
|
|
failureHandling:
|
|
partialFailureMode: best_effort
|