- full-vmcp serves as public entry point at mcp.ngorse.com - Single Keycloak client (public-mcp) for all external tools - authServerConfig proxies auth to Keycloak - state-docs-vmcp becomes internal-only (no auth required) - Shared OIDC config for token validation - All external clients authenticate once at gateway
14 lines
292 B
YAML
14 lines
292 B
YAML
apiVersion: toolhive.stacklok.dev/v1beta1
|
|
kind: MCPOIDCConfig
|
|
metadata:
|
|
name: public-mcp-oidc
|
|
namespace: toolhive-system
|
|
spec:
|
|
type: inline
|
|
inline:
|
|
issuer: https://mcp.ngorse.com
|
|
clientId: public-mcp
|
|
clientSecretRef:
|
|
name: public-mcp-secret
|
|
key: client-secret
|