mirror of
https://github.com/Part-DB/Part-DB-server.git
synced 2026-07-27 11:41:36 +00:00
Require authentication for accessing MCP tools
This commit is contained in:
parent
8b484d5776
commit
32669b2cc0
3 changed files with 14 additions and 0 deletions
|
|
@ -73,3 +73,6 @@ security:
|
|||
- { path: "^/api", allow_if: 'is_granted("@api.access_api") and is_authenticated()' }
|
||||
# Restrict access to KICAD to users, which has API access permission
|
||||
- { path: "^/kicad-api", allow_if: 'is_granted("@api.access_api") and is_authenticated()' }
|
||||
|
||||
# Restrict MCP access to users, which has the MCP access permission
|
||||
- { path: "^/mcp", allow_if: 'is_granted("@api.use_mcp") and is_authenticated()' }
|
||||
|
|
|
|||
|
|
@ -381,7 +381,12 @@ perms: # Here comes a list with all Permission names (they have a perm_[name] co
|
|||
access_api:
|
||||
label: "perm.api.access_api"
|
||||
apiTokenRole: ROLE_API_READ_ONLY
|
||||
use_mcp:
|
||||
label: "perm.api.use_mcp"
|
||||
alsoSet: [ 'access_api' ]
|
||||
apiTokenRole: ROLE_API_READ_ONLY
|
||||
manage_tokens:
|
||||
label: "perm.api.manage_tokens"
|
||||
alsoSet: ['access_api']
|
||||
apiTokenRole: ROLE_API_FULL
|
||||
|
||||
|
|
|
|||
|
|
@ -13793,5 +13793,11 @@ Buerklin-API Authentication server:
|
|||
<target>Warning: Changing values here can break the info retrieval mechanism! You should use the "update from info provider" functionality whenever possible.</target>
|
||||
</segment>
|
||||
</unit>
|
||||
<unit id="bNrxe9i" name="perm.api.use_mcp">
|
||||
<segment>
|
||||
<source>perm.api.use_mcp</source>
|
||||
<target>Use MCP tools (for AI agents)</target>
|
||||
</segment>
|
||||
</unit>
|
||||
</file>
|
||||
</xliff>
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue