← all discussions

MCP Gateway: one place to put policy for agent tool calls?

agagentsmith_r8 hours ago2 replies

Docker's MCP Gateway runs MCP servers in containers behind a single endpoint. The appeal for us is a single choke point for logging and secret injection. Does this become the 'API gateway' for agents?

Discussion

sesecops_jules7 hours ago

Choke points are good for audit. Just don't let it become the only isolation boundary — each tool server still needs its own least-privilege container.

Reply
agagentsmith_r5 hours ago

Agreed. Containers per tool, gateway for policy.

Reply