Developer Tools · Security

Illumio MCP Server logo

Illumio MCP Server

alexgoller/illumio-mcp-server

A Model Context Protocol (MCP) server that provides an interface to interact with Illumio PCE (Policy Compute Engine). This server enables programmatic access to Illumio workload management, label operations, traffic flow analysis, automated ringfencing, and infrastructure service identification.

Install

docker run -i --init --rm \

Client configuration

{
  "mcpServers": {
    "illumio-mcp-docker": {
      "command": "docker",
      "args": [
        "run",
        "-i",
        "--init",
        "--rm",
        "-v",
        "/Users/YOUR_USERNAME/tmp:/var/log/illumio-mcp",
        "-e",
        "DOCKER_CONTAINER=true",
        "-e",
        "PYTHONWARNINGS=ignore",
        "--env-file",
        "/Users/YOUR_USERNAME/.illumio-mcp.env",
        "illumio-mcp:latest"
      ]
    }
  }
}

Environment variables

MCP_PUBLIC_URLMCP_OAUTH_ISSUERMCP_OAUTH_JWKS_URLMCP_OAUTH_AUDIENCEMCP_OAUTH_REQUIRED_SCOPEMCP_PCE_MODEPCE_HOSTPCE_PORTPCE_ORG_IDAPI_KEYAPI_SECRETMCP_KEK
GitHub stars
1
Category
Developer Tools, Security
License
GPL-3.0
Updated
Oct 6, 2026

About Illumio MCP Server

Documentation site — installation, getting started, workflows, the full tool reference, and central deployment.

Tools (40)

  • get-workloads

    Retrieve workloads with optional filtering by name, hostname, IP, labels, and max results

  • create-workload

    Create an unmanaged workload with name, IP addresses, and labels

  • update-workload

    Update an existing workload's properties

  • delete-workload

    Remove a workload from PCE

  • get-labels

    Retrieve labels with optional filtering by key, value, and max results

  • create-label

    Create a new label with key-value pair

  • update-label

    Update an existing label

  • delete-label

    Remove a label

  • get-rulesets

    Get rulesets with optional filtering by name, description, and enabled status

  • create-ruleset

    Create a new ruleset with scopes

  • update-ruleset

    Update ruleset properties

  • delete-ruleset

    Remove a ruleset

  • create-deny-rule

    Create a deny rule (regular or override deny) in a ruleset

  • update-deny-rule

    Update an existing deny rule

  • delete-deny-rule

    Remove a deny rule

  • get-iplists

    Get IP lists with optional filtering by name, description, FQDN, and max results

  • create-iplist

    Create a new IP list

  • update-iplist

    Update an existing IP list

  • delete-iplist

    Remove an IP list

  • get-services

    Get services with optional filtering by name, port, protocol, and max results

  • create-service

    Create a new service definition

  • update-service

    Update an existing service

  • delete-service

    Remove a service

  • get-traffic-flows

    Get detailed traffic flow data with filtering by date range, source/destination, service, policy decision, and more

  • get-traffic-flows-summary

    Get aggregated traffic summaries grouped by app, env, port, and protocol

  • create-ringfence

    Automated app-to-app segmentation policy creation.

  • identify-infrastructure-services

    Discover which apps are infrastructure services by analyzing traffic patterns.

  • Provider

    In-degree

  • Consumer

    Out-degree

  • provision-policy

    Provision pending draft changes to move them from draft to active state.

  • compare-draft-active

    Compare draft vs active policy to preview what would change on provisioning.

  • enforcement-readiness

    Assess whether an app is ready for enforcement.

  • ringfence-batch

    Ringfence multiple apps at once.

  • get-workload-enforcement-status

    Get enforcement mode status across workloads, grouped by app and environment.

  • get-policy-coverage-report

    Generate a policy coverage report for an app showing what traffic is covered by existing rules vs what would be blocked.

  • find-unmanaged-traffic

    Find traffic involving unmanaged workloads or IP addresses.

  • detect-lateral-movement-paths

    Detect potential lateral movement paths by analyzing app-to-app traffic patterns.

  • compliance-check

    Check policy compliance against frameworks (PCI-DSS, NIST 800-53, CIS Controls, or general best practices).

  • get-events

    Get PCE events with optional filtering by event type, severity, status, and result limits

  • check-pce-connection

    Verify PCE connectivity and credentials

Details on this page are taken from the project's README. Open README

Supported clients

Clients mentioned in this server's README:

View all
Claude Desktop logo

Claude Desktop

Desktop · Freemium · Proprietary

Anthropic's official Claude AI desktop application. Supports MCP servers to extend functionality.

WindowsMacOS

Related MCP servers

More servers
Playwright logo

Playwright

microsoft/playwright

72.2k

Playwright is a framework for web automation and testing. It drives Chromium, Firefox, and WebKit with a single API — in your tests, in your scripts, and as a tool for AI agents.

Developer Tools
repomix logo

repomix

yamadashy/repomix

15.2k

Repomix is a tool that packs a codebase into an AI-friendly format, supporting local and remote repository processing and providing code compression, security checks and multiple output formats.

Developer Tools
UI-TARS-desktop logo

UI-TARS-desktop

bytedance/UI-TARS-desktop

12.9k

TARS is ByteDance's multimodal AI agent stack, shipping two projects: Agent TARS (a CLI and Web UI agent built on MCP) and UI-TARS-desktop (a desktop GUI agent).

Developer Tools
blender logo

blender

ahujasid/blender-mcp

10.6k

formerly blender-mcp — the PyPI package is now mcp-for-blender. Existing setups keep working; no config change is required. Read more.

Developer Tools
Playwright Browser Automation logo

Playwright Browser Automation

microsoft/playwright-mcp

9.2k

A Model Context Protocol (MCP) server that provides browser automation capabilities using Playwright. This server enables LLMs to interact with web pages through structured accessibility snapshots, bypassing the need for screenshots or visually-tuned models.

Developer Tools
2344 logo

2344

comet-ml/opik

7k

Opik is the open-source LLM observability and evaluation platform for AI agent tracing, LLM evaluation, prompt management, and production monitoring. Built by Comet. Apache-2.0 licensed, free to self-host the full platform, with 20,000+ GitHub stars.

Developer Tools