Agentβ™₯︎Age
Catalog

Cloud Armor WAF Patrol MCP

Official

by shigechika Β· Python

MCP server for Google Cloud Armor WAF log patrol: deny summaries and false-positive checks

cloudarmor-mcp (Google Cloud Armor WAF log patrol)

This MCP server provides Google Cloud Armor WAF log patrol functions by reading from Cloud Logging. It generates deny summaries per rule, performs home-region false-positive checks, and supports preview (dry-run) rule review. A daily patrol workflow is designed around a single daily_brief call to assess blocking behavior and preview readiness.

πŸ› οΈ Key Features

  • Google Cloud Armor WAF log patrol from Cloud Logging
  • Deny summaries per rule
  • Home-region false-positive checks
  • Preview (dry-run) rule review
  • Daily β€œis the WAF healthy?” patrol via daily_brief

πŸš€ Use Cases

  • Daily WAF health monitoring and reporting
  • Verifying that the WAF is blocking as expected
  • Reviewing preview rules before promotion

⚑ Developer Benefits

  • One daily_brief call answers: what was blocked, whether blocking was appropriate, and whether preview rules are ready
  • Supports operational checks based on Cloud Logging data

⚠️ Limitations

  • Source material does not list additional tools beyond the mention of daily_brief.

Related servers

More in Security
Cloud Armor WAF Patrol MCP - agentage MCP Catalog