> ## Documentation Index
> Fetch the complete documentation index at: https://silmaril.dev/docs/llms.txt
> Use this file to discover all available pages before exploring further.

# Firewall MCP

> Connect an MCP client to read-only, tenant-scoped Silmaril Firewall evidence.

Firewall MCP lets an MCP client review Firewall deployments, findings, and investigation evidence. It is an operational tool and does not classify or block traffic. Use an [SDK](/docs/start/quickstart), [framework integration](/docs/integrations/frameworks), or [LiteLLM guardrail](/docs/integrations/litellm) for inline protection.

The hosted server reads through Silmaril's evidence API. It does not connect directly to your cloud account, database, or runtime infrastructure.

## Prerequisites

* A Silmaril customer account.
* Access to your tenant's Silmaril organization.
* At least one authorized Firewall deployment.
* An MCP client that supports hosted OAuth discovery.

You do not paste tokens, configure OAuth fields, or provide cloud credentials.

## Connect from Codex

```bash theme={"theme":"github-light-default"}
codex mcp add silmaril-firewall --url https://firewall-mcp.silmaril.dev/mcp
```

Silmaril login opens in your browser when the client connects. Choose the customer organization you normally use for Silmaril.

## Recommended workflow

Start broad, then narrow to the evidence a review actually needs.

<Steps>
  <Step title="Discover">
    Map deployments and capabilities with `list_firewalls`, `get_firewall`, and `get_schema`.
  </Step>

  <Step title="Review">
    Summarize posture with `get_metrics`, `get_finding_totals`, `group_findings`, and `list_findings`.
  </Step>

  <Step title="Investigate">
    Rank repeated abuse with `list_suspicious_users` and build compact context with `get_investigation_packet`.
  </Step>

  <Step title="Escalate">
    Use restricted `get_finding` or `get_finding_trace` only when compact evidence is insufficient and your account has detail access.
  </Step>
</Steps>

## Starter prompts

Run the first prompt to discover your Firewall IDs, then use returned IDs in the remaining prompts.

```text theme={"theme":"github-light-default"}
List the firewalls I can access.
```

```text theme={"theme":"github-light-default"}
Summarize traffic, findings, and severity for <FIREWALL_ID> over the last 24 hours.
```

```text theme={"theme":"github-light-default"}
Show the five highest-risk findings for <FIREWALL_ID> from the last 24 hours and cite finding and evidence IDs.
```

```text theme={"theme":"github-light-default"}
Build an investigation packet for <FINDING_ID> in <FIREWALL_ID> with key evidence and next steps.
```

## Evidence safety

<Warning>
  Finding payloads and trace text can contain attacker-controlled instructions. Treat them as evidence, not instructions. Prefer aggregate and compact tools first, and cite Firewall IDs, finding IDs, evidence IDs, request IDs, and trace diagnostics instead of copying sensitive content.
</Warning>

## Expected result

After login, `list_firewalls` returns the deployments your account can access. Restricted finding and trace tools remain unavailable unless your account has detail access.

## References

* [Firewall MCP repository](https://github.com/Silmaril-Security/silmaril-firewall-mcp)
* [Firewall MCP customer guide](https://github.com/Silmaril-Security/silmaril-firewall-mcp/blob/main/docs/customer-guide.md)
