talos-mcp-server
MCP server that enables interaction with Talos Linux clusters via gRPC API, supporting cluster management, monitoring, configuration, and resource inspection.
README
Talos MCP Server
An MCP (Model Context Protocol) server that provides seamless integration with Talos Linux clusters. This server enables Claude to interact with your Talos infrastructure through the native gRPC API.
Features
- 🔌 MCP Resources: Direct access to node health, version, and config via URI
- 📝 MCP Prompts: Intelligent templates for diagnosing clusters and reviewing audits
- 🔧 Cluster Management: Bootstrap, upgrade, reset, and manage node lifecycle
- 💾 Disk & Hardware: Inspect disks, mounts, PCI, USB, and system devices
- 📊 Monitoring: Access logs, dmesg, services, and real-time dashboard data
- 🔍 File System: Browse and read files on Talos nodes
- 🔐 etcd Integration: Manage members, snapshots, alarms, and defragmentation
- ☸️ Kubernetes Config: Retrieve kubeconfig for cluster access
- ⚙️ Configuration: Patches, validation, and machine config management
- 📡 Resource Inspection: Query any Talos resource (similar to kubectl get)
What is Talos Linux?
Talos Linux is a modern, secure, and immutable Linux distribution designed specifically for Kubernetes. Key features:
- API-Managed: Completely managed via a declarative gRPC API (no SSH)
- Immutable: Read-only root filesystem for enhanced security
- Minimal: Only includes components necessary to run Kubernetes
- Secure by Default: Kernel hardened following KSPP recommendations
Prerequisites
- Python 3.10+
- uv - Fast Python package installer
- talosctl - Talos CLI tool
- Talos Configuration - A valid talosconfig file (usually at
~/.talos/config)
Installation
Option 1: Install from PyPI (Recommended)
pip install talos-mcp-server
Or with uv:
uv pip install talos-mcp-server
Option 2: Install from Source
git clone https://github.com/CBEPX/talos-mcp-server.git
cd talos-mcp-server
uv venv && source .venv/bin/activate
uv pip install -e .
Install talosctl
# macOS
brew install siderolabs/tap/talosctl
# Linux
curl -sL https://talos.dev/install | sh
4. Docker Support
You can also run the server using Docker.
# Build the image
docker build -t talos-mcp-server .
# Run the container (make sure to mount your talos config)
docker run --rm -i \
-v $HOME/.talos:/root/.talos:ro \
-e TALOSCONFIG=/root/.talos/config \
talos-mcp-server
Or using Docker Compose for development:
docker-compose up --build
Configuration
Talos Configuration
Ensure you have a valid Talos configuration file. This is typically created when you set up your Talos cluster:
# Generate config (if setting up new cluster)
talosctl gen config my-cluster https://<control-plane-ip>:6443
# Check your current config
talosctl config info
# View available contexts
talosctl config contexts
The MCP server will automatically use your default Talos configuration from ~/.talos/config.
Client Integration
Claude Desktop
To use this MCP server with Claude Desktop, add it to your configuration:
macOS: ~/Library/Application Support/Claude/claude_desktop_config.json
Windows: %APPDATA%\Claude\claude_desktop_config.json
{
"mcpServers": {
"talos": {
"command": "talos-mcp-server",
"env": {
"TALOSCONFIG": "/path/to/your/.talos/config",
"TALOS_MCP_LOG_LEVEL": "INFO",
"TALOS_MCP_AUDIT_LOG_PATH": "talos_mcp_audit.log"
}
}
}
}
Cursor
- Open Cursor Settings
- Go to Features > MCP Servers
- Click + Add New MCP Server
- Fill in the details:
- Name:
talos - Type:
stdio - Command:
talos-mcp-server - Environment Variables: Add
TALOSCONFIGpointing to your config file
- Name:
Google Antigravity / Generic JSON
For other clients supporting the Model Context Protocol (including Perplexity or generic integrations), use the standard server definition. You can configure the server using CLI arguments (Typer) or Environment Variables.
Example using CLI arguments:
{
"mcpServers": {
"talos": {
"command": "talos-mcp-server",
"args": [
"--log-level", "DEBUG",
"--readonly"
],
"env": {
"TALOSCONFIG": "${HOME}/.talos/config"
}
}
}
}
Example using Environment Variables:
{
"mcpServers": {
"talos": {
"command": "talos-mcp-server",
"env": {
"TALOSCONFIG": "${HOME}/.talos/config",
"TALOS_MCP_READONLY": "true",
"TALOS_MCP_LOG_LEVEL": "INFO"
}
}
}
}
Configuration Options
The server uses Typer for CLI arguments and Pydantic Settings for environment variables. You can mix and match, but CLI arguments take precedence.
| Environment Variable | CLI Argument | Description | Default |
|---|---|---|---|
TALOSCONFIG |
N/A | Path to talosconfig file | ~/.talos/config |
TALOS_MCP_LOG_LEVEL |
--log-level |
Logging verbosity (DEBUG, INFO, etc) | INFO |
TALOS_MCP_AUDIT_LOG_PATH |
--audit-log |
Path to JSON audit log file | talos_mcp_audit.log |
TALOS_MCP_READONLY |
--readonly / --no-readonly |
Enable/Disable read-only mode | false |
Available Tools
Cluster Lifecycle
- talos_bootstrap: Bootstrap the cluster on a node
- talos_upgrade: Upgrade Talos on a node
- talos_reset: Reset a node to maintenance mode
- talos_reboot: Reboot a node
- talos_shutdown: Shutdown a node
- talos_cluster_show: High-level cluster overview
Configuration & Management
- talos_config_info: Get current Talos configuration and context
- talos_apply_config / talos_apply: Apply configuration
- talos_patch: Apply generic patches to resources
- talos_machineconfig_patch: Patch machine configuration
- talos_validate_config: Validate configuration files
- talos_get_kubeconfig: Retrieve kubeconfig
System & Hardware
- talos_get_version: Get Talos Linux version
- talos_health: Check cluster health status
- talos_get_disks: List disks
- talos_devices: List PCI, USB, and System devices
- talos_mounts: List mount points
- talos_du: Disk usage analysis
- talos_dashboard: Real-time resource usage snapshot
Network & Services
- talos_get_services: Service status
- talos_interfaces: List network interfaces
- talos_routes: List network routes
- talos_netstat: Network connections
- talos_pcap: Capture packet data
- talos_logs: Service/Container logs
- talos_dmesg: Kernel logs
Resources & Etcd
- talos_get_resources: Query any Talos resource
- talos_list: List files
- talos_read: Read files
- talos_etcd_members: List etcd members
- talos_etcd_snapshot: Take etcd snapshot
- talos_etcd_alarm: Manage etcd alarms
- talos_etcd_defrag: Defragment etcd storage
New Features (Talos 1.12+)
- talos_cgroups: Manage cgroups
- talos_volumes: Manage user volumes
- talos_support: Generate support bundles
Usage Examples
With Claude Desktop
Once configured, you can ask Claude natural language questions:
"Show me the version of Talos running on my cluster"
"What services are running on node 192.168.1.10?"
"Get the logs from kubelet on my control plane nodes"
"List all disks on 192.168.1.10"
"Check the health of my Talos cluster"
"Show me the etcd members"
Programmatic Usage
from talos_mcp.server import TalosClient
# Initialize client
client = TalosClient()
# Get context info
info = client.get_context_info()
print(info)
# Execute talosctl commands
result = await client.execute_talosctl(["version"])
print(result["stdout"])
Development
Running Tests
# Install dev dependencies
uv pip install -e ".[dev]"
# Run unit tests
pytest
# Run integration tests (Requires Docker)
# This will provision a local Talos cluster in Docker
make test-integration
Code Quality
We use a comprehensive set of tools to ensure code quality:
# Standard development workflow using Makefile
make install # Install dependencies
make lint # Run all linters (ruff, mypy, bandit)
make test # Run tests
make verify # Verify tool registration
Logging and Auditing
The server uses loguru for structured logging.
- Console: INFO level logs for general feedback.
- Audit Log:
talos_mcp_audit.log(rotating) containing detailed JSON logs for debugging and auditing commands.
Architecture
┌─────────────────┐
│ Claude Desktop │
└────────┬────────┘
│ MCP Protocol
↓
┌─────────────────────────────────────┐
│ MCP Server (Python) │
│ ├─ cli.py (CLI & Lifecycle) │
│ ├─ handlers.py (Protocol Handlers) │
│ ├─ registry.py (Auto-Discovery) │
│ └─ server.py (Initialization) │
└────────┬────────────────────────────┘
│ subprocess
↓
┌─────────────────┐
│ talosctl CLI │
└────────┬────────┘
│ gRPC + mTLS
↓
┌─────────────────┐
│ Talos Cluster │
│ (apid API) │
└─────────────────┘
Key Components
- cli.py: Command-line interface, logging, and server lifecycle
- server.py: MCP server initialization and handler registration
- handlers.py: MCP protocol handlers (Resources, Prompts, Tools)
- registry.py: Auto-discovery and registration of tools
- core/: Client, settings, and exception handling
- tools/: Modular tool implementations (auto-discovered)
Security Considerations
- mTLS Authentication: Talos API uses mutual TLS for authentication
- Certificate Management: Keep your talosconfig and certificates secure
- Network Access: Ensure your endpoints are properly firewalled
- Permissions: The MCP server has the same permissions as your talosconfig
Troubleshooting
talosctl not found
# Check if talosctl is in PATH
which talosctl
# Install talosctl if missing
curl -sL https://talos.dev/install | sh
Configuration not found
# Check config location
echo $TALOSCONFIG
# Verify config exists
ls -la ~/.talos/config
# Test connectivity
talosctl version
Connection refused
# Verify endpoints in config
talosctl config info
# Check network connectivity
ping <control-plane-ip>
# Verify certificates are valid
talosctl version --nodes <node-ip>
MCP Server Issues
# Test the server directly
talos-mcp-server --help
# Check Claude Desktop logs
# macOS: ~/Library/Logs/Claude/
# Windows: %APPDATA%\Claude\logs\
Resources
Contributing
Contributions are welcome! Please feel free to submit a Pull Request.
License
MIT License - see LICENSE file for details
Acknowledgments
- Built for the Model Context Protocol
- Integrates with Talos Linux by Sidero Labs
- Uses uv for fast Python package management
推荐服务器
Baidu Map
百度地图核心API现已全面兼容MCP协议,是国内首家兼容MCP协议的地图服务商。
Playwright MCP Server
一个模型上下文协议服务器,它使大型语言模型能够通过结构化的可访问性快照与网页进行交互,而无需视觉模型或屏幕截图。
Magic Component Platform (MCP)
一个由人工智能驱动的工具,可以从自然语言描述生成现代化的用户界面组件,并与流行的集成开发环境(IDE)集成,从而简化用户界面开发流程。
Audiense Insights MCP Server
通过模型上下文协议启用与 Audiense Insights 账户的交互,从而促进营销洞察和受众数据的提取和分析,包括人口统计信息、行为和影响者互动。
VeyraX
一个单一的 MCP 工具,连接你所有喜爱的工具:Gmail、日历以及其他 40 多个工具。
graphlit-mcp-server
模型上下文协议 (MCP) 服务器实现了 MCP 客户端与 Graphlit 服务之间的集成。 除了网络爬取之外,还可以将任何内容(从 Slack 到 Gmail 再到播客订阅源)导入到 Graphlit 项目中,然后从 MCP 客户端检索相关内容。
Kagi MCP Server
一个 MCP 服务器,集成了 Kagi 搜索功能和 Claude AI,使 Claude 能够在回答需要最新信息的问题时执行实时网络搜索。
e2b-mcp-server
使用 MCP 通过 e2b 运行代码。
Neon MCP Server
用于与 Neon 管理 API 和数据库交互的 MCP 服务器
Exa MCP Server
模型上下文协议(MCP)服务器允许像 Claude 这样的 AI 助手使用 Exa AI 搜索 API 进行网络搜索。这种设置允许 AI 模型以安全和受控的方式获取实时的网络信息。