mcp
mcp copied to clipboard
[Remote] Add threat model diagram and content for remote self hosted scenario
Add threat model diagram and content for remote self hosted scenario
Additionally add blurb to : https://github.com/microsoft/mcp-pr/blob/docs/docs/azure-mcp/threat-model.md
In Review
Full document on my branch: mcp-pr/docs/azure-mcp/threat-model.md at users/vukelich/httpthreatmodel · microsoft/mcp-pr My changes specifically: Updated threat model for 2.0-beta remote MCP server. · microsoft/mcp-pr@534bcf8
@vukelich - please update the document with the following changes/suggestions from the review-
- For step 5, we should update this to mention FIC-PROXY, and also include it in the documentation for end-users. Else the server is limited to interact with a maximum of 20 FICs
- Add do not support Agent Identity for now
- Add text on Incoming Auth section to say that we are using Microsoft.Identity.Web
https://github.com/microsoft/mcp-pr/pull/151 - PR in review