Setup IAM Domain Roles
This part includes the following steps:
- Create groups in the domain for each application role.
- Assign groups to application roles.
- Create Users in the domain.
- Assign users to groups.
Create Groups in the Domain for Each Application Role
-
In the Model Context Protocol Servers page, select mcpserver, and then Domain.
-
In the
dbtools-mcpdomain, go to User management and then Groups. -
Create the following groups:
Group Name Application Role MCP_Administrators MCP_Administrator MCP_Operators MCP_Operator MCP_Users MCP_User MCP_All_Users Not Applicable For more information about creating groups in domains, see Creating a Group.
Assign Groups to Application Roles
- In the Model Context Protocol Servers page, select mcpserver, and then select the Roles tab.
- Click Assign Roles.
-
For each Application Role:
- Click the Actions icon and select Manage groups.
- Click Assign groups.
- Select the required groups in the list of Available groups.
- Click Assign.
Create Users in the Domain
For the domain dbtools-mcp, create users.
See Create a User in an Identity Domain to learn how to create a user in an identity domain.
For the
dbtools-mcp domain, assign users to groups.
See Adding a User to a Group to learn how to add a user to a group.
You must have an Application Role assigned to use the MCP Server and to download Personal Access Tokens.