strazactl apps bind
Give a role the server owns access to its tools (a tool without access does not exist for the role)
On this page
Synopsis
Gives a role that the server owns its one access row on the server. A role made with strazactl roles create scout-tools-readers --app scout-tools --tools echo has that row already, so bind is for such a role whose row was removed with strazactl apps unbind. To change the tools of a row, edit spec.bindings in the output of strazactl roles export scout-tools-readers and propose that file with strazactl drafts create -f. A role that belongs to no server gains no access row.
strazactl apps bind <server> [flags]
Examples
strazactl apps bind scout-tools --role scout-tools-readers --tools "echo,get-sum"
strazactl apps bind scout-tools --role scout-tools-readers
Options
--role string the name of a role this server owns, made with strazactl roles create <server>-<word> --app <server>
--tools strings tool names or globs. Without it the access row is every tool, including tools added later, which only a global admin may give
Options inherited from parent commands
--server string strazad base URL (overrides $STRAZA_SERVER and the server you logged into)
See also
- strazactl apps: Manage MCP servers