mechub sovereign network-security automation ← all projects
mcp server v0.27.2 MIT

rustjunosmcp

MCP server for Juniper Junos and SRX devices

One Rust MCP server for Juniper Junos and SRX devices: core Junos tools plus SRX security workflows, drop-in compatible with Juniper/junos-mcp-server.

About

A Model Context Protocol server for Juniper Junos and SRX devices, written in Rust. A single rust-junosmcp process exposes the core Junos tools and, by default, the SRX security workflows through one tool registry and endpoint.

It is drop-in compatible with Juniper/junos-mcp-server on the devices.json inventory format and core tool surface, but built on async Rust (rustez and rustnetconf) instead of PyEZ.

Features

  • Safer config: commit_check_config validates without committing, confirmed commits with auto-rollback, and discard_candidate
  • Device lifecycle: staged upgrade_junos, SCP transfer_file and fetch_file, PFE commands
  • Parallel session-pooled batch commands and output caps
  • Streamable HTTP with per-token router and tool scopes, TLS and a Host allowlist
  • SRX tools: IDP and Application-ID signature updates, chassis-cluster health, license and security-services status

Quick start

Clone and build

git clone https://github.com/mechubsec/rustjunosmcp.git
cd rustjunosmcp
cargo build --release

Configure devices

cp devices-template.json devices.json
# Edit devices.json with your SRX details

Run as an MCP server

./target/release/rust-junosmcp -f devices.json

Full instructions in the README ↗