MCP server for Aruba Central: expose AP, switch, and client status to AI assistants
Project description
aruba-central-mcp
English | 日本語
MCP server for Aruba Central (GreenLake New Central API).
Exposes access point, switch, and wireless client status to MCP-compatible AI assistants (Claude Code, Claude Desktop, etc.) via STDIO transport.
Features
Access Points
| Tool | Description |
|---|---|
list_aps |
List all access points (with optional site/status filter) |
list_radios |
List AP radios (channel, utilization, noise floor, TX power) |
list_bssids |
List all BSSIDs |
list_wlans |
List WLANs (SSID, security, VLAN) |
list_swarms |
List AP swarms/clusters |
get_ap_status |
Get detailed status of a specific AP |
get_ap_throughput |
Get AP throughput trend (TX/RX over time) |
get_top_aps |
Top APs by bandwidth usage (wireless/wired/total) |
Clients
| Tool | Description |
|---|---|
list_clients |
List connected wireless clients (with optional SSID/band filter) |
find_client_by_mac |
Find a client by MAC address (direct API lookup) |
get_clients_trend |
Client count trend over time |
get_top_clients_by_usage |
Top clients by bandwidth usage |
get_client_mobility_trail |
Client roaming history |
Infrastructure
| Tool | Description |
|---|---|
list_switches |
List all switches |
get_site_summary |
Aggregated site-level summary (AP counts, client counts) |
health_check |
Report server version and verify Aruba Central authentication (no data fetch) |
Highlights
- Server-side OData filtering for efficient queries
- OAuth2 Client Credentials authentication (GreenLake SSO)
- Automatic pagination for large result sets
- Token auto-refresh before expiration
- Lightweight: only
mcpSDK +httpx(no pandas)
Prerequisites
- Python 3.10+
- Aruba Central account with API access (GreenLake New Central API)
- OAuth2 client credentials (client ID and secret)
Setup
# uv
uv pip install aruba-central-mcp
# pip
pip install aruba-central-mcp
Or run without installing:
uvx aruba-central-mcp
From source:
git clone https://github.com/shigechika/aruba-central-mcp.git
cd aruba-central-mcp
# uv
uv sync
# pip
pip install -e .
Configuration
Set the following environment variables:
| Variable | Description | Example |
|---|---|---|
ARUBA_CENTRAL_BASE_URL |
API gateway URL | apigw-uswest4.central.arubanetworks.com |
ARUBA_CENTRAL_CLIENT_ID |
OAuth2 client ID | xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx |
ARUBA_CENTRAL_CLIENT_SECRET |
OAuth2 client secret | xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx |
How to obtain API credentials
- Log in to HPE GreenLake Platform
- Go to Manage Workspace > Personal API clients
- Click Create Personal API client
- Enter a nickname and select Aruba Central as the service
- Copy the
client_idandclient_secret— the secret is shown only once
For details, see:
Usage
Claude Code
claude mcp add aruba-central \
-e ARUBA_CENTRAL_BASE_URL=apigw-uswest4.central.arubanetworks.com \
-e ARUBA_CENTRAL_CLIENT_ID=your-client-id \
-e ARUBA_CENTRAL_CLIENT_SECRET=your-client-secret \
-- uvx aruba-central-mcp
Or add to .mcp.json:
{
"mcpServers": {
"aruba-central": {
"command": "uvx",
"args": ["aruba-central-mcp"],
"env": {
"ARUBA_CENTRAL_BASE_URL": "apigw-uswest4.central.arubanetworks.com",
"ARUBA_CENTRAL_CLIENT_ID": "your-client-id",
"ARUBA_CENTRAL_CLIENT_SECRET": "your-client-secret"
}
}
}
}
Claude Desktop
Add to claude_desktop_config.json:
{
"mcpServers": {
"aruba-central": {
"command": "uvx",
"args": ["aruba-central-mcp"],
"env": {
"ARUBA_CENTRAL_BASE_URL": "apigw-uswest4.central.arubanetworks.com",
"ARUBA_CENTRAL_CLIENT_ID": "your-client-id",
"ARUBA_CENTRAL_CLIENT_SECRET": "your-client-secret"
}
}
}
}
Direct execution
export ARUBA_CENTRAL_BASE_URL="apigw-uswest4.central.arubanetworks.com"
export ARUBA_CENTRAL_CLIENT_ID="your-client-id"
export ARUBA_CENTRAL_CLIENT_SECRET="your-client-secret"
python3 -m aruba_central_mcp
CLI Options
aruba-central-mcp --version # Print version and exit
aruba-central-mcp --help # Show usage and required environment variables
aruba-central-mcp --check # Verify environment variables and OAuth2 authentication, then exit
aruba-central-mcp # Start MCP server (STDIO, default)
With no options, the process runs as an MCP STDIO server (the mode used by MCP clients).
--check exit codes: 0 success, 1 config error, 2 auth error.
Development
git clone https://github.com/shigechika/aruba-central-mcp.git
cd aruba-central-mcp
# uv
uv sync --dev
uv run pytest -v
# pip
python3 -m venv .venv
.venv/bin/pip install -e ".[test]"
.venv/bin/pytest -v
Live smoke test
The unit suite mocks Central at the transport layer, which is what makes it
fast — and also what makes it blind to a tool that has stopped returning real
data. scripts/smoke_test.py runs every registered tool against the
configured tenant and fails on empty, malformed or error answers:
# needs the same ARUBA_CENTRAL_* environment variables as the server
uv run python scripts/smoke_test.py
uv run python scripts/smoke_test.py --only radios --traceback
- Read-only. Every tool here reads; nothing in Central is configured. A future tool that writes must be listed as state-changing and skipped, and a test enforces that.
- No payloads in the report. Tool names, statuses and row counts only; error text is redacted too, since an error routinely quotes the device, client MAC or site it was asked about.
- Nothing network-specific in the specs. The AP, the serial number and the client MAC that the per-device tools need are discovered at run time from the listings, and skipped when the network has none to offer. Two tests keep it that way: one refuses those parameters as literals, the other bans anything address-shaped anywhere in the file, because this repository is public.
- Empty answers pass for the listings and the time-series tools — a site with no swarms configured is a real deployment — but a lookup handed a name discovered seconds earlier must not come back empty, and those probes say so.
- CI enforces the cheap half: a tool registered without a probe spec fails the
build (
tests/test_smoke_probes.py), so adding a tool forces the question "how would we know it works?". scripts/smoke_harness.pyis the engine and holds no Central knowledge: it is kept identical across the servers that share it, so fix engine bugs once and sync the file rather than patching this copy.
Its first run found a real one: get_client_mobility_trail was requesting a
page size the endpoint rejects, so the tool had been failing for every client.
API Reference
This server uses the GreenLake New Central API:
/network-monitoring/v1/aps— Access points/network-monitoring/v1/radios— AP radios/network-monitoring/v1/bssids— BSSIDs/network-monitoring/v1/wlans— WLANs/network-monitoring/v1/swarms— AP swarms/clusters/network-monitoring/v1/switches— Switches/network-monitoring/v1/clients— Clients/network-monitoring/v1/clients-trend— Client count trends/network-monitoring/v1/clients-topn-usage— Top clients by usage/network-monitoring/v1/top-aps-by-usage— Top APs by usage
License
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file aruba_central_mcp-0.6.0.tar.gz.
File metadata
- Download URL: aruba_central_mcp-0.6.0.tar.gz
- Upload date:
- Size: 30.1 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
7c2d209e0828afb283c3d8511ae4bac76a67257b19d6a382e2eacfa4c4b46657
|
|
| MD5 |
a9c1d20636bf3f3a23f4efed82480c47
|
|
| BLAKE2b-256 |
3813c7af5ab2b0a335303b3ca335007161b34c157531c3629da7650e59642c00
|
Provenance
The following attestation bundles were made for aruba_central_mcp-0.6.0.tar.gz:
Publisher:
release.yml on shigechika/aruba-central-mcp
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
aruba_central_mcp-0.6.0.tar.gz -
Subject digest:
7c2d209e0828afb283c3d8511ae4bac76a67257b19d6a382e2eacfa4c4b46657 - Sigstore transparency entry: 2255429295
- Sigstore integration time:
-
Permalink:
shigechika/aruba-central-mcp@daf1a17f886acec69fccbcd1234eba1d2171cf2a -
Branch / Tag:
refs/tags/v0.6.0 - Owner: https://github.com/shigechika
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release.yml@daf1a17f886acec69fccbcd1234eba1d2171cf2a -
Trigger Event:
release
-
Statement type:
File details
Details for the file aruba_central_mcp-0.6.0-py3-none-any.whl.
File metadata
- Download URL: aruba_central_mcp-0.6.0-py3-none-any.whl
- Upload date:
- Size: 17.9 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
4eaf7a9b2ac9b79cb0e0eb5f34511e28266ab257f4f8f02f4c0d55643fe61efe
|
|
| MD5 |
1ef7e0ae960c157389d1323100923636
|
|
| BLAKE2b-256 |
75d8c43666e7f7f494426557ce60e7670b7bc09a3a57c1dbead9e0b656d882bd
|
Provenance
The following attestation bundles were made for aruba_central_mcp-0.6.0-py3-none-any.whl:
Publisher:
release.yml on shigechika/aruba-central-mcp
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
aruba_central_mcp-0.6.0-py3-none-any.whl -
Subject digest:
4eaf7a9b2ac9b79cb0e0eb5f34511e28266ab257f4f8f02f4c0d55643fe61efe - Sigstore transparency entry: 2255429297
- Sigstore integration time:
-
Permalink:
shigechika/aruba-central-mcp@daf1a17f886acec69fccbcd1234eba1d2171cf2a -
Branch / Tag:
refs/tags/v0.6.0 - Owner: https://github.com/shigechika
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release.yml@daf1a17f886acec69fccbcd1234eba1d2171cf2a -
Trigger Event:
release
-
Statement type: