Resources · Documentation

Enterprise documentation for ForgeCrux One

Install, set up, and secure the control plane and every data plane from one documentation set—API, AI, MCP, Agent, GitOps, and observability included.

4

gateway APIs

API, AI, MCP, and Agent surfaces under one auth model.

GitOps

as the source of truth

Terraform, Helm, and Kubernetes operator examples.

SSO

first-class

OIDC, SAML, SCIM, and workload identity in every guide.

OTEL

telemetry contract

Traces, metrics, and logs from the first install.

Enterprise data

Uses, installation, setup, and security—the same operating model as the platform and solutions pages.

Enterprise uses

Who the docs are written for—and the jobs they complete.

  • Platform engineers installing data planes and promoting config
  • Security architects mapping RBAC, vault, and audit to GRC controls
  • SRE wiring SLOs, collectors, and incident routes
  • AI CoE publishing model catalogs, budgets, and eval gates
  • Integration teams façade-ing SoRs without a consumer rewrite
  • Developers calling one OpenAI-compatible and MCP endpoint

Installation

Day-0 footprints covered in the install guides.

  • SaaS control plane with regional pin
  • Hybrid: SaaS control, customer-owned data plane (VPC / Kubernetes / on-prem)
  • Self-hosted control plane on private Kubernetes or OpenShift
  • Air-gapped clusters with signed artifact promotion
  • Helm charts, Terraform modules, and the Kubernetes operator
  • Connected, proxy-restricted, and disconnected network modes

Setup & onboarding

The path from empty org to first production hop.

  • Create organization, environments, and break-glass admins
  • Connect SSO (OIDC/SAML), SCIM groups, and custom roles
  • Join API, AI, MCP, and Agent data planes with mTLS
  • Import OpenAPI, model providers, MCP servers, and agents
  • Attach OpenTelemetry exporters and default SLO packs
  • Promote a non-prod dual-run, then production with rollback

Security

Controls documented as runnable config, not slides.

  • SSO, MFA, RBAC/ABAC, and separation of duties
  • Workload identity and mTLS between control and data planes
  • Vault/KMS, key rotation, and no long-lived secrets in agents
  • PII/PHI redaction on AI prompts and MCP tool payloads
  • Immutable audit of config, policy, and session replay access
  • Residency, private link, and air-gapped operator guides

Reference topics

Core surfaces in the documentation set.

  • API Gateway: proxies, products, policies, portal, analytics
  • AI Gateway: routing, guardrails, prompts, evals, spend
  • MCP Gateway: catalogs, vault JIT, arg-level authZ, HITL
  • Agent Gateway: identity, A2A, budgets, traces, kill switch
  • Control plane: catalog, PDP, GitOps, multi-region HA
  • Observability: collectors, maps, anomalies, SIEM export

Need implementation help?

We can walk your platform and security teams through hybrid install, SSO, and the first production wave.