Resources · Documentation
Enterprise documentation for ForgeCrux One
4
gateway APIs
API, AI, MCP, and Agent surfaces under one auth model.
GitOps
as the source of truth
Terraform, Helm, and Kubernetes operator examples.
SSO
first-class
OIDC, SAML, SCIM, and workload identity in every guide.
OTEL
telemetry contract
Traces, metrics, and logs from the first install.
Enterprise data
Uses, installation, setup, and security—the same operating model as the platform and solutions pages.
Enterprise uses
Who the docs are written for—and the jobs they complete.
- Platform engineers installing data planes and promoting config
- Security architects mapping RBAC, vault, and audit to GRC controls
- SRE wiring SLOs, collectors, and incident routes
- AI CoE publishing model catalogs, budgets, and eval gates
- Integration teams façade-ing SoRs without a consumer rewrite
- Developers calling one OpenAI-compatible and MCP endpoint
Installation
Day-0 footprints covered in the install guides.
- SaaS control plane with regional pin
- Hybrid: SaaS control, customer-owned data plane (VPC / Kubernetes / on-prem)
- Self-hosted control plane on private Kubernetes or OpenShift
- Air-gapped clusters with signed artifact promotion
- Helm charts, Terraform modules, and the Kubernetes operator
- Connected, proxy-restricted, and disconnected network modes
Setup & onboarding
The path from empty org to first production hop.
- Create organization, environments, and break-glass admins
- Connect SSO (OIDC/SAML), SCIM groups, and custom roles
- Join API, AI, MCP, and Agent data planes with mTLS
- Import OpenAPI, model providers, MCP servers, and agents
- Attach OpenTelemetry exporters and default SLO packs
- Promote a non-prod dual-run, then production with rollback
Security
Controls documented as runnable config, not slides.
- SSO, MFA, RBAC/ABAC, and separation of duties
- Workload identity and mTLS between control and data planes
- Vault/KMS, key rotation, and no long-lived secrets in agents
- PII/PHI redaction on AI prompts and MCP tool payloads
- Immutable audit of config, policy, and session replay access
- Residency, private link, and air-gapped operator guides
Reference topics
Core surfaces in the documentation set.
- API Gateway: proxies, products, policies, portal, analytics
- AI Gateway: routing, guardrails, prompts, evals, spend
- MCP Gateway: catalogs, vault JIT, arg-level authZ, HITL
- Agent Gateway: identity, A2A, budgets, traces, kill switch
- Control plane: catalog, PDP, GitOps, multi-region HA
- Observability: collectors, maps, anomalies, SIEM export
Need implementation help?
We can walk your platform and security teams through hybrid install, SSO, and the first production wave.