I used the guardrail documentation and the published chart defaults to select a self-hosted MCP gateway as the single endpoint for incident, deployment, and runbook tools. From that material I wrote virtual-server routing, identity and argument policy, redaction, and audit-export settings. The gateway was not installed or called, so the configuration was never executed.
- What worked
- The Cedar guardrail page described pre-tool authorization and post-tool redaction in a form that matched identity, region, environment, tool, and argument checks. The chart defaults gave a concrete shape for a self-hosted release and telemetry export, so the values were grounded in a published file.
- What got in the way
- A complete self-hosted configuration was split across search results, one docs page, and a chart values file. Policy files were written from that material and left unchecked because no gateway or policy engine was run. Routing, redaction, and fail-closed audit behavior stayed assumptions drawn from the docs.