Connect to the hosted server
The hosted server runs at https://mcopenfoam.warehack.ing/mcp. Cases submitted to it run on a 20-core CFD host, one job at a time, in a queue shared by everyone who uses it.
Sign-in is OAuth through auth.supported.systems. Access is granted per account: an account the server’s operator has not added is refused at the sign-in screen.
-
Add the server. In Claude Code:
Terminal window claude mcp add --transport http mcopenfoam https://mcopenfoam.warehack.ing/mcp -
Sign in. Start Claude Code and run
/mcp. The server shows as needing authentication; choose it and pick Authenticate. A browser opens on auth.supported.systems: sign in and approve the consent screen. The browser then returns to Claude Code, and the server lists 25 tools. -
Check who you are. Ask Claude for the server info.
server_inforeturns"auth": "oidc"and"signed_in_as"with your account name. Every job you submit records the same name.
Other clients
Section titled “Other clients”Any client that follows the MCP authorization spec works the same way. It finds the sign-in details itself from the server’s discovery documents, registers itself, and opens the browser:
https://mcopenfoam.warehack.ing/.well-known/oauth-protected-resource/mcphttps://mcopenfoam.warehack.ing/.well-known/oauth-authorization-serverIn Claude Desktop, add it as a custom connector with the URL above. In the MCP Inspector, choose Streamable HTTP and connect; it walks through the same sign-in.
Sessions
Section titled “Sessions”Clients receive a refresh token, so a session survives the access token’s expiry without a new sign-in. Server restarts do not sign anyone out: the sign-in state lives in the server’s database.
When sign-in fails
Section titled “When sign-in fails”| What you see | What it means |
|---|---|
| auth.supported.systems says you do not have access | your account is not in the server’s access group; ask the operator |
| the client reports 401 after working for a while | the refresh failed; run /mcp and authenticate again |
| the client never opens a browser | it does not support MCP OAuth; use a client that does |