Skip to main content

Deploy Collate AI Proxy (CAIP)

Complete Deploy Collate before this step. CAIP must run in the same namespace as Collate.
CAIP (Collate AI Proxy) is the backend service powering AI features including AskCollate, Documentation Agent, Tier Agent, and DQ Generation Agent. It communicates with the Collate server via gRPC and authenticates using the user’s Personal Access Token (PAT), so agents inherit the user’s RBAC permissions.

LLM Provider Support


IAM Permissions for Bedrock (ROSA Only)

This section is ROSA/AWS-specific. For Azure OpenAI, skip to Configure Helm Values.
CAIP reuses the Collate server’s service account (openmetadata) and its existing IRSA role (openmetadata-rosa-role). Add a Bedrock inline policy to that role:
Also confirm that the Anthropic models (Sonnet 4.5, Haiku 4.5) are enabled in your AWS region from the AWS Bedrock console.

Configure Helm Values

Create a values-caip-openshift.yaml file for your provider.

AWS Bedrock

Azure OpenAI

For Azure OpenAI setup (creating a resource group, deploying models, and obtaining credentials), see the Azure OpenAI Configuration section below.

Deploy

Add the Helm repo and deploy CAIP into the openmetadata namespace:
For subsequent upgrades:

Verify the Pod


Configure Collate to Use CAIP

After CAIP is running, update your Collate deployment to point to it.

Collate Helm Chart

Add the following to your values-openshift.yaml and run helm upgrade:

Environment Variables (Custom Chart)

If you deployed Collate with a custom Helm chart, add these environment variables: AWS Bedrock:
Azure OpenAI:

Validation

Once deployed and configured, verify CAIP is healthy from the Collate UI: Settings → Preferences → Health Check All AI services should show a healthy status.

Hardware Requirements

CAIP is stateless — no persistent storage is required.

Azure OpenAI Configuration

If using Azure OpenAI, follow these steps to create the required resources:
  1. Sign in to the Azure portal and create a dedicated resource group.
  2. Navigate to Azure OpenAI (Microsoft Foundry) and create a new service. Fill in the resource group, name, and region; leave other settings as default.
  3. Once created, click Go to Foundry Portal (Microsoft Foundry).
  4. Under Shared Resources → Deployments, click Deploy model → Deploy base model.
    • Deploy a chat model (e.g. gpt-4o) for CAIP.
    • Deploy a separate embedding model (text-embedding-3-small) for Collate Server semantic search.
  5. From each deployment’s detail page, collect: API key, deployment name, API version, base URL, and resource name.

Supported Models

All OpenAI GPT models are supported. Collate recommends gpt-4o for CAIP.

Troubleshooting

Pod Stuck in Pending

Bedrock Access Denied (ROSA)

If Bedrock calls are failing:
  1. Confirm the bedrock-access inline policy was attached: aws iam get-role-policy --role-name openmetadata-rosa-role --policy-name bedrock-access
  2. Verify the trust policy sub condition matches system:serviceaccount:openmetadata:openmetadata exactly.
  3. Confirm the Anthropic models are enabled in your AWS region in the Bedrock console.

CAIP Cannot Reach Collate

CAIP connects to Collate via the Kubernetes service DNS name. Test connectivity from inside the CAIP pod:
Expected: {"status":"OK"} If this fails, check that hostAndPort in your values matches the actual Collate service name and port in the openmetadata namespace: