Ask questions, get answers and engage with your peers
Your Cribl login password is the UUID of the Azure VM. There are three ways to retrieve it, depending on your access.## Method 1 — From inside the VM (via SSH), using dmidecodeIf you can SSH into the instance, run:```bashsudo dmidecode | grep UUID```
I was cleaning my Cribl.Cloud instance, and deleted datasets that I no longer needed, unaware that these datasets were still being used by destinations in Stream. When going back to Stream afterwards, I could not load the Lake destination page and wo
This is an article to outline the highest standards of a Cribl deployment and to aid administrators and architects in building it. These recommendations are applicable to expansive or sophisticated deployments. This article has been produced in mid 2
Platform• Cribl-managed MCP Server: Connect your AI tools to your Cribl environment straight from the Leader.• New release channel option: Switch to a "Slow" cadence if you need upgrades to line up with change windows.• Private Links: Self-service pr
This message originated from Cribl Community Slack.Click here to view the original link.Is there a trick to understanding how to read the 'Status' tab of a 'Destination'? It's frustrating that the UI frequently gives very mixed signals. The below im
This message originated from Cribl Community Slack.Click here to view the original link.I was asked this today and I have absolutely what the answer is - why are some fields shaded with a different color in search?Links for this message:image.png
This message originated from Cribl Community Slack.Click here to view the original link.This may have been answered before but I cannot find it. Is there a way in Search if the _time value is visually represented as 2026-05-27 17:11:51.000 and I expo
This message originated from Cribl Community Slack.Click here to view the original link.As we had some debate about this today in a Cribl class... how does Search run its workloads? was it Lambda functions in the early times, and nowadays it's... a S
This message originated from Cribl Community Slack.Click here to view the original link.Is there any way to use Cribl Search with an S3 object that is compressed and password protected?
This message originated from Cribl Community Slack.Click here to view the original link.Should any consideration be given to how often a LHE will be searched when choosing a size? Where does search run? The leader? Instances that are spun up on de
We've noticed that when sending data to Splunk Cloud that originates from an on-prem Splunk Heavy Forwarder (e.g. syslog and API), the Splunk license cost differs depending on whether we send the data via Splunk LB (S2S) or Splunk HEC destiantions. W
An export of code is done to a json fromat only while on servers is used a yml fromat.IMHO, it should be possible to do import/export also in yml format. :)
Does Cribl have any documentation for pulling Workday report logs?
I'm getting 400 responses on a POST Body that I'm trying to pass through the state.latestTime within the POST body. I would like to know what is being posted.I don't seem to be able to get a debug log out of my REST Collector to see what it is POSTin
Hi all i am having issue parsing nested Json the event goes like { "records": [ { "time": "2025-12-18T17:25:46.3598689Z", "operationName": "Publish"}{"time": "2025-12-18T17:25:46.3598689Z", "operationName": "Publish"} ], "_time":
This message originated from Cribl Community Slack.Click here to view the original link.I have data that gets processed in STREAM that I want to send to LHE. Do I send it to search, destination or do I send it to something like a HEC destination an
This message originated from Cribl Community Slack.Click here to view the original link.Has anyone had their destinations drop off but only for the UI? I had about 8 Cribl TCP destinations drop off the UI but when I open an individual node that is on
I am seeking technical guidance on configuring a Database Collector to connect to a Windows SQL Server using Domain/Windows Authentication from a Linux-based Worker Node.We are currently running Cribl Stream version 4.17.Our Worker Nodes are running
Our current license is at 5 TB quota, and we ingest only 337 GBs/day. In the learning material of Cribl University, I saw a reference to a free license of up to 1 TB without distributed administration to the workers, is it possible for us to move fro
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.