Skip to content

Cribl

Connecting NeuBird to Cribl enables querying the data sources available in your Cribl environment. Cribl is a data engine for IT and security telemetry: Cribl Stream routes and shapes data in motion, Cribl Lake stores it long term, and Cribl Search queries data in place across lakes, object stores, and API endpoints — without moving or rehydrating it first. With this connection, NeuBird can run Cribl Search queries against those data sources during investigations.

NeuBird authenticates to Cribl.Cloud using OAuth client credentials (a Client ID and Client Secret), which you create in your Cribl organization.

  1. Log in to Cribl: Access Cribl.Cloud and log in with your credentials.

  2. Navigate to API Credentials: In the top bar, go to Products > Cribl. Then, in the sidebar, select Organization > API Credentials.

    API Credentials page with the Add Credential button and a created credential showing its Client ID and Client Secret

  3. Click Add Credential: At the top-right corner of the API Credentials page, click Add Credential.

  4. Name and save the credential: Provide a name for the API credential (for example, NeuBird) and click Save.

  5. Copy the Client ID and Client Secret: The new credential appears in the list with the Client ID and Client Secret that NeuBird needs. Copy both and store them securely.

NeuBird also needs your workspace’s Cribl.Cloud URL, which is used as the Base URL in the connection form.

  1. In the top bar, go to Products > Cribl.

  2. In the sidebar, select Workspace > Access.

  3. Under Cribl.Cloud Details, copy the Cribl.Cloud URL value.

    Workspace Access page with the Cribl.Cloud URL copy button highlighted

In NeuBird, open the Connections tab and click Add connection. Select Cribl from the provider list, then enter the credentials you collected in the steps above and click Create Connection.

NeuBird Connect Cribl dialog with Connection Name, Base URL, Client ID, and Client Secret fields

FieldRequiredDescription
NameYesA descriptive name for this connection
DescriptionNoAdditional context about the integration
Base URLYesThe Cribl.Cloud URL copied from your workspace in Step 2
Client IDYesThe Client ID from the API credential created in Step 1
Client SecretYesThe Client Secret associated with the Client ID

For general instructions on creating and managing connections, see the Connections Overview.