On This Page

Home / Lake/Ship Data into Cribl Lake Without a Pipeline

Ship Data into Cribl Lake Without a Pipeline

Ship your data straight into Cribl Lake without using a Pipeline, bypassing Cribl Stream.


You can use Direct Access options to archive certain data directly to Cribl Lake. Here, you bypass routing inbound data through Cribl Stream. Once your data is integrated with Cribl Lake, Cribl Stream and Cribl Search can access it as a Lake Dataset.

We provide the following Direct Access options for different data sources:

  • Direct Access (HTTP): Use this option to ingest data over HTTP from a wide variety of senders. Examples include FluentBit, Logstash, Vector, and the OpenTelemetry Collector. You will find specific configuration settings for Elasticsearch Bulk API and Splunk HEC senders.

  • Netskope Direct Access: Use this option to ingest data using Netskope for Cloud Access Security Broker (CASB), data loss prevention (DLP), and network-security telemetry will be able to land that data directly into Cribl Lake for search and analysis without manually managing AWS infrastructure.

  • Splunk Cloud Self Storage: Use this option to ingest data from Splunk Cloud DDSS (Dynamic Data Self Storage) indexes.

You can configure one Direct Access Source of each type per Workspace.