Grafana Loki
Self-managed or Grafana Cloud.
Access mode: Read-only
Niche connector. This system is queryable via Flume’s Lakehouse (Trino) and supported on request. It is not part of the standard data estate onboarding but is available for clients with specific requirements.
Required information
| Field | Details |
|---|---|
| Loki endpoint | Loki query frontend URL. Grafana Cloud: provided endpoint. |
| Port | Default 3100. Grafana Cloud: HTTPS on 443. |
| Authentication | Self-managed: multi-tenant header (X-Scope-OrgID) or no auth. Grafana Cloud: API key. |
| Log stream selectors | Label matchers to scope access (e.g., {app="myservice"}). |
Network considerations
Self-managed: VPN or direct access to query frontend on port 3100.
Grafana Cloud: HTTPS over 443. API key authentication.
Trino access: Flume’s Lakehouse queries Loki via the Trino Loki connector through the HTTP API.
Credential and auth management
Self-managed: Multi-tenancy via X-Scope-OrgID header. No fine-grained auth in OSS.
Grafana Cloud: API key with LogsViewer role.
Validation checks
| Check | Method | Expected result |
|---|---|---|
| Network reachability | curl http://<host>:3100/ready | Returns ready |
| Query test | GET /loki/api/v1/query?query={app="test"} | Returns log entries |
| Label listing | GET /loki/api/v1/labels | Lists available labels |
Every connection starts from the pre-engagement checklist and goes through the universal validation protocol before production sign-off.