loki
Catalog date: 2026-06-24.
Grafana Loki — the log aggregation backend. Receives logs from two
paths per the current manifests: the OTel Collector gateway's
filelog receiver (Loki is documented there as a "secondary
compatibility path" behind Data Prepper/OpenSearch — see
collector-gateway.yaml),
and the vector log shipper, whose own config comment describes it as
a "backup log shipper (defense-in-depth alongside OTel Collector)" —
not the canonical shipper. Serves Grafana for queries either way.
Identity
| Field | Value |
|---|---|
| Service id | loki |
| Role | observability |
| Image | grafana/loki:3.3.2 |
| Port | 3100 |
| Health | /ready |
Deployment surfaces
| Surface | Where |
|---|---|
| Compose | service loki in alphaswarm_platform/compose/docker-compose.platform.yml (platform overlay) |
| Kustomize + Helm | observability/loki/ — installed via the grafana/loki Helm chart (deploymentMode: SingleBinary, values.yaml); the Kustomization only manages supporting Secrets (resources: []). No separate cloud-cell split-monolithic mode was found — every non-monolithic target (read/write/backend/etc.) is zeroed to replicas: 0 |
Dependencies
Upstream: vector (backup/defense-in-depth log shipper) and the
otel-collector gateway's filelog receiver (secondary/compat path
per its own manifest comments).
Downstream: grafana (datasource).
Operations
- Storage: the canonical install is the
grafana/lokiHelm chart inSingleBinarymode (pervalues.yaml), backed by MinIO/S3 (storage.type: s3, bucketloki-data), with a 20Gi local-path PVC for the pod itself; the Kustomization's ownresources: []shows it manages only supporting Secrets, not the Loki install itself. - Retention:
values.yamlsetslimits_config.retention_period: 720h(30 days) flat — no14 days default/audit-*stream override was found anywhere in this repo. - Tenancy:
loki.auth_enabled: falsein both the Helm values and the (unused) raw ConfigMap — Loki's own multi-tenancy is off. Notenant_idlabel was found in thevectororotel-collectorlog pipelines; the labels actually applied arecluster,shipper,namespace,pod,container,node. Correcting the earlier tenancy claim.
See also
vector.md— log shipper.grafana.md— visualization layer.