Skip to main content

loki

Catalog date: 2026-06-24.

Grafana Loki — the log aggregation backend. Receives logs from two paths per the current manifests: the OTel Collector gateway's filelog receiver (Loki is documented there as a "secondary compatibility path" behind Data Prepper/OpenSearch — see collector-gateway.yaml), and the vector log shipper, whose own config comment describes it as a "backup log shipper (defense-in-depth alongside OTel Collector)" — not the canonical shipper. Serves Grafana for queries either way.

Identity​

FieldValue
Service idloki
Roleobservability
Imagegrafana/loki:3.3.2
Port3100
Health/ready

Deployment surfaces​

SurfaceWhere
Composeservice loki in alphaswarm_platform/compose/docker-compose.platform.yml (platform overlay)
Kustomize + Helmobservability/loki/ — installed via the grafana/loki Helm chart (deploymentMode: SingleBinary, values.yaml); the Kustomization only manages supporting Secrets (resources: []). No separate cloud-cell split-monolithic mode was found — every non-monolithic target (read/write/backend/etc.) is zeroed to replicas: 0

Dependencies​

Upstream: vector (backup/defense-in-depth log shipper) and the otel-collector gateway's filelog receiver (secondary/compat path per its own manifest comments).

Downstream: grafana (datasource).

Operations​

  • Storage: the canonical install is the grafana/loki Helm chart in SingleBinary mode (per values.yaml), backed by MinIO/S3 (storage.type: s3, bucket loki-data), with a 20Gi local-path PVC for the pod itself; the Kustomization's own resources: [] shows it manages only supporting Secrets, not the Loki install itself.
  • Retention: values.yaml sets limits_config.retention_period: 720h (30 days) flat — no 14 days default / audit-* stream override was found anywhere in this repo.
  • Tenancy: loki.auth_enabled: false in both the Helm values and the (unused) raw ConfigMap — Loki's own multi-tenancy is off. No tenant_id label was found in the vector or otel-collector log pipelines; the labels actually applied are cluster, shipper, namespace, pod, container, node. Correcting the earlier tenancy claim.

See also​