Cribl Edge collects and processes host telemetry, including logs, metrics and application data, then sends it to Cribl Stream or supported destinations. It can discover host, container and application data across endpoints. Functions and Pipelines transform, enrich, reduce or redact information before routing. A centralized console lets teams monitor, manage and configure Edge agents across fleets, while Teleport supports endpoint log and metric inspection plus local configuration previews and validation. Edge runs on Linux, Windows and macOS as a single instance or distributed deployment, including Docker and Kubernetes. Destinations include Amazon CloudWatch Logs, Amazon S3, Azure Event Hubs, Google Cloud Logging, Kafka and Splunk HEC. The product page says Edge can manage up to 250,000 nodes, but the free plan is capped at 100 Edge Nodes and includes up to 1TB/day, one Fleet and Community Support. Windows deployments do not support Kubernetes sources, and the Grok Function is unavailable on Windows. Standard lists 8×5 support; Enterprise lists a dedicated 24×7 support team.
Who it is for
Cribl Edge is aimed at ITOps and SecOps engineers, and users of operational or security intelligence products who want to simplify host data collection and analysis. It supports both individual and distributed deployments.
What is good
- Discovers host, container and application telemetry
- Processes data before routing it to destinations
- Centralized fleet management and endpoint inspection
- Runs on Linux, Windows and macOS
- Free plan includes up to 1TB/day
What to know first
- Free plan is limited to 100 Edge Nodes
- Windows lacks Kubernetes sources
- Grok Function is unavailable on Windows
Verdict
Cribl Edge combines endpoint collection, processing and fleet management, with multiple deployment options and destinations. The free plan has a 100-node limit, and Windows users face specific source and function exclusions.
Cribl Edge plans and pricing
All plansCompared on telemetry pipeline software
- Free plan
- Yes
- Logs support
- Yes
- Metrics support
- Yes
- Traces support
- Yes
- Transform rules
- Yes
- Multi-destination routing
- Yes
- Data enrichment
- Yes
- Deployment model
- both




