Security · The defenders / Cribl App

ArMo Architecture Designer

Design, size and plan a Cribl deployment in minutes, from inside Cribl, grounded in Cribl's published sizing guidance and your live workspace.

  • Cribl App
  • Released · v1.0.2
  • Cribl App Hackathon
  • Open source · Apache-2.0

The film

See it in 53 seconds.

A work-in-progress film, from the opening through the design step.

The missing piece

From “what data do you have?” to a defensible architecture.

The problem

Scoping a Cribl deployment usually means spreadsheets, rules of thumb and a diagram drawn by hand, then explaining every number to the customer.

The missing piece

An app that turns your sources and destinations into an interactive diagram, sizing with every calculation shown, the design decisions with their reasoning, and a scheduled deployment plan.

What it does

Sized, explained and scheduled.

01

A seven-step guided designer

Deployment mode, sources and destinations with per-source routing, architecture drivers, features and Persistent Queues, architecture, deployment plan, build in Cribl.

02

Sizing from Cribl's guidance

  • 200 GB/day per x86 vCPU (480 per ARM / Graviton vCPU), in + out
  • HA that survives 20% of Worker Nodes down
  • At least 3 Worker Nodes per production Worker Group
03

An interactive architecture diagram

Leader, Worker Groups, Edge Fleets, load balancers, Syslog and cloud collection and destinations, with real product logos and the correct ports.

04

Persistent Queue sizing

Disk sizing for the outage window you choose. Aware of Cribl.Cloud, Hybrid and On-Prem topologies, and Leader HA.

05

A real deployment plan

Twelve workstreams with parallel scheduling, the critical path, party assignment and progress tracking. Export to Markdown or PDF.

06

Import, then preview the build

Reads your Worker Groups, Worker Nodes, Sources, Destinations and license usage to pre-fill a design, then previews the Cribl configuration it needs.

How it works

Seven steps, one design.

  1. StartA new design, the sample, or import from your workspace.
  2. Map your dataSource groups, destinations and what goes where.
  3. Set the driversWorker Group strategy, CPU, node size, peak factor, filtering.
  4. Choose featuresAnd how Persistent Queues behave.
  5. ReviewDiagram, sizing, decisions and warnings.
  6. PlanSchedule, assign parties, track and export.
  7. BuildPreview the Cribl configuration.

Built for

Pre-sales, partners and platform owners.

Who it's for

Pre-sales and solutions engineers, partners, platform owners and Cribl admins. Works with Stream, Edge, Lake, Search, Cribl.Cloud and Hybrid.

Read-only and private

It only reads Cribl configuration and never writes to it. It makes no external calls. Designs are stored per user in the app's own storage.

Honest about its limits

Sizing is a planning estimate: validate it with real data and Cribl's Sizing Calculator. “Apply to workspace” is preview-only in this version.

Built by Arno Arzumanyan and Moïse Aubert (ARMO) for the Cribl App Hackathon. Community-built, open source under the Apache 2.0 licence, and installable from the repository as a Cribl App package.