Destination

Amazon Managed Service for Prometheus

Route data directly to Amazon Managed Prometheus for storing, querying, and alerting on metrics.

About the Integration: 

Cribl adds a native Amazon Managed Service for Prometheus (AMP) destination, allowing teams to send Prometheus-compatible metric events from Stream directly to AMP via the Prometheus remote write pattern. For AWS-first observability teams, that creates a cleaner path into managed metrics storage and alerting while supporting AWS-native authentication for AMP deployments.

Benefits and Use Cases:

  • Send Prometheus-compatible metric events from Cribl Stream to Amazon Managed Service for Prometheus. 

  • Use a dedicated destination tile built for AMP instead of relying on a generic workaround pattern. 

  • Support AWS-native deployments with region-aware configuration, IAM role assumption, and SigV4 signing for the remote write endpoint. 

  • Route, shape, and optimize metrics before delivery to support AWS observability workflows with Amazon Managed Grafana and related services.

How to Get Data Flowing:

This is a built-in integration between Cribl Stream and Amazon Managed Service for Prometheus. 

  • Create or identify the AMP workspace in AWS, wait until it is active, and copy the remote write URL and AWS Region from the workspace details.

  • Grant the IAM identity Cribl will use the aps:RemoteWrite permission; if you plan to assume a role, also allow sts:AssumeRole and ensure the target role can remote write to the workspace.

  • Add a new Amazon AMSP destination in Cribl Stream from QuickConnect or Destinations, then enter a unique Output ID, the AMP remote write URL, and the matching Region.

  • Configure authentication, optional Assume Role, and any persistent queue or retry settings you need for resilience; keep the endpoint on HTTPS and do not manually set SigV4 or Prometheus remote write headers.

  • Attach the destination to the relevant routes or QuickConnect flow, and send only metric events that Cribl can serialize for Prometheus remote write.

  • Verify delivery with Run Test, Live Data, logs, and monitoring before scaling production traffic; confirm the region matches the URL and keep request bodies within AMP limits to avoid non-retryable 413 errors.

Cribl, the Data Engine for IT and Security, empowers organizations to transform their data strategy. Customers use Cribl’s suite of products to collect, process, route, and analyze all IT and security data, delivering the flexibility, choice, and control required to adapt to their ever-changing needs.

We offer free training, certifications, and a free tier across our products. Our community Slack features Cribl engineers, partners, and customers who can answer your questions as you get started and continue to build and evolve. We also offer a variety of hands-on-Sandboxes for those interested in how companies globally leverage our products for their data challenges.