Emmanuel Vasilakis 2fd2607475 Send chart context with alert events to the cloud (#13409) 2 years ago
..
aclk-schemas @ 3252118bd5 291b978282 Rrdcontext (#13335) 2 years ago
schema-wrappers 2fd2607475 Send chart context with alert events to the cloud (#13409) 2 years ago
README.md 02996dab66 Docs housekeeping (#13179) 2 years ago
aclk.c ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk.h ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_alarm_api.c ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_alarm_api.h 81e23e71ce Adds new alarm status protocol messages (#11612) 3 years ago
aclk_api.c 291b978282 Rrdcontext (#13335) 2 years ago
aclk_api.h 291b978282 Rrdcontext (#13335) 2 years ago
aclk_charts_api.c ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_charts_api.h 19d9a0030d UpdateNodeCollectors message (#13330) 2 years ago
aclk_contexts_api.c ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_contexts_api.h 291b978282 Rrdcontext (#13335) 2 years ago
aclk_otp.c 291b978282 Rrdcontext (#13335) 2 years ago
aclk_otp.h 12340cf1ef Remove warnings when openssl 3 is used. (#13170) 2 years ago
aclk_proxy.c 59af90b08c Allows ACLK NG and Legacy to coexist (#11225) 3 years ago
aclk_proxy.h 59af90b08c Allows ACLK NG and Legacy to coexist (#11225) 3 years ago
aclk_query.c ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_query.h ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_query_queue.c ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_query_queue.h ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_rrdhost_state.h cb13f0787d Removes Legacy JSON Cloud Protocol Support In Agent (#13111) 2 years ago
aclk_rx_msgs.c ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_rx_msgs.h f8b7a9c63b Better ACLK debug communication log (#13281) 2 years ago
aclk_stats.c ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_stats.h ed52c959de Revert "Query queue only for queries" (#13452) 2 years ago
aclk_tx_msgs.c 291b978282 Rrdcontext (#13335) 2 years ago
aclk_tx_msgs.h cb13f0787d Removes Legacy JSON Cloud Protocol Support In Agent (#13111) 2 years ago
aclk_util.c 291b978282 Rrdcontext (#13335) 2 years ago
aclk_util.h 291b978282 Rrdcontext (#13335) 2 years ago
https_client.c d8b7b6a25f Fix compilation warnings on macOS (#12082) 3 years ago
https_client.h a3c46ef3ec implements ACLK env endpoint (#10833) 3 years ago

README.md

Agent-cloud link (ACLK)

The Agent-Cloud link (ACLK) is the mechanism responsible for securely connecting a Netdata Agent to your web browser through Netdata Cloud. The ACLK establishes an outgoing secure WebSocket (WSS) connection to Netdata Cloud on port 443. The ACLK is encrypted, safe, and is only established if you connect your node.

The Cloud App lives at app.netdata.cloud which currently resolves to the following list of IPs:

  • 54.198.178.11
  • 44.207.131.212
  • 44.196.50.41

:::caution

This list of IPs can change without notice, we strongly advise you to whitelist the domain app.netdata.cloud, if this is not an option in your case always verify the current domain resolution (e.g via the host command).

:::

For a guide to connecting a node using the ACLK, plus additional troubleshooting and reference information, read our get started with Cloud guide or the full connect to Cloud documentation.

Data privacy

Data privacy is very important to us. We firmly believe that your data belongs to you. This is why we don't store any metric data in Netdata Cloud.

All the data that you see in the web browser when using Netdata Cloud, is actually streamed directly from the Netdata Agent to the Netdata Cloud dashboard. The data passes through our systems, but it isn't stored.

However, to be able to offer the stunning visualizations and advanced functionality of Netdata Cloud, it does store a limited number of metadata.

Read more about Data privacy in the Netdata Cloud in the documentation.

Enable and configure the ACLK

The ACLK is enabled by default, with its settings automatically configured and stored in the Agent's memory. No file is created at /var/lib/netdata/cloud.d/cloud.conf until you either connect a node or create it yourself. The default configuration uses two settings:

[global]
  enabled = yes
  cloud base url = https://app.netdata.cloud

If your Agent needs to use a proxy to access the internet, you must set up a proxy for connecting to cloud.

You can configure following keys in the netdata.conf section [cloud]:

[cloud]
  statistics = yes
  query thread count = 2
  mqtt5 = yes
  • statistics enables/disables ACLK related statistics and their charts. You can disable this to save some space in the database and slightly reduce memory usage of Netdata Agent.
  • query thread count specifies the number of threads to process cloud queries. Increasing this setting is useful for nodes with many children (streaming), which can expect to handle more queries (and/or more complicated queries).
  • mqtt5 allows disabling the new MQTT5 implementation which is used now by default in case of issues. This option will be removed in future stable release.

Disable the ACLK

You have two options if you prefer to disable the ACLK and not use Netdata Cloud.

Disable at installation

You can pass the --disable-cloud parameter to the Agent installation when using a kickstart script (kickstart.sh, or a manual installation from Git.

When you pass this parameter, the installer does not download or compile any extra libraries. Once running, the Agent kills the thread responsible for the ACLK and connecting behavior, and behaves as though the ACLK, and thus Netdata Cloud, does not exist.

Disable at runtime

You can change a runtime setting in your cloud.conf file to disable the ACLK. This setting only stops the Agent from attempting any connection via the ACLK, but does not prevent the installer from downloading and compiling the ACLK's dependencies.

The file typically exists at /var/lib/netdata/cloud.d/cloud.conf, but can change if you set a prefix during installation. To disable the ACLK, open that file and change the enabled setting to no:

[global]
    enabled = no

If the file at /var/lib/netdata/cloud.d/cloud.conf doesn't exist, you need to create it.

Copy and paste the first two lines from below, which will change your prompt to cat.

cd /var/lib/netdata/cloud.d
cat > cloud.conf << EOF

Copy and paste in lines 3-6, and after the final EOF, hit Enter. The final line must contain only EOF. Hit Enter again to return to your normal prompt with the newly-created file.

To get your normal prompt back, the final line must contain only EOF.

[global]
    enabled = no
    cloud base url = https://app.netdata.cloud
EOF

You also need to change the file's permissions. Use grep "run as user" /etc/netdata/netdata.conf to figure out which user your Agent runs as (typically netdata), and replace netdata:netdata as shown below if necessary:

sudo chmod 0770 cloud.conf
sudo chown netdata:netdata cloud.conf

Restart your Agent to disable the ACLK.

Re-enable the ACLK

If you first disable the ACLK and any Cloud functionality and then decide you would like to use Cloud, you must either reinstall Netdata with Cloud enabled or change the runtime setting in your cloud.conf file.

If you passed --disable-cloud to netdata-installer.sh during installation, you must reinstall your Agent. Use the same method as before, but pass --require-cloud to the installer. When installation finishes you can connect your node.

If you changed the runtime setting in your var/lib/netdata/cloud.d/cloud.conf file, edit the file again and change enabled to yes:

[global]
    enabled = yes

Restart your Agent and connect your node.