Documentation

Coralogix

Send alerts, malware logs, and application data from SURF to Coralogix.

Before you start

RequirementDetail
SURF accessAdministrator on the SURF Admin console
Coralogix accessAn account with rights to create an API key under Data Flow

Step 1: Find your Coralogix endpoint URL

The URL depends on the region your Coralogix account runs in. The full list is at https://coralogix.com/docs/coralogix-endpoints/, under the Logs table.

Most EU accounts use:

https://ingress.eu2.coralogix.com/logs/rest/singles

Confirm against the endpoints table rather than assuming.

Step 2: Create the Coralogix API key

  1. Log in to your Coralogix account.
  2. Select API Keys under the Data Flow menu.
  3. Create a New Key under Send Your Data.
  4. Copy the token.

Step 3: Configure the integration in SURF

  1. Open the SURF Admin dashboard and go to the Integrations page.
  2. Select Coralogix.
  3. Complete the setup dialog:
FieldValue
URLThe regional endpoint from Step 1
TokenThe key created in Step 2
Data to sendTick the data types required: Alerts, Malware Logs, Applications
  1. Click Submit.
  2. Enable the integration in the integrations list.

Troubleshooting

SymptomCheck
No data arriving in CoralogixWrong regional endpoint. Confirm against the Coralogix endpoints documentation.
Authentication rejectedThe key was created under the wrong section. It must be a Send Your Data key, not another API key type.
Some data types missingThe corresponding box was not ticked under Data to send
Configuration saved but nothing sendsThe integration was submitted but left toggled off in the integrations list

For anything not covered here, contact the SURF support team.