Roles or relationships: refining authorization
Cribl, the Data Engine for IT and Security, empowers organizations to transform their data strategy. Customers use Cribl to analyze, collect, process, and route all IT and security data, delivering the choice, control, and flexibility required to adapt to their ever-changing needs. Cribl must adhere to stringent standards and requirements for Identity and Access Management, which include managing numerous relationships across multiple workspaces with minimal latency.
Previously, Cribl used role-based access control (RBAC) for authorization. However, with the introduction of multiple workspaces on Cribl’s cloud platform, it became apparent that RBAC would not scale to meet clients’ needs; each workspace would require defining up to 400 different roles within a JWT token. Cribl needed a scalable solution that could offer granular, relationship-based access control, allowing enterprise clients to manage multiple workspaces without added complexity.
Refining access control with one identity provider
Cribl evaluated multiple vendors, weighing different criteria such as ease of integration, time to value, and scalability across many products and workspaces. The team unanimously chose Okta Fine Grained Authorization (FGA) as the frontrunner for its extensibility and enterprise readiness. Additionally, as an existing Okta customer, Cribl viewed Okta as a trusted partner and saw the value of managing all identity use cases with one provider.
Authorization made seamless with Okta FGA
Okta FGA enables Cribl’s developers to easily design authorization models, from coarse-grained to fine-grained, in a way that’s centralized, flexible, fast, and scalable. This standardization of authorization allows Cribl to deliver a consistent standard of security without extra work.
The ability to quickly implement established patterns streamlines and simplifies the process of bringing new products to market. What used to take months of manual work now takes just weeks. Cribl can effortlessly input a new product into the authorization model, with Okta FGA handling the mapping. This empowers Cribl’s development teams to focus less on building and maintaining authorization systems and more on product innovation, enhancing client experiences and driving growth.
About Cribl
Cribl, the Data Engine for IT and Security, empowers organizations to transform their data strategy. Powered by a data processing engine purpose-built for IT and Security, Cribl’s product suite is a vendor-agnostic data management solution capable of collecting data from any source, processing billions of events per second, automatically routing data for optimized storage, and analyzing any data, at any time, in any location. With Cribl, IT and Security teams have the choice, control, and flexibility required to adapt to their ever-changing data needs. Cribl’s offerings–Stream, Edge, Search, and Lake–are available either as discrete products or as a holistic solution.