Meta tags:
keywords= env,environment variables,interpolation;
Headings (most frequently used words):
variables, environment, usage, how, interpolation, can, be, misused, default, values, required, escaping, security, restrictions, vector, site, footer, about, components, setup, community, download,
Text of the page (most frequently used words):
metrics (32), logs (30), vector (29), #environment (24), aws (24), the (21), variables (15), #variable (14), gcp (12), default (12), datadog (11), file (11), log (11), configuration (10), and (10), prometheus (10), model (10), interpolation (10), with (9), can (9), syntax (8), architecture (8), config (7), that (7), you (6), for (6), websocket (6), splunk (6), hec (6), http (6), events (6), azure (6), kinesis (6), data (6), metric (6), docs (6), are (6), var (6), sources (5), components (5), api (5), remap (5), reference (5), this (5), process (5), err (5), hostname (5), unset (5), chat (4), github (4), releases (4), sinks (4), transforms (4), cli (4), security (4), pipeline (4), server (4), statsd (4), socket (4), sematext (4), redis (4), pulsar (4), remote (4), write (4), opentelemetry (4), nats (4), mqtt (4), formerly (4), kafka (4), influxdb (4), humio (4), greptimedb (4), pubsub (4), stackdriver (4), cloud (4), storage (4), monitoring (4), console (4), sqs (4), firehose (4), cloudwatch (4), amqp (4), route (4), windows (4), kubernetes (4), internal (4), docker (4), demo (4), agent (4), end (4), concurrency (4), from (4), linux (4), yaml (4), type (4), only (4), not (4), values (4), example (4), env_var (4), option (4), value (4), rss (3), download (3), going (3), administration (3), deployment (3), installation (3), setup (3), updates (3), new (3), secrets (3), template (3), host (3), source (3), operating (3), systems (3), home (3), envsubst (3), export (3), multi (3), line (3), use (3), other (3), characters (3), disabled (3), env (3), sensitive (3), log_path (3), read (3), tenant (3), content (2), versioning (2), meta (2), glossary (2), schema (2), unit (2), tests (2), tls (2), global (2), options (2), webhdfs (2), exporter (2), postgres (2), papertrail (2), relic (2), mezmo (2), logdna (2), loki (2), keep (2), honeycomb (2), chronicle (2), unstructured (2), elasticsearch (2), doris (2), traces (2), databricks (2), zerobus (2), databend (2), clickhouse (2), blackhole (2), monitor (2), ingestion (2), blob (2), axiom (2), sns (2), streams (2), appsignal (2), window (2), trace (2), throttle (2), tag (2), cardinality (2), limit (2), sample (2), reduce (2), lua (2), incremental (2), absolute (2), filter (2), exclusive (2), delay (2), dedupe (2), ec2 (2), metadata (2), aggregate (2), vrl (2), event (2), syslog (2), stdin (2), static (2), scrape (2), pushgateway (2), postgresql (2), okta (2), nginx (2), mongodb (2), logstash (2), journald (2), client (2), heroku (2), logplex (2), fluent (2), descriptor (2), exec (2), eventstoredb (2), dnstap (2), ecs (2), apache (2), expressions (2), examples (2), errors (2), functions (2), language (2), pgo (2), optimization (2), validating (2), management (2), acknowledgements (2), guarantees (2), adaptive (2), buffering (2), runtime (2), sizing (2), capacity (2), planning (2), rollout (2), high (2), availability (2), hardening (2), architecting (2), unified (2), aggregator (2), architectures (2), production (2), topologies (2), roles (2), installer (2), archives (2), manual (2), ubuntu (2), rhel (2), raspbian (2), nixos (2), macos (2), debian (2), centos (2), arch (2), amazon (2), platforms (2), yum (2), rpm (2), pacman (2), nix (2), msi (2), homebrew (2), helm (2), dpkg (2), apt (2), package (2), managers (2), quickstart (2), concepts (2), introduction (2), config_template (2), inspect (2), result (2), json (2), sources_block (2), blocks (2), control (2), before (2), does (2), such (2), escape (2), interpolated (2), parsed (2), may (2), operators (2), when (2), enabled (2), prevents (2), also (2), enable (2), dangerously (2), allow (2), exits (2), message (2), empty (2), required (2), using (2), supplied (2), etc (2), shadow (2), any (2), include (2), present (2), usage (2), observability (2), pipelines (2), support (2), blog (2), guides (2), sidebar, 2026, inc, all, rights, reserved, community, prod, cookies, privacy, team, contact, about, site, footer, next, previous, thank, joining, our, newsletter, sign, receive, emails, latest, close, slideover, panel, page, start, processed, interval, format, demo_logs, block, codec, encoding, inputs, need, inject, pre, processing, step, tool, like, approach, gives, more, over, allows, passing, note, expands, plain, references, understand, extended, which, passed, through, unchanged, validate, containing, structural, substituted, verbatim, affect, resulting, structure, responsible, controlling, even, some, issues, related, rejecting, contain, newline, injection, fully, every, accessible, accept, leak, users, have, access, restrictions, prefacing, them, character, treated, literally, above, escaping, specified, one, risks, exposes, reason, after, substitution, reads, were, forward, its, contents, whatever, sink, configured, leaking, password, hashes, attacker, influence, they, point, including, system, files, app_logs, templates, how, misused, must, requiring, development, setting, basic, works, add_host, interpolates, within, your, following, user, able, similar, running, regardless, whether, advised, encouraged, instead, backend, proc, pid, environ, changed, pass, set, vector_dangerously_allow_env_var_interpolation, true, open, navbar, dropdown, menu, search, toggle, dark, mode, documentation,
Text of the page (random words):
environment variables vector documentation docs guides components download blog support observability pipelines toggle dark mode search x 𝕏 github chat rss updates open navbar dropdown menu docs guides components download blog support observability pipelines x 𝕏 github chat rss updates docs home introduction concepts setup quickstart installation package managers apt dpkg helm homebrew msi nix pacman rpm yum platforms docker kubernetes operating systems amazon linux arch linux centos debian macos nixos raspbian rhel ubuntu windows manual from archives from source vector installer deployment roles topologies going to production reference architectures aggregator architecture agent architecture unified architecture architecting hardening high availability rollout sizing and capacity planning architecture data model log events metric events pipeline model runtime model buffering model concurrency model adaptive concurrency guarantees end to end acknowledgements administration management monitoring validating optimization pgo reference vector remap language functions errors examples expressions configuration sources amqp apache metrics aws ecs metrics aws kinesis firehose aws s3 aws sqs datadog agent demo logs dnstap docker logs eventstoredb metrics exec file file descriptor fluent gcp pubsub heroku logplex host metrics http client http server internal logs internal metrics journald kafka kubernetes logs logstash mongodb metrics mqtt nats nginx metrics okta opentelemetry postgresql metrics prometheus pushgateway prometheus remote write prometheus scrape pulsar redis socket splunk hec static metrics statsd stdin syslog vector websocket windows event log transforms remap with vrl aggregate aws ec2 metadata dedupe delay exclusive route filter incremental to absolute log to metric lua metric to log reduce route sample tag cardinality limit throttle trace to log window sinks amqp appsignal aws cloudwatch logs aws cloudwatch metrics aws kinesis data firehose logs aws kinesis streams logs aws s3 aws sns aws sqs axiom azure blob storage azure logs ingestion azure monitor logs blackhole clickhouse console databend databricks zerobus datadog events datadog logs datadog metrics datadog traces doris elasticsearch file gcp chronicle unstructured gcp cloud monitoring formerly stackdriver gcp cloud storage gcp stackdriver gcp pubsub greptimedb logs greptimedb metrics honeycomb http humio logs humio metrics influxdb logs influxdb metrics kafka keep loki mezmo formerly logdna mqtt nats new relic opentelemetry papertrail postgres prometheus exporter prometheus remote write pulsar redis sematext logs sematext metrics socket splunk hec logs splunk hec metrics statsd vector webhdfs websocket websocket server global options pipeline components tls configuration api unit tests schema template syntax secrets cli environment variables api glossary meta security releases versioning vector docs home reference environment variables environment variables by default environment variable interpolation is disabled the default changed in v0 57 0 to enable it pass dangerously allow env var interpolation to the vector cli or set the environment variable vector_dangerously_allow_env_var_interpolation true environment variables can be read by any user that is able to read proc pid environ or similar in other operating systems of the running vector process regardless of whether interpolation is enabled operators are advised not to include sensitive data in environment variables and are encouraged to use the secrets backend instead usage vector interpolates environment variables within your configuration file with the following syntax transforms add_host type remap source basic usage hostname also works host hostname or hostname setting a default value when not present environment env development requiring an environment variable to be present tenant tenant tenant must be supplied how interpolation can be misused vector configuration templates can use environment variable interpolation for example sources app_logs type file include log_path if an attacker can influence the value of log_path they can point vector at any file the process can read including sensitive system files export log_path etc shadow after substitution vector reads etc shadow as if it were a log file and forward its contents to whatever sink is configured leaking password hashes or other sensitive data this is one example of the risks that environment variable interpolation exposes environment variable interpolation is disabled by default for this reason default values default values can be supplied using syntax option env_var default default value if variable is unset or empty or the syntax option env_var default default value only if variable is unset required variables environment variables that are required can be specified using syntax option env_var err vector exits with err message if variable is unset or empty or the syntax for unset variables option env_var err vector exits with err message only if variable is unset escaping you can escape environment variables by prefacing them with a character for example hostname or hostname is treated literally in the above environment variable example security restrictions environment variable interpolation is disabled by default only enable it with dangerously allow env var interpolation if you fully control every environment variable accessible to the vector process and accept that environment variables may leak to users that have access to the vector process even when enabled vector prevents some security issues related to environment variable interpolation by rejecting environment variables that contain newline characters this also prevents injection of multi line configuration blocks vector does not validate or escape other characters in interpolated values values containing config structural characters such as or are substituted verbatim before the config file is parsed and may affect the resulting parsed structure operators are responsible for controlling the content of interpolated environment variables if you need to inject multi line configuration blocks use a config pre processing step with a tool like envsubst this approach gives you more control over the configuration and allows you to inspect the result before passing it to vector note that envsubst only expands plain var and var references it does not understand vector s extended syntax such as var default or var err which are passed through unchanged config_template yaml sources_block sinks console type console inputs demo encoding codec json export multi line block export sources_block sources demo type demo_logs format json interval 1 process template and inspect result envsubst config_template yaml config yaml start vector with processed config vector config config yaml on this page close docs slideover panel docs home introduction concepts setup quickstart installation package managers apt dpkg helm homebrew msi nix pacman rpm yum platforms docker kubernetes operating systems amazon linux arch linux centos debian macos nixos raspbian rhel ubuntu windows manual from archives from source vector installer deployment roles topologies going to production reference architectures aggregator architecture agent architecture unified architecture architecting hardening high availability rollout sizing and capacity planning architecture data model log events metric events pipeline model runtime model buffering model concurrency model adaptive concurrency guarantees end to end acknowledgements administration management monitoring validating optimization pgo reference vector remap language functions errors examples expressions configuration sources amqp apache metrics aws ecs metrics aws kinesis firehose aws s3 aws sqs datadog agent demo logs dnstap docker logs eventstoredb metrics exec file file descriptor fluent gcp pubsub heroku logplex host metrics http client http server internal logs internal metrics journald kafka kubernetes logs logstash mongodb metrics mqtt nats nginx metrics okta opentelemetry postgresql metrics prometheus pushgateway prometheus remote write prometheus scrape pulsar redis socket splunk hec static metrics statsd stdin syslog vector websocket windows event log transforms remap with vrl aggregate aws ec2 metadata dedupe delay exclusive route filter incremental to absolute log to metric lua metric to log reduce route sample tag cardinality limit throttle trace to log window sinks amqp appsignal aws cloudwatch logs aws cloudwatch metrics aws kinesis data firehose logs aws kinesis streams logs aws s3 aws sns aws sqs axiom azure blob storage azure logs ingestion azure monitor logs blackhole clickhouse console databend databricks zerobus datadog events datadog logs datadog metrics datadog traces doris elasticsearch file gcp chronicle unstructured gcp cloud monitoring formerly stackdriver gcp cloud storage gcp stackdriver gcp pubsub greptimedb logs greptimedb metrics honeycomb http humio logs humio metrics influxdb logs influxdb metrics kafka keep loki mezmo formerly logdna mqtt nats new relic opentelemetry papertrail postgres prometheus exporter prometheus remote write pulsar redis sematext logs sematext metrics socket splunk hec logs splunk hec metrics statsd vector webhdfs websocket websocket server global options pipeline components tls configuration api unit tests schema template syntax secrets cli environment variables api glossary meta security releases versioning sign up to receive emails on the latest vector content and new releases thank you for joining our updates newsletter previous cli next api vector site footer about vector contact us the team privacy cookies components sources transforms sinks setup installation deployment configuration administration going to prod community github x chat download releases x 𝕏 github chat rss 2026 datadog inc all rights reserved sidebar
|