Graylog MCP Howto Webinar
In this video, we walk through connecting the Graylog MCP Server (introduced in Graylog v7.0) to Claude CLI, enabling natural language interaction with your Graylog instance through Claude Desktop.
Topics covered:
- What the Graylog MCP Server is and how it fits into the Claude CLI ↔ MCP ↔ Graylog API message flow
- Generating and base64 encoding your Graylog API token for HTTP Basic Auth
- Configuring the MCP server connection via PowerShell
- Setting up Claude Desktop CLI to talk to your Graylog instance
- Testing the connection and running your first natural language query against your log data
- Common configuration pitfalls and how to troubleshoot them
Whether you're a Graylog admin looking to speed up investigations or a security engineer curious about AI-assisted log analysis, this walkthrough gives you everything you need to get MCP running end to end.
#Graylog #SIEM #LogManagement #Cybersecurity #MCP #ClaudeAI #ITSecurity #devops
0:00 Introduction & Overview
0:47 Why Graylog MCP Server
1:08 Message Flow: Claude ↔ MCP Server ↔ Graylog API
1:40 Installing Claude CLI on Windows
4:19 Configuring the Graylog MCP Connection
7:35 Querying Graylog with Claude
13:27 Creating and Updating Investigations