- Overview
- Getting Started
- Install
- Quickstart
- Configuration
- Ingest Examples
- Query Examples
- MCP
- Agent Quickstart
- Agent Instructions
- Where to Find Apps
- Troubleshooting
- Overview
- Workspaces & Packages
- Data Contracts
- Data Modules
- Contract Mappings
- Detection Families
- Detections
- Detection Imports
- App Bundles
- MCP Server
- Smoke Tests
- Command Reference
- Architecture
- Docs Scope
- One vs Enterprise
- Quickstart Guide
- Stores and Store Routes
- AWS Marketplace
- AKS Cluster Configuration
- Initialize Mach5 Search in AKS
- EKS Cluster Configuration
- GKE Cluster Configuration
- Initialize Mach5 Search in GKE
- Helm Charts
- Local Kubernetes
- License Token
- Node to Pod Mapping
- Transform Functions
- Kafka
- S3
- Iceberg
- Operation Modes
- Synthetic Data Generation
- SQL Support
- Materialized Views
- Materialized Views v1 (Deprecated)
- KQL Support
- KQL Client
- Authentication and Authorization
- Keycloak Admin
- Role Patterns
- Authenticated API Access
- Index Metadata Prefetch
- Custom OTEL to AWS CloudWatch
- Axon Concepts
- Axon Syntax
- App Concepts
- App Examples
- Bundle Concepts
- Bundle Examples
- Notebook Concepts
- Notebook Examples
- Sample Data and Visualizations
- Dashboard Concepts
- Dashboard Configuration
- GitHub
- Slack
- Okta
- Amazon S3
- Google Cloud Storage
- Azure Blob Storage
- IMAP
- POP3
- SMTP
- Databricks
- Trino OpenSearch Connector
- Cloudflare Data Platform
- Rook-Ceph
- OpenSearch APIs
- Support
Mach5 One
m5c
Overview
Getting Started
Mach5 Enterprise
Both Editions
Ingestion
Querying
Security
Enterprise Operations
Workflows
Declarative Apps
App Bundles
Notebooks
Dashboards
Integrations
Reference
Support
#Mach5 Architecture
Overview
Mach5 Search is a real-time, scalable data lake built on cost-efficient, cloud object storage (AWS S3, Google Cloud Storage, and Azure Blob Store). Out of the box, Mach5 Search provides a number of tools that are often missing from typical data lakes, delivering immense value and increasing productivity:
- Full-text and customizable indexing
- An API-compatible implementation of OpenSearch, compatible with tools like Logstash and Beats
- MQL: a simple, powerful, pipe-based query language inspired by Kusto and Splunk
- Dashboards, visualizations, and notebooks for interactive analysis and reporting
- Flux : a powerful data ingestion, transformation, and routing tool

On this page
Need Help?
Our team of experts is ready to assist you with your integration.
Training Sessions
Get your team up to speed with personalized training.