In modern MSP/MSSP environments, the volume of security and operational logs continues to grow rapidly. Managing these logs efficiently—while ensuring they reach the correct analysis platforms—is critical for both operational visibility and regulatory compliance.
One real-world scenario that demonstrates this challenge involves a managed security service provider (MSSP) operating IPS (Intrusion Prevention Systems) log infrastructure for multiple customers. By leveraging Kron Telemetry Pipeline, the MSSP was able to implement a flexible log routing architecture that ensured the right data reached the right systems without disrupting the existing infrastructure.
The MSSP provides IPS services that generate large volumes of security logs. In the existing architecture, these logs were centrally forwarded to a shared SIEM platform for security monitoring and analysis.
However, one of the MSSP’s customers had a specific requirement:
They wanted their IPS logs to be sent directly to their own SIEM environment, rather than the MSSP’s shared SIEM infrastructure.
This requirement introduced several technical challenges:
The MSSP needed a log export solution that could filter, process, and route logs dynamically, while sending the full-fidelity log flow to the MSSP's central SIEM.
To address this challenge, the MSSP implemented Kron Telemetry Pipeline as an intermediary layer between the firewall log sources and the SIEM destinations.
Kron Telemetry Pipeline acts as an intelligent data processing and routing platform designed to manage and route security telemetry streams across complex infrastructures. It enables organizations to collect, transform, filter, and route log data from multiple sources to multiple destinations efficiently.

This architecture allowed the MSSP to maintain the existing infrastructure while adding fine-grained log routing capabilities.
One of the key advantages of Kron Telemetry Pipeline is its ability to process data in motion. The platform allows organizations to apply transformations, filtering rules, and routing policies as logs move through the pipeline — without requiring changes to upstream log sources or downstream SIEM configurations.
For the MSSP, this translated into tangible operational benefits:
Log management architectures are evolving from simple forwarding mechanisms into intelligent data pipelines capable of filtering, transforming, and routing telemetry data dynamically.
This MSSP use case demonstrates how Kron Telemetry Pipeline enables organizations to control their telemetry data flow, ensuring that the right data reaches the right destination—securely, efficiently, and at scale.
For managed service providers, financial institutions, and large enterprises alike, implementing a telemetry pipeline can be a strategic step toward building a more flexible, scalable, and cost-effective logging architecture.