Kafka Message Viewer
Browse, produce, and consume Kafka messages without opening direct connectivity to broker ports. Enterprise SSO, role-based permissions, and a complete audit trail for every access.
Secure message access for every team
Developers need to see message data to debug issues. Security teams need to control who accesses what. Giving every developer direct connectivity to Kafka broker ports is a security and operational risk most teams cannot accept. AxonOps solves this by proxying all message access through its own interface. No direct broker port access is needed. Users browse, produce, and consume messages entirely through AxonOps, with SSO authentication, per-topic role-based permissions, and a complete audit trail.
Users never connect to Kafka broker ports. All message access is proxied through the AxonOps agent with JWT-based security, eliminating the need to open broker ports to developers or external teams.
Control access per cluster and per topic with role-based permissions integrated to your SAML identity provider.
Every message access is logged with who viewed what, when, and from which topic. Meet compliance requirements for regulated environments.
Message viewer capabilities
Enterprise-grade message access with security and compliance built in.
| Capability | What you get | Detail |
|---|---|---|
| Message access | ||
| Browse messages | View messages by topic, partition, offset, or timestamp | Key, value, headers, and metadata |
| Produce messages | Publish messages to topics directly from the UI | For testing and debugging workflows |
| Consume messages | Consume from any offset, timestamp, or in real time | Multiple serialization formats supported |
| Regex filtering | Filter messages using regular expressions on keys or values | Find specific messages quickly |
| Security & compliance | ||
| SSO integration | Authenticate through SAML identity providers | No separate credentials to manage |
| Role-based permissions | Granular access control per cluster and per topic | Integrated with your identity provider |
| Audit trail | Every message access logged with user, topic, timestamp, and action | Compliance-ready for regulated environments |
| No direct broker connectivity | All message access is proxied through the AxonOps agent with JWT-based security. Users never connect to Kafka broker ports directly. | Eliminates need to expose broker ports |
| Governance | ||
| Role-based access | Assign edit or read-only rights per user, with access scoped to specific clusters | Prevent unauthorized changes |
| SSO authentication | Optional Enterprise SAML integration for single sign-on | Centralized identity management |
| Automation | ||
| Terraform provider | Automate access control policies and role assignments as code | Codify your data access controls |
Message Browser
Browse messages by topic, partition, offset, or timestamp. View message keys, values, headers, and metadata with support for multiple serialization formats. Produce and consume messages directly from the UI for debugging and testing.
- Browse, produce, and consume messages from one interface
- Filter by partition, offset range, or timestamp
- View message keys, values, and headers with format detection
- Filter messages using regular expressions on keys or values
- Real-time message streaming for live debugging
Enterprise Access Control
Control who can view, produce, and consume messages with granular role-based permissions. Integrate with your existing SAML identity provider so access is managed through your standard identity workflows.
- Per-cluster and per-topic permissions
- SSO integration with SAML providers
- Comprehensive audit trail for every message access
- No direct broker port connectivity required for any user
See Kafka message viewer in action