Architecture: © Copyright 2011 - Company Confiden6al Visibility When You Need IT Most
Architecture: © Copyright 2011 - Company Confiden6al Visibility When You Need IT Most
Overview
©
Copyright
2011
–
Company
Confiden6al
Visibility
when
you
need
IT
most.
What
does
Splunk
collect?
©
Copyright
2011
–
Company
Confiden6al
2
Visibility
when
you
need
IT
most.
What
does
Splunk
do?
Scripts
Database
Server
Metrics
Router
Host
Config
Logs
Card
Key
Vulnerability
Data
Virtual
Email
RAS
Logs
Custom
Host
IDS
VPN
Patch
Logs
ApplicaDons
Server
Logs
Mgmt
Physical
Windows
DNS
Logs
Security
ApplicaDon
Logs
registries
©
Copyright
2011
–
Company
Confiden6al
3
Visibility
when
you
need
IT
most.
What
does
Splunk
Provide?
©
Copyright
2011
–
Company
Confiden6al
4
Visibility
when
you
need
IT
most.
The
Big
Data
Problem
©
Copyright
2011
–
Company
Confiden6al
6
Visibility
when
you
need
IT
most.
Point
Solu6ons
are
Common
–
lots
of
consoles
groan
Problem
is
exasperated
since
these
stovepipe
tools
do
not
provide
the
ability
to
correlate
events
between
them.
©
Copyright
2011
–
Company
Confiden6al
7
Visibility
when
you
need
IT
most.
Point
Solu6ons
are
Common
–
lots
of
consoles
©
Copyright
2011
–
Company
Confiden6al
8
Visibility
when
you
need
IT
most.
What
is
needed
is
a
single
method
to
access
IT
informa6on.
.
.
Phew
©
Copyright
2011
–
Company
Confiden6al
9
Visibility
when
you
need
IT
most.
Across
the
en6re
IT
Architecture
Ah-‐Ha!
©
Copyright
2011
–
Company
Confiden6al
10
Visibility
when
you
need
IT
most.
Across
the
en6re
IT
Architecture
©
Copyright
2011
–
Company
Confiden6al
11
Visibility
when
you
need
IT
most.
See
all
IT
and
make
IT
useful
Finding
your
faults,
just
like
Mom
Because
ninjas
are
too
busy
All
batbelt
no
6ghts
Needle.
Haystack.
Found
It’s
like
grep
on
steroids
©
Copyright
2011
–
Company
Confiden6al
12
Visibility
when
you
need
IT
most.
What
can
you
do?
VirtualizaDon
Windows
Linux/Unix
&
Cloud
ApplicaDons
Databases
Networking
• Registry
• Configura6ons
• Hypervisor
• Web
logs
• Configura6ons
• Configura6ons
• Event
logs
• syslog
• Guest
OS,
Apps
• Log4J,
JMS,
JMX
• Audit/query
logs
• syslog
• File
system
• File
system
• Cloud
• .NET
events
• Tables
• SNMP
• sysinternals
• ps,
iostat,
top
• Code
and
scripts
• Schemas
• nedlow
©
Copyright
2011
–
Company
Confiden6al
Visibility
when
you
need
IT
most.
Search
using
a
powerful
search
language
©
Copyright
2011
–
Company
Confiden6al
Visibility
when
you
need
IT
most.
Automa6c
Chronology
©
Copyright
2011
–
Company
Confiden6al
16
Visibility
when
you
need
IT
most.
Alert
in
Real
Time
©
Copyright
2011
–
Company
Confiden6al
Visibility
when
you
need
IT
most.
Enrich
data
from
external
sources
CMDB CRM/ERP
Beter
Understanding
©
Copyright
2011
–
Company
Confiden6al
Visibility
when
you
need
IT
most.
Report
to
any
level
Support
Mul6ple
Use
Cases
IT,
Line
of
Business
or
Management
©
Copyright
2011
–
Company
Confiden6al
19
Visibility
when
you
need
IT
most.
Delivering
Opera6onal
Intelligence
©
Copyright
2011
–
Company
Confiden6al
20
Visibility
when
you
need
IT
most.
Why
Splunk
scales
“
“
Splunk
has
been
tackling
[big
data]
with
a
unique
solu/on
that
is
genera/ng
a
significant
amount
of
commercial
success
David
Menninger
VP
&
Research
Director
©
Copyright
2011
–
Company
Confiden6al
21
Visibility
when
you
need
IT
most.
Databases
are
not
suited
for
unstructured
data
1
1
1
⁄
n
⁄
n
⁄
n
A
‘search’
(ques6on
to
be
Each
Indexer
processes
a
answered)
is
distributed
subset
of
the
en6re
amongst
mul6ple
cores.
dataset
and
produces
Appliance
part
of
the
overall
answer
back
to
the
search
head
for
“reduce”
Data
is
load
balanced
into
commodity
computers
(indexers)
where
it
is
‘mapped’.
©
Copyright
2011
–
Company
Confiden6al
23
Visibility
when
you
need
IT
most.
Ques6ons?
Talk
to
a
Splunk
representa6ve
Library
of
Congress
Anna
Tant
Civilian
Account
Execu/ve
Federal
[email protected]
Free
Download
Limited
to
500mb/day
No
aler6ng
www.splunk.com
© Copyright 2011 – Company Confiden6al 24 Visibility when you need IT most.