DB Connect Is Back. and it is better than ever. Tyler Muth Denis Vergnes. September 2017 Washington, DC

Similar documents
Docker and Splunk Development

Measuring HEC Performance For Fun and Profit

Create Dashboards that People Love

Running Splunk Enterprise within Docker

Bring Context To Your Machine Data With Hadoop, RDBMS & Splunk

Visualizing the Health of Your Mobile App

Next Generation Dashboards

Using Splunk Enterprise To Optimize Tailored Long-term Data Retention

Dashboard Time Selection

Atlassian s Journey Into Splunk

FFIEC Cybersecurity Assessment Tool

Splunk & AWS. Gain real-time insights from your data at scale. Ray Zhu Product Manager, AWS Elias Haddad Product Manager, Splunk

Dashboards & Visualizations: What s New

Indexer Clustering Internals & Performance

Introducing Splunk Validated Architectures (SVA)

Indexer Clustering Fixups

Data Obfuscation and Field Protection in Splunk

Scaling Indexer Clustering

Architecting Splunk For High Availability And Disaster Recovery

Search Head Clustering Basics To Best Practices

Dragons and Splunk Do Not Do Well In Captivity

The Power of Data Normalization. A look at the Common Information Model

Dashboard Wizardry. Advanced Dashboard Interactivity. Siegfried Puchbauer Principal Software Engineer Yuxiang Kou Software Engineer

Metrics Analysis with the Splunk Platform

Making the Most of the Splunk Scheduler

Need for Speed: Unleashing the Power of SecOps with Adaptive Response. Malhar Shah CEO, Crest Data Systems Meera Shankar Alliance Manager, Splunk

Bringing Sweetness to Sour Patch Tuesday

Splunk N Box. Splunk Multi-Site Clusters In 20 Minutes or Less! Mohamad Hassan Sales Engineer. 9/25/2017 Washington, DC

Modernizing InfoSec Training and IT Operations at USF

Splunking with Multiple Personalities

Monitoring Docker Containers with Splunk

Tracking Logs at Zillow with Lookups & JIRA

A Trip Through The Splunk Data Ingestion And Retrieval Pipeline

Squeezing all the Juice out of Splunk Enterprise Security

Data Onboarding. Where Do I begin? Luke Netto Senior Professional Services Splunk. September 26, 2017 Washington, DC

Making Sense of Web Fraud With Splunk Stream

Best Practices and Better Practices for Users

Essentials to creating your own Security Posture using Splunk Enterprise

Extending SPL with Custom Search Commands

Best Prac:ces + New Feature Overview for the Latest Version of Splunk Deployment Server

Building Your First Splunk App with the Splunk Web Framework

Search Language - Beginner Mitch Fleischman

Understanding Splunk AcceleraGon Technologies David Marquardt

Copyright 2015 Splunk Inc. The state of Splunk. Using the KVStore to maintain App State. Stefan Sievert. Client Architect, Splunk Inc.

Enterprise Security Biology

Welcome to Tomorrow... Today

Building a Threat-Based Cyber Team

Copy Data From One Schema To Another In Sql Developer

Fields, Indexed Tokens, And You

TrueSight 10 Architecture & Scalability Q&A Best Practice Webinar 8/18/2015

Search Language Intermediate Lincoln Bowser

Manage AWS Services. Cost, Security, Best Practice and Troubleshooting. Principal Software Engineer. September 2017 Washington, DC

Tutorial 1: Simple Parameterized Mapping

Deploying CICS regions with the z/os Provisioning Toolkit

Dell Change Auditor 6.5. Event Reference Guide

Modules and Features

Using Splunk and LOGbinder to Monitor SQL Server, SharePoint and Exchange Audit Events

Splunk Helping in Productivity

Service Portal User Guide

REST APIs on z/os. How to use z/os Connect RESTful APIs with Modern Cloud Native Applications. Bill Keller

Microsoft SQL Server Fix Pack 15. Reference IBM

Extended Search Administration

Revealing the Magic. The Lifecycle of a Splunk Search. Kellen Green Senior Software Engineer. September 27th, 2017 Washington, DC

Splunk Review. 1. Introduction

Integrating Splunk And AWS Lambda

Monitoring in Azure: Bringing IaaS and PaaS together. Vassil Nov 23 rd, 2017

IntegraBng Splunk Data and FuncBonality Using the Splunk SDK for Java

D&B Optimizer for Microsoft Installation Guide Setup for Optimizer for Microsoft Dynamics. VERSION: 2.3 PUBLICATION DATE: February, 2019

Dell Statistica. Statistica Enterprise Server Installation Instructions

Splunking Your z/os Mainframe Introducing Syncsort Ironstream

Oracle Business Activity Monitoring 12c Best Practices ORACLE WHITE PAPER DECEMBER 2015

Product Guide. McAfee Performance Optimizer 2.2.0

Silk Central Release Notes

LepideAuditor SIEM Integration

Oracle Marketing Cloud Service Descriptions and Metrics January 25, 2018

Crystal Enterprise. Crystal Query and Dictionary Support. Overview. Contents

Client Proxy interface reference

Oracle Java CAPS Database Binding Component User's Guide

Optimizing Testing Performance With Data Validation Option

Lotus Technical Night School XPages and RDBMS

Oracle Exadata Healthchecks Plug-in Contents

CONTAINER CLOUD SERVICE. Managing Containers Easily on Oracle Public Cloud

You will need 1 AD Server O/S and 1 Lync Server O/S. o Lync requires 64bit O/S This guide is Using Windows Server bit

Check Table Oracle Database Version Standard Or Enterprise

Adding Depth to Dashboards

EMC Unisphere for VMAX Database Storage Analyzer

SUSE Manager Roadmap OS Lifecycle Management from the Datacenter to the Cloud

Q&As Provisioning SQL Databases (beta)

BIG-IP APM: Access Policy Manager v11. David Perodin Field Systems Engineer

Veritas NetBackup OpsCenter Reporting Guide. Release 8.0

efolder BDR for Quest Rapid Recovery / VMware Continuity Cloud Guide

Introduction to Geodatabase and Spatial Management in ArcGIS. Craig Gillgrass Esri

KV Store: Hammer Time

Ftp Connect Command Prompt To Sql Server 2008 Using Windows Authentication

Rapid Recovery License Portal Version User Guide

Manual Trigger Sql Server 2008 Insert Multiple Rows At Once

Copyright 2012, Oracle and/or its affiliates. All rights reserved.

Vector Issue Tracker and License Manager - Administrator s Guide. Configuring and Maintaining Vector Issue Tracker and License Manager

ADDITIONAL GUIDES Customer SAP Enable Now System Requirements Customer

McAfee Security Management Center

Transcription:

DB Connect Is Back and it is better than ever Tyler Muth Denis Vergnes September 2017 Washington, DC

Forward-Looking Statements During the course of this presentation, we may make forward-looking statements regarding future events or the expected performance of the company. We caution you that such statements reflect our current expectations and estimates based on factors currently known to us and that actual events or results could differ materially. For important factors that may cause actual results to differ from those contained in our forward-looking statements, please review our filings with the SEC. The forward-looking statements made in this presentation are being made as of the time and date of its live presentation. If reviewed after its live presentation, this presentation may not contain current or accurate information. We do not assume any obligation to update any forward looking statements we may make. In addition, any information about our roadmap outlines our general product direction and is subject to change at any time without notice. It is for informational purposes only and shall not be incorporated into any contract or other commitment. Splunk undertakes no obligation either to develop the features or functionality described or to include any such feature or functionality in a future release. Splunk, Splunk>, Listen to Your Data, The Engine for Machine Data, Splunk Cloud, Splunk Light and SPL are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners. 2017 Splunk Inc. All rights reserved.

Overview What is this about again?

Splunk DB Connect RDBMS and Splunk Bridge Performant Flexible Real-time

What Can You Do With It? Use cases for structured data in Splunk Import Enrich Export Explore

What s New? DB Connect 3 content Ease of use Performance Flexibility WYSIWYG SQL and SPL editors, new UI, input bulk operations, input template Performance boost up to 10x, vertical scalability Stored procedures, 14 supported databases, Linux and Windows platform

Ease of Use

Ease of Use New UI to manage inputs, outputs, lookups Wizard based Type ahead dropdowns Filterable tables More.conf options: query time out, time range, application context

2017 SPLUNK INC. UI Improvements New UI Wizard based Type ahead dropdowns Filterable tables More conf options: query time out, time range, application context

Input Bulk Operations One query to many inputs Time saver Create or edit many similar inputs at the same time Flexible Input can still be edited individually Select Connections Write query Set properties Save inputs 1 2 3 4

Input Templates A better version of cookies mix Pre-made inputs 3 fields away to data collection Connection Input name Index

Splunk Add-on for Oracle Database 3.7.0 Templates for metrics, auditing Splunk Add-on for Microsoft SQL Server 1.3.0 Templates for metrics, auditing, monitoring Splunk Add-on for McAfee 2.2.0 Template for EPO version 5 Splunk Add-on for Nagios Core 1.1.0 Template for monitoring, configuration Add-ons With Template From an add-on to DB Connect

Health checks Is everything OK? Pre-built panels to monitor DB Connect Installation checks with Splunk Enterprise 6.5 and above

Performance

Architecture change Resource pooling is removed Checkpoints are stored locally Scheduled jobs: 1 JVM Commands: 1 JVM per execution What does it mean? Performance Under the hood SHC doesn t run scheduled tasks (inputs, outputs) No out-of-the-box solution for HA No SQL connection pooling for commands

Performance Queries The improvement increases with dataset size, up to 4 times faster.

Performance Outputs Large datasets are output 2-9 times faster than version 2.4.x

Performance Lookups Large datasets are collected 1.5 times faster than version 2.4.x

Performance Inputs Throughput of a single input remains the same as 2.3.x (about 2.5MB/s) Vertical Scalability: Hardware Concurrent inputs @60s interval Overall throughput 8 cores 16GB Linux VM 1600 20 MB/s 16 cores 16GB Linux VM 2000 25 MB/s

Demo Show me!

2017 SPLUNK INC. Q&A Don't forget to rate this session in the.conf2017 mobile app