Splunk & AWS. Gain real-time insights from your data at scale. Ray Zhu Product Manager, AWS Elias Haddad Product Manager, Splunk

Similar documents
Measuring HEC Performance For Fun and Profit

Serverless Computing. Redefining the Cloud. Roger S. Barga, Ph.D. General Manager Amazon Web Services

Manage AWS Services. Cost, Security, Best Practice and Troubleshooting. Principal Software Engineer. September 2017 Washington, DC

Atlassian s Journey Into Splunk

Enroll Now to Take online Course Contact: Demo video By Chandra sir

AWS 101. Patrick Pierson, IonChannel

DB Connect Is Back. and it is better than ever. Tyler Muth Denis Vergnes. September 2017 Washington, DC

Training on Amazon AWS Cloud Computing. Course Content

Monitoring Docker Containers with Splunk

AWS Agility + Splunk Visibility = Cloud Success. Splunk App for AWS Demo. Laura Ripans, AWS Alliance Manager

About Intellipaat. About the Course. Why Take This Course?

Store, Protect, Optimize Your Healthcare Data in AWS

Bring Context To Your Machine Data With Hadoop, RDBMS & Splunk

What to expect from the session Technical recap VMware Cloud on AWS {Sample} Integration use case Services introduction & solution designs Solution su

Amazon Web Services (AWS) Solutions Architect Intermediate Level Course Content

ARCHITECTING WEB APPLICATIONS FOR THE CLOUD: DESIGN PRINCIPLES AND PRACTICAL GUIDANCE FOR AWS

Amazon Search Services. Christoph Schmitter

HPE Digital Learner AWS Certified SysOps Administrator (Intermediate) Content Pack

Mid-Atlantic CIO Forum

Automate best practices and operational health for your AWS resources with Trusted Advisor and AWS Health

MONITORING SERVERLESS ARCHITECTURES

Security Aspekts on Services for Serverless Architectures. Bertram Dorn EMEA Specialized Solutions Architect Security and Compliance

Introduction to Cloud Computing

We are ready to serve Latest IT Trends, Are you ready to learn? New Batches Info

FFIEC Cybersecurity Assessment Tool

Running Splunk Enterprise within Docker

Cloud Computing. Amazon Web Services (AWS)

Managing IoT and Time Series Data with Amazon ElastiCache for Redis

PrepAwayExam. High-efficient Exam Materials are the best high pass-rate Exam Dumps

Docker and Splunk Development

How can you implement this through a script that a scheduling daemon runs daily on the application servers?

AWS Solution Architect Associate

Amazon Web Services (AWS) Training Course Content

Amazon Web Services Training. Training Topics:

Amazon Web Services. Block 402, 4 th Floor, Saptagiri Towers, Above Pantaloons, Begumpet Main Road, Hyderabad Telangana India

Energy Management with AWS

Splunk & Amazon Web Services

Reactive Microservices Architecture on AWS

SAA-C01. AWS Solutions Architect Associate. Exam Summary Syllabus Questions

What s New at AWS? A selection of some new stuff. Constantin Gonzalez, Principal Solutions Architect, Amazon Web Services

What s New at AWS? looking at just a few new things for Enterprise. Philipp Behre, Enterprise Solutions Architect, Amazon Web Services

Lambda Architecture for Batch and Stream Processing. October 2018

Dashboard Time Selection

How the Cloud is Enabling the Disruption of the Construction Industry. AWS Case Study Construction Industry. Abstract

Next Generation Dashboards

Intro to Big Data on AWS Igor Roiter Big Data Cloud Solution Architect

Create Dashboards that People Love

Using Splunk Enterprise To Optimize Tailored Long-term Data Retention

Visualizing the Health of Your Mobile App

Introducing Splunk Validated Architectures (SVA)

Experiences with Serverless Big Data

Deep Dive on AWS CodeStar

AWS Solutions Architect Associate (SAA-C01) Sample Exam Questions

Build, Deploy & Operate Intelligent Chatbots with Amazon Lex

Oracle WebLogic Server 12c on AWS. December 2018

LINUX, WINDOWS(MCSE),

Data Obfuscation and Field Protection in Splunk

Immersion Day. Getting Started with AWS Lambda. August Rev

Data Onboarding. Where Do I begin? Luke Netto Senior Professional Services Splunk. September 26, 2017 Washington, DC

DevOps on AWS Deep Dive on Continuous Delivery and the AWS Developer Tools

Deep Dive Amazon Kinesis. Ian Meyers, Principal Solution Architect - Amazon Web Services

AWS Storage Gateway. Not your father s hybrid storage. University of Arizona IT Summit October 23, Jay Vagalatos, AWS Solutions Architect

Grischa Baelden AWS Public Sector Account Manager, DACH. Brendan Bouffler. Worldwide Research and Technical Computing Lead

Real Time Monitoring Of A Cloud Based Micro Service Architecture Using Splunkcloud And The HTTP Eventcollector

Modernizing InfoSec Training and IT Operations at USF

AWS Administration. Suggested Pre-requisites Basic IT Knowledge

The Orion Papers. AWS Solutions Architect (Associate) Exam Course Manual. Enter

Indexer Clustering Fixups

Aurora, RDS, or On-Prem, Which is right for you

AWS_SOA-C00 Exam. Volume: 758 Questions

Containers or Serverless? Mike Gillespie Solutions Architect, AWS Solutions Architecture

AWS Practioner Study Guide Content by Jeanne Boyarsky and Janeice DelVecchio

DISTRIBUTED SYSTEMS [COMP9243] Lecture 8a: Cloud Computing WHAT IS CLOUD COMPUTING? 2. Slide 3. Slide 1. Why is it called Cloud?

AWS cloud terminology

Architecting Splunk For High Availability And Disaster Recovery

AWS IoT Overview. July 2016 Thomas Jones, Partner Solutions Architect

Amazon AWS-DevOps-Engineer-Professional Exam

Microservices on AWS. Matthias Jung, Solutions Architect AWS

AWS Security. Stephen E. Schmidt, Directeur de la Sécurité

Scaling Indexer Clustering

Managing and Auditing Organizational Migration to the Cloud TELASA SECURITY

BERLIN. 2015, Amazon Web Services, Inc. or its affiliates. All rights reserved

AWS Certified Solutions Architect - Associate 2018 (SAA-001)

AWS Course Syllabus. Linux Fundamentals. Installation and Initialization:

Cloud Computing /AWS Course Content

Security & Compliance in the AWS Cloud. Amazon Web Services

AWS Certifications. Columbus Amazon Web Services Meetup - February 2018

Overview. AWS networking services including: VPC Extend your network into a virtual private cloud. EIP Elastic IP

Hosting DesktopNow in Amazon Web Services. Ivanti DesktopNow powered by AppSense


Pass4test Certification IT garanti, The Easy Way!

High School Technology Services myhsts.org Certification Courses

Troubleshooting AWS App

Werden Sie ein Teil von Internet der Dinge auf AWS. AWS Enterprise Summit 2015 Dr. Markus Schmidberger -

Deliver High- quality Streaming Media Globally with AWS and Wowza

Security & Compliance in the AWS Cloud. Vijay Rangarajan Senior Cloud Architect, ASEAN Amazon Web

NGF0502 AWS Student Slides

Getting Started with AWS Security

Lambda Architecture for Batch and Real- Time Processing on AWS with Spark Streaming and Spark SQL. May 2015

Real-time Streaming Applications on AWS Patterns and Use Cases

Transcription:

Splunk & AWS Gain real-time insights from your data at scale Ray Zhu Product Manager, AWS Elias Haddad Product Manager, Splunk

Forward-Looking Statements During the course of this presentation, we may make forward-looking statements regarding future events or the expected performance of the company. We caution you that such statements reflect our current expectations and estimates based on factors currently known to us and that actual events or results could differ materially. For important factors that may cause actual results to differ from those contained in our forward-looking statements, please review our filings with the SEC. The forward-looking statements made in this presentation are being made as of the time and date of its live presentation. If reviewed after its live presentation, this presentation may not contain current or accurate information. We do not assume any obligation to update any forward looking statements we may make. In addition, any information about our roadmap outlines our general product direction and is subject to change at any time without notice. It is for informational purposes only and shall not be incorporated into any contract or other commitment. Splunk undertakes no obligation either to develop the features or functionality described or to include any such feature or functionality in a future release. Splunk, Splunk>, Listen to Your Data, The Engine for Machine Data, Splunk Cloud, Splunk Light and SPL are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners. 2017 Splunk Inc. All rights reserved.

Agenda Current Splunk ingestion landscape for AWS Current challenges New Solution Demo Q&A

Monitored by Splunk Cloud Available Worldwide 4

Splunk Portfolio of AWS Solutions End-to-End AWS Visibility Self-deployed AMIs or SaaS on AWS Marketplace AWS-based SaaS App for AWS Available on Splunk Enterprise, Splunk Cloud and Splunk Light AMI on AWS Marketplace AWS Integrations AWS Lambda, IoT, Kinesis, EMR, EC2 Container Service SaaS Contract Billed through Marketplace Insights for AWS sdcloud Monitoring AMI on AWS Marketplace Benefits of Splunk Enterprise as SaaS

Current Splunk GDI Landscape for AWS v1.2

Challenges Reliability, scalability and fault tolerance Management overhead of data collection nodes Delayed event delivery due to poll based ingestion API throttling with poll based data ingestion

Need for New Solution

Amazon Kinesis Kinesis Streams Stores data as a continuous replayable stream for custom applications Kinesis Firehose Load streaming data into Amazon S3, Amazon Redshift, and Amazon Elasticsearch Service Kinesis Analytics Analyze data streams using standard SQL queries

Current State of Kinesis Firehose Ingest Transform Deliver Kinesis Agent Amazon S3 Kinesis Streams Amazon Redshift CloudWatch Logs Amazon Elasticsearch CloudWatch Events AWS IoT

Our Answers to Challenges Reliability, scalability and fault tolerance challenges Extremely reliable with underlying infrastructure operating in three different AZs Extremely durable with three copies of same data in three different AZs Temporarily holds and buffers data to absorb back pressure Data backup to Amazon S3 upon failure Management overhead of data collection nodes in existing solution Serverless with no resource provision or management overhead Delayed event delivery due to poll based ingestion Push delivery with configurable buffer size and interval API throttling with poll based data ingestion Horizontally scalable with no limit

Kinesis Firehose With Splunk Delivery Ingest Transform Deliver Kinesis Agent Amazon S3 Kinesis Streams Amazon Redshift CloudWatch Logs Amazon Elasticsearch CloudWatch Events AWS IoT

Kinesis Firehose Advantages Why should I use Kinesis Firehose versus other ingestion mechanisms for Splunk?

Why Kinesis Firehose Fully managed service with serverless architecture Bypass the need for setting up and managing heavy weight forwarder Extremely scalable and reliable Well integrated with various data sources Easy to use with no programming requirement Ability to transform raw data prior to sending it to Splunk Super low cost - $0.029 per GB of data ingested

Serverless and Scalable Supports native balancing to indexing tier Supports Splunk Cloud and Splunk Enterprise

Serverless and Scalable Supports ELB and third party load balancers

Reliable AWS Add-on as Failover Supports delivery acknowledgment. Un-acknowledged events can be persisted to S3 and re-ingested via alternative delivery mechanism. Un-delivered and un-acknowledged events can be ingested from S3 bucket using poll based mechanism (Splunk add-on for AWS)

Reliable Lambda to HEC as Failover Un-delivered and un-acknowledged events can be ingested from S3 using lambda for full push-based architecture. Lambda can be configured to push data to a failover HEC endpoint

Cross Account Delivery Consolidate VPC flow data from multiple account into one Firehose delivery stream Ability to route events to different indexes based on Lambda conditions

Kinesis Firehose Use Case When should I use Kinesis Firehose versus other ingestion mechanisms for Splunk?

AWS CloudWatch Logs VPC Flow Logs AWS Lambda Logs CloudWatch Events AWS API Call Events (CloudTrail), Auto Scaling Events, AWS CodeBuild Events, AWS CodeCommit Events, AWS CodeDeploy Events, AWS CodePipeline Events, AWS Console Sign-in Events, Amazon EBS Events, Amazon EC2 Events, Amazon EC2 System Manager Events, Amazon EC2 System Manager Configuration Compliance Events, Amazon EC2 Maintenance Window Events, Amazon ECS EventsAmazon EMR Events, Amazon GameLift EventAWS Health Events, AWS KMS Events, Amazon Macie Events, Scheduled Events, Trusted Advisor Events AWS IoT Supported Kinesis Firehose Data Sources Here is a list of AWS Services supported by Kinesis Firehose Kinesis Streams

What Ingestion Mechanism Shall I Use? Use Case Kinesis Firehose Splunk AWS Add-on Supported Kinesis Firehose Data Sources Preferred - Fault tolerance Yes Only SQS based S3 input Guaranteed delivery and reliability Yes No S3 Input No Yes On-Prem Splunk with private IPs Poll-based Data Collection (Firewall restrictions) No No Yes Yes

Kinesis Firehose Limits 20 Kinesis Firehose delivery streams per Region Default a maximum of 2,000 transactions/second, 5,000 records/second, and 5 MB/second Limits can be increased, but be careful not to increase past the incoming traffic amount. This can lead to small delivery batches to destinations, which is inefficient and can be costly. Please refer to the Kinesis Firehose documentation for instructions on how to increase limits: http://docs.aws.amazon.com/firehose/latest/dev/limits.html

Demo

In Summary Splunk + AWS = Cloud Visibility Strong partnership with numerous product integrations Current GDI for AWS data into Splunk HTTP Event Collector, AWS Add-on, DB Connect Firehose Kinesis integration Addresses scalability and reliability concerns

Interested? Sign up for Beta Kinesis Agent Kinesis Streams CloudWatch Logs CloudWatch Events AWS IoT

Q&A

2017 SPLUNK INC. Thank You Don't forget to rate this session in the.conf2017 mobile app