Professional Documents
Culture Documents
7 SPLUNK INC.
George Merhej
July 2018
© 2018 SPLUNK INC.
05/21 16:33:11.238 [CONNEVENT] Ext 1207130 (0192033): Event 20111, CTI Num:ServID:Type
0:19:9, App 0, ANI T7998#1, DNIS 5555685981, SerID 40489a07-7f6e-4251-801a-
Care IVR
13ae51a6d092, Trunk T451.16
05/21 16:33:11:242 [SCREENPOPEVENT] SerID 40489a07-7f6e-4251-801a-13ae51a6d092
CUSTID 10098213
05/21 16:37:49.732 [DISCEVENT] SerID 40489a07-7f6e-4251-801a-13ae51a6d092
clientip method
bytes xfered
status return code
user agent
© 2018 SPLUNK INC.
Machine Data
Stored Digital Information
Unstructured data
Tremendous source of business
(exabytes)
value
Structured Data Under leveraged by business
Business transaction data Cannot be handed by BI
Well understood & Needs a new approach
analyzed
Slow growth
Handled by traditional BI
8
© 2018 SPLUNK INC.
Why Splunk?
Traditional Splunk
SQL Search
Structured
Unstructured
RDBMS
Volume Velocity Variety
© 2018 SPLUNK INC.
Windows Linux/Unix
No RDBMS
Virtualization Applications Databases Networking
Registry Configuration &No
Cloudneed for WebETL logs Configurations Configurations
Event logs s Hypervisor Log4J, JMS, JMX Audit/query syslog
File system
sysinternals
syslog
File system No pre-defined
Guest OS, Apps
Cloud schema
.NET events
Code and scripts
logs
Tables
SNMP
netflow
ps, iostat, top Schemas
Splunk Turns Machine Data into Operational Intelligence
© 2018 SPLUNK INC.
Monitor
and alert
Real-time
Collection and Report and
Indexing analyze
Custom
dashboards
Developer
Platform
13
© 2018 SPLUNK INC.
IP Addr
Product ID
CPU threshold
Activity Log
Event Log
© 2018 SPLUNK INC.
Proactive
Monitoring
Search and
Investigate
18
© 2018 SPLUNK INC.
>
Device ID Search Results
(MAC (Application
Address) Logs)
Time of
Search
Business Value
Correlation Criteria
Revenues driven by
Billing (Structured Data) MAC address same Search
Device Content Content in Search Results Improving local content
(MAC Purchased
Address) (IDA #) Purchase time mix
Better search results
Amount of Time of
Purchase ($) Search Tailor content promotion
© 2018 SPLUNK INC.
> >
– Graphs and reports illustrate feature
issues
– Trending and baseline of new features
– Refine
Used features managers
by product for better customer
and
experience and drive product
executives innovation
Customer
Interactions
Customers (application/web
logs)
© 2018 SPLUNK INC.
User authenticates
& receives an IP MDN (Phone #)
address IP Address
(authentication log
has phone # / IP
address) Correlate Phone #
(MDN) and IP
Address
Activity Tracked by
IP Key to
- Searches understanding
IP Address
- Downloads Content Search
individual customer
Browsing
- Browsing Downloads behavior – insights
for support, IT and
business
© 2018 SPLUNK INC.
Thank You