SlideShare a Scribd company logo
1 of 45
Download to read offline
Copyright © 2016 Splunk Inc.
Splunk Cloud and
Splunk Enterprise 6.5
Overview
Disclaimer
2
During the course of this presentation, we may make forward looking statements regarding future
events or the expected performance of the company. We caution you that such statements reflect our
current expectations and estimates based on factors currently known to us and that actual events or
results could differ materially. For important factors that may cause actual results to differ from those
contained in our forward-looking statements, please review our filings with the SEC. The forward-
looking statements made in this presentation are being made as of the time and date of its live
presentation. If reviewed after its live presentation, this presentation may not contain current or
accurate information. We do not assume any obligation to update any forward-looking statements we
may make. In addition, any information about our roadmap outlines our general product direction and is
subject to change at any time without notice. It is for informational purposes only and shall not, be
incorporated into any contract or other commitment. Splunk undertakes no obligation either to develop
the features or functionality described or to include any such feature or functionality in a future release.
Splunk Cloud & Splunk Enterprise 6.5
3
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Splunk Cloud & Splunk Enterprise 6.5
4
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Centralized view of all data objects
prepared for viewing and analysis
• Data Models
• Lookups
• Table Datasets - New!
A home base for data prep and analysis
Datasets Page
5
Data Preparation & Analysis with Tables
6
Create, edit, analyze table views without using SPL
Benefits of Table Datasets
7
Splunk Specialist Occasional User
• Rapidly create rich data views
• Empower independent analysis
by other users
• Analyze & explore in intuitive data view
• Independently edit / add fields
• Create reports and dashboard panels
Data prep and analysis – made simple
Enhanced Search Assistance
8
Improved search productivity
• Syntax coloring
• Auto-complete
• Auto-formatting
Better Report Tables
9
• Conditional formatting of
table columns
• Number formatting
• Table summary statistics
Create digestible tables with rich insights 
Dashboard Enhancements
10
• Preview dashboard before saving
• Inline XML source editor
• Versatile refresh controls
Build and share dashboards with ease
Splunk Cloud & Splunk Enterprise 6.5
11
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Machine Learning and Advanced Analytics at Splunk
12
Purpose-built, turnkey-key analytics dedicated
to managing IT services and security
Packaged Machine Learning
Easy to use ML integrated into
standard day-to-day operations
Custom Machine Learning
Predictive analytics tailored for a
customer’s specific environment
and target use cases
From platform to packaged premium solutions
Integrated & custom analytics for any use case
Splunk Machine Learning Toolkit
13
Assistants: Guide model building, testing
& deployment for common objectives
Showcases: Interactive examples for typical
IT, security, business, IoT use cases
SPL ML Commands: New commands to
fit, test and operationalize models
Python for Scientific Computing Library:
300+ open source algorithms available for use
Build custom analytics for any use case
Machine Learning Customer Success
Network Incident Detection
Service Degradation Detection Security / Fraud Prevention
Prioritize Website Issues
and Predict Root Cause
Predict Gaming Outages
Fraud Prevention
Machine Learning Consulting Services Analytics App built on ML Toolkit
Optimizing operations and business results
Cell Tower Incident Detection
Optimize Repair Operations
Entertainment
Company
15
Splunk Cloud & Splunk Enterprise 6.5
15
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Storage TCO Reduction Options
16
Reduce TSIDX for
historical data
Roll historical data
into Hadoop
Keeps data within existing
Splunk storage
Exports data but maintains
search capability
Flexible options to reduce storage requirements up to 80%
Integrated Hadoop Features
17
Access, analysis and storage flexibility with data lake
Seamlessly search your Hadoop
data within Splunk *
Amazon
EMR on S3
Hadoop
Clusters
Roll historical Splunk data into
existing Hadoop distribution
Enrich data in Hadoop with Splunk
search results
Import Hadoop data into Splunk
*Requires Splunk Analytics for Hadoop
add-on license
• In-depth views integrated
into Monitoring Console
• Includes checks for common issues
with suggested actions
• Add custom Health Checks for your
environment with an SPL search
System Health Check
18
Take proactive action to optimize Splunk operations
Indexer Cluster Rebalancing
19
Get immediate value from new indexers
• Immediately optimizes
search & indexing loads
• Immediately balances
storage loads
Simple controls to
automatically rebalance
Before
Rebalancing
After
Rebalancing
New
Real-Time SPL Optimization
20
Automatically optimizes query performance
Filter results as early as possible lookup only on required data
eval on the minimum number
of events possible
Process as much as possible
in parallel on indexers
Automatically applies
best practice techniques
to optimize execution
speed of any query
Splunk Cloud & Splunk Enterprise 6.5
21
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
New App Developer Resources
22
Package
Packaging 
Toolkit (Beta)
Develop
Add-on 
Builder App 
AppInspect 
Tool
Promote
Splunkbase 
app discovery 
experience 
Making apps easier to develop, certify & manage
Certify
Splunk App 
Certification 
Process
Tools to Build Better Apps
23
Build certification-ready apps & add-ons
Add-on Builder
• Auto-generate modular input script
• Define knowledge extraction
• Validate certification readiness
AppInspect
• Run the same checks as App Certification team
• Run 140+ static analysis checks
• Integrate into existing build tools and processes
Packaging Toolkit (beta)
24
• Specifies app deployment requirements
via an app manifest
• Pre-packages and validates dependencies
• Partitions app based on component
deployment requirements
• Compatible with standard deployment
tools and scripts
Assure clean and reliable app deployment
App package
Forwarder
Indexer
Search Head
App Component
App
manifest
Splunk App Certification Process
25
• Typical process takes 2 weeks from submission
Streamlined process for faster time to market
Splunkbase App Discovery
26
User Experience improvements
that make it easier to discover
apps and add-ons
Curated content that highlights:
• Certification status
• Use case
• Technology
Easily discover and adopt apps with confidence
Splunk Cloud & Splunk Enterprise 6.5
27
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
New Licensing Terms
For Splunk Enterprise and Splunk Cloud Customers 
Free Dev/Test Usage
Explore new data sources
and use cases before
moving to production
28
No Metered Enforcement
Exceeding license terms
does not disrupt Splunk
production operations
New license key available with
6.5 upgrade
Personalized license keys available
to all customers
Available Now with 6.5! Available Nov 1, 2016
New Licensing Terms
For Splunk Enterprise 6.5 and Splunk Cloud Customers 
No metered enforcement (Splunk Enterprise)
– Exceeding daily license capacity will no longer disable Search
– Licensing terms and conditions continue to apply
Free personal use dev/test software licenses
– 50 GB single-server license valid for 6 months of non-production use
– Multiple licenses and renewals allowed
29
Making it easier to get more from your data
Splunk Cloud & Splunk Enterprise 6.5
30
New Developer
Resources
Easier Data
Prep & Analysis
Extended Platform
and Management
Fast & simple analysis
for a wide range of users
Simplified management
and lower TCO
Create and certify
enterprise-ready Apps
New Machine
Learning Analytics
Predictive analytics for
business-critical events
• Integrated Hadoop data roll
• Automated management
• System health check
• Create custom analytics and
models for any use case
• Guided modeling experience
• Introducing new table views
• Intuitive interface to build,
edit & analyze tables
• New app developer tools
• Enhanced certification
process
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Appendix
Machine Learning and Advanced Analytics at Splunk
32
Purpose-built, turnkey analytics dedicated
to managing IT services and security
Integrated & custom analytics for any use case
Specialized security analytics
• Behavior baselining & modeling
• Anomaly detection (40+ models)
Packaged IT monitoring analytics
• Anomaly detection
• Adaptive thresholding
Integrated & custom analytics for any use
• 20+ analytics commands & functions
• Automatic cluster analysis @ search
• Custom modeling workbench
From platform to packaged premium solutions
What’s New in ML Toolkit 2.0?
Modeling Capabilities
• Multi-algorithm
support in Assistants
• 15+ new algorithms
available OOTB
since 1.0
• Cluster Numeric
Events Assistant
• Scatterplot matrix viz
Scalability
• Distributed
processing across
indexers
• Scheduled fit
Usability
• Create Alerts within
Toolkit
• Tooltips
• In-app tours
• Tutorials for each
assistant
Making it easier to build and operationalize models
ML Toolkit Customer Use Cases
34
Speeding website problem resolution by automatically ranking actions for support engineers
Reducing customer service disruption with early identification of difficult-to-detect network incidents
Minimizing cell tower degradation and downtime with improved issue detection sensitivity
Improving cell tower uptime and reducing repair truck roles with anomaly detection
and root cause analysis
Predicting and averting potential gaming outage conditions with finer-grained detection
Ensuring mobile device security by detecting anomalies in ID authentication
Preventing fraud by Identifying malicious accounts and suspicious activities
Entertainment
Company
Domain
Expertise
(IT, Security, …)
Data
Science
Expertise
Splunk
Expertise
Custom Machine Learning – Success Formula
Identify use cases
Drive decisions
Set business/ops
priorities
SPL
Data prep
Statistics / math background
Algorithm selection
Model building
Splunk ML Toolkit
facilitates and simplifies
via examples & guidance
Operational success
Detect Network Outliers
Reduced downtime + increased service availability = better customer satisfaction
36
ML Use Case
Monitor noise rise for 20,000+ cell towers to increase service and device
availability, reduce MTTR
Technical overview
• A customized solution deployed in production based on outlier detection.
• Leverage previous month data and voting algorithms
“The ability to model complex systems and alert on deviations is where IT  and security 
operations are headed … Splunk Machine Learning has given us a head start...”
Reliable website updates
Proactive website monitoring leads to reduced downtime
37
“Splunk ML helps us rapidly improve end-user experience by ranking issue severity 
which helps us determine root causes faster thus reducing MTTR and  improving 
SLA”
• Very frequent code and config updates (1000+ daily) can cause site issues
• Find errors in server pools, then prioritize actions and predict root cause
• Custom outlier detection built using ML Toolkit Outlier assistant
• Built by Splunk Architect with no Data Science background
ML Use Case
Technical overview
Integrated Hadoop Features
Unified exploration across
Splunk and non-Splunk data
Roll historical Splunk data into
existing Hadoop distribution
Enrich data in Hadoop with
Splunk search results
Explore current and historical
data
Import Hadoop data into
Splunk
Hadoop Data Roll
Splunk Analytics for Hadoop
Hadoop Connect
38
Access, analysis and storage flexibility with data lake
Amazon
EMR on S3
Hadoop
Clusters
Hadoop Data Roll
39
Hadoop
Clusters
Amazon
EMR on S3
• Rolls historical data into existing Hadoop
distribution
• Reduces storage up to 80%*
• Retains Splunk search capability with
performance tradeoffs
• Integrated, zero-cost option of Splunk
Enterprise
Leverage existing Hadoop datastore to reduce TCO
* Achieved by reducing Splunk search optimization data
Warm
Cold
Comparing Storage TCO Reduction Options
40
Hot
• Removes some search optimization data
• No search functionality loss
• Limited performance tradeoff for typical
use cases
40-80% data
footprint reduction
Reduce TSIDX for historical data Hadoop Data Roll
• Removes search optimization data
• No search functionality loss, uses virtual index
• Performance tradeoff
• Shares data with Hadoop and Hadoop application
Hot
40-80% data
footprint
reduction
Warm
Cold
Splunkbase App Discovery
41
User Experience improvements
that make it easier to discover
apps and add-ons
Curated content that highlights:
• Certification status
• Use case
• Technology
Simplify discovery and adoption of your app
Cold Cold Cold
Savings Example
Driving down data retention costs
Savings Over
1 Year
$1.6 M*
Savings over
5 Years
$4.3 M*
Raw Ingest: 10TB / Day
Hot/Warm Retention: 2 Months
Cold Retention: 10 Months
* Assumes $1.25/GB Cold Storage Purchase Cost, 10% Maintenance Cost, 10% Annual Data Growth, 3 Year HW Refresh, No clustering
42
Hot
Cold
Warm
Cold Cold Cold Cold Cold
Warm Warm
Storage Optimization
Driving down data retention costs
How does it work?
Certain Splunk performance optimization data
(TSIDX) is removed – yielding a smaller footprint.
43
New Data Storage Controls
• 40-80% reduction in data footprint
• No functionality loss
• Limited performance tradeoff for
typical use cases
Cold Cold Cold
Hot
Cold
Warm
Cold Cold Cold Cold Cold
Warm Warm
Splunk Enterprise & Splunk Cloud 6.4
New Cloud Services
Monitoring
New Visualizations
& Enhanced Analytics
Platform Security
and Management
Unlimited new ways to
visualize your data
New mission-critical
features
Expanded cloud
operations intelligence
Storage TCO
Reduction
Reduces historical data
storage TCO by 40%+
(Splunk Enterprise)
Get more from big data and pay less in storage costs
44
The Splunk Portfolio
Platform for Operational Intelligence
Rich Ecosystem of
Apps & Add-Ons
Splunk Premium
Solutions
Mainframe
Data
Relational
Databases
MobileForwarders Syslog/TCP
IoT
Devices
Network
Wire Data
Hadoop

More Related Content

What's hot

What's hot (20)

Machine Learning and Analytics Breakout Session
Machine Learning and Analytics Breakout SessionMachine Learning and Analytics Breakout Session
Machine Learning and Analytics Breakout Session
 
Distributed Management Console Breakout Session
Distributed Management Console Breakout Session Distributed Management Console Breakout Session
Distributed Management Console Breakout Session
 
How to Design, Build and Map IT and Biz Services Breakout Session
How to Design, Build and Map IT and Biz Services Breakout SessionHow to Design, Build and Map IT and Biz Services Breakout Session
How to Design, Build and Map IT and Biz Services Breakout Session
 
Herbalife Customer Presentation
Herbalife Customer PresentationHerbalife Customer Presentation
Herbalife Customer Presentation
 
Getting Started with Splunk Enterprise Hands-On Breakout Session
Getting Started with Splunk Enterprise Hands-On Breakout SessionGetting Started with Splunk Enterprise Hands-On Breakout Session
Getting Started with Splunk Enterprise Hands-On Breakout Session
 
Data-Drive DevOps: Mining Machine Data for "Metrics that Matter"
Data-Drive DevOps: Mining Machine Data for "Metrics that Matter"Data-Drive DevOps: Mining Machine Data for "Metrics that Matter"
Data-Drive DevOps: Mining Machine Data for "Metrics that Matter"
 
Explain the Value of your Splunk Deployment Breakout Session
Explain the Value of your Splunk Deployment Breakout SessionExplain the Value of your Splunk Deployment Breakout Session
Explain the Value of your Splunk Deployment Breakout Session
 
Elevate your Splunk Deployment by Better Understanding your Value Breakfast S...
Elevate your Splunk Deployment by Better Understanding your Value Breakfast S...Elevate your Splunk Deployment by Better Understanding your Value Breakfast S...
Elevate your Splunk Deployment by Better Understanding your Value Breakfast S...
 
Taking Splunk to the Next Level - Management Breakout Session
Taking Splunk to the Next Level - Management Breakout SessionTaking Splunk to the Next Level - Management Breakout Session
Taking Splunk to the Next Level - Management Breakout Session
 
Taking Splunk to the Next Level - Manager
Taking Splunk to the Next Level - ManagerTaking Splunk to the Next Level - Manager
Taking Splunk to the Next Level - Manager
 
Getting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Enterprise Hands-OnGetting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Enterprise Hands-On
 
Splunk: How to Design, Build and Map IT Services
Splunk: How to Design, Build and Map IT ServicesSplunk: How to Design, Build and Map IT Services
Splunk: How to Design, Build and Map IT Services
 
Splunk for Developers
Splunk for DevelopersSplunk for Developers
Splunk for Developers
 
Devops Powered by Splunk
Devops Powered by SplunkDevops Powered by Splunk
Devops Powered by Splunk
 
Splunk Enterprise 6.4
Splunk Enterprise 6.4Splunk Enterprise 6.4
Splunk Enterprise 6.4
 
Taking Splunk to the Next Level – Management - Advanced
Taking Splunk to the Next Level – Management - AdvancedTaking Splunk to the Next Level – Management - Advanced
Taking Splunk to the Next Level – Management - Advanced
 
Splunk Ninjas: New Features and Search Dojo
Splunk Ninjas: New Features and Search DojoSplunk Ninjas: New Features and Search Dojo
Splunk Ninjas: New Features and Search Dojo
 
Business Value Breakfast Presentation
Business Value Breakfast PresentationBusiness Value Breakfast Presentation
Business Value Breakfast Presentation
 
What's New in 6.3 + Data On-Boarding
What's New in 6.3 + Data On-BoardingWhat's New in 6.3 + Data On-Boarding
What's New in 6.3 + Data On-Boarding
 
Distributed Management Console
Distributed Management ConsoleDistributed Management Console
Distributed Management Console
 

Viewers also liked

2015 form-10-k-and-strategy-discussion 041916-1
2015 form-10-k-and-strategy-discussion 041916-12015 form-10-k-and-strategy-discussion 041916-1
2015 form-10-k-and-strategy-discussion 041916-1
ada ades
 
Ballou Updated 2016 (1)
Ballou Updated 2016 (1)Ballou Updated 2016 (1)
Ballou Updated 2016 (1)
Justin Ballou
 
Kriteria penilaian sni award 2016 organisasi kecil barang dan jasa
Kriteria penilaian sni award 2016 organisasi kecil barang dan jasaKriteria penilaian sni award 2016 organisasi kecil barang dan jasa
Kriteria penilaian sni award 2016 organisasi kecil barang dan jasa
roellys
 
Jay D Vithalani Resume
Jay D Vithalani ResumeJay D Vithalani Resume
Jay D Vithalani Resume
Jay Vithalani
 

Viewers also liked (20)

What's New in Splunk 6.3
What's New in Splunk 6.3What's New in Splunk 6.3
What's New in Splunk 6.3
 
Paris Innovation & New tech - Meetup #2 - Démo Craft AI
Paris Innovation & New tech - Meetup #2 - Démo Craft AIParis Innovation & New tech - Meetup #2 - Démo Craft AI
Paris Innovation & New tech - Meetup #2 - Démo Craft AI
 
2015 form-10-k-and-strategy-discussion 041916-1
2015 form-10-k-and-strategy-discussion 041916-12015 form-10-k-and-strategy-discussion 041916-1
2015 form-10-k-and-strategy-discussion 041916-1
 
Paris Innovation & New tech - Meetup #2 - API Economy
Paris Innovation & New tech - Meetup #2 - API EconomyParis Innovation & New tech - Meetup #2 - API Economy
Paris Innovation & New tech - Meetup #2 - API Economy
 
Gem+ Presentation WB
Gem+ Presentation WBGem+ Presentation WB
Gem+ Presentation WB
 
Donosti2016
Donosti2016Donosti2016
Donosti2016
 
Ballou Updated 2016 (1)
Ballou Updated 2016 (1)Ballou Updated 2016 (1)
Ballou Updated 2016 (1)
 
Flyer Mission Possible
Flyer Mission PossibleFlyer Mission Possible
Flyer Mission Possible
 
Kriteria penilaian sni award 2016 organisasi kecil barang dan jasa
Kriteria penilaian sni award 2016 organisasi kecil barang dan jasaKriteria penilaian sni award 2016 organisasi kecil barang dan jasa
Kriteria penilaian sni award 2016 organisasi kecil barang dan jasa
 
Enterprise Security featuring UBA
Enterprise Security featuring UBAEnterprise Security featuring UBA
Enterprise Security featuring UBA
 
Getting Started with Splunk Enterprise
Getting Started with Splunk Enterprise Getting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Jay D Vithalani Resume
Jay D Vithalani ResumeJay D Vithalani Resume
Jay D Vithalani Resume
 
Gartner Datacenter Summit - Cox Automotive
Gartner Datacenter Summit - Cox AutomotiveGartner Datacenter Summit - Cox Automotive
Gartner Datacenter Summit - Cox Automotive
 
Art of the Possible - Innovating with Splunk
Art of the Possible - Innovating with SplunkArt of the Possible - Innovating with Splunk
Art of the Possible - Innovating with Splunk
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Building Business Service Intelligence with ITSI
Building Business Service Intelligence with ITSIBuilding Business Service Intelligence with ITSI
Building Business Service Intelligence with ITSI
 
Threat Hunting with Splunk
Threat Hunting with SplunkThreat Hunting with Splunk
Threat Hunting with Splunk
 
Customer Presentation with a Healthcare Company
Customer Presentation with a Healthcare CompanyCustomer Presentation with a Healthcare Company
Customer Presentation with a Healthcare Company
 
Splunk Enterprise for IT Troubleshooting
Splunk Enterprise for IT Troubleshooting Splunk Enterprise for IT Troubleshooting
Splunk Enterprise for IT Troubleshooting
 
Adverse Drug Reactions - Katalyst HLS
Adverse Drug Reactions - Katalyst HLSAdverse Drug Reactions - Katalyst HLS
Adverse Drug Reactions - Katalyst HLS
 

Similar to Quelles nouveautés avec la version 6.5 de Splunk Enterprise

SplunkLive! What's New in Splunk 6 Session
SplunkLive! What's New in Splunk 6 SessionSplunkLive! What's New in Splunk 6 Session
SplunkLive! What's New in Splunk 6 Session
Splunk
 

Similar to Quelles nouveautés avec la version 6.5 de Splunk Enterprise (20)

Splunk Enterprise 6.3 - Splunk Tech Day
Splunk Enterprise 6.3 - Splunk Tech DaySplunk Enterprise 6.3 - Splunk Tech Day
Splunk Enterprise 6.3 - Splunk Tech Day
 
SplunkLive! What's New in Splunk 6 Session
SplunkLive! What's New in Splunk 6 SessionSplunkLive! What's New in Splunk 6 Session
SplunkLive! What's New in Splunk 6 Session
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
SplunkLive! London 2015 - DevOps Breakout
SplunkLive! London 2015 - DevOps BreakoutSplunkLive! London 2015 - DevOps Breakout
SplunkLive! London 2015 - DevOps Breakout
 
SplunkLive! Splunk Enterprise 6.3 - Data On-boarding
SplunkLive! Splunk Enterprise 6.3 - Data On-boardingSplunkLive! Splunk Enterprise 6.3 - Data On-boarding
SplunkLive! Splunk Enterprise 6.3 - Data On-boarding
 
Splunk MINT and Stream Breakout
Splunk MINT and Stream BreakoutSplunk MINT and Stream Breakout
Splunk MINT and Stream Breakout
 
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Splunk Webinar: IT Operations Demo für Troubleshooting & DashboardingSplunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
 
Webinar: Neuigkeiten zu Splunk Enterprise 6.3
Webinar: Neuigkeiten zu Splunk Enterprise 6.3Webinar: Neuigkeiten zu Splunk Enterprise 6.3
Webinar: Neuigkeiten zu Splunk Enterprise 6.3
 
Getting Started with Splunk Enterprises
Getting Started with Splunk EnterprisesGetting Started with Splunk Enterprises
Getting Started with Splunk Enterprises
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Splunk
SplunkSplunk
Splunk
 
Splunk in Staples: IT Operations
Splunk in Staples: IT OperationsSplunk in Staples: IT Operations
Splunk in Staples: IT Operations
 
Destination Digital: Tracking Progress to Continue First Class Performance
Destination Digital: Tracking Progress to Continue First Class PerformanceDestination Digital: Tracking Progress to Continue First Class Performance
Destination Digital: Tracking Progress to Continue First Class Performance
 
Splunk Data Onboarding Overview - Splunk Data Collection Architecture
Splunk Data Onboarding Overview - Splunk Data Collection ArchitectureSplunk Data Onboarding Overview - Splunk Data Collection Architecture
Splunk Data Onboarding Overview - Splunk Data Collection Architecture
 
Webinar: SAP BW Dinosaur to Agile Analytics Powerhouse
Webinar: SAP BW Dinosaur to Agile Analytics PowerhouseWebinar: SAP BW Dinosaur to Agile Analytics Powerhouse
Webinar: SAP BW Dinosaur to Agile Analytics Powerhouse
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Splunk IT Service Intelligence
Splunk IT Service IntelligenceSplunk IT Service Intelligence
Splunk IT Service Intelligence
 
Splunk in Rakuten: Splunk as a Service for all
Splunk in Rakuten: Splunk as a Service for allSplunk in Rakuten: Splunk as a Service for all
Splunk in Rakuten: Splunk as a Service for all
 
Performance monitoring in a DevOps World
Performance monitoring in a DevOps WorldPerformance monitoring in a DevOps World
Performance monitoring in a DevOps World
 

More from Splunk

More from Splunk (20)

.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - Data analysis as a routine
 
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
 
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica).conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
 
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - Raiffeisen Bank International
 
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett .conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
 
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär).conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
 
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu....conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
 
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever....conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
 
.conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex).conf go 2023 - De NOC a CSIRT (Cellnex)
.conf go 2023 - De NOC a CSIRT (Cellnex)
 
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
 
Splunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11ySplunk - BMW connects business and IT with data driven operations SRE and O11y
Splunk - BMW connects business and IT with data driven operations SRE and O11y
 
Splunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go KölnSplunk x Freenet - .conf Go Köln
Splunk x Freenet - .conf Go Köln
 
Splunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go KölnSplunk Security Session - .conf Go Köln
Splunk Security Session - .conf Go Köln
 
Data foundations building success, at city scale – Imperial College London
 Data foundations building success, at city scale – Imperial College London Data foundations building success, at city scale – Imperial College London
Data foundations building success, at city scale – Imperial College London
 
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
Splunk: How Vodafone established Operational Analytics in a Hybrid Environmen...
 
SOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security WebinarSOC, Amore Mio! | Security Webinar
SOC, Amore Mio! | Security Webinar
 
.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session.conf Go 2022 - Observability Session
.conf Go 2022 - Observability Session
 
.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote.conf Go Zurich 2022 - Keynote
.conf Go Zurich 2022 - Keynote
 
.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session.conf Go Zurich 2022 - Platform Session
.conf Go Zurich 2022 - Platform Session
 
.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session.conf Go Zurich 2022 - Security Session
.conf Go Zurich 2022 - Security Session
 

Recently uploaded

+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 

Recently uploaded (20)

MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Ransomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfRansomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdf
 
AXA XL - Insurer Innovation Award Americas 2024
AXA XL - Insurer Innovation Award Americas 2024AXA XL - Insurer Innovation Award Americas 2024
AXA XL - Insurer Innovation Award Americas 2024
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
 
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu SubbuApidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Navi Mumbai Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Navi Mumbai Call Girls 🥰 8617370543 Service Offer VIP Hot ModelNavi Mumbai Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Navi Mumbai Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 

Quelles nouveautés avec la version 6.5 de Splunk Enterprise

  • 1. Copyright © 2016 Splunk Inc. Splunk Cloud and Splunk Enterprise 6.5 Overview
  • 2. Disclaimer 2 During the course of this presentation, we may make forward looking statements regarding future events or the expected performance of the company. We caution you that such statements reflect our current expectations and estimates based on factors currently known to us and that actual events or results could differ materially. For important factors that may cause actual results to differ from those contained in our forward-looking statements, please review our filings with the SEC. The forward- looking statements made in this presentation are being made as of the time and date of its live presentation. If reviewed after its live presentation, this presentation may not contain current or accurate information. We do not assume any obligation to update any forward-looking statements we may make. In addition, any information about our roadmap outlines our general product direction and is subject to change at any time without notice. It is for informational purposes only and shall not, be incorporated into any contract or other commitment. Splunk undertakes no obligation either to develop the features or functionality described or to include any such feature or functionality in a future release.
  • 3. Splunk Cloud & Splunk Enterprise 6.5 3 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 4. Splunk Cloud & Splunk Enterprise 6.5 4 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 5. Centralized view of all data objects prepared for viewing and analysis • Data Models • Lookups • Table Datasets - New! A home base for data prep and analysis Datasets Page 5
  • 6. Data Preparation & Analysis with Tables 6 Create, edit, analyze table views without using SPL
  • 7. Benefits of Table Datasets 7 Splunk Specialist Occasional User • Rapidly create rich data views • Empower independent analysis by other users • Analyze & explore in intuitive data view • Independently edit / add fields • Create reports and dashboard panels Data prep and analysis – made simple
  • 8. Enhanced Search Assistance 8 Improved search productivity • Syntax coloring • Auto-complete • Auto-formatting
  • 9. Better Report Tables 9 • Conditional formatting of table columns • Number formatting • Table summary statistics Create digestible tables with rich insights 
  • 10. Dashboard Enhancements 10 • Preview dashboard before saving • Inline XML source editor • Versatile refresh controls Build and share dashboards with ease
  • 11. Splunk Cloud & Splunk Enterprise 6.5 11 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 12. Machine Learning and Advanced Analytics at Splunk 12 Purpose-built, turnkey-key analytics dedicated to managing IT services and security Packaged Machine Learning Easy to use ML integrated into standard day-to-day operations Custom Machine Learning Predictive analytics tailored for a customer’s specific environment and target use cases From platform to packaged premium solutions Integrated & custom analytics for any use case
  • 13. Splunk Machine Learning Toolkit 13 Assistants: Guide model building, testing & deployment for common objectives Showcases: Interactive examples for typical IT, security, business, IoT use cases SPL ML Commands: New commands to fit, test and operationalize models Python for Scientific Computing Library: 300+ open source algorithms available for use Build custom analytics for any use case
  • 14. Machine Learning Customer Success Network Incident Detection Service Degradation Detection Security / Fraud Prevention Prioritize Website Issues and Predict Root Cause Predict Gaming Outages Fraud Prevention Machine Learning Consulting Services Analytics App built on ML Toolkit Optimizing operations and business results Cell Tower Incident Detection Optimize Repair Operations Entertainment Company 15
  • 15. Splunk Cloud & Splunk Enterprise 6.5 15 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 16. Storage TCO Reduction Options 16 Reduce TSIDX for historical data Roll historical data into Hadoop Keeps data within existing Splunk storage Exports data but maintains search capability Flexible options to reduce storage requirements up to 80%
  • 17. Integrated Hadoop Features 17 Access, analysis and storage flexibility with data lake Seamlessly search your Hadoop data within Splunk * Amazon EMR on S3 Hadoop Clusters Roll historical Splunk data into existing Hadoop distribution Enrich data in Hadoop with Splunk search results Import Hadoop data into Splunk *Requires Splunk Analytics for Hadoop add-on license
  • 18. • In-depth views integrated into Monitoring Console • Includes checks for common issues with suggested actions • Add custom Health Checks for your environment with an SPL search System Health Check 18 Take proactive action to optimize Splunk operations
  • 19. Indexer Cluster Rebalancing 19 Get immediate value from new indexers • Immediately optimizes search & indexing loads • Immediately balances storage loads Simple controls to automatically rebalance Before Rebalancing After Rebalancing New
  • 20. Real-Time SPL Optimization 20 Automatically optimizes query performance Filter results as early as possible lookup only on required data eval on the minimum number of events possible Process as much as possible in parallel on indexers Automatically applies best practice techniques to optimize execution speed of any query
  • 21. Splunk Cloud & Splunk Enterprise 6.5 21 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 22. New App Developer Resources 22 Package Packaging  Toolkit (Beta) Develop Add-on  Builder App  AppInspect  Tool Promote Splunkbase  app discovery  experience  Making apps easier to develop, certify & manage Certify Splunk App  Certification  Process
  • 23. Tools to Build Better Apps 23 Build certification-ready apps & add-ons Add-on Builder • Auto-generate modular input script • Define knowledge extraction • Validate certification readiness AppInspect • Run the same checks as App Certification team • Run 140+ static analysis checks • Integrate into existing build tools and processes
  • 24. Packaging Toolkit (beta) 24 • Specifies app deployment requirements via an app manifest • Pre-packages and validates dependencies • Partitions app based on component deployment requirements • Compatible with standard deployment tools and scripts Assure clean and reliable app deployment App package Forwarder Indexer Search Head App Component App manifest
  • 25. Splunk App Certification Process 25 • Typical process takes 2 weeks from submission Streamlined process for faster time to market
  • 26. Splunkbase App Discovery 26 User Experience improvements that make it easier to discover apps and add-ons Curated content that highlights: • Certification status • Use case • Technology Easily discover and adopt apps with confidence
  • 27. Splunk Cloud & Splunk Enterprise 6.5 27 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 28. New Licensing Terms For Splunk Enterprise and Splunk Cloud Customers  Free Dev/Test Usage Explore new data sources and use cases before moving to production 28 No Metered Enforcement Exceeding license terms does not disrupt Splunk production operations New license key available with 6.5 upgrade Personalized license keys available to all customers Available Now with 6.5! Available Nov 1, 2016
  • 29. New Licensing Terms For Splunk Enterprise 6.5 and Splunk Cloud Customers  No metered enforcement (Splunk Enterprise) – Exceeding daily license capacity will no longer disable Search – Licensing terms and conditions continue to apply Free personal use dev/test software licenses – 50 GB single-server license valid for 6 months of non-production use – Multiple licenses and renewals allowed 29 Making it easier to get more from your data
  • 30. Splunk Cloud & Splunk Enterprise 6.5 30 New Developer Resources Easier Data Prep & Analysis Extended Platform and Management Fast & simple analysis for a wide range of users Simplified management and lower TCO Create and certify enterprise-ready Apps New Machine Learning Analytics Predictive analytics for business-critical events • Integrated Hadoop data roll • Automated management • System health check • Create custom analytics and models for any use case • Guided modeling experience • Introducing new table views • Intuitive interface to build, edit & analyze tables • New app developer tools • Enhanced certification process Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 32. Machine Learning and Advanced Analytics at Splunk 32 Purpose-built, turnkey analytics dedicated to managing IT services and security Integrated & custom analytics for any use case Specialized security analytics • Behavior baselining & modeling • Anomaly detection (40+ models) Packaged IT monitoring analytics • Anomaly detection • Adaptive thresholding Integrated & custom analytics for any use • 20+ analytics commands & functions • Automatic cluster analysis @ search • Custom modeling workbench From platform to packaged premium solutions
  • 33. What’s New in ML Toolkit 2.0? Modeling Capabilities • Multi-algorithm support in Assistants • 15+ new algorithms available OOTB since 1.0 • Cluster Numeric Events Assistant • Scatterplot matrix viz Scalability • Distributed processing across indexers • Scheduled fit Usability • Create Alerts within Toolkit • Tooltips • In-app tours • Tutorials for each assistant Making it easier to build and operationalize models
  • 34. ML Toolkit Customer Use Cases 34 Speeding website problem resolution by automatically ranking actions for support engineers Reducing customer service disruption with early identification of difficult-to-detect network incidents Minimizing cell tower degradation and downtime with improved issue detection sensitivity Improving cell tower uptime and reducing repair truck roles with anomaly detection and root cause analysis Predicting and averting potential gaming outage conditions with finer-grained detection Ensuring mobile device security by detecting anomalies in ID authentication Preventing fraud by Identifying malicious accounts and suspicious activities Entertainment Company
  • 35. Domain Expertise (IT, Security, …) Data Science Expertise Splunk Expertise Custom Machine Learning – Success Formula Identify use cases Drive decisions Set business/ops priorities SPL Data prep Statistics / math background Algorithm selection Model building Splunk ML Toolkit facilitates and simplifies via examples & guidance Operational success
  • 36. Detect Network Outliers Reduced downtime + increased service availability = better customer satisfaction 36 ML Use Case Monitor noise rise for 20,000+ cell towers to increase service and device availability, reduce MTTR Technical overview • A customized solution deployed in production based on outlier detection. • Leverage previous month data and voting algorithms “The ability to model complex systems and alert on deviations is where IT  and security  operations are headed … Splunk Machine Learning has given us a head start...”
  • 37. Reliable website updates Proactive website monitoring leads to reduced downtime 37 “Splunk ML helps us rapidly improve end-user experience by ranking issue severity  which helps us determine root causes faster thus reducing MTTR and  improving  SLA” • Very frequent code and config updates (1000+ daily) can cause site issues • Find errors in server pools, then prioritize actions and predict root cause • Custom outlier detection built using ML Toolkit Outlier assistant • Built by Splunk Architect with no Data Science background ML Use Case Technical overview
  • 38. Integrated Hadoop Features Unified exploration across Splunk and non-Splunk data Roll historical Splunk data into existing Hadoop distribution Enrich data in Hadoop with Splunk search results Explore current and historical data Import Hadoop data into Splunk Hadoop Data Roll Splunk Analytics for Hadoop Hadoop Connect 38 Access, analysis and storage flexibility with data lake Amazon EMR on S3 Hadoop Clusters
  • 39. Hadoop Data Roll 39 Hadoop Clusters Amazon EMR on S3 • Rolls historical data into existing Hadoop distribution • Reduces storage up to 80%* • Retains Splunk search capability with performance tradeoffs • Integrated, zero-cost option of Splunk Enterprise Leverage existing Hadoop datastore to reduce TCO * Achieved by reducing Splunk search optimization data
  • 40. Warm Cold Comparing Storage TCO Reduction Options 40 Hot • Removes some search optimization data • No search functionality loss • Limited performance tradeoff for typical use cases 40-80% data footprint reduction Reduce TSIDX for historical data Hadoop Data Roll • Removes search optimization data • No search functionality loss, uses virtual index • Performance tradeoff • Shares data with Hadoop and Hadoop application Hot 40-80% data footprint reduction Warm Cold
  • 41. Splunkbase App Discovery 41 User Experience improvements that make it easier to discover apps and add-ons Curated content that highlights: • Certification status • Use case • Technology Simplify discovery and adoption of your app
  • 42. Cold Cold Cold Savings Example Driving down data retention costs Savings Over 1 Year $1.6 M* Savings over 5 Years $4.3 M* Raw Ingest: 10TB / Day Hot/Warm Retention: 2 Months Cold Retention: 10 Months * Assumes $1.25/GB Cold Storage Purchase Cost, 10% Maintenance Cost, 10% Annual Data Growth, 3 Year HW Refresh, No clustering 42 Hot Cold Warm Cold Cold Cold Cold Cold Warm Warm
  • 43. Storage Optimization Driving down data retention costs How does it work? Certain Splunk performance optimization data (TSIDX) is removed – yielding a smaller footprint. 43 New Data Storage Controls • 40-80% reduction in data footprint • No functionality loss • Limited performance tradeoff for typical use cases Cold Cold Cold Hot Cold Warm Cold Cold Cold Cold Cold Warm Warm
  • 44. Splunk Enterprise & Splunk Cloud 6.4 New Cloud Services Monitoring New Visualizations & Enhanced Analytics Platform Security and Management Unlimited new ways to visualize your data New mission-critical features Expanded cloud operations intelligence Storage TCO Reduction Reduces historical data storage TCO by 40%+ (Splunk Enterprise) Get more from big data and pay less in storage costs 44
  • 45. The Splunk Portfolio Platform for Operational Intelligence Rich Ecosystem of Apps & Add-Ons Splunk Premium Solutions Mainframe Data Relational Databases MobileForwarders Syslog/TCP IoT Devices Network Wire Data Hadoop