23
Copyright © 2014 Splunk Inc. .conf14 / What’s New Hal Rottenberg

Splunk What's New - Nov 2014

Embed Size (px)

DESCRIPTION

Learn what Splunk has been up to in the past couple of months, including a recap of the .conf14 User Conference, and what's new in Splunk 6.2.

Citation preview

Page 1: Splunk What's New - Nov 2014

Copyright © 2014 Splunk Inc.

.conf14 / What’s New

Hal Rottenberg

Page 2: Splunk What's New - Nov 2014

Agenda

Splunk News

.conf14 Recap

Splunk Enterprise 6.2 – What’s New?

Demos

2

Page 3: Splunk What's New - Nov 2014

Splunk News

Page 4: Splunk What's New - Nov 2014

What Have We Been Up To?

Splunk 6.2 Released

MINT Express launched & MINT Enterprise announced

Amazon AWS– New app for CloudTrail– Beta app for AWS Config service– Hunk-as-a-service integration with EMR

Partnerships & Integrations– IoT – Kepware– Service Now– SFDC

4

Page 5: Splunk What's New - Nov 2014

.conf14 Recap

Page 6: Splunk What's New - Nov 2014

conf.splunk.com

6

Page 9: Splunk What's New - Nov 2014

Copyright © 2014 Splunk Inc.

What Did You Learn?

9

Page 10: Splunk What's New - Nov 2014

Splunk Enterprise 6.2 – What’s New?

Page 11: Splunk What's New - Nov 2014

Copyright © 2014 Splunk Inc.

Introducing Splunk Enterprise 6.2

11

Getting Data In

Advanced Field Extractor

Instant Pivot

Event Pattern Detection

Prebuilt Panels

Search Head Clustering

Distributed Management Console

PowerfulAnalytics for Broader

Number of Users

Faster Data Onboarding

Breakthrough Scalability and

Centralized Mgmt.

Page 12: Splunk What's New - Nov 2014

Copyright © 2014 Splunk Inc.

Introducing Splunk Enterprise 6.2

12

Getting Data In

Advanced Field Extractor

Instant Pivot

Event Pattern Detection

Prebuilt Panels

Search Head Clustering

Distributed Management Console

PowerfulAnalytics for Broader

Number of Users

Faster Data Onboarding

Breakthrough Scalability and

Centralized Mgmt.

Page 13: Splunk What's New - Nov 2014

Getting Data InNew interface makes it easier and faster to onboard any data

• Intuitive wizard-style interface

• Configurable inputs on forwarders

• Improved data preview

• Context-specific FAQs

13

Page 14: Splunk What's New - Nov 2014

Advanced Field ExtractorSimplified field extractor enables rapid data analysis

• Highlight-to-extract multiple fields at once

• Apply keyword search filters

• Specify required text in extractions

• View diverse and rare events

• Validate extracted values with

field stats

14

Page 15: Splunk What's New - Nov 2014

Copyright © 2014 Splunk Inc.

Introducing Splunk Enterprise 6.2

15

Getting Data In

Advanced Field Extractor

Instant Pivot

Event Pattern Detection

Prebuilt Panels

Search Head Clustering

Distributed Management Console

PowerfulAnalytics for Broader

Number of Users

Faster Data Onboarding

Breakthrough Scalability and

Centralized Mgmt.

Page 16: Splunk What's New - Nov 2014

Instant PivotPivot directly on any search to discover relationships, build reports

• From any search, simply select the Statistics tab and click on the pivot icon

• Explore and analyze data from the Pivot interface

• Quickly discover relationships in the data and build powerful reports

16

Page 17: Splunk What's New - Nov 2014

Prebuilt PanelsBuild dashboards faster using reusable building blocks

• Enhanced dashboard edit workflow– Browse or search across reports,

panels, dashboards and more– Preview before adding to

dashboard

• Personalize your dashboards• Collaborate using a library of pre-

built panels• Convert panels to inline to further

customize

17

Page 18: Splunk What's New - Nov 2014

Event Pattern DetectionAuto-discover meaningful patterns in your data with a single click

• Search data without having to

know specific terms to search on

• No need to sift through similar

events, just select “Patterns” tab

• Intuitive interface

18

Screenshot or Image suggestion

Page 19: Splunk What's New - Nov 2014

Copyright © 2014 Splunk Inc.

Introducing Splunk Enterprise 6.2

19

Getting Data In

Advanced Field Extractor

Instant Pivot

Event Pattern Detection

Prebuilt Panels

Search Head Clustering

Distributed Management Console

PowerfulAnalytics for Broader

Number of Users

Faster Data Onboarding

Breakthrough Scalability and

Centralized Mgmt.

Page 20: Splunk What's New - Nov 2014

Search Head ClusteringBreakthrough scalability improvements and storage cost savings

• Increases the number of concurrent users and searches

• Uniform user experience among pooled search heads

• No single point of failure

• Search job failure aware

• Does not require external storage such as NFS

20

Page 21: Splunk What's New - Nov 2014

Distributed Management ConsoleEasily monitor health and performance of distributed deployments

• New Dashboards– Listing of Splunk instances and roles– Distributed indexing and search views– Resource usage views– Create logical groups

• Ships with Splunk, Nothing to install

• Platform Alerts - Splunk admins can receive emails on critical conditions

21

Page 22: Splunk What's New - Nov 2014

Copyright © 2014 Splunk Inc.

Introducing Splunk Enterprise 6.2

22

Getting Data In

Advanced Field Extractor

Instant Pivot

Event Pattern Detection

Prebuilt Panels

Search Head Clustering

Distributed Management Console

PowerfulAnalytics for Broader

Number of Users

Faster Data Onboarding

Breakthrough Scalability and

Centralized Mgmt.

Page 23: Splunk What's New - Nov 2014