SlideShare ist ein Scribd-Unternehmen logo
1 von 31
Downloaden Sie, um offline zu lesen
Copyright	
  ©	
  2014	
  Splunk	
  Inc.	
  
Bernie	
  Macias	
  
Applied	
  Architect,	
  Nordstrom	
  
Mobile	
  POS,	
  DevOps	
  
and	
  the	
  Role	
  of	
  
Splunk	
  
Disclaimer	
  
2	
  
During	
  the	
  course	
  of	
  this	
  presentaIon,	
  we	
  may	
  make	
  forward-­‐looking	
  statements	
  regarding	
  future	
  events	
  or	
  the	
  
expected	
  performance	
  of	
  the	
  company.	
  We	
  cauIon	
  you	
  that	
  such	
  statements	
  reflect	
  our	
  current	
  expectaIons	
  and	
  
esImates	
  based	
  on	
  factors	
  currently	
  known	
  to	
  us	
  and	
  that	
  actual	
  events	
  or	
  results	
  could	
  differ	
  materially.	
  For	
  
important	
  factors	
  that	
  may	
  cause	
  actual	
  results	
  to	
  differ	
  from	
  those	
  contained	
  in	
  our	
  forward-­‐looking	
  statements,	
  
please	
  review	
  our	
  filings	
  with	
  the	
  SEC.	
  The	
  forward-­‐looking	
  statements	
  made	
  in	
  the	
  this	
  presentaIon	
  are	
  being	
  made	
  as	
  
of	
  the	
  Ime	
  and	
  date	
  of	
  its	
  live	
  presentaIon.	
  If	
  reviewed	
  aTer	
  its	
  live	
  presentaIon,	
  this	
  presentaIon	
  may	
  not	
  contain	
  
current	
  or	
  accurate	
  informaIon.	
  We	
  do	
  not	
  assume	
  any	
  obligaIon	
  to	
  update	
  any	
  forward-­‐looking	
  statements	
  we	
  may	
  
make.	
  In	
  addiIon,	
  any	
  informaIon	
  about	
  our	
  roadmap	
  outlines	
  our	
  general	
  product	
  direcIon	
  and	
  is	
  subject	
  to	
  change	
  
at	
  any	
  Ime	
  without	
  noIce.	
  It	
  is	
  for	
  informaIonal	
  purposes	
  only,	
  and	
  shall	
  not	
  be	
  incorporated	
  into	
  any	
  contract	
  or	
  
other	
  commitment.	
  Splunk	
  undertakes	
  no	
  obligaIon	
  either	
  to	
  develop	
  the	
  features	
  or	
  funcIonality	
  described	
  or	
  to	
  
include	
  any	
  such	
  feature	
  or	
  funcIonality	
  in	
  a	
  future	
  release.	
  
Who	
  Am	
  I?	
  
!   Current	
  PosiIon:	
  1+	
  years	
  
–  Applied	
  Architect	
  
!   Past	
  Experience:	
  Since	
  2005	
  
–  Tech	
  support,	
  Windows	
  system	
  admin,	
  windows	
  
system	
  engineer,	
  system	
  architect,	
  Unix	
  analyst	
  
! Splunk	
  Experience:	
  3+	
  years	
  
–  Deployed	
  approved	
  Splunk	
  architecture	
  at	
  Capital	
  One	
  	
  
–  Started	
  the	
  Splunk>	
  Sea^le	
  user	
  group	
  
!   Other	
  Tech	
  Interests:	
  Ongoing	
  
–  Python,	
  Django,	
  Data	
  visualizaIon	
  (d3.js),	
  Open	
  Stack	
  
• 3	
  
Agenda	
  
!   About	
  Nordstrom	
  
!   What s	
  Nordstrom	
  Doing	
  with	
  Splunk?	
  
!   Managing	
  and	
  Scaling	
  Splunk	
  
! DevOps	
  on	
  Splunk	
  	
  
!   What	
  About	
  the	
  Users?	
  (Gecng	
  the	
  Users	
  Involved)	
  
	
  
4	
  
About	
  Nordstrom	
  
!   Founded	
  by	
  John	
  W.	
  Nordstrom	
  in	
  1901	
  
!   Over	
  260	
  stores	
  in	
  US	
  and	
  Canada	
  
! eCommerce:	
  Nordstrom.com,	
  
NordstromRack.com,	
  HauteLook.com	
  
!   65,000	
  employees;	
  over	
  1,000	
  in	
  IT	
  
!   MulIple	
  data	
  centers	
  with	
  an	
  eye	
  on	
  the	
  
cloud	
  or	
  mulI-­‐cloud	
  
! DevOps	
  mission:	
  scale,	
  manage,	
  and	
  
quickly	
  deliver	
  on	
  Nordstrom	
  iniIaIves	
  
• 5	
  
Omni-­‐channel	
  at	
  Nordstrom	
  
Deliver	
  a	
  Seamless	
  Customer	
  Experience	
  
6	
  
Nordstrom	
  Store	
   Nordstrom	
  Online	
  
Nordstrom	
  Rack	
  
Nordstrom	
  Rack	
  Online	
  /
Haute	
  Look	
  
Nordstrom	
  	
  
Omni-­‐Channel	
  
What’s	
  Nordstrom	
  
Doing	
  with	
  Splunk?	
  
Web	
  apps	
   OperaIonal	
  logs,	
  
system	
  logs,	
  Web	
  
logs,	
  Crash	
  logs	
  
Win/Unix	
  
metrics	
  
(2000+	
  servers)	
  
Chef	
  data	
  POS	
  and	
  
Wi-­‐Fi	
  data	
  
NNMi,	
  SCOM,	
  
Gomez	
  
Splunk	
  @	
  Nordstrom	
  
ConsolidaIon	
  of	
  all	
  our	
  machine	
  data	
  for	
  unified	
  visibility	
  
8	
  
Example:	
  Point	
  of	
  Sales	
  (POS)	
  
9	
  
•  New	
  customer	
  experience	
  
•  Faster	
  checkout	
  anywhere	
  in	
  store	
  
•  Small	
  real	
  estate	
  footprint	
  v.	
  
tradiIonal	
  POS	
  
Performance	
  Monitoring	
  of	
  POS	
  Devices	
  
10	
  
11	
  
POS	
  Inventory	
  Mapping	
  
11	
  
Splunk	
  AdopIon	
  Has	
  Been	
  Organic	
  and	
  Viral	
  
•  AgnosIc	
  to	
  technology	
  
•  Index	
  any	
  type	
  of	
  data	
  from	
  any	
  data	
  source	
  
•  Scalable	
  soluIon	
  	
  
SINGLE	
  SOURCE	
  OF	
  
TRUTH	
  
•  Accelerated	
  adopIon	
  with	
  300+	
  users	
  across	
  the	
  organizaIon	
  
•  Dev,	
  App,	
  NW,	
  Ops	
  and	
  global	
  offshore	
  teams	
  create	
  their	
  own	
  data	
  
inputs,	
  reports	
  and	
  dashboards	
  
EASE	
  OF	
  USE	
  
•  Role-­‐based	
  access	
  controls	
  to	
  provide	
  dev	
  teams	
  access	
  to	
  producIon	
  
logs	
  and	
  metrics	
  
•  Flexible	
  reporIng	
  	
  across	
  a	
  variety	
  of	
  use-­‐cases	
  
SECURE	
  &	
  FLEXBILE	
  
PLATFORM	
  
12	
  
AcceleraIng	
  Value	
  by	
  Using	
  Splunk	
  Apps	
  
!   Technology	
  Add-­‐ons:	
  
–  *nix	
  
–  Windows	
  
–  Cisco	
  IOS	
  
–  MicrosoT	
  Exchange	
  
!   Homegrown	
  App	
  
–  Splunk	
  for	
  Gomez	
  
–  Few	
  Django	
  Apps	
  
! Splunk	
  for	
  simple	
  XML	
  	
  
13	
  
Secng	
  the	
  Stage	
  for	
  
Managing	
  and	
  
Scaling	
  Splunk	
  
14	
  
How	
  Many	
  of	
  You	
  Would	
  Consider	
  Yourself…?	
  
15	
  
SYS	
  ADMIN	
   SPLUNK	
  ADMIN	
   SPLUNK	
  USER	
  
Distributed	
  Splunk	
  gets	
  complex	
  
16	
  
17	
  
All-in-One
Search
Indexers
FW
HFWSYSLOG
TCP
HTTP
FW
HFW
Pool
Storage
Search
Pool #1
Search
Pool #2
GA
Indexers
Pool
Storage
Secure
Indexers
Search
Pool #3
Pool
Storage
Indexers Indexers
FW
HFW
Managed Per
Available Zone
Forwarder/Agents
only send data to
Zone Specific
indexers
TOPOLOGIES	
  
OF	
  SPLUNK	
  
InstallaIon	
  and	
  ConfiguraIon	
  	
  
18	
  
Using	
  DevOps	
  
Principles	
  to	
  
Manage	
  Splunk	
  	
  
19	
  
Why	
  Not	
  DevOps	
  for	
  Splunk?	
  
20	
  
DevOps	
  Tools	
  
!   Config	
  Management	
  Plauorm	
  
!   Source	
  Control	
  
!   Dev	
  Environments	
  
! ConInuous	
  IntegraIon	
  
Tools	
  for	
  building	
  tools	
  spanning:	
  
21	
  
How	
  Many	
  Splunk	
  Components?	
  
!   NFS	
  Server	
  –	
  shared	
  search	
  head	
  storage	
  
!   Search	
  Head	
  –	
  searches	
  indexed	
  data	
  
!   Indexer	
  –	
  parsing	
  and	
  indexing	
  data	
  
!   Deployment	
  Server	
  –	
  App	
  Deployment	
  
!   Intermediate	
  forwarder	
  –	
  receiving	
  or	
  collect	
  
data	
  where	
  forwarder	
  cannot	
  be	
  install	
  directly	
  
!   Master	
  –	
  Cluster	
  and	
  ReplicaIon	
  Master	
  
!   Universal	
  Forwarder	
  –	
  local	
  collecIon	
  agent	
  
22	
  
nord_chef-­‐splunk:	
  	
  
a	
  CHEF	
  cookbook	
  
!   Ruby	
  code	
  that	
  models	
  distributed	
  Splunk	
  
(search,	
  index,	
  etc)	
  
!   Reuse	
  able	
  code	
  defined	
  by	
  a^ributes	
  
CONSISTENT,	
  SCALABLE,	
  REPEATABLE	
  
23	
  
What's	
  Automagically	
  Configured?	
  
•  Splunk	
  SSL	
  
•  TCP	
  and	
  UDP	
  listen	
  Ports	
  
•  Set	
  system	
  local	
  configs	
  
•  Distributed	
  Search	
  
•  Mounted	
  Bundles	
  
•  Indexers	
  aware	
  of	
  all	
  search	
  
pools	
  
•  And	
  More	
  
•  Move	
  default	
  DB	
  locaIons	
  
•  Add	
  user	
  and	
  change	
  Admin	
  
•  Splunk	
  servers	
  share	
  Secret	
  
•  Search	
  pooling	
  
•  Set	
  Deployment	
  Server	
  
•  Search	
  Heads	
  aware	
  of	
  Indexers	
  
•  Drives	
  configured	
  
•  Web	
  server	
  
24	
  
What	
  About	
  	
  
the	
  Users?	
  
25	
  
What	
  Can	
  Users	
  Do	
  In	
  Splunk?	
  
•  Create	
  private	
  objects	
  
•  Cannot	
  create/edit	
  global	
  
objects	
  directly	
  in	
  Splunk	
  
•  Dashboards?	
  Extracts?	
  Saved	
  
searches?	
  
26	
  
USE	
  GIT!	
  
CreaIng	
  a	
  Custom	
  GIT	
  CLI	
  
•  Downloaded	
  Web	
  Terminal	
  
for	
  Splunk	
  App	
  	
  
•  Installed	
  on	
  limited	
  
capability	
  search	
  head	
  
•  Customized	
  for	
  GIT	
  CLI	
  	
  
27	
  
Sample	
  Deployment	
  Workflow	
  
28	
  
Insert	
  Image(s)	
  
29	
  
Splunk	
  is	
  a	
  Journey	
  
What’s	
  Next?	
  
Special	
  Offer:	
  Try	
  Splunk	
  MINT	
  Express	
  for	
  Free!	
  
Splunk	
  MINT	
  offers	
  a	
  fast	
  path	
  to	
  mobile	
  intelligence.	
  How	
  fast?	
  	
  
Find	
  out	
  with	
  a	
  6-­‐month	
  trial*	
  
•  Register	
  for	
  your	
  free	
  trial:	
  
h^p://mint.splunk.com/conf2014offer	
  
•  Download	
  the	
  Splunk	
  MINT	
  SDKs	
  
•  Add	
  the	
  Splunk	
  MINT	
  line	
  of	
  SDK	
  code	
  
and	
  publish**	
  	
  
•  Start	
  gecng	
  digital	
  intelligence	
  at	
  your	
  
fingerIps!	
  
	
  
*Offer	
  valid	
  for	
  .conf2014	
  a5endees	
  and	
  coworkers	
  of	
  a5endees	
  only.	
  
**Trial	
  allows	
  monitoring	
  of	
  up	
  to	
  750,000	
  monthly	
  acDve	
  users	
  (MAUs).	
  
	
  
30	
  
THANK	
  YOU	
  
31	
  

Weitere ähnliche Inhalte

Was ist angesagt?

Machine Data 101
Machine Data 101Machine Data 101
Machine Data 101
Splunk
 

Was ist angesagt? (20)

SplunkLive! - Splunk for IT Operations
SplunkLive! - Splunk for IT OperationsSplunkLive! - Splunk for IT Operations
SplunkLive! - Splunk for IT Operations
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
How to Design, Build and Map IT and Business Services in Splunk
How to Design, Build and Map IT and Business Services in SplunkHow to Design, Build and Map IT and Business Services in Splunk
How to Design, Build and Map IT and Business Services in Splunk
 
Splunk for Developers
Splunk for DevelopersSplunk for Developers
Splunk for Developers
 
Machine Learning and Analytics Breakout Session
Machine Learning and Analytics Breakout SessionMachine Learning and Analytics Breakout Session
Machine Learning and Analytics Breakout Session
 
Herbalife Customer Presentation
Herbalife Customer PresentationHerbalife Customer Presentation
Herbalife Customer Presentation
 
Devops Powered by Splunk
Devops Powered by SplunkDevops Powered by Splunk
Devops Powered by Splunk
 
Getting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Enterprise Hands-OnGetting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Enterprise Hands-On
 
Splunk IT Service Intelligence
Splunk IT Service IntelligenceSplunk IT Service Intelligence
Splunk IT Service Intelligence
 
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Splunk Webinar: IT Operations Demo für Troubleshooting & DashboardingSplunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
 
Splunk at Scotiabank
Splunk at ScotiabankSplunk at Scotiabank
Splunk at Scotiabank
 
IT Service Intelligence Hands On Breakout Session
IT Service Intelligence Hands On Breakout SessionIT Service Intelligence Hands On Breakout Session
IT Service Intelligence Hands On Breakout Session
 
Taking Splunk to the Next Level - Architecture
Taking Splunk to the Next Level - ArchitectureTaking Splunk to the Next Level - Architecture
Taking Splunk to the Next Level - Architecture
 
SplunkLive! Austin Customer Presentation - Xerox
SplunkLive! Austin Customer Presentation - XeroxSplunkLive! Austin Customer Presentation - Xerox
SplunkLive! Austin Customer Presentation - Xerox
 
Splunk Ninjas: New Features and Search Dojo
Splunk Ninjas: New Features and Search DojoSplunk Ninjas: New Features and Search Dojo
Splunk Ninjas: New Features and Search Dojo
 
SplunkLive! Paris 2018: Splunk Overview
SplunkLive! Paris 2018: Splunk OverviewSplunkLive! Paris 2018: Splunk Overview
SplunkLive! Paris 2018: Splunk Overview
 
Getting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Enterprise Hands-OnGetting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Enterprise Hands-On
 
SplunkLive! Tampa: Splunk for Security - Hands-On Session
SplunkLive! Tampa: Splunk for Security - Hands-On SessionSplunkLive! Tampa: Splunk for Security - Hands-On Session
SplunkLive! Tampa: Splunk for Security - Hands-On Session
 
SplunkLive! - Splunk for IT Operations
SplunkLive! - Splunk for IT OperationsSplunkLive! - Splunk for IT Operations
SplunkLive! - Splunk for IT Operations
 
Machine Data 101
Machine Data 101Machine Data 101
Machine Data 101
 

Andere mochten auch

inner city farming
inner city farminginner city farming
inner city farming
Iza Grek
 
Extending_HR_Self-Service_To_Unconnected_Workers_Netkey_White_Paper[1]
Extending_HR_Self-Service_To_Unconnected_Workers_Netkey_White_Paper[1]Extending_HR_Self-Service_To_Unconnected_Workers_Netkey_White_Paper[1]
Extending_HR_Self-Service_To_Unconnected_Workers_Netkey_White_Paper[1]
Linda Haelsen
 
ゼロからつくるWord pressテーマ第7回
ゼロからつくるWord pressテーマ第7回ゼロからつくるWord pressテーマ第7回
ゼロからつくるWord pressテーマ第7回
Hitsuji
 

Andere mochten auch (20)

Tennis Clinics in hyderabad
Tennis Clinics in hyderabadTennis Clinics in hyderabad
Tennis Clinics in hyderabad
 
January 31 (child rights)
January 31 (child rights)January 31 (child rights)
January 31 (child rights)
 
inner city farming
inner city farminginner city farming
inner city farming
 
UDOT Motor Carrier Division Report
UDOT Motor Carrier Division Report UDOT Motor Carrier Division Report
UDOT Motor Carrier Division Report
 
Extending_HR_Self-Service_To_Unconnected_Workers_Netkey_White_Paper[1]
Extending_HR_Self-Service_To_Unconnected_Workers_Netkey_White_Paper[1]Extending_HR_Self-Service_To_Unconnected_Workers_Netkey_White_Paper[1]
Extending_HR_Self-Service_To_Unconnected_Workers_Netkey_White_Paper[1]
 
ENSAYO Capitalizacion De Interes.
ENSAYO Capitalizacion De Interes.ENSAYO Capitalizacion De Interes.
ENSAYO Capitalizacion De Interes.
 
Simple Way for MySQL to NoSQL
Simple Way for MySQL to NoSQLSimple Way for MySQL to NoSQL
Simple Way for MySQL to NoSQL
 
What Yoda Can Teach Us about Collaboration
What Yoda Can Teach Us about CollaborationWhat Yoda Can Teach Us about Collaboration
What Yoda Can Teach Us about Collaboration
 
ゼロからつくるWord pressテーマ第7回
ゼロからつくるWord pressテーマ第7回ゼロからつくるWord pressテーマ第7回
ゼロからつくるWord pressテーマ第7回
 
CISSP new 2015 domain structure review (RUS)
CISSP new  2015 domain structure review (RUS)CISSP new  2015 domain structure review (RUS)
CISSP new 2015 domain structure review (RUS)
 
SOC and Enterprise Security. Аспекты внедрения. Декабрь 2012
SOC and Enterprise Security. Аспекты внедрения. Декабрь 2012SOC and Enterprise Security. Аспекты внедрения. Декабрь 2012
SOC and Enterprise Security. Аспекты внедрения. Декабрь 2012
 
IT-Task. Максим Степченков. "Примеры использования SIEM системы для решения р...
IT-Task. Максим Степченков. "Примеры использования SIEM системы для решения р...IT-Task. Максим Степченков. "Примеры использования SIEM системы для решения р...
IT-Task. Максим Степченков. "Примеры использования SIEM системы для решения р...
 
Internal Threats in Kazakhstan. Cyber crime. How to defend. Cyber Security
Internal Threats in Kazakhstan. Cyber crime. How to defend. Cyber SecurityInternal Threats in Kazakhstan. Cyber crime. How to defend. Cyber Security
Internal Threats in Kazakhstan. Cyber crime. How to defend. Cyber Security
 
Анализ реального взлома нефтяной компании с Ближнего Востока
Анализ реального взлома нефтяной компании с Ближнего Востока Анализ реального взлома нефтяной компании с Ближнего Востока
Анализ реального взлома нефтяной компании с Ближнего Востока
 
SIEM-система как основа для выявления компьютерных атак несигнатурными методами
SIEM-система как основа для выявления компьютерных атак несигнатурными методамиSIEM-система как основа для выявления компьютерных атак несигнатурными методами
SIEM-система как основа для выявления компьютерных атак несигнатурными методами
 
Мониторинг событий информационной безопасности на базе решений HP ArcSight ES...
Мониторинг событий информационной безопасности на базе решений HP ArcSight ES...Мониторинг событий информационной безопасности на базе решений HP ArcSight ES...
Мониторинг событий информационной безопасности на базе решений HP ArcSight ES...
 
9th grade english unit 9.4 its a matter of opinion week four
9th grade english unit 9.4 its a matter of opinion week four9th grade english unit 9.4 its a matter of opinion week four
9th grade english unit 9.4 its a matter of opinion week four
 
Operational Analytics on Splunk
Operational Analytics on SplunkOperational Analytics on Splunk
Operational Analytics on Splunk
 
Solar inView - Безопасность под контролем
Solar inView - Безопасность под контролемSolar inView - Безопасность под контролем
Solar inView - Безопасность под контролем
 
Splunk live мегафон 2015 - v4
Splunk live мегафон 2015 - v4Splunk live мегафон 2015 - v4
Splunk live мегафон 2015 - v4
 

Ähnlich wie Splunk in Nordstrom: IT Operations

Ähnlich wie Splunk in Nordstrom: IT Operations (20)

Getting Started with Splunk Enterprise Hands-On Breakout Session
Getting Started with Splunk Enterprise Hands-On Breakout SessionGetting Started with Splunk Enterprise Hands-On Breakout Session
Getting Started with Splunk Enterprise Hands-On Breakout Session
 
Getting Started with Splunk Breakout Session
Getting Started with Splunk Breakout SessionGetting Started with Splunk Breakout Session
Getting Started with Splunk Breakout Session
 
DevOps and Splunk
DevOps and SplunkDevOps and Splunk
DevOps and Splunk
 
Biotechne + Searchstax webinar presentation
Biotechne + Searchstax webinar presentationBiotechne + Searchstax webinar presentation
Biotechne + Searchstax webinar presentation
 
Getting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Enterprise Hands-OnGetting Started with Splunk Enterprise Hands-On
Getting Started with Splunk Enterprise Hands-On
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Splunk Cloud
Splunk CloudSplunk Cloud
Splunk Cloud
 
A Lap Around Developer Awesomeness in Splunk 6.3
A Lap Around Developer Awesomeness in Splunk 6.3A Lap Around Developer Awesomeness in Splunk 6.3
A Lap Around Developer Awesomeness in Splunk 6.3
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
SplunkLive! Amsterdam 2015 Breakout - Getting Started with Splunk
SplunkLive! Amsterdam 2015 Breakout - Getting Started with SplunkSplunkLive! Amsterdam 2015 Breakout - Getting Started with Splunk
SplunkLive! Amsterdam 2015 Breakout - Getting Started with Splunk
 
Getting Started with Splunk Enterprises
Getting Started with Splunk EnterprisesGetting Started with Splunk Enterprises
Getting Started with Splunk Enterprises
 
Getting Started with Splunk Enterprise
Getting Started with Splunk EnterpriseGetting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
 
Gartner Catalyst 2015 Customer Presentation - MindTouch
Gartner Catalyst 2015 Customer Presentation - MindTouchGartner Catalyst 2015 Customer Presentation - MindTouch
Gartner Catalyst 2015 Customer Presentation - MindTouch
 
Getting Started with Splunk (Hands-On)
Getting Started with Splunk (Hands-On) Getting Started with Splunk (Hands-On)
Getting Started with Splunk (Hands-On)
 
Getting Started with Splunk Breakout Session
Getting Started with Splunk Breakout SessionGetting Started with Splunk Breakout Session
Getting Started with Splunk Breakout Session
 
6.4 whats new
6.4 whats new6.4 whats new
6.4 whats new
 
Splunk Sales Presentation Imagemaker 2014
Splunk Sales Presentation Imagemaker 2014Splunk Sales Presentation Imagemaker 2014
Splunk Sales Presentation Imagemaker 2014
 
Liberate your Application Logging
Liberate your Application LoggingLiberate your Application Logging
Liberate your Application Logging
 

Mehr von Timur Bagirov

Splunk Check Point технологические партнеры
Splunk Check Point технологические партнерыSplunk Check Point технологические партнеры
Splunk Check Point технологические партнеры
Timur Bagirov
 

Mehr von Timur Bagirov (12)

презентация Clever data конференция splunk октябрь 2016 v2
презентация Clever data конференция splunk октябрь 2016 v2презентация Clever data конференция splunk октябрь 2016 v2
презентация Clever data конференция splunk октябрь 2016 v2
 
Splunk for NAC in Yandex
Splunk for NAC in YandexSplunk for NAC in Yandex
Splunk for NAC in Yandex
 
Tinkoff splunk 2016
Tinkoff splunk 2016Tinkoff splunk 2016
Tinkoff splunk 2016
 
Splunk sberbank cib
Splunk sberbank cibSplunk sberbank cib
Splunk sberbank cib
 
11 nov splunk_conf_мониторинг доступности услуг в мегафон
11 nov splunk_conf_мониторинг доступности услуг в мегафон11 nov splunk_conf_мониторинг доступности услуг в мегафон
11 nov splunk_conf_мониторинг доступности услуг в мегафон
 
Splunk in Otto: Business Analytics
Splunk in Otto: Business Analytics Splunk in Otto: Business Analytics
Splunk in Otto: Business Analytics
 
Splunk in Staples: IT Operations
Splunk in Staples: IT OperationsSplunk in Staples: IT Operations
Splunk in Staples: IT Operations
 
Splunk in John Lewis: Business Analytics
Splunk in John Lewis: Business AnalyticsSplunk in John Lewis: Business Analytics
Splunk in John Lewis: Business Analytics
 
Splunk Check Point технологические партнеры
Splunk Check Point технологические партнерыSplunk Check Point технологические партнеры
Splunk Check Point технологические партнеры
 
Доступная безопасность: смесь инструментов с данными. Советы архитектора Oracle
Доступная безопасность: смесь инструментов с данными. Советы архитектора OracleДоступная безопасность: смесь инструментов с данными. Советы архитектора Oracle
Доступная безопасность: смесь инструментов с данными. Советы архитектора Oracle
 
Немного о Splunk в Yota
Немного о Splunk в YotaНемного о Splunk в Yota
Немного о Splunk в Yota
 
Splunk company overview april. 2015
Splunk company overview   april. 2015Splunk company overview   april. 2015
Splunk company overview april. 2015
 

Kürzlich hochgeladen

call Now 9811711561 Cash Payment乂 Call Girls in Dwarka
call Now 9811711561 Cash Payment乂 Call Girls in Dwarkacall Now 9811711561 Cash Payment乂 Call Girls in Dwarka
call Now 9811711561 Cash Payment乂 Call Girls in Dwarka
vikas rana
 
Indian Call Girl In Dubai #$# O5634O3O18 #$# Dubai Call Girl
Indian Call Girl In Dubai #$# O5634O3O18 #$# Dubai Call GirlIndian Call Girl In Dubai #$# O5634O3O18 #$# Dubai Call Girl
Indian Call Girl In Dubai #$# O5634O3O18 #$# Dubai Call Girl
AroojKhan71
 

Kürzlich hochgeladen (8)

The 15 Minute Breakdown: 2024 Beauty Marketing Study
The 15 Minute Breakdown: 2024 Beauty Marketing StudyThe 15 Minute Breakdown: 2024 Beauty Marketing Study
The 15 Minute Breakdown: 2024 Beauty Marketing Study
 
Top Rated Pune Call Girls Talegaon Dabhade ⟟ 6297143586 ⟟ Call Me For Genuin...
Top Rated  Pune Call Girls Talegaon Dabhade ⟟ 6297143586 ⟟ Call Me For Genuin...Top Rated  Pune Call Girls Talegaon Dabhade ⟟ 6297143586 ⟟ Call Me For Genuin...
Top Rated Pune Call Girls Talegaon Dabhade ⟟ 6297143586 ⟟ Call Me For Genuin...
 
Digital Business Strategy - How Food Brands Compete Through Technology
Digital Business Strategy - How Food Brands Compete Through TechnologyDigital Business Strategy - How Food Brands Compete Through Technology
Digital Business Strategy - How Food Brands Compete Through Technology
 
Film= Dubai Call Girls O525547819 Call Girls Dubai Whsatapp
Film= Dubai Call Girls O525547819 Call Girls Dubai WhsatappFilm= Dubai Call Girls O525547819 Call Girls Dubai Whsatapp
Film= Dubai Call Girls O525547819 Call Girls Dubai Whsatapp
 
The 15 Minute Breakdown: 2024 Beauty Marketing Study
The 15 Minute Breakdown: 2024 Beauty Marketing StudyThe 15 Minute Breakdown: 2024 Beauty Marketing Study
The 15 Minute Breakdown: 2024 Beauty Marketing Study
 
call Now 9811711561 Cash Payment乂 Call Girls in Dwarka
call Now 9811711561 Cash Payment乂 Call Girls in Dwarkacall Now 9811711561 Cash Payment乂 Call Girls in Dwarka
call Now 9811711561 Cash Payment乂 Call Girls in Dwarka
 
Call Girls In Dev kunj Delhi 9654467111 Short 1500 Night 6000
Call Girls In Dev kunj Delhi 9654467111 Short 1500 Night 6000Call Girls In Dev kunj Delhi 9654467111 Short 1500 Night 6000
Call Girls In Dev kunj Delhi 9654467111 Short 1500 Night 6000
 
Indian Call Girl In Dubai #$# O5634O3O18 #$# Dubai Call Girl
Indian Call Girl In Dubai #$# O5634O3O18 #$# Dubai Call GirlIndian Call Girl In Dubai #$# O5634O3O18 #$# Dubai Call Girl
Indian Call Girl In Dubai #$# O5634O3O18 #$# Dubai Call Girl
 

Splunk in Nordstrom: IT Operations

  • 1. Copyright  ©  2014  Splunk  Inc.   Bernie  Macias   Applied  Architect,  Nordstrom   Mobile  POS,  DevOps   and  the  Role  of   Splunk  
  • 2. Disclaimer   2   During  the  course  of  this  presentaIon,  we  may  make  forward-­‐looking  statements  regarding  future  events  or  the   expected  performance  of  the  company.  We  cauIon  you  that  such  statements  reflect  our  current  expectaIons  and   esImates  based  on  factors  currently  known  to  us  and  that  actual  events  or  results  could  differ  materially.  For   important  factors  that  may  cause  actual  results  to  differ  from  those  contained  in  our  forward-­‐looking  statements,   please  review  our  filings  with  the  SEC.  The  forward-­‐looking  statements  made  in  the  this  presentaIon  are  being  made  as   of  the  Ime  and  date  of  its  live  presentaIon.  If  reviewed  aTer  its  live  presentaIon,  this  presentaIon  may  not  contain   current  or  accurate  informaIon.  We  do  not  assume  any  obligaIon  to  update  any  forward-­‐looking  statements  we  may   make.  In  addiIon,  any  informaIon  about  our  roadmap  outlines  our  general  product  direcIon  and  is  subject  to  change   at  any  Ime  without  noIce.  It  is  for  informaIonal  purposes  only,  and  shall  not  be  incorporated  into  any  contract  or   other  commitment.  Splunk  undertakes  no  obligaIon  either  to  develop  the  features  or  funcIonality  described  or  to   include  any  such  feature  or  funcIonality  in  a  future  release.  
  • 3. Who  Am  I?   !   Current  PosiIon:  1+  years   –  Applied  Architect   !   Past  Experience:  Since  2005   –  Tech  support,  Windows  system  admin,  windows   system  engineer,  system  architect,  Unix  analyst   ! Splunk  Experience:  3+  years   –  Deployed  approved  Splunk  architecture  at  Capital  One     –  Started  the  Splunk>  Sea^le  user  group   !   Other  Tech  Interests:  Ongoing   –  Python,  Django,  Data  visualizaIon  (d3.js),  Open  Stack   • 3  
  • 4. Agenda   !   About  Nordstrom   !   What s  Nordstrom  Doing  with  Splunk?   !   Managing  and  Scaling  Splunk   ! DevOps  on  Splunk     !   What  About  the  Users?  (Gecng  the  Users  Involved)     4  
  • 5. About  Nordstrom   !   Founded  by  John  W.  Nordstrom  in  1901   !   Over  260  stores  in  US  and  Canada   ! eCommerce:  Nordstrom.com,   NordstromRack.com,  HauteLook.com   !   65,000  employees;  over  1,000  in  IT   !   MulIple  data  centers  with  an  eye  on  the   cloud  or  mulI-­‐cloud   ! DevOps  mission:  scale,  manage,  and   quickly  deliver  on  Nordstrom  iniIaIves   • 5  
  • 6. Omni-­‐channel  at  Nordstrom   Deliver  a  Seamless  Customer  Experience   6   Nordstrom  Store   Nordstrom  Online   Nordstrom  Rack   Nordstrom  Rack  Online  / Haute  Look   Nordstrom     Omni-­‐Channel  
  • 7. What’s  Nordstrom   Doing  with  Splunk?  
  • 8. Web  apps   OperaIonal  logs,   system  logs,  Web   logs,  Crash  logs   Win/Unix   metrics   (2000+  servers)   Chef  data  POS  and   Wi-­‐Fi  data   NNMi,  SCOM,   Gomez   Splunk  @  Nordstrom   ConsolidaIon  of  all  our  machine  data  for  unified  visibility   8  
  • 9. Example:  Point  of  Sales  (POS)   9   •  New  customer  experience   •  Faster  checkout  anywhere  in  store   •  Small  real  estate  footprint  v.   tradiIonal  POS  
  • 10. Performance  Monitoring  of  POS  Devices   10  
  • 11. 11   POS  Inventory  Mapping   11  
  • 12. Splunk  AdopIon  Has  Been  Organic  and  Viral   •  AgnosIc  to  technology   •  Index  any  type  of  data  from  any  data  source   •  Scalable  soluIon     SINGLE  SOURCE  OF   TRUTH   •  Accelerated  adopIon  with  300+  users  across  the  organizaIon   •  Dev,  App,  NW,  Ops  and  global  offshore  teams  create  their  own  data   inputs,  reports  and  dashboards   EASE  OF  USE   •  Role-­‐based  access  controls  to  provide  dev  teams  access  to  producIon   logs  and  metrics   •  Flexible  reporIng    across  a  variety  of  use-­‐cases   SECURE  &  FLEXBILE   PLATFORM   12  
  • 13. AcceleraIng  Value  by  Using  Splunk  Apps   !   Technology  Add-­‐ons:   –  *nix   –  Windows   –  Cisco  IOS   –  MicrosoT  Exchange   !   Homegrown  App   –  Splunk  for  Gomez   –  Few  Django  Apps   ! Splunk  for  simple  XML     13  
  • 14. Secng  the  Stage  for   Managing  and   Scaling  Splunk   14  
  • 15. How  Many  of  You  Would  Consider  Yourself…?   15   SYS  ADMIN   SPLUNK  ADMIN   SPLUNK  USER  
  • 16. Distributed  Splunk  gets  complex   16  
  • 17. 17   All-in-One Search Indexers FW HFWSYSLOG TCP HTTP FW HFW Pool Storage Search Pool #1 Search Pool #2 GA Indexers Pool Storage Secure Indexers Search Pool #3 Pool Storage Indexers Indexers FW HFW Managed Per Available Zone Forwarder/Agents only send data to Zone Specific indexers TOPOLOGIES   OF  SPLUNK  
  • 19. Using  DevOps   Principles  to   Manage  Splunk     19  
  • 20. Why  Not  DevOps  for  Splunk?   20  
  • 21. DevOps  Tools   !   Config  Management  Plauorm   !   Source  Control   !   Dev  Environments   ! ConInuous  IntegraIon   Tools  for  building  tools  spanning:   21  
  • 22. How  Many  Splunk  Components?   !   NFS  Server  –  shared  search  head  storage   !   Search  Head  –  searches  indexed  data   !   Indexer  –  parsing  and  indexing  data   !   Deployment  Server  –  App  Deployment   !   Intermediate  forwarder  –  receiving  or  collect   data  where  forwarder  cannot  be  install  directly   !   Master  –  Cluster  and  ReplicaIon  Master   !   Universal  Forwarder  –  local  collecIon  agent   22  
  • 23. nord_chef-­‐splunk:     a  CHEF  cookbook   !   Ruby  code  that  models  distributed  Splunk   (search,  index,  etc)   !   Reuse  able  code  defined  by  a^ributes   CONSISTENT,  SCALABLE,  REPEATABLE   23  
  • 24. What's  Automagically  Configured?   •  Splunk  SSL   •  TCP  and  UDP  listen  Ports   •  Set  system  local  configs   •  Distributed  Search   •  Mounted  Bundles   •  Indexers  aware  of  all  search   pools   •  And  More   •  Move  default  DB  locaIons   •  Add  user  and  change  Admin   •  Splunk  servers  share  Secret   •  Search  pooling   •  Set  Deployment  Server   •  Search  Heads  aware  of  Indexers   •  Drives  configured   •  Web  server   24  
  • 25. What  About     the  Users?   25  
  • 26. What  Can  Users  Do  In  Splunk?   •  Create  private  objects   •  Cannot  create/edit  global   objects  directly  in  Splunk   •  Dashboards?  Extracts?  Saved   searches?   26   USE  GIT!  
  • 27. CreaIng  a  Custom  GIT  CLI   •  Downloaded  Web  Terminal   for  Splunk  App     •  Installed  on  limited   capability  search  head   •  Customized  for  GIT  CLI     27  
  • 28. Sample  Deployment  Workflow   28   Insert  Image(s)  
  • 29. 29   Splunk  is  a  Journey   What’s  Next?  
  • 30. Special  Offer:  Try  Splunk  MINT  Express  for  Free!   Splunk  MINT  offers  a  fast  path  to  mobile  intelligence.  How  fast?     Find  out  with  a  6-­‐month  trial*   •  Register  for  your  free  trial:   h^p://mint.splunk.com/conf2014offer   •  Download  the  Splunk  MINT  SDKs   •  Add  the  Splunk  MINT  line  of  SDK  code   and  publish**     •  Start  gecng  digital  intelligence  at  your   fingerIps!     *Offer  valid  for  .conf2014  a5endees  and  coworkers  of  a5endees  only.   **Trial  allows  monitoring  of  up  to  750,000  monthly  acDve  users  (MAUs).     30