Technical*Deep*Dive* SplunkCloud€¦ · Cloud*and*Your*Business* 4! Apps and data moving to cloud...

Preview:

Citation preview

Copyright  ©  2015  Splunk  Inc.  

Technical  Deep  Dive  Splunk  Cloud  

Disclaimer  

2  

During  the  course  of  this  presentaAon,  we  may  make  forward  looking  statements  regarding  future  events  or  the  expected  performance  of  the  company.  We  cauAon  you  that  such  statements  reflect  our  current  expectaAons  and  esAmates  based  on  factors  currently  known  to  us  and  that  actual  events  or  results  could  differ  materially.  For  important  factors  that  may  cause  actual  results  to  differ  from  those  contained  in  our  forward-­‐looking  statements,  please  review  our  filings  with  the  SEC.  The  forward-­‐looking  statements  made  in  the  this  presentaAon  are  being  made  as  of  the  Ame  and  date  of  its  live  presentaAon.  If  reviewed  aMer  its   live   presentaAon,   this   presentaAon   may   not   contain   current   or   accurate   informaAon.   We   do   not  assume  any  obligaAon  to  update  any  forward  looking  statements  we  may  make.      In  addiAon,  any  informaAon  about  our  roadmap  outlines  our  general  product  direcAon  and  is  subject  to  change  at  any  Ame  without  noAce.   It   is   for   informaAonal  purposes  only  and  shall  not,  be   incorporated  into  any  contract  or  other  commitment.  Splunk  undertakes  no  obligaAon  either  to  develop  the  features  or  funcAonality  described  or  to  include  any  such  feature  or  funcAonality  in  a  future  release.  

Agenda  !   IntroducAons  !   Splunk  Cloud  Overview  !   Design  Principles  !   High  Performance  &  High  Availability  !   Security  from  the  Ground  Up  !   OperaAonal  Excellence  

3  

Cloud  and  Your  Business  

4!

Apps and data moving to cloud

Cloud data can remain in cloud

Desire to consume Splunk

as a service

5  

Splunk’s  PorZolio  for  Cloud  

•  App  for  AWS  •  App  for  ServiceNow  

•  More  SaaS  apps…  

Apps  

•  Splunk  Enterprise  as  a  service  

SaaS  

 •  Analyze  data  in  EMR/S3  with  Hunk  

So(ware  

What  is  Splunk  Cloud:  Where’s  Waldo?  

6  

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Okay,  a  Hint    

7  

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Did  You  Spot  It?    

8  

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

9  

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Splunk  Cloud  is  Splunk  Enterprise  as  a  Service  

 Available  Globally  in  AWS  

 

10  

Global  AWS  Regions  &  GovCloud  

11  �  

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Splunk  Cloud  is  Splunk  Enterprise  as  a  Service  

 Available  Globally  in  AWS  

 

Splunk  Cloud  Design  Principles  

12  

Instant   Secure   Reliable   Hybrid  

13  

Search  Heads  

Indexers  

Clustering  &  License  Managers  

Stacks  

14  

Search  Heads  

Indexers  

Clustering  &  License  Managers  

EC2  Instance  

Stacks  

15  

Single  Tenant  Customer  Stack  

Stacks  

16  

Network  IsolaAon  

EncrypAon  

Non-­‐repudiable  Logging  

Secure  coding  pracAces  

Secure  By  Default  

17  

18  

19  

Replicated  Data  

Replicated  Configs  

Backups  

Redundant  systems  

Durable  

20  

Automated  

21  

22  

23  

24  

“Skynet”  

Copyright  ©  2015  Splunk  Inc.  

High  Availability  

High  Availability  

26  

27  

Search  Head  

High  Availability  

28  

Search  Head  3  Search  Head  2  Search  Head  1  

High  Availability  

29  

Search  Head  3  Search  Head  2  Search  Head  1  

High  Availability  

30  

Search  Head  3  Search  Head  2  Search  Head  1  

Load  Balancer  

High  Availability  

31  

Search  Head  3  Search  Head  2  Search  Head  1  

Load  Balancer  

High  Availability  

32  

Search  Head  3  Search  Head  2  Search  Head  1  

Load  Balancer  

High  Availability  

33  

Search  Head  3  Search  Head  2  Search  Head  1  

Load  Balancer  

High  Availability  

High  Availability  

34  

3  Indexers  

High  Availability  

35  

Indexer  1   Indexer  2   Indexer  3  

36  

Searchable  Bucket  

Indexer  1   Indexer  2   Indexer  3  

High  Availability  

37  

Searchable  Bucket  

Indexer  1   Indexer  2   Indexer  3  

Searchable  Bucket  

High  Availability  

38  

Searchable  Bucket   Replicated  Bucket  

Indexer  1   Indexer  2   Indexer  3  

Searchable  Bucket  

High  Availability  

39  

Searchable  Bucket   Replicated  Bucket  

Indexer  1   Indexer  2   Indexer  3  

Searchable  Bucket  

High  Availability  

40  

Replicated  Bucket  

Indexer  1   Indexer  2   Indexer  3  

Searchable  Bucket  

High  Availability  

41  

Searchable  Bucket   Replicated  Bucket  

Indexer  1   Indexer  2   Indexer  3  

Searchable  Bucket  

High  Availability  

High  Availability  

42  

Indexers  

High  Availability  

43  

Indexers  

High  Availability  

44  

Indexers  

45  

Indexers  

High  Availability  

46  

Indexers  

High  Availability  

47  

Indexers  

High  Availability  

48  

Indexers  

Search  Head  

High  Availability  

49  

Indexers  

Search  Head  

High  Availability  

Disaster  Recovery  

50  

Splunk  Buckets  &  ConfiguraAon  Data  

Disaster  Recovery  

51  

Amazon  S3  Splunk  Buckets  &  ConfiguraAon  Data  

Disaster  Recovery  

52  

Amazon  S3  Splunk  Buckets  &  ConfiguraAon  Data  

Security  

54  

customer stack

55  

security group

Isolated  by  Security  Groups  

56  

security group

Further  Isolated  by  a  Splunk  VPC  

57  

security group

security group

security group

security group

security group

AuthenAcaAon  

58  

Customer  Forwarders  

Client  SSL  CerAficates  

Server  SSL  CerAficates  

AuthenAcaAon  

59  

Customer  Forwarders  

Client  SSL  CerAficates  

Server  SSL  CerAficates  

1  

2  

AuthenAcaAon  

60  

1  

2  

Rogue  Forwarders  

EncrypAon  at  Rest  

61  

Search  Heads  Indexers  Clustering  &  License  Managers  

62  

splunkd  

Forwarder   Indexer   Search  Head  

encrypt  

63  

splunkd  

Forwarder   Indexer   Search  Head  

decrypt  

splunkd  

decrypt  

Hybrid  

Hybrid  

65  

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Search Head(s)

Indexer(s)

On Premises Private Cloud Public Cloud

Hybrid  Search  

Single  Pane  of  Glass  Visibility  

One  More  Thing…  

Looking  Forward  Searchable  S3  Archiving  

67  

Forwarder   Indexer  

Search  Head  

AWS S3

0  to  365  days  

2  years  +  

Splunk  Cloud  is…  

!   Highly  performant  !   Highly  available  !   Built  with  security  from  the  ground  up  !   OperaAonally  automated  !   A  single  pane  of  glass  visibility  with  hybrid  search  

68  

QuesAons  

Thank  You!  

Recommended