+ All Categories
Home > Documents > Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with...

Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with...

Date post: 22-May-2020
Category:
Upload: others
View: 10 times
Download: 0 times
Share this document with a friend
24
Copyright © 2016 Splunk Inc. Cory Fowler Microsoft Gain Insights into your Microsoft Azure Data using Splunk Jason Conger Splunk
Transcript
Page 1: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

Copyright©2016Splunk Inc.

CoryFowlerMicrosoft

GainInsightsintoyourMicrosoftAzureDatausingSplunk

JasonCongerSplunk

Page 2: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

Disclaimer

2

Duringthecourseofthispresentation,wemaymakeforwardlookingstatementsregardingfutureeventsortheexpectedperformanceofthecompany.Wecautionyouthatsuchstatementsreflectourcurrentexpectationsandestimatesbasedonfactorscurrentlyknowntousandthatactualeventsorresultscoulddiffermaterially.Forimportantfactorsthatmaycauseactualresultstodifferfromthose

containedinourforward-lookingstatements,pleasereviewourfilingswiththeSEC.Theforward-lookingstatementsmadeinthethispresentationarebeingmadeasofthetimeanddateofitslivepresentation.Ifreviewedafteritslivepresentation,thispresentationmaynotcontaincurrentoraccurateinformation.Wedonotassumeanyobligationtoupdateanyforwardlookingstatementswemaymake.Inaddition,anyinformationaboutourroadmapoutlinesourgeneralproductdirectionandissubjecttochangeatanytimewithoutnotice.Itisforinformationalpurposesonlyandshallnot,beincorporatedintoanycontractorothercommitment.Splunkundertakesnoobligationeithertodevelopthefeaturesor

functionalitydescribedortoincludeanysuchfeatureorfunctionalityinafuturerelease.

Page 3: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

Agenda

DeployingSplunkonAzureCollectingMachineDatafromAzureSplunkAdd-onsUsecasesforAzureDatainSplunk

3

Page 4: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

SplunkavailableinAzureMarketplace

4

Page 5: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

SplunkinAzureMarketplace

WhatcanSplunksolutiontemplatedoforyou?

Accelerates deploymenttimedowntominutesAbstracts away detailsofconfiguringdistributedSplunkIncorporatesSplunkbestpracticesforoperationsandadministrationExtensible andcustomizable templatestofitcustomneeds

5

https://azure.microsoft.com/en-us/marketplace/partners/splunk/splunk-enterprisebyol/https://www.splunk.com/pdfs/technical-briefs/deploying-splunk-enterprise-on-microsoft-azure.pdf

Page 6: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

AzureMarketplaceDemo

6

Page 7: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

CollectingMachineDatafromAzure

7

Page 8: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

HowwecollectAzureData

REST

BlobsTables Files

AzureStorageContainers

Queues

AzureSDKs

Page 9: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

AzureStorageTableData

9

Page 10: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

AzureStorageBlobData

10

Page 11: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

MicrosoftAzurePythonSDKs

11

Page 12: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

Demo

12

Page 13: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

SplunkAdd-onsforMicrosoftAzureData

13

Page 14: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

Demo

Page 15: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

AzureFunctions

15

Page 16: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

WhatisServerless?

Event-drivenscale Sub-secondbillingServerAbstraction

Page 17: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

AzureFunctionsProcesseventswithServerlesscode.• MakecomposingCloudAppsinsanelyeasy• DevelopFunctionsinC#,Node.js,F#,Python,

PHP,Batchandmore• Easilyscheduleevent-driventasksacross

services• ExposeFunctionsasHTTPAPIendpoints• ScaleFunctionsbasedoncustomerdemand• EasilyintegratewithWorkflows

Page 18: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

Demo

18

Page 19: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

AzureFunctions+Splunk

•HTTP•AzureServices

•ThirdPartyServices

Trigger/Input

Bindings

•EventProcessing

•Logging

CodeExecution

•Splunk HEC•AzureServices

OutputBindings

Page 20: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

Demo

Page 21: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

UseCases(ITOps)

21

ServerandapplicationdiagnosticsContainerlogsCDNlogsIoT dataApplicationlogsWindowsEventlogsIISlogsStoragemetricsManagementdata(accesslogs,billing,ADlogs)Networksecuritygroupandloadbalancerlogs

Page 22: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

UseCases(Security)

22

AuditComplianceUnauthorizedaccessattemptsResourcechangetrackingNetworkconfigurationchangesVulnerabilitiesinhostsorfirewalls

Page 23: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

References

23

SplunkontheAzureMarketplaceSplunkAdd-onforMicrosoftCloudServiceshttp://blogs.splunk.com/2016/04/18/announcing-splunk-add-on-for-microsoft-cloud-services/http://blogs.splunk.com/2016/02/18/announcing-splunk-enterprise-in-microsoft-azure-marketplace/http://blogs.splunk.com/2016/03/15/splunking-microsoft-azure-data/http://blogs.splunk.com/2016/03/28/splunking-microsoft-azure-audit-data/

Page 24: Gain Insights into your Microsoft Azure Data using Splunk · Azure Functions Process events with Serverless code. • Make composing Cloud Apps insanely easy • Develop Functions

THANKYOU


Recommended