Copyright © 2016 Splunk Inc.
Splunk Cloud and
Splunk Enterprise 6.5
Overview
Disclaimer
2
During the course of this presentation, we may make forward looking statements regarding future
events or the expected performance of the company. We caution you that such statements reflect our
current expectations and estimates based on factors currently known to us and that actual events or
results could differ materially. For important factors that may cause actual results to differ from those
contained in our forward-looking statements, please review our filings with the SEC. The forward-
looking statements made in this presentation are being made as of the time and date of its live
presentation. If reviewed after its live presentation, this presentation may not contain current or
accurate information. We do not assume any obligation to update any forward-looking statements we
may make. In addition, any information about our roadmap outlines our general product direction and is
subject to change at any time without notice. It is for informational purposes only and shall not, be
incorporated into any contract or other commitment. Splunk undertakes no obligation either to develop
the features or functionality described or to include any such feature or functionality in a future release.
Splunk Cloud & Splunk Enterprise 6.5
3
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Splunk Cloud & Splunk Enterprise 6.5
4
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Centralized view of all data objects
prepared for viewing and analysis
• Data Models
• Lookups
• Table Datasets - New!
A home base for data prep and analysis
Datasets Page
5
Data Preparation & Analysis with Tables
6
Create, edit, analyze table views without using SPL
Benefits of Table Datasets
7
Splunk Specialist Occasional User
• Rapidly create rich data views
• Empower independent analysis
by other users
• Analyze & explore in intuitive data view
• Independently edit / add fields
• Create reports and dashboard panels
Data prep and analysis – made simple
Enhanced Search Assistance
8
Improved search productivity
• Syntax coloring
• Auto-complete
• Auto-formatting
Better Report Tables
9
• Conditional formatting of
table columns
• Number formatting
• Table summary statistics
Create digestible tables with rich insights 
Dashboard Enhancements
10
• Preview dashboard before saving
• Inline XML source editor
• Versatile refresh controls
Build and share dashboards with ease
Splunk Cloud & Splunk Enterprise 6.5
11
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Machine Learning and Advanced Analytics at Splunk
12
Purpose-built, turnkey-key analytics dedicated
to managing IT services and security
Packaged Machine Learning
Easy to use ML integrated into
standard day-to-day operations
Custom Machine Learning
Predictive analytics tailored for a
customer’s specific environment
and target use cases
From platform to packaged premium solutions
Integrated & custom analytics for any use case
Splunk Machine Learning Toolkit
13
Assistants: Guide model building, testing
& deployment for common objectives
Showcases: Interactive examples for typical
IT, security, business, IoT use cases
SPL ML Commands: New commands to
fit, test and operationalize models
Python for Scientific Computing Library:
300+ open source algorithms available for use
Build custom analytics for any use case
Machine Learning Customer Success
Network Incident Detection
Service Degradation Detection Security / Fraud Prevention
Prioritize Website Issues
and Predict Root Cause
Predict Gaming Outages
Fraud Prevention
Machine Learning Consulting Services Analytics App built on ML Toolkit
Optimizing operations and business results
Cell Tower Incident Detection
Optimize Repair Operations
Entertainment
Company
15
Splunk Cloud & Splunk Enterprise 6.5
15
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Storage TCO Reduction Options
16
Reduce TSIDX for
historical data
Roll historical data
into Hadoop
Keeps data within existing
Splunk storage
Exports data but maintains
search capability
Flexible options to reduce storage requirements up to 80%
Integrated Hadoop Features
17
Access, analysis and storage flexibility with data lake
Seamlessly search your Hadoop
data within Splunk *
Amazon
EMR on S3
Hadoop
Clusters
Roll historical Splunk data into
existing Hadoop distribution
Enrich data in Hadoop with Splunk
search results
Import Hadoop data into Splunk
*Requires Splunk Analytics for Hadoop
add-on license
• In-depth views integrated
into Monitoring Console
• Includes checks for common issues
with suggested actions
• Add custom Health Checks for your
environment with an SPL search
System Health Check
18
Take proactive action to optimize Splunk operations
Indexer Cluster Rebalancing
19
Get immediate value from new indexers
• Immediately optimizes
search & indexing loads
• Immediately balances
storage loads
Simple controls to
automatically rebalance
Before
Rebalancing
After
Rebalancing
New
Real-Time SPL Optimization
20
Automatically optimizes query performance
Filter results as early as possible lookup only on required data
eval on the minimum number
of events possible
Process as much as possible
in parallel on indexers
Automatically applies
best practice techniques
to optimize execution
speed of any query
Splunk Cloud & Splunk Enterprise 6.5
21
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
New App Developer Resources
22
Package
Packaging 
Toolkit (Beta)
Develop
Add-on 
Builder App 
AppInspect 
Tool
Promote
Splunkbase 
app discovery 
experience 
Making apps easier to develop, certify & manage
Certify
Splunk App 
Certification 
Process
Tools to Build Better Apps
23
Build certification-ready apps & add-ons
Add-on Builder
• Auto-generate modular input script
• Define knowledge extraction
• Validate certification readiness
AppInspect
• Run the same checks as App Certification team
• Run 140+ static analysis checks
• Integrate into existing build tools and processes
Packaging Toolkit (beta)
24
• Specifies app deployment requirements
via an app manifest
• Pre-packages and validates dependencies
• Partitions app based on component
deployment requirements
• Compatible with standard deployment
tools and scripts
Assure clean and reliable app deployment
App package
Forwarder
Indexer
Search Head
App Component
App
manifest
Splunk App Certification Process
25
• Typical process takes 2 weeks from submission
Streamlined process for faster time to market
Splunkbase App Discovery
26
User Experience improvements
that make it easier to discover
apps and add-ons
Curated content that highlights:
• Certification status
• Use case
• Technology
Easily discover and adopt apps with confidence
Splunk Cloud & Splunk Enterprise 6.5
27
Easier Data
Prep & Analysis
Fast & simple analysis
for a wide range of users
Extended Platform
and Management
Simplified management
and lower TCO
New Machine
Learning Analytics
Predictive analytics for
business-critical events
New Developer
Resources
Create and certify
enterprise-ready Apps
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
New Licensing Terms
For Splunk Enterprise and Splunk Cloud Customers 
Free Dev/Test Usage
Explore new data sources
and use cases before
moving to production
28
No Metered Enforcement
Exceeding license terms
does not disrupt Splunk
production operations
New license key available with
6.5 upgrade
Personalized license keys available
to all customers
Available Now with 6.5! Available Nov 1, 2016
New Licensing Terms
For Splunk Enterprise 6.5 and Splunk Cloud Customers 
No metered enforcement (Splunk Enterprise)
– Exceeding daily license capacity will no longer disable Search
– Licensing terms and conditions continue to apply
Free personal use dev/test software licenses
– 50 GB single-server license valid for 6 months of non-production use
– Multiple licenses and renewals allowed
29
Making it easier to get more from your data
Splunk Cloud & Splunk Enterprise 6.5
30
New Developer
Resources
Easier Data
Prep & Analysis
Extended Platform
and Management
Fast & simple analysis
for a wide range of users
Simplified management
and lower TCO
Create and certify
enterprise-ready Apps
New Machine
Learning Analytics
Predictive analytics for
business-critical events
• Integrated Hadoop data roll
• Automated management
• System health check
• Create custom analytics and
models for any use case
• Guided modeling experience
• Introducing new table views
• Intuitive interface to build,
edit & analyze tables
• New app developer tools
• Enhanced certification
process
Liberalized Licensing Terms
No metered enforcement -- Free dev/test licenses
Appendix
Machine Learning and Advanced Analytics at Splunk
32
Purpose-built, turnkey analytics dedicated
to managing IT services and security
Integrated & custom analytics for any use case
Specialized security analytics
• Behavior baselining & modeling
• Anomaly detection (40+ models)
Packaged IT monitoring analytics
• Anomaly detection
• Adaptive thresholding
Integrated & custom analytics for any use
• 20+ analytics commands & functions
• Automatic cluster analysis @ search
• Custom modeling workbench
From platform to packaged premium solutions
What’s New in ML Toolkit 2.0?
Modeling Capabilities
• Multi-algorithm
support in Assistants
• 15+ new algorithms
available OOTB
since 1.0
• Cluster Numeric
Events Assistant
• Scatterplot matrix viz
Scalability
• Distributed
processing across
indexers
• Scheduled fit
Usability
• Create Alerts within
Toolkit
• Tooltips
• In-app tours
• Tutorials for each
assistant
Making it easier to build and operationalize models
ML Toolkit Customer Use Cases
34
Speeding website problem resolution by automatically ranking actions for support engineers
Reducing customer service disruption with early identification of difficult-to-detect network incidents
Minimizing cell tower degradation and downtime with improved issue detection sensitivity
Improving cell tower uptime and reducing repair truck roles with anomaly detection
and root cause analysis
Predicting and averting potential gaming outage conditions with finer-grained detection
Ensuring mobile device security by detecting anomalies in ID authentication
Preventing fraud by Identifying malicious accounts and suspicious activities
Entertainment
Company
Domain
Expertise
(IT, Security, …)
Data
Science
Expertise
Splunk
Expertise
Custom Machine Learning – Success Formula
Identify use cases
Drive decisions
Set business/ops
priorities
SPL
Data prep
Statistics / math background
Algorithm selection
Model building
Splunk ML Toolkit
facilitates and simplifies
via examples & guidance
Operational success
Detect Network Outliers
Reduced downtime + increased service availability = better customer satisfaction
36
ML Use Case
Monitor noise rise for 20,000+ cell towers to increase service and device
availability, reduce MTTR
Technical overview
• A customized solution deployed in production based on outlier detection.
• Leverage previous month data and voting algorithms
“The ability to model complex systems and alert on deviations is where IT  and security 
operations are headed … Splunk Machine Learning has given us a head start...”
Reliable website updates
Proactive website monitoring leads to reduced downtime
37
“Splunk ML helps us rapidly improve end-user experience by ranking issue severity 
which helps us determine root causes faster thus reducing MTTR and  improving 
SLA”
• Very frequent code and config updates (1000+ daily) can cause site issues
• Find errors in server pools, then prioritize actions and predict root cause
• Custom outlier detection built using ML Toolkit Outlier assistant
• Built by Splunk Architect with no Data Science background
ML Use Case
Technical overview
Integrated Hadoop Features
Unified exploration across
Splunk and non-Splunk data
Roll historical Splunk data into
existing Hadoop distribution
Enrich data in Hadoop with
Splunk search results
Explore current and historical
data
Import Hadoop data into
Splunk
Hadoop Data Roll
Splunk Analytics for Hadoop
Hadoop Connect
38
Access, analysis and storage flexibility with data lake
Amazon
EMR on S3
Hadoop
Clusters
Hadoop Data Roll
39
Hadoop
Clusters
Amazon
EMR on S3
• Rolls historical data into existing Hadoop
distribution
• Reduces storage up to 80%*
• Retains Splunk search capability with
performance tradeoffs
• Integrated, zero-cost option of Splunk
Enterprise
Leverage existing Hadoop datastore to reduce TCO
* Achieved by reducing Splunk search optimization data
Warm
Cold
Comparing Storage TCO Reduction Options
40
Hot
• Removes some search optimization data
• No search functionality loss
• Limited performance tradeoff for typical
use cases
40-80% data
footprint reduction
Reduce TSIDX for historical data Hadoop Data Roll
• Removes search optimization data
• No search functionality loss, uses virtual index
• Performance tradeoff
• Shares data with Hadoop and Hadoop application
Hot
40-80% data
footprint
reduction
Warm
Cold
Splunkbase App Discovery
41
User Experience improvements
that make it easier to discover
apps and add-ons
Curated content that highlights:
• Certification status
• Use case
• Technology
Simplify discovery and adoption of your app
Cold Cold Cold
Savings Example
Driving down data retention costs
Savings Over
1 Year
$1.6 M*
Savings over
5 Years
$4.3 M*
Raw Ingest: 10TB / Day
Hot/Warm Retention: 2 Months
Cold Retention: 10 Months
* Assumes $1.25/GB Cold Storage Purchase Cost, 10% Maintenance Cost, 10% Annual Data Growth, 3 Year HW Refresh, No clustering
42
Hot
Cold
Warm
Cold Cold Cold Cold Cold
Warm Warm
Storage Optimization
Driving down data retention costs
How does it work?
Certain Splunk performance optimization data
(TSIDX) is removed – yielding a smaller footprint.
43
New Data Storage Controls
• 40-80% reduction in data footprint
• No functionality loss
• Limited performance tradeoff for
typical use cases
Cold Cold Cold
Hot
Cold
Warm
Cold Cold Cold Cold Cold
Warm Warm
Splunk Enterprise & Splunk Cloud 6.4
New Cloud Services
Monitoring
New Visualizations
& Enhanced Analytics
Platform Security
and Management
Unlimited new ways to
visualize your data
New mission-critical
features
Expanded cloud
operations intelligence
Storage TCO
Reduction
Reduces historical data
storage TCO by 40%+
(Splunk Enterprise)
Get more from big data and pay less in storage costs
44
The Splunk Portfolio
Platform for Operational Intelligence
Rich Ecosystem of
Apps & Add-Ons
Splunk Premium
Solutions
Mainframe
Data
Relational
Databases
MobileForwarders Syslog/TCP
IoT
Devices
Network
Wire Data
Hadoop

More Related Content

PDF
Listen to Your Machines: DevOps Analytics for Better Feedback Loops
PDF
Webinar: Was ist neu in Splunk Enterprise 6.5
PDF
Data-Driven DevOps: Mining Machine Data for 'Metrics that Matter' in a DevOps...
PPTX
SplunkLive! London 2016 Splunk for Devops
PPTX
How to Design, Build and Map IT and Business Services in Splunk
PDF
CA Technologies Customer Presentation
PPTX
Taking Splunk to the Next Level - Architecture
PPTX
6.4 whats new
Listen to Your Machines: DevOps Analytics for Better Feedback Loops
Webinar: Was ist neu in Splunk Enterprise 6.5
Data-Driven DevOps: Mining Machine Data for 'Metrics that Matter' in a DevOps...
SplunkLive! London 2016 Splunk for Devops
How to Design, Build and Map IT and Business Services in Splunk
CA Technologies Customer Presentation
Taking Splunk to the Next Level - Architecture
6.4 whats new

What's hot (20)

PPTX
Machine Learning and Analytics Breakout Session
PPTX
Distributed Management Console Breakout Session
PPTX
How to Design, Build and Map IT and Biz Services Breakout Session
PDF
Herbalife Customer Presentation
PPTX
Getting Started with Splunk Enterprise Hands-On Breakout Session
PDF
Data-Drive DevOps: Mining Machine Data for "Metrics that Matter"
PPTX
Explain the Value of your Splunk Deployment Breakout Session
PPTX
Elevate your Splunk Deployment by Better Understanding your Value Breakfast S...
PPTX
Taking Splunk to the Next Level - Management Breakout Session
PPTX
Taking Splunk to the Next Level - Manager
PPTX
Getting Started with Splunk Enterprise Hands-On
PPTX
Splunk: How to Design, Build and Map IT Services
PPTX
Splunk for Developers
PPTX
Devops Powered by Splunk
PPTX
Splunk Enterprise 6.4
PPTX
Taking Splunk to the Next Level – Management - Advanced
PPTX
Splunk Ninjas: New Features and Search Dojo
PPTX
Business Value Breakfast Presentation
PPTX
What's New in 6.3 + Data On-Boarding
PPTX
Distributed Management Console
Machine Learning and Analytics Breakout Session
Distributed Management Console Breakout Session
How to Design, Build and Map IT and Biz Services Breakout Session
Herbalife Customer Presentation
Getting Started with Splunk Enterprise Hands-On Breakout Session
Data-Drive DevOps: Mining Machine Data for "Metrics that Matter"
Explain the Value of your Splunk Deployment Breakout Session
Elevate your Splunk Deployment by Better Understanding your Value Breakfast S...
Taking Splunk to the Next Level - Management Breakout Session
Taking Splunk to the Next Level - Manager
Getting Started with Splunk Enterprise Hands-On
Splunk: How to Design, Build and Map IT Services
Splunk for Developers
Devops Powered by Splunk
Splunk Enterprise 6.4
Taking Splunk to the Next Level – Management - Advanced
Splunk Ninjas: New Features and Search Dojo
Business Value Breakfast Presentation
What's New in 6.3 + Data On-Boarding
Distributed Management Console
Ad

Viewers also liked (20)

PPTX
What's New in Splunk 6.3
PDF
Paris Innovation & New tech - Meetup #2 - Démo Craft AI
PDF
2015 form-10-k-and-strategy-discussion 041916-1
PPTX
Paris Innovation & New tech - Meetup #2 - API Economy
PPTX
Gem+ Presentation WB
PDF
Donosti2016
DOCX
Ballou Updated 2016 (1)
PDF
Flyer Mission Possible
PDF
Kriteria penilaian sni award 2016 organisasi kecil barang dan jasa
PDF
Enterprise Security featuring UBA
PDF
Getting Started with Splunk Enterprise
PDF
Jay D Vithalani Resume
PPTX
Gartner Datacenter Summit - Cox Automotive
PPTX
Art of the Possible - Innovating with Splunk
PDF
Getting Started with Splunk Enterprise
PDF
Building Business Service Intelligence with ITSI
PPTX
Threat Hunting with Splunk
PPTX
Customer Presentation with a Healthcare Company
PDF
Splunk Enterprise for IT Troubleshooting
PPT
Adverse Drug Reactions - Katalyst HLS
What's New in Splunk 6.3
Paris Innovation & New tech - Meetup #2 - Démo Craft AI
2015 form-10-k-and-strategy-discussion 041916-1
Paris Innovation & New tech - Meetup #2 - API Economy
Gem+ Presentation WB
Donosti2016
Ballou Updated 2016 (1)
Flyer Mission Possible
Kriteria penilaian sni award 2016 organisasi kecil barang dan jasa
Enterprise Security featuring UBA
Getting Started with Splunk Enterprise
Jay D Vithalani Resume
Gartner Datacenter Summit - Cox Automotive
Art of the Possible - Innovating with Splunk
Getting Started with Splunk Enterprise
Building Business Service Intelligence with ITSI
Threat Hunting with Splunk
Customer Presentation with a Healthcare Company
Splunk Enterprise for IT Troubleshooting
Adverse Drug Reactions - Katalyst HLS
Ad

Similar to Quelles nouveautés avec la version 6.5 de Splunk Enterprise (20)

PPTX
Splunk Enterprise 6.3 - Splunk Tech Day
PPTX
SplunkLive! What's New in Splunk 6 Session
PPTX
Getting Started with Splunk Enterprise
PDF
SplunkLive! London 2015 - DevOps Breakout
PPTX
SplunkLive! Splunk Enterprise 6.3 - Data On-boarding
PPTX
Splunk MINT and Stream Breakout
PDF
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
PPTX
Webinar: Neuigkeiten zu Splunk Enterprise 6.3
PPTX
Getting Started with Splunk Enterprises
PPTX
Getting Started with Splunk Enterprise
PPTX
Splunk
PDF
Splunk in Staples: IT Operations
PDF
Destination Digital: Tracking Progress to Continue First Class Performance
PDF
Splunk Data Onboarding Overview - Splunk Data Collection Architecture
PDF
Webinar: SAP BW Dinosaur to Agile Analytics Powerhouse
PPTX
Getting Started with Splunk Enterprise
PPTX
Getting Started with Splunk Enterprise
PPTX
Splunk IT Service Intelligence
PDF
Splunk in Rakuten: Splunk as a Service for all
PPTX
Performance monitoring in a DevOps World
Splunk Enterprise 6.3 - Splunk Tech Day
SplunkLive! What's New in Splunk 6 Session
Getting Started with Splunk Enterprise
SplunkLive! London 2015 - DevOps Breakout
SplunkLive! Splunk Enterprise 6.3 - Data On-boarding
Splunk MINT and Stream Breakout
Splunk Webinar: IT Operations Demo für Troubleshooting & Dashboarding
Webinar: Neuigkeiten zu Splunk Enterprise 6.3
Getting Started with Splunk Enterprises
Getting Started with Splunk Enterprise
Splunk
Splunk in Staples: IT Operations
Destination Digital: Tracking Progress to Continue First Class Performance
Splunk Data Onboarding Overview - Splunk Data Collection Architecture
Webinar: SAP BW Dinosaur to Agile Analytics Powerhouse
Getting Started with Splunk Enterprise
Getting Started with Splunk Enterprise
Splunk IT Service Intelligence
Splunk in Rakuten: Splunk as a Service for all
Performance monitoring in a DevOps World

More from Splunk (20)

PDF
Splunk Leadership Forum Wien - 20.05.2025
PDF
Splunk Security Update | Public Sector Summit Germany 2025
PDF
Building Resilience with Energy Management for the Public Sector
PDF
IT-Lagebild: Observability for Resilience (SVA)
PDF
Nach dem SOC-Aufbau ist vor der Automatisierung (OFD Baden-Württemberg)
PDF
Monitoring einer Sicheren Inter-Netzwerk Architektur (SINA)
PDF
Praktische Erfahrungen mit dem Attack Analyser (gematik)
PDF
Cisco XDR & Splunk SIEM - stronger together (DATAGROUP Cyber Security)
PDF
Security - Mit Sicherheit zum Erfolg (Telekom)
PDF
One Cisco - Splunk Public Sector Summit Germany April 2025
PDF
.conf Go 2023 - Data analysis as a routine
PDF
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
PDF
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
PDF
.conf Go 2023 - Raiffeisen Bank International
PDF
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
PDF
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
PDF
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
PDF
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
PDF
.conf go 2023 - De NOC a CSIRT (Cellnex)
PDF
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)
Splunk Leadership Forum Wien - 20.05.2025
Splunk Security Update | Public Sector Summit Germany 2025
Building Resilience with Energy Management for the Public Sector
IT-Lagebild: Observability for Resilience (SVA)
Nach dem SOC-Aufbau ist vor der Automatisierung (OFD Baden-Württemberg)
Monitoring einer Sicheren Inter-Netzwerk Architektur (SINA)
Praktische Erfahrungen mit dem Attack Analyser (gematik)
Cisco XDR & Splunk SIEM - stronger together (DATAGROUP Cyber Security)
Security - Mit Sicherheit zum Erfolg (Telekom)
One Cisco - Splunk Public Sector Summit Germany April 2025
.conf Go 2023 - Data analysis as a routine
.conf Go 2023 - How KPN drives Customer Satisfaction on IPTV
.conf Go 2023 - Navegando la normativa SOX (Telefónica)
.conf Go 2023 - Raiffeisen Bank International
.conf Go 2023 - På liv og død Om sikkerhetsarbeid i Norsk helsenett
.conf Go 2023 - Many roads lead to Rome - this was our journey (Julius Bär)
.conf Go 2023 - Das passende Rezept für die digitale (Security) Revolution zu...
.conf go 2023 - Cyber Resilienz – Herausforderungen und Ansatz für Energiever...
.conf go 2023 - De NOC a CSIRT (Cellnex)
conf go 2023 - El camino hacia la ciberseguridad (ABANCA)

Recently uploaded (20)

PDF
“The Future of Visual AI: Efficient Multimodal Intelligence,” a Keynote Prese...
PDF
Advancing precision in air quality forecasting through machine learning integ...
PDF
EIS-Webinar-Regulated-Industries-2025-08.pdf
PDF
The AI Revolution in Customer Service - 2025
PDF
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
PDF
5-Ways-AI-is-Revolutionizing-Telecom-Quality-Engineering.pdf
DOCX
Basics of Cloud Computing - Cloud Ecosystem
PDF
LMS bot: enhanced learning management systems for improved student learning e...
PDF
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
PDF
Aug23rd - Mulesoft Community Workshop - Hyd, India.pdf
PDF
Transform-Your-Supply-Chain-with-AI-Driven-Quality-Engineering.pdf
PDF
Dell Pro Micro: Speed customer interactions, patient processing, and learning...
PDF
Early detection and classification of bone marrow changes in lumbar vertebrae...
PDF
Introduction to MCP and A2A Protocols: Enabling Agent Communication
PDF
Auditboard EB SOX Playbook 2023 edition.
PPTX
Internet of Everything -Basic concepts details
PPTX
agenticai-neweraofintelligence-250529192801-1b5e6870.pptx
PDF
Data Virtualization in Action: Scaling APIs and Apps with FME
PDF
NewMind AI Weekly Chronicles – August ’25 Week IV
PDF
Accessing-Finance-in-Jordan-MENA 2024 2025.pdf
“The Future of Visual AI: Efficient Multimodal Intelligence,” a Keynote Prese...
Advancing precision in air quality forecasting through machine learning integ...
EIS-Webinar-Regulated-Industries-2025-08.pdf
The AI Revolution in Customer Service - 2025
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
5-Ways-AI-is-Revolutionizing-Telecom-Quality-Engineering.pdf
Basics of Cloud Computing - Cloud Ecosystem
LMS bot: enhanced learning management systems for improved student learning e...
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
Aug23rd - Mulesoft Community Workshop - Hyd, India.pdf
Transform-Your-Supply-Chain-with-AI-Driven-Quality-Engineering.pdf
Dell Pro Micro: Speed customer interactions, patient processing, and learning...
Early detection and classification of bone marrow changes in lumbar vertebrae...
Introduction to MCP and A2A Protocols: Enabling Agent Communication
Auditboard EB SOX Playbook 2023 edition.
Internet of Everything -Basic concepts details
agenticai-neweraofintelligence-250529192801-1b5e6870.pptx
Data Virtualization in Action: Scaling APIs and Apps with FME
NewMind AI Weekly Chronicles – August ’25 Week IV
Accessing-Finance-in-Jordan-MENA 2024 2025.pdf

Quelles nouveautés avec la version 6.5 de Splunk Enterprise

  • 1. Copyright © 2016 Splunk Inc. Splunk Cloud and Splunk Enterprise 6.5 Overview
  • 2. Disclaimer 2 During the course of this presentation, we may make forward looking statements regarding future events or the expected performance of the company. We caution you that such statements reflect our current expectations and estimates based on factors currently known to us and that actual events or results could differ materially. For important factors that may cause actual results to differ from those contained in our forward-looking statements, please review our filings with the SEC. The forward- looking statements made in this presentation are being made as of the time and date of its live presentation. If reviewed after its live presentation, this presentation may not contain current or accurate information. We do not assume any obligation to update any forward-looking statements we may make. In addition, any information about our roadmap outlines our general product direction and is subject to change at any time without notice. It is for informational purposes only and shall not, be incorporated into any contract or other commitment. Splunk undertakes no obligation either to develop the features or functionality described or to include any such feature or functionality in a future release.
  • 3. Splunk Cloud & Splunk Enterprise 6.5 3 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 4. Splunk Cloud & Splunk Enterprise 6.5 4 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 5. Centralized view of all data objects prepared for viewing and analysis • Data Models • Lookups • Table Datasets - New! A home base for data prep and analysis Datasets Page 5
  • 6. Data Preparation & Analysis with Tables 6 Create, edit, analyze table views without using SPL
  • 7. Benefits of Table Datasets 7 Splunk Specialist Occasional User • Rapidly create rich data views • Empower independent analysis by other users • Analyze & explore in intuitive data view • Independently edit / add fields • Create reports and dashboard panels Data prep and analysis – made simple
  • 8. Enhanced Search Assistance 8 Improved search productivity • Syntax coloring • Auto-complete • Auto-formatting
  • 9. Better Report Tables 9 • Conditional formatting of table columns • Number formatting • Table summary statistics Create digestible tables with rich insights 
  • 10. Dashboard Enhancements 10 • Preview dashboard before saving • Inline XML source editor • Versatile refresh controls Build and share dashboards with ease
  • 11. Splunk Cloud & Splunk Enterprise 6.5 11 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 12. Machine Learning and Advanced Analytics at Splunk 12 Purpose-built, turnkey-key analytics dedicated to managing IT services and security Packaged Machine Learning Easy to use ML integrated into standard day-to-day operations Custom Machine Learning Predictive analytics tailored for a customer’s specific environment and target use cases From platform to packaged premium solutions Integrated & custom analytics for any use case
  • 13. Splunk Machine Learning Toolkit 13 Assistants: Guide model building, testing & deployment for common objectives Showcases: Interactive examples for typical IT, security, business, IoT use cases SPL ML Commands: New commands to fit, test and operationalize models Python for Scientific Computing Library: 300+ open source algorithms available for use Build custom analytics for any use case
  • 14. Machine Learning Customer Success Network Incident Detection Service Degradation Detection Security / Fraud Prevention Prioritize Website Issues and Predict Root Cause Predict Gaming Outages Fraud Prevention Machine Learning Consulting Services Analytics App built on ML Toolkit Optimizing operations and business results Cell Tower Incident Detection Optimize Repair Operations Entertainment Company 15
  • 15. Splunk Cloud & Splunk Enterprise 6.5 15 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 16. Storage TCO Reduction Options 16 Reduce TSIDX for historical data Roll historical data into Hadoop Keeps data within existing Splunk storage Exports data but maintains search capability Flexible options to reduce storage requirements up to 80%
  • 17. Integrated Hadoop Features 17 Access, analysis and storage flexibility with data lake Seamlessly search your Hadoop data within Splunk * Amazon EMR on S3 Hadoop Clusters Roll historical Splunk data into existing Hadoop distribution Enrich data in Hadoop with Splunk search results Import Hadoop data into Splunk *Requires Splunk Analytics for Hadoop add-on license
  • 18. • In-depth views integrated into Monitoring Console • Includes checks for common issues with suggested actions • Add custom Health Checks for your environment with an SPL search System Health Check 18 Take proactive action to optimize Splunk operations
  • 19. Indexer Cluster Rebalancing 19 Get immediate value from new indexers • Immediately optimizes search & indexing loads • Immediately balances storage loads Simple controls to automatically rebalance Before Rebalancing After Rebalancing New
  • 20. Real-Time SPL Optimization 20 Automatically optimizes query performance Filter results as early as possible lookup only on required data eval on the minimum number of events possible Process as much as possible in parallel on indexers Automatically applies best practice techniques to optimize execution speed of any query
  • 21. Splunk Cloud & Splunk Enterprise 6.5 21 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 22. New App Developer Resources 22 Package Packaging  Toolkit (Beta) Develop Add-on  Builder App  AppInspect  Tool Promote Splunkbase  app discovery  experience  Making apps easier to develop, certify & manage Certify Splunk App  Certification  Process
  • 23. Tools to Build Better Apps 23 Build certification-ready apps & add-ons Add-on Builder • Auto-generate modular input script • Define knowledge extraction • Validate certification readiness AppInspect • Run the same checks as App Certification team • Run 140+ static analysis checks • Integrate into existing build tools and processes
  • 24. Packaging Toolkit (beta) 24 • Specifies app deployment requirements via an app manifest • Pre-packages and validates dependencies • Partitions app based on component deployment requirements • Compatible with standard deployment tools and scripts Assure clean and reliable app deployment App package Forwarder Indexer Search Head App Component App manifest
  • 25. Splunk App Certification Process 25 • Typical process takes 2 weeks from submission Streamlined process for faster time to market
  • 26. Splunkbase App Discovery 26 User Experience improvements that make it easier to discover apps and add-ons Curated content that highlights: • Certification status • Use case • Technology Easily discover and adopt apps with confidence
  • 27. Splunk Cloud & Splunk Enterprise 6.5 27 Easier Data Prep & Analysis Fast & simple analysis for a wide range of users Extended Platform and Management Simplified management and lower TCO New Machine Learning Analytics Predictive analytics for business-critical events New Developer Resources Create and certify enterprise-ready Apps Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 28. New Licensing Terms For Splunk Enterprise and Splunk Cloud Customers  Free Dev/Test Usage Explore new data sources and use cases before moving to production 28 No Metered Enforcement Exceeding license terms does not disrupt Splunk production operations New license key available with 6.5 upgrade Personalized license keys available to all customers Available Now with 6.5! Available Nov 1, 2016
  • 29. New Licensing Terms For Splunk Enterprise 6.5 and Splunk Cloud Customers  No metered enforcement (Splunk Enterprise) – Exceeding daily license capacity will no longer disable Search – Licensing terms and conditions continue to apply Free personal use dev/test software licenses – 50 GB single-server license valid for 6 months of non-production use – Multiple licenses and renewals allowed 29 Making it easier to get more from your data
  • 30. Splunk Cloud & Splunk Enterprise 6.5 30 New Developer Resources Easier Data Prep & Analysis Extended Platform and Management Fast & simple analysis for a wide range of users Simplified management and lower TCO Create and certify enterprise-ready Apps New Machine Learning Analytics Predictive analytics for business-critical events • Integrated Hadoop data roll • Automated management • System health check • Create custom analytics and models for any use case • Guided modeling experience • Introducing new table views • Intuitive interface to build, edit & analyze tables • New app developer tools • Enhanced certification process Liberalized Licensing Terms No metered enforcement -- Free dev/test licenses
  • 32. Machine Learning and Advanced Analytics at Splunk 32 Purpose-built, turnkey analytics dedicated to managing IT services and security Integrated & custom analytics for any use case Specialized security analytics • Behavior baselining & modeling • Anomaly detection (40+ models) Packaged IT monitoring analytics • Anomaly detection • Adaptive thresholding Integrated & custom analytics for any use • 20+ analytics commands & functions • Automatic cluster analysis @ search • Custom modeling workbench From platform to packaged premium solutions
  • 33. What’s New in ML Toolkit 2.0? Modeling Capabilities • Multi-algorithm support in Assistants • 15+ new algorithms available OOTB since 1.0 • Cluster Numeric Events Assistant • Scatterplot matrix viz Scalability • Distributed processing across indexers • Scheduled fit Usability • Create Alerts within Toolkit • Tooltips • In-app tours • Tutorials for each assistant Making it easier to build and operationalize models
  • 34. ML Toolkit Customer Use Cases 34 Speeding website problem resolution by automatically ranking actions for support engineers Reducing customer service disruption with early identification of difficult-to-detect network incidents Minimizing cell tower degradation and downtime with improved issue detection sensitivity Improving cell tower uptime and reducing repair truck roles with anomaly detection and root cause analysis Predicting and averting potential gaming outage conditions with finer-grained detection Ensuring mobile device security by detecting anomalies in ID authentication Preventing fraud by Identifying malicious accounts and suspicious activities Entertainment Company
  • 35. Domain Expertise (IT, Security, …) Data Science Expertise Splunk Expertise Custom Machine Learning – Success Formula Identify use cases Drive decisions Set business/ops priorities SPL Data prep Statistics / math background Algorithm selection Model building Splunk ML Toolkit facilitates and simplifies via examples & guidance Operational success
  • 36. Detect Network Outliers Reduced downtime + increased service availability = better customer satisfaction 36 ML Use Case Monitor noise rise for 20,000+ cell towers to increase service and device availability, reduce MTTR Technical overview • A customized solution deployed in production based on outlier detection. • Leverage previous month data and voting algorithms “The ability to model complex systems and alert on deviations is where IT  and security  operations are headed … Splunk Machine Learning has given us a head start...”
  • 37. Reliable website updates Proactive website monitoring leads to reduced downtime 37 “Splunk ML helps us rapidly improve end-user experience by ranking issue severity  which helps us determine root causes faster thus reducing MTTR and  improving  SLA” • Very frequent code and config updates (1000+ daily) can cause site issues • Find errors in server pools, then prioritize actions and predict root cause • Custom outlier detection built using ML Toolkit Outlier assistant • Built by Splunk Architect with no Data Science background ML Use Case Technical overview
  • 38. Integrated Hadoop Features Unified exploration across Splunk and non-Splunk data Roll historical Splunk data into existing Hadoop distribution Enrich data in Hadoop with Splunk search results Explore current and historical data Import Hadoop data into Splunk Hadoop Data Roll Splunk Analytics for Hadoop Hadoop Connect 38 Access, analysis and storage flexibility with data lake Amazon EMR on S3 Hadoop Clusters
  • 39. Hadoop Data Roll 39 Hadoop Clusters Amazon EMR on S3 • Rolls historical data into existing Hadoop distribution • Reduces storage up to 80%* • Retains Splunk search capability with performance tradeoffs • Integrated, zero-cost option of Splunk Enterprise Leverage existing Hadoop datastore to reduce TCO * Achieved by reducing Splunk search optimization data
  • 40. Warm Cold Comparing Storage TCO Reduction Options 40 Hot • Removes some search optimization data • No search functionality loss • Limited performance tradeoff for typical use cases 40-80% data footprint reduction Reduce TSIDX for historical data Hadoop Data Roll • Removes search optimization data • No search functionality loss, uses virtual index • Performance tradeoff • Shares data with Hadoop and Hadoop application Hot 40-80% data footprint reduction Warm Cold
  • 41. Splunkbase App Discovery 41 User Experience improvements that make it easier to discover apps and add-ons Curated content that highlights: • Certification status • Use case • Technology Simplify discovery and adoption of your app
  • 42. Cold Cold Cold Savings Example Driving down data retention costs Savings Over 1 Year $1.6 M* Savings over 5 Years $4.3 M* Raw Ingest: 10TB / Day Hot/Warm Retention: 2 Months Cold Retention: 10 Months * Assumes $1.25/GB Cold Storage Purchase Cost, 10% Maintenance Cost, 10% Annual Data Growth, 3 Year HW Refresh, No clustering 42 Hot Cold Warm Cold Cold Cold Cold Cold Warm Warm
  • 43. Storage Optimization Driving down data retention costs How does it work? Certain Splunk performance optimization data (TSIDX) is removed – yielding a smaller footprint. 43 New Data Storage Controls • 40-80% reduction in data footprint • No functionality loss • Limited performance tradeoff for typical use cases Cold Cold Cold Hot Cold Warm Cold Cold Cold Cold Cold Warm Warm
  • 44. Splunk Enterprise & Splunk Cloud 6.4 New Cloud Services Monitoring New Visualizations & Enhanced Analytics Platform Security and Management Unlimited new ways to visualize your data New mission-critical features Expanded cloud operations intelligence Storage TCO Reduction Reduces historical data storage TCO by 40%+ (Splunk Enterprise) Get more from big data and pay less in storage costs 44
  • 45. The Splunk Portfolio Platform for Operational Intelligence Rich Ecosystem of Apps & Add-Ons Splunk Premium Solutions Mainframe Data Relational Databases MobileForwarders Syslog/TCP IoT Devices Network Wire Data Hadoop