Operations | Monitoring | ITSM | DevOps | Cloud

The latest News and Information on Log Management, Log Analytics and related technologies.

Tech Talk - Mastering Data Pipelines Unlocking value with Splunk

On this Tech Talk to learn how Splunk can help you unlock the value of your security and observability data by building an effective data management strategy. Understand how Splunk’s approach to federated data management can help you maximize the value of data. Build effective pipelines using our latest SPL2-powered data processing capabilities to collect, transform and route data based on your business needs. Run effective searches on data in Amazon S3 without having to ingest or index data into Splunk.

Tech Talk - Holistic Visibility and Effective Alerting Across IT and OT Assets

On this Tech Talk to learn how to gain complete visibility into all hosts and their potential vulnerabilities, misconfigurations and unpatched components in a single analytics platform, adding Tenable asset and exposure risk context improves alert prioritization and joint customers use Splunk for Centralized Reporting.

How Elasticsearch Works: Documents, JSON & Index Explained

Ever wondered how Elasticsearch can search any kind of data? In this video, we break it down with a simple deck of cards analogy that makes indexing easy to understand. Each card is like a JSON document with fields and values, suit, color, number, type. Combine them and you’ve built an index, giving Elasticsearch the power to answer queries like “show me all the red cards” or “show me only the face cards.” If you can describe it, you can index it, and if you can index it, you can search it.

Visualize Logs Alongside Metrics: Complete Observability for Slow PostgreSQL Queries

When latency creeps into your app, metrics tell you that performance regressed, but logs tell you why. PostgreSQL’s slow-query logging gives you the exact statement, duration, user, and database which is perfect for hunting down missing indexes, inefficient filters, or N+1 patterns.

Caddy Webserver Data in Graylog

If you’re running Caddy Webserver on Ubuntu, Graylog now has a new way to make your access logs more actionable without tedious parsing or manual setup. The new Caddy Webserver Content Pack, available in Illuminate 6.4 and a Graylog Enterprise or Graylog Security license, delivers ready-to-use parsing rules, streams, and dashboards so you can quickly turn raw logs into structured, searchable insights.