Operations | Monitoring | ITSM | DevOps | Cloud

The latest News and Information on Log Management, Log Analytics and related technologies.

Elastic on Elastic: How InfoSec deploys infrastructure and stays up-to-date with ECK

This post is part of a blog series highlighting how we embrace the solutions and features of the Elastic Stack to support our business and drive customer success. The Elastic InfoSec Security Engineering team is responsible for deploying and managing InfoSec's infrastructure and tools. At Elastic, speed, scale, and relevance is our DNA and leveraging the power of the Elastic Stack is the heart of InfoSec.

How to Monitor Amazon Redshift

Amazon Redshift is a cloud-based data warehousing solution that makes it easy to collect and analyze large quantities of data within the cloud. Cloud data warehouse services like Redshift can remove some of the performance and availability pain-points associated with on-premises data warehousing, but they are not a silver bullet. Getting the most out of Redshift requires carefully monitoring Redshift clusters in order to identify stability issues and performance bottlenecks.

Galileo Enhancements: Spectrum Protect Logs and Summary Data

Anyone who has ever had to administer IBM Spectrum Protect™ (formerly Tivoli Storage Manager or TSM) knows that eventually, you’ll end up parsing the activity log for advanced problem determination or running advanced queries on the summary table for extended reporting. This is a huge pain! With the latest enhancements to Galileo for Spectrum Protect, you need not go elsewhere for answers.

How to create fast queries with Loki's LogQL to filter terabytes of logs in seconds

LogQL, the Loki query language, is heavily inspired by Prometheus PromQL. However, when it comes to filtering logs and finding the needle in the haystack, the query language is very specific to Loki. In this article we’ll give you all the tips to create fast filter queries that can filter terabytes of data in seconds. In Loki there are three types of filters that you can use.

Testing your Okta visibility and detection with Dorothy and Elastic Security

When approached by stakeholders in their organization, few security teams can confidently demonstrate that logging and alerting capabilities are working as expected. Organizations have become more distributed and reliant on cloud offerings for use cases such as identity and access management, user productivity, and file storage. Meanwhile, adversaries have extended their operational capabilities in cloud environments.

Log-based monitoring for AWS Lambda

Monitoring and analytics have been an issue for Serverless systems since they were invented. While it’s easy to attach an agent like NewRelic or DataDog to a server or container, function monitoring requires a different approach. Serverless applications, where logic is distributed over a large number of functions, attaching agents or wrappers leads to cost increase and development overhead.

Building your modern cloud SIEM

SIEM has traditionally earned itself a bad reputation as an unwieldy and unmanageable tool that really never lived up to its promises. In my presentation during Illuminate, I talked about what Sumo Logic is doing to modernize log analytics and SIEM as a whole. Today, we see that despite how overall technology is accelerating, security always seems to lag behind. In Sumo Logic, we address this head-on.

What do dog's pondering and "Observability" have in common?

Observability is arguably the tech buzzword of the year. Whether or not you believe the hype, observability is all about how to ensure overall system health and deliver reliable customer experiences. This is done by observing the system, and when a problem arises, using real-time analytics to quickly help identify the what, where, and why of the problem. In this video, Sumo Logic co-founder and CTO Christian Beedgen takes a closer look at: In addition, the video features a live demo of Sumo Logic’s end-to-end observability solution.

Achieve Business Objectives with Data Driven Observability - Webinar

Modern financial services company Snoop uses open banking and artificial intelligence (AI) to analyse customers’ transactions and spending. But as the volume, variety, and sensitivity of data it manages increases, so does the complexity. Watch this “fireside chat” style webinar to learn how to gain unified visibility across your Amazon Web Services (AWS) infrastructure. Listen as experts from Snoop, Sumo Logic, and AWS share tips and tools to help you glean game-changing insights in real time, economically, and at scale.

Splunk TV - Companion App

Introducing Splunk TV Companion, the iPad app that lets you manage all your Splunk TVs, anywhere in the world, all from one place. Centralize content control of your TV displays on your iPad, and remotely display dashboards to any Apple, Android, or Fire TV. Whether you have several TVs in a single location or are remotely managing a collection of TVs across the globe, use Splunk TV to coordinate your workforce around important events from a central location and effortlessly bring dashboards to the attention of those who need it.