Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

24
ELK Meetup – February 24 th 2015 Tomer Levy ([email protected] @Tomerlevy) Asaf Yigal ([email protected] @asafyigal)

Transcript of Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Page 1: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

ELK Meetup – February 24th 2015

Tomer Levy ([email protected] ֲ @Tomerlevy)

Asaf Yigal ([email protected] @asafyigal)

Page 2: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Is anyone using ELK to process logs?

Page 3: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Is anyone using the public cloud? AWS?

Page 4: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Is anyone doing kite-surfing?

Windsurfing?

Paragliding?

Sailing?

Page 5: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

ELK – What is good for?

Page 6: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

This is our office

Page 7: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

And this is the view from the office

Page 8: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Our biggest challenge

When should we leave everything and go Kite-

Surfing?

Page 9: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Wind Analytics

Page 10: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Wind Across Locations?

Page 11: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Next Steps

Page 12: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Wind Analytics – next items

• Alerts

• Wind forecast combined with real wind

• Wind predictions!

Page 13: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Who Are We?

• ELK++ as a Service – Infinitely scalable

– Secured

– Highly Available

– Additional Features (Visual Grok, Alerts, role-based access…)

• Logz.io Insights: We will tell you what queriesare interesting for you– Machine Learning and Crowd Sourcing

Page 14: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

How to monitor large AWS Environment?

• Some tips on how to create your own ELK deployment

• Shay Erlichmen @ Samba.me - demo

• A live demo of Kibana 4 implementation to monitor our internal deployment

Page 15: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

ELK implementation – creating the right architecture

Page 16: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

ELK implementation – creating the right architecture

Curator

Curator

3x Master Nodes + 1 data

Page 17: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

ELK implementation – creating the right architecture

Curator

3x Master Nodes + 1 data

Index Failures Handler

Page 18: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

ELK Basic implementation – find the weak spots

AZ-1

AZ-2

ELBLB

Page 19: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

• Grok – parse logs to extract the relevant fields…

• Try our blog for some help on grok/plugins etc’

• blog.logz.io

ELK Basic implementation -Configuration

Page 20: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

1.Use Elasticsearch AWS Plugin

2.EBS are challenging for big environment Use PIOPS if you can afford

3.Don’t run AWS cluster on the same AZ (but don’t run them on different zones!)

4.Use Shard allocation awareness

5.S3 Snapshots are cool! Things tend to break…

Elasticsearch Basic implementation -Configuration

Page 21: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Our architecture is very different – let’s look at it

DEMO

Page 22: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Let’s see a high level view of how we process log(z)

DEMO

Page 23: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

Want to use the service?

• Feel free to email us for any question:

[email protected]

[email protected]

Page 24: Logz.io - TLV ELK Meetup #2 tlv (Summary of the PPT)

We’re Hiring – Big time!

• Elasticsearch Experts

• Java Developers

• Machine Learning Experts

• Graphic Designer

• Director of Marking