Top Banner
ELK Meetup – March 2 nd 2015 Tomer Levy ([email protected] @Tomerlevy) Asaf Yigal ([email protected] @asafyigal)
24
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Elk meetup boston -  logz.io

ELK Meetup – March 2nd 2015

Tomer Levy ([email protected] ֲ @Tomerlevy)

Asaf Yigal ([email protected] @asafyigal)

Page 2: Elk meetup boston -  logz.io

Is anyone using ELK to process logs?

Page 3: Elk meetup boston -  logz.io

Is anyone using the public cloud? AWS?

Page 4: Elk meetup boston -  logz.io

Is anyone doing kite-surfing?

Windsurfing?

Paragliding?

Sailing?

Page 5: Elk meetup boston -  logz.io

ELK – What is good for?

Page 6: Elk meetup boston -  logz.io

This is our office

Page 7: Elk meetup boston -  logz.io

And this is the view from the office

Page 8: Elk meetup boston -  logz.io

Our biggest challenge

When should we leave everything and go Kite-

Surfing?

Page 9: Elk meetup boston -  logz.io

Wind Analytics

Page 10: Elk meetup boston -  logz.io

Wind Across Locations?

Page 11: Elk meetup boston -  logz.io

Next Steps

Page 12: Elk meetup boston -  logz.io

Wind Analytics – next items

• Alerts

• Wind forecast combined with real wind

• Wind predictions!

Page 13: Elk meetup boston -  logz.io

Who Are We?

• ELK++ as a Service – Infinitely scalable

– Secured

– Highly Available

– Additional Features (Visual Grok, Alerts, role-based access…)

• Logz.io Insights: We will tell you what queriesare interesting for you– Machine Learning and Crowd Sourcing

Page 14: Elk meetup boston -  logz.io

How to monitor large AWS Environment?

• Some tips on how to create your own ELK deployment

• Shay Erlichmen @ Samba.me - demo

• A live demo of Kibana 4 implementation to monitor our internal deployment

Page 15: Elk meetup boston -  logz.io

ELK implementation – creating the right architecture

Page 16: Elk meetup boston -  logz.io

ELK implementation – creating the right architecture

Curator

Curator

3x Master Nodes + 1 data

Page 17: Elk meetup boston -  logz.io

ELK implementation – creating the right architecture

Curator

3x Master Nodes + 1 data

Index Failures Handler

Page 18: Elk meetup boston -  logz.io

ELK Basic implementation – find the weak spots

AZ-1

AZ-2

ELBLB

Page 19: Elk meetup boston -  logz.io

• Grok – parse logs to extract the relevant fields…

• Try our blog for some help on grok/plugins etc’

• blog.logz.io

ELK Basic implementation -Configuration

Page 20: Elk meetup boston -  logz.io

1.Use Elasticsearch AWS Plugin

2.EBS are challenging for big environment Use PIOPS if you can afford

3.Don’t run AWS cluster on the same AZ (but don’t run them on different zones!)

4.Use Shard allocation awareness

5.S3 Snapshots are cool! Things tend to break…

Elasticsearch Basic implementation -Configuration

Page 21: Elk meetup boston -  logz.io

Our architecture is very different – let’s look at it

DEMO

Page 22: Elk meetup boston -  logz.io

Let’s see a high level view of how we process log(z)

DEMO

Page 23: Elk meetup boston -  logz.io

Want to use the service?

• Feel free to email us for any question:

[email protected]

[email protected]

Page 24: Elk meetup boston -  logz.io

We’re Hiring – Big time!

• Elasticsearch Experts

• Java Developers

• Machine Learning Experts

• Graphic Designer

• Director of Marking