At its .conf2015 users conference in Las Vegas last Tuesday, operational intelligence specialist Splunk took the wraps off a new version of its Splunk Enterprise platform and a new premium offering, Splunk IT Service Intelligence.
Splunk Enterprise 6.3 — designed for on-premises, cloud or hybrid deployment — is focused on enhancements to performance and total cost of ownership as well as high-volume event collection for DevOps and Internet of Things (IoT) devices. In many cases, says Clint Sharp, Splunk director of product management, Big Data & Operational Intelligence, the hardware cost of a Splunk Enterprise 6.3 deployment can be cut in half compared with Splunk Enterprise 6.0.
"Splunk's new platform release, with faster search and analytics performance and support for new high-volume event collection, should appeal to organizations with high-velocity DevOps and IoT use cases," Tim Grieser, research vice president at IDC, said in a statement last Tuesday. "With this release, Splunk is continuing to make enhancements that can lower total cost of ownership and that improve enterprise manageability."
To support scalable, high-volume data collection, the new version of Splunk Enterprise features a new HTTP event collector that uses a standard API to let applications and devices send millions of events per second directly to Splunk Enterprise or Splunk Cloud. The HTTP event collector can be integrated into developer services like Amazon Web Services' AWS Lambda, as well as Docker and IoT services like Citrix Octoblu and Xively by LogMeIn.
"Splunk Enterprise drives value across our business, form keeping our online banking platform running, to detecting fraud and enhancing security," Patrick Hofmann, head of IT infrastructure and deputy CIO at PostFinance, the financial services unit of Swiss Post, said in a statement. "The new features in Splunk Enterprise 6.3 allow us to optimize search and reporting performance across our data centers with total confidence in the availability of our data. Now, with the expected doubling of the speed of our searches, we can get the insights we rely on faster than ever."
The Splunk Enterprise 6.3 enhancements include the following:
- Increased performance, scale and TCO. Sharp says the new version doubles the speed of search, reporting and data onboarding while reducing hardware requirements by more than 50 percent compared with version 6.0.
- Advanced analysis and visualization of large data sets. Version 6.3 features anomaly detection for uncovering rare invents for further investigation, geospatial maps that present location-based insights by geographic area and single value displays for "at-a-glance" visualizations.
- High-volume event collection for DevOps and IoT devices. Version 6.3 features agentless, direct data onboarding using a developer-standard HTTP/JSON API, supporting millions of events-per-second connectivity.
- New enterprise platform capabilities. Splunk Enterprise 6.3 features new monitoring and visualization that simplifies operational management, custom alerts that trigger actions in business and operational systems and data integrity controls for compliance and ensuring against data tampering.
Sign up for CIO Asia eNewsletters.