Customers have high expectations. Splunk Enterprise delivers the answers you need to exceed them. Machine data is the key.Watch Video
Splunk Enterprise monitors and analyzes machine data from any source to deliver Operational Intelligence to optimize your IT, security and business performance. With intuitive analysis features, machine learning, packaged applications and open APIs, Splunk Enterprise is a flexible platform that scales from focused use cases to an enterprise-wide analytics backbone.
Index data regardless of format or location – metrics, logs, clickstreams, sensors, stream network traffic, web servers, custom applications, hypervisors, social media, and cloud services. Because the structure and schema are applied only at search time you can analyze the data without limitation.
Search data using the powerful and intuitive Splunk Search Processing Language (SPL™). Splunk automatically normalizes your varying data formats and provides 140+ commands so you can perform statistical searches, calculate metrics and even look for specific conditions within a rolling time window. Zoom in and out on timelines to automatically reveal trends, spikes and patterns and click to drill down into search results.
Splunk makes it easy to find relationships between events or activities. Correlate based on time, location, or custom search results. Use the Transaction command to identify related events as a transaction or session and investigate failed transactions. Decipher what is and is not actionable from disparate data sources with Event Annotation. Enable users to discover and share insights with the point-and-click ease of the Tables and Pivot interfaces. Use the power of machine learning to automatically identify anomalies and incidents.
Visualize trends and characteristics in custom dashboards and reports suited to any business, operational or security need. Analyze further with chart overlay and pan and zoom controls. Predictive visualizations let you forecast highs and lows, plan system resources and anticipate workloads. You can also personalize dashboards and reports for anyone, share them as PDFs, or embed them into other applications.
Turn searches into real-time alerts and automatically trigger notifications via email or RSS; then execute remedial actions, send an SNMP trap or generate a trouble ticket. Alerts can be triggered based on a variety of thresholds, trend-based conditions and other complex criteria. Gain additional information at the time of the alert to assist with faster root cause analysis and problem resolution.
Administrators and users can securely access Splunk Enterprise via any standard browser. Splunk Mobile Access enables users to view, interact with and share Splunk operational intelligence using Apple iOS or Android mobile devices. Tailored alerts and views enable managers to track and act on key performance indicators and enable front-line administrators to monitor and investigate operational status from any location.
Splunk Enterprise 7.0 delivers advancements in machine learning, with massive scale and speed for data analytics, monitoring and alerting.
Numerical data points captured over time, that can be compressed, stored, processed and retrieved more efficiently than events. In the new release, the use of metric data boosts the speed of monitoring, searching and alerting by at least 20X over previous releases.
Enhancements to the toolkit include an improved API, role-based access controls for machine learning models and new out-of-the-box algorithms to make it even easier for you to predict future IT, security, and business outcomes.
Decipher what is and is not actionable from disparate data sources. Event Annotation unifies and correlates log events, annotations and metrics into a single view.
Our app ecosystem just keeps getting better. Splunkbase boosts the power of Splunk Enterprise 7.0 with 1,000+ solutions, providing ready-to-use analytics, alerts, dashboards, and visualizations.
Unanticipated data growth or bursts of new data during an incident investigation will no longer interrupt your mission-critical Splunk operations.
Splunk customers can now use free Dev/Test licenses to explore new data sources and use cases before moving to production.
The enterprise machine data fabric provides a flexible data architecture that facilitates insights from your data to provide Operational Intelligence.
Using no predefined schema, Splunk Universal Forwarders and collection methods such as syslog, HTTP direct API, scripted inputs, and the mobile SDK can index unstructured data from sources such as applications, sensors, endpoint devices, mainframes, industrial systems and network packet streams. Splunk can also combine your machine data with data in your relational databases, data warehouses, and Hadoop and NoSQL data stores.
Multi-site clustering and automatic load balancing scale to support hundreds of terabytes of data per day, optimize response times and provide continuous availability. Search Head Clustering provides support for a virtually unlimited number of concurrent users and searches. In addition, the High Performance Analytics Store, the Metrics Store and other acceleration technologies enable you to generate reports on big data at lightning fast speeds.
A robust security model provides secure data transfer, granular role-based access controls, LDAP integration and single sign-on, auditability and data integrity. Every transaction is authenticated, whether through the web and mobile interfaces, command line interface or the Splunk Enterprise API. The distributed management console provides enterprise-wide administration and maintains a complete, signed audit trail of administrative actions and search history.
Apps from Splunk, our partners and our community enhance and extend the power of the Splunk platform. Optimize data collection and analysis from your favorite sources. Empower users with pre-built visualizations and functions for security, IT management, business analysis and more. Whatever your need, these apps help you get powerful results right out of the box. Browse Splunkbase to take advantage of the 1,000+ apps and add-ons that you can immediately use with Splunk.
Splunk Enterprise is the foundation for your enterprise-wide Operational Intelligence. Embed Splunk reports and data in any application. Enrich your relational databases and reports with Splunk insights, trigger actions in ticketing or other systems, or use our ODBC integrations to access Splunk Operational Intelligence in familiar applications such as Microsoft Excel or Tableau.