Upload
splunk
View
822
Download
1
Embed Size (px)
Citation preview
Copyright © 2015 Splunk Inc.
Splunk as our data hubNiclas Enhorning
CEO,Mr Green Technology
2
Mr Green is an online casino, founded in 2007 Active in 12 EU countriesKey differentiators include emphasis on “green gaming”, the provision of a single wallet across a range of games as well as a unique brand
3
4
Mr Green Technology principles….
Speed is key Remove dependencies
Enable business
Counterpart to business
Degradation of services
Reward the right
behaviour
Top talent attracts other
talent
5
History of Splunk at Mr Green
Splunk introduced(IT troubleshooting across
select applications)
Splunk becomes data hub
20112013
Splunk ITSI introduced
2015
20122014
2016
I join Mr Green
6
Why Splunk?
We needed a centralised data hub to support our infrastructure and support increased
release cycles
7
Splunk evolution
Existing small licence
Transition to central data hub
Splunk ITSI
Splunk usage had been focused on troubleshooting select applications affecting customer experience
We wanted a central data hub to store data in a raw format, with a layer on top to allow us to make direct changes. Splunk becomes Mr Green’s big data solution
With all our data already in Splunk we decided to use Splunk ITSI to provide further business value
8
Hardware● Primary site
○ 12 Physical servers
○ 16 cores, 32 GB Ram per node
○ SSD Storage
○ 9 indexers, 3 search heads
● 3 Virtual indexers for DR offsite.
9
Storefront
Cloudflare
Casino IOS Android
Client Gateways
Nyx
MrG CAPI
CashierPayment Gateway
NYX
Event Hub
Tracking
Splunk at the center
10
Mr Green’s Lambda architecture
10
Bonus Engine Green Gaming
11
● Datasources: RabbitMQ, SQL Server, Application logs
● Splunk apps: ITSI
Curiosa
12
Curiosa● Users
○ Tech uses to monitor not only logs but also business
and releases and changes
○ CS, dashboards for the NOC service
○ Business to become datadriven
○ Systems for getting the offline data
● Usage
○ Collect all events in the system
○ Monitoring
○ Surveillance
○ Measure
13
Splunk impactAll infrastructure log data is within Splunk, making it central to our entire operation
We are now able to continuously deploy successful updates, with around 600 releases per month that correlates to 30 releases a day. Splunk is also fully continuous
Rebuilding the whole architecture has enabled us to launch several new products. E.g IOS, Android, Bonus engine
14
My dream…..When I was responsible for application operations I had a dream...
Of somewhere you could see the whole of IT Operations….
Where you could see traffic patterns and compare to historical data…
Where you could monitor business KPIs and compare with historical data and get alerts….
Where the dashboard showed green yellow and red when something was not working as intended…..
15
The dream is now reality….ITSI at Mr Green
Screenshot here
16
• Field conventions are important, needs to be aligned with
business
• Incremental import from databases is not easy depending on
schema, real-time events are better
• Setup a multi-site cluster from the beginning so that all buckets
becomes multi site buckets.
Lessons learned
17
ITSI benefitsWe can see and
monitor the performance of the
entire of the Mr Green business
All executives have access to a Splunk dashboard for real-
time insight into performance
We can understand immediately if
upgrades are behaving as expected
Every marketing campaign has a
dashboard to chart progress
18
The future for Splunk ITSI…
Integration into the customer
operations center
Incorporate third party data
Thank You