23
TechChat - What's New in Sumo Logic Colin Corstorphine - Customer Success Manager Ben Newton - Senior Product Manager

Tech Chat – What's New in Sumo Logic

Embed Size (px)

DESCRIPTION

Join this webinar to learn how Sumo Logic continues to innovate its service to meet and exceed customer needs. In this session you will gain deep insights into new features, which also address popular customer requests. Colin B Corstorphine - Customer Success Manager and Ben Newton - Product Manager at Sumo Logic will discuss how: * Transaction Analytics can help you uncover transactional context for deeper business insights * The new features reduce complexity in your daily operations * The Pinned Search feature helps you manage your searches efficiently * Field Extraction can automatically parse log data in real-time

Citation preview

Page 1: Tech Chat – What's New in Sumo Logic

TechChat - What's New in Sumo Logic

Colin Corstorphine - Customer Success ManagerBen Newton - Senior Product Manager

Page 2: Tech Chat – What's New in Sumo Logic

Transaction Analytics

Track and analyze the components and flow of each transaction across the underlying infrastructure for

deeper contextual insights

Page 3: Tech Chat – What's New in Sumo Logic

Transaction Analytics Use Cases

•For example, detect source and root-cause of failed registrations

Correlate Customer Experience Issues

•Evaluate new product releases and formulate product strategy by analyzing user interaction

Determine User Behavior and Product Strategy

•Discover problems and slowdowns in your application transactions

Troubleshoot Application Problems

Page 4: Tech Chat – What's New in Sumo Logic

DEMO

Page 5: Tech Chat – What's New in Sumo Logic

Examine Transactions in Detail

Page 6: Tech Chat – What's New in Sumo Logic

Examine Transaction Flow

Page 7: Tech Chat – What's New in Sumo Logic

Field Extraction Rules

Automatically extract fields after collection and leverage those fields across the entire Sumo Logic Product

Page 8: Tech Chat – What's New in Sumo Logic

Field Extraction Benefits

•Remove the need to parse out fields at search time

Simplifying Searches

•Guarantee the same field names across teams, searches, and dashboards

Standardizing Searches and Field Names

•Quickly search logs based on field values without using where clauses

Search Performance

Page 9: Tech Chat – What's New in Sumo Logic

DEMO

Page 10: Tech Chat – What's New in Sumo Logic

Example: Apache Access

Page 11: Tech Chat – What's New in Sumo Logic
Page 12: Tech Chat – What's New in Sumo Logic
Page 13: Tech Chat – What's New in Sumo Logic
Page 14: Tech Chat – What's New in Sumo Logic

• Parsing Statements in lots of searches

• Fields commonly placed in where clauses– Ex. Use fieldname=foo in search constraints

• Fields used to tie logs together– Ex. Session ID, user name, process ID, etc.

• Fields used in long searches– Ex. User Name search over 7 days

Where do I use Field Extraction Rules?

Sumo Logic Confidential

Page 15: Tech Chat – What's New in Sumo Logic

• Extract the minimum fields necessary

• Make sure that your field extractions cover common searches

• Don’t extract fields if the parsing is in question or subject to change

• Supported Operators• parse, parse regex/extract, where, if, as

Field Extractions best practices

Sumo Logic Confidential

Page 16: Tech Chat – What's New in Sumo Logic

• Field Extraction Rules are processed directly after ingestion• Before partitioning, dashboards, etc.

• There is a 50 rule limit

• There is a 200 field limit

• Searching will display ALL possible fields from results

Important Details

Sumo Logic Confidential

Page 17: Tech Chat – What's New in Sumo Logic

Recent and Pinned Searches

Don’t lose search results when closing your browser, run searches in the background, and retain results for 3 days

Page 18: Tech Chat – What's New in Sumo Logic

Recent and Pinned Searches Benefits

•Recent search results kept for up to 3 hours

No More Lost Searches

•Pin a search to run in the background and keep the results up to 3 days

No more timed-out searches

Page 19: Tech Chat – What's New in Sumo Logic

DEMO

Page 20: Tech Chat – What's New in Sumo Logic
Page 21: Tech Chat – What's New in Sumo Logic

• Only 10 total pinned searches allowed at one time

• Pinned searches pause after 24 hours and can be started back again

• Non-aggregate searches paused automatically after 100K results. Queries can be resumed if desired.

Important Details

Sumo Logic Confidential

Page 22: Tech Chat – What's New in Sumo Logic

Q&A

Page 23: Tech Chat – What's New in Sumo Logic

Sumo Logic Confidential