Splunk Search

Specific Objectives for using Splunk in Datacenter environment


Hello Experts,

We are a Corporate Data center in our Internal IT department of the company. We host intranet services (HRMS, Knowledge management, ERP, project management, helpdesk, apache, jboss, weblogic, oracle, postgresql, AD etc.) for all our company employees. Our environment contains Unix/Linux/Windows servers, vmware, storage, backups, network, firewalls, dominos messaging and VOIP services. I approached Splunk and they are asking me what are our business objectives for Data Analytics and Operational Intelligence in Datacenter. Actually I am expecting that Splunk team can help us in finding our objectives/use case, but somehow I have jotted down some lists. But I still need more inputs/suggestions on this. Can you provide any inputs on this ? what can be more specific objectives ? I am asking this, as there are lot of people here who are using Splunk in real life scenarios, I want to hear from them.

  1. Log/Event co-relation from Web stack to Infrastructure stack, for faster issue tracking and resolving.
  2. Identify bottlenecks and other disruptions to service
  3. Operational Visibility
  4. Capacity analysis and management - identifying under-utilized or over-utilized resources
  5. Business Insights on the Performances of the Applications
  6. Predictive analysis
  7. Data Center Compute Efficiency
  8. Service Availability


0 Karma


Here's some more..

  • Security (user trends, user locations, tracking authentications, dealing with multiple identities of the same person, unauthorized scans, malware/C&C activity, unauthorized change, proxy monitoring, A/V, etc etc)

  • Compliance (virtually all IS standards have centralized logging as a fundamental tenant)

  • Traffic trending/analysis (wether from firewall logs, flow-data, etc..)

  • Customer research/Business Analytics

And what Splunk like to call "Operational Intelligence" 🙂



Agreed Splunker, but apart from this what all reports I can generate from OS, Server, apache, weblogic and database point of view. Can you put down some points for that please ?


0 Karma
Get Updates on the Splunk Community!

Optimize Cloud Monitoring

  TECH TALKS Optimize Cloud Monitoring Tuesday, August 13, 2024  |  11:00AM–12:00PM PST   Register to ...

What's New in Splunk Cloud Platform 9.2.2403?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.2.2403! Analysts can ...

Stay Connected: Your Guide to July and August Tech Talks, Office Hours, and Webinars!

Dive into our sizzling summer lineup for July and August Community Office Hours and Tech Talks. Scroll down to ...