- Splunk 7 Essentials(Third Edition)
- J P Contreras Erickson Delgado Betsy Page Sigman
- 157字
- 2021-08-27 19:37:57
Streaming data
Streaming data is almost always being generated, with a timestamp associated to each entry. Splunk's inherent ability to monitor and track data loaded from ever growing log files, or accept data as it arrives on a port, are critical pieces of functionality.
However, streaming data is no different than other data in that it's usefulness erodes, particularly at a detailed level. For instance, consider a firewall log.
In real time, Splunk will capture and index events written to a firewall log file. Normally, there will be many different activity events logged to Splunk in real time. However, many of those events are normal logging events noting activity occurring successfully.
As you consider your source data, its important to consider how long you want to retain data and/or how you would want to archive it. It is also important to understand if you need all the data from the source or only specific kinds of events.
- Google Cloud Platform Cookbook
- 自動檢測與傳感技術(shù)
- Splunk Operational Intelligence Cookbook
- Grome Terrain Modeling with Ogre3D,UDK,and Unity3D
- 菜鳥起飛系統(tǒng)安裝與重裝
- 過程控制系統(tǒng)
- 深度學(xué)習(xí)原理與 TensorFlow實(shí)踐
- 30天學(xué)通Java Web項(xiàng)目案例開發(fā)
- 智能+:制造業(yè)的智能化轉(zhuǎn)型
- 精通ROS機(jī)器人編程(原書第2版)
- Eclipse全程指南
- CPLD/FPGA技術(shù)應(yīng)用
- Flink內(nèi)核原理與實(shí)現(xiàn)
- R Statistics Cookbook
- 多媒體技術(shù)應(yīng)用教程