SlideShare a Scribd company logo
Cyrille Le Clerc
Director of Product Management, Observability
June 2020
Combining Logs, Metrics, and Traces
for Unified Observability
Les logs, traces et indicateurs au service d'une observabilité unifiée
Higher resource utilization
increases monitoring complexity
• Orchestration/Hypervisor
• Dynamic/ephemeral jobs
• You can no longer "point" to where
that job lives
Shift to cloud-native yields
maintainable code, with costs
• Traditional licensing models don't
scale as well as your applications
• Hurdles with autoscaling
Monitoring Complexity
Hardware & software trends are evolving in tandem
Evolving Architectures ~↑ Monitoring Complexity
Les logs, traces et indicateurs au service d'une observabilité unifiée
Development
Team
Ops: Log
Monitoring
Uptime
Response Time
Uptime Tool
Ops: Infra
Monitoring
Web Logs
App Logs
Database Logs
Container Logs
Log Tool
Ops: Service
Monitoring
Real User Monitoring
Txn Perf Monitoring
Distributed Tracing
APM Tool
Container Metrics
Host Metrics
Database Metics
Network Metrics
Storage Metrics
Metrics Tool
Status Quo: Siloed Collection of Tools
APM Data Uptime DataMetrics DataLog Data
Elastic Approach to Observability
Uptime
Response Time
Correctness
Certificate Validation
Web Logs
App Logs
Database Logs
Container Logs
Real User Monitoring
Txn Perf Monitoring
Distributed Tracing
Dependency Mapping
Host/Container Metrics
Database Metics
Network Metrics
Storage Metrics
Dev & Ops Teams
Elastic Common Schema
Unified User Interface
Same UI for KPI dashboards and root-cause analysis
• Ship data from anywhere -- and correlate across your data sources
• The data is yours -- no API rate limiting, no data black boxes
• Cloud native scale -- no constraints on dimensions and cardinalities
Unified Data Layer with Common Schema
Open data keeps your data out of silos
Correlate multiple data sources for more intelligent anomaly detection
Unified Machine Learning and Alerting
Pricing aligned with business value
Unified Licensing Model
PER
AGENT
$$$$
PER
HOST
$$$$
PER
INGEST
$$$$
PER
MONITOR
$$$$
PER
ADD-ON
$$$$
• Intuitive
Single, unified pricing model. No add-ons.
• Cloud native
No problem using with container workloads and serverless.
• Future proof
You pay for capacity and are not locked into a specific use case.
Elastic Stack for logs
Adopt an Open Approach to Centralized Logging
Turnkey data ingestion, intuitive search UI
Make Logs Actionable with Machine Learning
Meet Audit Requirements with Log Lifecycle Management
You’re in control of how your data is tiered
Hot. Warm. Cold. Frozen.
Index Lifecycle Management
Policy based data management that optimize your
cluster behind the scene
Cold storage with online search
Specialized indices for efficient long-term storage
Log archival and rehydratation
Robust snapshot management via API and UI
Elastic Stack for metrics
Evolution of Elastic Stack to a Metrics Store
BKD trees
Data structures optimized for numerical
time series analysis.
Columnar storage
Structured data storage, resulting in
compact storage and faster analytics
Rollups
Aggregate older data into bigger time
buckets
Aggregations framework
Analytics features to slice and dice data
along various dimensions
2012
2016
2014
2018
2019
2020
Prometheus support
Support for ingesting data from
Prometheus exporters and server
Improved support for histograms
Dedicated histogram data type in
Elasticsearch
Turnkey Data Onboarding
100s of data sources at your fingertips
Now 100+ integrations and growing!
Recently added
AWS LAmbda
AWS Virtual Private Cloud
Amazon Aurora DB
Azure Database Metrics
Azure Container Metrics
Google Cloud Platform Pub/Sub
Istio
...
Turn Metrics into Intelligence
Flexible time-series analytics and data visualization
Elastic as an Infrastructure Metrics Solution
Elastic Stack for APM
21
Elastic APM
Elastic joins forces with Opbeat
A next-generation APM solution designed
for developers
2017
2018
Distributed tracing
Distributed tracing with W3C Trace Context
standard
2020
2019
Elastic APM GA
Native Elastic integration, Agents for
Python, Node.js, Ruby, Javascript; Real User
Monitoring
● Java
● Go
● .NET
● Node.js
● Javascript
● RUM
Language Support
● Python
● Ruby
● Go
● PHP (in dev)
• Turnkey agents
• Auto-instrument for common
frameworks
• OpenTracing &
OpenTelemetry to avoid
lock-in
22
Evolution of Elastic Stack to Open Source APM
Elastic joins forces with Opbeat
A next-generation APM solution designed
for developers
2017
2018
Distributed tracing
Distributed tracing with W3C Trace Context
standard
2020
2019
Service Maps, annotations
Full featured UI to navigate APM data
Elastic APM GA
Native Elastic integration, Agents for
Python, Node.js, Ruby, Javascript; Real User
Monitoring
Distributed Tracing
End-to-end transaction tracking
Reduce MTTR with a Unified UI
Navigate traces, metrics, and logs in one UI for faster issue resolution
25
Elastic Stack for uptime
Heartbeat: Uptime Monitoring
alerts
Les logs, traces et indicateurs au service d'une observabilité unifiée
28
Demo
Demo
Demo app: Google’s microservices demo “Online Boutique”
Demo App Architecture
Microservices Architecture
Observe
Dashboard
Observe
Anomaly Detection with Machine Learning
Detect
Alerts
Investigate
Distributed Traces
Investigate
Distributed Traces
Investigate
Single Pane of Glass
Events on the system
Investigate
Single Pane of Glass
Contextual Links
● Trace logs
● Host logs & Metrics
● Custom links
○ Other monitoring tools
○ Support / dev tools
Investigate
Single Pane of Glass
Investigate
Single Pane of Glass
Investigate
Single Pane of Glass
Investigate
Single Pane of Glass
Investigate
Hich Cardinalities for Better Search
Investigate
Hich Cardinalities for Better Search
44
Demo
Demo Key Takeaways
• Unified Observability
○ Single tool
○ Investigate deep in any dimension
○ All data types: logs, metrics, APM, and synthetics
○ All layers: application and infrastructure
○ High cardinalities for powerful search
46
Demo
What now?
Try it yourself!
While you observe, why not protect?
Elastic SIEM & Endpoint
Questions?

More Related Content

PDF
Elastic Security : Protéger son entreprise avec la Suite Elastic
PDF
Automate threat detections and avoid false positives
PDF
Get full visibility and find hidden security issues
PDF
Infrastructure monitoring made easy, from ingest to insight
PDF
Reinventing enterprise defense with the Elastic Stack
PDF
Automatize a detecção de ameaças e evite falsos positivos
PDF
Siscale Lightning Talk: Automated Root Cause Analysis with Elastic Stack
PDF
Building Elastic into security operations
Elastic Security : Protéger son entreprise avec la Suite Elastic
Automate threat detections and avoid false positives
Get full visibility and find hidden security issues
Infrastructure monitoring made easy, from ingest to insight
Reinventing enterprise defense with the Elastic Stack
Automatize a detecção de ameaças e evite falsos positivos
Siscale Lightning Talk: Automated Root Cause Analysis with Elastic Stack
Building Elastic into security operations

What's hot (20)

PDF
Palestra de abertura: Evolução e visão do Elastic Observability
PDF
Keynote: Elastic Security evolution and vision
PDF
Elastic and Google: Observability for multicloud and hybrid environments
PDF
Search for all with Elastic Enterprise Search
PDF
Elastic @ Adobe: Making Search Smarter with Machine Learning at Scale
PDF
Elastic APM: Amping up your logs and metrics for the full picture
PDF
Keynote: Elastic Observability evolution and vision
PDF
Keynote: Elastic Security evolution and vision
PDF
End-to-End Security Analytics with the Elastic Stack
PDF
O monitoramento da infraestrutura facilitado, da ingestão ao insight
PDF
Machine Learning for Anomaly Detection, Time Series Modeling, and More
PDF
Empower your security practitioners with the Elastic Stack
PDF
Construção de uma plataforma de observabilidade centralizada
PDF
Microsoft: Enterprise search for cloud native applications
PDF
Get full visibility and find hidden security issues
PDF
How KeyBank Used Elastic to Build an Enterprise Monitoring Solution
PDF
Security Events Logging at Bell with the Elastic Stack
PDF
Log Monitoring and Anomaly Detection at Scale at ORNL
PDF
Combinación de logs, métricas y rastreos para observabilidad unificada
PDF
Elastic APM : développez vos logs et vos indicateurs pour obtenir une vue com...
Palestra de abertura: Evolução e visão do Elastic Observability
Keynote: Elastic Security evolution and vision
Elastic and Google: Observability for multicloud and hybrid environments
Search for all with Elastic Enterprise Search
Elastic @ Adobe: Making Search Smarter with Machine Learning at Scale
Elastic APM: Amping up your logs and metrics for the full picture
Keynote: Elastic Observability evolution and vision
Keynote: Elastic Security evolution and vision
End-to-End Security Analytics with the Elastic Stack
O monitoramento da infraestrutura facilitado, da ingestão ao insight
Machine Learning for Anomaly Detection, Time Series Modeling, and More
Empower your security practitioners with the Elastic Stack
Construção de uma plataforma de observabilidade centralizada
Microsoft: Enterprise search for cloud native applications
Get full visibility and find hidden security issues
How KeyBank Used Elastic to Build an Enterprise Monitoring Solution
Security Events Logging at Bell with the Elastic Stack
Log Monitoring and Anomaly Detection at Scale at ORNL
Combinación de logs, métricas y rastreos para observabilidad unificada
Elastic APM : développez vos logs et vos indicateurs pour obtenir une vue com...
Ad

Similar to Les logs, traces et indicateurs au service d'une observabilité unifiée (20)

PDF
Combining Logs, Metrics, and Traces for Unified Observability
PDF
Combining Logs, Metrics, and Traces for Unified Observability
PDF
Combinação de logs, métricas e rastreamentos para observabilidade unificada
PDF
Combining logs, metrics, and traces for unified observability
PDF
Feature drift monitoring as a service for machine learning models at scale
PPTX
Gimel and PayPal Notebooks @ TDWI Leadership Summit Orlando
PPTX
ELK Solutions Enablement Session - 17th March'2020
PDF
Azure Monitoring Overview
PDF
Analytics&IoT
PDF
How to create custom dashboards in Elastic Search / Kibana with Performance V...
PDF
Conferencia principal: Evolución y visión de Elastic Observability
PPTX
Big Data Berlin v8.0 Stream Processing with Apache Apex
PPTX
Thomas Weise, Apache Apex PMC Member and Architect/Co-Founder, DataTorrent - ...
PPTX
ADDO Open Source Observability Tools
PDF
Cloud Experience: Data-driven Applications Made Simple and Fast
PDF
Peek into Neo4j Product Strategy and Roadmap
PDF
Keynote : évolution et vision d'Elastic Observability
PPTX
Building a Real-Time Security Application Using Log Data and Machine Learning...
PPTX
Feature Store as a Data Foundation for Machine Learning
PDF
DevOps in the Cloud with Microsoft Azure
Combining Logs, Metrics, and Traces for Unified Observability
Combining Logs, Metrics, and Traces for Unified Observability
Combinação de logs, métricas e rastreamentos para observabilidade unificada
Combining logs, metrics, and traces for unified observability
Feature drift monitoring as a service for machine learning models at scale
Gimel and PayPal Notebooks @ TDWI Leadership Summit Orlando
ELK Solutions Enablement Session - 17th March'2020
Azure Monitoring Overview
Analytics&IoT
How to create custom dashboards in Elastic Search / Kibana with Performance V...
Conferencia principal: Evolución y visión de Elastic Observability
Big Data Berlin v8.0 Stream Processing with Apache Apex
Thomas Weise, Apache Apex PMC Member and Architect/Co-Founder, DataTorrent - ...
ADDO Open Source Observability Tools
Cloud Experience: Data-driven Applications Made Simple and Fast
Peek into Neo4j Product Strategy and Roadmap
Keynote : évolution et vision d'Elastic Observability
Building a Real-Time Security Application Using Log Data and Machine Learning...
Feature Store as a Data Foundation for Machine Learning
DevOps in the Cloud with Microsoft Azure
Ad

More from Elasticsearch (20)

PDF
An introduction to Elasticsearch's advanced relevance ranking toolbox
PDF
From MSP to MSSP using Elastic
PDF
Cómo crear excelentes experiencias de búsqueda en sitios web
PDF
Te damos la bienvenida a una nueva forma de realizar búsquedas
PDF
Tirez pleinement parti d'Elastic grâce à Elastic Cloud
PDF
Comment transformer vos données en informations exploitables
PDF
Plongez au cœur de la recherche dans tous ses états.
PDF
Modernising One Legal Se@rch with Elastic Enterprise Search [Customer Story]
PDF
An introduction to Elasticsearch's advanced relevance ranking toolbox
PDF
Welcome to a new state of find
PDF
Building great website search experiences
PDF
Keynote: Harnessing the power of Elasticsearch for simplified search
PDF
Cómo transformar los datos en análisis con los que tomar decisiones
PDF
Explore relève les défis Big Data avec Elastic Cloud
PDF
Comment transformer vos données en informations exploitables
PDF
Transforming data into actionable insights
PDF
Opening Keynote: Why Elastic?
PDF
Empowering agencies using Elastic as a Service inside Government
PDF
The opportunities and challenges of data for public good
PDF
Enterprise search and unstructured data with CGI and Elastic
An introduction to Elasticsearch's advanced relevance ranking toolbox
From MSP to MSSP using Elastic
Cómo crear excelentes experiencias de búsqueda en sitios web
Te damos la bienvenida a una nueva forma de realizar búsquedas
Tirez pleinement parti d'Elastic grâce à Elastic Cloud
Comment transformer vos données en informations exploitables
Plongez au cœur de la recherche dans tous ses états.
Modernising One Legal Se@rch with Elastic Enterprise Search [Customer Story]
An introduction to Elasticsearch's advanced relevance ranking toolbox
Welcome to a new state of find
Building great website search experiences
Keynote: Harnessing the power of Elasticsearch for simplified search
Cómo transformar los datos en análisis con los que tomar decisiones
Explore relève les défis Big Data avec Elastic Cloud
Comment transformer vos données en informations exploitables
Transforming data into actionable insights
Opening Keynote: Why Elastic?
Empowering agencies using Elastic as a Service inside Government
The opportunities and challenges of data for public good
Enterprise search and unstructured data with CGI and Elastic

Recently uploaded (20)

PPT
“AI and Expert System Decision Support & Business Intelligence Systems”
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PPTX
A Presentation on Artificial Intelligence
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PDF
Empathic Computing: Creating Shared Understanding
PDF
Electronic commerce courselecture one. Pdf
PDF
CIFDAQ's Market Insight: SEC Turns Pro Crypto
PDF
KodekX | Application Modernization Development
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PDF
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
“AI and Expert System Decision Support & Business Intelligence Systems”
Diabetes mellitus diagnosis method based random forest with bat algorithm
A Presentation on Artificial Intelligence
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
Reach Out and Touch Someone: Haptics and Empathic Computing
Review of recent advances in non-invasive hemoglobin estimation
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Empathic Computing: Creating Shared Understanding
Electronic commerce courselecture one. Pdf
CIFDAQ's Market Insight: SEC Turns Pro Crypto
KodekX | Application Modernization Development
Digital-Transformation-Roadmap-for-Companies.pptx
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Building Integrated photovoltaic BIPV_UPV.pdf
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx

Les logs, traces et indicateurs au service d'une observabilité unifiée

  • 1. Cyrille Le Clerc Director of Product Management, Observability June 2020 Combining Logs, Metrics, and Traces for Unified Observability
  • 3. Higher resource utilization increases monitoring complexity • Orchestration/Hypervisor • Dynamic/ephemeral jobs • You can no longer "point" to where that job lives Shift to cloud-native yields maintainable code, with costs • Traditional licensing models don't scale as well as your applications • Hurdles with autoscaling Monitoring Complexity Hardware & software trends are evolving in tandem Evolving Architectures ~↑ Monitoring Complexity
  • 5. Development Team Ops: Log Monitoring Uptime Response Time Uptime Tool Ops: Infra Monitoring Web Logs App Logs Database Logs Container Logs Log Tool Ops: Service Monitoring Real User Monitoring Txn Perf Monitoring Distributed Tracing APM Tool Container Metrics Host Metrics Database Metics Network Metrics Storage Metrics Metrics Tool Status Quo: Siloed Collection of Tools
  • 6. APM Data Uptime DataMetrics DataLog Data Elastic Approach to Observability Uptime Response Time Correctness Certificate Validation Web Logs App Logs Database Logs Container Logs Real User Monitoring Txn Perf Monitoring Distributed Tracing Dependency Mapping Host/Container Metrics Database Metics Network Metrics Storage Metrics Dev & Ops Teams Elastic Common Schema
  • 7. Unified User Interface Same UI for KPI dashboards and root-cause analysis
  • 8. • Ship data from anywhere -- and correlate across your data sources • The data is yours -- no API rate limiting, no data black boxes • Cloud native scale -- no constraints on dimensions and cardinalities Unified Data Layer with Common Schema Open data keeps your data out of silos
  • 9. Correlate multiple data sources for more intelligent anomaly detection Unified Machine Learning and Alerting
  • 10. Pricing aligned with business value Unified Licensing Model PER AGENT $$$$ PER HOST $$$$ PER INGEST $$$$ PER MONITOR $$$$ PER ADD-ON $$$$ • Intuitive Single, unified pricing model. No add-ons. • Cloud native No problem using with container workloads and serverless. • Future proof You pay for capacity and are not locked into a specific use case.
  • 12. Adopt an Open Approach to Centralized Logging Turnkey data ingestion, intuitive search UI
  • 13. Make Logs Actionable with Machine Learning
  • 14. Meet Audit Requirements with Log Lifecycle Management You’re in control of how your data is tiered Hot. Warm. Cold. Frozen. Index Lifecycle Management Policy based data management that optimize your cluster behind the scene Cold storage with online search Specialized indices for efficient long-term storage Log archival and rehydratation Robust snapshot management via API and UI
  • 15. Elastic Stack for metrics
  • 16. Evolution of Elastic Stack to a Metrics Store BKD trees Data structures optimized for numerical time series analysis. Columnar storage Structured data storage, resulting in compact storage and faster analytics Rollups Aggregate older data into bigger time buckets Aggregations framework Analytics features to slice and dice data along various dimensions 2012 2016 2014 2018 2019 2020 Prometheus support Support for ingesting data from Prometheus exporters and server Improved support for histograms Dedicated histogram data type in Elasticsearch
  • 17. Turnkey Data Onboarding 100s of data sources at your fingertips Now 100+ integrations and growing! Recently added AWS LAmbda AWS Virtual Private Cloud Amazon Aurora DB Azure Database Metrics Azure Container Metrics Google Cloud Platform Pub/Sub Istio ...
  • 18. Turn Metrics into Intelligence Flexible time-series analytics and data visualization
  • 19. Elastic as an Infrastructure Metrics Solution
  • 21. 21 Elastic APM Elastic joins forces with Opbeat A next-generation APM solution designed for developers 2017 2018 Distributed tracing Distributed tracing with W3C Trace Context standard 2020 2019 Elastic APM GA Native Elastic integration, Agents for Python, Node.js, Ruby, Javascript; Real User Monitoring ● Java ● Go ● .NET ● Node.js ● Javascript ● RUM Language Support ● Python ● Ruby ● Go ● PHP (in dev) • Turnkey agents • Auto-instrument for common frameworks • OpenTracing & OpenTelemetry to avoid lock-in
  • 22. 22 Evolution of Elastic Stack to Open Source APM Elastic joins forces with Opbeat A next-generation APM solution designed for developers 2017 2018 Distributed tracing Distributed tracing with W3C Trace Context standard 2020 2019 Service Maps, annotations Full featured UI to navigate APM data Elastic APM GA Native Elastic integration, Agents for Python, Node.js, Ruby, Javascript; Real User Monitoring
  • 24. Reduce MTTR with a Unified UI Navigate traces, metrics, and logs in one UI for faster issue resolution
  • 29. Demo Demo app: Google’s microservices demo “Online Boutique”
  • 32. Observe Anomaly Detection with Machine Learning
  • 36. Investigate Single Pane of Glass Events on the system
  • 37. Investigate Single Pane of Glass Contextual Links ● Trace logs ● Host logs & Metrics ● Custom links ○ Other monitoring tools ○ Support / dev tools
  • 45. Demo Key Takeaways • Unified Observability ○ Single tool ○ Investigate deep in any dimension ○ All data types: logs, metrics, APM, and synthetics ○ All layers: application and infrastructure ○ High cardinalities for powerful search
  • 47. What now? Try it yourself!
  • 48. While you observe, why not protect? Elastic SIEM & Endpoint