
Splunk Enterprise
Collect and Index Data
Index data regardless of format or location – logs, clickstreams, sensors, stream network traffic, web servers, custom applications, hypervisors, social media, and cloud services. Because the structure and schema are applied only at search time you can analyze the data without limitation.

Search and Investigate
Search data using the powerful and intuitive Splunk Search Processing Language (SPL™). Splunk automatically normalizes your varying data formats and provides 140+ commands so you can perform statistical searches, calculate metrics and even look for specific conditions within a rolling time window. Zoom in and out on timelines to automatically reveal trends, spikes and patterns and click to drill down into search results.

Correlate and Analyze
Splunk makes it easy to find relationships between events or activities. Correlate based on time, location, or custom search results. Use the Transaction command to identify related events as a transaction or session and investigate failed transactions. Let the Event Pattern Detection command automatically find common or rare patterns in your big data. Enable users to discover and share additional insights with the point-and-click ease of the unique Pivot interface.

Visualize and Report
Visualize trends and characteristics in custom dashboards and reports suited to any business, operational or security need. Analyze further with chart overlay and pan and zoom controls. Predictive visualizations let you forecast highs and lows, plan system resources and anticipate workloads. You can also personalize dashboards and reports for anyone, share them as PDFs, or embed them into other applications.

Monitor and Alert
Turn searches into real-time alerts and automatically trigger notifications via email or RSS; then execute remedial actions, send an SNMP trap or generate a trouble ticket. Alerts can be triggered based on a variety of thresholds, trend-based conditions and other complex criteria. Gain additional information at the time of the alert to assist with faster root cause analysis and problem resolution.

Access from Anywhere
Administrators and users can securely access Splunk Enterprise via any standard browser. Splunk Mobile Access enables users to view, interact with and share Splunk operational intelligence using Apple iOS or Android mobile devices. Tailored alerts and views enable managers to track and act on key performance indicators and enable front-line administrators to monitor and investigate operational status from any location.
