Dell EMC Ready Solutions For Splunk


Dell EMC Ready Solutionsfor SplunkHarness machine data with simplified deployment ofoptimized solutions that scale with easeTable of ContentsData, data everywhere . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2Leverage solutions built for Splunk . . . . . . . . . . . . . . . . . . . . . . . 2Do any of these challenges sound familiar?. . . . . . . . . . . . . . . . . . . . . 3Top Splunk use cases. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4Dell EMC Ready Solutions for Splunk . . . . . . . . . . . . . . . . . . . . . . . . 5Dell EMC Ready Systems for Splunk . . . . . . . . . . . . . . . . . . . . . . 5Dell EMC Ready Bundle for Splunk . . . . . . . . . . . . . . . . . . . . . . . 5Dell EMC Ready System for Splunk on VxRail specifications . . . . . . . . . . 6Dell EMC Ready System for Splunk on VxRack FLEX specifications . . . . . . 7Dell EMC Ready Bundle for Splunk specifications . . . . . . . . . . . . . . . 8Why Dell EMC?. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9Services and financing. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 10Dell EMC Professional Services. . . . . . . . . . . . . . . . . . . . . . . . . 10Dell Financial Services. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 10Take the next steps toward harnessing more data. . . . . . . . . . . . . . . . . 10Solution overview

Solution overviewData, data everywhere Machine data is one of the fastest-growing and complex areas of big data. It also containsa definitive record of events that can reveal information about user transactions, customerbehavior, machine behavior, security threats, fraudulent activity and more. Making use ofthis data, however, presents real challenges. Traditional data analytics solutions are notengineered to handle this high-volume, high-velocity and highly diverse data.Splunk Enterprise is an industry-leading software for machine data analytics. It’s theeasy, fast and secure way to search, analyze and visualize the massive streams of machinedata generated by your IT infrastructure, business applications, computers, mobile phones,embedded systems and other networked devices — physical, virtual and in the cloud —helping you deliver real-time visibility across the entire business. But many organizationsfind it complex and time-consuming to design, architect, test and validate hardwareconfigurations for Splunk.Harness machine data100sof apps and add-onsenhance productivity1Simplify deployment82%decrease in time to deployVxRack FLEX2Upgrade and scalewith ease5Leverage solutions built for SplunkDell EMC and Splunk have partnered to make adopting Splunk simpler by engineering aportfolio of purpose-built Splunk solutions with non-disruptive scalability and performanceoptimized for Splunk workloads. Together, Dell EMC and Splunk enable you to harness thepower of machine data analytics with the simplified deployment and scalability ofDell EMC Ready Solutions.Harness machine dataSplunk makes it simple to collect, analyze and act upon the untapped value of the datagenerated by infrastructure, security solutions and business applications — for theinsights to drive operational performance and business results. Dell EMC Ready Solutionsfor Splunk are purpose-built for the needs of Splunk, helping consolidate, simplify andprotect machine data.Simplify deploymentMaintaining consistent performance — so you get fast query and search capabilitiesfrom Splunk — requires a thoughtful approach to infrastructure design. Dell EMC ReadySolutions for Splunk have been tested and validated with Splunk software to optimize yourSplunk deployment.Upgrade and scale with easeSplunk scales easily from a single focused use case to an enterprise-wide analyticsbackbone. Dell EMC Ready Solutions for Splunk are designed from the start to dynamicallyfit your current and future needs. When it’s time to grow, you can scale without interruptingSplunk operations.minutes to add a new nodewith VxRail31, “Enhance and Extend the ValueSof Splunk,” 2017.2, “HyperconvergedWInfrastructure as a Stepping Stone to TrueHybrid Cloud,” April 2017.3 Enterprise Strategy Group, “VxRailHyper-converged Appliances from Dell EMC,”January 2017.2

Solution overviewDo any of these challenges sound familiar?We think we could benefit from machine data — but don’t know how to get ahandle on itMachine data is the largest and fastest-growing section of data. Every second of everyday, hundreds to thousands of IT components record what’s happening in your business,with records coming in an array of unpredictable formats. Dell EMC Ready Solutionsfor Splunk combine the power of Splunk to make machine data accessible, usable, andvaluable to everyone, with simplicity and scalability.Deploying infrastructure for Splunk is complex and time-consumingOne of the main benefits of Splunk is that it offers advanced functionality for a varietyof well-defined use cases right out of the box. But who wants have to spend weeks andmonths designing, architecting, deploying and tuning the underlying infrastructure? Testedand validated Dell EMC Ready Solutions for Splunk reduce the time, effort and resourcesrequired to architect and build a Splunk solution. In fact, Dell EMC is one of the onlypartners to architect and offer Splunk-validated solutions.It’s hard to anticipate what our future needs will be for SplunkMany organizations find that once they use Splunk for one use case, they want to addmore. In addition, data sets keep growing exponentially, with no end in sight. Dell EMCReady Solutions for Splunk address your current and future needs by offering flexiblesolutions that allow you to scale capacity and compute independently or as a single,hyper-converged system.3

Solution overviewTop Splunk use casesApplicationdeliverySplunk software provides an approach to managing applications, helpingdevelopers deliver applications faster with a positive user experience. Itspans silos to collect, index and analyze the machine data that providesinsight into the availability, performance and usage of applications. Asa result, DevOps organizations can deliver faster releases, operationsteams can reduce mean time to resolution (MTTR) and developmentteams can optimize application quality, performance and costs.BusinessanalyticsSplunk software analyzes, visualizes and monitors machine data fromany source — such as applications, mobile devices and servers — toprovide insights to IT and business operations on-premises and inthe cloud. Delivering these enhanced business insights in real time toexecutives, and to sales, product, marketing, operations and customerservice teams can help transform an organization into a market leader.CloudSplunk enables centralized visibility across cloud, on-premises andhybrid environments, so customers can leverage cloud with the security,visibility and assurance they require. Whether a customer is managingapplications, infrastructure or security operations in the cloud, Splunkdelivers operational intelligence for a real-time understanding of what’shappening across the business and IT, so customers can make betterinformed decisions.IoTSplunk software ingests, analyzes and visualizes real-time and historicalmachine data from any source — including industrial control systemsand connected devices — enabling customers to improve operations,enhance safety and compliance, perform predictive maintenance, andbetter manage the uptime and availability of industrial assets.IToperationsSplunk collects and correlates machine data so customers can quicklytroubleshoot issues and outages, monitor service levels and detectanomalies. Splunk can help reduce MTTR, lower monitoring costs,improve uptime and support strategic initiatives like data centeroptimization and tool consolidation.LogmanagementSplunk can consolidate and index log and machine data, includingstructured, unstructured and complex multi-line application logs.Customers can collect, store, index, search, correlate, visualize,analyze and report on any machine-generated data to identify andresolve operational and security issues in a faster, repeatable and moreaffordable way.Securityand fraudSplunk enables collaboration and implementation of best practicesto address modern cyber threat challenges. With Splunk as a nervecenter, security teams can leverage statistical, visual, behavioral andexploratory analytics to drive insights, decisions and actions.4

Solution overviewDell EMC Ready Solutions for SplunkDell EMC Ready Systems for SplunkSupport enterprise-level machine data analytics and real-time operational intelligenceDell EMC Ready Systems for Splunk can reduce IT risk and total cost of ownership (TCO)while improving time to market, so you can focus on business innovation. Provides rack-scale hyper-converged infrastructure (HCI) including servers, datastorage devices, networking functions, virtualization and management software, inconfigurations that have been tested and validated for Splunk Address current and future needs with VxRack and VxRail Optimize storage data tiering for performance and high retention with Isilon Scale-OutNAS Storage Control costs with simplified, hyper-converged solutions that increase resource utilizationDell EMC Ready Bundle for SplunkDrive business value with real-time insights from machine dataThe Dell EMC Ready Bundle for Splunk provides a validated, supported and configurablesolution that fits the big data scale-out model, so you can meet your specific needs andreduce time to results. Provides a tested and validated multi-component bundle with servers, storage,networking, software and services, in Splunk-optimized configurations that meet orexceed the performance of Splunk’s documented reference hardware Features detailed deployment and implementation guidance for a low-risk, fasttime-to-results Scales from small businesses to medium enterprise full-scale deployments and can bescaled out to handle future needs without extensive upgrades or expensive refreshes5

Solution overviewDell EMC Ready System for Splunk on VxRail ed1TB/daydistributed1TB/daydistributed 0‑dayNumber ofVxRail E460Fnodes3Memory384GB (24x 16GB) or 512GB (16x 32GB)Storage800GB per disk group (1 or 2 groups)Capacity5.235TB (3x 1 92TB) or 20.94TB (6x 3 84TB SSD) per node4Network2x 10GbE SFP per nodeSoftwareSplunk EnterpriseSplunk Universal ForwarderRed Hat Enterprise Linux 64‑bitVMware vSphere EnterpriseVMware vCenter Server VMware vSAN EnterpriseVMware vRealize Log Insight VxRail Manager7‑day forhot/warmbuckets andconfigurableretention forcold storage477Isilon Scale‑Out NAS Storage X410 configurationCPUs2x Intel Xeon E5‑2698 v4RAM128GBSSD capacity3.2TBHDD capacity64TBNetwork2x 10GbE2x 1GbERefer to “Using Splunk Enterprise with VxRail Appliances and Isilon for Analysis ofMachine Data” for more detail.4 he net effective usable capacity of theTVxRail cluster is half the raw capacity.This is due to the Virtual SAN FTT 1policy setting applied to each VM.6

Solution overviewDell EMC Ready System for Splunk on VxRack FLEX stered1TB/daydistributedRetention90‑dayNumber ofVxRack nodes1x search head2x indexers1x adminComputePowerEdge R630 ServersProcessor2x Intel Xeon E5‑2680 v4 per nodeMemory512GB (16x 32GB)Storage10x 3.84TB SSDHot/warmstorage7.2TBCold storage15TBNetworking10GbE Cisco NexusSoftwareSplunk EnterpriseSplunk Universal ForwarderRed Hat Enterprise Linux 64‑bitVMware vSphere EnterpriseVMware vCenter ServerDell EMC Vision Intelligent operationsDell EMC VxFlex OS1TB/dayclustered30‑day for hot/warm data andconfigurableretention forcold storage1x search head5x indexers1x admin1x search head5x indexerswith Isilon forconfigurableretention ofSplunk coldstorage1x adminConfigurable Isilon Scale‑Out NAS Storage X410 configurationCPUs2x Intel XeonE5‑2698 v4RAM128GBSSD capacity3.2TBHDD capacity64TBNetwork2x 10GbE2x 1GbERefer to “Splunk Enterprise on VxRack FLEX for Machine Data Analytics” for more detail.7

Solution overviewDell EMC Ready Bundle for Splunk specificationsSizing250GB/day ayCompute1x PowerEdgeR740xd combinedsearch and indexheadProcessor2x Intel Xeon Gold R740xd: 2x Intel Xeon Gold 51205120R640: 2x Intel Xeon Gold 5118Memory128GB per nodeOS storage(RAID1)300GB per nodeHot/warmstorage4,800GBColdstorage14TB1x PowerEdgeR740xd indexer1x PowerEdgeR640 search head1x PowerEdgeR640 admin250GB/dayclustered2x PowerEdgeR740xd indexers1x PowerEdgeR640 search head1x PowerEdgeR640 admin250GB/dayclusteredTest/devsingle instance210‑day withIsilon cloudbucket expansionN/A2x PowerEdge740xd or R940indexers1x PowerEdgeR640 search head1x PowerEdgeR640 admin2x PowerEdgeR740xd indexerswith Isilon forconfigurableretention ofSplunk coldstorage1x PowerEdgeR640 search head1x PowerEdgeR640 admin1x PowerEdgeR440 combinedsearch and indexheadR940: 2x IntelXeon Platinum 8180R640: 2x IntelXeon Gold 5118R740xd: 2x IntelXeon Gold 5120R640: 2x IntelXeonGold 5118R440: 2x IntelXeon Silver 4114250GB/dayclusteredhigh‑performance960GB63TB with Isilon3.6TBNetworking 2x 10GbE or 2x 25GbE (check suppliers for interoperability support)SoftwareSplunk EnterpriseSplunk Universal ForwarderRed Hat Enterprise Linux 64‑bitOneFSIsilon Scale‑Out NAS Storage H600 configurationCPUs1x Intel XeonE5‑2680 2.4GHzRAM256GB per nodeSSDcapacity4x 800GBHDDcapacity8x 400TBNetwork2x 40GbE2x 10GbE per nodeRefer to “Splunk Enterprise on Dell EMC PowerEdge Servers with Isilon for Machine Data Analytics” for more detail.8

Solution overviewSplunk Enterprise software enables collection, indexing and visualization ofmachine‑generated data gathered from different sources in the IT infrastructure. Thesesources can include applications, networking devices, host and server logs, mobile devicesand more. Splunk turns silos of data into operational insights and provides visibility acrossthe IT infrastructure to enable faster problem solving and informed, data-driven decisions.Splunk also:Splunk IT Service Intelligence Blends metrics and events from both structured and unstructured data sources Delivers powerful visualizations to reveal relationships, track trends andaccelerate investigations Collects and correlates multiple data sources to rapidly pinpoint service degradationsand reduce mean time to repair (MTTR) Monitors infrastructure to detect anomalies and prevent problems in real timeDell EMC PowerEdge Servers create the foundation for an adaptive IT solution, deliveringsuperior agility and reliability, outstanding operational efficiencies, and top performanceat any scale. Versatile, powerful in-server storage accelerates performance of targetedapplications with flexible configurations designed to enhance data center efficiency.Splunk Enterprise SecurityDell EMC VxRail is a preconfigured and pretested VMware hyper-converged infrastructureappliance. Powered by industry-leading VMware vSAN and vSphere software, the VxRailappliance streamlines and extends the VMware environment while dramatically simplifyingIT operations with a known and proven building block for the software-defined datacenter (SDDC).Dell EMC VxRack FLEX delivers virtualization, compute, networking and storage in ascalable, easy-to-manage hyper-converged solution. It integrates VMware vSpherevirtualization software, delivering industry-leading application virtualization with a highlyavailable, resilient, efficient on-demand infrastructure. VxRack FLEX supports multiplehypervisors, operating systems and bare-metal configurations enabling independentscaling of compute and storage, eliminating stranded resources and improving utilization.Dell EMC Isilon X-Series is a flexible storage product that provides large capacity and highperformance. Isilon storage uses intelligent software to scale data across a large number ofcommodity hardware units, enabling explosive growth in performance and capacity.Why Dell EMC?The combination of Dell and EMC brings together two industry-leading companies withstrong reputations for value and innovation. Dell EMC holds leadership positions in some ofthe biggest and largest growth categories in the IT infrastructure business, which meansyou can confidently source your IT needs from one provider — Dell EMC.5I DC WW Quarterly Converged Systems Tracker,Q1 2017, June 2017, Vendor Revenue.6I DC WW Quarterly Converged Systems Tracker,December 2017, Vendor Revenue — CY17Q3.7I DC WW Quarterly Enterprise Storage Systems Tracker,September 2017, Vendor Revenue — EMC Q2 2017.8Dell EMC Annual Report, 2015.9I DC WW Quarterly Cloud IT Infrastructure Tracker,April 2017, Vendor Revenue — EMC Q4 2016.10I DC WW Virtual Machine and Cloud SystemMarket Shares 2016, July 2017.11 ell EMC Pulse, “Gartner Recognizes EMC asDa Leader in the 2016 Data Center Backup andRecovery Software Magic Quadrant,” June 2016.12I DC WW Semiannual SoftwareTracker, 2H2016, April 2017. #1 converged infrastructure5#1 hyper-converged systems6#1 in traditional and all-flash storage7#1 virtualized data center infrastructure8#1 cloud IT infrastructure9#1 server virtualization and cloud systems management software (VMware)10#1 in data protection11#1 in software-defined storage12For more information, see Dell Technologies Key Facts.9

Solution overviewServices and financingDell EMC Professional ServicesSolutions customized for your needsLeverage on-site integration or application implementation with Dell EMC Professional Services.Support is always on for youEnjoy unlimited access to 24x7 chat, email and phone support services with how-to assistanceand disaster recovery from Dell EMC ProSupport.Deployment assistance when you need itYou can trust Dell EMC to deploy the racked configuration in your data center, includingnetwork cabling, operating system, firmware and hypervisor with Dell EMC ProDeploy.Dell EMC Customer Solution CentersExperience Dell EMC solutions in our global network of 21 dedicated facilities The Dell EMCCustomer Solution Centers are trusted environments where world-class IT experts collaboratewith you to share best practices, and facilitate in-depth discussions of effective businessstrategies using briefings, workshops or proofs-of-concept to help you become more successfuland competitive Dell EMC Customer Solution Centers reduce the risk associated with newtechnology investments and can help improve speed of implementation.Dell Financial Services Leasing and financing solutions are available throughout the U.S., Canada and Europe. Dell Financial Services can finance the total technology solution. Electronic quoting and online contracts offer an efficient purchase experience.Learn more about Dell Financial Services.Take the next steps toward harnessing more dataMachine data is everywhere, and it holds the key to better understanding user transactions,customer behavior, machine behavior, security threats, fraudulent activity and more. Contactyour Dell EMC or an authorized partner for more details on how to leverage your machinedata, today.Contact usTo learn more, visit or contact your localrepresentative or authorized reseller.Copyright 2018 Dell Inc. or its subsidiaries. All Rights Reserved. Dell, EMC, and other trademarks are trademarks of Dell Inc. or its subsidiaries.Other trademarks may be the property of their respective owners. Published in the USA 04/18 Solution overview DELL-EMC-SO-SPLUNK-USLET-104Splunk is a registered trademark of Splunk Inc. in the Uni

Dell EMC VxFlex OS Isilon Scale-Out NAS Storage X410 configuration CPUs 2x Intel Xeon E5-2698 v4 RAM 128GB SSD capacity 3 .2TB HDD capacity 64TB Network 2x 10GbE 2x 1GbE Refer to “Splunk Enterprise on VxRack FLEX for Machine Data Analytics ” for more detail .