Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Elastic{ON} Tour Seattle - Machine Learning Dee...

Elastic Co
October 05, 2017

Elastic{ON} Tour Seattle - Machine Learning Deep Dive

Elastic{ON} Tour Seattle - October 5, 2017

Learn about Machine Learning and Beats such as packetbeat, metricbeat, and filebeat.

Christoph Wurm| Solutions Architect | Elastic

Elastic Co

October 05, 2017
Tweet

More Decks by Elastic Co

Other Decks in Technology

Transcript

  1. 6

  2. 8 DNS Are there signs of data exfiltration? packetbeat Traffic

    Is one of my users an insider threat? metricbeat Auth Logs Is a brute- force attack underway? filebeat Security Analytics
  3. 9 Unusual spike in user latency Server woes or regional

    outage Rare event from sensor Failing device Metrics
  4. 11 Rules Don’t Scale • Where do you set the

    threshold? • Who updates the rules? • False positives are costly
  5. 12 Ingest, Enrich, Visualize, Analyze, Alert Elasticsearch X-pack Master Nodes

    (3) Ingest Nodes (X) Data Nodes - Hot (X) Data Nodes - Warm (X) Beats Log Files Metrics Wire Data your(beat) Filebeat Module NGINX Kibana X-pack Instances (X)