Conflux is a LMaaS (Log Management as a Service) module offered as part of the Cloudaware platform. Conflux discovers, enhances and aggregates logs from cloud providers, such as AWS, Azure and GCP. Besides standard log management functionality, such as search and visualization, Conflux provides enhanced capabilities such as security, monitoring, alerting, reporting, anomaly detection and forecasting. Conflux is available via Cloudaware Launcher.
Automatic Log Discovery
Whenever a user creates new objects - Load Balancers, S3 Buckets and RDS Databases - cloud provider requests the user to provide destination logging location, like a bucket or big query table. This flexibility is great, but large cloud consumers end up with hundreds of locations for log storage. This often results in fragmented data.
...
Provider | Log |
---|---|
AWS | CloudTrail, VPC Flow Logs, CloudFront; Billing Cost Allocation, DBR and CUR; S3 Access Logs, Elb Access Logs, Alb Access Logs, Route53 Logs |
Azure | Azure Network Logs, Azure Billing Data |
GCP | GCP Billing Data |
Operating System | Metrics Beat, File Beat, Winlogbeat |
Custom Push Via Syslog | Any custom log file |
Custom Pull Via Breeze/LogBeat | Any custom log file |
Graph API and Automated Relationship Detection
Conflux analyzes network, spending and security logs to identify relationships and dependencies between objects in CMDB. Using graph API, users can perform an in-depth impact analysis necessary in security, availability and disaster recovery use cases.
...
Anomaly Detection
Conflux offers three types of anomaly detection for all of its data:
Single Metrics - detect anomalies in single time series e.g. Total Spending By Day
Multi-Metrics - detect anomalies across multiple time series, e.g. CPU
Network Traffic by Instance and Population - detect activity that is unusual compared to the behaviour of the population e.g. console users’ logins.
...
Reliability and Scalability
Conflux is a highly redundant service with data replicated across multiple cloud providers and regions. Customers can request specific datacenter locations such as US Only, EU Only, etc.
...
Security
Granular Access and Audit Controls
...
Conflux deployments run in a compartmentalized secure environment, and your data exists on virtually dedicated servers to ensure it remains isolated from other customers’ data.
Supported Alert Mechanisms
...