Please note that this repository is deprecated. Please refer to the official repository:
https://github.com/f5devcentral/f5-telemetry-analytics
This project works on Visualization and Analytics On BIG-IP Data Traffic.
It is powered by docker based BigData Engine Tools: EFK. The scaling-out is an another story, so performance improving work is on the way.
** Quick Glance On The Samples **: docs/screenshots/README.md
- docker
- docker-compose
-
Run
start-all.sh
: For the first time of runningstart-all.sh
, docker command will pull or build images, so it may take a few minutes to finish, depends on the downloading speed of docker images.The
start-all.sh
process do the following 3 things in sequence:- Starts the containers: ELASTICSEARCH FLUENTD .. KIBANA and CTRLBOX.
- Imports kibana dashboards to KIBANA.
- Creates indexs and mappings in ELASTICSEARCH.
-
Setup BIG-IP request logging profile and HSL pool.
More details about Request Logging Profile configuration(or optional using iRules) on BIG-IP, see docs/BIG-IP_Configuration_for_BDE.docx.
To collect logs from BIG-IP virtual servers to EFK, manually, BIG-IP admin needs to
-
Create HSL pool.
The pool member is the host where EFK program starts.
The port is 20001.
-
Create request logging profile using the HSL pool and bind it to the specific virtual server.
On the request logging profile creation page, left all configuration as default except Response Setting -> Template: Use the content of
docs/bigip-settings/http.logging.profile
.
-
-
Discover and View in Dashboard.
Open EntryPage: http://<hostname>:80, or
Open Kibana webpage: http://localhost:5601:
-
Navigate to Discover tab, to view if there are logs comming in.
-
Navigate to Dashboard tab for visualization.
The dashboards can be shared thus embedded in customers' web application via iframe.
Click share to find it.
-
OpNavigate to Machine Learning tab for data analytics(required BYOL).
-
As the "Get Start", there are 3 options for configuring BIG-IP for logging.
-
Request Logging Profile + HSL (Recommended)
Copy the content of
docs/bigip-settings/http.logging.profile
to the request logging profile as mentioned above. A standard content may be like:{ "timestamp": "$DATE_YYYY-$DATE_MM-${DATE_DD}T${TIME_HMS}.000${TIME_OFFSET}", "client-ip": "${X-Forwarded-For}", "host": "$Host", "user-agent": "${User-agent}", "cookie": "$Cookie", "method": "$HTTP_METHOD", "uri": "$HTTP_URI", "username": "$Username", "content-type": "${Content-Type}", "server-ip": "$SERVER_IP", "latency": $RESPONSE_MSECS, "status": "$HTTP_STATCODE" }
Users can customize this configuration based on their own business purpose.
The profile way has least performance impact to data traffic.
-
iRules + HSL
There is an example:
docs/bigip-settings/http.logging.irule
.Also users can define their own logic and metrics for information collecting.
The iRule way is more flexible to business scenario. However, users should consider the performance impact during to add (one more) irule for BIG-IP VS configuration.
-
Automation Telemetry Streaming
This is a new way for metrics collection.
Users need to install the iControlLX extention to BIG-IP for telemetry streaming.
More information, see here: https://clouddocs.f5.com/products/extensions/f5-telemetry-streaming/latest/