≡ Menu

dougmcclure.net

thoughts on business, service and technology operations and management in the digital transformation era

Now that you’ve identified the sources of what’s important within your environment and crafted that data and information into messages that prompt action and decision making, it’s time to think about getting this data and information into a manageable format for processing and visualization.

I’ve discussed what events are and shared some initial thoughts on building events for BSM here and included references to complex event processing (CEP), event driven architecture (EDA) and event stream processing (ESP) here. I still plan on diving in deep to the topic of building events and the idea of the Common Base Event and Common Event Format. I also want to introduce the Event Data Dictionary / Event Catalog which will be useful for capturing information about what events exist in your environment and why. Every event that’s generated should be done so for a purpose. There’s nothing that will turn your NOC or IT support group against you quicker than if you’re collecting data and generating events just for the sake of doing so because they may be available via and SNMP MIB or agent. They don’t need any more “noise” to deal with during the day.

There may be many ways to incorporate this data and information into the messages you’re planning to communicate. The approaches and their ease of use are going to be entirely up to the tools, applications and solutions you’re using. You may be able to establish direct connections with the datasource, perform screen scrapes, import spreadsheets, or even perform queries against the source. The general concept of this series of articles has been around the assumption that you have the ability within your environment to generate events. Generating events usually comes through some form of instrumentation, collection and evaluation against a threshold, state, rule, etc.

What I want to talk about here is instrumenting those sources of important information, data and metrics within your environment you’ve identified as you completed your Metrics Catalog. Some of these sources may be outside the comfort zone or capabilities of the average IT Operations group normally used to operating with SNMP, server and application monitoring agents.

Since you’ve identified the source of the important information or data, how frequently it gets updated, and how to access it you’re half way there. The next task is to identify the person(s) or group(s) responsible for that information source. This may be the owner, administrator or support group for the application, tool, file, spreadsheet, database, server, etc. that produces, evaluates, communicates or makes available that information or data. The task here is to establish the business need with the owner to instrument that source so that the important data or information is provided in a way that can be easily processed upstream.

Once you’ve established the business need, you can have a discussion about the best way to instrument the information source and generate those events. Discuss the various tools in your event generating arsenal with the owner and their technical staff. Cover the normal EMS/NMS/OSS/BSS solutions and their capabilities for collecting information and generating events. Discuss more generic approaches such as log files (application, system, etc.), scripts, XML/SOAP/WebServices, etc. Scripts can be written to parse logs or collect other information from applications, GUIs, command lines, etc. and pass those off to an event generation function. If you’ve been able to consolidate information into a database or corporate data warehouse, consider leveraging database triggers and stored procedures to collect, format and generate an event. There are certainly more sophisticated methods available here if your organization leverages an EAI or ESB technology. Just keep in mind that the goal is to keep it simple, efficient and effective. You don’t want to be blamed for causing a performance slowdown or outage to that important business application!

You’ll want to map the events you’re generating into the appropriate format of your internal systems that will process them. Be sure to capture the relationship between these event types and their purpose for communicating an important metric, KPI/KPM, etc. At a minimum, one of the fields in the event format should be the Metric ID from the Metrics Catalog. This will be critical in linking the events to their purpose. The more thought and planning you put into how you build these events the better. Consider the use of an enumeration schema to capture information. This can be parsed and evaluated later by other solutions such as dashboard, BSM, BAM, BPM, rules or workflow solutions. An example may be populating a field in an event like this: “A1-2-3” which may represent Metric Source = A1 (CRM System), Metric ID = 2 (Customer Count) and Metric Update = 3 (Daily). The sky’s the limit here but do consider the impact these may have on your internal event processing solutions or those that will need to parse and evaluate the enumeration schema you create.

Spend some time testing and evaluating the effectiveness of the new instrumentation you’ve done. Follow up with the owners you identified and the business to make sure that the data, information, metrics, etc. you’re now collecting passes their “sniff tests”. They’ll have a fairly good understanding of what’s good or bad – they always seem to have a sixth sense about this. If you get the sense that this information isn’t accurate, useful or otherwise have them excited, immediately start to evaluate why and do whatever you can to remedy it. You absolutely do not want to be presenting bad information later!

Now that we’ve got these important bits of data, information, metrics, etc. being collected and processed by our internal systems and tools automatically, it’s time to think about visualizing our message effectively for our various audiences. Stay tuned for that topic in “You’ve Got Events, Now What? Part V: Visualizing the Message.

Catch up with the “You’ve Got Events, Now What?” series here.

0 comments

At this month’s ITSMF Atlanta Local Interest Group (LIG) meeting last week, Gene Kim (CTO of Tripwire) presented on the Visible Ops methodology and some of the early results of an IT Controls Benchmarking Survey that has been ongoing for six years. The sample companies and insdusties covered in the study are very diverse and cover small to large sized IT shops. Goals of the study include understanding what top performing companies are doing in the area of IT operations, best practices and controls. A specifical goal is to learn which IT controls and best practices to focus on baesd on what these top performers are doing.

The study results are to be released in the next month or so. Keep an eye out at the IT Process Institute’s webpage here. You can access the presentation and early findings by joining the Atlanta ITSMF LIG here. ITPI has some additional information on the study and information on participating here.

I’m not quite sure where I sit with the whole Visible Ops idea yet. I need to re-read the book and think about it some more. It all seems like common sense to me – and I like common sense approaches to ITSM. I guess it’s getting the sales pitch separated from the content that I still need to do. I had a bad taste in my mouth with Tripwire in a previous role where multiple internal groups were out talking to vendors after attending a trade show. I can remember many of them taking the Tripwire pitch hook, line and sinker before any requirements were determined. I spent months reeling those groups back into line trying to get them to figure out requirements and processes first before technology and tools.

0 comments

We kicked off the new and improved Atlanta Tivoli User Group last week with a special focus on the IBM ITSM strategy and technical solutions. This group meeting also included the former Micromuse customers in a new setting for them where they have a voice into the Tivoli organization.

Dan Tabor, Product Manager for Tivoli ABSM and Vinu Sundaresian, Office of CTO were our special guests. Dan gave an overview of the roadmap and launch plans in the BSM suite (RAD 3.0 launch in mid-year, TBSM/RAD merge, TSLA, etc.) and Vinu gave a great overview of the ITSM strategy including the CCMDB, Process Managers and a demo of TADDM 4.1.

I recall many “heated” debates with Vinu when I was at EarthLink and he was at Collation over application discovery technologies, approaches and solutions. It’s great to be on the same team now working towards a very unique solution in our CCMDB.

I encourge IBM Tivoli customers (and former Micromuse customers) to get involved in a local/regional Tivoli User group wherever they can. For more information, visit here.

The Atlanta Network and Systems Management TUG (ANSMTUG) is still the vendor neutral network and systems management TUG where the art and science of network and systems management is disucussed at local Atlanta companies. Check them out!

0 comments