In an era where businesses hinge on the efficiency of cloud-based operations, one pioneering organisation encountered a pivotal challenge: ensuring the secure and uninterrupted functionality of their systems. This obstacle, however, became the catalyst for a groundbreaking transformation in their approach to system management.
The operational needs necessitated the rerouting of crucial service alerts to a specialised incident management team. This directive specifically mandated the transmission of automated alerts from monitoring systems to a designated destination.
However, the internal event management team exclusively facilitated notification capabilities through only by SMTP (email), an internally accessible HTTP API, or an external API that mandated custom headers for authentication credentials to be passed.
Unfortunately, Google Cloud Monitoring lacked the functionality to dispatch notifications to internal API endpoints. Additionally, it lacked the capability to incorporate the essential custom headers necessary for authentication when interfacing with the external API. Also, while the SMTP option still existed for external data transmission, by nature SMTP is unreliable and has other security vulnerabilities so it also became an unsuitable choice.
Given these constraints, a superior solution was imperative to ensure seamless and secure transmission of critical alerts.
Source: Forbes
In response to the critical need for secure cloud-based system functionality, we devised and executed a comprehensive strategy:
Source: Elastic
Enabling Compute Metadata within the Instance Template was a pivotal step in empowering Logstash to make informed environmental decisions, conduct automated acceptance testing, and ensure uniformity across different environments.
The decision to utilise Logstash was strategic on multiple fronts. Its adaptability to function within a network with internal routing was instrumental. Additionally, the existence of a pre-existing Logstash solution significantly expedited the deployment process for this use case, requiring only minimal adjustments to the pipeline code.
The adoption of Pub/Sub as the message bus service proved to be a game-changer. Its inherent guarantee of at-least-once delivery not only ensured the reliability of message transmission but also facilitated effective management of Logstash subscriber scaling. Simplicity in implementation was another significant advantage, as Pub/Sub boasted minimal management requirements, streamlining the deployment process.
A key optimisation came from the augmentation of user-provided data in Alert Policies with the essential information required by the API. This strategic integration significantly simplified and accelerated user access to the centralised alerting system, enhancing the overall user experience.
By leveraging this suite of tools and services, the organisation successfully transitioned away from external routing of alerts. Instead, it embraced robust, reliable, and secure protocols and services, reinforcing the integrity and safety of its alerting infrastructure.
The culmination of these efforts resulted in a substantial enhancement of the client's ability to effectively monitor and manage its cloud-based systems. This transition ensured seamless and uninterrupted operations, bolstering the organisation's resilience in handling critical system alerts...
...And we were able to deliver this whole service which could be used by all users of the organisation in a controlled and agile manner in only a few weeks!
As IT specialists, Mesoform can help your business overcome similar challenges and provide efficient solutions in comparison to competitors.
To find out how Mesoform can help your business become more secure, stable and efficient contact us at
https://www.mesoform.com/contact
If you would like to discuss any of these topics in more detail, please feel free to get in touch