External reviews
External reviews are not included in the AWS star rating for the product.
Quickk and easy set up and useful for simple testing
I read one review that said that THP was not supported on the instance, but I checked on mine and it was properly configured. I did have a couple of errors that showed that there may have been some files that were not verified as being Splunk installed and that the instance fell below the suggested minimums for running Splunk, but I was just using a Free EC2 instance to try things out.
The web interface came up quickly and with out problems and I was able to install apps quickly and easily. I added some data and had things working well quite quickly. I would like to try a larger AMI instance, but for the testing I did. It was quite usable.
- Leave a Comment |
- Mark review as helpful
Trying Splunk AMI for the first time
I use Splunk Enterprise Security at work.
Currently studying for my architect certification. I know Splunk AMI on AWS will be the perfect platform for my lab.
Splunk is just couple of clicks away!
I've been using Splunk Enterprise on premises for few years.
And it is hands down the best product I've come across in 15+ sysadmin years.
No, really, I've seen some really nice pieces of software but none of them comes even close. And the Splunk AMI just makes the starting the use of all Splunk Enterprise features so much faster that it is a no-brainer. New or old Splunk user: Grab it. Throw some data, any data, to it and start Splunkin' !
Excellent for trying out Splunk
I wanted to try out a few add-ons to Splunk and this worked perfectly for me. Having an AMI with a ready to go Splunk server and MongoDB combined with a recommended security group made it very easy to start using immediately. I was also able to install the Splunk Mobile Access Server on this instance and connected using the associated iOS and Android apps. If I had any recommendation for Splunk it would be to include the MAS on this AMI as well.
No complaints at all.
More time splunking. Less time installing.
Up and running with Splunk in minutes. This was so easy it was not even funny. It look me longer to set up data feeds than it did preparing Splunk to receive them.
Totally thrilled and pleased. This was a life saver.
Splunk's home for indexes is on the root partition by default. 8GB of SSD storage for the / partition will probably not be enough for you.
Add a 500GB or 1TB magnetic volume and move splunk's index home there before you get started.
One-click Splunk!
From no Splunk to Splunk in minutes. I was able to start collecting and analysing my data within the hour.