Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Splunk SOAR

Splunk | 6.2.2

Linux/Unix, CentOS 7 - 64-bit Amazon Machine Image (AMI)

Reviews from AWS Marketplace

1 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 1
  • 2 star
    0
  • 1 star
    0

External reviews

403 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    Computer Software

Very powerful, quick, customizable log analysis tool

  • April 03, 2019
  • Review provided by G2

What do you like best about the product?
Splunk has been paramount in us gaining information from our log data, it has the ability to very quickly parse and understand the data. Once you parse the log data creating visualizations is easy and they can be grouped into dashboards which is quite convenient.
For us this brings the following business benefits:
- We can quickly and easily see/get alerted of any issues in our running system
- Stakeholders can see the performance and usage of a given system.
- Developers can monitor a system and gain insights which drive optimization.
What do you dislike about the product?
Learning the Splunk query language takes some time. It is powerful and relatively intuitive but there is definitely a learning curve there. In the past, there were a few cases where we had issues with duplicated log data, figuring out why and removing it was quite the effort.
What problems is the product solving and how is that benefiting you?
Splunk have let us answer the following questions:
- How many users are using our system and how active are they?
- Is our live system running into any unexpected issues?
- How performant is our live system, how does that change under load
- What are some problematic/slow calls to our system?
- How can we give stakeholders insight into the platform with minimal friction?
Recommendations to others considering the product:
Definitely build dashboards to share with business stakeholders. Try to put a lot of information in your logs and the more easily parseable it is the better. The query language has a learning curve, so having a couple specialists is very helpful.


    Information Technology and Services

Secure Splunk

  • March 22, 2019
  • Review provided by G2

What do you like best about the product?
I am using secure splunk to set up alerts , create dashboards and retrieve custom and catalina logs for application monitoring and issue debugging
What do you dislike about the product?
This is a good tool . There were some issues faced when onboarding custom logs but rest was smooth
What problems is the product solving and how is that benefiting you?
1. Alert Setup
2. dashboard Monitoring/creating dashboards for my application
3. preventive issue analysis
4. Prevent bad boxes


    Information Technology and Services

Amazing tool

  • March 20, 2019
  • Review provided by G2

What do you like best about the product?
It is a tool that simplifies your data and makes your duty easier
What do you dislike about the product?
Sometimes it is needed a little more flexibility to aggregate functions of programming
What problems is the product solving and how is that benefiting you?
Visualization of data from many systems in an efficient way. The benefit is that it makes it easy
Recommendations to others considering the product:
Filter logs before indexing


    Higher Education

Splunk for dashboards

  • March 08, 2019
  • Review provided by G2

What do you like best about the product?
Splunk is very easy easy to use. just needs a query and since the data ic connected to server, it automatically pulls up the data and generate the report based on the requirement. different type of visualizations like pie chart, bar graph, etc can be used.
What do you dislike about the product?
Eventhough the spunk query language is simple however we need to learn a new language. Splunk does charge a pretty penny for the higher levels of certification. But the cost paid to value earned is totally worth the cost of certifications needed.
What problems is the product solving and how is that benefiting you?
When you have the visibility Splunk give you into your data at the speed and ease that Splunk provides it, your options are limitless. We've been using it in the SOC and it is amazing how easy it is to find problems and fix them once they are found. There's all kinds of events, forums, videos, conferences and meetings that you can go to and have your questions answered. Splunk is by far the best product on the market and it will continue to be in the future.
Recommendations to others considering the product:
When you have the visibility Splunk give you into your data at the speed and ease that Splunk provides it, your options are limitless. We've been using it in the SOC and it is amazing how easy it is to find problems and fix them once they are found.


    ADIL G.

Useful tool to access logs quickly

  • March 01, 2019
  • Review verified by G2

What do you like best about the product?
Index search result breaks down in to several useful fields. Helps in narrowing down the search.
What do you dislike about the product?
Fields popup window does not list all results. There should be a scroll bar in popup window to scroll through all results.
What problems is the product solving and how is that benefiting you?
Study error stacks in IBM WebSphere and MQ.


    Information Technology and Services

Great insights extracted from logs

  • March 01, 2019
  • Review provided by G2

What do you like best about the product?
Lots of value is created from the information generated by reading the logs .
What do you dislike about the product?
Syntax are difficult. Lots of coding involved to configure and read logs.
What problems is the product solving and how is that benefiting you?
Production monitoring. It enables proactive approach to numerous situations . For example it can generate alerts etc


    Prasad C.

Comprehensive log aggregate and analyzer

  • February 20, 2019
  • Review provided by G2

What do you like best about the product?
ad-hoc analysis of logs coming from distributed application.
What do you dislike about the product?
cost is very high, there are different licences available we choose SaaS which is expensive.
What problems is the product solving and how is that benefiting you?
we have a long list of applications deployed in microservices architecture, difficult to troubleshoot in the traditional way, Dashboard is also used for monitoring app health and health trends.
Recommendations to others considering the product:
rather pushing everything to Splunk put Kafka/AMQP before log aggregator, and important types of log messages need to go in slunk, not all log messages need to go to Splunk, would save on cost and help to monitor though topics of the queue for urgency or important.


    neeha c.

Best monitoring tool

  • February 18, 2019
  • Review provided by G2

What do you like best about the product?
application availbilty,error logs, system alerts
What do you dislike about the product?
too much query to write to find out the error logs
What problems is the product solving and how is that benefiting you?
application availabilty and logs for every application


    Abhishek R.

A single tool for logging, alerting and dashboards

  • January 15, 2019
  • Review provided by G2

What do you like best about the product?
While writing queries you refine and build the searches is very helpful. Creating dashboard and graphical representation is easy.Creating Alerts and and setting intervals/cron schedule is quick. extraxting fields using auto regex is very helpful.Saved searches sharing in a secure manner. Sharing them in read-only formats like PDFs using database connection. Exporting data into XML and JSON format is what i uses while transferring or upload into a different infrastructure/system.
What do you dislike about the product?
Sometimes its very slow, not sure may be due to large amount of data .
While query is very big we should have a separate editor in place writing in query editor.
Some time fetching specific fields using extract field feature may not give what you need.
Sometime searches take little extra time to understand, mainly regular expressions and to new users.
Would be nice if data compression of data stored on disk can be optimized.
What problems is the product solving and how is that benefiting you?
Basic error, info and other types of logs and fetching meaning full information from it.
Alerting on specific failures.
Quick reactive and some time proactive actions help resolve issue ahead of time before it impact more business users. In-built and communicating tools make intellect of complex data.Real time alerting on critical events, sending emails and executing predefined scripts for corrective measures. We are also generating HPSM incidents based on splunk alerting based on triggering script. Geographical charts showing impacted states during enterprise outages is what higher management look for. Splunk API allowing us to access the splunk data programmatically to feed into another system.
Recommendations to others considering the product:
Splunk is great for visualizing your data sending it to higher management, stack holders and various teams
It will help you determine root cause take reactive and proactive measure if you can write an intelligent query. Gathering log from various sources and making them readable.


    Education Management

Have you ever had to grep for mail logs? If so you will love SPLUNK.

  • December 27, 2018
  • Review verified by G2

What do you like best about the product?
The ability to create and supplement source types for the data you care about. You don't have to spend hours digging through logs. You can just pull out key fields and use them as key values to report on.
What do you dislike about the product?
If I had to choose something that I dislike about Splunk it would be that I think it needs more easy to create dashboards.
What problems is the product solving and how is that benefiting you?
The business problem that we are solving with spunk is that when something goes wrong we want a place to quickly look through logs and search on what we need. The ability to try to find a common issue or connection across systems without having to grep through logs on servers. This benefit saves us a lot of time when dealing with issues that arise for ourselves or our clients.
Recommendations to others considering the product:
To take the time to build out your use cases before stepping into splunk. If everything is laid out before hand you can maximize spunk to your advantages across teams with things like specialized dashboards to display only a certain log or set of logs.