External reviews
External reviews are not included in the AWS star rating for the product.
My experience with splunk
What do you like best about the product?
It is quite fast, programmable with python easy to use. It takes only 40 50 min to draw really complicated graphs with it
What do you dislike about the product?
IT is quite expensive comparing with elk stack and their business model is really weak. The second most important think is that they do not have data tables to represent information filter by fields etc.
What problems is the product solving and how is that benefiting you?
we are trying to collect all logs and alert teams with them depending on the rule we wrote.
- Leave a Comment |
- Mark review as helpful
Really good for identifying the production issues
What do you like best about the product?
Every time when we have production issues, the 1st thing is to open the splunk and check the error messages.
The other feature is also nice: keep tracking the production environment health status periodically. We did find some potential issues which our client did not report and fix them before our clients finding.
The other feature is also nice: keep tracking the production environment health status periodically. We did find some potential issues which our client did not report and fix them before our clients finding.
What do you dislike about the product?
The way of displaying the error log sometimes take time to scroll it when opening the item.
What problems is the product solving and how is that benefiting you?
Checking the production health status.
Quickly identifing the errors
Quickly identifing the errors
Recommendations to others considering the product:
Quickly identifing the errors, periodically checking the production health status and performance. It works really well
Splunk is the de facto leader
What do you like best about the product?
* search bar and query language
* integrations / add ons
* source code access to splunk enterprise
* source code access to any splunk app
* integrations / add ons
* source code access to splunk enterprise
* source code access to any splunk app
What do you dislike about the product?
* no real good support or process for app development and publishing
* app development is kind of weird and difficult
* really hard to debug configs and/or searches
* splunk doesn't have a solid identity anymore
* overly sales-heavy organisation; hard to find someone to actually help you
* documentation is written in a vacuum mostly, especially in respect to how to run / size it
* big learning curve for users slows adoption
* crap 2FA / SAML / enterprise auth support
* no publicly visible bug or feature request database
* app development is kind of weird and difficult
* really hard to debug configs and/or searches
* splunk doesn't have a solid identity anymore
* overly sales-heavy organisation; hard to find someone to actually help you
* documentation is written in a vacuum mostly, especially in respect to how to run / size it
* big learning curve for users slows adoption
* crap 2FA / SAML / enterprise auth support
* no publicly visible bug or feature request database
What problems is the product solving and how is that benefiting you?
* great flexibility in investigations
* decent return on investment
* decent return on investment
Recommendations to others considering the product:
come with an open mind, and open pockets
showing 401 - 403