17 anos ajudando empresas
a escolher o melhor software
Splunk Enterprise
Conheça Splunk Enterprise
Com a confiança de 92 das 100 maiores empresas da Fortune, o Splunk é uma plataforma de análise de dados personalizável que permite investigar, supervisionar, analisar e agir. Da TI à segurança e às operações comerciais, o Splunk é uma plataforma de dados para tudo que permite tomar medidas em tempo real. Com o Splunk, é possível prever e prevenir problemas de TI, otimizar toda a pilha de segurança, minimizar o tempo de inatividade não planejado e explorar e visualizar processos de negócios para aumentar a transparência em uma única plataforma.
Quem usa Splunk Enterprise?
Organizações em todo o mundo que desejam criar impacto nos negócios em tempo real a partir de seus dados. Soluções para TI, segurança, Internet das coisas e operações de negócios.
Está em dúvida sobre o Splunk Enterprise?
Compare com uma alternativa popular
Splunk Enterprise
Avaliações do Splunk Enterprise
Splunk, Solução para Monitoramento e Relatórios
Comentários: Gosto do uso simples e da facilidade na criação de Dashboards. A linguagem é muita parecida com Pl SQL
Vantagens:
As Dashboards são incríveis e precisas. Podemos criar utilizando a interface do programa ou por Comandos muito parecidos com Pl SQL.
Desvantagens:
Nada a declarar, o software atende a todas as necessidades.
Perfect solution to handle big data
Vantagens:
I love its versatility to handle different kinds of data. While monitoring our internal data, Splunk Enterprise saved a lot of code with its real-time data monitoring and logs analysis feature.
Desvantagens:
With the growth of the data, costs grew intensively which was out of the budget for our startup company. Initially setting up Splunk was complex as we were new to this.
Great SIEM
Vantagens:
Incredibly powerful tool for log collection. It is very scalable and can be integrated with a wide variety of other tools and platforms. It is well-documented and supported by a large user community, making it easier to find solutions to common challenges.
Desvantagens:
It feels somewhat dated compared to newer solutions on the market. Its interface and some functionalities haven't evolved as much as other modern tools. It can also be quite expensive.
Powerful tool to perform db queries
Comentários: I used Splunk to surface and review platform logs
Vantagens:
Possibility to export query results in a variety of formats.
Desvantagens:
User interface is not intuitive and it requires a steep learning curve
Splunk review
Comentários: I am using this tools since long time and overall it’s good tool.
Vantagens:
Capabilities and features of the tools provided are useful
Desvantagens:
This is one of the costly tools Available in the market
Splunk is a great data management tool
Comentários: I use it daily to locate information on users and devices.
Vantagens:
The ability to parse data and locate critical information is unparalleled
Desvantagens:
Search tools could be a little more user friendly.
Splunk, a must try for all data management persons
Vantagens:
1. Excellent ML background 2. Dashboard looks classy 3. Multiple external entries possible unlike a lot other tools
Desvantagens:
1. Very limited variations in reporting 2. Real-time model is not great 3. Not mobile friendly
Platform that generates very good reports and data extraction
Vantagens:
Produces analytical information with highly interactive tables, charts and graphics. Highly customizable to obtain specific data.
Desvantagens:
It can be complex at first to customize search queries since Slpunk handles its own terms and typing methods.
Bettering Cybersecurity With Splunk Enterprise
Vantagens:
It has amazing firewall protection features It makes handling security monitoring and improving networks security easy log monitoring is easy
Desvantagens:
No regrets as Splunk Enterprise meets needs.
Splumk review
Vantagens:
Ease of use, really convenient, specially for logs reporting and search with the indexer
Desvantagens:
Can be tricky to use sometimes without the proper training
Splunk is a solution
Vantagens:
It so easy to use and it is very smart and fast.
Desvantagens:
They want to take it to the cloud, maybe is good maybe not
Best SIEM out there.
Vantagens:
I used a lot of SIEMs in my career, Splunk is the best one out there. Comfortable, Easy to use, Great big data platform.
Desvantagens:
Easy to use, versatile, A lot of options, dashboards
Splunk at its best
Comentários: Its been great experience so far using Splunk Enterprise
Vantagens:
The visualization based on the metrics is great
Desvantagens:
Cant think of any cons that i want to write
Splunk Enterprise is a powerful data analytics software
Comentários: I believe getting important data analysis in real-time saves us from threats
Vantagens:
Splunk Enterprise offers real-time data analysis tools makes it possible for my institution to see and take immediate action against security risks, performance difficulties, and other operational concerns.
Desvantagens:
Splunk Enterprise is really expensive and it is a huge part in our annual budget because we require add-ons.
log Master
Comentários: Overall i'm happy to use for any malicious activity is happened in the forwarder system its giving immediate alert system
Vantagens:
It's giving live alert, triggers, dashboard system based on rules we already set. the dashboard helps to see and virtualize the data.
Desvantagens:
The only concern I feel it consumes the system space due to this my system running slow. without knowledge of Splunk query language, it is difficult to handle.
Powerful SIEM system that meets our expectations.
Comentários: We are using Splunk Enterprise for log correlation, the analytics are accurate and it catches errors right away which improves our internal capabilities, it is a special service that collects data from different data sources very accurately to catch future issues, the reports are detailed and understandable. It has features that streamline manual work, improve our security and our protection in our IT infrastructure.
Vantagens:
I really like the platform, the data collection is ideal and the reports are detailed, it is the most appropriate SIEM service to monitor our IT infrastructure, it is an ideal software to take preventive measures, it is easy to customize the dashboards, the monitoring is constant and it gives us security in real time, the alerts are accurate and it helps us understand what is happening and fix it before it becomes serious.
Desvantagens:
It is a somewhat expensive service but with more powerful features than other free SIEM systems, and it is a bit complex to set up and use for inexperienced users, so a lot of help should be sought from experienced staff and support team at first.
Alternativas consideradas anteriormente:
Great platform for data analysis and visualization
Comentários: Splunk Enterprise is a great data analysis and visualization platform to show real time status with live dashboards.
Vantagens:
Security Information and Event management, log analytics, custom dashboards and workspaces
Desvantagens:
Auto upgrade management and notifications for Add-ons. Leaning more towards config file based implementation instead of UI based implementation
One of the best monitoring solutions for different platform.
Vantagens:
Best tracking and data analysis tool which help to monitor and manage the server and system component in very effective way. Real time Visualization helps to take the quick decision so that desired action can be taken to avoid failure.Best data collection in the forms of log and which helps to define the best set of automation jobs to fix the issue.
Desvantagens:
There are few components or observation like,1. most of the time observes the slowness in the performance.2. Sometime observe the delay in the issue or updated log reflection on the portal. 3. Need more storage to manage and maintain the lo g which impact organizational costing and budget.
A powerful log aggregation solution with immensely useful tools built-in for popular applications.
Vantagens:
- Free to use for small 500MB or less daily ingress, quite nice for small use cases and learning - No development work required to deploy and provide value. - Deployment flexibility: client agents are available to use, or clientless configurations for multiple OS platforms. It's also very easy to deploy, not just flexible. its a very simple affair. - Segmentation of logs: You can create separate instances of of logs to aggregate, based on organization needs. And those instances can have their own individual storage policies to optimize consumption of storage resources. - Configuration design: Thoughtful and mature documentation and design of the application regarding enterprise-class scaling on network storage. -POWERFUL tools: The user interface lends itself to learning more about your organization from the logs you collect, through metrics of trends of the logs being gathered. There are also specific modules/add-ons for popular applications to provide more value and event-based monitoring, all without having to develop in-house dashboards and intelligence of those logs. - Customization: You can create your own queries of logs, and event-based alerts. - Web-based GUI that clean is powerful - Sales/Technical Reps are top notch in fielding questions and evaluating environment for deployment. They were extremely helpful in helping our organization develop procedures and scaling our environment for expansion with our existing infrastructure.
Desvantagens:
- Price: This product is not free for more than the minimal use. Pricing can be very expensive, relative to open source offerings. That is the trade-off you pay for not having in-house development of open source offerings. As this product is priced based on gigabytes of indexed logs, it is important to understand the scope of licensing necessary for your environment to determine if it is a good fit for your organization. - Watch your saved queries and hardware resources: Users have the ability to create and save queries. Like in database queries, some are more efficient than others. Large inefficient queries can be very resource-intensive. If you notice slowness in day-to-day queries, or navigation in the UI, or resource use in contention, keep an eye on saved queries and user practices.
Best friend for debugging
Comentários:
Splunk basically makes debugging and monitoring easier and touch less. I can easily debug by starring the rolling logs from different instances in single screen.
I can monitor multiple components and multiple metrics, without running commands manually with custom plugins.
Vantagens:
Splunk comes with lot of in-built templates for each and every feature like log visualisation, dashboarding, traces,etc This makes the developers life lot easier. I can't think of any other logging tool that is snappy as well as accurate. I love the fact how easily I can plug it in my docker-compose to push container logs.
Desvantagens:
Even though, it offers numerous features for different needs, each feature has its own learning curve. For instance log visualisation needs querying skills, which may be in natural language but it takes bit of time to get familiar.
Best log monitoring
Vantagens:
While Microsoft didnt provide a centralized log monitoring for enterprise machines, Splunk filled the gap. It is good one stop console to monitor logs on your every server.
Desvantagens:
Reports can be more user friendly and descriptive.
Get useful insights into your logs with Splunk Enterprise.
Comentários: We majorly use Splunk enterprise for IT security and log analysis. It is a powerful log analytics solution. We use it to collect data from several sources, analyze and transform it into meaningful metrics.
Vantagens:
Its been a while since I started using Splunk Enterprise. I love its ability to cumulate data and logs from multiple sources and correlate them to help find incidents and their root cause. It consolidates logs and manages them form a central place. It is a great tool for log analysis as it segregates data and provides in depth profiling. Splunk enterprise also automates alerts and indexes on logs received.
Desvantagens:
It has a complex architecture making the learning curve quite steep
With Splunk Enterprise , we can rapidly detect and get rid of bottlenecks.
Comentários: Splunk Enterprise is the basis of our SIEM. We use it for log correlation and analysis. It collect events from multiple sources for analysis. I love using Splunk enterprise. It is the best platform that we have for monitoring data and identifying issues in real time.
Vantagens:
The tool can collect all sorts of data from diffuse sources and preform advanced analytics on it. It has powerful monitoring capabilities useful in threat identification and maintaining the health of our IT infrastructure. Splunk enterprise helps us to foresee, trends through machine learning which has been a crucial to making informed business decisions.
Desvantagens:
Training new users is tough, the learning curve is very steep and it gets overwhelming for them. The installation and configuration process is very long and needs a lot of time.
Monitoring Tool Splunk
Comentários: With Splunk anything identified with the application backend logs and observing, it's extremely suitable to utilize, in light of which we can make different dashboards. For server Monitoring, Splunk logs are not exceptionally accommodating. It totally depends on log explanations, assuming articulation isn't organized in standard organization, and it gives mistaken outcomes.
Vantagens:
Splunk Light is ideal for independent on-premise organization. Augment endpoint logging. Can find and store logs from a wide range of resources. Customization of dashboards. Making applications dependent on your requirements.
Desvantagens:
Complex generally design. Long execution time. The instrument needs to incorporate AI to comprehend the framework logs and alarming ought to be founded on the auto learning.
Alternativas consideradas anteriormente:
Great, wholistic centralized monitoring solution
Comentários: I've been using Splunk for over 8 years. I've seen it constantly improve and change a lot. I do enjoy it. Cloud is getting better and much better parity with on-prem
Vantagens:
We use this as our SIEM. The ability to have the data ingest, visualization, alerting and correlation all in one product is very important to me from a security standpoint. We're cloud-first so having that ability with large cloud providers is important to me (AWS, Okta, GCP, etc)
Desvantagens:
The cost can be a little concerning and htere is a bit of a learning curve when you first get into Splunk. User groups, their forum and pro serv all help with that.