Likelihood to Recommend SolarWinds Loggly is great for capturing and organizing logs from 3rd party sources such as NGINX. Without SolarWinds Loggly it's really difficult to manage the logs overtime, find traffic patterns, and identify issues before they become a problem. Anyone who is routinely searching through massive log files could quickly benefit from the SolarWinds Loggly and it's capabilities.
Read full review Trellix (FireEye + McAfee)
I believe that McAfee Enterprise Security Manager is best-suited for anyone in an office setting with a computer containing sensitive information. McAfee Enterprise Security Manager is constantly working to make sure that your device is free from an threats. Our field workers, however, probably wouldn't have a need for McAfee Enterprise Security Manager. They do not use computers for work and have no sensitive information stored in a work-related cloud.
Read full review Pros Putting our logs in one place and making them searchable. We use AWS, and CloudWatch has always been a little frustrating in this regard (though it has gotten better recently). Deriving metrics from our logs. I think log-based metrics is such a good idea because your logs are the ultimate source for truth in regards to what the hell is going on inside your app. I have really loved the simplicity with which I can just count certain statements and call that a metric because just through the normal course of development certain log statements just naturally become a straightforward recording of an event having occurred. Alerts. I actually have a few complaints about email alerts, but just the way I was able to set them up so easily has been huge. Since we started using Loggly, there have been at least 3 bugs that Loggly exposed that were frankly very bad. And withoutt Loggly or without a user reporting them, we would have never known they were happening! This is stuff I tried to set up in CloudWatch in various ways, but because of my own ignorance or perhaps the complexity/limitations of CloudWatch (or the complexity of my stack?), I wasn't getting the information that I needed until I was able to just tell Loggly to send me an email whenever the word "error" showed up. Read full review Trellix (FireEye + McAfee)
McAfee Enterprise Security Manager has a large library of pre-made correlations that reduces the amount of work needed to make it functional. This is a core McAfee product that is still getting support. It has a substantial amount of compatibility and integration with other products. Read full review Cons Not all searches are intuitive. We have to use a log aggregating device to ship our logs to Loggly as our network devices can not connect on an encrypted protocol. I would prefer if we could use some sort of VPN-based connector to ship logs securely. Sometimes when drilled down, it can be difficult to fully reset a search term to back all the way out of a drill down. Read full review Trellix (FireEye + McAfee)
The user interface is not the best, it is still based on Flash player (but they have plans to migrate to HTML5). While the "user" interface is pretty straight forward, the management interface is fairly complicated. Read full review Likelihood to Renew Management is not open to having an agent sending the data to the cloud instance.
Read full review Trellix (FireEye + McAfee)
Usability Loggly's easy setup, very good customer support, and intuitive interface make Loggly very easy to use. User access management is also very easy as we can tailor the experience for each of our developers to access the information they need without having to wade through other information. While there was a slight learning curve in how to view the logs the way some specifically wanted, everything was possible and quite easy to do.
Read full review Trellix (FireEye + McAfee)
Support Rating The support team have been great when we have logged tickets or had issues, most of the time it is down to user training, however we have had a couple of bugs that they have been able to iron out for us.
Read full review Trellix (FireEye + McAfee)
McAfee Enterprise Security Manager overall is a great tool. It is effective in today's setting, wherein lots of potential threats are lurking. Its operations within the network are seamless. Users won't even notice that a SIEM is working in the background. But in today's trend, most of the businesses is heading towards the migration to cloud, which
McAfee should improve its integration with.
Read full review Implementation Rating It has good architecture, which focus on ese of use.
Read full review Trellix (FireEye + McAfee)
Alternatives Considered We were using
Zabbix . While it is an open-source solution that you can install for free the following things were limitations of the solution. 1) The scale and uptime of the solution are now your own problem. Since we were hosting at AWS this meant we still had a cost of the AWS solution. 2) The product is complicated from a configuration standpoint. In order to get anything meaningful out of it, you had to invest a lot of time and effort. We did consider NewRelic. I have experience with that product and do think that it is a solid alternative. Ultimately experience with the simplicity and speed of deployment with Loggly encouraged me to suggest using this again.
Read full review Trellix (FireEye + McAfee)
We selected McAfee Enterprise Security Manager because the pricing is competitive in the industry. It is very reliable. The vendor offers good support in real time. Offers the results that we have been looking for. The ability to get the logs may be of last 2 years in a matter of seconds. The ability to retain logs for a very long time.
Read full review Return on Investment Unfortunately, we hit our logging cap on a weekly basis and we lose logs after that. We have lost logs after hitting the maximum during service outages. We have become accustomed to not being able to rely on having them, then things go poorly. Read full review Trellix (FireEye + McAfee)
Centralisation of events form NIDS/IPS/IDS, Firewall(s), Web Proxy and Endpoint Ability to have third party management Actively upgraded product with good vendor support Read full review ScreenShots SolarWinds Loggly Screenshots