Excellent tool for analyzing logs
February 28, 2019

Excellent tool for analyzing logs

Anonymous | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User

Overall Satisfaction with Splunk Enterprise

Splunk Enterprise is used to monitor both Prod as well as all our lower environments. It is used for analyzing logs and tracing transactions. We write Splunk queries and create dashboards for monitoring several Key Performance Indicators. We first analyze metrics over a particular period of them to understand the trend and then set up alerts on these metrics for threshold violations.
  • Simplifies analyzing of big logs finds and helps in finding issues faster.
  • Splunk Alerts are great to be notified of possible issues so that necessary actions can be taken to avoid it from becoming a problem to our end users.
  • Dashboard reports can be scheduled to be generated and share with key stakeholders.
  • Comparison of two or more time series data in a single graph.
  • Search and make suggestions on Splunk commands as we type on the search window.
  • Splunk log analysis helped us understand backend error much better than ever and improved number of errors/ week significantly after resolving those.
  • Charting vendor calls/service helped us understanding default looping/logic which in turn reduce vendor calls and vendor bill/call.
  • Splunk alerting on system resources helped us take necessary actions to tackle the traffic under heavy load condition without impacting user experience.
Simplifies analyzing of big logs finds and helps in finding issues faster. Splunk Alerts are great to be notified of possible issues so that necessary actions can be taken to avoid it from becoming a problem to our end users. Dashboard reports can be scheduled to be generated and share with key stakeholders.

Splunk Enterprise Feature Ratings

Centralized event and log data collection
10
Correlation
10
Event and log normalization/management
10
Custom dashboards and workspaces
10
Host and network-based intrusion detection
10