Splunk is a single tool that does everything
Overall Satisfaction with Splunk Enterprise
We use Splunk to integrate all the logs for each of the applications. Building dashboards and alerts base on the logs by the Application team's requirement. The Application team will be able to search through their log from one centralized place rather than logging into multiple servers to try to define the issue manually. With the Splunk search language, it is very easy to look for possible errors within a certain time frame. Our organization also use Splunk for fraud investigation purpose. We have more than 100 application teams using Splunk today and most of them are using it for troubleshooting purposes when there is an issue that has occurred.
Pros
- Log mining.
- Able to consume multiple log sources.
Cons
- Provides the possibility to upgrade the Splunk UF from a deployment server.
- Splunk search language can be very expensive if the users do not know what they are doing.
- Improvement to the MTTR of our organization.
- Allows users to analyze business data to improve the services.
Splunk is easier to setup compare to ELK. It has better support, well-documented information plus the Splunk database which has an addon that built by them or the other users to help to improve the experience with Splunk. However, ELK is open-source and it is free. At the end of the day, they are doing similar things. However, with the help of different addons from Splunk database, it saves you more time on configurations by yourself.
Do you think Splunk Enterprise delivers good value for the price?
Yes
Are you happy with Splunk Enterprise's feature set?
Yes
Did Splunk Enterprise live up to sales and marketing promises?
I wasn't involved with the selection/purchase process
Did implementation of Splunk Enterprise go as expected?
I wasn't involved with the implementation phase
Would you buy Splunk Enterprise again?
Yes
Comments
Please log in to join the conversation