The tooling included in base Splunk, plus the broad community supplying pre-built extensions to common data needs, greatly reduce time to detection on problems and make tracing root cause issues much easier than any other tool I've used. Review collected by and hosted on G2.com.
Management of the software can be complex, as it is a complex tool. Buying professional services for initial configuration and any major changes (e.g. moving to a clustered environment) is frankly necessary unless you have someone on staff who has already managed a deployment previously. Review collected by and hosted on G2.com.
We use this across our different departments for security, host monitoring, data intelligence, vulnerability and threat actor collections, correlation, alerting and much more. Review collected by and hosted on G2.com.
The biggest complaint I hear is 2-fold: It's expensive and it's hard to learn. Both of these are true, but opposed to some competitors, this is just more baked and better. The cost can be justified and it's a leader in various vendor rubrics. Review collected by and hosted on G2.com.
The best part of this tool is this supports the log monitoring on the multiple OS platform and provides the alerting on the basis of the log information which helps organization to check multiple anomalies happen in the systems.
Also this tool is greatly support the next generation tool and cloud concept its really impressive to continue monitoring on the authentication and many more aspects. Review collected by and hosted on G2.com.
As this tool is work on the log file and use it for automation and alerting the storage of this log files make more burden on the organization costing and maintaining also makes difficult. Review collected by and hosted on G2.com.
The ability to use XML to create and style your own dashboards. Review collected by and hosted on G2.com.
To get the most out of the app a lot of people with different skill sets need to be involved and with the same goal in mind, for example, the observability engineers are the ones in charge of the maintenance and setup of the Splunk platform and data, while the backend engineers are the ones that implement the logs caught by Splunk. The frontend engineers need to look into the available logs and see what information from there is useful to create a dashboard that can be used for ourselves or for the product owners. Review collected by and hosted on G2.com.
Splunk is very robust with being able to search network traffic, create dashboards and automate reports and alerts. It allows users and admins to solve many problems. Our company has created several alerts for when people on the network download any files that look like they could be a virus, or if they are using illegal software, or trying to login with wrong passwords constantly. Review collected by and hosted on G2.com.
There is a large learning curve to being able to use Splunk and be able to understand what the data you're looking at filter through it all to find what you need. It's very good if you know what you're doing, which there is documentation for, but if you don't have lots of networking experience and knowledge it's easy to be lost and overwhelmed. Review collected by and hosted on G2.com.
Splunk makes it easier to search through various data including logs. I was used to fetch the details through logs in order to find the one lines among the 100 of thousands of lines. Now it become as easy as ABC also the infrastructure monitoring is cool. We have integrated this with Slack to get the alerts real-time. Review collected by and hosted on G2.com.
It has its own SPL, if they enable SQL too so that it will be heaven for the tech guys. Review collected by and hosted on G2.com.
The easy integration. just include Splunk libraries in your code, use the methods/functions to log and you are good. Dash-boarding is easy too. Review collected by and hosted on G2.com.
It does not have the capability to take action on thresholds. Review collected by and hosted on G2.com.
This is a needed application for the IT organization to manage their infrastructure which consist of physical computer devices, web servers (cloud), sensors, etc. Manage means, centralized monitoring and analyzing. In the past we used Splunk for only log monitoring and log analyzing (syslog server). But, what we are seeing is more advance and it is with the SIEM capabilities. It now have real-time visibility, advanced dashboards, analyze any kind of data, advance filtering, flexible GUI in configuration & maintenance, and AI & Machine Learning for threat prediction.
Finally, it is very user friendly. We can modify the dashboard, log search queries, filters, alert/alarm rule, threat filters, and configure with multiple devices easier and quickly. Review collected by and hosted on G2.com.
It has multiple features and when we are trying to use all of them it is slow in displaying the contents (logs) and the connectivity also taking some amount of time for the initial loading.
Cost is another, as a organization we have to spend more cost on buying the license and configuration.
Without experience (new to splunk), it is hard to understand all within a short time if the architecture is complex. It consume log implementation time. Review collected by and hosted on G2.com.
It is the best tool to analyze the logs based on different charts and visual graphs. It has good plugins to help with security and auditing. I have created multiple dashboard and customized alerts to monitor system health. It has great integrations with slack and emails to trigger alerts and notifications. Review collected by and hosted on G2.com.
As we have big infrastructure and a lot of logs gets consumed in splunk on daily basis, the user interface becomes slow for query search results. Splunk query builder needs technical knowledge beforehand otherwise understanding error message for a non technical person is a challenge. Review collected by and hosted on G2.com.
I enjoyed that Splunk had all details for transactions; i.e. time, date, processor, exp date, PII, how & where the transaction was processed, device ID, etc. It also shows the initially authorized dollar amount of the transaction and if it was captured for a different amount. Review collected by and hosted on G2.com.
Splunk can be very complicated to navigate and use for identifying a particular transaction. I often had to ask someone for assistance when attempting to search for something in particular or to understand fully what I was reading. There's definitely an overload of data and you can get lost looking for one or a few transactions. Review collected by and hosted on G2.com.
The cloud splunk is easy to use and data storage is amazing.This is the biggest advantage of the product. Review collected by and hosted on G2.com.
Inspite of being an amazing giant for data capturing and analysis, I dislike its capability to support IPv6 only infrastructure. Also they have no roadmap yet to go towards supporting it. SO this is the biggest limitation of the product as far as I am converned. Review collected by and hosted on G2.com.
Splunk Enterprise provides the best analytics of the log. The best feature of Splunk are as follow:
- It provides the best visualization of data.
- ANy new user can easily onborad. The UI is very simple to learn.
- The Splunk provides the various support to the product likes the Salesforce, ServiceNow and Cisco.
- For all the above product there are apps and add-on created, so that one can easily visualize the data.
- Splunk documentation is very descriptive and easy to understand.
- One can ask the question in splunk answer.
- The help community is very active and always ready to help.
- The Splunk provides the best charts and dashboard. Review collected by and hosted on G2.com.
Splunk Enterprise provides the best feature of data analytics. The Splunk can improve their app formation as sometimes the app takes so much of memory of computer. Review collected by and hosted on G2.com.
functionality and customization, splunk allows expert (admin) used to edit the functionality and customize the instance as per any clients requirements Review collected by and hosted on G2.com.
should work more on providing ready add-ons for the not soo common security appliances Review collected by and hosted on G2.com.
Splunk tool really helps in debugging issues easily and it provides a great platform for analysis.
1. Easy to use queries.
2.Easy to access historical data
3. Easy to setup.
4.provides app specific details
5.easy to analysis the whole statistics of the data.
6. Good visualization box integration. Review collected by and hosted on G2.com.
NA. Never faced any issue or dissatisfaction while using the application.
The whole application can be made responsive and optimal so that users need not wait to get the response of one query. Review collected by and hosted on G2.com.
We like the splunk dashboard and quick searching of logs. Faster indexing and searching of logs. Review collected by and hosted on G2.com.
The UI is dated and needs to be refreshed with new features for dashboard etc. Review collected by and hosted on G2.com.
Splunk has many features since I'm using it as its very useful while accessing analytics report of specified time period for specific type of pattern which insists in your server log. Very useful while extracting request and response log in block of XML's. There are still lot's of thing which can't be explained in such few words but I would suggest if you use it for once then you will forget everything. Review collected by and hosted on G2.com.
Ah, Really is there anything which you don't like? from my perspective simply NO. I appreciate hard work of Splunk team memers for the awesome interface and design pattern for getting your requirement fulfilled. Review collected by and hosted on G2.com.
I loved this tool for log extraction directly from the server and those shortcuts which is used to filter servers logs are very useful. Easy to get all the information at one place only like host, server name, source , folder , path information etc in just a single click. Review collected by and hosted on G2.com.
Copy mechanism is not that much good because if you copy one block of log first it takes very time and fluctuate the screen so I didn't feel very good while copying logs directly from splunk. Review collected by and hosted on G2.com.
Splunk is a great tool for data analysis and mainly log monitoring.
You can ingest a very high amount of raw data in it and is does it very quickly and then you can have search in data using their query language.
Splunk is very rich in terms of documentation which really makes you going easy.
They offer a trial version to everyone and to developer they provide free license for sometime that is a great thing. Review collected by and hosted on G2.com.
There used to be a lot of bugs in Splunk in it's initial years but it has become stable over time with version upgrades. So, no big dislike from me. Review collected by and hosted on G2.com.
Splunk is a good tool to create dashboards and measure application level performance including both Application, Network and Database layer Review collected by and hosted on G2.com.
I found it provides limited or sometimes information thats either not required or not make much sense. May be as user, we need more training to understand it. Review collected by and hosted on G2.com.
I like that Splunk enables users to easily tell stories with their data. They have democratized a space that was once occupied by those who knew how to code. Review collected by and hosted on G2.com.
Splunk hasn’t implemented a Machine Learning interface and I don’t think it was done right, there a many necessary features that should have been implemented before release Review collected by and hosted on G2.com.