Try our new research platform with insights from 80,000+ expert users

Logstash vs Wazuh comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Logstash
Ranking in Log Management
34th
Average Rating
10.0
Number of Reviews
1
Ranking in other categories
No ranking in other categories
Wazuh
Ranking in Log Management
2nd
Average Rating
7.4
Number of Reviews
42
Ranking in other categories
Security Information and Event Management (SIEM) (3rd), Extended Detection and Response (XDR) (4th)
 

Mindshare comparison

As of September 2024, in the Log Management category, the mindshare of Logstash is 0.4%, up from 0.1% compared to the previous year. The mindshare of Wazuh is 16.4%, up from 11.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management
 

Featured Reviews

Mustafa Husny - PeerSpot reviewer
Mar 11, 2024
Helps to collect logs from various data sources, including hardware
I use Logstash primarily for connecting logs from hardware. This is the main use case. The second use case involves making correlations between logs from various sources.  I can collect logs from various data sources, including hardware. The product needs to improve its compatibility.  I rate…
MB
Jun 15, 2023
Good for file integrity monitoring
There is room for improvement in Wazuh, but it's possible they are already working on it. The only challenge we faced with Wazuh was the lack of direct support. They charge for support, whether it's five days a week or seven days a week. We don't expect it to be free because revenue is generated through the support they provide. In future releases, I would like to see a feature. There is one feature we observed in a premium tool in the industry called Dynatrace. It provides automatic relations between different devices and components. For instance, if you receive a web login request, Dynatrace can trace and show you the path it takes from the firewall to the switch, then to the Apache server, the actual job application, and finally back to the client. It intelligently correlates all the components involved in a single event. If Wazuh could include this feature, where all the components are integrated, it would automatically relate them for any activity in your environment.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I can collect logs from various data sources, including hardware."
"Integrates with various open-source and paid products, allowing for flexibility in customization based on use cases."
"Wazuh automatically scans the host for CIS benchmarks for the latest updates and vulnerabilities and gives a host score. It provides a percentage of perceived risk due to of non patches or any missing patches on that work."
"If they support a solution, it is easy to do an integration."
"The product's initial setup phase was easy."
"The MITRE ATT&CK correlation is most valuable."
"My company implemented Wazuh because it was relatively inexpensive. They could quickly get their hands on it to check a box for some audit and compliance."
"Wazuh has very flexible and robust features."
"Wazuh's most beneficial features for our security needs are flexibility, built-in rules, integration capabilities, and documentation."
 

Cons

"The product needs to improve its compatibility."
"The tool doesn't detect anomalies or new environments."
"The tool does not provide CTI to monitor darknet."
"Its configuration process is time-consuming."
"While it is scalable, it can suffer from reduced latencies."
"Wazuh needs more security and features, particularly visualization features and a health monitor."
"It would be great if there could be customization for the decoder portion."
"The support team could be more responsive and provide quicker replies during our working hours in Indonesia, which would be a significant improvement."
"I think that the next release should be more suitable for large enterprises, because currently they are not because large companies do not rely on open source solutions."
 

Pricing and Cost Advice

Information not available
"Wazuh has a community edition, and I was using that. It's free and open source."
"It is a free-of-cost solution."
"Wazuh is open-source, but you must consider the total cost of ownership. It may be free to acquire, but you spend a lot of time and effort supporting the product and getting it to a point where it's useful."
"It is an open-source product."
"Wazuh is an open-source tool, which means it is freely available for use."
"The product is cheaper compared to other tools."
"Wazuh is an open-source tool."
"Wazuh is totally free and open source. There are no licensing costs, only support costs if you need them."
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
801,394 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
16%
Computer Software Company
16%
Media Company
10%
Government
10%
Computer Software Company
17%
Manufacturing Company
7%
Educational Organization
7%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about Logstash?
I can collect logs from various data sources, including hardware.
What needs improvement with Logstash?
The product needs to improve its compatibility.
What is your primary use case for Logstash?
I use Logstash primarily for connecting logs from hardware. This is the main use case. The second use case involves making correlations between logs from various sources.
What do you like most about Wazuh?
Integrates with various open-source and paid products, allowing for flexibility in customization based on use cases.
What needs improvement with Wazuh?
Wazuh doesn't have native support for some enterprise solutions. It requires an agent installed on the server, whether Windows Server or Linux, to collect logs. While you can gather information via...
What is your primary use case for Wazuh?
My company specializes in providing SIEM as a service. We leverage Wazoo for that. Since Wazoo is open-source, I hosted it on Azure. We provide Wazuh as a service to our customers. Currently, we ha...
 

Comparisons

 

Learn More

Video not available
 

Overview

Find out what your peers are saying about Splunk, Wazuh, Datadog and others in Log Management. Updated: August 2024.
801,394 professionals have used our research since 2012.