We use it a lot for IT operations. We monitor various services that we manage.
We do not monitor a multi-cloud environment. We have a single stack.
We use it a lot for IT operations. We monitor various services that we manage.
We do not monitor a multi-cloud environment. We have a single stack.
It is very stable. Many things get managed at the backend. The infrastructure is managed by Splunk. We just have to focus on the use cases and the value we can drive from Splunk. Being able to focus only on the outcome of the product is valuable for any organization.
There has not been a significant difference when it comes to the meantime to resolution because it all depends on the use case and how much time it takes to run. However, as an admin, just focusing on giving valuable insights and not having to manage the infrastructure has been the most beneficial. Otherwise, the quality of the use cases is still the same. There is no difference as such.
Not having to maintain any infrastructure is valuable. That frees up a lot of time as well.
We are on the classic Cloud that is hosted on GCP. There are a lot of functionalities that are missing for Splunk Cloud hosted on GCP but they are available on AWS. Adding more IPs to allow lists and many other functionalities are not supported on Splunk Cloud hosted on GCP. One good example is the ingest action which is not there in Splunk Cloud hosted on GCP. I wish they would add these missing features to the GCP platform.
I have been using Splunk Cloud Platform for a year.
It is very stable.
We definitely have room to scale. In the future, we might scale our environment. The amount of ingestion is going to increase.
I would rate them a seven out of ten based on my experience. There were many instances where we did not receive proper help, so we had to escalate the issue through our account team and our customer success manager.
After the migration, whenever there was any maintenance, there would be an email saying that it was just maintenance. There were not many details about it. Once we started talking about it and giving feedback, they started adding more information. There are still some gaps in the support or the quality of service. From that perspective, I would rate them a seven out of ten.
Neutral
We migrated to Splunk Cloud Platform from on-prem Splunk Enterprise a year ago. The main reason was to have no infrastructure management on our side. That was the main reason we shifted from Splunk Enterprise to Splunk Cloud Platform.
It was completely a smooth transition. There was a lot of data that we moved from on-premise to cloud. The transition was definitely smooth. The licensing and pricing were handled by the higher management. I have no idea about it, but the entire process of moving the data over was very smooth.
We are using Splunk Cloud hosted on GCP.
We utilized the professional services from Splunk for the migration, but after the migration, we have been taking care of everything.
We did not look into any other solution. We are totally into Splunk. We wanted a no-infrastructure-management environment and a better solution, so we moved to Splunk Cloud Platform.
Splunk's unified platform has not helped consolidate networking, security, and IT observability tools. The only product we use is Splunk Cloud. We are not using any of the other products like ITES, enterprise security, etc. No consolidation is required for us.
I would rate Splunk Cloud Platform an eight out of ten.
Splunk Cloud helps us to combine all our environments. For example, multiple business units can be combined into one even if they are in different geographic locations.
It helps us with hosting from different geographical locations.
The speed of the cloud environment is great.
We only buy the services we need. We don't have to pay for other things we don't. It makes the pricing very economical.
We use the solution's federated search feature. It's easy for us to use. It helps us search logs, analyze, and manage data.
We are able to monitor multiple cloud environments using our Splunk Cloud dashboards. It makes the process very simple. We just have to maintain different teams for different environments.
The solution is great within hybrid environments. It gives us good visibility across everything.
It works well for sizable environments.
The product integrates well with other systems and applications in our environment. We haven't had any issues with integration at all. However, if we ran into issues, we could call Splunk support. Having an issue would be a very rare event.
Reporting is very good. It's the same for all Splunk solutions. Having multi-cloud instances in one place is great.
We have multiple business units and easily integrate them into the cloud, as well as different infrastructures from different areas. We can deploy a Splunk agent on any cloud - AWS, Google, etc.
The company can access data easily for compliance and privacy regulations. The privacy aspect has been very good.
Having resilience has been very helpful in our organization.
Training should be free of cost. They need to provide more training options.
There are no missing features at this time.
I've been using the solution for two and a half years.
The solution is stable.
We have 30 people using the solution in our organization. The product is scalable.
Technical support has been good.
Positive
We did also use LogRhythm. It has a very good UI in comparison to Splunk, yet it doesn't have as many capabilities and does have a few more restrictions. That said, it's a good product for creating use cases and automation, which is easier than Splunk. We moved to Splunk as LogRhythm did have some restrictions.
I have previously done deployments of Splunk. The setup is pretty straightforward.
Were a system integrator of Splunk. We help clients set up the solution.
We've had six or seven people setting up the solution.
The maintenance is pretty manageable. I'd rate maintenance needs seven out of ten.
I'm not sure if we have noted any ROI while using Splunk.
The pricing is reasonable. They provide good options for licensing.
I did not evaluate any other options.
We are integrators and also users of Splunk.
We have multiple solutions we use for security, of which Splunk is one of them. So far, it's been very good from a security perspective, although we don't solely rely on it.
I'd recommend users work with Splunk in the cloud environment. I'd recommend the product in general to others.
I would rate the solution nine out of ten.
We have a public URL that allows anyone to authenticate for ADFS. This allows them to connect using Active Directory.
The most valuable feature for me is the flexibility of being able to send the log to the https endpoint. I know that it is possible to export the logs, although it is easier for me to communicate with the endpoints concerning what I am interested in.
This is a feature-rich product.
Although there is documentation available, it is really hard for me to find relevant topics on what it is that I'm searching for. For example, when something goes wrong, I can spend hours trying to figure out the problem and have nothing to refer to. I find that it confuses me somewhat, so it is something that can be improved.
I feel that technical support can be improved because it is always done through the use of a support ticket, which is not very convenient.
Setting up and configuring integrations are not easy to do.
We implement this solution within the past year.
Splunk Cloud is quite stable. I do not remember having any issues with bugs or glitches.
I would expect that the scalability is quite good, albeit expensive.
Technical support is okay, although they are not as quick to respond as I believe they should be. I feel that some of the support processes are not very convenient.
The initial setup is straightforward, although we still revisit it. We started several months ago and are still trying to set it up in a more structured way. Really, we are still in the deployment stage in some regards because we are struggling with exactly how it should be set up.
We had some assistance from a consultant after the initial setup was completed. It worked well for simple uses, but now, we have some help in trying to configure it to meet our needs.
The price is something that people complain about.
My advice to anybody who is implementing Splunk Cloud is to dedicate the time and resources required to learn it and use it. Investigate the features.
I would rate this solution a seven out of ten.
We are a Splunk reseller and Splunk Cloud is one of the main products that we work with.
Our customers implement this product for log management, application management, application testing, and process management. They also have it for customer service use cases.
The most valuable feature of Splunk Cloud is the quick setup.
The only thing that is missing compared with Splunk Enterprise is the ability to manually edit all config files. This task is easily handled with support tickets but sometimes is would be nice to experiment directly.
I have been selling Splunk products for ten years.
We have not heard any complaints about stability.
Scalability with Splunk is the best because it scales to anything. Their promise to users is scalability and availability. Our customers range in size from very small companies to large ones.
Over the past ten years that we have been selling Splunk products, they have been in constant contact for support. I would say that it is invaluable. They have great response time and great skills, and I couldn't compare it with any other software company.
Installing Splunk Cloud, itself, is nothing. The length of time for the total deployment depends on how many log sources that you have. It can be completed in a matter of hours.
Being a cloud-based product, Splunk does all of the maintenance. We don't have to do anything to maintain it.
The licensing costs depend on the data ingest volume. If you weigh the costs and the benefits, the benefits are great and it is money well spent.
I feel that Splunk Cloud is good as it is. It is the best tool on the market.
My advice to anybody who is considering this solution is to start now and don't wait. Every day that you wait, you can be wasting time and money.
I would rate this solution a nine out of ten.
We use it for Log Management and also for another bit of management. It feeds data into Splunk and Splunk writes the rules and based on that, it will pick up incidents.
It is good from a cost perspective, in terms of the cost of the data you're looking at. There is no cost barrier.
For my current requirements, the tool theme seems to be meeting my requirements, from a cost and requirements perspective.
The only thing I would say is an issue is the cost. It matches other products. The costs can be justified for the value that we gain. The entire threat analysis stack should come in a bundle. If the cost was matchable with other products I think Splunk would pick up in the market.
I did evaluate other products and installations. I can't compare it to Splunk.
I have been using Splunk Cloud for a year.
There are two people who are part of admin that use Splunk in my company.
We have a policy where we have to keep the domain controllers on lock with sensitive servers for about 90 days. We look at the controls around once a week to check if they need to be attended to.
We initially contacted their support during the implementation. It was not for a very complex issue. It was more for a consultation.
Their support is good.
I was new to Splunk and had a problem with understanding the forwarders and worker safety management.
My team was able to install it themselves.
In terms of how long it took to deploy, between coding, testing, and other things, it took about four weeks to complete the project to complete the initial installation. Altogether it was four to five weeks. They should improve the customization.
Splunk is a leader in its marker.
Splunk offers more features than its competitors. Other solutions are not on the same level to be able to compare them.
I would rate Splunk a nine out of ten.
The queries and pulling out the exact reports is a little challenging. I get complaints about it. I would like to see more reports or default out of the box reports. That would be more useful, useful, and then people can avoid writing inquiries.
The Splunk search is powerful compared to similar solutions. We get millions of data points within seconds.
The Splunk interface is on-premises, so we have limited access to Splunk Cloud. Splunk support is not so good on Splunk Cloud. The Splunk side of the Splunk Cloud should also be more customizable. Integrating Splunk UBA, Splunk Phantom, and Splunk Cloud is also a bit difficult.
I've been using Splunk Cloud for about four years.
Splunk Cloud is reliable.
Splunk Cloud's scalability is pretty good.
Splunk support isn't so great. It takes a lot of time for them to respond.
The initial setup is straightforward.
We deployed Splunk in-house.
The license costs around 100,000-150,000 rupees. Splunk Cloud is the basic version. It costs extra if you need Splunk interface or Splunk ICSA. Those are premium additions. There are additional costs if you want to use the other premium aspects of Splunk.
I rate Splunk Cloud eight out of 10. It's a good solution that can index data in a short time. That's one advantage of Splunk over other solutions. However, the support isn't good, and you can't customize the Splunk interface.
Our primary use case for the solution is login collections.
The documentation available could be improved as there is sometimes no documentation or updated documentation available. For example, I tried to get the metrics from MongoDB, and there's very low documentation for the module.
We have been using this solution for a few months.
We haven't used it enough to comment on its scalability. We have approximately 100 people utilizing the solution.
We don't have experience with customer service and support.
The initial setup was straightforward and took approximately 20 minutes.
I rate the solution a five out of ten. The documentation available could be improved.
My primary use case was trying to build a centralized log database and making some logs on my servers. I also use it to install tools in Splunk Forwarder. I'm a company founder.
Splunk is a very user-friendly tool and it's very extensive compared to other tools.
From my perspective, customization needs to be simplified and I'd like to see a reduction in the cost of the solution.
It's stable, but if you try to customize it, it will take some time because there's a specific language behind Splunk. Thankfully they have a good community which is a big help.
The solution is scalable.
The initial setup is very straightforward.
Licensing costs are paid annually and are quite expensive.
I recommend this solution for any company that has the money to buy it and rate it eight out of 10.