G2 Crowd gives a real-time look at how dreamforce sponsors and exhibitioners stack up.

Splunk Enterprise

4.3
(264)

Splunk is a software platform for machine data that enables customers to gain real-time Operational Intelligence.

Work for Splunk Enterprise?

Learning about Splunk Enterprise?

We can help you find the solution that fits you best.

Splunk Enterprise Reviews

Chat with a G2 Advisor
Write a Review
Filter Reviews
Filter Reviews
  • Ratings
  • Company Size
  • User Role
  • For Category
  • Industry
Ratings
Company Size
User Role
For Category
Industry
Showing 265 Splunk Enterprise reviews
LinkedIn Connections
Splunk Enterprise review by Mark A.
Mark A.
Validated Reviewer
Verified Current User
Review Source

"Splunk is like the eyes of your Security Snipers, without it you won't be stopping the bad guys."

What do you like best?

Splunk is a great application that is super fast to install and setup. Everyone should be using this product after seeing how great of an impact it makes on your security posture.

What do you dislike?

Splunk does charge a pretty penny for the higher levels of certification. But the cost paid to value earned is totally worth the cost of certifications needed.

Recommendations to others considering the product

While Splunk is amazing, you will inevitably run into problems that need fixing. Enter "Splunk Support". Splunk's support team is awesome at solving complex problems and bugs found in the software. They are serious about fixing whatever problems you may encounter with their product. The last issue we had that we raised to Splunk's support team was fixed within a couple days. I mean come on, "a couple days" is how long it takes to get a cup of coffee folks! Aside from Splunk's support team, the Splunk community is incredibly powerful. There's all kinds of events, forums, videos, conferences and meetings that you can go to and have your questions answered. Splunk is by far the best product on the market and it will continue to be in the future. So what are you waiting for? Get on the band wagon!

What business problems are you solving with the product? What benefits have you realized?

When you have the visibility Splunk give you into your data at the speed and ease that Splunk provides it, your options are limitless. We've been using it in the SOC and it is amazing how easy it is to find problems and fix them once they are found.

Sign in to G2 Crowd to see what your connections have to say about Splunk Enterprise
Splunk Enterprise review by Nathan P.
Nathan P.
Validated Reviewer
Verified Current User
Review Source

"If there's a problem, yo, Splunk'll solve it."

What do you like best?

Splunk enables me and my customers to find needles they didn't know they needed in stacks of other needles. A large portion of our solutions started in hallway conversations leading to "I wonder if Splunk could ..." and it invariably can.

In an enterprise environment of any complexity, there are hurdles with any product, but the Splunk community, as well as education and docs teams are incredibly helpful resources.

They offer trial, dev, and dev/test licenses, so I can run Splunk at home, on my laptop, as one-off testing setups, etc.

They also offer free licenses to non-profits under their Splunk4good program.

What do you dislike?

x.0.0 releases are frequently buggy, but they get patches out fairly quickly.

Splunk could really use a naming scheme makeover. (I'm looking at you, deploy*.)

Recommendations to others considering the product

Grab a trial license and start playing with it. Read the docs. Join a user group. Get some training; the first (fundamentals) course is free!

What business problems are you solving with the product? What benefits have you realized?

We largely use Splunk for fraud prevention and security monitoring/investigation. Splunk has enabled those teams to get significantly more work done in less time with the same number of analysts. Across just two small-effort projects, we discovered fraud and inefficiencies that, once eliminated, are now saving us over $100k per month. Splunk doesn't look so expensive now, does it?

What Big Data Analytics solution do you use?

Thanks for letting us know!
Splunk Enterprise review by Mittal M.
Mittal M.
Validated Reviewer
Verified Current User
Review Source

"Analyzed you data"

What do you like best?

Splunk is a very simple and easy to use tool that Helps you and your team to analyze the information. Any data from network, servers, application. etc.

The best part I like about Splunk is that it is easy to deploy.

You can a simple utility call Splunk lite to push your data from your servers to the main Splunk engine.

The way Splunk indexes your data is very good. Which in returns good analytic results.

The report created by Splunk is very accurate. which helps my company to determine the improvement we need to do in our infrastructure.

The pricing model is very simple and reasonable.

They have very good well written online Knowledgebase articles to help use Splunk to its full use.

What do you dislike?

The trial version of Splunk is very limited it only gives 500 MB do daily data indexing. As a result, it may prevent you to get an insight of all the potential you can get through Splunk.

Recommendations to others considering the product

Definitely a good tool for your enterprise. If you would like to improve quality of your current process.

What business problems are you solving with the product? What benefits have you realized?

Splunk helps me and my team to analyze customer log data and helps us to find our pointers of the actual problem. This in return helps us to get back to our customer much quicker, thus improving overall customer satisfaction, better quality of work and improved work process.

Splunk Enterprise review by Timothy V.
Timothy V.
Validated Reviewer
Verified Current User
Review Source

"Great, but not amazing"

What do you like best?

The ability to build dashboards so we can test new notable alerts. The ability to set severity levels. We like the correlation events. Ability to ingest multiple indexes and create correlated searches, as opposed to just using a wildcard search. The dashboard layout is usefull and is very customizable. Integration via ES and other plugins allows us to spend time on one single pane of glass, do a pivot investigation and drill way down into the logs that were ingested. Metadata is easy to find, the logs are parsed neatly and are relatively easy to read once you get used to them. Training is also very good, and readily available online. Certification paths are also available

What do you dislike?

The load on our search heads, some queries take forever. Sometimes we have great difficulty with getting other products to parse logs correctly into splunk. API issues occasionally. The lag in the UI when running a search. The community could use better visibility, a central repository for splunk queries would be nice.

Recommendations to others considering the product

Carefully plan for the storage and processing power required to wield a tool such as this

What business problems are you solving with the product? What benefits have you realized?

Getting better visualization of threats in our environment via notable alerts. We are building out new automations and use cases for splunk on a weekly basis. Splunk is a primary intake for our analysts and we develop new notable alerts and use cases for our dashboards as well as continually tune and improve the information splunk is telling us.

Splunk Enterprise review by Richard G.
Richard G.
Validated Reviewer
Verified Current User
Review Source

"Love it!"

What do you like best?

It's flexible and powerful while still being easy to use. Valuable insights can come quickly with minimal effort.

The user community, both online and offline, is active, friendly, and very helpful. It's one of the best user communities I've encountered and has resulted in hundreds of apps (plug-ins) available for free use to help make Splunk even easier to use.

What do you dislike?

Larger implementations can be complex to build and maintain, often needing Professional Services assistance.

Recommendations to others considering the product

While Splunk is easy to use out of the box, you'll get more out of it if you take the free on-line training courses.

You can also install Splunk on your personal workstation for use as a test platform.

What business problems are you solving with the product? What benefits have you realized?

I've used Splunk to produce a Continuous Diagnostics and Monitoring (CDM) solution. I've also used it to consolidate 12 different monitoring tools into a single pane of glass. One of the first searches of network logs for a customer showed access from unexpected locations around the world. The customer was able to block access from those locations and prevent a possible security incident all because of Splunk.

Splunk Enterprise review by Niket N.
Niket N.
Validated Reviewer
Verified Current User
Review Source

"Platform for all Data Analytics needs"

What do you like best?

Splunk is a very powerful Data Analytics platform which can be adopted by users of all levels i.e. from tools like Data Tables for Novice to Splunk's Web Framework for Experts. What I like best is the significant improvements and capabilities they bring into the software with every major release is simply mind blowing.

What do you dislike?

We always need to wait a bit for latest release to be adopted at Enterprise level because of the unforeseen bugs. Good thing is one of Splunk Support, Professional Support, Splunk Answers Community and Slack might be able to assist with workaround or solution.

Recommendations to others considering the product

Get Splunk Enterprise for free to try out your use case, in most cases your proof of concept could easily be used as final analytics app that you need at your Enterprise.

Based on your technical experience with the product, reach out to Splunk's Sales Team for demo and Professional Services during implementation if required.

Go through numerous resources online from Use Cases and Case Studies to technical documentations, development tools, blogs and videos.

What business problems are you solving with the product? What benefits have you realized?

We have provided solutions to customers with their Operational Intelligence needs, Infrastructure Monitoring, Security and Business Intelligence.I felt turnaround time to be pretty fast and Splunk's capability to ingest almost all kinds of machine data gives it an significant edge over competitions for log aggregation and event correlation.

Splunk Enterprise review by Clara M.
Clara M.
Validated Reviewer
Verified Current User
Review Source

"Best Tool Around"

What do you like best?

It has made projects more efficient (ease of joining multiple sources together, search times are quicker, etc.) which frees up more of my time to research, explore, and work on more projects

What do you dislike?

Custom visualizations don't export to PDF

Recommendations to others considering the product

If you're looking for software the ingests streaming data, CSVs, etc., and can read warehouse data, this is a great tool. The documentation is very thorough for every topic from installation, administration, search, development, etc. The customization is incredible. It is a truly innovative company with an amazing community that is very helpful for answering questions. No other software like it on the market.

What business problems are you solving with the product? What benefits have you realized?

I use Splunk Enterprise for Business Intelligence and use it to answer questions relating to revenue, product usage, system usage and health, etc. One amazing benefit is that we don't have to grab data from five different applications and join them all together in another tool to analyze. Splunk creates a single pane of glass and allows us to access all the data we need in one place.

Splunk Enterprise review by Rich M.
Rich M.
Validated Reviewer
Verified Current User
Review Source

"We do so much more than just what's listed"

What do you like best?

The versatility. We ingest some of the worst looking logs and force them into a usable form, generating reports and dashboards that business users make decisions from. At times I use Splunk as a clearinghouse for terribly formatted data that I don't even directly use, taking data that makes my BI team cry, reformatting it, cleaning it up and shoving it into a database for them to use further down the pipe. In the more standard uses, we use it to correlate various pieces of information from across our environment to identify when weird things are happening so we can better address them. But two of its primary strengths are the quality of the documentation and the thriving and active user community (answers.splunk.com, User Groups, their Slack channel and so on) who are always willing to help out if you need it!

What do you dislike?

There's can be a significant amount of complexity, some of which is due to the domain across which it works, but some of which hasn't been smoothed over yet by Splunk. This is mostly not in the core product but in some of the Apps, which just need a little work. See comments on the community above, though - there are replacement apps and lots of help available on the Slack channel and in Answers!

Recommendations to others considering the product

Splunk Fundamentals I is a ~8 hour free online course that gives you a basic understanding of how Splunk works, I recommend signing up for that and using that as your springboard. There's a free download of Splunk Enterprise that enables all features for 30+ days, you can switch it to a free version after that which costs nothing. Then get into Answers and into Slack in the Splunk user group channels and start playing around!

What business problems are you solving with the product? What benefits have you realized?

The quick ability to make sense of new data has changed how we react to many situations, speeding up responses to complex questions we may have. The ability to correlate all the disparate events thrown out by all our devices and distill them into a small set of events that are actually unusual is one of the cornerstones of how we react to anomalies.

Splunk Enterprise review by Jaya Krishna T.
Jaya Krishna T.
Validated Reviewer
Review Source

"Sr. Database Administrator"

What do you like best?

Splunk provides a great ease in reading the logs. It helps us analyze the metrics on a regular basis to troubleshoot production issues. We have been using Splunk for quite a few years now and it has always been a great tool use to analyze the data patterns and alert us on all performance related issues and pattern matching.

What do you dislike?

There is not much of dislike on the product. It's more of how much I can help reviewing the production to help it enhance its ease of use.

It would be great to have multiple levels of automation setup within splunk where in it allows users to choose what exactly they want by looking at the earlier patterns and usage of the product. By showing this suggestions, it will be easy for the users to make sure they take into consideration the suggestions shown by splunk to make a wise decision whether to go ahead with the suggestion or implement a new one.

Recommendations to others considering the product

Its a great product

What business problems are you solving with the product? What benefits have you realized?

We are using splunk to log all our web and application logs. Using this log we are having a great ease at the time of post mortem an issue to take a look at the pattern and troubleshoot accordingly.

also for any issues which pop-up during the connection timeouts, we are able to pin point which user its creating problem and take the necessary steps.

Splunk is helping us choose and make our lives easy by ease of use.

Splunk Enterprise review by Kevin P.
Kevin P.
Validated Reviewer
Verified Current User
Review Source

"Great tool if you need log aggregation"

What do you like best?

Splunk provides an easy way to search multiple log files over a period of time. You can search by any combination of unique text. The syntax is similar to that of SQL where you can use keywords such as AND and OR. Logs are archived for time capsule viewing.

What do you dislike?

It's rich with features which can be overwhelming. The search over a long period of time can sometimes be slow and fail to pull back result altogether. If you try to view a log's source, it can take several minutes for results to return.

Recommendations to others considering the product

Splunk is a godsend for any large scale application/system that wants a solution to having to connect to individual boxes and viewing one log at a time.

What business problems are you solving with the product? What benefits have you realized?

Our system has many instances per application which each has its own log. Splunk aggregates all those instance logs into one and also archives older logs.

Splunk Enterprise review by Gregg W.
Gregg W.
Validated Reviewer
Verified Current User
Review Source
Business partner of the vendor or vendor's competitor, not included in G2 Crowd scores.

"Splunk: IT legos for Beginners through Master Builders!"

What do you like best?

Splunk is so flexible that I have not yet been unable to build any of the crazy ideas that my clients have dreamed up. It really is the Swiss Army knife of Big Data. I am really only limited by my own creativity (or lack thereof).

What do you dislike?

I do not think that Splunk Cloud is a solution that is a good fit for most users. From forced upgrades to severe admin and CLI restrictions, I feel like I am too handcuffed to be as productive and flexible as I need to be. Therefore, we spin up our own cloud infrastructure when clients need to be off-premises or turnkey.

Recommendations to others considering the product

Get PS or a good consultant (like Splunxter: http://www.Splunxter.com) to ensure a successful deployment and use-case coverage. If you are not getting 5X value over what you paid, you are not doing it right.

What business problems are you solving with the product? What benefits have you realized?

Everything seems to be going security lately. We do get a good bit of DevOps and BI and a tiny bit of IoT but Splunk is really outpacing the competition in security.

Splunk Enterprise review by Christopher M.
Christopher M.
Validated Reviewer
Verified Current User
Review Source

"Making Your Logs Usable"

What do you like best?

The ability to manipulate data in Splunk is unparalleled. Splunk’s powerful and flexible query language can morph difficult to understand log formats into usable data. Correlating data across different systems via one interface will allow you to know your environment or identify incident data in ways you never imagined.

What do you dislike?

There is a definite learning curve to starting out. However, there is a quite a bit of documentation out there to help you get started. In addition Splunk documentation, the community (Splunk answers/slack channel/user groups) can help get you moving along a lot faster.

What business problems are you solving with the product? What benefits have you realized?

Moving over to Splunk has enabled our organization to utilize log files that were previously being collected and not reviewed. With Splunk now these logs are constantly reviewed and used to provide insight to who is using applications and how they are using them.

Splunk Enterprise review by Cameron M.
Cameron M.
Validated Reviewer
Verified Current User
Review Source

"Splunk flavored Life Saver"

What do you like best?

Splunk allows me to quick diagnose problems and in most cases prevent them for going wide spread by pulling in logs from all of the sources in our development architecture.

What do you dislike?

The only thing I dislike is that it can be difficult to pull data in from a database, they make the DB Connect app, but it is does not work very well in our situation.

Recommendations to others considering the product

Give it a try and you will never look back. We started using Splunk just monitor a server that kept crashing, now we are fully integrating Splunk into our DevOps flow. Splunk is the glue that holds it together.

What business problems are you solving with the product? What benefits have you realized?

We are monitoring our internal application stack. Splunk has reduced on call incidents and allowed us to spend more time being proactive than reactive.

Splunk Enterprise review by Myles W.
Myles W.
Validated Reviewer
Verified Current User
Review Source

"Unrivaled Tool"

What do you like best?

The ease to scale and ingest multiple types of data sources with minimal effort. The effortless ability to begin digging through data without fully comprehending the content of the data itself.

ITSI is also a phenomenal App that really allows us to dig deep into services!

What do you dislike?

I've had a few issues with Apps and/or Add-ons working OOTB without a few customizations. Overall I don't have many dislikes about the product itself.

What business problems are you solving with the product? What benefits have you realized?

Right now I am using Splunk for 2 main purposes.

1. Troubleshooting other Enterprise applications to track down bottle necks, errors and in turn tune the application to better perform it's functionality that it was sold as. (The vendors will remain nameless)

2. Alerting for patterns or security concerns in multiple different security logs.

Splunk Enterprise review by Steven B.
Steven B.
Validated Reviewer
Verified Current User
Review Source

"It can help save lives!"

What do you like best?

The ease of splunk for using it to learn new insights into our data. With traditional log systems you can't review old logs and events using the new understanding you have about your data. However, Splunk performs extractions done at the time you search and allows you to look at old data with a new light.

What do you dislike?

The product can be very expensive for large scale. The price model per data consumed per day can grow quickly and often requires a person to evaluate if the data being logged has any business value.

What business problems are you solving with the product? What benefits have you realized?

Our splunk environment is used to help troubleshoot problems, monitor for security incidents, and has even helped our police department locate in distress person's quick enough to provide intervention.

Splunk Enterprise review by Administrator in Defense & Space
Administrator in Defense & Space
Validated Reviewer
Verified Current User
Review Source

"Splunk can do it all"

What do you like best?

It isn't really a question of whether or not you can accomplish something with Splunk. The question is more about how much time and money it would take to accomplish something using Splunk. Some things are very simple and Splunk does provide a low barrier to entry, allowing you to obtain value from your data right from the start. While it has a low barrier to entry, it is also very extensible and allows you to stack on top of Splunk to leverage the platform for whatever your specific needs are. This is why it is so beneficial across many different sectors of IT. On top of the actual product, the community is top notch and always looking to help should any issues come up.

What do you dislike?

Cost. Splunk is not the cheapest product and it can be a fight to get funding.

What business problems are you solving with the product? What benefits have you realized?

Security, Incident Response, and Root Cause Analysis. The platform allows for analysis that would never be possible sifting through data manually on a file system .Bringing everything together into a central repository and allowing for analysis of aggregate data all at once allows you to see where dependencies are and how failures in an architecture can affect everything beneath it.

Splunk Enterprise review by Kyle S.
Kyle S.
Validated Reviewer
Verified Current User
Review Source

"Transcendental Meditation as Software (TMaS)"

What do you like best?

Oh, to begin at the start is akin to creating pottery from clay. Forming the vase of data from the clay of disparity, one can simply design such meaning and substance from meaningless data, and share amongst peers and enemies alike.

What do you dislike?

Sometimes, the rapid evolution causes internal strife, but nary is it a problem, as support and documentation rules all.

Recommendations to others considering the product

Consult professional services and the community. http://splk.it/slack . Find a user, ask them questions, and join the revolution!

What business problems are you solving with the product? What benefits have you realized?

Verily, we beseech thee to not find a benefit. Optimization of Continuouse Integration, Notification of downtime and reporting of such, monitoring the temperature for optimal Feng shui, among other glorious and grand moments, one must have a sense of pride and accomplishment.

Splunk Enterprise review by Naomi P.
Naomi P.
Validated Reviewer
Review Source

"Easy to read dashboard"

What do you like best?

My team mostly uses it to track lockouts for users. However we also use it for VPN connection metrics, tracking active directory user accounts, and various other types of reports.

What do you dislike?

It does have a bit of a learning curve to it at first, such as accidentally connecting to the wrong dashboard can leave you feeling a little lost until you find you way back to the correct app.

Recommendations to others considering the product

Just having the correct subscription would be extremely helpful to your company, otherwise there can be too many logins causing issues with the license. Other than that, it has great dashboards for network admins, and creating a smooth transition for troubleshooting at a beginner level.

What business problems are you solving with the product? What benefits have you realized?

My team is initial helpdesk support, so we use it to find out what servers a users Active Directory account is locked out of, track the server, or track the MAC Address of a device that has locked them out of a radius server/wireless connection. It was a little inaccurate at first, but we have upgraded recently and now can fully track the mac addresses to reassure the user that yes, their phone is connecting to the wireless, and yes they need to fix that on their end.

Splunk Enterprise review by Administrator in Computer Software
Administrator in Computer Software
Validated Reviewer
Verified Current User
Review Source

"The most versatile data mining product I know of"

What do you like best?

Splunk takes in any data in almost any form (as long as it is human readable text) and allows searching, manipulation, transformation, calculation, etc. and then presents it in a multitude of ways to make the data tell a helpful story. That is superior to products that make you set up each type of data in a set format. We have data that varies greatly even among similar software products.

What do you dislike?

Bugs, though to be honest, I haven't run across many, and they seem to get fixed pretty quickly. I've run into some that usually have a workaround, which makes it easier to deal with the bug.

Recommendations to others considering the product

Learn as much as you can before implementing a large installation, or use professional services to get you started. You can keep from making lots of bad mistakes by doing so. Many people go into the implementation making simple, but critical mistakes that can be hard to rectify. These are things that are documented, but people don't take the time to find out about them, so they make those mistakes anyway.

What business problems are you solving with the product? What benefits have you realized?

We use Splunk for many purposes. Developers use it to find coding problems, operations uses it to find operational issues, managers look at reporting and forecasting.

Splunk Enterprise review by Administrator
Administrator
Validated Reviewer
Verified Current User
Review Source

"Have all of Enterprise logging in one place "

What do you like best?

The one thing i love about Splunk is all of your logs are in one place . Gone are the days where you need to login to each and every instance to get the logs . Splaunk not only helps to collect the logs through splunk forwarder but also helps to analyze them , create reporting , create alerting and you can integrate it with your service now or ticketing system to automate problem incident management . I love the dashoard and reporting feature for log analysis

What do you dislike?

Price and enterprise level of support . Not all splunk forwarders report to the splunk server when there is a version mismatch

What business problems are you solving with the product? What benefits have you realized?

We have an automated incident management system that is collborated with the help of splunk and is fully automated decreasing SLA overage and minimal downtimes .

Splunk Enterprise review by User in Education Management
User in Education Management
Validated Reviewer
Verified Current User
Review Source

"Monitoring Network Traffic with Splunk"

What do you like best?

I like Splunk's speed when querying millions of logs to find specific data points. Combined with the online support pages that help with any type of query, Splunk makes searching through data easy. Additionally, the ability to start a search and have it sent via email upon completion allows for productivity to increase due to the fact that I do not have to sit around waiting for my query to complete. Lastly, the export feature is extremely convenient for digging through large amounts of data easily in Excel.

What do you dislike?

If you click to expand a search result and then attempt to scroll while this result is still expanded, you will get yanked back up to that result repeatedly until it is closed.

Recommendations to others considering the product

Splunk Enterprise will change the way that an organization is able to look through its traffic logs. A search of millions of records takes very little time, and each query can be customized to find and show only what the user wants.

What business problems are you solving with the product? What benefits have you realized?

I have been able to verify the number of users that are using each route out to the internet, and then use that information to determine the use of one system vs. the other (i.e. proxy traffic vs. firewall traffic). This allowed me to solve the problem of bottlenecks on one by focusing more traffic through the other. The benefits of this change are increased speed for users and more safety of our information and systems.

Splunk Enterprise review by Mir Vizarath A.
Mir Vizarath A.
Validated Reviewer
Verified Current User
Review Source

"Best enterprise solution for querying data"

What do you like best?

- Ability to query data

- Dashboards

- Different modes to query data, this helps decide how much information you choose to see which at times is useful when reviewing several days worth of logs.

- Ease of use

- Flexibility for the most part,

What do you dislike?

- Unable to query data past 30 days, but this looks like a limit imposed by my employer.

Recommendations to others considering the product

- Great software for log analysis

What business problems are you solving with the product? What benefits have you realized?

- Log Analysis

- Dashboards

- Charts

- Splunk is one of many tools we use to help us capture key information with not only data but also meta data, this proves to be real helpfull when investigating client side issues.

Splunk Enterprise review by Patrick O.
Patrick O.
Validated Reviewer
Verified Current User
Review Source

"Amazingly broad tool with some complex management issues"

What do you like best?

The tooling included in base Splunk, plus the broad community supplying pre-built extensions to common data needs, greatly reduce time to detection on problems and make tracing root cause issues much easier than any other tool I've used.

What do you dislike?

Management of the software can be complex, as it is a complex tool. Buying professional services for initial configuration and any major changes (e.g. moving to a clustered environment) is frankly necessary unless you have someone on staff who has already managed a deployment previously.

What business problems are you solving with the product? What benefits have you realized?

Dramatic speedups of incident response, both security and business related. Replaced several other toolings, and automated a number of processes that had previously required dozens of full-time staff.

Splunk Enterprise review by Michael K.
Michael K.
Validated Reviewer
Review Source

"Great tool to maximize log analysis"

What do you like best?

Low barrier to start analysis, one need not know much to start understanding one's environment. One can simply treat everything as searchable text to start and work up to a model of the environment as complex as is suitable.

Flexible concepts for data normalization: I can extract new fields, transform existing fields, alias fields, or create entirely new datamodels within the data that I have.

Scales to handle any volume of logs, so all of my logs really can go to one place. Also can send system metrics to Splunk for analysis.

What do you dislike?

Different types of commands are formatted differently. This can be quite frustrating.

No concept of production migration: the user is simply working in production.

Recommendations to others considering the product

Worthwhile. I recommend trying it.

From a log management perspective, you could compare it against other elastic search tools, like ELK.

What business problems are you solving with the product? What benefits have you realized?

I started with Application troubleshooting. In this context Splunk allowed me to normalize data across multiple systems that I supported and to correlate that data across time and load balanced systems.

Security analysis: I have been able to build new visualizations of events on my endpoints and network based on specific events, and statistical models that I have been able to create.

Splunk Enterprise review by Erik A.
Erik A.
Validated Reviewer
Verified Current User
Review Source

"Splunk has been a great platform to learn, support, and use at my company."

What do you like best?

From the users sides, it is a single platform that can provide everything a company needs without needing to go between different platforms that host different bits and pieces of the data needed to support a customer facing service. From the support side, my day job, it is very easy to built out new environments, set them up as we need, and support their ongoing usage.

What do you dislike?

I wish I could get more people at my company onboard with the concept of a single platform is better than multiple platforms.

What business problems are you solving with the product? What benefits have you realized?

All kinds including base event log index, along with schedule reports and alerting into Email, HipChat, Slack, and EMF, dashboards, and workflow auto-remediations.

Splunk Enterprise review by Mick H.
Mick H.
Validated Reviewer
Verified Current User
Review Source

"Easy to Use and Value Added Quickly"

What do you like best?

After the initial set up, getting new users to get value out of it is easy with a the free online tutorials and support bases (answers.splunk.com, slack groups etc...). We don't have a dedicated Splunk team--so finding time to really get the most value out of it can be difficult. That said, we have been able to take interns and point them to an online tutorial and have them running and doing actual valuable work after a week.

What do you dislike?

The licensing model can be expensive for non-profits and others on a tight budget.

What business problems are you solving with the product? What benefits have you realized?

We use Splunk for transaction monitoring, alerting, volume trends and several other use cases include troubleshooting after incidents and determining root cause.

Splunk Enterprise review by Bhagat B.
Bhagat B.
Validated Reviewer
Review Source

"Powerful tool to pull logs"

What do you like best?

The best thing about spunk log is pull logs based on the time period. The logs are easy to read. Same system can pull the data from many environment. you can run your queries to pull the data. You can download all the logs in different file format. You can search your logs based on certain time period with any text. It can also pull the data based on the different system swell.

What do you dislike?

Coping of logs is not simple. It should have a link or button to copy a particular logs. I seen lots of issue with internet

explorer browser. Its very slow with IE but works well with Chrome.

Recommendations to others considering the product

Its best tools to pull the logs. It helped us debugging lots of issues related to integration. It made our life lot more easier.

What business problems are you solving with the product? What benefits have you realized?

We have connected Salesforce system and SAP through Datapower and cast iron. Splunk tool pulls the logs from MW in case we need to debug any issue.

Splunk Enterprise review by Matthew C.
Matthew C.
Validated Reviewer
Verified Current User
Review Source

"Fully featured and performant"

What do you like best?

Splunk provides a convenient mechanism for gathering numerous system and software logs. The ability to search historical and real-time logs is a key capability for our monitoring. The custom field extraction and reporting are also a great feature for analysis.

What do you dislike?

Splunk relies on a Perl-based regular expression structure. I can regex just about anything I want in a python regex and routinely am frustrated by Splunk's support of only Perl regex. This translates into a lot of lost time trying to figure out how to get my custom field extract to extract only what I want extracted.

Recommendations to others considering the product

Splunk is an excellent solution for simple to complex systems for log retention and analysis.

What business problems are you solving with the product? What benefits have you realized?

We see benefits in two key areas.

First, automatic detection and notification of errors in our volumes of logs. With a distributed system churning out logs from numerous components, it is impossible for a human to review those logs, detect anomalies, and correlate errors across them. With the use of Splunk Enterprise, we are able to set up intelligent searches that detect error custom error conditions and generate alerts to our operators for triage.

Second, a significant reduction in effort to perform analysis of software performance and usage. Through adding custom log messages in our software and custom field extraction in Splunk, we are able to generate detailed performance information that can be viewed in real-time or over custom historical periods. Similarly we are able to analyze our logs to determine how our system is being used. These features are critical to our operations and are a huge cost savings in time and effort.

Splunk Enterprise review by Administrator in Government Relations
Administrator in Government Relations
Validated Reviewer
Verified Current User
Review Source

"Great Monitor Tool, Take it Slow"

What do you like best?

I am using Splunk now to monitor the logs from my backup server. The fact that it can import in logs from another host is great. The love the reporting for the logs as it provide an easy to use ad-hoc query which output a readable format for you to understand. You can actually go beyond logs and into monitor your network for spikes in processes and resources. What makes this unique is knowing which host and users are associated with the processes.

What do you dislike?

It's very confusing at first because there's so many tools and links. It's not simple so do read up before you tackle this product. This product costs a lot of money for what it delivers.

Recommendations to others considering the product

There is a free version, but it's limited. You can decide to invest in this product. It's very expensive so keep that in mind.

What business problems are you solving with the product? What benefits have you realized?

We are looking for a platform to monitor our network usages from users and hosts. In addition, being able to import logs for a readable format. The application saves us time in research and allows me to focus on other tasks.

Splunk Enterprise review by User in Information Technology and Services
User in Information Technology and Services
Validated Reviewer
Verified Current User
Review Source

"Very good for basic data querying, but not so easy for complex querying"

What do you like best?

Splunk very nicely provides query/search access to huge volumes of data (for example log-file data). If you're interested in finding specific occurrences of something/anything within your data, Splunk is a nice tool to have. For basic querying, it cannot be beat.

What do you dislike?

If you need to find an "area" within your huge volume of data (for example, either what happened immediately before or after a specific occurrence) then you end up fighting with Splunk to let you see that "area". Personally, I've ended up having to write extremely complex regular expressions within Splunk just to be able to see these "areas", and they work, but it needs to be easier.

Recommendations to others considering the product

For simple querying it's very easy to pickup and use, but for complex querying, you'll need a strong background in regular expressions.

What business problems are you solving with the product? What benefits have you realized?

I use Splunk to diagnose problems within a web-application by querying the application log file data.

Splunk Enterprise review by Vikas R.
Vikas R.
Validated Reviewer
Review Source

"Powerful Product With An Intuitive User Interface"

What do you like best?

Great for visualizing any application data that is required and the custom dashboard feature makes it easy to have related reports and queries all in one place.It's easy to understand the interface, graphs are good and can be easily exported. The keywords on the left side are very helpful.

What do you dislike?

I would say query building which might be a steep for non technical user. Also licensing the Splunk software would be little expensive so the best thing would be to start with a small amount of data and see it if works for you or not.

Recommendations to others considering the product

Test it out in an enterprise environment, that's where all the bells and whistles shine out.

What business problems are you solving with the product? What benefits have you realized?

I have used Splunk for the capacity planning which covered setting up the forwarder in the source system and creating multiple dashboards as per the requirements. Also try Splunk dashboards & perform automation through a script using the Splunk API.

Splunk Enterprise review by Alexandru O.
Alexandru O.
Validated Reviewer
Review Source

"A user whose company switch to Splunk Enterprise a couple of months ago"

What do you like best?

The documentation is really well done and easy to use.

The UI is slick and fast.

The ability to easily create dashboards.

The auto-completion with suggestion while writing the search query

The left hand menu on the search page containing all the fields detected by the search.

Ability to add/exclude from search the fields extracted from the search results by hovering any text.

What do you dislike?

The time range search could be improved by allowing the following type of input:

"last 3h" or "3d ago" which is easier to use than applying several clicks to achieve the same results.

Recommendations to others considering the product

Splunk is a great tool which is suitable for any kind of company, from a small startup to a big enterprise company. It has a large number of features, great documentation and support.

What business problems are you solving with the product? What benefits have you realized?

Mostly analysis of various issues reported by customers. It helps to easily understand the customer journey and spot various issues or anomalies. It helps as well to create nice dashboard for non-technical staff who are interested in the business metrics.

Splunk Enterprise review by Christopher H.
Christopher H.
Validated Reviewer
Verified Current User
Review Source

"Working with Splunk Enterprise"

What do you like best?

Splunk language is fairly easy to learn and built-in hinting system comes in handy for beginners. Splunk can be a powerful tool providing much needed insight into servers, applications, and other business data. Building dashboards are fairly easy and can provide a quick and easy to understand view of what your data looks like.

What do you dislike?

The web GUI SPL code editor isn't very customizable as far as picking a different font.

Recommendations to others considering the product

Be sure to take advantage of the training courses offered by Splunk.

What business problems are you solving with the product? What benefits have you realized?

CA Agile metrics, customer impact via outages and underperforming hardware,

Splunk Enterprise review by User in Financial Services
User in Financial Services
Validated Reviewer
Verified Current User
Review Source

"Highly powerful, steep learning curve"

What do you like best?

If the data is in your logs, you can find it with Splunk. Sometimes I'm just searching for a key phrase in the last 30 days and I can get the answer back within seconds. At other times, I'm using a regex to extract a fraction of complex line and then graph that result to find anomalies and, again, the answer comes back within seconds. Splunk is incredibly powerful and I am constantly learning new things and new ways to use it.

What do you dislike?

The learning curve is incredibly steep. You essentially have an empty search box and you have to know what commands to use (and how to use them) to really get anything useful out of it. It has an alerting feature but it's a little...quirky. There doesn't seem to be a decent way to create live alerts--instead you can have a query run every minute but don't allow it look back more than 1 minute because otherwise you'll get duplicate results.

What business problems are you solving with the product? What benefits have you realized?

We wanted a way to access all of our logs and notice trends. This limits the number of people who need access to production instances and we can also store many terabytes of logs and access the results with ease.

Splunk Enterprise review by User in Internet
User in Internet
Validated Reviewer
Verified Current User
Review Source

"My experience with using Splunk Enterprise."

What do you like best?

Dashboards is very helpful. It gives us a lot of insight into what is happening. Also the alerting feature is also helpful. It helps to send out an email if there is an increase in threshold etc. Setting up file based forwarders is easy. Field extraction is also really great. It helps to analyze the search results.

What do you dislike?

It will take a while to learn the SPL (Splunk search processing language) but after it is learnt, it helps to get a lot of helpful searches. Event correlation is not very easy to grasp. Also the search UI is not very intuitive. Sometimes Splunk is not very fast. And also sometimes events timeline doesn't respond well. Patterns can be improved to have more intuitiveness. More formats can be supported to export the results.

Recommendations to others considering the product

It's definitely worth considering. But there are also other new vendors who recently entered the market and are worth checking out.

What business problems are you solving with the product? What benefits have you realized?

We are using Splunk to analyse our system and software logs. We also setup dashboards and custom alerts. We forward our application logs to splunk to analyse and find root cause of the problem. Monitoring the applications using Splunk alerts gives us peace of mind.

Splunk Enterprise review by matt j.
matt j.
Validated Reviewer
Verified Current User
Review Source

"Splunk is great for mining data and reporting on that data"

What do you like best?

Its easy to define the search parameters and to change them on the fly, you can also build graphs to view the progression of the trend. If you use the data often, build a dashboard and consume the data when you need it.

What do you dislike?

you have to remember all the names of the field in the database for a successful query

Recommendations to others considering the product

If you have server logs to be consumed by anyone this program is a must.

What business problems are you solving with the product? What benefits have you realized?

We are improving on view server logs and the resulting errors. This allows us to fix issues that we have now and spot trends that may come later.

Splunk Enterprise review by Giuseppe A.
Giuseppe A.
Validated Reviewer
Verified Current User
Review Source

"Powerfull product with enormous capability"

What do you like best?

It's an unique container of etherogeneus log, and permit to identify production problem and in case also to prevent, when it happens a performance degradation.

What do you dislike?

The price: it's quite expensive, and it's hard to persuade my company to upgrade to a bigger license.

Recommendations to others considering the product

the budget spent will be repaied. be confident

What business problems are you solving with the product? What benefits have you realized?

It helps me in production in order to identify and solve occurred problems. It also permits to monitor the health of our softwares. Last but not least It helps ti improve the overall qualità is software and architectures.

Splunk Enterprise review by Administrator in Information Technology and Services
Administrator in Information Technology and Services
Validated Reviewer
Verified Current User
Review Source

"Splunk Enterprise For the Win"

What do you like best?

Splunk is so easy to use that you will find yourself using it as the first step in every project or problem solving venture. The speed in which answers are realized is amazing and invaluable to fast paced teams or companies.

What do you dislike?

There is never enough time to implement all of the ideas we have for using Splunk! (this is an 'us' problem, not a Splunk problem)

Recommendations to others considering the product

Take the leap! At least download the free version and get an idea of just how much Splunk can help you.

What business problems are you solving with the product? What benefits have you realized?

We are using Splunk to identify , predict, and resolve issues across multiple products. We are also using Splunk to track items across multiple products, databases, external sites, and files in a easy to understand format for every level of user.

Splunk Enterprise review by User in Insurance
User in Insurance
Validated Reviewer
Verified Current User
Review Source

"Splunk for monitoring"

What do you like best?

Splunk allows you to capture logs from numerous different types of applications, and search or filter through them very easily. You can also create very helpful dashboards, apply plugins for applications, and more.

What do you dislike?

Not much to complain about really. We did hit a bug or two early on, but Splunk has since patched those, and things are operating well.

Recommendations to others considering the product

This is a great product overall. Searching for log entries is very simple, and you can refine the searches easily too. Definitely a great tool.

What business problems are you solving with the product? What benefits have you realized?

We are pushing Azure activity and diagnostic logs to splunk. From there we can filter on specific logs, and even cut tickets to Remedy. It's a very flexible, powerful tool for monitoring and helps with alerting.

Splunk Enterprise review by Prem Kumar S.
Prem Kumar S.
Validated Reviewer
Verified Current User
Review Source

"Splunk your Junk"

What do you like best?

Best about splunk is the ease of use of he product and its rich inbuilt functionalities to parse and clean unstructured data to give business insights in real quick time, for me splunk is a magic band that I hold everyday :)

What do you dislike?

MLTK could be more advanced and improved with lot more usecases and examples.

Recommendations to others considering the product

I strongly recommend Splunk for customers looking for any sort of machine data analysis clubbed together with great visualization package

What business problems are you solving with the product? What benefits have you realized?

Unstructured data analysis, Security & Compliance usecases

Splunk Enterprise review by NAZEER P.
NAZEER P.
Validated Reviewer
Review Source

"Splunk Review"

What do you like best?

The alerting system is best part of this. By using Transaction flow analysis we can identify where exactly the issue is. Building query is simple and easy. We have been using Splunk for 3 years now and it has always been a great tool use to analyze the data patterns and alert us on all performance related issues and pattern matching.

What do you dislike?

We run query for long time frame splunk performance will be effected. Ideally it creates one ticket for one type of exception but some times it creates more than one.

Recommendations to others considering the product

Best tool of Monitoring logs and tickets will be logged automatically

What business problems are you solving with the product? What benefits have you realized?

As a Support analyst we use this for viewing logs and analyzing transaction logs. We use the logs for root cause analysis.

Splunk Enterprise review by stephane p.
stephane p.
Validated Reviewer
Verified Current User
Review Source

"A great roduct"

What do you like best?

I like the posibility to ingest a large number of logs/data format and to play with it. In a very short time, beginners are able to have a clear view of things that were hidden in the mount of data to be processed.

What do you dislike?

I miss the possibility :

1. to add pdf export to custom visualisation,

2. to configure drilldown fields in custom visualisation

What business problems are you solving with the product? What benefits have you realized?

I use it for log analysis, both for IT and non-IT systems. Everywhere you can find logs, in fact.

Splunk Enterprise review by Administrator in E-Learning
Administrator in E-Learning
Validated Reviewer
Verified Current User
Review Source

"Splunk is like a Marvel Superhero movie: worth every dime."

What do you like best?

Support teams can see everything in one place without chasing down log files on all their servers.

You can create alerts that are exactly what you need and not what a vendor thinks is a good alert.

Splunk is the most useful IT tool I've had in 30 years. I wish it had been around way back in my DBA days!

What do you dislike?

The minimum hardware requirements for Windows are still heavy.

Recommendations to others considering the product

Go with Linux as your platform.

Do not underestimate your ingestion rate, because once users/management see Splunk they will want to ingest more and more data.

What business problems are you solving with the product? What benefits have you realized?

Application performance, security monitoring, inventory tracking are all easier with Splunk in the house. Teams are able to move more quickly, because they get meaningful information quickly.

Splunk Enterprise review by Eric W.
Eric W.
Validated Reviewer
Verified Current User
Review Source

"Great Data Analytics With a Bit of a Learning Curve"

What do you like best?

The add-ons are the best. Some of the information and feedback that the add-ons are able to compile based on all the data that gets injected into Splunk is beyond awesome and very helpful

What do you dislike?

To start there is a pretty big learning curve in my opinion. The breakdowns in the left hand nav bar definitely helps. But slow to learning the search language.

What business problems are you solving with the product? What benefits have you realized?

Being able to correlate errors and find out what and where they are coming from has allowed us to solve alot of issues lightning fast

Splunk Enterprise review by User in Information Technology and Services
User in Information Technology and Services
Validated Reviewer
Review Source

"Great tool, steep learning curve"

What do you like best?

Powerful log analytics tool and solid user interface. Seems to be an industry standard. Widely accepted by the IT and IT security community. Great presence in their market and industry. Knowledgeable sales people that understand the technical and business applications of their product instead of handing it off to their developers / product managers / business analysts to answer more complicated questions.

What do you dislike?

The learning curve for the Spunk querying syntax is somewhat steep. I'm not sure how much the support is really geared towards beginners or those that are not familiar with logging tools. The support that is out there for learning the tool is great but the support that is out there for learning the actual querying syntax is, in my humble opinion, lacking. It might be great for those familiar with querying tools, etc. but for those new to IT tools, management, administration, etc it is not the easiest to pick up. I would recommend looking at the tutorials and youtube videos then finding somebody who is already familiar with the tool and having them walk you through it just for the basic features. That alone would help a bit

Recommendations to others considering the product

Understand the admin and user requirements, technical understanding, and tangible application. It is a great tool and is used by many but ensure that it actually tailors to your business needs. Specifically, where does Splunk provide value where open source or other free tools cannot provide. Furthermore, if it provides the right support then adopt-ability increases greatly. There are many other free / open source tools, so do you due diligence to understand what you really need and what tools can meet that need. A lot of vendors have value added features or just outright great features, but make sure you answer the following questions: 1) can your users learn and apply this in the needed environments? 2) How long will it take to realize it's value? and 3) can you do without the particular feature, etc.

What business problems are you solving with the product? What benefits have you realized?

Capturing logs, analytics, indexing, and correlating in real time.

Splunk Enterprise review by Corey W.
Corey W.
Validated Reviewer
Verified Current User
Review Source

"Great application when it works well"

What do you like best?

Easy to find information, easy to view and understand, easy to locate information located in different locations. For queries with a long result, it minimizes the result in an expandable box for ease of viewing.

What do you dislike?

Has a tendency to run extremely slow and sometimes simple changes in terminology can cause a difference in results.

What business problems are you solving with the product? What benefits have you realized?

My business uses this software to locate important data easily. I also use splunk to categorize information in an easy to interpret structure.

Splunk Enterprise review by Artur I.
Artur I.
Validated Reviewer
Verified Current User
Review Source

"Centralized logging management service"

What do you like best?

Very nice user experience with a lot of graph options.

"One click" report creator tool.

In contrast to ElasticSearch+Kibana, you get all services together.

What do you dislike?

I can think only about high price of this product. Need to pay per GB/Month.

Recommendations to others considering the product

if you have enough money, this tool is the best! This is only logging management system that gets you all services together.

What business problems are you solving with the product? What benefits have you realized?

We had a 10 GB of logs each day and needed to do some statistics and reports.

Splunk Enterprise review by Dunstan V.
Dunstan V.
Validated Reviewer
Verified Current User
Review Source

"Data Swiss Army Knife"

What do you like best?

The ability to ingest any sort of data. If you can work out where something you want lies in a stream of data, it can become a field. So literally anything you can get a response from becomes a data source.

What do you dislike?

While you can get results really quickly in a new environment, it can take some practice until the penny drops and you can just write off a search without looking things up.

What business problems are you solving with the product? What benefits have you realized?

All sorts, but chiefly operations.

Splunk Enterprise review by Internal Consultant
Internal Consultant
Validated Reviewer
Review Source

"Splunk Enterprise: Product Review"

What do you like best?

Splunk is a fantastic tool that we depend on. It isn't just development work we rely on Splunk for, but we also use it for testing engineering changes as a standard before production releases. From ease-of-use, forwarding data from a variety of data sources, and E2E data correlation, Splunk has been able to package software that does it all!

What do you dislike?

Recent versions of Splunk can be a bit chatty in terms of messages that are displayed in Splunk Web. I'm finding a lot of questions coming from the business teams like, "I'm seeing this error - what does this mean?", or "This error message came up when I ran this search in the dashboard, can you please have a look?". Most often messages that display are not directly correlated to what the Splunk users are performing. I may have missed it, but it would be great to pass something off to the business teams that they could reference if a particular set of error messages occur. Any infrastructure-related messages would ultimately be handled by the core Splunk team.

What business problems are you solving with the product? What benefits have you realized?

The most rewarding and challenging problems I've solved with Splunk are E2E monitoring solutions for our core customer transactions. Never in the history of the company has this been implemented. For the first time, we were able to correlate data across multiple systems, and ensure (at least a ) 99.5% success rate. This is higher today,

Splunk Enterprise review by Jason B.
Jason B.
Validated Reviewer
Review Source

"Great for data and analytics"

What do you like best?

Very organized and allows you to find what you are looking for very quickly. Love using Splunk and will continue to do so for as long as I work here

What do you dislike?

Nothing that I can think of that I don't like about this program, it's excellent and I love using it

Recommendations to others considering the product

I would highly recommend this because it makes my life easier and I know for a fact it could help out others looking to solve their log analysis and big data needs

What business problems are you solving with the product? What benefits have you realized?

We are solving big data and analytics issues, this makes my life much easier by allowing me to find the data I need extremely fast and it doesn't slow me down at all

Splunk Enterprise review by User
User
Validated Reviewer
Review Source

"Splunk is the best!!!!"

What do you like best?

Splunk is easy to install and very easy to run. Just 5 minutes and you are up and running. Splunk tool can help in such scenarios in which machine data can be fed directly, which can process dirty data. Once the data is processed, you can locate the error points in less time. Though Splunk was launched earlier for machine data processing as Big data came into existence, it became more used in the market. As Splunk can process the even massive amounts of data so, Big data people use it to process, analyze, and store a significant amount of data. It has made the data processing easier and superior for the Big data professionals these days.

What do you dislike?

some linux support for universal forwarder stuff.

Recommendations to others considering the product

It is a great product and will help you out with everything.

What business problems are you solving with the product? What benefits have you realized?

We use it for security and business impactful stuff.

Splunk Enterprise review by Administrator in Government Administration
Administrator in Government Administration
Validated Reviewer
Review Source

"Robust Search and Correlation Capabilities"

What do you like best?

What I like best about Splunk is the ease of setting up forwards and ingesting multiple sources of data from structured to unstructured. Splunk does a great job of correlating events and search capabilities are robust as long as you know the search commands. The ability to setup alerts is helpful and the out of the box filtering capabilities are useful for new analysts.

What do you dislike?

What I dislike about Splunk is the slight learning curve at the beginning. Once you get the hang of how to do searches, searching becomes second hand. The product is also pricey, but you do get your month's worth so there is value in this product.

Recommendations to others considering the product

For consistency, it would be helpful to deploy the forwarders via group policy or your software deployment tools. Splunk can also pull logs from systems as well. Make sure that you have enough space depending on how much data you wish to cache.

What business problems are you solving with the product? What benefits have you realized?

The business problems we are trying to solve with Splunk Enterprise are event correlation and incident management. Splunk gives us the ability to search across multiple data sources from one easy to use interface. The benefit of this is that we no longer have to log in to multiple data sources to query relevant date relating to an incident. The robust search capabilities are the biggest benefit we have realized.

Splunk Enterprise review by Deborah D.
Deborah D.
Validated Reviewer
Verified Current User
Review Source

"Splunk and Devops"

What do you like best?

I like splunk because it provides a searchable and well indexed storage of application logs, which is what we primarily use to debug production issues. Apart from this, there are several features I love: creating real time alerts in the case of erroneous behaviour, creating dashboards to monitor the release of a new feature, extracting csvs from a set of relevant log events. All this and more is much of what keeps our business running

What do you dislike?

I think that the error messages on unsuccessful jobs are too detailed for a user. If a job times out, it gives you a message which is a little difficult to understand

Recommendations to others considering the product

Do go through the rich set of commands which will help you create wonderful insights into your application log data.

What business problems are you solving with the product? What benefits have you realized?

Splunk helps us with real time alerting, application monitoring, feature monitoring.

It saves a lot of time in helping us find the root cause of production issues.

The huge range of splunk operators helps us create meaningful visuals to communicate with the business.

Splunk Enterprise review by Noam B.
Noam B.
Validated Reviewer
Verified Current User
Review Source

"Works as advertised, but not easy or simple."

What do you like best?

I like the ability to create charts & alerts. Searching logs works nicely and you can find what you are looking for, assuming that you wrote your logs in a key-value manner which splunk can index efficiently.

What do you dislike?

I dislike the query language. I never found it intuitive. I felt it is reinventing the wheel, in a bad way. Also it is far from realtime when there is a lot of data. We have got to as much as 30 minutes delay in seeing the service is having a major problem.

Recommendations to others considering the product

You will need to rewrite your logs in a way that Splunk likes to index, otherwise you will not be able to search it easily. We have seen it crashed a number of times under high load. You will need to have someone responsible for starting it back up and managing expiring licenses, disk-out-of-space problems etc.

What business problems are you solving with the product? What benefits have you realized?

CloudOn provided on-demand remote Microsoft Office to tablets and mobile phones, using a patented proprietary video compression protocol. The service was running on the cloud and logs were collected from all nodes and forwarded to Splunk.

DOV-E is enabling any speaker to engage any mobile device using ultrasonic sound waves encoded with data. DOV-E can collect and index data about message receptions including time, location, user and message content.

Splunk Enterprise review by Maurizio M.
Maurizio M.
Validated Reviewer
Verified Current User
Review Source

"The new way to get an application log"

What do you like best?

It's fast, and that it's impressive the first time you use it on your application (or other) log files. It's cool because with just few click You can search trough your "big data" log files, but you can also create some reports or dashboards to see what you have to analyse. Pattern and statistics are also cool and useful. You can also zoom on a selected area to go in deep and to do a better analysis on data.

What do you dislike?

We've had some problems the first time to make it work, but when You understand his "philosophy" everything is smooth and works. It has a cost - of course - but the product - i think - deserves.

Recommendations to others considering the product

Consider testing it, it's free for i don't remember how many Gigabytes, and then if you like it you can buy a tot gb for month or something like.

What business problems are you solving with the product? What benefits have you realized?

we've centralized a lot of old and unreadable application log (csv, log file, xml files and so on...what a mess) into this application. so we've reduced log dedicated machine and reduced log reading time. Excellent product

Splunk Enterprise review by Administrator in Hospital & Health Care
Administrator in Hospital & Health Care
Validated Reviewer
Review Source

"Splunk Enterprise review"

What do you like best?

Splunk is a great asset for our company. It allows us a one-stop-shop for log analysis from pretty much every networked device in our environment. We have been a satisfied Splunk customer for over 3 years now. Our developers use the product for troubleshooting application issues and our infrastructure and security team use it for advanced log analysis.

What do you dislike?

Splunk is not cheap and there is a decent learning curve involved to learn how to query information from the Splunk repository. Once you get the hang of the query language, it is not too bad, but it can turn over the "casual" user.

What business problems are you solving with the product? What benefits have you realized?

We generate security alerts based on correlated log data as well which is very helpful for getting out in front of potential security related issues. Having all of the logs in one place makes it much easier for our infrastructure and network administrators to troubleshoot complex issues that span multiple products and technology stacks.

Splunk Enterprise review by User in Education Management
User in Education Management
Validated Reviewer
Verified Current User
Review Source

"Okay for DB monitoring"

What do you like best?

The interface is fairly easy to use and you can access your data from anywhere after you log in. It works well when you don't have a ton of data.

What do you dislike?

The query language is not intuitive and can feel difficult to use. Graphing and charting isn't easy to use either, though it seems like it could be a nice feature.

Recommendations to others considering the product

You have to learn the Splunk query language, or designate at least one or two people on your team to become proficient in it. You will may need to rewrite your logs because Splunk likes to index a specific way.

What business problems are you solving with the product? What benefits have you realized?

Real time alerting, application monitoring, feature monitoring

Splunk Enterprise review by Greg V.
Greg V.
Validated Reviewer
Verified Current User
Review Source

"Saving the Day"

What do you like best?

Splunk allows me to have insight into logs and systems that I could not possible search on my own within any reasonable amout of time.

What do you dislike?

Honestly, there is very little to dislike. Splunk is a very flexible product that allows you to ingest any human-readable text.

Recommendations to others considering the product

Join the community, they will help you...trust me they will.

What business problems are you solving with the product? What benefits have you realized?

Splunk Enterprise was brought in as a SIEM tool to help analyze our vast systems. It has done that and more.

Splunk Enterprise review by Dan A.
Dan A.
Validated Reviewer
Verified Current User
Review Source

"Splunk is Operational Intelligence for the future."

What do you like best?

Splunk has no end to the possibilities and use. You can use it for IT Operations, Security or for sales. It accepts all kinds of data feeds, no matter the vendor or the format. once the data is in Splunk, there is no end to what you can do with it. Manipulate it, report on it, set up alerts and dashboards. If you are a cloud customer, you wont have to worry about the infrastructure giving you more time to play with your data.

What do you dislike?

Learning the Splunk search language takes a little time but its not bad.

Recommendations to others considering the product

download the free trail and import some data, you will soon realize its huge potential.

What business problems are you solving with the product? What benefits have you realized?

Right now its Security Intelligence and alerting but tomorrow it could be used by other business units for inventory, sales and scada information.

Splunk Enterprise review by Jagadish M.
Jagadish M.
Validated Reviewer
Verified Current User
Review Source

"Splunk Advantages"

What do you like best?

Splunk will publish the data by connecting to any different source systems and shown in the dashboard with all the trend.

What do you dislike?

Depends upon the Application logs and sys logs rather than having its own data.

Recommendations to others considering the product

Its a very good tool to capture the logs form different sources and publish the statistics to business

What business problems are you solving with the product? What benefits have you realized?

Tracking the transactions and it could help business in terms of publishing the transaction trend and also in triageing the issues.

Splunk Enterprise review by Rahul N.
Rahul N.
Validated Reviewer
Verified Current User
Review Source

"Great and powerful analytical tool"

What do you like best?

easy to setup and use. It's an excellent tool to analyze real-time data & logs

What do you dislike?

With its long features using it can get really complex using it. you will have to read through many documentation to find the answers you're looking for and sometimes you don't find it

What business problems are you solving with the product? What benefits have you realized?

We use Splunk to setup alerts and monitors for our production system which help in reducing the turn around time for troubleshooting any issue.

Splunk Enterprise review by Michael L.
Michael L.
Validated Reviewer
Verified Current User
Review Source

"Splunk Enterprise: data made discernable"

What do you like best?

It's easy to pivot around in the data you have in splunk when investigating something.

What do you dislike?

Licensing can be painfully expensive when you want to put a lot of enterprise data in the system.

What business problems are you solving with the product? What benefits have you realized?

We use it in multiple groups, but I primarily use Splunk Enterprise with Enterprise Security to monitor our environment from a security perspective. It has helped us solve issues we didn't even realize were occurring (like failed authentications from service accounts).

Splunk Enterprise review by User in Retail
User in Retail
Validated Reviewer
Verified Current User
Review Source

"Splunk for business analytics"

What do you like best?

quickly and easily search across all types of logs and files. correlates events based on times. easy to learn

What do you dislike?

as secondary users in the company we are definitely restricted on what data we can ingest without increasing company license.

Recommendations to others considering the product

splunk is very powerful. I think it has a lot of potential outside of the main use of IT security and operations. Can automate live reporting without going through Data Warehouse.

What business problems are you solving with the product? What benefits have you realized?

In our company security and operations use Splunk, however the BI team recently started using splunk for real time alerts and verification's for ecommerce.

One thing we already implemented is extracting offsite login times to compare to work hours submitted.

Splunk Enterprise review by Salman Q.
Salman Q.
Validated Reviewer
Verified Current User
Review Source

"Collect and Analyze your Application Performance"

What do you like best?

The beautiful charts of your performance , logs or data. Perfectly indexed logs. While i say Perfectly indexed it means you can search any thing out of big data quite easily. For me that is the real power of Splunk.

What do you dislike?

I hate its query interface. Its as powerful as advertised but not very easy to use.

Recommendations to others considering the product

Perfect if you are looking for performance analysis or logs management.

Its free for some extend of resource you can check the limits. Try it and i bet you will find it really useful.

What business problems are you solving with the product? What benefits have you realized?

We have to maintain logs (csv, xml and other) of about 200 applications. Manual searching requires a lot resources. But now we have shifted to splunk. We are inspired by its indexing power. Now searching from logs is quire easy.

Splunk Enterprise review by Administrator in Computer Networking
Administrator in Computer Networking
Validated Reviewer
Review Source

"Added Bonus to your IT Tools"

What do you like best?

Makes monitoring your environment easier with the help of this tools. You don't have to transverse the network looking for hostname to IP or IP to username. This program does it. Moreover, it monitor traffic like a firewall with the rules of the firewall.

Btw, it reads logs from your backup, windows events, and any logs you can throw at it.

What do you dislike?

I don't like that it's still web base. Meaning, if your have a lot of internal traffic, site loads will differ. Your mileage will vary, that is my only complaint about it.

Recommendations to others considering the product

If you want to save time, use this awesome software for logs, monitor hosts across networks, reporting, and malware.

What business problems are you solving with the product? What benefits have you realized?

Trying to save time by having a tool like Splunk to work along my Palo Alto Firewall. The PA is great, but doesn't do reporting well. Spunk makes finding malware to websites that a user takes easier. Save me a bunch of time and well worth the money.

Splunk Enterprise review by User in Internet
User in Internet
Validated Reviewer
Verified Current User
Review Source

"Powerful, Malleable, sometimes too complex"

What do you like best?

Incredibly powerful, can handle the entirety of a large scale online business data indexing. Can dive into just about any error type and logs to debug whats going on in the business. Good looking dashboards to track statistics, admittedly underutilized.

What do you dislike?

Requires nearly a specialty in the program itself, while it can do just about anything log and data related, it needs classes and instruction to be fully utilized. The query language can be a bit overbearing and needs a bit of time to get used to it. Doesn't get its full potential realized until expertise is obtained.

Recommendations to others considering the product

If you/your company is utilizing or planning on utilizing Splunk, then I would highly recommend the Splunk training that is offered. It can be expensive, but if you want to get the the full Splunk experience it is highly recommended. Before any Splunk training, I was only using about 10% of its power. I would like to think I am up to 50% now.

What business problems are you solving with the product? What benefits have you realized?

Identifying and triggering of alerts for various error types and volumes. Investigation into incidents related to customer activity, server functionality, and various business situations. Can dig into just about anything done from the frontend to the backend data-wise.

Splunk Enterprise review by Parikshith M.
Parikshith M.
Validated Reviewer
Review Source

"Very useful"

What do you like best?

Imagine you have 10 servers running and you need to debug a exception. Wondering how you can login to each and check ? This is where Splunk is extremely handy. It has awesome data analyzing tools. The dashboards are extremely customization friendly .

What do you dislike?

The queries is difficult to understand to start with. The overall UI itself looks extremely complicated when someone new to it starts using it. But yes, powerful tool will have some complexity , wouldn't it ?

What business problems are you solving with the product? What benefits have you realized?

We do log analyzing using Splunk. The server logs are collected which makes searching for exceptions easier. The Dashboard is being used to know the latency of the API's which can be easily presented in any meetings.

Splunk Enterprise review by Teena H.
Teena H.
Validated Reviewer
Verified Current User
Review Source

"Allows for quick review of multiple log events"

What do you like best?

We can troubleshoot an issue end to end with all of our logs in one console. Creation of dashboards allows a quick view of potential issues before they become impacting.

What do you dislike?

The search language can be a challenge for the novice user.

What business problems are you solving with the product? What benefits have you realized?

Our support staff has been able to reduce MTR with the help of dashboards and quick searches across multiple

Splunk Enterprise review by Aman K.
Aman K.
Validated Reviewer
Verified Current User
Review Source

"Splunk Review"

What do you like best?

Checking logs for all applications in one place. Custumizable search by using various input String parameters.

Using alerts triggered when application encounters certain errors in logs.

What do you dislike?

User Interface and input methods could be more user friendly.

Recommendations to others considering the product

Very nice and useful, worth trying for productions systems where lot of monitoring is required.

What business problems are you solving with the product? What benefits have you realized?

Checking specific error / string in logs of big enterprise applications having big and large number of logs files

Splunk Enterprise review by Administrator in Defense & Space
Administrator in Defense & Space
Validated Reviewer
Review Source

"Splunk, for when other companies say they can't parse that"

What do you like best?

For me the best part is all the visualizations. Being able to display data in a way for others to understand is very important for me. Splunk allows me to display up to the second data in many different formats. Their custom visualizations allow you to download or develop a visualization to fit your need.

What do you dislike?

There is no real central manager for the universal forwarders. You can assign apps and configurations and see the health of the forwarder, but no way to push updates or restart the forwarder natively.

Recommendations to others considering the product

Read the Docs, join the slack group, and ask questions. The community wants you to succeed.

What business problems are you solving with the product? What benefits have you realized?

Currently using it as our SIEM. We have found correlations in our data that other tools couldn't. This is due to Splunk being able to ingest data in any format, so we are not limited.

Splunk Enterprise review by Christian Nahuel P.
Christian Nahuel P.
Validated Reviewer
Verified Current User
Review Source

"Vital for Mobile Apps"

What do you like best?

Splunk is a great tool to monitor apps performance. It has really accurate information, simple and clear dashboards and it is pretty easy to use. Furthermore, it has a really good dashboard for errors with an spectacular stacktrace tool that allows you to symbolicate code.

What do you dislike?

In Mint Splunk you can not customise the metrics. For example, if you are checking popular OS for an App you can only retrieve five results. The same happens with popular App versions or most used devices.

Recommendations to others considering the product

It is a great tool that can be combined with NewRelic, Datadog or metrics retrieved by Google/Apple stores.

What business problems are you solving with the product? What benefits have you realized?

Splunk is perfect for us to check out mobile app performances. It really helps us to find out errors, crashes and bugs. It also help us to retrieve important metrics about sessions.

Splunk Enterprise review by Internal Consultant in Banking
Internal Consultant in Banking
Validated Reviewer
Review Source

"Great search, not so great UI"

What do you like best?

The ability in Splunk to search for errors online and without having to SSH or Telnet into a console would have to be the best feature of Splunk by far.

What do you dislike?

The inability to then simply review and investigate a particular log message would have to be the biggest downfall of the platform. Text is presented in the tokenised view and it definitely isnt intuitive on how log messages and the surrounding (preceding or proceeding) logs can be viewed easily... if it’s possible I still haven’t figured it out after 12 months of using the product.

Recommendations to others considering the product

Improve the search result UI would have a dramatic improvement on usability. Not living up to the dream in it’s current state.

What business problems are you solving with the product? What benefits have you realized?

Ability to determine if an error occurred, not great at determining other errors in the lead up to a particular problem however.

Splunk Enterprise review by Consultant in Telecommunications
Consultant in Telecommunications
Validated Reviewer
Verified Current User
Review Source

"A good tool for end to end service analysis"

What do you like best?

Splunk gives me a way to program own script to pick up key information and perform analysis automation.

What do you dislike?

I'm seeking a much easier way drag and drop graphic tool can make scripting much more easy.

Recommendations to others considering the product

Splunk is a good tool for big data collection, analysis and presentation.

What business problems are you solving with the product? What benefits have you realized?

We have been using Splunk to integrate our end to end service monitoring and analysis. Splunk is a good tool to collect all key information from various platforms and applications through the whole end to end service connectivity to provide a direct view for the health of the service for our operation team .

Splunk Enterprise review by Luca G.
Luca G.
Validated Reviewer
Review Source

"Reliable, flexible, feature rich but quite hard to learn."

What do you like best?

- UI options for data visualization are good. Quite flexible charts.

- Transactions feature is really great (even though hard to know it even exists).

- Alerting is extremely useful and very reliable.

What do you dislike?

- Slow and sluggish.

- GUI not quickly responsive.

- Proprietary query language not intuitive. Steep learning curve.

Recommendations to others considering the product

Splunk does its job but it requires an investment in that the learning curve is not flat. It has its own query language. Most features require studying to even know they are there. Regardless it is for sure a powerful tool once learnt.

What business problems are you solving with the product? What benefits have you realized?

- Metrics, Monitoring, Alerting, Analysis

Splunk Enterprise review by Administrator
Administrator
Validated Reviewer
Verified Current User
Review Source

"Best Enterprise Log Management and Intelligence Solution Money Can Buy"

What do you like best?

Super powerful, smartly designed, intuitive to use, and endless number of use cases.

What do you dislike?

Upfront and ongoing costs are a bit pricey. There are other products on the market that can do most of the same things Splunk can do for a much lower price point.

What business problems are you solving with the product? What benefits have you realized?

Splunk Enterprise is serving as our enterprise SIEM, which we rely upon for collecting security event logs from our disparate security tools and for enriching these logs prior to feeding them into our security operations and GRC tool for incident response and risk management.

Splunk Enterprise review by User in Computer Software
User in Computer Software
Validated Reviewer
Review Source

"Very Powerful, Very Complex"

What do you like best?

Its easy to pick up and do short/simple queries, and once you get the hang of it, it is an incredibly powerful too. It doesn't really care what it is being used to search through or for, just point it at something, and it will do its job.

What do you dislike?

Splunk is easy to learn, hard to master. Getting from the simple searches to the advanced stuff is very challenging, especially if you teach yourself, but well worth it. Another downside is I wasn't able to find a way to publish records automatically to Jira. It would be incredibly useful to be able to push search results with test reports to Jira tickets

Recommendations to others considering the product

Pay for some kind of training for your people. They will be able to get much more out of it than if they are self taught.

What business problems are you solving with the product? What benefits have you realized?

Log searching and monitoring in our production environment. Using a tool like splunk, even without advanced knowledge, is a million times better than manually searching through logs.

Splunk Enterprise review by Lsmbert T.
Lsmbert T.
Validated Reviewer
Verified Current User
Review Source

"Splunk the tool for cyber security"

What do you like best?

Splunk can tell you everything when the application run: port number , fire wall, what is blocking and much more

What do you dislike?

The data that slpunk collect doesnt look straight forward, need a lot of effort to dig through to find what we need

What business problems are you solving with the product? What benefits have you realized?

We need to prevent all outgoingnport when our application runs. With splunk, we are able to identify all the ports

Splunk Enterprise review by Michael I.
Michael I.
Validated Reviewer
Verified Current User
Review Source

"Swiss Knife of SIEM"

What do you like best?

Easy to create query and integrate to other system and application. Speaking of application there are a lot of adds on you can integrate to Splunk. Correlation and Investigation is easy because of how Splunk parse data.

What do you dislike?

None. Maybe things to improve is the cost. :D

Recommendations to others considering the product

Try and experience change.

What business problems are you solving with the product? What benefits have you realized?

Output, creating a report makes every engineer life easy. Can customise and satisfy every report needed.

Splunk Enterprise review by Administrator in Utilities
Administrator in Utilities
Validated Reviewer
Verified Current User
Review Source

"Great product, easy to index, search and make sense of logs"

What do you like best?

how easily you can search and make sense of logs from many sources. Splunk offers some great dashboards that can be used to trend the frequency of certain meaningful or important log events. Splunk also has some cool performance monitoring capabilities that can be used as a monitor for unix boxes, etc to trend CPU, Memory, disk I/O, etc.

What do you dislike?

The licensing model is quite costly, it really makes it a great idea to have an ELK stack in front of splunk so that you can only send the more meaningful logs to splunk that need to be stored more long term. Really my only dislike is that the licensing model is so expensive if you want to send a crapload of logs, they license by the gigabyte index/day.

Recommendations to others considering the product

Deploy an ELK stack in front of Splunk, this will save you money on licensing. You can literally save hundreds of thousands of dollars deploying ELK to index your logs and then forward them over to splunk for retention and normal user searches. This will also reduce the performance requirements of splunk, and make it much faster for your users. ELK can be done completely open source and for free, and can be scaled horizontally for free when deployed with a load balancer/ADC in front.

What business problems are you solving with the product? What benefits have you realized?

Capturing error information from BEA Weblogic instances, Firewalls, Security devices, and forwarding some along to our SIEM. We have used Splunk to replace LogLogic, and have since been able to spot many issues in the environment on our load balancers, firewalls, applications, servers, and routers that we were never seeing previously.

Splunk Enterprise review by Scot L.
Scot L.
Validated Reviewer
Review Source

"Best of Breed"

What do you like best?

Splunk Enterprise is the best of what's out there for event correlation. It is very extensible and can take almost any kind of data with a little work. FANTASTIC for searching data and identifying correlations and patterns, or a lack of correlation and patterns to identify the anomalies.

What do you dislike?

It is pretty expensive when you start to ingest all the data and setting up alerts and automated detections is more difficult, but it can be done.

Recommendations to others considering the product

Make sure you have enough infrastructure and it is configured properly

What business problems are you solving with the product? What benefits have you realized?

Incident response and malware hunting are much easier to do, including scoping an incident

Splunk Enterprise review by User in Information Technology and Services
User in Information Technology and Services
Validated Reviewer
Verified Current User
Review Source

"Splunk is a game changer"

What do you like best?

Splunk Enterprise has allowed us to easily sort data from multiple sources in easy to manipulate and view dashboards and reports in way we could never do before.

What do you dislike?

The only thing I can say that I dislike about Splunk is that it has made our customer think that our job is a piece of cake because of how quickly we can answer their questions!

Recommendations to others considering the product

You won't be sorry

What business problems are you solving with the product? What benefits have you realized?

Consolidated log review that has allowed us to answer questions faster than ever before and identify issues and metrics that we could not have done easily before the implementation of splunk.

Splunk Enterprise review by Megha S.
Megha S.
Validated Reviewer
Review Source

"the best search engine"

What do you like best?

Easy access, log analysis, charts, queries, easy interface. best monitoring system, real time logs.

real time alert trigger . easy to get history data from the tool. speed performance.

accurate analysis, best features of monitoring, can interface with many other tool.

What do you dislike?

Nothing much. everything is more easy and useful in tool. no negative feedback as of now.

Recommendations to others considering the product

secured and easy setup or tool for bussiness.

What business problems are you solving with the product? What benefits have you realized?

Splunk is integrated with many other tools and used for monitoring services and tools. it provides real time analysis.

its easy accessible, more secured and different charts of monitoring tools.

Splunk Enterprise review by Joe C.
Joe C.
Validated Reviewer
Verified Current User
Review Source

"The clear leader in centralized log management and monitoring"

What do you like best?

Easy to setup, upgrade, manage, and configure to meet your needs. The universal forwarder makes this easier than any other solution out there.

What do you dislike?

Price can be of a concern. If you have a large influx of traffic being logged, you could easily go over your license limit and have a violation.

What business problems are you solving with the product? What benefits have you realized?

Better detection of errors in application logs

Splunk Enterprise review by User in Computer Software
User in Computer Software
Validated Reviewer
Verified Current User
Review Source

"Logs logs logs FTW"

What do you like best?

A super useful tool to figure out what's happening on production environments, helping us to quickly track and fix production issues that help real customers. It is simple to learn.

What do you dislike?

So far so good, I don't deal with many of the splunk issues that the guy in charge always complains about, i just know it requires high maintenance work and someone with a special set of skills to do so.

Recommendations to others considering the product

Splunk is a good and reliable software, it's definitely a must have that translates into real customer benefit.

What business problems are you solving with the product? What benefits have you realized?

Real customer benefit as we are able to know exactly what happened when an issue arises. Some Customer Care agents are able to figure out what's wrong from the logs, even tho this is not their job, but it is so easy to use, thanks to this, not all issues get escalated to the development team, letting us focus in other stuff. If any issue is escalated to the dev team, we can quickly go to splunk and figure out what's happening.

Splunk Enterprise review by Scott O.
Scott O.
Validated Reviewer
Verified Current User
Review Source

"Splunk rocks!"

What do you like best?

I love how easy it is to get data into the tool and search it.

What do you dislike?

The APIs for alert scripts and custom search commands could be a little better documented.

What business problems are you solving with the product? What benefits have you realized?

All of our logs are in one place and it's easy to see if any problems need to be addressed.

Splunk Enterprise review by User in Information Technology and Services
User in Information Technology and Services
Validated Reviewer
Verified Current User
Review Source

"Splunk is a great product"

What do you like best?

Splunk is a great product. We have a enterprise license and have been using it from 4 years. Splunk has a great and easy to use user interface. We were able to build many dashboards which give lot of useful information. No need to login to various backend nodes to retrieve logs which are not in a readable format.Using splunk we can access any logging info regardless of which machine that data is stored in. We were able to identify many bugs and issues in our code before our clients saw it and many times before the code is delivered to clients.

What do you dislike?

I do not have any major complaints about splunk.

What business problems are you solving with the product? What benefits have you realized?

We were able to identify many bugs and issues in our code before our clients saw it and many times before the code is delivered to clients. Also now we have one centralized place to see the logs regardless of environments.

Splunk Enterprise review by User in Information Technology and Services
User in Information Technology and Services
Validated Reviewer
Verified Current User
Review Source

"Splunk occasional user"

What do you like best?

The quality of data that stores within splunk and can be searched in so many different ways. It's the only way we can take very granular customer data and pull it to analyze.

What do you dislike?

Not user-friendly if you're non technical. You have to learn how to operate Splunk in the way it reads and that's not intuitive at first.

Recommendations to others considering the product

Large cost, it's worthwhile to make sure you need large amounts of data stored outside of your product/data warehouse and the cost/benefit analysis is worth that. Also need to make sure users at your company are aware of how to use this tool which requires some time and effort.

What business problems are you solving with the product? What benefits have you realized?

Being able to keep track of customer data for a longer period of time and be able to store the massive amount of data that requires outside of our system.

Splunk Enterprise review by praveen k.
praveen k.
Validated Reviewer
Review Source

"Splunk Enterprise"

What do you like best?

Real Time Services,Monitoring and easy troubleshooting.

Best Search Engine.

Easily integration with other tools.

Easy way to set up threshold where alerts or email can be triggered

best data extraction and history. easy learning tool for newbies.

easily get the data in terms of charts, graphs, alerts.

Logs and live data monitoring.

Easy way to pull the service logs

What do you dislike?

all the features are best, no dislikes in newer version of the tool.

Recommendations to others considering the product

best tool for logs and real time application data monitoring.

What business problems are you solving with the product? What benefits have you realized?

1,Monitoring real time applications.

2,Alerting Systems

3,Data Extract.

Splunk Enterprise review by Luca C.
Luca C.
Validated Reviewer
Review Source

"A great performance analysis product "

What do you like best?

One of the most common problems when working in medium or large companies is to be able to analyze certain types of cases and certain problems occurred in a given period, however, without knowing what was causing the problem because certain items and factors may be manifold due to the use of different technologies involved simultaneously on the same subject or on the same transaction.

Inside a complex infrastructure is not easy to analyze which single component (for example, application, database, server, network device, etc..) was the cause of a problem often it requires analysis by different departments, thanks to the use of Splunk the control management and the analysis of the issues is centralized in one software.

The analysis are facilitated through the use of various detailed dashboards.

Very convenient are the automatic alerts and triggers.

What do you dislike?

The cost of the product is high.

The usability for novice users is not really easy, but reading a little bit of documentation and studying a bit the syntax of the search the user is able to do a lot of query.

What business problems are you solving with the product? What benefits have you realized?

By using Splunk we can monitor several different technologies and network equipment, the activities of the databases etc. via Splunk has been possible to determine the cause of a fault at a given moment.

Splunk Enterprise review by User in Hospital & Health Care
User in Hospital & Health Care
Validated Reviewer
Verified Current User
Review Source

"Extremely helpful tool for monitoring and analysis"

What do you like best?

Splunk is one of the best tool I have used so far. It is very fast for loading large amount of data. We can create our own dashboard helpful for various analysis. We can set multiple alert.

What do you dislike?

I hardly see any issues with splunk, data analysis is too good but you must be good enough to write complex splunk queries.

What business problems are you solving with the product? What benefits have you realized?

I am using it for production log analysis, real time prod logs but absolutely no delay are very helpful.

Splunk Enterprise review by Bharadwaj (Brad) C.
Bharadwaj (Brad) C.
Validated Reviewer
Review Source

"Good Product; will not say the best"

What do you like best?

migrated to splunk within the last year from an internal inbuilt tool (don't know who made the decision to switch because i personally loved the internal one). It is definitely simple to use and a great way to look for logs for any production issues. The mobile support is a great way to keep up. Lets you customize the search strings that you specifically need and if you are developer, its a great way to pin-point to the exact trace.

What do you dislike?

Quite Expensive; would prefer to have more customization especially with regard to date format. Need better dashboard facilities that can provide diverse reporting/analytics. Learning curve.

Recommendations to others considering the product

check if its the right tool by using the trial version because its expensive to get; but has a lot of cool stuff that you could do with logs. Definitely a tool every dev/ops guys want

What business problems are you solving with the product? What benefits have you realized?

centralizing the logging to one tool; we wanted something that can combine our website as well as mobile apps logging.

Splunk Enterprise review by Administrator
Administrator
Validated Reviewer
Verified Current User
Review Source

"Splunk everything"

What do you like best?

Powerful tool yet easy to learn, configure and manage.

User community is very active and a great resource for questions and help with any issues one might encounter.

What do you dislike?

Nothing to dislike. Support is readily available, either from Splunk or the user community, should there be any issues.

What business problems are you solving with the product? What benefits have you realized?

Splunk gives us the capability to monitor anything and everything that needs to be monitored. It also provides an easy way to correlate events from various sources and come up with a complete picture status of the system or applications.

Splunk Enterprise review by Christina S.
Christina S.
Validated Reviewer
Review Source

"How can you not have Splunk!"

What do you like best?

Splunk allows access to all the operational data. It lets you correlate events and set up alerts to help with future issues. It allows for metric tracking and analysis and provides easy to use dashboards.

What do you dislike?

Dashboard design is restrictive. The layout is pretty fixed unless you have admin rights to create style sheets. The UI only lets you do half of the options, you must go into the simple xml for full range of options. Creating drill-ins is not intuitive. Limited out-of-the-box charting options for time series.

What business problems are you solving with the product? What benefits have you realized?

Operational Monitoring

Splunk Enterprise review by User in Information Technology and Services
User in Information Technology and Services
Validated Reviewer
Verified Current User
Review Source

"Spelunking your logs with Splunk!"

What do you like best?

- The ability to create dashboards based on your logs

- Quick searching of logs

- Easy, easy, easy collection of logs

What do you dislike?

One of the biggest problems with Splunk is their cost model as they charge by the GB.

Recommendations to others considering the product

Consider getting the unlimited pricing tier as you don't realize how much data you logs aggregated can add up to.

What business problems are you solving with the product? What benefits have you realized?

We are easily able to aggregate logs for our web-based solutions which helps immensely with troubleshooting. We also create dashboards to see what solutions our users are using and if any issues are starting to arise.

Splunk Enterprise review by Trisha D.
Trisha D.
Validated Reviewer
Review Source

"Easy to use for small companies"

What do you like best?

Splunk is very user friendly and on the analytics side, the visuals created are very elegant!

What do you dislike?

As you scale does the price and it can definitely get overly expensive and the more data you need to index, the higher the CPU cost is. Also some of the querying requires a bit of a learning curve

Recommendations to others considering the product

I would not recommend Splunk For small to medium sized businesses since there are better and cheaper tools out there

What business problems are you solving with the product? What benefits have you realized?

Log processing and querying and analytics on these logs

Splunk Enterprise review by Tiffany Nicohle B.
Tiffany Nicohle B.
Validated Reviewer
Review Source

"Splunk for Data Analytics"

What do you like best?

Robust features and adaptability and ease of customization

What do you dislike?

There was a bit of a learning urge for new users

What business problems are you solving with the product? What benefits have you realized?

Working in a group that supports and troubleshoots issues for a large number of users, we needed an application that would allow us to view and predict issues that surfaced. We had no way to find root cause within our division. Splunk allowed us to pool data from critical services and analyze it to gain insight on issues and proactively find issues.