We performed a comparison between Graylog and Splunk Cloud Platform based on real PeerSpot user reviews.
Find out in this report how the two Log Management solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."We're using the Community edition, but I know that it has really good dashboarding and alerts."
"Allowing us to set up alerts and integrate with platforms we already use, such as Slack and OpsGenie to alert users of these errors proactively, is also a very useful feature."
"The ability to write custom alerts is key to information security and compliance."
"Real-time UDP/GELF logging and full text-based searching."
"Everything stands out as valuable, including the fact that I can quantify and qualify the logs, create pipelines and process the logs in any way I like, and create charts or data maps."
"This had increased productivity for the dev and support teams, because we are directly notifying them."
"The build is stable and requires little maintenance, even compared to some extremely expensive products."
"We have scaled from a single machine installation (a VM with a Graylog + ES + MongoDB) to (2 Graylog + 2 ES + 3 MongoDB). This was done smoothly with a minimal impact on logging."
"The data management and instant search features are the most valuable ones for us, as they allow us to instantly retrieve information needed for reports and security compliance."
"Everything is maintained by the Splunk support team. Users do not have to maintain any physical servers. They do not have to maintain indexes and searches. It reduces a lot of work on the user side."
"We haven't had any limitations or problems connecting to our network devices."
"As compared to other tools, it is very easy. It is very easy to learn. It also integrates well."
"The Splunk search is powerful compared to similar solutions. We get millions of data points within seconds."
"Splunk Cloud Platform's search modes are a powerful feature."
"Index manager is most valuable because we do not have to bother about internal storage. It is all managed by the Splunk team."
"The most valuable feature of Splunk Cloud is the quick setup."
"I hope to see improvements in Graylog for more interactivity, user-friendliness, and creating alerts. The initial setup is complex."
"More complex visualizations and the ability to execute custom Elasticsearch queries would be great."
"The infrastructure cost is the main issue. I like the rest. If the infrastructure costs could be lower, it would be fantastic."
"Dashboards, stream alerts and parsing could be improved."
"Its scalability gets complicated when we have to update or edit multiple nodes."
"Since container orchestration systems are popular and Graylog fits the niche well, perhaps they could officially support running in docker containers on Kubernetes as a StatefulSet as a use case. That way, the declarative nature of Kubernetes config files would document their best case deployment scenario-"
"With technical support, you are on your own without an enterprise license."
"We ran into problems with Elasticsearch throwing a circuit-breaking exception due to field data size being too large. It turned out that the heap size directly impacted this size in a high-throughput environment, causing unexplained instability in Graylog. We were able to troubleshoot on the Elasticsearch size, but we should have been able to reference some minimum requirements for Graylog to know that our settings weren't sufficient."
"The only thing that is missing from Splunk Cloud is the command-line interface."
"When one of my customers needs an app, and I am able to find that app on the Splunk base, I have to create a ticket and wait for five days for them to download the app into the cloud environment. That is probably one of the main things. It is painful because I have to wait to get that app in the cloud."
"There can be more modules and more integration with other areas in the cloud and on-prem. I am not sure whether it includes network devices and things like that."
"The training models can only be accessed for 30 days, even if it is paid training."
"Customization could be simplified."
"The search for bulk data needs to be improved. When we were looking for the flow, we had to search really hard. I wanted to request the Splunk team to add some features for better search because getting the flow of the bulk data was sometimes hard."
"It needs to mature; it's just getting established in the industry on a wider scale."
"Splunk currently manages the components, which restricts our ability to access them directly."
Graylog is ranked 11th in Log Management with 18 reviews while Splunk Cloud Platform is ranked 3rd in Data Visualization with 34 reviews. Graylog is rated 8.0, while Splunk Cloud Platform is rated 8.0. The top reviewer of Graylog writes "Great detailed search features and easy Java integration, but needs improvement in integration with Python". On the other hand, the top reviewer of Splunk Cloud Platform writes "Does not require backend maintenance, is easily integrated and utilized". Graylog is most compared with Grafana Loki, Wazuh, syslog-ng, Splunk Enterprise Security and Fortinet FortiAnalyzer, whereas Splunk Cloud Platform is most compared with Wazuh, Splunk Enterprise Security, AppInsights, Check Point Security Management and Fortinet FortiAnalyzer. See our Graylog vs. Splunk Cloud Platform report.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.