Security

Splunk Free Version for small company

kmm1
New Member

Hello 

I work for a company with max 12 workstations to monitor, and we only want to log critical logs from these stations. Is Splunk Free a good option?

Labels (1)
Tags (3)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @kmm1,

if you ask the innkeeper if the wine is good you will always get the same answer: excellent and abundant!

joking aside, the first thing to check is whether 500 MB/day is enough for you: as long as you have logs from a firewall or a proxy and you certainly exceed this limit.

In addition, Splunk Free lacks some important features such as system login.

So I recommend you analyze your daily indexed log volume requirements and see how much a Splunk Cloud solution would cost you which I don't think is that expensive for small volumes.

Ciao.

Giuseppe

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...