Security

Splunk Free Version for small company

kmm1
New Member

Hello 

I work for a company with max 12 workstations to monitor, and we only want to log critical logs from these stations. Is Splunk Free a good option?

Labels (1)
Tags (3)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @kmm1,

if you ask the innkeeper if the wine is good you will always get the same answer: excellent and abundant!

joking aside, the first thing to check is whether 500 MB/day is enough for you: as long as you have logs from a firewall or a proxy and you certainly exceed this limit.

In addition, Splunk Free lacks some important features such as system login.

So I recommend you analyze your daily indexed log volume requirements and see how much a Splunk Cloud solution would cost you which I don't think is that expensive for small volumes.

Ciao.

Giuseppe

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...