Splunk Enterprise Security

Comparison of Splunk enterprise and Splunk enterprise security

aqudoos
Explorer

HI!

Is Splunk enterprise security contains all the features of Splunk enterprise as well other than its advanced security features?If any body have the comparison between Splunk enterprise & Splunk enterprise security please share it here.

0 Karma

pruthvikrishnap
Contributor

Hi Aqudoos,
Enterprise Splunk is a platform and Enterprise security is licensed application which resides on Splunk. For using enterprise security you need to install Splunk Enterprise/Cloud and then use Enterprise Security application.
https://splunkbase.splunk.com/app/263/
http://docs.splunk.com/Documentation/ES/5.1.0/Install/Overview

0 Karma

sudosplunk
Motivator

There is probably a better way of answering this but here are my two cents.

The short answer to your question is yes, splunk ES contains all features of splunk enterprise and additional advanced security features. We can't do proper comparison between ES and splunk enterprise because ES is a fully fledged premium application designed around event correlation, management, and response while splunk enterprise is a software where you will install ES.

You can find more description about ES features here.

0 Karma
Get Updates on the Splunk Community!

Detecting Brute Force Account Takeover Fraud with Splunk

This article is the second in a three-part series exploring advanced fraud detection techniques using Splunk. ...

Buttercup Games: Further Dashboarding Techniques (Part 9)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...

Buttercup Games: Further Dashboarding Techniques (Part 8)

This series of blogs assumes you have already completed the Splunk Enterprise Search Tutorial as it uses the ...