Splunk Enterprise Security

Comparison of Splunk enterprise and Splunk enterprise security

aqudoos
Explorer

HI!

Is Splunk enterprise security contains all the features of Splunk enterprise as well other than its advanced security features?If any body have the comparison between Splunk enterprise & Splunk enterprise security please share it here.

0 Karma

pruthvikrishnap
Contributor

Hi Aqudoos,
Enterprise Splunk is a platform and Enterprise security is licensed application which resides on Splunk. For using enterprise security you need to install Splunk Enterprise/Cloud and then use Enterprise Security application.
https://splunkbase.splunk.com/app/263/
http://docs.splunk.com/Documentation/ES/5.1.0/Install/Overview

0 Karma

sudosplunk
Motivator

There is probably a better way of answering this but here are my two cents.

The short answer to your question is yes, splunk ES contains all features of splunk enterprise and additional advanced security features. We can't do proper comparison between ES and splunk enterprise because ES is a fully fledged premium application designed around event correlation, management, and response while splunk enterprise is a software where you will install ES.

You can find more description about ES features here.

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...