[ale] Alternative to splunk?

Jerald Sheets questy at gmail.com
Fri Jun 6 10:24:09 EDT 2014


Splunk, to be run properly and really gain the benefits it provides, eats servers like Godzilla.

For instance, in a small site with ~1000 hosts, each DC row had a forwarder cluster of varying size, each section of the DC had indexers, and then each DC had a redundant pair of search heads.  This thing got ridiculous.  Did it provide good info?  Sure, but you really paid for it in nuts & bolts.  Then on top of that, Splunk charges by the GB/TB indexed for their software, not by the node.  (or at least it was that way last time I used it)

—jms


On Jun 6, 2014, at 9:25 AM, Beddingfield, Allen <allen at ua.edu> wrote:

> One of my co-workers set up Logstash, but it seems to take a lot of care and feeding, and a lot of servers.  We are about to move that to Splunk.
> --
> Allen Beddingfield
> Systems Engineer
> The University of Alabama
> 
> ________________________________________
> From: ale-bounces at ale.org [ale-bounces at ale.org] on behalf of JD [jdp at algoloma.com]
> Sent: Friday, June 06, 2014 7:13 AM
> To: Atlanta Linux Enthusiasts
> Subject: [ale] Alternative to splunk?
> 
> I'm looking for a F/LOSS alternative to splunk.  Not interested in SaaS.
> 
> What do you use?
> Something like Elasticsearch, Kibana, an Fluentd all working together?
> http://docs.fluentd.org/articles/free-alternative-to-splunk-by-fluentd
> 
> or
> 
> something else?
> http://devopsangle.com/2012/04/19/8-splunk-alternatives/
> 
> 
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://mail.ale.org/mailman/listinfo/ale
> See JOBS, ANNOUNCE and SCHOOLS lists at
> http://mail.ale.org/mailman/listinfo
> 
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://mail.ale.org/mailman/listinfo/ale
> See JOBS, ANNOUNCE and SCHOOLS lists at
> http://mail.ale.org/mailman/listinfo

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 496 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://mail.ale.org/pipermail/ale/attachments/20140606/96097000/attachment.sig>


More information about the Ale mailing list