What is Splunk?

What is Splunk?
  • Log management or log collection tool.
  • Infrastructure monitoring tool.
  • Application monitoring tool.
  • Reporting tool.
  • Analytical tool.
  • Operational intelligence.

Splunk Products?
  • Splunk Light
    • Lightest version of splunk, contains all basic functionality.
    • Hosted on Splunk infrastructure.
  • Splunk Cloud
    • Contains all the functionality of Splunk.
    • Hosted on Splunk infrastructure.
    • Retention policy depends on your package.
    • Supported by Splunk.Inc.
  • Splunk Enterprise
    • Contains all functionality of Splunk.
    • Hosted on your infrastructure.
    • Retention policy depends on your needs.
    • Supported by Splunk.Inc.

Splunk License?
  • Licensing in Splunk is basically based on data ingested per day.
    • i.e. from 00:00 to 23:59 
    • For example: 10GB/Day etc
    • This means 10GB of data is processed by Splunk and stored in one day.
  • There are various types of licenses:
    • Free: 500MB/Day
    • Developer: 10GB/Day
    • Enterprise: Depends on your project requirements.

Comments

Popular posts from this blog

#3 Splunk sub(Commands) [eval, round, trim, stats, ceil, exact, floor, tostring]

#6 Splunk sub(Commands) [fields, rename, replace, table, transaction]

#2 Splunk sub(Commands) [eval, trim, chart, showperc, stats, avg]