Cisco ThousandEyes empowers organizations to assure every digital experience across every network, everywhere, every time.
N/A
Splunk Enterprise
Score 8.5 out of 10
N/A
Splunk is software for searching, monitoring, and analyzing machine-generated big data, via a web-style interface. It captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards and visualizations.
N/A
Pricing
Cisco ThousandEyes
Splunk Enterprise
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco ThousandEyes
Splunk Enterprise
Free Trial
Yes
Yes
Free/Freemium Version
No
Yes
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
Optional
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Cisco ThousandEyes
Splunk Enterprise
Features
Cisco ThousandEyes
Splunk Enterprise
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
Cisco ThousandEyes
-
Ratings
Splunk Enterprise
7.1
Ratings
9% below category average
Centralized event and log data collection
00 Ratings
9.00 Ratings
Correlation
00 Ratings
9.00 Ratings
Event and log normalization/management
00 Ratings
9.50 Ratings
Deployment flexibility
00 Ratings
7.00 Ratings
Integration with Identity and Access Management Tools
As a service provider that is in multiple datacenters it's a great tool to use and leverage. Alot of smaller providers are only using NMS nodes that are hosted in their HQ or in spots that aren't where their content is hosted. Being able to run tests directly from your datacenters (between them or to the content provider itself) gives more accurate results. The downside is if you have no server infrastructure you'll have to install servers/machines to utilize it.
Pros: Splunk is very well suited if you have multiple log sources of related data. All of them can be correlated and tasks can be automated based on the requirement. Other than alerts, Splunk can also run a specific script of your choice, based on some defined conditions. Cons: If you have a few logs but a large number of log sources, Splunk can be very expensive.
Agent to Agent testing. Full round trip test. Have a customer using a Server Side API that is having an issue. Loan a Nuc, or have them install the ThousandEyes agent in their network. You'll find the issue guaranteed.
Device Layer vision - ability to see from the server, through the Firewall, switches Proxy and internet. Measure jitter, latency, response time, load time and see the path your packet takes.
Share your tests live. Provide the customer a link to a live test, they can see what you do, review your metrics and verify your tests. They can also use it as a tool to better their service. Build the trust and stickiness with your customers' most difficult users - the IT Operations team.
Validate your QOS and routes for VOIP, video conferences, and data traffic. Highly flexible and configurable complete with transaction-based testing, custom headers, calls and tools to mimic any scenario you need.
We have the product, we have a fair amount of wireless issues. You have to go through so many hoops, links and selections that I would think would've been impossible. Maybe if you have a specialized engineer, you would be able to use the thousandeyes product to troubleshoot a problem. But if I want to share with our knock, for example, would be very challenging because there is so many paths that you have to go and there is so many assumptions you have to do to actually find the root cause of the problem. What I would expect is maybe what they can do is implementing some AI today on this product to give some hints, "hey, this might be the problem because the data is there but it's difficult to find." We need an easier way to find how we can use the platform to point out where's the root cause of those problems.
Even though there is a search tool as a help function, you still have to read through many documentation to find the answers you're looking for and sometimes you don't find it. The help function in Splunk could be improved to be more intuitive or have a built-in help per report, panel or dashboard.
Creating a Splunk dashboard is rather straightforward however, customization is not. Splunk could be improved to provide more tools or features for customization such as adding colors and font options for text and graphs or graphics.
My dashboard has a lot of useful information and I want the important panels and reports at the top but there is no easy way to do this. Perhaps Splunk could be improved to allow features such as adding URL links to other dashboards or some other clever way to emphasize the important data in my dashboard without compromising space.
We will definitely renew and maybe even extend our usage of ThousandEyes. We have been using ThousandEyes now for a couple of years and it has shown us major benefits. With the new options it offers for SD-WAN for us it is a no brainer to renew our current licenses
We are using Splunk extensively in our projects and we have recently upgraded to Splunk version 6.0 which is quite efficient and giving expected results. We keep track of updates and new features Splunk introduces periodically and try to introduce those features in our day to day activities for improvement in our reporting system and other tasks.
There is definitely a learning curve to ThousandEyes, but once you understand how the client deployment works and how to set up monitoring, things go pretty smoothly. I think the initial setting up of clients on endpoints can be a little tricky though.
Splunk Enterprise has plenty of storage space for security logs and can search and correlate suspicious activities up to 30+ days back. Splunk Enterprise can integrate with a ticketing system to track threats and correlate with IoC between security events. Splunk Enterprise can provide reports of account lockouts. Splunk Enterprise can consolidate multiple security alerts into one entry with a number showing how many events occurred.
You have online support from the tool itself 24/7 and they are very responsive. We also have a specific account manager and specific engineer assigned to help us with very specific questions for our environment. The level of response to our requirements is always super high. We have requested specific features to be added and these have been developed and introduced very quick tot he product (within weeks). Their DevOps and agile approach seems to pay off.
Splunk maintains a well resourced support system that has been consistent since we purchased the product. They help out in a timely manner and provide expert level information as needed. We typically open cases online and communicate when possible via e-mail and are able to resolve most issues with that method.
Our Cisco reps actually had someone teach us a few things about the functionality of ThousandEyes, and it helped a lot. The training was good and we had follow-up assistance as well when we had questions about the monitoring and reporting functions. Overall, we were satisfied with the training and support.
The online course was simple clear and described the main capabilities of the solution. There is also an initial module that can be done for free so anyone can familiarize themselves with the functionality of this solution. On the other hand, however, there could be more free online courses. Maybe even with a certificate, this would broaden the group of people who are familiar with the platform while increasing familiarity with the solution itself.
Our implementation was pretty straightforward, with some issues loading clients on endpoints. We didn't have any notable issues, and I don't really have any additional insights.
It is a similar product to Cisco ThousandEyes. Both solutions give good network monitoring and traffic analysis. But Cisco ThousandEyes works better with Cisco devices and has real-time alerts that are very useful. It also helps to see network problems faster and make troubleshooting easier. Cisco ThousandEyes is also better for checking SaaS and cloud apps like Azure, AWS, Webex, etc. It has endpoint agents that show network quality directly from user devices. The web interface is simple to use, so the learning curve is not too steep. Also, it has many monitoring points around the world, making it easy to check performance outside the company network.
A lot of products have natively inside their own dashboards and or their own logging repositories. And each one is difficult to learn or they're too complex or they're not verbose in the sense that they're not easy to mine the data that you're looking for. So that could be anything from the native logging that you find in other Cisco products. It's easier to use Splunk to draw the data that you're looking for as opposed to going to the individual's products themselves to get the logs that you're looking for.
I think this product would be infinitely scalable since it's all cloud hosted and can support thousands of endpoints if needed. We are only using it for a limited number of endpoints, so we never really considered scalability.
ThousandEyes has helped us quickly isolate issues on some high-profile (within the organization) incidents and whether the network (internally or on the Internet) is at fault. If it is, it becomes easier to see the "where" of the issues quicker so we can move onto what the issue is faster. In the case of non-network related issues, it helps us get the appropriate teams or individuals involved sooner.
Splunk has allowed developers to diagnose production issues when access of control was taken away from them to be allowed to view items in production environments and I believe that is invaluable.
At times some developers weren't super happy about using it, but it was more of the fact that they were used to having production access and not creating their splunk queries to get information.
Going one place to view logs was very beneficial to have.