TrustRadius Insights for Graylog are summaries of user sentiment data from TrustRadius reviews and, when necessary, third party data sources.
Pros
Efficient log aggregation and intuitive dashboards: Multiple reviewers have praised Graylog for its efficient log aggregation pipeline, allowing users to easily collect and analyze logs from various sources. The clear and intuitive dashboards provided by Graylog were also highlighted as a positive aspect, making it easier for users to understand and monitor their logs effectively.
Powerful search options: Many reviewers have appreciated the powerful search capabilities offered by Graylog. Users mentioned that they can quickly search through large volumes of logs and easily find specific data without manual filtering. This feature enhances efficiency and saves time for users when troubleshooting or investigating issues.
Flexible configuration options: Users have commended Graylog for its flexibility in configuration. Some reviewers mentioned the ability to store everything on a single box, while others highlighted the option to scale out horizontally using a cluster of Elasticsearch nodes and MongoDB servers. This flexibility allows users to tailor their log management setup according to their specific needs and infrastructure requirements.
Allows insight into logs from various systems and products that would otherwise be time consuming to access and identify. Dashboards can be customised to your preferences and Alerts/emails can be defined when specific events or patterns occur, which is not possible directly from the log source. Our use case is primarily security related looking at access/sign-in logs from various platforms and then sending alerts as required.
Pros
Ingesting various log sources
Dashboards - Customisable
Event alerts/emails
Cons
Support for more log sources
Event alerts/emails - Some cases where unable to separate data from multiple clients, and no easy fix
API - Limits results to 10,000 and can cause server to lockup on queries that exceed the limit
Likelihood to Recommend
Well suited for scenarios such as:
Detecting user OS logins, or user logins from unknown IPs etc.
Access attempts made on a firewall or other network infrastructure
Monitoring changes to Active Directory Groups
Less suited for scenarios where logs and alerts are time critical, eg.as soon as an event occurs an alert is generated and sent
VU
Verified User
Professional in Information Technology (Information Technology & Services company, 11-50 employees)
We use Graylog to collect messages from a variety of different systems like network switch and routers to wifi controllers. We use Graylog to group and create graphs to show specific information. We also use Graylog to send messages to us to alert of certain activities. Graylog is widely used in our office because it is cost-effective and the ability to be tweak for each team.
Pros
The ability to add and remove information to the messages. This makes it so you can customize each message and get the information you really want.
Being able to search for different criteria allows finding the exact data you want without having to manually filter the data.
Searching tends to be quick and is able to process large amounts of data quickly so you don't have to wait forever for your data.
Cons
The graphs and visualizations are limited on the dashboard if there were more options it would be better for different kinds of data.
Likelihood to Recommend
Graylog can collect messages and group them, so if you want to get alerted when there is an abnormal amount of particular messages, Graylog can do that. Graylog can be used to analyze traffic, and if traffic over a certain level and is sustained for an amount of time, it can send the information of which mac addresses are causing the traffic influx.
VU
Verified User
Administrator in Engineering (Computer & Network Security company, 1001-5000 employees)