Live data from Hacker News

Cisco Acquires Splunk

splunk.com

301–310 of 525 posts

Re: Cisco Acquires Splunk

#301

Earlier quoted context omitted.

could you enumerate them, please?

Oracle - don't use an Oracle database unless you hate money, yourself, or your company. SAP - getting off of their ERP systems is an absolute nightmare and they know/exploit that fact. Salesforce - CRM systems, in general, can lead to lock-in due to the sheer amount of data and customization they host. In recent years Salesforce has started to leverage this fact to grow revenue without adding value. Unity - they're g…

Thanks.

Personally I hate those "give me more free info" responses. Do your own homework.

Re: Cisco Acquires Splunk

#302

Earlier quoted context omitted.

I'm sure they'll bundle it or even integrate it with AppDynamics

Most likely they will let AppD die.

Why? I haven't used AppD in ~7 years, but I remember it being one of the most pleasurable APMs (but also ridiculously expensive)

It seems to me the marriage between APM and logging would be a home run.

Re: Cisco Acquires Splunk

#303

Somebody: Splunk has exorbitant prices and locked-in enterprise customers! Cisco: Oh these guys are just like us. Better buy them up. We know this business.

when you read Hacker News thread - every single one of them feels like the world is falling apart. Splunk is a dud or so everyone here thinks: https://siliconangle.com/2023/08/23/splunk-shares-surge-stro...

It's pretty wild to read some of these comments. Splunk is one of the best products I've ever used, bar none. The price is another matter (it's bloody expensive, no doubt about it), but the tool is amazing. I think all the people talking about how much it sucks and can be easily replaced are so far off base they aren't even in the stadium.

Re: Cisco Acquires Splunk

#304
Yeah, we went ElasticSearch and some bespoke code after Splunk decided to raise its prices. Wasn't even a difficult decision, don't regret it.

If you can afford Splunk, just wait a couple of years until they figure that out.

Re: Cisco Acquires Splunk

#305

I hated Splunk so much that I spent a couple days a few months ago writing a single 1200 line python script that does absolutely everything I need in terms of automatic log collection, ingestion, and analysis from a fleet of cloud instances. It pulls in all the log lines, enriches them with useful metadata like the IP address of the instance, the machine name, the log source, the datetime, etc. and stores it all in S…

Sounds awesome for your use case! …but this sounds so much like the legendary Dropbox release thread’s ”just use FTP, SVN, etc” that it made me smile :)

Well no, dropbox is aimed at non-technical oriented users. Sure, they have "enterprise" features for admins now but that's not how it started and in the end the product is vastly consumed by non technical users.

Re: Cisco Acquires Splunk

#307
post #136

I haven't used Splunk in a number of years due to its cost. Splunk seems like a good pairing for Cisco - it's complementary to its other offerings to less price sensitive orgs, like Meraki. I've used several Splunk competitors (Sumo Logic, Datadog, etc.) that all have various strengths but suffer from a lesser version of Splunk's problem (once you're locked in and up for renewal, watch out). I also tried some ELK-bas…

We’ve got some logs in CloudWatch, but I barely use it because the query interface is unfathomably slow (in terms of query throughput). Do you use the web interface to query, or some other way?

The Logs Insights interface (https://us-east-1.console.aws.amazon.com/cloudwatch/home?reg...) is fast enough for all our needs. You have to make sure you're using Insights and not the plain Logs query APIs, which are indeed very slow.

For some applications, it also makes sense to use the built in Logs API that exports logs to S3 (the export process is very fast) then use any of a variety of tools geared toward searching through data on S3.

Re: Cisco Acquires Splunk

#308
post #285
post #269

Earlier quoted context omitted.

I'd rather set my bank on fire.

They would do that for you for free

Oracle? Cisco? Do something for somebody else for free? Are you mad? They'll license the fire, and calculate the fees based on volume of air heated.

Re: Cisco Acquires Splunk

#310
post #4

Genuinely surprised anybody would acquire Splunk in 2023. Whenever you hear about Splunk from security engineers, they're actively trying to get off it (edit: yes, primarily because of cost). Better, next-gen SIEMs are either here or around the corner.

I was at a shop that got heavily integrated into Splunk for security use cases and then entered a split brain mode of 'well if you need observability we already have Splunk' but also 'hey stop doing so much observability, this thing is expensive!'. So for 5 years time we used it for observability, we were only half-integrated and also trying to get off of it. Great stuff.

Pretty sure every Splunk customer has that split brain. This thing's great, what can we quit sending to it?
Post reply on HN