Splunk Enterprise Security

Comparison of Splunk enterprise and Splunk enterprise security

aqudoos
Explorer

HI!

Is Splunk enterprise security contains all the features of Splunk enterprise as well other than its advanced security features?If any body have the comparison between Splunk enterprise & Splunk enterprise security please share it here.

0 Karma

pruthvikrishnap
Contributor

Hi Aqudoos,
Enterprise Splunk is a platform and Enterprise security is licensed application which resides on Splunk. For using enterprise security you need to install Splunk Enterprise/Cloud and then use Enterprise Security application.
https://splunkbase.splunk.com/app/263/
http://docs.splunk.com/Documentation/ES/5.1.0/Install/Overview

0 Karma

sudosplunk
Motivator

There is probably a better way of answering this but here are my two cents.

The short answer to your question is yes, splunk ES contains all features of splunk enterprise and additional advanced security features. We can't do proper comparison between ES and splunk enterprise because ES is a fully fledged premium application designed around event correlation, management, and response while splunk enterprise is a software where you will install ES.

You can find more description about ES features here.

0 Karma
Get Updates on the Splunk Community!

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...