Hi
Has anyone tested the Elastic X-Pack?
I was wondering if it would be better to ingest Elastic data and analyze it with Splunk MLTK. Splunk MLTK seem to me more customizable but it is just my opinion as I am just starting with Elastic.
Thank you
Let us know about your findings and difference between the two.
Do you know if there is an app to ingest Elastic data? Or if I have to ingest data using .csv files?
Use this app : https://splunkbase.splunk.com/app/4175/
or just have a forwarder on Elastic server and monitor the logs in Splunk.
Note : I have never done it myself and it is based on my search here in this community portal.