LogRhythm NextGen SIEM Platform vs. SolarWinds Kiwi Syslog Server

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
LogRhythm NextGen SIEM Platform
Score 7.6 out of 10
N/A
The LogRhythm NextGen SIEM Platform, from LogRhythm in Boulder, Colorado, is security information and event management (SIEM) software which includes SOAR functionality via SmartResponse Automation Plugins (a RespondX feature), the DetectX security analytics module, and AnalytiX as a log management solution that centralizes log data, enriches it with contextual details and applies a consistent schema across all data types.N/A
SolarWinds Kiwi Syslog Server
Score 7.5 out of 10
N/A
Solarwinds® Kiwi Syslog® Server is a syslog management tool for network and systems engineers. It receives syslog messages and SNMP traps from network devices (routers, switches, firewalls, etc.), and Linux®/Unix® hosts. Users can filter and view these messages based on time, hostname, severity, etc., and set up custom alerts. Kiwi Syslog Server has built-in actions to react appropriately to syslog messages. There are also log archival and clean-up features to help comply with security policies.
$319
Per Instance
Pricing
LogRhythm NextGen SIEM PlatformSolarWinds Kiwi Syslog Server
Editions & Modules
No answers on this topic
One Time Price
$319.00
Per Instance
Offerings
Pricing Offerings
LogRhythm NextGen SIEM PlatformSolarWinds Kiwi Syslog Server
Free Trial
NoYes
Free/Freemium Version
NoYes
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
LogRhythm NextGen SIEM PlatformSolarWinds Kiwi Syslog Server
Considered Both Products
LogRhythm NextGen SIEM Platform
Chose LogRhythm NextGen SIEM Platform
LogRhythm has consistently been in the top quadrants and reviews. The support provided by the vendor is top class. Once it is up and running, there is no much to be done in terms of setup. However, free trainings on the internet like youtube are not available as they should be.
Chose LogRhythm NextGen SIEM Platform
SIEMs are complex behemoths, regardless of the one you decide to go with. Even those that are supposedly turn-key solutions aren't really and can pose some tricky issues for veteran IT and InfoSec staff. LogRhythm has the best educational services and technical support, hands …
Chose LogRhythm NextGen SIEM Platform
LogRhythm is heads and tails above AlienVault and more well known and industry-standard compared to InsightIDR.
Chose LogRhythm NextGen SIEM Platform
The only thing we chose LogRhythm NextGen SIEM Platform for is to allow the Security Analysts to work on the dashboards which don't know much about programming and query languages but has good intuition about cyber-security. It is easy to get hands-on compared to Splunk, which …
Chose LogRhythm NextGen SIEM Platform
We researched Splunk as well but it seemed to require more programming experience than LogRhythm which we currently do not have and could not support another FTE for. SolarWinds SIEM product was another product we researched, although it's basic functionality was good, it was …
Chose LogRhythm NextGen SIEM Platform
LogRhythm's NextGen SIEM Platform is lightning fast when compared to other SIEM platforms. With our previous SIEM platform, it would take several hours to query for certain events over a 90 day period. For more advanced queries we'd sometimes have to let it run overnight. …
Chose LogRhythm NextGen SIEM Platform
Unlike other vendors, all modules of LogRhythm are integrated with the main solution. One could go for the Enterprise Architecture which offers separate hardware for separate modules. But in our case that wasn't needed. We needed something that was user-friendly and didn't take …
Chose LogRhythm NextGen SIEM Platform
We used Kiwi years ago before it was owned by Solarwinds and it worked great for our then small server stack, but we grew much bigger fast and needed something more robust and LogRhythm fit the bill.
Chose LogRhythm NextGen SIEM Platform
LogRhythm is easily differentiated from the other log analysis products I've used in terms of sheer functionality. The competitors can't keep up in performance, speed, or correlation. The only thing that the other products can do to hold a candle to LogRhythm is to integrate it …
Chose LogRhythm NextGen SIEM Platform
LR is inferior when compared to a cloud-native SIEM - the functionality is simply not there.
Chose LogRhythm NextGen SIEM Platform
AlienVault USM Appliance and USM Anywhere might lack some functionality where LogRhythm does well. For instance, SmartResponse functionality is more mature than the Orchestration rules at AlienVault USM Anywhere. You can easily script SmartResponse to act accordingly to each …
Chose LogRhythm NextGen SIEM Platform
We selected LogRhythm due to low overall time investment to meet our basic needs, very competitive pricing, a strong user community and a reputation for excellent support. We have been pleasantly surprised by the very personal nature of the partnership we enjoy with LogRhythm - …
Chose LogRhythm NextGen SIEM Platform
We did an RFP and evaluated several SIEM vendors. LogRhythm ended up being a very clear choice when compared with the other vendors.
In this RFP we invited all vendors that were in the leaders category of the Gartner magic quadrant for SIEM.
Chose LogRhythm NextGen SIEM Platform
We had business requirements for the following features:
  • Sustained flow acquisition and data collection of dissimilar log types from multiple sources.
  • Customization for Reporting and Alerting in near real time.
Chose LogRhythm NextGen SIEM Platform
LogRhythm was simpler to set up and configure as well as extract information from. It also was less intrusive in terms of how many appliances were needed to implement. We were up and running within 5 hours to start accepting log sources. We selected LogRhythm as well since …
Chose LogRhythm NextGen SIEM Platform
I work with every SIEM on the market and I believe LogRhythm simply provides the best overall value in terms of price, incident response capability, content capability, and ease of engineering.
SolarWinds Kiwi Syslog Server
Chose SolarWinds Kiwi Syslog Server
Syslog-ng don't have customer support or technical support .But its a free software and no clarity on limitations ingestion bandwidth. No gui feature and everything should be done from backend. Gui can easily help to start and stop service ,easy to configure. Unlimited …
Chose SolarWinds Kiwi Syslog Server
PRTG Network Monitor does not give enough reporting and visibility as SolarWinds Kiwi Syslog Server provides. PRTG Network Monitor Syslog is just a sensor but SolarWinds Kiwi Syslog Server has separate applications which are very useful.
Chose SolarWinds Kiwi Syslog Server
SolarWinds Kiwi Syslog is a bare-bones Syslog Server. It doesn't have the advanced features of Splunk and SolarWinds Log Analyzer such as alerting, log analysis, event correlation, etc. However, if you're an SMB and just need a solution to fulfill a security requirement, then …
Chose SolarWinds Kiwi Syslog Server
PRTG is a great package and very useful, but the jump from the free 100 sensor price model to the first tier of the paid model is WAY too expensive. SolarWinds Kiwi Syslog Server is very inexpensive and provides us with the results we needed for log monitoring.
Chose SolarWinds Kiwi Syslog Server
Our group already had a license for the Orion Syslog server that comes bundled with Orion NPM, but it didn't quite meet our requirements for performance. Elasticsearch and Graylog easily met our performance requirements, but not enough team members were able to manage the …
Chose SolarWinds Kiwi Syslog Server
I've not had any other interaction with other Syslog servers. The main reason for that is that Kiwi works outstandingly well at what it does. Simply put, I believe this product is a staple in the IT industry and will remain as such as long as they keep the tool current and …
Chose SolarWinds Kiwi Syslog Server
The price for Kiwi was acceptable and it checked off all the boxes of a product that we needed. I also considered Graylog but Kiwi was much easier to configure.
Features
LogRhythm NextGen SIEM PlatformSolarWinds Kiwi Syslog Server
Security Information and Event Management (SIEM)
Comparison of Security Information and Event Management (SIEM) features of Product A and Product B
LogRhythm NextGen SIEM Platform
7.4
Ratings
5% below category average
SolarWinds Kiwi Syslog Server
-
Ratings
Centralized event and log data collection9.00 Ratings00 Ratings
Correlation8.10 Ratings00 Ratings
Event and log normalization/management8.00 Ratings00 Ratings
Deployment flexibility4.60 Ratings00 Ratings
Integration with Identity and Access Management Tools7.10 Ratings00 Ratings
Custom dashboards and workspaces7.50 Ratings00 Ratings
Host and network-based intrusion detection7.10 Ratings00 Ratings
Data integration/API management8.00 Ratings00 Ratings
Behavioral analytics and baselining8.00 Ratings00 Ratings
Rules-based and algorithmic detection thresholds7.10 Ratings00 Ratings
Response orchestration and automation7.10 Ratings00 Ratings
Reporting and compliance management7.00 Ratings00 Ratings
Incident indexing/searching7.10 Ratings00 Ratings
Best Alternatives
LogRhythm NextGen SIEM PlatformSolarWinds Kiwi Syslog Server
Small Businesses
LevelBlue USM Anywhere
LevelBlue USM Anywhere
Score 3.8 out of 10
SolarWinds Papertrail
SolarWinds Papertrail
Score 8.9 out of 10
Medium-sized Companies
Sumo Logic
Sumo Logic
Score 9.4 out of 10
Logz.io
Logz.io
Score 7.0 out of 10
Enterprises
Sumo Logic
Sumo Logic
Score 9.4 out of 10
Sumo Logic
Sumo Logic
Score 9.4 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
LogRhythm NextGen SIEM PlatformSolarWinds Kiwi Syslog Server
Likelihood to Recommend
7.5
(0 ratings)
8.0
(0 ratings)
Likelihood to Renew
9.0
(0 ratings)
-
(0 ratings)
Usability
8.0
(0 ratings)
10.0
(0 ratings)
Support Rating
8.2
(0 ratings)
9.9
(0 ratings)
Implementation Rating
8.0
(0 ratings)
-
(0 ratings)
User Testimonials
LogRhythm NextGen SIEM PlatformSolarWinds Kiwi Syslog Server
Likelihood to Recommend
LogRhythm is good for providing a comprehensive view of the environment. It gives a great outline of whatever is going on in our servers and systems regarding security malfunctions. The SIEM sends real-time notifications when there are some occurrences; like creating a new user and inappropriate login attempts. It also avails a good use case that meets our HIPAA compliance.
Read full review
The SolarWinds Kiwi Syslog Server does what it's supposed to do. It's a bare-bones Syslog Server. If your company is just trying to fulfill security requirements or doesn't need all the advanced features of a product such as Splunk, then Kiwi will work well and not break the bank. Using the tool is very straightforward as there aren't a lot of options outside of just viewing logs.
Read full review
Pros
  • LogRhythm is a great SIEM to learn content on because the building blocks are very intuitive and easy to implement. All of the concepts relevant to content development are literally represented as drag and drop building blocks that can be easily manipulated.
  • The statistical building blocks contain powerful anomaly detection capabilities that are extremely difficult to implement in other SIEMs or not possible at all.
  • LogRhythm does better event classification than any other SIEM by far. My team typically drops all classification schemes from default installations of SIEMs and rebuilds them from scratch. I can actually use LogRhythms event classifications in rules without worrying about excessive partial matches or correlating unwanted events.
Read full review
  • Collection of SNMP traps a reliable and stable collection server for these is crucial to troubleshooting and time to ROS. Kiwi excels at this.
  • Easy to install set up and train users on.
  • The free version is a good free tool and handy to use for personal labs and other smalle use cases.
  • SNMP traps to user readable format is great, sometimes syslog and smnp messages can be hard to interpret and read with out a knowledge of how to do this.
Read full review
Cons
  • While searching for log events is quick, the interface isn't as user-friendly as other SIEM products.
  • Many of the administrative/management functions are only available through the full LogRhythm desktop console, not through the web console.
  • The LogRhythm agent, when used for FIM and RIM, is very memory intensive.
Read full review
  • Minimalistic; If you're looking for something with analysis features look elsewhere.
  • Operating System support is Windows only.
  • Some management features cannot be configured via web interface.
Read full review
Likelihood to Renew
LogRhythm is focused on SIEM. That is their core business. Cost of operations, feature set and ease of use. The Log Rhythm support team is outstanding. Overall reliability is good. Reporting module needs some improvement and LR is promising that there will be significant improvements in future releases.
Read full review
No answers on this topic
Usability
LogRhythm does a rather decent job of making the functionality advanced (allowing for advanced keyword & field searching, use of "AND" as well as "OR" statements in the search bar) while keeping it accessible (by not requiring a specific syntax to do quick searches). This combined with a user interface that has headings and labels that are intuitive is very helpful.
Read full review
Kiwi Syslog has the best usability of any syslog server. While not being able to offer the most features, the ones it does have are intuitive and easy to work with. Everything that it has is where you think it should be. If you can't find it in the menus, it doesn't exist.
Read full review
Support Rating
Support has always been fantastic for this product compared to many other support providers I've worked with. They are always very friendly and seem to be well trained and knowledgeable and never have to wait long for a solution. We usually get the issue fixed in the first call, but also we really haven't had to use support a ton so that's also a plus
Read full review
Because the solution is so simple to use and implement, support wasn't very necessary. The one time I did call them to better understand where logs were stored, they were very helpful and friendly. Kiwi has been around for some time and not a lot has changed over the years, so support for it is pretty straightforward and quick.
Read full review
Implementation Rating
  • Buy professional services.
  • Buy and implement the system if possible.
  • Remember that the end point log configuration may require other teams in your company to assist you in getting the desired logs from all resources.
  • Attend the end user and daily operations training after a period of usage so you are not overwhelmed with information on concepts not yet seen.
  • Don't be afraid to call for help during your first months of use.
  • Don't close any ticket until you are sure the expected results are verified.
  • Use the community forums to discuss issues with your peers.
  • Watch the training videos offered by L R University.
Read full review
No answers on this topic
Alternatives Considered
The only thing we chose LogRhythm NextGen SIEM Platform for is to allow the Security Analysts to work on the dashboards which don't know much about programming and query languages but has good intuition about cyber-security. It is easy to get hands-on compared to Splunk, which has an initial learning curve before being able to start harnessing its true power. Also, the ticketing system is quite fancy and somehow shows us the recent tickets that we need to jump on, which is not in Splunk.
Read full review
Syslog-ng don't have customer support or technical support .But its a free software and no clarity on limitations ingestion bandwidth. No gui feature and everything should be done from backend. Gui can easily help to start and stop service ,easy to configure. Unlimited technical and customer support . Even when server got shutdown will get on-call or immediate support that will helps a lot to resolve errors
Read full review
Return on Investment
  • We were able to retire a few older log collection platforms that we had in house. There were 2-3 systems doing the job of LogRhythm.
  • We were able to bring some part of the analysis of events back in house and not rely on third party MSS.
Read full review
  • SolarWinds Kiwi Syslog Server has made it easier for me to monitor events on all of my network devices and servers.
  • As a small business, we needed something powerful but inexpensive and SolarWinds Kiwi Syslog Server is exactly that.
Read full review
ScreenShots

SolarWinds Kiwi Syslog Server Screenshots

Screenshot of Manage syslog messages and SNMP traps from network devices, including Linux, UNIX, and Windows systems from a single console.Screenshot of Trigger email alerts, run scripts, log to file or ODBC database, forward messages, and more.Screenshot of Schedule automated log archival and cleanup to help you comply with SOX, HIPAA, PCI DSS, etc.Screenshot of View graphs of syslog statistics over specific time periods.Screenshot of Filter and monitor log messages on an intuitive syslog viewer web console with multiple custom views.Screenshot of Perform advanced message filtering by host name, host IP address, priority, or time of day.