Logstash vs. Snare

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Logstash
Score 8.0 out of 10
N/A
N/AN/A
Snare
Score 10.0 out of 10
N/A
Snare is an IT security analytics suite of applications from Prophecy International headquartered in Adelaide, providing a complete log monitoring and management solution, as well as network threat intelligence.N/A
Pricing
LogstashSnare
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
LogstashSnare
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
LogstashSnare
Considered Both Products
Logstash
Chose Logstash
MongoDB and Azure SQL Database are just that: Databases, and they allow you to pipe data into a database, which means that alot of the log filtering becomes a simple exercise of querying information from a DBMS. However, LogStash was chosen for it's ease of integration into our …
Chose Logstash
Logstash can be compared to other ETL frameworks or tools, but it is also complementary to several, for example, Kafka. I would not only suggest using Logstash when the rest of the ELK stack is available, but also for a self-hosted event collection pipeline for various …
Chose Logstash
Logstash is similar to any service which can be the single point to collect and transform data. Kafka is a very good candidate, but it fails for applications not using Kafka. Kafka streams do pretty much the same thing. On one hand, I personally trust Kafka more, but then Kafka …
Chose Logstash
Logstash is a part of ELK stack which is a standard choice of many vendors across the world for logging & monitoring in a datacenter environment
Snare

No answer on this topic

Best Alternatives
LogstashSnare
Small Businesses
SolarWinds Papertrail
SolarWinds Papertrail
Score 8.9 out of 10
SolarWinds Papertrail
SolarWinds Papertrail
Score 8.9 out of 10
Medium-sized Companies
Logz.io
Logz.io
Score 7.0 out of 10
Logz.io
Logz.io
Score 7.0 out of 10
Enterprises
Sumo Logic
Sumo Logic
Score 9.4 out of 10
Sumo Logic
Sumo Logic
Score 9.4 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
LogstashSnare
Likelihood to Recommend
10.0
(0 ratings)
10.0
(0 ratings)
User Testimonials
LogstashSnare
Likelihood to Recommend
Logstash is a must in an ELK stack, which I am sure is going to be the #1 case. At any point when you have several sources, Logstash can be the common point to aggregate, and categorize those data. Then send this new data to its destination. Very handy. It is free and open source. It may not be appropriate to analyze data-sets dependent on each other but from a different data source. Reason being Logstash works on data at hand, and not wait for other data to arrive. It would be unwise for Logstashh to handle complicated, long-running transformations because this is injected and ejected. The faster you do it, the safer.
Read full review
Snare provides compliance products ranging from small footprint, highly effective device, and network logging and log management tools to ID advanced infrastructure threat protection solutions. It has many valued features like activity dashboard, real-time monitoring, data import/export, dashboard creation, and many more. They all help me to improve my working skills It has been a game-changer as it saves a lot of time and I can work freely with this, and whenever I have any doubt the customer support team communicates immediately.
Read full review
Pros
  • Plugin ecosystem allows modular extensions.
  • Tight integration into the Elastic.com products of Beats and Elasticsearch, so minimal setup is required when using those tools.
  • Filter plugins are powerful for extracting and enriching input data.
Read full review
  • The tools were very easy to install and it integrates seamlessly with our secure system and prevents deployment.
  • Logging cooperates with our system perfectly.
  • Sending events to SIEM.
  • I have realised that the data collected is going to the centralised detection and prevent solution for analysis and monitoring.
Read full review
Cons
  • Memory: Logstash is a HOG, if you are deploying it on commodity (i.e. cheap and old) hardware: You will need at least 2GB, just for Logstash. So don't expect to run your entire ELK stack on one AMD Athlon machine.
  • Overlap: Logstash fills in an area of the ELK stack that makes the most sense: as a log file transformer / shipper. However, if you start breaking that stack, with the addition of other components- you start seeing where features of Logstash may be implemented or solved in the additional components much easier (or better, or to a higher degree of resolution)
  • More Overlap: Since my team employs Syslog-ng extensively- Logstash can sometimes get in the way (and this may be a problem for DevOps stacks overall): You can configure Syslog to record certain information from a source, filter that data, and even export that data in a particular format. Logstash will pick that data up, and then parse it. However, if you don't keep your Syslog-ng configuration files, and your Logstash configuration files in sync, your results will not be what you expected, and this will translate into (sometimes) hours/days of work, hunting down a line item in a configuration file.
Read full review
  • Nothing really, it has been performing flawlessly.
  • I did not run into any problems.
Read full review
Usability
As I said earlier, for a production-grade OpenStack Telco cloud, Logstash brings high value in flexibility, compliance, and troubleshooting efficiency. However, this brings a higher infra & ops cost on resources, but that is not a problem in big datacenters because there is no resource crunch in terms of servers or CPU/RAM
Read full review
No answers on this topic
Alternatives Considered
MongoDB and Azure SQL Database are just that: Databases, and they allow you to pipe data into a database, which means that alot of the log filtering becomes a simple exercise of querying information from a DBMS. However, LogStash was chosen for it's ease of integration into our choice of using ELK Elasticsearch is an obvious inclusion: Using Logstash with it's native DevOps stack its really rational
Read full review
No answers on this topic
Return on Investment
  • It is very difficult to give any figures on ROI, as it depends on many factors, and in a Telcocloud environment, it is much complex to find out; however, I would give some points below on ROI
  • ROI based on flexibility is very high, as it reduces the time to find RCA
  • ROI based on integration is very high because it supports multi-vendor environments, avoiding vendor lock-in & works across multi-cloud setups
  • ROI on resource consumption is less because Logstash in 2-3 times more resource-intensive as compared to its lightweight alternatives resulting in latency
Read full review
  • It has made and positive effect on my work.
  • It has saved me a lot of time for my needs.
Read full review
ScreenShots