Linux Format

Alternativ­es to ELK

-

I’ve probably mentioned it before, but one of the things I really like about open source is that there’s often an alternativ­e choice available when it comes to choosing software. It allows ideas to evolve and things to improve over time (hopefully, anyway). Parts of the ELK stack can be replaced for example. Fluentd is an alternativ­e to Logstash, written in Ruby (and handily has drivers available for Docker) which has a large installed user base (I work with some clients who call this arrangemen­t a ‘FEK’ stack).

Graylog is an open source based company which uses Elasticsea­rch (and MongoDB) as part of its setup as well as its own alternativ­es for the ‘LK’ portions of the stack. Grafana can act as an alternativ­e to Kibana (apparently – I haven’t tried it yet), which I’ve seen criticised online as being too heavyweigh­t ( Kibana recently went up to a new version, which often causes ructions in the user base of course).

The 200 pound gorilla in this space though is Splunk, which isn’t open source - but does have free tiers available if you want to run small setups (the product is excellent in my experience - but extremely expensive). Other commercial SaaS alternativ­es are SumoLogic and Loggly. Be aware though that in some environmen­ts, having logs sent to a third party might not be a possibilit­y (or might require a lot of safeguards are in place). If you’re evaluating these kinds of infrastruc­ture, double-check to make sure you won’t run aground on any industry standards (such as PCI).

Newspapers in English

Newspapers from Australia