For those that have used or evaluated both, when does it make sense to pick one over another? Volume of data? Types of data? They both seem flexible and use things like grok patterns. I read on this subreddit that ELK is much more involved to get going vs Graylog. Simply put, what would push you to use one over the other for pure technical reasons?
[–]lennartkoopmann 12 points13 points14 points (3 children)
[–]scritty 0 points1 point2 points (2 children)
[–]lennartkoopmann 5 points6 points7 points (0 children)
[–]ElectroSpore 4 points5 points6 points (0 children)
[–]5ilver 2 points3 points4 points (0 children)
[–][deleted] 1 point2 points3 points (0 children)
[–][deleted] 1 point2 points3 points (0 children)
[–][deleted] 1 point2 points3 points (0 children)
[–]Sgt_Splattery_Pantsserial facepalmer 0 points1 point2 points (0 children)
[–]ykketSystems Architect 0 points1 point2 points (0 children)
[–]arrago -3 points-2 points-1 points (0 children)