Does anyone have a recommendation or preference to a syslog collector similar to Splunk? I have quite a few firewalls and load balancers that I want to collect syslogs from and query the data. Most of the data collected would show allowed and blocked connections and VPN logs.
Continuing the discussion from Open source Syslog collector:
How about Elastic? (https://www.elastic.co/what-is/elk-stack)
I did a little research and i found this article.
You have 10 alternatives and they have free version or community version. Depends or your needs.
@FredFerrell I found myself asking the same question this morning. I stumbled across this article. I still want to know that people prefer and use. However, this seems to be a good starting point.