

ArcSight Logger and syslog-ng are key players in log management and analysis. ArcSight Logger has a lead in customer service, while syslog-ng is preferred for its feature set and deployment flexibility.
Features: ArcSight Logger offers strong log analytics capabilities, seamless integration with security tools, and comprehensive support for enterprise environments. syslog-ng provides versatility with ease of customization, support for multiple log protocols, and adaptability to various deployment scenarios.
Room for Improvement: ArcSight Logger could improve speed, streamline its configuration process, and enhance user interface design. syslog-ng needs better documentation, improved technical support, and optimization for resource management.
Ease of Deployment and Customer Service: ArcSight Logger is recognized for customer support facilitating smoother deployments. syslog-ng offers quicker deployment due to flexible configuration, although user experiences with support services vary.
Pricing and ROI: ArcSight Logger has high initial setup costs but provides strong ROI with its functionalities and support. syslog-ng is cost-effective, offering good ROI with lower setup costs and efficient log management, presenting better value in terms of ROI.
| Product | Mindshare (%) |
|---|---|
| syslog-ng | 1.5% |
| ArcSight Logger | 0.9% |
| Other | 97.6% |
| Company Size | Count |
|---|---|
| Small Business | 8 |
| Midsize Enterprise | 10 |
| Large Enterprise | 16 |
| Company Size | Count |
|---|---|
| Small Business | 3 |
| Midsize Enterprise | 2 |
| Large Enterprise | 3 |
ArcSight Logger effectively manages vast log data volumes, streamlining complex query execution and data compression while supporting various devices to meet compliance needs.
ArcSight Logger, known for scalability, simplifies handling extensive log data and executes complex queries swiftly. Its data compression features, coupled with versatile device support, allow for smooth security analytics and log collection. Users appreciate its real-time network insights and intuitive interface. However, improvements are needed in indexing speed, user navigation simplification, enhanced system integration, advanced analytics, and comprehensive threat management. Companies leverage ArcSight Logger for on-premises log management, vital for IT asset event monitoring and compliance within telecom and enterprise sectors.
What are the key features?In industries like telecom and enterprise, ArcSight Logger facilitates on-premises deployments to manage logs, process queries, and integrate with security tools, essential for incident response. It aids in retaining logs, monitoring Windows events, overseeing communications, and is employed in fraud prevention and security monitoring involving syslog servers.
Syslog-ng is recognized for its proficiency in log extraction, storage, and secure TLS connections. Its efficient configuration and real-time monitoring integration make it a preferred option for large-scale log processing, ensuring compliance with regulatory standards.
Syslog-ng offers powerful log management capabilities, accommodating complex search needs while maintaining simplicity with user-friendly documentation and real-time monitoring features. The C-style configuration enhances readability, allowing users to easily comprehend and implement changes. Designed for high performance, Syslog-ng scales effectively to handle extensive logging demands. Despite its strengths, areas for improvement include integration with protocols and filtering methods. Users advocate for better Kafka integration and a graphical configuration interface to simplify setup. While historical dissatisfaction led to custom patches, subsequent updates have addressed these concerns. Currently, users seek an advanced version to access premium functionalities.
What are the most important features of syslog-ng?Organizations frequently use syslog-ng for log aggregation, filtering, and regulatory compliance, serving as a crucial component in enterprise security audits and data regulation adherence in Brazil and Italy. By allowing logs to be stored in raw format, syslog-ng provides versatility in data manipulation and user activity tracking, making it user-friendly for installation, maintenance, and updates. Logs can be transmitted over TLS or plain text to central servers, supporting varied transmission needs.
We monitor all Log Management reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.