We are using ELK Elasticsearch in a database. We use both Logstash and Kibana. Kibana is used for monitoring where the data is coming from.
Associate - Projects at a computer software company with 10,001+ employees
Secure, good dashboards, and open source
Pros and Cons
- "The solution has good security features. I have been happy with the dashboards and interface."
- "There are some features lacking in ELK Elasticsearch."
What is our primary use case?
What is most valuable?
The solution has good security features. I have been happy with the dashboards and interface.
What needs improvement?
There are some features lacking in ELK Elasticsearch.
For how long have I used the solution?
I have been using ELK Elasticsearch for approximately two years.
Buyer's Guide
Elastic Search
January 2026
Learn what your peers think about Elastic Search. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,114 professionals have used our research since 2012.
What do I think about the stability of the solution?
We had some stability issues where we could not access the application.
What do I think about the scalability of the solution?
We have approximately five people in my organization using ELK Elasticsearch.
How was the initial setup?
All the installations were directly set up on the local servers.
What's my experience with pricing, setup cost, and licensing?
The solution is free.
What other advice do I have?
Elasticsearch is open source.
I rate ELK Elasticsearch an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Co-Founder at a tech vendor with 51-200 employees
Reliable, open-source, with good community support, and easy to install
Pros and Cons
- "Elasticsearch includes a graphical user interface (GUI) called Kibana. The GUI features are extremely beneficial to us."
- "Improving machine learning capabilities would be beneficial."
What is our primary use case?
We use ELK Elasticsearch for storing application data logs.
What is most valuable?
Elasticsearch includes a graphical user interface (GUI) called Kibana. The GUI features are extremely beneficial to us.
What needs improvement?
Elasticsearch includes mechanisms for ingesting data into the cluster. So it would be great if those mechanisms could be simplified.
Improving machine learning capabilities would be beneficial.
For how long have I used the solution?
I have been working with ELK Elasticsearch for four years.
We are using the latest version.
What do I think about the stability of the solution?
We have no issues with the stability of ELK Elasticsearch, it's quite reliable.
What do I think about the scalability of the solution?
ELK Elasticsearch is a scalable product
This solution is used by five to ten people in our organization.
ELK Elasticsearch is used on a daily basis.
How are customer service and support?
We have not contacted technical support.
We had a couple of issues that we were able to resolve by looking up the public information that is available on the internet.
There is a lot of community support for this solution.
How was the initial setup?
The initial setup was straightforward and quite simple.
The installation took between six and eight hours to complete.
There is no maintenance required other than regular updates.
What about the implementation team?
We completed the implementation internally.
What's my experience with pricing, setup cost, and licensing?
Although the ELK Elasticsearch software is open-source, we buy the hardware.
What other advice do I have?
The distributed installation is the way to go.
I would rate ELK Elasticsearch a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Elastic Search
January 2026
Learn what your peers think about Elastic Search. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,114 professionals have used our research since 2012.
Technical Manager at a computer software company with 51-200 employees
A search and analytics engine that's very fast, but the price could be better
Pros and Cons
- "I like how it allows us to connect to Kafka and get this data in a document format very easily. Elasticsearch is very fast when you do text-based searches of documents. That area is very good, and the search is very good."
- "The price could be better. Kibana has some limitations in terms of the tablet to view event logs. I also have a high volume of data. On the initialization part, if you chose Kibana, you'll have some limitations. Kibana was primarily proposed as a log data reviewer to build applications to the viewer log data using Kibana. Then it became a virtualization tool, but it still has limitations from a developer's point of view."
What is our primary use case?
Elasticsearch is one of the NoSQL databases available. My application is a microservices application where the data gets published on a Kafka cube. It allows us to connect to Kafka and get this data in a document format very easily. I'm using Elasticsearch as my backend processing database, where I'm building and reporting using Kibana.
What is most valuable?
I like how it allows us to connect to Kafka and get this data in a document format very easily. Elasticsearch is very fast when you do text-based searches of documents. That area is very good, and the search is very good.
What needs improvement?
The price could be better. Kibana has some limitations in terms of the tablet to view event logs. I also have a high volume of data. On the initialization part, if you chose Kibana, you'll have some limitations. Kibana was primarily proposed as a log data reviewer to build applications to the viewer log data using Kibana. Then it became a virtualization tool, but it still has limitations from a developer's point of view.
For how long have I used the solution?
I have been using ELK Elasticsearch over the last two years.
What's my experience with pricing, setup cost, and licensing?
The price could be better.
What other advice do I have?
I would tell potential users that they have to locate the data source and understand the data. They will have to decide on whether they have to go for a NoSQL or a relational database.
If it's NoSQL, then what kind of data are you seeing? If it's more textual data, then you're going to read more. So, I would recommend Elasticsearch. Otherwise, you have other databases like MongoDB and Cassandra.
On a scale from one to ten, I would give ELK Elasticsearch a seven.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
General Manager at a tech services company with 11-50 employees
Effective sorting capabilities, reliable, and scalable
Pros and Cons
- "I have found the sort capability of Elastic very useful for allowing us to find the information we need very quickly."
- "The reports could improve."
What is our primary use case?
We use this solution for log management. We collect many logs from Windows systems to later analyze them for security checks and audit purposes.
What is most valuable?
I have found the sort capability of Elastic very useful for allowing us to find the information we need very quickly.
What needs improvement?
The reports could improve.
For how long have I used the solution?
I have been using this solution for approximately three years.
What do I think about the stability of the solution?
The solution is very stable and reliable.
What do I think about the scalability of the solution?
The stability is good but we have only done vertical scaling and not horizontal at this time. We collection approximately 1,000 EPS and have three people using the solution in my organization.
How are customer service and technical support?
There has been enough support available online for what we have been using the solution for.
How was the initial setup?
The initial setup was easy because we used containers. It can be challenging to implement.
What about the implementation team?
We did the implementation ourselves.
What's my experience with pricing, setup cost, and licensing?
We are using the free open-sourced version of this solution.
What other advice do I have?
I would recommend those wanting to implement this solution use integrators or consultants. However, we did not have any problems with the installation it can be difficult.
I rate ELK Elasticsearchan eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Consultant at a tech services company with 1-10 employees
Stable with reasonable technical support, but it should be easier to use
Pros and Cons
- "It's a stable solution and we have not had any issues."
- "It should be easier to use. It has been getting better because many functions are pre-defined, but it still needs improvement."
What is our primary use case?
I am using it to get some hands-on experience and learn the product by searching, building use cases, test cases, dashboards, and visualizations.
With hands-on experience, you learn more about the product and how it works.
What needs improvement?
It should be easier to use. It has been getting better because many functions are pre-defined, but it still needs improvement.
If you have a large enterprise environment, it is costing a lot of money and it's not a full-blown SIEM. It has SIEM features but a lot is missing. You need to involve other products to make a SIEM out of it.
Some of the other products needed were Apache, Kafka, and ticket tools. It was custom made and not what I had expected in the end.
I would like to see them get closer to a full-blown orchestrated SIEM, and create predefined modules to bring you to using it as a SIEM faster, and on the fly instead of having to tweak the Grok filter for weeks.
I would like to see more pre-defined modules.
For how long have I used the solution?
I have been using Elasticsearch for two weeks.
We are not using the latest version, but not an old version.
What do I think about the stability of the solution?
It's a stable solution and we have not had any issues.
What do I think about the scalability of the solution?
The scalability is fine.
How are customer service and technical support?
I have contacted technical support, once or twice. The experience was okay.
How was the initial setup?
The initial setup was okay, not as easy as Splunk but it was manageable.
What's my experience with pricing, setup cost, and licensing?
The pricing model is questionable and needs to be addressed because when you would like to have the security they charge per machine. If you are building any cluster and you are paying €6,000 per machine, that is expensive.
Which other solutions did I evaluate?
I think that Elasticsearch is a good product and cheaper than Splunk.
What other advice do I have?
I like this solution, but it has too much hands-on time required tweaking to get it up and running.
I have no plans to continue using this product. Currently, I am focused on SIEMonster because I signed a partnership and I would like to sell a total product. It doesn't make sense to spread across multiple products.
I would like to earn money out of it, so I'm focusing currently on SIEMonster.
I think that Elasticsearch is a good product and cheaper than Splunk.
When I check Gartner, I don't see mention of Elasticsearch, it seems they need to make some improvements.
I would rate this solution a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
IT Infrastructure Analyst at a computer software company with 11-50 employees
Powerful, graphical, good customer support and full featured
Pros and Cons
- "You have dashboards, it is visual, there are maps, you can create canvases. It's more visual than anything that I've ever used."
- "I have not been using the solution for many years to know exactly the improvements needed. However, they could simplify how the YML files have to be structured properly."
What is our primary use case?
I am using this product for a SIM solution.
What is most valuable?
Their anomaly detection engine is really good for example, compared to SolarWinds. You can ingest different pipelines. You have dashboards, it is visual, there are maps, you can create canvases. It's more visual than anything that I've ever used.
What needs improvement?
I have not been using the solution for many years to know exactly the improvements needed. However, they could simplify how the YML files have to be structured properly. If you want to ingest certain logs, you need to edit the YML file and connect it to your modules to start ingesting and parsing the end-user logs. Doing this is sometimes difficult and could be streamlined.
For how long have I used the solution?
I have been using the product for approximately three months.
How are customer service and technical support?
The customer service is very good.
Which solution did I use previously and why did I switch?
I have used SolarWinds in the past.
What other advice do I have?
The solution has a lot of features. They have machine learning jobs they can implement, I'm not there yet, but I can use anomaly detection to see there are various processes that can find users that aren't supposed to log onto certain machines. All of these features are visual and graphical. I can show it as a bar chart, a pie chart, I can Instagram, or I can split chart. The power to see everything on the front end is so much more powerful.
I rate ELK Elasticsearch a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Head of Technology Operations at a financial services firm with 11-50 employees
Open-source with good community support but number of search queries is limited
Pros and Cons
- "The most valuable feature is the out of the box Kibana."
- "I would like to be able to do correlations between multiple indexes."
What is our primary use case?
I run the function to review the usage for the team and for the organization itself.
We use this product internally and then some of our business relationships with the other businesses that we have, they get their data from our data. It's more for collaborative data reporting that we have with them.
What is most valuable?
The most valuable feature is the out of the box Kibana. You plug it in and start the basic analysis on the data out of the box. This also gives a quick way to check the data and the models to figure out what fits the needs.
What needs improvement?
There are a few things that did not work for us.
When doing a search in a bigger setup, with a huge amount of data where there are several things coming in, it has to be on top of the index that we search.
There could be a way to do a more distributed kind of search. For example, if I have multiple indexes across my applications and if I want to do a correlation between the searches, it is very difficult. From a usage perspective, this is the primary challenge.
I would like to be able to do correlations between multiple indexes. There is a limit on the number of indexes that I can query or do. I can do an all-index search, but it's not theoretically okay on practical terms we cannot do that.
In the next release, I would like to have a correlation between multiple indexes and to be able to save the memory to the disk once we have built the index and it's running.
Once the system is up, it will start building that in memory.
We need to be able to distribute it across or save it to have a faster load time.
We don't make many changes to the data that we are creating, but we would like archived reports and to be able to retrieve those reports to see what is going on. That would be helpful.
Also, if you provide a customer with a report or some archived queries, that the customer is looking at when they are creating, at first it will be slow while putting up their data or subsequently doing it. I want it to be up and running efficiently.
If the memory could be saved and put back into memory as it is, then starts working it would reduce the load time then it will be more efficient from a cost perspective and it will optimize resource usage.
For how long have I used the solution?
I have been familiar with this product for approximately four years.
What do I think about the stability of the solution?
ELK Elasticsearch is stable.
What do I think about the scalability of the solution?
It's scalable, but there are some limitations.
If you are scaling a bit too quickly, you tend to break the applications into different indexes.
The limitations come in when getting the correlation between the applications or the logs.
It is difficult to get the correlations once the indexes have been split.
How are customer service and technical support?
We are using the open-source version, that is installed on-premises.
We have not worried about technical support, but the community is good.
Which solution did I use previously and why did I switch?
Before ELK, we used another solution for internal usage, and also, we used Splunk for different use cases in a different organization altogether.
It wasn't a switch per se, it was a different organization with a different use case.
How was the initial setup?
The initial setup is simple, not too difficult.
Getting the index, doing your models, and putting the data in, correctly, is done more on a trial and error basis. You have to start early and plan it well to get it right.
What's my experience with pricing, setup cost, and licensing?
We are using the open-source version.
We are not looking into the subscription because it's on-premises in-house.
What other advice do I have?
For anyone who is looking into implementing this solution, the only tip is to get your models for the type of actual use that you are looking at upfront in order to have a good run.
I would rate ELK Elasticsearch a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Associate Software Engineer at a tech services company with 51-200 employees
Cost-effective, stable, and works well with Logstash
Pros and Cons
- "The initial installation and setup were straightforward."
- "Technical support should be faster."
What is our primary use case?
My organization works in the healthcare industry and we use this product as our database.
When we have questions about our data then we use Elasticsearch to make queries.
What is most valuable?
The most valuable feature is that I can push data to Elasticsearch using Logstash.
What needs improvement?
Technical support should be faster.
For how long have I used the solution?
I have been using Elasticsearch for about one year.
What do I think about the stability of the solution?
This is a stable product.
What do I think about the scalability of the solution?
Elasticsearch is scalable, although we only have about five users and they are not constant. We do plan to increase our usage in the future.
How was the initial setup?
The initial installation and setup were straightforward. It will take a few minutes to deploy.
What about the implementation team?
Our in-house team was responsible for the deployment.
What's my experience with pricing, setup cost, and licensing?
This product is open-source and can be used free of charge.
What other advice do I have?
I also use Kibana, which is integrated with Elasticsearch. Kibana is for visualization and we can also customize Elasticsearch using Kibana.
In summary, Elasticsearch is a very useful product that I can quickly recommend.
I would rate this solution an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Elastic Search Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2026
Popular Comparisons
Informatica Intelligent Data Management Cloud (IDMC)
MuleSoft Anypoint Platform
Palantir Foundry
PostgreSQL
Qlik Talend Cloud
AWS Glue
Amazon OpenSearch Service
Microsoft Azure Cosmos DB
Chroma
Denodo
ClickHouse
Milvus
LanceDB
Buyer's Guide
Download our free Elastic Search Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are the advantages of ELK over Splunk?
- Splunk vs. Elastic Stack
- How to install an Elasticsearch cluster (with security enabled) on OpenShift?
- What would you choose for observability: Grafana observability platform or ELK stack?
- Alternatives to Google Search Appliance?
- When evaluating Indexing, what aspect do you think is the most important to look for?
















