I haven't posted for a while, but I have a new dilemma and I would appreciate your thoughts. We are currently using Kiwi Syslog (paid version) to log our syslog messages for network infrastructure ...
I am experimenting with Splunk for syslog analysis, but it seems overkill for syslog anomaly tracking/alerting. Does anyone recommend something else for basic log anomaly tracking (configurable ...