We use Sumo Logic Security for logging purposes. We store and monitor application logs and VPC flow logs in the solution.
Logs for Security (AWS Built-In)
Sumo Logic Inc.External reviews
External reviews are not included in the AWS star rating for the product.
Used to store and monitor application logs and VPC flow logs
What is our primary use case?
What is most valuable?
Sumo Logic Security is a good solution for searching the logs and identifying the issues. Sumo Logic Security searches the logs to identify issues easily. Suppose we got an issue related to the application 500 error. We store the application logs in Sumo Logic Security. We can easily search those logs to identify where exactly we are facing the application 500 error.
What needs improvement?
Sumo Logic Security is expensive, and its pricing could be improved.
What do I think about the stability of the solution?
I rate Sumo Logic Security a nine out of ten for stability.
What do I think about the scalability of the solution?
Around ten users are using the solution in our organization.
I rate the solution an eight to nine out of ten for scalability.
How are customer service and support?
We have two options for technical support. If we take the enterprise support, we get a reply within one or two hours. If you don't have enterprise support, you will get a reply in around one day or 12 hours, based on their availability.
How was the initial setup?
The implementation process of the solution was good and not very difficult. You can easily integrate Sumo Logic Security with AWS or Kubernetes. Even new users who are aware of AWS can follow the documentation and easily deploy the solution.
What about the implementation team?
The solution’s deployment doesn’t take more than 15 minutes for a knowledgeable person.
What's my experience with pricing, setup cost, and licensing?
Storing logs in Sumo Logic Security is charged GB-wise, which is a little higher than other products.
What other advice do I have?
We are mainly concentrating on networking. We use VPC products and application logs to monitor the genuineness of users who have logged in. We also store and monitor GuardDuty logs to see if someone is trying to access the same server multiple times. We are storing and monitoring WAF logs and GuardDuty logs. If someone faces any issues, we'll receive an email and take action based on it.
If someone tries to access one of the applications from a different country, we can search in Google and identify the location of that particular IP address. Sumo Logic Security identifies whether a particular IP address is low, medium, or high risk without the help of Google.
We can store logs in CloudWatch, but it is very difficult to search them in CloudWatch. We should know the query in order to do that. Searching for logs with Sumo Logic Security is very easy compared to CloudWatch. We have been using the solution for more than two years and haven't faced any issues with the solution's availability. I would recommend the solution to other users.
I would recommend Sumo Logic Security instead of AWS, CloudWatch, or CloudTrail. With Sumo Logic Security, you can capture and see all the logs in a single place. If some issues occur, you can log into the solution and verify all the logs. At an organizational level, we have multiple AWS accounts for different environments. Instead of logging in to all the AWS accounts, you can log in to Sumo Logic Security and verify everything.
Overall, I rate the solution a nine out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Helpful but sometimes complicated product
User friendly app
Looks like sumo is providing many features but people are not having enough knowledge ot utilize it at its best
Sumologic is the best in town for log processing
Easy to start with from the instrumentation point of view, they cover a lot of tech stacks.
It feels like multiple products put together with no thought of the whole.
No meaningful way to discover what data is available.
The root cause analysis, service diagram and others do not scale, for a big organization they are useless.
The main benefit is a simple way to find out what is happening with our services.
Perfect team with supportive infrastructure
Centralized log management with insights
Great tool for monitoring and log aggregation
My company uses sumologic
Log monitoring
Alerts
Infra monitoring and it's alerts
Easily getting the alerts when there is any issues