XpoLog Competitive Comparison Sheet New frontier in big log data analysis and application intelligence Technical white paper May 2015 XpoLog, a data analysis and management platform for applications' IT data, helps collect, manage, and analyze any IT data from the environment. XpoLog is an ideal solution for business applications that rely on a dynamic heterogeneous applications infrastructure, such as cloud and virtualization. Visit our online knowledge base http://wiki.xpolog.com For more information, a product demo, or any other assistance, please don t hesitate to contact us at support@xpolog.com
The following table compares feature sets in XpoLog to other platforms. Explanation of the grading is provided in the Grade table below. Feature Set XpoLog Others Installation and Scalability Data Collection, Archiving, and Indexing Configuration Management and Supported Data Formats Search and Data Analysis Console Analytical Engines and Built-in Intelligence /NA Data Visualization Dashboards and Reports * Out of the Box Templates and Apps ** *** Proactive Monitoring and Alerts Security * API-SDK * System Health, Admin, and Disaster Recovery See the table below, for a detailed comparison of the features in each feature set. Grade table: Grade Description NA Features not available * Poor support ** Good support *** Excellent support 2
Detailed Comparison of Features and Technology Installation and Scalability Cross-platform The only pure Java solution Web app UI Some solutions do not have web UI. Map Reduce * Scales with more processing nodes Cluster support Runs shared clusters Files system-based Some solutions require DB. J2EE support *** NA WAR deployment on J2EE servers Data Collection, Archiving, and Indexing Nonintrusive Supports rolling files and filename change, without changes to existing code or infra! Agentless *** NA Real agentless, without remote configuration! Agent * Pure Java agent Over SSH Collects data over standard SSH Failover support Agentless collection switches between nodes, if a node fails. Other solutions are agent based, and if a node fails, stop collection! Built-in Syslog NA* Available as of version 4.6 External Syslog Reads remote Syslog server configuration and files HDFS Integration to Hadoop FS Cloud integration Agentless collection from remote cloud servers WMI, scripts * Windows events, custom sources Data archiving Supports both online and offline data archiving 3
Database JDBC support for bidirectional data transport Collect and export Collects data to multiple locations with multiple formats Supports agent, agentless, and open integration to JDBC, WMI, Syslog, and other sources. Advanced data collection and archiving. Easier to manage. Configuration Management and Supported Data Formats Supported log types Any unstructured text, XML and custom types, dynamic adapter loading, windows events, SNMP, JMS, JDBC, and more. Not limited to types! Can support any source. Auto detection of many log types, such as log4j,.net, Unix, Linux, IIS, Apache, ISA, J2EE app servers, and more. Virtual data engine Built-in parsing engine for advanced virtual parsing data engine and data manipulation Ad hoc parsing Ad hoc field extraction, runtime query-based * regular expression Data masking Masks any data field Normalization Extracts and micro manipulates any field Broken pattern Detects log format changes detection Multiline, multipattern Creates virtual log schema Metadata tagging Tags any data source Application context tagging Multitenant Single console Supports very large XML events, messages, and blobs in log files *** NA Extracts data and creates virtual fields based on computation function *** NA Tags data and sources in application context for analysis Manages multiple application groups and users. Runs multiple profiles for groups. Manages all sources, agentless connections, and policies of the enterprise from a single management console 4
Search and Data Analysis Console Augmented Search *** NA IT intelligence layers in user search context Integrated Analytics *** NA Simple searches * Wild cards, regexp * Complex search * Aggregations * Custom functions * Performance query * Transaction query Inside the search console Visual query builder Query history filter *** NA Quickly undoes query tuning Interesting Fields * Field trends * *** Available as of version 4.7 Analytical Insight *** NA In left pane Real time * Auto visualization Automated complex data visualization Ad hoc graphs Changes and fine-tunes visual gadgets Tabular log viewer *** NA Tabular log viewer navigator Augmented Search and automatic data visualization make all the difference. 5
Analytical Engines and Built-in Intelligence Error detection *** NA Pattern detection *** NA Anomaly detection Statistical trends Semantic analysis *** NA Homegrown apps *** NA Custom logs *** NA Analytics console Live detection Analysis by apps, servers, or logs *** NA Trends reports Out of the box autodetection *** NA /NA XpoLog Analytics and Augmented Search are the leading data analytics for IT. 6
Data Visualization Dashboards and Reports Real-time dashboards * Geo maps * Visualization gadgets * Exporting options * Open SDK ** ** Reporting * Logs comparison Unique messages * All solutions have advanced dashboard consoles with minor differences. Out of the Box Templates and Apps Log source templates * Log format detection Configuration scripts for 3 rd party systems * ** Out of the box application reports * ** and dashboards Custom apps building * *** ** *** All gaps will be available as of version 4.6. 7
Proactive Monitoring and Alerts Search monitoring * Complex rules monitoring Analytics monitoring * Alerting * Severity threshold monitoring Automated monitor for new and existing problem detection, without the need to manually define each monitor. Monitors severities of all events and triggers alert if any of the events reach the severity threshold. Much easier to manage, and can trigger alert per app. Security Authentication LDAP, SSO, and more * Authorization entitlements Authorization groups, apps, and logs Policies Communication * Communication * SSL UI access Penetration testing * Data masking Data access * Integration to enterprise entitlements to apply organization standard Compartmentalization for multitenant security model; user, apps, and group based restrictions. Controls and limits users from specific operations Encrypted and compressed communication between components Compartmentalization of sources and masks data fields in the log for compliance and security Defines virtual logs on same source, each log with different data exclude rules. Then defines 8
permission Data integrity * Encryption * * different security settings for each virtual log. XpoLog is more multitenant security oriented. Manages many apps on the data platform. Compartmentalization. API-SDK Data SDK * Admin SDK * * System Health Administration Disaster Recovery System Health console System profiling console Index and archive backups Fault tolerant * * Advanced system health console monitors all aspects of system operations and integrity. Controls all resources, connections, threads, and other administration parameters for the platform. Creates multiple storage and data replications for zero recovery time. Cluster modes for switching work to other nodes or UI nodes, if required. Advanced management tools and troubleshooting help the platform, improved QOS 9