It can be daunting to setup if you don't read over the documentation though. The only downside is that they don't have a web-based front-end - you need to run SQL queries to pull out the information ...
I am setting up Splunk to monitor Syslog from all of my networking devices and Windows events and pretty much the entire environment for auditing and forensics. I will be using the Snare agent to send ...