Graylog

Pricing

Threat Detection & Response Solutions

Graylog Enterprise

Starting at $1250/mo*
10GB per day

Enterprise Log Management for SecOps, ITOps, and DevOps teams. Built on the Graylog Platform, Graylog Enterprise is designed to maximize your systems’ uptime, alert you to issues and outages, enhance productivity, and meet data retention requirements for larger teams and complex situations.
Learn More

*pre-paid annually

Graylog Security

Starting at $1550/mo* 10GB per day

Graylog Security delivers on the promise of SIEM without all the complexity, alert fatigue, and high costs. Built on the Graylog platform, Graylog Security reduces the strain on your cybersecurity staff, improves your overall security posture, and reduces risk. Technical support included. 
Learn More

*pre-paid annually

Graylog API Security

Starting at $1500/mo*
2 nodes

Graylog API Security is a comprehensive solution designed to offer discovery and end-to-end protection for your business-critical APIs and peace of mind as your business thrives, safe in the knowledge that you are guarded by a smart, state-of-the-art, adaptable shield against the most sophisticated cyber threats.
Learn More

*pre-paid annually

Compare Graylog Platform Plans

Feature
Open
Enterprise
Security

Support

Community Support

Email and Phone

Email and Phone

Log Collection & Fleet Management

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Search

Basic

Filters
Parameters
Workflows

Filters
Parameters
Workflows

Events & Alerts

Basic Triggers & Aggregations Notifications: Email & HTTP Post

Correlation Engine Notifications: Slack, MS Teams, Discord, & Enterprise Script

Correlation Engine Notifications: Slack, MS Teams, Discord, & Enterprise Script

Scalable Architecture

Multi-cluster

Multi-cluster Cloud Forwarder Cluster Forwarder

Multi-cluster Cloud Forwarder Cluster Forwarder

Integrations

Rest API Content Packs TCP Raw & TCP Syslog Outputs

O365, Azure, GCP, AWS, Okta, PaloAlto, F5-BIGIP, Crowdstrike, Salesforce, STDOUT-Enterprise, Google Cloud Big Query

O365, Azure, GCP, AWS, Okta, PaloAlto, F5-BIGIP, Crowdstrike, Salesforce, STDOUT-Enterprise, Google Cloud Big Query

Reports & Dashboards

Basic Dashboards

Email Reports Advanced Data Visualization

Email Reports Advanced Data Visualization

Data Enrichment

Static Lookup Tables

Dynamic Lookup Tables Data Enrichment Connectors

Dynamic Lookup Tables Data Enrichment Connectors

Access Control

Basic

AD/LDAP Integration Teams Management

AD/LDAP Integration Teams Management

Archiving

Data Tiering

Data Routing

Illuminate Parsers &
Dashboards

*Limited

Audit Logs

SOAR

Anomaly Detection

Risk Management

Investigations Management

Asset Module

Feature
Open
Enterprise
Security

Support

Community Support

Email and Phone

Email and Phone

Log Collection & Fleet Management

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Pipelines & Streams Syslog, CEF, GELF, BEATS, HTTP-JSON, IPFIX, Netflow, Plain Text

Search

Basic

Filters
Parameters
Workflows

Filters
Parameters
Workflows

Events & Alerts

Basic Triggers & Aggregations Notifications: Email & HTTP Post

Correlation Engine Notifications: Slack, MS Teams, Discord, & Enterprise Script

Correlation Engine Notifications: Slack, MS Teams, Discord, & Enterprise Script

Scalable Architecture

Multi-cluster

Multi-cluster Cloud Forwarder Cluster Forwarder

Multi-cluster Cloud Forwarder Cluster Forwarder

Integrations

Rest API Content Packs TCP Raw & TCP Syslog Outputs

O365, Azure, GCP, AWS, Okta, PaloAlto, F5-BIGIP, Crowdstrike, Salesforce, STDOUT-Enterprise, Google Cloud Big Query

O365, Azure, GCP, AWS, Okta, PaloAlto, F5-BIGIP, Crowdstrike, Salesforce, STDOUT-Enterprise, Google Cloud Big Query

Reports & Dashboards

Basic Dashboards

Email Reports Advanced Data Visualization

Email Reports Advanced Data Visualization

Data Enrichment

Static Lookup Tables

Dynamic Lookup Tables Data Enrichment Connectors

Dynamic Lookup Tables Data Enrichment Connectors

Access Control

Basic

AD/LDAP Integration Teams Management

AD/LDAP Integration Teams Management

Archiving

Data Tiering

Data Routing

Illuminate Parsers &
Dashboards

*Limited

Audit Logs

SOAR

Anomaly Detection

Risk Management

Investigations Management

Asset Module

We've Got You Covered

Windows

Linux

Unix

JSON, CSV, TXT

Storage Mgmt

Custom Apps

Change Mgmt

Switches

Firewalls

DNS

Routers

DBMS

Commercial Apps