Using Splunk Light (free up to 500MB), to monitor docker environments w/o cloud, 2 Data Volume Containers, ports: 8000 web access, 9997 data fm forwarders.
To leverage log data effectively requires managing it; collect it in 1 place from all sources – apps, infrastructure, distributed areas, silos to glean BI.
Splunk Enterprise abilities extended on Splunk Developer platform for custom search commands & solutions using Search Processing Language (SPL); demo fm Zillow.
Splunk App for ES has Content Profile Audit dashboard that compares knowledge objects to data models, which Add-ons prepare data for; Reports use REST query.