Centralized AWS Log Processing
Deploy in Minutes

Ingest, search, and analyze your CloudWatch logs with OpenSearch, Athena, and pre-built dashboards. Runs entirely in your AWS account — no data leaves your VPC.

View on AWS Marketplace → Learn More

Stop Building Log Pipelines From Scratch

One Solution. Complete Log Pipeline.

Deploy a production-ready log processing pipeline via CloudFormation. Two stacks, 15 minutes, fully configured.

Automated Ingestion

CloudWatch → Firehose → S3 with configurable buffering and GZIP compression.

OpenSearch Search

Full-text search with pre-built dashboards, index patterns, and ISM retention policies.

Athena Datalake

Query logs with SQL via partition-projected Glue tables — no crawlers needed.You manage access to the datalake through IAM policies.

Smart Subscriptions

Regex-based log group matching with per-stream routing to different indexes. Subscription management enhanced with queriable user providedmetadata name/value pairs.

Multi-Format Config

Manage subscriptions via JSON, CSV, or XML — update from S3 without redeploying. Rollback with built-in versioning.

Browser Dashboards

ALB + Cognito + Nginx proxy for secure OpenSearch Dashboards access.

CloudWatch Monitoring

Pre-built dashboard with Lambda, SQS, Firehose, OpenSearch, and per-index metrics.

Alarms

Lambda errors, DLQ depth, Firehose freshness, OpenSearch health — all with SNS email.

VPC Isolated

Runs in isolated subnets with VPC endpoints — no internet egress. FedRAMP/HIPAA ready.

How It Works

1

Subscribe

Find Log Processor on AWS Marketplace and subscribe.

2

Launch

Deploy the CloudFormation stack with your resource prefix and certificate ARN.

3

Configure

Wait 15 minutes for OpenSearch, then deploy the config stack.

4

Search

Configure subscriptions and start searching your logs.

Simple, Predictable Pricing

Software fee only. AWS infrastructure costs are billed directly by AWS to your account.

Small

$49/mo
  • 1 data node, 10GB
  • Single-AZ
  • Datalake + Athena
  • Email support (2 day)

Large

$199/mo
  • 3 nodes + masters, 100GB
  • Multi-AZ
  • Datalake + Athena
  • Dashboards
  • Email support (1 day)

Enterprise

$399/mo
  • 6 nodes + masters, 500GB
  • Multi-AZ
  • Datalake + Athena
  • Dashboards
  • Priority phone support

Frequently Asked Questions

Does my data leave my AWS account?

No. Everything runs inside your VPC. Logs flow from CloudWatch → Firehose → S3 → Lambda → OpenSearch, all within your account.

Can I use this without OpenSearch?

Yes. Disable OpenSearch and use the datalake-only mode with Athena for SQL queries at a fraction of the cost (~$29/mo fixed).

How do I add new log groups?

Update the subscriptions file (JSON, CSV, or XML) in S3. The Lambda picks up changes automatically — no redeployment needed.

What happens if I unsubscribe?

Your data remains in S3 and OpenSearch. Delete the CloudFormation stacks when ready. Snapshot buckets can be retained for disaster recovery.

Can I customize retention per log type?

Yes. Each index type (app, audit, or custom) has independent retention policies in both OpenSearch and the S3 datalake.

Is this FedRAMP/HIPAA compatible?

The default deployment uses isolated VPC subnets with no internet egress, KMS encryption, and secure transport enforcement — meeting the network isolation requirements for compliance frameworks.

Support

Included with all subscriptions: documentation, bug fixes, security patches, and email support.

Support: support@perfware.cloud

Professional services: consulting@perfware.cloud

Initial setup • Custom integration • Managed service

Contact Us