Splunk is absurdly priced for normal verbose syslogs for a bunch of hosts. You could preprocess or tune your logging to only send important stuff to Splunk to make up for this.
It's cheap for application-specific logs where each line is relatively high value.
It's cheap for application-specific logs where each line is relatively high value.