Hello Az,
First, let's clarify this. OpenSearch/Wazuh-Indexer is a package that contains Elasticsearch plus extra add-ons totally free, it works with Dashboard/Wazuh-Dashboard which is Kibana with extra free add-ons also.
So basically here we are talking about FREE VS NON-FREE options.
Both options are production-ready products, reliable, and have a good team to support them. Regarding features we would need to check our needs and our budget, not always more is better, but sometimes less is. If you can afford the Platinum or Enterprise license of ELK, would be a great option, not only all features but also support to help you get on track.
- What is OpenSearch?
- Why was OpenSearch created?
- Why should I use OpenSearch?
- Is OpenSearch suitable for production use?
- What license is OpenSearch released under?
Both are great options, if you are starting, I would go with OpenSearch, moving to ElasticStack is possible in the future if it's really needed, but not the other way around, migrating from Elastic Stack to OpenSearch is quite simple but it's not feasible the other way around. Wazuh 4.3.6 is available on both options.
Hope this helps!