Udostępnij za pośrednictwem


Przykładowe zapytania usługi Log Analytics w usłudze Azure Monitor.

Dzienniki zasobów usługi Azure Monitor to dzienniki emitowane przez usługi platformy Azure, które opisują działanie tych usług lub zasobów. W przypadku eksportowania do obszaru roboczego usługi Log Analytics dzienniki są przechowywane w tabelach. Ten zestaw artykułów zawiera przykładowe zapytania umożliwiające pobieranie danych z tabel usługi Log Analytics. Zapytania są również dostępne w obszarze roboczym usługi Log Analytics.

Przykładowe zapytania według tabeli

AACAudit

AACHttpRequest

AADCustomSecurityAttributeAuditLogs

AADDomainServicesAccountLogon

AADDomainServicesAccountManagement

AADDomainServicesDirectoryServiceAccess

AADDomainServicesLogonLogoff

AADDomainServicesPolicyChange

AADDomainServicesPrivilegeUse

AADManagedIdentitySignInLogs

AADNonInteractiveUserSignInLogs

Dzienniki aprowizacji usługi AAD

AADRiskyUsers

AADServicePrincipalRiskEvents

AADServicePrincipalSignInLogs

AADUserRiskEvents

ABAPAuditLog

ABSBotRequests

ACICollaborationAudit

ACRConnectedClientList

ACREntraAuthenticationAuditLog

ACSAdvancedMessagingOperations

ACSAuthIncomingOperations

ACSBillingUsage

ACSCallAutomationIncomingOperations

ACSCallAutomationMediaSummary

ACSCallClientMediaStatsTimeSeries

ACSCallClientOperations

ACSCallDiagnostics

ACSCallRecordingIncomingOperations

ACSCallRecordingSummary

ACSCallSummary

ACSCallSummaryUpdates

ACSCallSurvey

ACSChatIncomingOperations

ACSEmailSendMailOperational

ACSEmailStatusUpdateOperational

ACSJobRouterIncomingOperations

ACSRoomsIncomingOperations

ACSSMSIncomingOperations

ADAssessmentRecommendation

ADFActivityRun

ADFPipelineRun

ADFSSignInLogs

ADFTriggerRun

ADTDataHistoryOperation

ADTDigitalTwinsOperation

ADTEventRoutesOperation

ADTModelsOperation

ADTQueryOperation

ADXIngestionBatching

ADXTableUsageStatistics

AEWComputePipelinesLogs

AEWExperimentAssignmentSummary

AEWExperimentScorecardMetricPairs

Karty AEWExperimentScorecard

AFSAuditLogs

AgCAccessLogs

AGSGrafanaLoginEvents

AHDSDicomAuditLogs

AHDSDicomDiagnosticLogs

AHDSMedTechDiagnosticLogs

AKSAudit

AKSAuditAdmin

AKSControlPlane

ALBHealthEvent

AMSKeyDeliveryRequests

AMSLiveEventOperations

AMSMediaAccountHealth

AMSStreamingEndpointRequests

AOIDatabaseQuery

AOIDigestion

AOIStorage

ASCDeviceEvents

Zadania ASRJob

AsRReplicatedItems

ASimDnsActivityLogs

AVNMConnectivityConfigurationChange

AVNMIPAMPoolAllocationChange

AVNMNetworkGroupMembershipChange

AVNMRuleCollectionChange

AVSSyslog

AWSCloudTrail

AWSGuardDuty

AWSVPCFlow

AZFWApplicationRule

AZFWDnsQuery

AZFWFatFlow

AZFWFlowTrace

AZFWIdpsSignature

AZFWInternalFqdnResolutionFailure

AZFWNatRule

AZFWNetworkRule

AZFWThreatIntel

AZKVAuditLogs

AZMSDiagnosticErrorLogs

AZMSHybridConnectionsEvents

AZMSOperationalLogs

AZMSRunTimeAuditLogs

AZMSVnetConnectionEvents

AddonAzureBackupJobs

AddonAzureBackupStorage

AegDataPlaneRequests

AegDeliveryFailureLogs

AegPublishFailureLogs

ZagregowanezabezpieczeniaAlert

AgriFoodApplicationAuditLogs

AgriFoodFarmManagementLogs

AgriFoodJobProcessedLogs

AlertEvidence

Informacje o alertach

AmlComputeClusterEvent

AmlComputeCpuGpuU niewymagania

AmlComputeJobEvent

AmlDataSetEvent

AmlEnvironmentEvent

AmlModelsEvent

AmlOnlineEndpointConsoleLog

AmlOnlineEndpointEventLog

AmlOnlineEndpointTrafficLog

AmlRegistryWriteEventsLog

Anomalii

ApiManagementGatewayLogs

AppDependencies

AppEnvSpringAppConsoleLogs

AppExceptions

AppPageViews

AppPlatformLogsforSpring

AppPlatformSystemLogs

AppRequests

AppServiceAppLogs

AppServiceAuditLogs

Dzienniki uwierzytelniania usługi AppService

AppServiceConsoleLogs

AppServiceFileAuditLogs

AppServiceHTTPLogs

AutoskalowanieLog

AutoskalowanieSkalaActionsLog

AzureActivity

AzureAttestationDiagnostics

AzureBackupOperations

AzureDiagnostics

AzureLoadTestingOperation

AzureMetrics

Dzienniki aplikacji CCF

CIEventsAudit

CIEventsOperational

CassandraLogs

ChaosStudioExperimentEventLogs

CloudAppEvents

CloudHsmServiceOperationAuditLogs

CommonSecurityLog

CommunicationComplianceActivity

Lista poufnych zegarków

ConfigurationChange

ConfigurationData

ContainerAppConsoleLogs

ContainerImageInventory

ContainerInventory

ContainerLog

ContainerLogV2

ContainerNodeInventory

ContainerRegistryLoginEvents

ContainerRegistryRepositoryEvents

ContainerServiceLog

CoreAzureBackup

DCRLogErrors

Dzienniki dnsquery

DataTransferOperations

DatabricksWorkspaceLogs

DataverseActivity

DevCenterDiagnosticLogs

DevCenterResourceOperationLogs

DeviceCalendar

DeviceCleanup

DeviceHardwareHealth

Kondycja urządzenia

DeviceSkypeHeartbeat

DeviceTvmSecureConfigurationAssessment

DeviceTvmSoftwareInventory

DeviceTvmSoftwareVulnerabilities

DnsEvents

EGNFailedHttpDataPlaneOperations

EGNFailedMqttConnections

EGNMqttDisconnections

EGNSuccessfulHttpDataPlaneOperations

EGNSuccessfulMqttConnections

EmailAttachmentInfo

EmailEvents

EmailPostDeliveryEvents

EmailUrlInfo

Zdarzenie

Niepowodzenie Pozyskiwanie

FunctionAppLogs

GCPAuditLogs

Heartbeat

IdentityDirectoryEvents

IdentityLogonEvents

IdentityQueryEvents

InsightsMetrics

KubeEvents

KubeMonAgentEvents

KubeNodeInventory

KubePodInventory

KubeServices

DZIENNIKI LAQuery

LASummaryLogs

LogicAppWorkflowRuntime

MDCDetectionDNSEvents

MDCDetectionFimEvents

MDCDetectionGatingValidationEvents

MNFDeviceUpdates

MNFSystemSessionHistoryUpdates

MNFSystemStateMessageUpdates

MicrosoftDataShareReceivedSnapshotLog

MicrosoftDataShareSentSnapshotLog

MicrosoftGraphActivityLogs

MicrosoftPurviewInformationProtection

Dzienniki NGXOperationLogs

Dzienniki zabezpieczeń NGX

NWConnectionMonitorPathResult

NWConnectionMonitorTestResult

SieciSesje

OEPAirFlowTask

OLPSupplyChainEntityOperations

OfficeActivity

Perf

PowerAppsActivity

PowerAutomateActivity

PowerBIActivity

PowerPlatformAdminActivity

PowerPlatformConnectorActivity

PowerPlatformDlpActivity

ProjectActivity

ProtectionStatus

PurviewSecurityLogs

REDConnectionEvents

ResourceManagementPublicAccessLogs

SQLAssessmentRecommendation

SecurityAttackPathData

SecurityEvent

SentinelAudit

SignalRServiceDiagnosticLogs

Dzienniki logowania

StorageBlobLogs

StorageCacheOperationEvents

StorageCacheUpgradeEvents

StorageCacheWarningEvents

StorageMalwareScanningResults

Powodzenie Pozyskiwanie

SynapseLinkEvent

Syslog

TSIIngress

UCDOAggregatedStatus

UCDOStatus

Update

UpdateRunProgress

UpdateSummary

UrlClickEvents

Użycie

VCoreMongoRequests

VIAudit

Indeksowanie VI

W3CIISLog

WVDAgentHealthStatus

Punkty kontrolne usługi WVD

WVDConnectionNetworkData

WVDConnections

WVDErrors

WaaSDeploymentStatus

WaaSUpdateStatus

Lista do obejrzenia

WindowsEvent

WireData

WorkloadDiagnosticLogs

Następne kroki