Partilhar via


Consultas de exemplo de análise de log do Azure Monitor.

Os logs de recursos do Azure Monitor são logs emitidos pelos serviços do Azure que descrevem a operação desses serviços ou recursos. Quando exportados para um espaço de trabalho do Log Analytics, os logs são armazenados em tabelas. Este conjunto de artigos contém consultas de exemplo para recuperar dados das tabelas de análise de log. As consultas também estão disponíveis no espaço de trabalho do Log Analytics.

Exemplos de consultas por tabela

AACAudit

AACHttpRequest

AADCustomSecurityAttributeAuditLogs

AADDomainServicesAccountLogon

AADDomainServicesAccountManagement

AADDomainServicesDirectoryServiceAccess

AADDomainServicesLogonLogoff

AADDomainServicesPolicyChange

AADDomainServicesPrivilegeUse

AADManagedIdentitySignInLogs

AADNonInteractiveUserSignInLogs

AADProvisioningLogs

AADRiskyUsuários

AADServicePrincipalRiskEvents

AADServicePrincipalSignInLogs

AADUserRiskEvents

ABAPAuditLog

ABSBotRequests

ACICollaborationAudit

ACRConnectedClientList

ACREntraAuthenticationAuditLog

ACSAdvancedMessagingOperations

ACSAuthIncomingOperations

ACSBillingUsage

ACSCallAutomationIncomingOperations

ACSCallAutomationMediaSummary

ACSCallClientMediaStatsTimeSeries

ACSCallClientOperations

ACSCallDiagnostics

ACSCallRecordingIncomingOperations

ACSCallRecordingSummary

ACSCallSummary

ACSCallSummaryUpdates

ACSCallSurvey

ACSChatIncomingOperations

ACSEmailSendMailOperational

ACSEmailStatusUpdateOperational

ACSJobRouterIncomingOperations

ACSRoomsIncomingOperations

ACSSMSIncomingOperations

ADAssessmentRecomendação

ADFActivityRun

ADFPipelineRun

ADFSSignInLogs

ADFTriggerRun

ADTDataHistoryOperation

ADTDigitalTwinsOperação

ADTEventRoutesOperation

ADTModelsOperation

ADTQueryOperation

ADXIngestionBatching

ADXTableUsageStatistics

AEWComputePipelinesLogs

AEWExperimentAssignmentSummary

AEWExperimentScorecardMetricPairs

AEWExperimentScorecards

AFSAuditLogs

AGCAccessLogs

AGSGrafanaLoginEvents

AHDSDicomAuditLogs

AHDSDicomDiagnosticLogs

AHDSMedTechDiagnosticLogs

AKSAudit

AKSAuditAdmin

AKSControlPlane

ALBHealthEvent

AMSKeyDeliveryRequests

AMSLiveEventOperations

AMSMediaAccountHealth

AMSStreamingEndpointRequests

AOIDatabaseQuery

AOIDigestion

AOIStorage

ASCDeviceEventos

ASRJobs

ASRReplicatedItems

ASimDnsActivityLogs

AVNMConnectivityConfigurationChange

AVNMIPAMPoolAllocationChange

AVNMNetworkGroupMembershipChange

AVNMRuleCollectionChange

AVSSyslog

AWSCloudTrail

AWSGuardDuty

AWSVPCFlow

AZFWApplicationRule

AZFWDnsQuery

AZFWFatFlow

AZFWFlowTrace

AZFWIdpsSignature

AZFWInternalFqdnResolutionFailure

AZFWNatRule

AZFWNetworkRule

AZFWThreatIntel

AZKVAuditLogs

AZMSDiagnosticErrorLogs

AZMSHybridConnectionsEvents

AZMSOperationalLogs

AZMSRunTimeAuditLogs

AZMSVnetConnectionEvents

AddonAzureBackupJobs

AddonAzureBackupStorage

AegDataPlaneRequests

AegDeliveryFailureLogs

AegPublishFailureLogs

AggregatedSecurityAlert

AgriFoodApplicationAuditLogs

AgriFoodFarmManagementLogs

AgroAlimentarTrabalhoProcessadoLogs

AlertEvidence

AlertInfo

AmlComputeClusterEvent

AmlComputeCpuGpuUtilization

AmlComputeJobEvent

AmlDataSetEvent

AmlEnvironmentEvent

AmlModelsEvent

AmlOnlineEndpointConsoleLog

AmlOnlineEndpointEventLog

AmlOnlineEndpointTrafficLog

AmlRegistryWriteEventsLog

Anomalias

ApiManagementGatewayLogs

AppDependencies

AppEnvSpringAppConsoleLogs

AppExceptions

AppPageViews

AppPlatformLogsforSpring

AppPlatformSystemLogs

AppRequests

AppServiceAppLogs

AppServiceAuditLogs

AppServiceAuthenticationLogs

AppServiceConsoleLogs

AppServiceFileAuditLogs

AppServiceHTTPLogs

AutoscaleEvaluationsLog

AutoscaleScaleActionsLog

AzureActivity

AzureAttestationDiagnostics

AzureBackupOperations

AzureDiagnostics

AzureLoadTestingOperation

AzureMetrics

CCFApplicationLogs

CIEventsAudit

CIEventsOperacional

CassandraLogs

ChaosStudioExperimentEventLogs

CloudAppEvents

CloudHsmServiceOperationAuditLogs

CommonSecurityLog

ComunicaçãoComplianceActivity

ConfidencialLista de observação

ConfiguraçãoAlterar

ConfigurationData

ContainerAppConsoleLogs

ContainerImageInventory

ContainerInventory

ContainerLog

ContainerLogV2

ContainerNodeInventory

ContainerRegistryLoginEvents

ContainerRegistryRepositoryEvents

ContainerServiceLog

CoreAzureBackup

DCRLogErrors

DNSQueryLogs

DataTransferOperations

DatabricksWorkspaceLogs

DataverseActivity

DevCenterDiagnosticLogs

DevCenterResourceOperationLogs

DeviceCalendar

DeviceCleanup

DeviceHardwareHealth

Saúde do dispositivo

DispositivoSkypeHeartbeat

DeviceTvmSecureConfigurationAssessment

DeviceTvmSoftwareInventory

DeviceTvmSoftwareVulnerabilidades

DnsEventos

EGNFailedHttpDataPlaneOperations

EGNFailedMqttConnections

EGNMqttDisconnections

EGNSuccessfulHttpDataPlaneOperations

EGNSuccessfulMqttConnections

EmailAttachmentInfo

EmailEvents

Endereço electrónicoPostDeliveryEvents

EmailUrlInfo

Evento

FailedIngestion

FunctionAppLogs

GCPAuditLogs

Heartbeat

IdentityDirectoryEvents

IdentityLogonEvents

IdentityQueryEvents

InsightsMetrics

KubeEventos

KubeMonAgentEventos

KubeNodeInventory

KubePodInventory

KubeServiços

LAQueryLogs

LASummaryLogs

LogicAppWorkflowRuntime

MDCDetectionDNSEvents

MDCDetectionFimEvents

MDCDetectionGatingValidationEvents

MNFDeviceAtualizações

MNFSystemSessionHistoryUpdates

MNFSystemStateMessageUpdates

MicrosoftDataShareReceivedSnapshotLog

MicrosoftDataShareSentSnapshotLog

MicrosoftGraphActivityLogs

MicrosoftPurviewInformationProtection

NGXOperationLogs

NGXSecurityLogs

NWConnectionMonitorPathResult

NWConnectionMonitorTestResult

Sessões de rede

OEPAirFlowTask

OLPSupplyChainEntityOperations

Atividade de escritório

Perf

PowerAppsActivity

PowerAutomateActivity

PowerBIActivity

PowerPlatformAdminActivity

PowerPlatformConnectorActivity

PowerPlatformDlpActivity

ProjetoAtividade

Status de proteção

PurviewSecurityLogs

REDConnectionEvents

Gestão de RecursosPublicAccessLogs

SQLAssessmentRecommendation

SecurityAttackPathData

SecurityEvent

SentinelAudit

SignalRServiceDiagnosticLogs

SigninLogs

StorageBlobLogs

StorageCacheOperationEvents

StorageCacheUpgradeEvents

StorageCacheWarningEvents

StorageMalwareScanningResultados

SucceededIngestion

SynapseLinkEvent

Syslog

TSIIngress

UCDOAggregatedStatus

UCDOStatus

Atualização

UpdateRunProgress

UpdateSummary

UrlClickEvents

Utilização

VCoreMongoPedidos

VIAudit

VIIndexing

W3CIISLog

WVDAgentHealthStatus

WVDCheckpoints

WVDConnectionNetworkData

WVDConnections

WVDErrors

WaaSDeploymentStatus

WaaSUpdateStatus

Lista de observação

WindowsEvento

WireData

WorkloadDiagnosticLogs

Próximos passos