The page has been translated by Gen AI.

Analyzing Logs

In log analysis, the log of the monitoring target is collected and its contents are checked, and it can be monitored by converting it into an indicator, which is a structured data. Basic collection logs are provided for each monitoring target, and users can create custom logs to collect and check desired logs in addition.

Reference
To use log analysis, you must install and operate a log collection agent in advance. For more information on installing and operating log agents, please refer to Managing Agents. To collect logs from Kubernetes Engine, you must set up log collection in the Samsung Cloud Platform Console.

Start log analysis

You can check the log status list or search for the monitoring target log to check. To check the log status list, follow the procedure below.

  1. Cloud Monitoring Console > Log Analysis > Log Status을 클릭하세요. Log Status 페이지로 이동합니다.
  2. Enter the search conditions of the service to be analyzed in the search area, and then click Log Search.
    • A list of services that match the search criteria and search information will be displayed at the bottom.
    • Clicking the Detail View button for each service displays detailed log information for the service.
      ItemDescription
      Search AreaThe search filters displayed in the search area may vary depending on the service type
      • Advanced Search can be done by clicking the Advanced Search button.
      • Each detailed search filter condition item can be selected one or more
      Number of items to display for monitoring targetsDisplays the number of search results and the performance number that can be viewed at once in the list
      • The default is to view 20 at a time.
      • The number of items listed can be changed to view 10, 20, 30, 40, 50, or 100 at a time
      Search InformationDisplays the search result value for the search condition item
      Detailed ViewCheck the detailed information of the corresponding monitoring target
      Log SearchSearch logs by combining keywords and queries and check detailed history
Reference
If a Virtual Server or Node connected to the monitoring target exists, the status diagram will also be displayed in the search information area. The name of the monitoring target can use Korean, English uppercase and lowercase letters, numbers, and special symbols (-, _, .) and can be entered up to a maximum of 100 characters. If the monitoring target does not have permission, information about the target without permission and a permission check message will be displayed as a pop-up.

Check log details

You can view the detailed log records and log graphs of the monitoring target.

Checking the log list

You can check the log details in the monitoring detail pop-up window. To check the monitoring details of the log, follow the next procedure.

  1. Cloud Monitoring Console > Log Analysis > Log Status을 클릭하세요. Log Status 페이지로 이동합니다.

  2. Click on the log to check the detailed information on the Log Status page. The Monitoring Details popup window will open.

  3. Click the log tab. When you place the mouse cursor on the graph, the value of each log item appears in a popup window.

    • You can set the inquiry period or change the refresh cycle by clicking the icon at the top right.
    • You can select the graph display method by clicking the Detail, Summary buttons at the top left of the log chart.
    ItemDescription
    Basic InformationDisplays basic information about the monitoring target
    DetailsThe chart for each log of the monitoring target is unfolded and displayed
    • Check one chart in detail
    SummaryPerformance charts of monitoring targets are displayed in a checkerboard format
    • Check multiple charts at a glance
    Setting the inquiry period
    • Date/Time: Displays the standard time of the data inquiry.
    • Refresh: Refreshes directly to the current time.
    • Start/Stop: Turns the automatic refresh function on or off.
    • Settings: Sets the data inquiry period or changes the automatic refresh cycle
    Performance comparisonCombine keywords and queries to search logs and check detailed history
    Performance-based chartThe log-based chart of the monitoring target is displayed as a graph
    • If you place the mouse cursor over the graph, the log item value at the specified time will appear in a popup window.

Check by searching the log

You can search logs by combining keywords and queries, and check the details.

Reference
The presence and frequency of keywords can be converted into indicators and displayed as charts on the dashboard page, or set up related events to receive notifications.

To search logs, follow the next procedure.

  1. Cloud Monitoring Console > Log Analysis > Log Status을 클릭하세요. Log Status 페이지로 이동합니다.

  2. Click Log Status on the Log Search page. It moves to the Log Search page.

    ItemDescription
    Monitoring targetIndicates the type of service for the monitoring target to be compared
    • Click the monitoring target list to change the service
    • If the service is changed, all charts created so far will disappear.
    • Click the Add button to search for and add the monitoring target of the currently selected service
    • The selected monitoring target is displayed on the page, and you can delete the monitoring target by clicking X or Delete all.
    Search ConditionSet the condition for the log to be searched
    Setting the inquiry period
    • Date/Time: Displays the standard time of the data inquiry.
    • Refresh: Refreshes directly to the current time.
    • Start/Stop: Turns the auto-refresh function on or off.
    • Settings: Sets the data inquiry period or changes the auto-refresh cycle
    The graph of log occurrenceLog occurrence graph
    Occurrence log messageLog messages that occurred from the monitoring target are displayed by time
  3. Add button is clicked. A popup window that can add a monitoring target will open.

  4. Click the monitoring target and select the log file you want to add.

  5. Once the log file selection is complete, click the Confirm button.

  6. Enter the search conditions and click the Search button. The search results will be displayed on the log volume graph and the occurred log message.

    ItemDescription
    Add MetricAdd a metric to the log search results
    • Use after searching logs
    Execution HistoryCheck the list of search conditions that were recently executed for the search
    • Execution history displays up to 20 most recently executed search conditions
    • Select the desired execution history to input as the current search condition
    Search fieldSelect search field
    ConditionSelect search condition
    • like , !like , = , != , <= , >= , > , < can be selected
    Search valueEnter the keyword to search
    Log SearchSelect an operator (AND, OR) for the newly added search condition
    • Only displayed when a new search condition is added
    Add conditionAdd new search condition

  7. When searching logs, the log history corresponding to the entered condition is displayed as a chart.

    • Log history is displayed in seconds.
      ItemDescription
      Log occurrence graphThe log occurrence during the set period is displayed as a graph
      • If you place the mouse cursor over the graph, the value of each log item appears in a popup window.
      • Clicking on the bar graph of the graph displays the list of logs at that point in time.
      Setting the inquiry period
      • Date/Time: Displays the reference time of the data
      • Refresh: Refreshes directly to the current time.
      • Start/Stop: Turns the automatic refresh function on or off.
      • Settings: Sets the data inquiry period or changes the automatic refresh cycle
      Monitoring targetThe monitoring target list is displayed
      • If you select a monitoring target to check the log message, the contents will be displayed in the log list
      Log listLog messages that occurred in the monitoring target are displayed by time
      • Clicking the button in the log list displays the full message of the log
      • Click download to download the currently displayed log message in Excel and TXT file formats

Check the status of log collection

You can check the collection information of major logs for the past 7 days in a chart.

When you place the mouse cursor on the graph, detailed information appears in a pop-up window. Only collected logs are aggregated, and uncollected logs are not displayed in the current status.

Reference

When you create an * Account, it provides 1GB of virtual capacity by default to store the collected logs.

  • All logs can be stopped and restarted for collection as needed.

To check the log collection status, click Cloud Monitoring Console > Log Analysis > Log Collection Dashboard.

ItemDescription
Accumulated log occurrence amountAmount of logs collected from the 1st of each month, displayed in GB
  • Displays the cumulative usage of the allocated total virtual capacity so far, as a percentage.
Recent 7-day log collection amountThe amount of logs collected over the past 7 days is displayed in a graph by service type
  • The line graph with a notch shows the quantity (kb), and the bar graph shows the cumulative usage rate.
  • Click on the monitoring target in the legend area to display only the corresponding graph
Service-specific log occurrence rateDisplays the log collected over the past 7 days, classified by service
  • When you click on the bar graph representing each service, the monitoring target with the most collected logs within the service is displayed on the log collection TOP 10 chart.
Log Collection Top 10Displays the top 10 monitoring targets with the most logs collected in the last 7 days within the selected service in the log occurrence rate by service as a graph
  • Click on each point on the graph to view the detailed log records
  • Click on the monitoring target in the legend area to display only the corresponding graph
  • Clicking on the graph of the target service moves to the Log Status page
Reference
To perform monitoring related to logs, you must install and operate the log collection agent in advance. For more information on installing and operating log agents, please refer to Managing Agents. The accumulated log is stored up to a maximum of 1GB. If 1GB is exceeded, old logs are automatically deleted from oldest to newest.

Check the status of the indicator settings

You can create metrics to display the occurrence of log patterns over time as a time series. To check the list of metrics, click Cloud Monitoring Console > Log Analysis > Current Metric Settings.

Reference
The metrics converted to time series data can be set as an event or registered on the dashboard for real-time monitoring.
ItemDescription
Search areaThe search filter displayed in the search area may vary depending on the service type
  • Advanced search can be done by clicking the Advanced search button.
  • Each detailed search filter condition item can be selected one or more
Number of items to display for monitoring targetsDisplay search results
  • The default is to display 20 at a time.
  • The number of items listed can be changed to display 10, 20, 30, 40, 50, or 100 at a time
Search InformationDisplays the search result value for the search condition item
AddAdd a new indicator
DeleteSelect and delete indicators in search information

Check the details of the indicator

To view detailed information about the metric, follow these steps.

  1. Cloud Monitoring Console > Log Analysis > Metric Setting Status will be clicked. It moves to the Metric Setting Status page.
  2. On the Indicator Setting Status page, click the indicator name to check detailed information. The Indicator Details popup window will open.

Adding Indicators

You can add new metrics to display the desired log data as a time series.

Reference
The log indicator can only be set for the monitoring target where the log agent is installed or logs are collected. For more information on installing and operating log agents, see Managing Agents.

To add a new metric, follow the procedure below.

  1. Cloud Monitoring Console > Log Analysis > Metric Setting Status will be clicked. It moves to the Metric Setting Status page.

  2. On the Indicator Setting Status page, click the Add button. The Add Indicator popup window opens.

  3. Indicator Name을 입력하세요.

    • Indicator names can only use English uppercase and lowercase letters, underscores (_), periods (.), and hyphens (-).
    • To distinguish metrics from general performance, the prefix metricfilter. is automatically added and cannot be deleted or changed.
    ItemDescription
    Indicator NameEnter the name of the new indicator to be created
    Monitoring TargetIndicates the type of service for the monitoring target to be compared
    • Click the monitoring target list to change the service
    • If the service is changed, all charts created so far will disappear.
    • Click the add button to search for and add the monitoring target of the currently selected service
    • The selected monitoring target is displayed on the page and can be deleted by clicking X or delete all
    Search ConditionsSet conditions for logs to be searched
    Set query period
    • Date/Time: Displays the reference time for data query
    • Refresh: Refreshes directly to the current time.
    • Start/Stop: Turns automatic refresh on or off.
    • Settings: Allows setting the data query period or changing the automatic refresh cycle.
    Log Volume GraphWhen searching for logs, the log history that matches the entered conditions is displayed as a chart
    Occurrence Log MessageLog messages that occurred from the monitoring target are displayed by time
  4. Add button is clicked. A popup window that can add monitoring targets will be opened.

  5. Click the monitoring target and select the log file you want to add.

  6. Once the log file selection is complete, click the Confirm button.

  7. Enter the search conditions and click the Search button. The search results will be displayed in the log volume graph and occurrence log message.

    ItemDescription
    Add MetricAdd metrics to log search results
    • Use after searching logs
    Execution HistoryCheck the list of search conditions that were recently executed for searching
    • Execution history displays up to 20 most recently executed search conditions
    • Can input the desired search history as the current search condition
    Search FieldSelect Search Field
    ConditionSelect search condition
    • like , !like , = , != , <= , >= , > , < can be selected
    Search valueEnter the keyword to search
    OperatorSelect an operator (AND, OR) for the newly added search condition
    • Only displayed when a new search condition is added
    Add conditionAdd new search condition
  8. Click the Confirm button. A new metric will be added with a toast popup message.

Modifying Indicator Search Conditions

To modify the search criteria of the indicator, follow the next procedure.

  1. Cloud Monitoring Console > Log Analysis > Metric Setting Status will be clicked. It moves to the Metric Setting Status page.
  2. On the Indicator Setting Status page, click the Indicator Name of the indicator you want to modify. The Indicator Details popup window will open.
  3. Indicator Details popup window, click the Edit button. The Edit Indicator popup window opens.
  4. In the Modify Indicator popup window, modify the search conditions and click the Confirm button. The indicator will be modified along with a toast popup message.

Deleting Indicators

To delete an indicator, follow these steps.

Reference
If there are charts or event policies using the metric you want to delete, you cannot delete the metric.
  1. Cloud Monitoring Console > Log Analysis > Metric Setting Status을 클릭하세요. Metric Setting Status 페이지로 이동합니다.
  2. On the Indicator Setting Status page, select the indicator to be deleted and click the Delete button. The indicator will be deleted along with a toast popup message.
Analyzing Performance
Managing Events