Reviewing the logs that are connected with an alert on the Log Viewer in Health Log Analytics

  • Rversion finale: Australia
  • Mis à jour 12 mars 2026
  • 2 minutes de lecture
  • The Log Viewer tab lets you browse the logs for an alert by timestamp or time range, and visualize anomaly frequency within a specific time period. Customizing the displayed data and adjusting time filters enables you to better understand the framework in which the anomaly occurred, helping you find the root cause faster.

    The Log Viewer presents all data connected with the Log Analytics alert. It shows the query that relates to the anomaly, the selected component, and the appropriate time filter. You can personalize the displayed data, and manually adjust the time range without affecting the other settings. The applied filters appear in the Filters pane. You can add or remove filters as needed to show only the data you want to view.

    The Log Viewer displays a chart of the frequency of anomalous log lines during one minute before and one minute after the Log Analytics alert and lists the associated log data. This information helps you identify trends leading up to and following the event, providing context for root cause analysis.

    As you analyze the logs for an alert on the Log Viewer, you can modify the query to fine-tune the search, save useful searches, and share them with others. For a description of the information displayed in the Log Viewer table, see Log Viewer table fields.

    You can perform the following tasks on the Log Viewer:

    If you discover an important metric in the log data, you can use it to define a new Log Analytics alert rule. For more information, see Add a Log Analytics alert rule in Health Log Analytics.