Thursday, December 17, 2020

Query for events from Linux system logging

 Syslog table for the queries on events from Linux Virtual machines.


Note: Syslog is an event logging protocol that is common to Linux. Applications will send messages that may be stored on the local machine or delivered to a Syslog collector. When the Log Analytics agent for linux is installed, it configures the local Syslog daemon to forward messages to the agent. The agent then sends the message to Azure Monitor where a corresponding record is created.

Reference:

https://docs.microsoft.com/en-us/azure/azure-monitor/platform/data-sources-syslog


No comments:

Post a Comment