Log Smart Monitoring¶
Based on intelligent detection algorithms, it monitors log data generated by collectors in the Workspace. It intelligently identifies anomalies such as sudden increases/decreases in log volume and sudden increases in error logs, promptly detecting anomalous states that do not meet expectations.
Use Cases¶
It is mainly applicable to code anomaly or task scheduling detection in IT monitoring scenarios, such as monitoring a sudden increase in error logs.
Detection Configuration¶
- Go to Monitoring > Smart Monitoring, create and select Log Smart Monitoring.
- Enter the monitor name.
- Adjust the detection conditions and delete unnecessary rules.
- Expand Detection Query (DQL) and modify the log query scope as needed.
- Configure event notifications, alert policies, and operation permissions, then save.
View Events¶
In the monitor list, click View Related Events to view anomaly events generated by the monitor.
Event Details Page¶
Click Event to view the details page of the smart monitoring event, including event status, anomaly occurrence time, anomaly name, analysis report, alert notifications, history, and related events.
-
Click Go to Monitor in the upper-right corner to view or adjust the smart monitor configuration.
-
Click the Export button in the upper-right corner to select Export JSON File or Export PDF File, thereby obtaining all key data corresponding to the current event.
Analysis Report
-
Anomaly Summary: View the current anomaly log tags, anomaly analysis report details, and error request count distribution
-
Error Analysis: View the pattern information of error logs
Note
When anomalies occur in multiple intervals, the Anomaly Summary > Anomaly Value Distribution Chart and the Anomaly Analysis dashboard display the anomaly analysis of the first anomaly interval by default. You can click the "Anomaly Value Distribution Chart" to switch, and the Anomaly Analysis dashboard will update in sync.