Lets you write and run queries over a Log Analytics workspace from the Azure portal, either point-and-click in Simple mode or by writing KQL.
Read more: Microsoft Learn
In the Ultra Transcenders books
Each book explains Log Analytics in context, with comparison tables and the common traps.
Terms in this definition
- OVER
Gives a T-SQL window function its window: PARTITION BY, ORDER BY and, if wanted, a ROWS or RANGE frame. Rankings and running totals can then be worked out while every row is kept.
- Log Analytics workspace
Where Azure Monitor keeps log data for querying with KQL. Microsoft Sentinel, VM insights and workspace-based Application Insights all depend on one.
- Azure portal
Browser-based graphical console from Microsoft for building, managing and watching Azure resources, offering tailored dashboards and a route into Cloud Shell.
- KQL
Kusto Query Language, used read-only to query Azure Data Explorer, Log Analytics and Microsoft Sentinel; log alert rules are written in it too.