Azure Monitor-Log Analytics

Welcome to the "Azure Log Analytics ":https://azure.microsoft.com/en-us/services/log-analytics/ Feedback page. We appreciate your feedback and look forward to hearing from you. Use this site for new ideas and bug reports or to request help.
NOTE – Log Analytics is now a part of Operations Management Suite. Learn more at http://microsoft.com/OMS

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Teams and Planner integration

    What is planned or already possible for professional reports related to Teams and Planner ?

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  2. Performance Counter consistency between Linux and Windows machines

    It would be much more convenient if names of performance metrics would be same between Linux and Windows machines, for example ObjectName, for Disk Write Bytes/Sec counter, is LogicalDisk for Windows and Logical Disk for Linux, such differences doesn't allow to use same queries for Linux and Windows machines, Also Linux machines are missing a lot of metrics such as "Bytes Sent/Sec" in "Network" ("Network Adapter" for Windows)

    5 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  3. Multiline log support

    It is very inconvenient when the log comes separately from the stack trace messages, the order of the lines is mixed. This needs to be fixed. Ideally, everything should come in one message in multi lines

    4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  4. multiple OMS subscriptions to ability to pipe all Log Analytics data to one main OMS subscription

    We have multiple subscriptions under one tenant and one subscription will have 160 plus OMS subscriptions, all of which function as separate entities with their own resources. we would like to have the ability to pipe all Log Analytics data from these secondary subscriptions into your main subscription main OMS subscription, mostly for Threat Intelligence and Security Analytics so that you can correlate the data together. And to work with azure sentinel. Currently we have call AAD and office 365 data and AIP data go to the main OMS subscription. We need a central way to correlate data.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    8 comments  ·  Flag idea as inappropriate…  ·  Admin →

    Thanks a lot Aaron Shvarts for sharing your requirement. Currently there is a support to query cross resources with in Azure Monitor. However the limit is for 100 workspaces or application insights instance with in a query. https://docs.microsoft.com/en-us/azure/azure-monitor/log-query/cross-workspace-query . Please have a look and see if that could cater your requirement. We understand that the limit is 100 and your requirement is 160+ resources. Please let us know if the cross resource query is something you can use and if there is a feature requirement to increase the current limit of 100, that can be done by a new feedback thread. Thanks

  5. Ability to stream data from one workspace to another.

    Need the ability to stream data from one workspace to another. The target workspace could be in the same tenant or a different tenant.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  6. Embedding Log Analytics Solutions to Third Party Web Apps

    Possibility of embedding OMS dashboards from solutions for external Web Apps for customers.
    There is the possibility of collecting data from OMS and integrate with Power BI and later embed this, but it is "raw" log information, not the pre-made dashboards in OMS solutions

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Workspace Settings / Administration  ·  Flag idea as inappropriate…  ·  Admin →
  7. Notification before updating module about OMS

    We want to get the feature about notification.
    Now, we cannot know when OMS agent will be updated.
    If problem has occurred, it seems like that there is a problem suddenly.
    If then, we must investigate quickly.
    And we must create support request to Microsoft.

    It is very noisy.
    So, we suggest the new feature about updating.

    <Suggestion about feature>
    Azure and OMS send notification when updating is decided.
    If so, we can know the information about them and we will not be confused even though what will occur

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →

    Not clear what is the scenario you tried to do. What do you mean by “module update”. What kind of problem happened?
    What do you expect to do with such notification?

    The agent modules are constantly updated and we can’t notify the customer each time it happen as it will become spam. This is one of the benefits of the system. Over millions of devices we have a very good track record of good servicing.

  8. log analytics

    Need log analytics to process alert rules faster. I am seeing 10-12 minutes lag for alert generation.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Security and Audit Solution  ·  Flag idea as inappropriate…  ·  Admin →
  9. Is there way where I can have Guest VM and platform health for on prem VMs

    I would like to have guest windows azure VM agent for on prem VMs,, which will display the guest VM health like my other machines on azure.

    I would like have the VM insights functionality for on prem VMs like my machines on azure. I would like to have all vms monitoring under one thing rather then having different tool for on prem Vms.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)

    You can currently leverage Log analytics Agent to collect log data.

    Please refer to below documentation and see if that fits your scenario

    https://docs.microsoft.com/en-us/azure/azure-monitor/platform/log-analytics-agent

    https://docs.microsoft.com/en-us/azure/azure-monitor/learn/quick-collect-windows-computer

    https://docs.microsoft.com/en-us/azure/azure-monitor/platform/agent-windows

    Hope the above information helps

  10. monitor agent

    How to trigger an alert when a VM in Azure loses Agent connection to Azure?

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Alert Management Solution  ·  Flag idea as inappropriate…  ·  Admin →

    Thank you for your query, currently you should be able to run the query to get list of all known computers that didn’t send a heartbeat for certain time period. Can you please confirm if that’s not fitting your requirement and share additional details on your scenario so that team evaluate it accordingly.

  11. Allow a Kusto query to reveal update agent readiness and the compliance state for patch management / azure automation

    I would like to determine if we have machines that aren't reporting a ready state due to issue with monitoring agent or hybrid workers.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  12. Shared query link

    Log analytical query “ share link once opened goes to Getting Started page and until we click getting started button query explorer does not run the query. Is there a way to skip the getting started page when using link shared for query?

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  13. Add a way to keep Azure app insights logs to Local Time Permanently

    App insights Rest api using UTC time stamp by default. Please create a way to configure time like CST or EST based on requirement we can use in App insights

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Search UI and Language  ·  Flag idea as inappropriate…  ·  Admin →

    Thank you for your query, can you please help share more details on your scenario. Currently the feasibility to display in Local time or any other time zone, is that not helping your scenario. Just wanted to get more details on the scenario so that our team can evaluate accordingly.

  14. Deploying Log Analytics Workspaces in a non supported mapping region

    Hi there,
    Is it possible toot add a prompt when setting up a Workspace in a region that is typically not supported. Azure allows you to set up Log Analytics in any region without any warning that you could run into issues later on down the line.

    thanks

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →

    Thank you for your query, currently the Azure portal should show you only the regions it is available for. Are you saying that you able to pick up a region which is not currently available and still making it possible to run your though the creation via portal and call out at a later point that its not supported. Can you please share more details on your scenario so that we can best assist you.

  15. Currently the JSON log messages getting truncated and split inot multiple lines when its very long

    Currently we are facing an issue while analysing application logs. When the JSON log message is very long its getting into multiple lines. Our requirement is to get them in one line. Could you please help us fix this issue? Please let me know if you need any further informations?

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  16. Display Names instead of GUID's

    For some Log Analytics Entries, GUID's are showing instead of Display Names and identifying what is being leveraged. Are there plans to show Display Names instead of GUID?

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Microsoft
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base