difficulty in updating the Log Analytics Workspace (LAW) query for log search alerts

AzureSHSQuestion 0 Reputation points
2024-07-18T06:51:21.5266667+00:00

I am facing difficulties in updating the Log Analytics Workspace (LAW) query for log search alerts, specifically for over 200 alert rules that are based on custom log tables. The need to automate these updates arises from changes in your log aggregation setup, which alters some of the fields within the logs.

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
3,224 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. AzureSHSAnswer 0 Reputation points
    2024-07-18T06:51:37.5333333+00:00

    Please try and see if you can use the 'az monitor scheduled-query update' command can be used to make the necessary updates to the alert rules. This approach was validated in a lab environment to ensure its effectiveness and to address any semantic/syntax errors.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.