Share via

difficulty in updating the Log Analytics Workspace (LAW) query for log search alerts

AzureSHSQuestion 0 Reputation points
2024-07-18T06:51:21.5266667+00:00

I am facing difficulties in updating the Log Analytics Workspace (LAW) query for log search alerts, specifically for over 200 alert rules that are based on custom log tables. The need to automate these updates arises from changes in your log aggregation setup, which alters some of the fields within the logs.

Azure Monitor
Azure Monitor

An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.

0 comments No comments

1 answer

Sort by: Most helpful
  1. AzureSHSAnswer 0 Reputation points
    2024-07-18T06:51:37.5333333+00:00

    Please try and see if you can use the 'az monitor scheduled-query update' command can be used to make the necessary updates to the alert rules. This approach was validated in a lab environment to ensure its effectiveness and to address any semantic/syntax errors.

    Was this answer helpful?

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.