Configure a log analytics workspace to gather Window Server Occasion log, IIS and efficiency information.


Configuring Azure Monitor with Log Analytics for IIS Servers

Azure Monitor mixed with Log Analytics gives centralized telemetry assortment for efficiency metrics, occasion logs, and software logs from Home windows-based workloads. This information demonstrates learn how to configure information assortment from IIS servers utilizing Information Assortment Guidelines (DCRs).

Create the Log Analytics Workspace

  1. Navigate to Log Analytics workspaces within the Azure portal
  2. Choose Create
  3. Select your useful resource group (e.g., Zava IIS useful resource group)
  4. Present a workspace identify and choose your most well-liked area
  5. Choose Evaluate + Create, then Create

After deployment, configure RBAC permissions by assigning the Contributor position to customers or service principals that must work together with the workspace information.

Configure Information Assortment Infrastructure

Create a Information Assortment Endpoint:

  1. Navigate to Azure Monitor within the portal
  2. Choose Information Assortment Endpoints, then Create
  3. Specify the endpoint identify, subscription, useful resource group, and area (match your Log Analytics workspace area)
  4. Create the endpoint

Create a Information Assortment Rule:

  1. Navigate to Information Assortment Guidelines and choose Create
  2. Present a rule identify, useful resource group, and area
  3. Choose Home windows because the platform kind
  4. Select the information assortment endpoint created within the earlier step
  5. Skip the Sources tab initially (you may affiliate VMs later)

Configure Information Sources

Add three information supply varieties to seize complete telemetry:

Efficiency Counters:

  1. On the Gather and Ship web page, choose Add information supply
  2. Select Efficiency Counters as the information supply kind
  3. Choose Fundamental for traditional CPU, reminiscence, disk, and community metrics (or Customized for particular counters)
  4. Set the vacation spot to Azure Monitor Logs and choose your Log Analytics workspace

Home windows Occasion Logs:

  1. Add one other information supply and choose Home windows Occasion Logs
  2. Select Fundamental assortment mode
  3. Choose Software, Safety, and System logs
  4. Configure severity filters (Important, Error, Warning for Software and System; Audit Success for Safety)
  5. Specify the identical Log Analytics workspace because the vacation spot

IIS Logs:

  1. Add a remaining information supply for Web Data Providers logs
  2. Settle for the default IIS log file paths or customise as wanted
  3. Set the vacation spot to your Log Analytics workspace

After configuring all information sources, choose Evaluate + Create, then Create the information assortment rule.

Affiliate Sources

  1. Navigate to your newly created Information Assortment Rule
  2. Choose Sources from the rule properties
  3. Click on Add and choose your IIS servers (e.g., zava-iis1, zava-iis2)
  4. Return to Information Assortment Endpoints
  5. Choose your endpoint and add the identical IIS servers as sources

This two-step affiliation ensures correct routing of telemetry information.

Question Collected Information

After permitting time for information assortment, question the telemetry:

  1. Navigate to your Log Analytics workspace
  2. Choose Logs to open the question editor
  3. Browse predefined queries below Digital Machines
  4. Run the “What information has been collected” question to view efficiency counters, community metrics, and reminiscence information
  5. Entry Insights to watch information ingestion volumes

You possibly can create customized KQL queries to research particular occasions, efficiency patterns, or IIS log entries throughout your monitored infrastructure.

Discover out extra at: https://be taught.microsoft.com/en-us/azure/azure-monitor/fundamentals/overview

Related Articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles