View the list of Log Analytics alerts in a Log Analytics group
View the list of all Log Analytics alerts in a Log Analytics group on the Alerts in group tab.
Before you begin
Role required: evt_mgmt_operator, or evt_mgmt_user, or evt_mgmt_admin
About this task
For a detailed description of Log Analytics groups and Log Analytics alerts, see Types of Health Log Analytics alerts.
Procedure
Use one of the following methods to view the list of Log Analytics alerts:
- While viewing a Log Analytics group on the Overview tab in the Operator Workspace, click View more in the Alerts in group section.
- While viewing a Log Analytics group in the Service Operations Workspace, click the Alerts in group tab to view the full list of alerts in the parent group for the alert.
| Number |
The number of the alert that appears in the list of alerts on the Operator Workspace dashboard.
To view detailed information for an alert on the Details tab, click the alert number. This field is automatically set. |
| Group | Type of group that the alert belongs to: a standalone Log Analytics alert or a Component-based alert. |
| Description | Anomalous pattern or metric that caused the alert to be generated. |
| Severity |
Severity value for the alert. The available values are:
|
| Priority group | Priority
group that indicates the order in which to resolve alerts. Choices are as
follows:
The priority group value is more important than severity alone. For example, a high priority and low severity alert should be addressed before a low priority and high severity alert. For information on how priority is calculated, see Alert priority. |
| State | Processing
state of the alert. A newly generated alert is in the Open
state. Other states are as follows:
|
| Configuration item | CI in the CMDB. The CI is applied to by the alert. |
| Node | Node field that is received in the log message. The event described in the log message occurred on this node. Often, the node is the name of the CI that is associated with the alert. For example, a computer name, IP address, FQDN, or MAC address. |
| Source | All Health Log Analytics alerts have the value Log Analytics in the Source column to indicate that the Health Log Analytics app generated the alert. |
| Metric name | Name of the metric whose anomalous behavior led to the alert. For example, the I/O request in the case that the I/O request took longer than 15000 ms to complete. |
| Updated | Most recent time when the alert information or state was updated. |