---
sourceDocument: Yokohama IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/it-operations-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Storage space for log retention in Health Log Analytics

# Storage space for log retention in Health Log Analytics {#ariaid-title1}

* Release version: Yokohama
* 
* Updated January 30, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

The Health Log Analytics base system typically provides 1,000 GB storage
space for log source retention, although the storage capacity may vary depending on your
license. The default retention time for logs is three days, but you can modify that
period.

This feature is supported in the Health Log Analytics application, Version 22.0.12 - December 2021 and later, available from the [ServiceNow Store](https://store.servicenow.com/sn_appstore_store.do#!/store/home). To activate it, contact your ServiceNow account manager or ServiceNow Support.

When the storage space used by all log sources exceeds 80 percent of the total, you receive an email notification. You can change the default threshold percentage by modifying the
sn_occ.elastic_storage.utilization_limit.percent system property in the
System Properties table.

## Automatic reduction of log retention days {#hla-log-retention-space__section_dp4_11v_prb}

By default, logs are retained for three days. You can adjust this period to 3, 7, 14, or 30
days. For more information, see [Modify the log source retention period](https://servicenow-prod.fluidtopics.net/PK5hIt5Yc7kAvuk0O4Jl~w "Modify the period that Health Log Analytics retains logs from a specific source. You can calculate the impact of your intended change on storage to help you make an informed decision.").

If the storage space used by all log sources reaches 100 percent, the number of retention
days allocated per source is automatically lowered by one level and you receive an email
notification with the specifics. The automatic reduction process starts with the sources
that were allocated the highest number of retention days. For example, for a source with 30
retention days, the number is reduced to 14. If the source has 14 retention days, the number
is reduced to 7, and so on.

You can change the threshold percentage for the automatic reduction of log retention days by modifying the sn_occ.log_retention.automatic_reduction_utilization_percent system
property in the System Properties table.
* **[Modify the log source retention period](https://servicenow-prod.fluidtopics.net/PK5hIt5Yc7kAvuk0O4Jl~w)**   
  Modify the period that Health Log Analytics retains logs from a specific source. You can calculate the impact of your intended change on storage to help you make an informed decision.

**Related tasks**   

* [Modify the log source retention period](https://servicenow-prod.fluidtopics.net/PK5hIt5Yc7kAvuk0O4Jl~w "Modify the period that Health Log Analytics retains logs from a specific source. You can calculate the impact of your intended change on storage to help you make an informed decision.")

