Essential KQL Queries for Azure with and without Log Analytics
Explains the power of Kusto Query Language (KQL) for fast data analysis in Azure, including use cases and integration with Azure Copilot.
Explains the power of Kusto Query Language (KQL) for fast data analysis in Azure, including use cases and integration with Azure Copilot.
A guide to deploying and using a custom Azure Local Deep Insights workbook for enhanced observability of guest VMs and cluster health.
A guide on using Terraform to configure diagnostic logging for Azure Virtual Desktop Hostpools and Workspaces to a Log Analytics Workspace.
Explains a common Terraform parsing error when copying Azure Log Analytics Workspace IDs and provides the case-sensitive solution.
An automated solution for centralized Azure budget tracking across subscriptions and management groups using PowerShell, Bicep, and Log Analytics.
Explains how to use Log Analytics queries to calculate and charge back billable data usage per subscription in a centralized Azure environment.
Explains two methods to create a used memory percentage metric for Windows Servers in Azure Monitor Log Analytics for effective alerting.
A technical guide on creating Azure Monitor alerts using Azure Resource Graph queries, covering managed identity setup and practical examples.
Azure Resource Graph can now be queried directly from Log Analytics, enabling new KQL capabilities and integration for alerts.
A guide to migrating from Classic Application Insights to the new Workspace-based model, covering the process, data merging, and alert reconfiguration.
Guide to identifying full or nearly full FSLogix user profiles in Azure Virtual Desktop/Citrix environments using Event Logs and Log Analytics queries.
A guide to monitoring Azure Key Vault certificate and secret expiration using Azure Monitor and Log Analytics, without needing Event Grid.
Explores challenges and solutions for setting up Azure alerts at scale, focusing on Log Analytics and host platform metrics for IaaS VMs.
A guide to creating data visualizations using KQL in Azure services like Sentinel and Log Analytics, with practical examples.
Using KQL queries to analyze Azure AD logs for better tenant management, covering users, service principals, and security.
Part 5 of a series for MSPs on using Azure Monitor to centrally collect metrics and logs from customer tenants for proactive management.
A guide to using KQL aggregation functions like count() and dcount() in Microsoft Sentinel/Log Analytics to summarize and analyze security alert data.
Explains the importance of automated alerts in IT operations, detailing a cycle for identifying symptoms, creating triggers, and improving incident response.
A guide to learning Azure Monitor Log Analytics with practical KQL query examples and a free demo resource.
Part 3 of a series on using PowerShell to execute a Kusto query against Azure Log Analytics and export activity log data to CSV.