B Log Queries: Quick Reference
Here are some examples about how to phrase Search queries.
Search queries can be grouped as
Reporting Queries
Requirement | Query |
---|---|
Return count of logs grouped by entity type, severity. |
|
Return time series for count of fatal logs. |
|
Return the top 5 entities and their type with fatal logs. |
|
Return the top 50 distinct entities as well as the count of logs for each of those entities. |
|
Grouping Queries
Requirement | Query |
---|---|
Perform cluster analysis on fatal logs and save it in a collection called “Fatal logs”. |
|
Return the fatal logs that were included in summary ID 10002000002 and 10032000002 in the collection ‘Fatal logs’. |
|
Filtering Queries
Requirement | Query |
---|---|
Return logs that do not contain 404 in their raw text. |
|
Return logs that contain FAIL in their raw text or have a fatal severity. |
|