Navigating through the Logs page
The Logs page is where you can see a listing of all the logs that belong to your instance, view some existing queries, write your own queries, view the results, and much more. Let's explore this page.
To get to the Logs page, select Logs from the Azure Sentinel navigation section. This will open the following page:
The page is broken down into different sections, such as the following:
- The page header
- The Tables pane
- The Filter pane
- The KQL code window
- The sample queries/results window
These sections can be seen in the following screenshot:
Let's describe each of these sections in more detail.
The page header
The page header is located at the top of the page and contains useful links, including for the sample queries, the query explorer, settings, and help...