Azure log analytics workspace retention

It provides links to other content for creating a transformation. Copy. Jul 5, 2023 · Want to save cost! Of course you do, in this video I'll show you how to manage retention in your log analytic workspaces. restoredLogs Restored Logs. This data is stored in tables as described in Structure of Azure Monitor Logs. Nov 17, 2022 · The Log Analytics REST API provides operations for managing the following resources. Select + New step to add an action that runs after the recurrence action. If you haven't created a Log Analytics workspace, see Create a Log Analytics workspace in the Azure portal. The NSG flow log is saved in an Azure storage account. Log Analytics workspace. For more information, see Log query scope and time range in Azure Monitor Log Analytics. Here is the sample request & body of the Rest API : Mar 31, 2024 · Send to Log Analytics. Aug 30, 2023 · Ingestion is priced at $2. This article provides an overview of concepts related to Log Jun 7, 2020 · Let’s also refresh the data retention definition: the retention represents how long (the amount of time in days ) data is kept inside an Azure Log Analytics workspace (see Change the data retention period paragraph in the Manage usage and costs with Azure Monitor Logs article). In this module, you learn how to create and configure access to a Log Analytics workspace. Retention is priced at $0. Configure Terraform: If you haven't already done so, configure Terraform using one of the following options: Oct 11, 2023 · Retention policies define when to remove or archive data in a Log Analytics workspace. . To set a table's log data plan, you must have at least contributor rights. You can create multiple workspaces to organize data from different sources, or to use different data retention and access policies. The data is organized in tabs. Select Azure Log Analytics – Run query and list The Azure Monitor pricing model is primarily based on the amount of data that's ingested per day into your Log Analytics workspace. Monitor tracks the status of IT assets and sends alerts when needed. In order to configure your Data Retention, you will want to navigate to “Usage and estimated costs” and then “Data Retention. Dec 28, 2023 · If you start Log Analytics from the Azure Monitor menu or the Log Analytics workspaces menu, you'll have access to all the records in a workspace. Select Network Watcher from the search results. Jan 30, 2024 · Within Azure Monitor, set your Log Analytics Workspace retention period according to your organization's compliance regulations. 10 in month 2, plus 60 GB * $. Under Choose an action, enter azure monitor. May 2, 2024 · Audit to Log Analytics destination. 2) From the Tables tab, select Search results to view all search job results tables, as shown in the figure below. Dec 27, 2022 · Instruct the system how to handle and charge the logs ingested to this table. May 26, 2021 · Overview at scale - You can launch Log Analytics Workspace Insights through Azure Monitor’s list of insights, which shows an overview of your workspace across the globe: or from the Workspace itself. How to configure retention policy for Azure Storage account logs. If you need to keep the data more than that, you can make use of Data Export feature that will allow you to export data from specific / all tables to an Azure Storage Sep 13, 2022 · By default, a Log Analytics workspace has a retention period of 30 days. Select Apr 13, 2023 · In the Azure portal, go to your Azure Bastion resource and select Diagnostics settings from the Azure Bastion page. If you select Logs from an Azure resource's menu, the scope is set to only records from that resource. "Analytics" "Basic" restoredLogs: Parameters of the restore operation that initiated this table. Nov 9, 2023 · End-to-end automation on how logs from Log Analytics workspace can easily be migrated into long-term storage using Azure Data Explorer (ADX) to comply with. Before enabling Container Insights, estimate costs and understand how to control data ingestion and its costs. . Each type of agent collects log data for Azure Monitor. See detailed instructions here. Oct 4, 2022 · In this article, log data refers to data sent to a Log Analytics workspace, while application data refers to data collected by Application Insights. In most cases discussing the default global settings of: 31 days for Log Analytics; 90 days for Application Insights; 90 days for an Azure Sentinel linked workspace Feb 5, 2024 · Log queries can experience excessive overhead when data spans Log Analytics workspaces in multiple Azure regions. Manage Log Analytics workspaces. Learn more about Azure Monitor logs pricing options. On the Usage and estimated costs page, click Data Retention from the top of the page. 10/GB/month after the first month, so if you want to retain for 6 months, and you ingest at 1GB/day, it's 30GB * $. Oct 25, 2023 · It provides a practical solution for long-term data retention while optimizing both cost and management efforts. Dedicated cluster lets you use capability when ingestion from all linked workspaces combined meet commitment tier. Create or update saved searches. Cross resource queries: Maximum number of Application Insights resources and Log Analytics workspaces in a single query limited to 100. This step sets the initial scope to a Log Analytics workspace so that your query selects from all data in that workspace. Azure CLI. Navigate to Log Analytics Workspace > Table > Manage Table . These policies are important for managing the cost of storing data in the workspace, as well as for ensuring that you have access to the data you need when you need it. Create or update linked services. Send data from agents Mar 28, 2024 · With transformations in Azure Monitor, you can filter or modify incoming data before it's sent to a Log Analytics workspace. You are billed per GB of data exported from the Log Analytics Workspace. Select Diagnostics settings, then select +Add diagnostic setting to add a destination for the logs. To set or change the daily cap for a Log Analytics workspace in the Azure portal: From the Log Analytics workspaces menu, select your workspace, and then Usage and estimated costs. Exporting data via Diagnostic Settings is covered below in the Platform Logs section of this page. Jan 11, 2023 · 1. To see data for a longer time horizon, change the retention period of the Log Analytics workspace. Guest OS metrics collected by the Log Analytics agent: These performance counters are collected by the Log Analytics agent and sent to a Log Analytics workspace. ”. After exporting the data, you need to save, you can remove it from the workspace. This displays a list of each of the pricing tiers available for this workspace. Sep 27, 2022 · In Log Analytics, you can only retain the data for a maximum 7 years period: 2 years in the interactive retention (workspace retention) 5 extra years in the archive retention. May 23, 2024 · It provides a practical solution for long-term data retention while optimizing both cost and management efforts. 0: Deploy - Configure Log Analytics extension to be enabled on Windows virtual machine scale sets Aug 8, 2023 · Create a diagnostic setting to send resource logs to a Log Analytics workspace. You can specify the retention time (in days) using resource diagnostic settings. Opening LA Workspace Insights through Azure Monitor, first shows an overview of all your workspaces, across the globe: Overview at scale. Mar 13, 2024 · This article describes Azure Monitor's log data plans and explains how to configure the log data plan of the tables in your Log Analytics workspace. Use the name of your key vault to find its Mar 1, 2024 · Use Log Analytics workspace insights to track the health and performance of your Log Analytics workspaces, and create meaningful and actionable alerts to be proactively notified of operational issues. Select ON and then set the data volume limit in GB/day. This will bring up the following selection: As can be seen, you can increase the slider. Archive tier: Azure Log Analytics has expanded its retention capability from 2 years to 7 years. Create or update data sources. In Terraform - In the azurerm_log_analytics_workspace resource, set retention_in_days to a value greater than 90. However Data retained beyond the first 31 days will be charged per the data retention prices listed below. Feb 29, 2024 · The default retention period in Log Analytics is 90 days; Select Export Activity Logs to send the activity log to a Log Analytics workspace. You can monitor current and historical activities for SQL, Apache Spark, pipelines and triggers, and integration runtimes. Main features Oct 14, 2019 · While logged into the Azure Portal, go into your Log Analytics Workspace. Azure Log Analytics in Azure Monitor is best used for general real-time monitoring and analysis of Azure Front Door performance. Nov 1, 2023 · Determine whether to combine your operational data and your security data in the same Log Analytics workspace. Cross-resource query isn't supported in View Designer. Click Turn on diagnostics. Azure Data Explorer provides an underlying data platform that stores security logs for Log Analytics workspaces, Monitor, and Sentinel. The data retention period set. To set the default retention for your workspace, In the Azure portal, from your workspace, select Usage and estimated costs from the left pane. retentionInDays integer The table retention in days, between 4 and 730. schema Create a flow log and traffic analytics workspace. The Microsoft Sentinel solution for SAP® applications will be billed as an add-on charge after May 1, 2023 at $- per system ID (production SID only) per Apr 25, 2024 · By default, the data in a Log Analytics workspace is retained for 30 days. Nov 10, 2023 · This article describes how the integration between Log Analytics and Power BI works, and provides examples of how you can use Azure Log Analytics in your Power BI Premium subscription. Storage accounts are best used for scenarios when logs are stored for a longer duration and are reviewed when Jun 28, 2021 · With Azure Monitor pricing, you can evaluate and estimate how much your logging solution can end up being. Azure subscription: If you don't have an Azure subscription, create a free account before you begin. Select this option > Configure. These steps are necessary because Application Insights accesses telemetry across Application Insight resources, including Log Analytics workspaces, to provide complete end-to-end transaction May 2, 2024 · Azure Resource Manager. With workspace-based resources, Application Insights sends telemetry to a common Log Analytics workspace, providing full access to all the features of Log Analytics while keeping your application, infrastructure, and platform logs in a single consolidated location. Then, change the total retention policy for a table like SecurityEvents to archive 30 days of data. Select the Log Analytics workspace where logs you want logs stored, and then select OK. Under Monitoring, select Insights on the workspace menu. See Query limits for details. Review the estimated costs for each pricing tier. Choose a Log Analytics workspace. The Log Analytics workspace consists of tables, which you can configure to manage your data model and log-related costs. Log Analytics workspace insights provides a unified view of the usage, performance, health, agents, queries, and change log for all your workspaces. See Analyze usage in Log Analytics workspace for details on analyzing the data in your workspace to determine to source of any higher than expected usage and May 12, 2022 · Using the new Archiving, Basic Logs, and Retention Workbook. Or use these steps: In the Azure portal, select Log Analytics Workspaces. Setting this property to -1 will default to the workspace retention. Configure data retention and archiving. For more information on Log Analytics workspace retention, see Data retention and archive in Azure Monitor Logs . Detailed steps can be found here. Open Cloud Shell. Note: All prices explained are from East US. By default, all tables in your workspace inherit the workspace retention and have no archive. Apr 11, 2024 · az monitor log-analytics workspace table update --subscription ContosoSID --resource-group ContosoRG --workspace-name ContosoWorkspace --name Syslog --retention-time -1 --total-retention-time -1 Update-AzOperationalInsightsTable コマンドレットを使用して、テーブルの保持期間とアーカイブ期間を設定します。 Apr 7, 2024 · 1) From the Log Analytics workspace menu, select Logs. Select the Subscription and Log Analytics workspace. I can see an option to change the Table plan for few tables. Consider replicating above for multiple tables using below PowerShell commands. ; Send Application Insights telemetry to a common Log Analytics workspace. ; Allow you to access the latest features of Azure Monitor while keeping application, infrastructure, and platform logs in a consolidated location. From the action menu, select Manage counters. Use Azure Storage Accounts for long-term/archival storage. Out of the box, Microsoft Sentinel provides 90 days of data retention for free . Configure the retention and archive duration in Data retention settings section. Deploys the diagnostic settings for Azure Key Vault Managed HSM to stream to a regional Log Analytics workspace when any Azure Key Vault Managed HSM which is missing this diagnostic settings is created or updated. az monitor log-analytics workspace table create --resource-group MyResourceGroup --workspace-name MyWorkspace -n MyTable_CL --retention-time 45 --columns MyColumn1=string TimeGenerated=datetime. Jan 30, 2024 · To enable logging on a key vault, you'll need the resource ID of the key vault and the destination (Azure Storage or Log Analytics account). In your Log Analytics workspace, clear the inherit the workspace setting so the interactive retention period is fixed to 30 days. More specifically these features are built into Azure Log Analytics which is the data lake for Microsoft Sentinel. This data is only retained in the workspace for 8 days total. Enable collection of IIS logs from computers with the Windows agent installed. This article provides a basic description of transformations and how they're implemented. Cluster pricing model. To set up data retention, use one or both of these methods, depending on your use case: Configure data retention and archive for one or more tables (one table at a time) Mar 21, 2024 · The Microsoft SDL process is followed to ensure Log Analytics is up-to-date with the most recent advances in cryptographic protocols. Configure data retention for a Log Analytics workspace. Jun 7, 2020 · Usage and costs control: as per Manage usage and costs with Azure Monitor Logs article, by operating on the data retention you proactively monitor ingested data volume and storage growth, and define limits to control those associated costs. Azure Monitor includes functionality for the collection and analysis of log data (billed by data ingestion, retention, and export), monitoring of availability via web tests, export of platform logs data from Azure resources, collection of metrics, alerts, and notifications. Enter the following information: Windows performance counters : For each counter, change the Sample rate as desired. If you're using a workspace-based Application Insights resource, the information on log data applies. Configure pricing tier for the amount of data that each Log Analytics workspace typically collects. sku Property Map Apr 8, 2024 · Application Insights is billed through the Log Analytics workspace into which its log data ingested. The network access type for accessing Log Analytics ingestion. You can send the activity log from any single subscription to up to five workspaces. if you are using the between operator in the body of your restAPI , the value should be array of items. 3) The new search table is now ready with all the records that match the search query, as shown in the figure below. From the Data retention settings section you can set the retention policies for individual May 26, 2024 · A Log Analytics workspace lets you collect logs from Azure and non-Azure resources into one space for data analysis, use by other services, such as Sentinel, and to trigger alerts and actions, for example, using Azure Logic Apps. RestoredLogs: retentionInDays: The table retention in days, between 4 and 730. Dec 7, 2023 · After a workaround on your issue, I found that the retention period is set and cannot be changed for the "Azure Table" type, which includes the "ContainerLogs" table from Azure Monitor for containers. Configure your environment. Windows event logs : For each event, select the logs to collect. For these purposes, the default retention period for an Azure Log Analytics workspace suffices. az monitor log-analytics workspace delete [--force {0, 1, f, false, n, no, t, true, y, yes}] [--ids] [--name] Jun 17, 2020 · It is often that during my conversations with customers about Azure Monitor, Azure Security Center and Azure Sentinel, the topic of data retention comes up. azurerm_ log_ analytics_ cluster_ customer_ managed_ key azurerm_ log_ analytics_ data_ export_ rule azurerm_ log_ analytics_ datasource_ windows_ event Feb 23, 2022 · Basic ingestion tier: new pricing tier for Azure Log Analytics that allows for logs to be ingested at a lower cost. int: schema: Table Jul 23, 2021 · Azure Log Analytics workspace Data Retention cost. See pricing tiers documentation for details. The integration of Azure Monitor SCOM Managed Instance with Azure Log Analytics (LA) is a mechanism to synchronize the monitoring data from individual SCOM Managed Instances to the respective LA workspace with a predefined frequency, enabling retention and advanced user actions such as visualization and reporting. Then select Azure Monitor Logs. Select the Data Retention button and set the number of days to a value greater than 90. From the Log Analytics workspaces menu, select your workspace, and open Usage and estimated costs. Select the resources to move to the same destination subscription and resource group as the workspace. Locate the Log Analytics workspace you wish to work with. To recover the workspace, create it again with the same name, in the same subscription, resource group and location by calling the . In the Azure portal, search for and open Log Analytics workspaces. Features of Azure Monitor that are automatically enabled such as Jul 1, 2019 · If you are not using a free tier, you could change Log Analytics data retention settings up to 730 days. In the search box at the top of the portal, enter network watcher. public Network Access For Query String | "Enabled" | "Disabled" The network access type for accessing Log Analytics query. The Azure Monitor suite lets you collect, analyze, and act Navigate to Storage > Log Analytics. Now that we have both concepts refreshed and clear in mind, we May 16, 2022 · You can read here about the differences between Analytics and Basic Logs plans. Application Insights log-based metrics: Behind the scenes, log-based metrics translate into log queries. If you're using a classic Application Insights resource, the application data applies. On the Diagnostic settings page, provide the following Jun 26, 2023 · Today, we'll delve into Azure Log Analytics, a powerful service that turns logged data into real-time operational insights. If you want to use visualizations, monitoring and alerting for your logs, then choose this option. The following table summarizes the Basic and Analytics log Jan 5, 2021 · When you stream Azure AD logs to an Azure Log Analytics workspace, you might just do it to get an alert to notify when an additional person is assigned the Azure AD Global Administrator role or when an Azure AD emergency access account is used. The article describes the considerations and recommendations for customers preparing to deploy a workspace in Azure Monitor. In the Monitoring section of the sidebar, click the Diagnostic settings tab. Protect your Log Analytics workspace data from the unlikely event of a regional failure by continuously exporting to a geo-redundant storage (GRS) or geo-zone-redundant storage (GZRS) account. Retention and Archive Policies in Log Analytics Workspaces. Manage Log Analytics clusters. Anything above 31 days or lower are included Through Azure role-based access control, ensure the user only has access to the Log Analytics workspace the Application Insights resource is based on. Retention is calculated on the ingestion date for data, so if a workspace uses the default retention period, it means that Azure removes data from the workspace 30 days after its ingestion. The database is basically a workspace in Log Analytics terminology. On the Diagnostics settings page, select the type of storage account to be used for storing diagnostics logs. Manage Log Analytics workspace tables. Log in to the Azure portal as an Owner or Contributor for the Azure Databricks workspace and click your Azure Databricks Service resource. This script performs the following functions: Create a workspace. To understand your usage and estimate costs in Log Analytics, please refer to this documentation. Transformations are performed in Azure Monitor in the data Apr 21, 2024 · Ingest from Azure Event Hubs - Lets you ingest data directly from an event hub into a Log Analytics workspace. Their May 30, 2024 · Get sample workspace architectures for Microsoft Sentinel. Parameters of the restore operation that initiated this table. 1. Create a flow log for your network security group and enable traffic analytics. Here's a video on designing the proper structure for your Log Analytics workspace: ITOps Talk:Log Analytics workspace design deep dive. Log Analytics Dedicated Clusters use a commitment tier pricing model of at least 100 GB/day. Activity log data in a Log Analytics workspace is stored in a table called AzureActivity that you can retrieve with a Dec 28, 2023 · Open Log Analytics Workspace Insights from Azure Monitor (as previously explained). Create a Log Analytics workspace. Select Daily Cap at the top of the page. Archiving lets you keep older, less used data in your workspace at a reduced cost. To change the retention period, see Configure data retention and archive policies in Azure Monitor Logs. Create ADX cluster and database. DeployIfNotExists, Disabled: 1. Click Ok. This is primarily a recommendation to meet compliance for data retention, but can also be used to integrate the data with other Azure services and tools. Select the workspace. So, export the data from workspace to some file or folder. Get search job. Dec 1, 2023 · Send to Log Analytics: Sends the data to Azure Log Analytics. properties. Each workspace has its own data repository and configuration but might combine data from multiple services. Oct 24, 2023 · A Log Analytics workspace is a unique environment for log data from Azure Monitor and other Azure services, such as Microsoft Sentinel and Microsoft Defender for Cloud. The type of data that is collected depends on the configuration of your workspace and other features of Azure Monitor. Save them to a Storage Account for auditing or manual inspection. As valuable as this service is, optimizing its use is essential to avoid Mar 27, 2024 · Synapse Analytics monitoring options. For Azure Monitor Log Analytics, you are charged based on two things: How much data you ingest. Jun 5, 2024 · Diagnostic logs require the Premium plan. Azure storage - Retains diagnostic logs for policy audit, static analysis, or backup. This tutorial uses Azure Storage and Log Analytics. Under Logs, select Flow logs. Sentinel uses a Log Analytics workspace to store security logs and provide SIEM and SOAR solutions. 10 in month 4 = $9, plus 120 GB To use Log Analytics, you need to create a Log Analytics workspace in your Azure subscription. How long you retain your data. Select the workspace you wish to edit. The following sections describe 9 examples of how to use the resource and its parameters. The name is kept for 14 days and cannot be used for another workspace. The storage account does not have to be in the same subscription as the resource emitting logs as long as the user who configures Sep 19, 2023 · For logs sent to a Log Analytics workspace, retention is set for each table on the Tables page of your workspace. Log Analytics Data Export offers continuous streaming export of logs from your Log Analytics workspace to destinations such as Azure Storage and Event Hub. If you can't remember the name of your key vault, you can use the Azure CLI az keyvault list command, or the Azure PowerShell Get-AzKeyVault cmdlet, to find it. Select Data Retention at the top of the page. Oct 27, 2023 · Use Terraform to configure Azure Log Analytics Workspace. For more information on the listed issues and mitigation steps, see Monitor health of a Log Analytics workspace in Azure Monitor Oct 1, 2022 · Instruct the system how to handle and charge the logs ingested to this table. Retention for these metrics is 31 days and can be extended up to 2 years. Other regions’ prices may vary. Create or update storage insights. Jan 20, 2024 · To enable diagnostic logging, you'll need somewhere to store your log data. Apr 7, 2024 · See Azure Monitor Logs pricing details for details on how charges are calculated for data in a Log Analytics workspace and different configuration options to reduce your charges. 30/GB/day, so if you collect 1GB of logs daily, your monthly cost would be $57. To adjust the data retention period in Log Analytics, select Usage and estimated costs in the left navigation, then select Data retention, and then adjust the slider. To set the default workspace retention: From the Log Analytics workspaces menu in the Azure portal, select your workspace. 0. Steps 2 through 6 are documented in detail in this article: Ingest and query monitoring data in Azure Data Explorer. 10 = $6 in month 3, plus 90 GB * $. The tables used by resource logs depend on what type of collection the resource is using: Azure diagnostics: All data is written to the AzureDiagnostics table. Retention policies in a Log Analytics workspace determine when to remove or archive data. Nov 13, 2020 · Configure Log Analytics Data Export to Event Hub. Configure tables used for debugging, troubleshooting, and auditing as Basic Logs. Apr 24, 2024 · Support full integration between Application Insights and Log Analytics. 50. Open the Azure Portal and go to Log Analytics workspaces. Oct 31, 2023 · Open Log Analytics. Allowed values are per pricing plan. Compare the Basic and Analytics log data plans. Aug 30, 2022 · For tables with Table plan - Analytics has Interactive retention set to 30 days by default. You can collect and analyze metrics and logs for Azure Synapse Analytics built-in and serverless SQL pools, dedicated SQL pools, Azure Spark pools, and Data Explorer pools (preview). Create a new workspace, and enter the workspace details. Configure access to a Log Analytics Workspace. Jul 2, 2023 · The following sample script configures the workspace to collect multiple types of logs from virtual machines by using the Log Analytics agent. Under Overview, select Manage costs. To remove the workspace completely and release the name, use the --force flag. Archive to a storage account. On the Overview page, select change next to either Resource group or Subscription name. A new page opens with a list of resources related to the workspace. Or, choose an existing workspace from the list > OK. Configure diagnostics settings for your vaults Jun 11, 2024 · In this article. You can do this for the whole works It collects application logs from across the entire SAP system and then sends those logs to an Azure Monitor Log Analytics workspace in Microsoft Sentinel for continuous threat monitoring. Azure Monitor Application Insights workspace-based resources integrate Application Insights and Log Analytics. Use the following steps to change the pricing tier of your workspace using the Azure portal. Select a workspace to drill into. As you ingest data into your Azure Monitor Log Analytics workspace, it can be retained free of cost for up to the first 31 days. Dec 21, 2023 · Select Open recycle bin on the top left menu to open a page with workspaces in a soft-delete state that can be recovered. Jul 2, 2023 · You're prompted to select a tenant to grant access to the Log Analytics workspace with the account that the workflow will use to run the query. Sign in to the Azure portal. Permissions. The cost varies by the plan and retention periods you select. Back in February of 2022 several new features for Azure Monitor were released to support long term data retention, data search, data recovery and data ingestion. Step 0: Default approach to perform archival at a table level in Log Analytics Workspace. Deletes a workspace resource. Change the data retention period in Log Analytics. Configure Health Status Alerts for a Log Analytics workspace. If you select Logs from another type of resource, your data will be limited to log data for that resource. Select Usage and estimated costs in the left pane. Then select Recover to recover the workspace. Step 1: Fetch the tables on Which Archiving is Required using this KQL: search Mar 7, 2024 · Reduce long-term data retention costs with Azure Data Explorer or archived logs (preview) Microsoft Sentinel data retention is free for the first 90 days. The Workspace in Log Analytics can be configured in Terraform with the resource name azurerm_log_analytics_workspace. Generally, you could do the following things with diagnostic logs. Limit performance data retention on an Azure Sentinel connected workspace: This one is pretty common. Note. Read more details here . Mar 21, 2024 · In this article. 6: Monitor and review Logs Jan 18, 2022 · In our local environment , we have tried to purge the heartbeat table using the above shared Purge REST API of Azure Log Analytics workspace. retention In Days Number The workspace data retention in days. The default Pay-as-you-go Log Analytics pricing tier includes 5 GB per month of free data allowance per billing account. 2. To configure writing audit logs to a Log Analytics workspace, select Log Analytics and open Log Analytics details. Ex: AppTraces, AzureDiagnostics,ContainerLog, Open the Log Analytics workspaces menu and then select your workspace. Open the Log Analytics demo environment, or select Logs from the Azure Monitor menu in your subscription. Azure Log Analytics (LA) is a service within Azure Monitor which Power BI uses to save activity logs. A workspace is a logical container for data that is collected and analyzed by Log Analytics. ib eu dt ap ia pu en li ou jz