Microsoft Azure – Enable Linux System Logs in Azure for Monitoring

Last Updated : 30 Mar, 2023
Log Analytics is an Azure service that collects and stores information/data from a set of different sources and we can use Log Analytics queries to retrieve records that match particular criteria, identify trends, analyze patterns, and provide a variety of insights into our data.  

Enable and Collect Linux Syslog from Log Analytics agents at custom intervals to gain insight into Emergency, Alert, Critical, and Error logs of systems and applications.


Follow the below steps to enable Linux system logs in Azure for monitoring:

Step 1: Log in to Azure Portal.

Step 2: Access the Log Analytics Workspace >> Select your Log Analytics.

Step 3: After selecting the select Log Analytics Workspace, Navigate to Settings >> Agents Configuration.

Step 4: Select Syslog >> Click on + Add facility >> Select the facility name

Step 5: After adding the required facility name and Enable the Emergency, Alert, Critical, and Error logs, then click on Apply to make the changes.

  • Collect Syslog data sources from supported facilities. 
  • Select the severity for each facility you want to collect. Only messages with the selected severities will be collected.

That’s it you are done.  Enabling Linux  system logs in Azure for monitoring is that simple. 

