Friday, December 12, 2025

Configure a log analytics workspace to gather Window Server Occasion log, IIS and efficiency information.


Configuring Azure Monitor with Log Analytics for IIS Servers

Azure Monitor mixed with Log Analytics gives centralized telemetry assortment for efficiency metrics, occasion logs, and utility logs from Home windows-based workloads. This information demonstrates find out how to configure information assortment from IIS servers utilizing Information Assortment Guidelines (DCRs).

Create the Log Analytics Workspace

  1. Navigate to Log Analytics workspaces within the Azure portal
  2. Choose Create
  3. Select your useful resource group (e.g., Zava IIS useful resource group)
  4. Present a workspace title and choose your most well-liked area
  5. Choose Evaluation + Create, then Create

After deployment, configure RBAC permissions by assigning the Contributor position to customers or service principals that must work together with the workspace information.

Configure Information Assortment Infrastructure

Create a Information Assortment Endpoint:

  1. Navigate to Azure Monitor within the portal
  2. Choose Information Assortment Endpoints, then Create
  3. Specify the endpoint title, subscription, useful resource group, and area (match your Log Analytics workspace area)
  4. Create the endpoint

Create a Information Assortment Rule:

  1. Navigate to Information Assortment Guidelines and choose Create
  2. Present a rule title, useful resource group, and area
  3. Choose Home windows because the platform kind
  4. Select the information assortment endpoint created within the earlier step
  5. Skip the Sources tab initially (you will affiliate VMs later)

Configure Information Sources

Add three information supply sorts to seize complete telemetry:

Efficiency Counters:

  1. On the Acquire and Ship web page, choose Add information supply
  2. Select Efficiency Counters as the information supply kind
  3. Choose Fundamental for normal CPU, reminiscence, disk, and community metrics (or Customized for particular counters)
  4. Set the vacation spot to Azure Monitor Logs and choose your Log Analytics workspace

Home windows Occasion Logs:

  1. Add one other information supply and choose Home windows Occasion Logs
  2. Select Fundamental assortment mode
  3. Choose Utility, Safety, and System logs
  4. Configure severity filters (Essential, Error, Warning for Utility and System; Audit Success for Safety)
  5. Specify the identical Log Analytics workspace because the vacation spot

IIS Logs:

  1. Add a remaining information supply for Web Data Companies logs
  2. Settle for the default IIS log file paths or customise as wanted
  3. Set the vacation spot to your Log Analytics workspace

After configuring all information sources, choose Evaluation + Create, then Create the information assortment rule.

Affiliate Sources

  1. Navigate to your newly created Information Assortment Rule
  2. Choose Sources from the rule properties
  3. Click on Add and choose your IIS servers (e.g., zava-iis1, zava-iis2)
  4. Return to Information Assortment Endpoints
  5. Choose your endpoint and add the identical IIS servers as sources

This two-step affiliation ensures correct routing of telemetry information.

Question Collected Information

After permitting time for information assortment, question the telemetry:

  1. Navigate to your Log Analytics workspace
  2. Choose Logs to open the question editor
  3. Browse predefined queries below Digital Machines
  4. Run the “What information has been collected” question to view efficiency counters, community metrics, and reminiscence information
  5. Entry Insights to observe information ingestion volumes

You’ll be able to create customized KQL queries to research particular occasions, efficiency patterns, or IIS log entries throughout your monitored infrastructure.

Discover out extra at: https://be taught.microsoft.com/en-us/azure/azure-monitor/fundamentals/overview

Related Articles

Latest Articles