Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Overview

At all times, data enters Data is constantly entering your system's IT infrastructure from various sources. This data is of all types , including performance data and statistics, traps and alerts, log files, configurations, scripts and messages, and comes and arrives from various sources – your logs, folders, applications, network devices, database tables, and servers.

XpoLog XPLG indexes in real time all this data entering your system's IT infrastructure from various sources, and structures and normalizes all this data – both raw and rich, into a single database of a uniform a structured format.

XpoLog XPLG provides a search engine – XpoSearch, which enables you to conduct a search through this immense amount of data for anything that you like. This is done from Using the single XpoSearch search console, from which you interface, you can search all the logs in XpoLog XPLG Center (applications, servers, network devices, database tables, and more). 

Search Types

...

The Search provides two main types of searches:

    Initial search – a simple search
  • Simple search – initial search, using simple search syntax, which results in a list of matching events.

  • Complex search – an advanced search, using complex search syntax, which results in a summary table of matching events, or transactions.

  • Saved search - a search that was previously saved and is available for an immediate execution. Can be either simple or complex.

Search Stages

A search can be run in three stages:

  • Initial search

  • Refined search

  • Complex search 

  • Saved search

Initial Search

In the initial search, you enter into the search query a string of simple criteria for searching user enters a search query of simple criteria, and the search runs on all the event data. In this simple search, you can  the user can search the event data for a simple term or more than one term, perform run a Boolean search, a search with wildcards, or a comparison a column-based search.

The execution of the Running the search query returns a list of all matching events from all relevant logs (latest on top). In addition, XpoSearch returns a graphical view of the distribution of the matching events over time and per data source.You can refine this simple search by doing

Refined Search

The resulting events of a simple search can be minimized by refining the search results using either or both of the following methods:

  •  Performing a

    Filtered Search

    -

    filtering the resulting events according to the source of the event – logs, files, applications, or servers

    .Performing a Refined Search -

  • Analytics-based Search – adding one of the event data fields

    ,

    discovered during the simple search

    ,

    to the search criteria of the simple search

Complex Search

Complex search queries are used for performing used to perform advanced complex operations and reporting on the log events resulting from a simple search. Execution of  Running a complex search query results in a summary table, and can also be visualized as gadgets widgets in XpoLog DashboardsXPLG Dashboards.

Saved Search

Select a saved search from the saved searches list to execute it. A saved search is a prepared search that was saved in advance, and the system keeps selected time periods updated with results for an immediate view.