Log analytics provides provisions to generate alerts on the ingested data. It does so by running a pre-defined query composed of conditions on the incoming data. If it finds any or a group of records that falls within the ambit of the said query, it generates an alert. Log analytics provides a highly configurable environment for determining the conditions for generating alerts, time windows from which the query should return the records, time windows when the query should be executed, and action to be undertaken when the query returns results as alerts.
The first step in configuring an alert is to create a saved search. A saved search ...