Organizing log data
After you create a view of the logs, you can organize the log data to isolate problems. The following list identifies some of the ways that you can organize the data:
- Sort log records: For example, you can sort by time, component, and server name.
- Highlight log records: For example, you can highlight all error events in red or show all events from a specific component in blue. Highlighting is similar to filtering, but instead of eliminating data from a view, you can highlight the relevant information within the full list of events.
- Filter log records: You can narrow the scope of a problem and the data shown based on filter criteria. Examples of filter criteria include time stamps, severity, component, and server.
- Find log records: You can search for specific information in a log file. For example, you can search to see events related to interaction with a specific server or user.
For more information about how to organize the data, search the Log Analyzer online help for the “Analyzing log files” topic.