Organizing log data

After you create a view of the logs, you can organize the log data to isolate problems. The following list identifies some of the ways that you can organize the data:

  • Sort log records: For example, you can sort by time, component, and server name.
  • Highlight log records: For example, you can highlight all error events in red or show all events from a specific component in blue. Highlighting is similar to filtering, but instead of eliminating data from a view, you can highlight the relevant information within the full list of events.
  • Filter log records: You can narrow the scope of a problem and the data shown based on filter criteria. Examples of filter criteria include time stamps, severity, component, and server.
  • Find log records: You can search for specific information in a log file. For example, you can search to see events related to interaction with a specific server or user.

For more information about how to organize the data, search the Log Analyzer online help for the “Analyzing log files” topic.