Log Analytics Articles

How Streams in Elastic Observability Simplifies Retention Management
Learn how Streams simplifies retention management in Elasticsearch with a unified view to monitor, visualize, and control data lifecycles using DSL or ILM.

Introducing Streams for Observability: Your first stop for investigations
Introducing Elastic Streams, an new AI observability feature that transforms logs from a noisy and expensive data source into a primary investigation signal.

Live logs and prosper: fixing a fundamental flaw in observability
Stop chasing symptoms. Learn how Streams, in Elastic Observability fixes the fundamental flaw in observability, using AI to proactively find the 'why' in your logs for faster resolution.

AI-driven incident response with logs: A technical deep dive in Elastic Observability
How Elastic combines ML anomaly detection, ES|QL, and the AI Assistant to accelerate incident response using logs.

Getting more from your logs with OpenTelemetry
Learn how to evolve beyond basic log ingest by leveraging OpenTelemetry for ingestion, structured logging, geographic enrichment, and ES|QL analytics. Transform raw log data into actionable intelligence with practical examples and proactive observability strategies.

Smarter Alerting Arrives with Faster Triage, Clearer Groupings, and Actionable Guidance
Exploring the latest enhancements in Elastic Stack alerting, including improved related alert grouping, linking dashboards to alert rules, and embedding investigation guides into alerts.

The observability gap: Why your monitoring strategy isn't ready for what's coming next
The increasing complexity of distributed applications and the observability data they generate creates challenges for SREs and IT Operations teams. Take a look at how you can close this observability gap with OpenTelemetry and the right strategy.

Serverless log analytics powered by Elasticsearch, in a new low priced tier
Elastic Observability Logs Essentials delivers cost-effective, hassle-free log analytics on Elastic Cloud Serverless. SREs can ingest, search, enrich, analyze, store, and act on logs without the operational overhead of managing the deployment.

Connecting the Dots: ES|QL Joins for Richer Observability Insights
Now in tech preview, ES|QL LOOKUP JOIN lets you enrich logs, metrics, and traces at query time no need to denormalize at ingest. Add deployment, infra, or business context dynamically, reduce storage, and accelerate root cause analysis in Elastic Obervability.

Dynamic workload discovery on Kubernetes now supported with EDOT Collector
Discover how Elastic's OpenTelemetry Collector leverages Kubernetes pod annotations providing dynamic workload discovery and improves automated metric and log collection for Kubernetes clusters.

Monitor your C++ Applications with Elastic APM
In this article we will be using the Opentelemetry CPP client to monitor C++ application within Elastic APM

Deploying Elastic Agent with Confluent Cloud's Elasticsearch Connector
Confluent Cloud users can now use the updated Elasticsearch Sink Connector with Elastic Agent and Elastic Integrations for a fully-managed and highly scalable data ingest architecture.