Logging Analytics

Oracle Cloud Infrastructure (OCI) Logging Analytics provides machine learning–powered analytical insights, proactive alerts, and consolidated dashboards from logs across an entire IT environment.

Fivos Health enhances security and patient outcomes with Oracle Cloud (3:01)

OCI Logging Analytics customer stories

See all customer stories

OCI Logging Analytics capabilities

ML-based insights

Rapidly troubleshoot issues.

Agile application development that can deliver new features and capabilities to customers requires IT operations and DevOps organizations to sift through huge volumes of log data for troubleshooting problems. The advanced machine learning (ML) capabilities of OCI Logging Analytics make it easy to quickly narrow down the log data to root causes.

Unified monitoring dashboards

Intuitive and flexible customization capabilities provide visibility for all stakeholders.

The efficiency and predictability of business operations depend on visibility into expansive IT systems and operations. OCI Logging Analytics enables all stakeholders, from developers to executives, to create and customize dashboards to suit their needs. Dashboards provide intuitive, flexible customization capabilities and provide deep operational insights for IT and business teams.

Deep log enrichment

Easily add meaning and context to log entries. Protect sensitive log data.

IT infrastructure and business applications are growing at an ever-increasing rate, requiring IT teams to monitor their health in a reliable and scalable way to help ensure the highest level of customer satisfaction. OCI Logging Analytics includes more than 250 prebuilt parsers, geolocation enrichment, data masking, and flexible data storage for active and archival use cases.

End-to-end monitoring solutions

Turnkey solutions eliminate the need for customization.

Comprehensive monitoring support is provided for Oracle E-Business Suite, Oracle Database, OCI Kubernetes Engine, OCI audit logs, and other OCI services.

A variety of ingestion methods

Versatile log ingestion methods and source support help align your log ingestion strategy with your organization’s needs.

  • Containerized agent, Fluentd, Fluent Bit
  • Management agent
  • OCI service connector, streaming
  • SQL and Syslog-based collection
  • OCI Object Storage
  • APIs/SDKs
  • Out-of-box understanding of log location and type of collection
  • Automatically classify logs into commonly known/used error categories
  • One-touch log ingestion with Oracle Enterprise Manager integration

Application troubleshooting

OCI Logging Analytics is designed to ease the troubleshooting of modern application architectures, which are distributed and elastic. Troubleshooting effort is reduced by enabling DevOps teams to keep up with dynamic application topologies and quickly explore relevant logs pertaining to affected environments and the time of the incident under investigation. Curated ML-based analytics and visualizations help identify log patterns for outliers and eliminate the need to manually browse through thousands of logs containing millions of log entries.

Application troubleshooting technical diagram, description below
This image shows the functional view of how OCI Logging Analytics uses management agents to monitor Oracle Cloud Infrastructure. The region provides the following services, and data is passed between these services by using a secure and encrypted transport layer.
  1. Auditing
  2. Logging: Data collected by the OCI Logging service is passed to the service connector hub.
  3. Service connector hub: Data is passed to the OCI Logging Analytics service.
  4. Logging Analytics: Server production log data and data provided through the Service Connector Hub is passed to OCI Logging Analytics. The service can initiate notifications and alarms and can be accessed by external web clients (DBA, IT admins, DevOps) using the secure and encrypted transport layer.
  5. Notifications
  6. Alarms
The virtual cloud network (VCN) provides the following gateways:
  1. Dynamic routing gateway (DRG): Provides private connectivity using a site-to-site VPN for customer remote access.
  2. Internet gateway: Provides communication between public subnets and internet hosts.
  3. Service gateway: VCNs communicate with services, such as object storage, over the Oracle network fabric without traversing the internet.

The VCN provides three subnets in availability domain 1 arranged as functional tiers and two subnets in availability domain 2 for redundancy. Virtual routing between the primary and redundancy subnets is built into the VCN and is shown as connecting lines between the web server and database server tiers.

  1. OCI Load Balancer tier (public subnet 1): Handles incoming traffic and connects to the web server tier. Log data passes to the OCI Logging service using a secure and encrypted transport layer.
  2. Web servers tier (public subnet 2): Two web servers are shown, each hosting a logging management agent. Log data passes through the service gateway to the OCI Logging Analytics service. A similar configuration exists in public subnet 3 in availability domain 2 for redundancy.
  3. Database servers tier (private subnet 1): Two database servers are shown, each hosting a logging management agent. Log data passes through the service gateway to the OCI Logging Analytics service. A similar configuration exists in private subnet 2 in availability domain 2 for redundancy.


Security posture management

A single pane of glass provides security monitoring and analytics. The solution provides out-of-the-box security data sources and parsers to simplify ingesting of structured and unstructured security data and events. Data enrichment is applied for additional context and business relevance. The analytical rules engine automatically identifies patterns from the sequence of events and fingerprints them for risk analysis. The solution is integrated with Oracle Cloud Guard to help detect misconfigured resources, unsecure activity across tenants, and malicious threat activities. Integration with Oracle Threat Intelligence Service offers information about known threat indicators, suspicious IP addresses, domain names, and digital fingerprints.

Security posture management technical diagram, description below

The image shows an Oracle Cloud Infrastructure region containing an OCI compartment. Nested within the compartment is a virtual cloud network (VCN), within which is nested an OCI subnet. In addition to the compartment, the region also contains instances of OCI Oracle Object Storage, the OCI Logging Analytics service, and a vault. Within the compartment but external to the VCN is a health check process. Within the VCN's subnet are an API gateway and an instance of OCI Functions. External to the region is an instance of Oracle Identity Cloud Service.



Cloud native applications monitoring

A turnkey Kubernetes monitoring and management solution enables DevOps, cloud administrators, developers, and system administrators to continuously monitor health and performance, troubleshoot issues and identify their root causes, optimize an IT environment based on long-term data, and identify configuration and security issues.

Cloud native applications monitoring technical diagram, description below

This image illustrates Kubernetes in an on-premises data center and in OCI; it’s further described in the surrounding text.

The on-premises or third-party cloud has an OCI Kubernetes Engine (OKE) API server, which has a Kubernetes cluster with user pods, control plane services and pods, Kubernetes system pods, node OS services, and log and object collectors pods. Information flows from the log and object collectors pods through the internet to OCI Logging Analytics in a compartment in an OCI region.

The OCI region has a compartment and a VCN with subnet A and subnet B. OCI Logging Analytics sends information to notifications and alarms. Service and audit logs and OCI services send information through the service connector to OCI Logging Analytics.

Subnet A contains a load balancer. Subnet B contains an OCI Kubernetes Engine API server and OKE node pool with user pods, Kubernetes system pods, node OS services, and log and object collectors pods.



Get started with OCI Logging Analytics

Try Always Free Services and get a 30-day trial

Oracle offers a Free Tier with no time limits on key observability services, in addition to a wide selection of other services, as well as US$300 in free credits to try additional cloud services not included in the Free Tier. Get the details and sign up for your free account today.

  • What’s included with Oracle Cloud Free Tier?

    • Always Free Services
    • Two Autonomous Database instances, 20 GB each
    • Compute VMs
    • 100 GB block volume
    • 10 GB object storage
    • Additional services

Learn with a hands-on lab

The best way to learn is to try it yourself. Use our tutorials and hands-on labs with Oracle Cloud Free Tier, your own Oracle Cloud tenancy, or an Oracle-provided free lab environment for selected solutions.

Blogs

Read our latest blog posts on OCI Logging Analytics best practices, new features, and technical deep-dive discussions.

Documentation

Use our documentation to learn about the OCI Logging Analytics architecture, key features, how to get started, and more.

Contact sales

Contact an expert for more information about OCI Logging Analytics.