Best practices to query logs

Anonymous
Not applicable

We dump our logs in S3 currently. Can you give us best practices to make these logs easier to query?

User16783855117
Databricks Employee
Databricks Employee
If you mean Databricks Audit Logs, you can see example code for easy querying/integration here!
https://docs.databricks.com/administration-guide/account-settings/audit-logs.html#analyze-audit-logs

View solution in original post

sajith_appukutt
Databricks Employee
Databricks Employee
And if it is generic logs which gets landed on S3 , it'd be worth taking a look at Autoloader. Here is a blog post on processing crowdstrike logs in a similar way