> ## Documentation Index
> The index for all IBM Cloud docs is at: https://cloud.ibm.com/docs/llms.txt
> Use these files to discover more information as needed.

# IBM Cloud Logs

IBM Cloud Logs is a scalable logging service that persists logs and provides users with capabilities for querying, tailing, and visualizing logs.

## Get started

- [Getting started with IBM Cloud Logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-getting-started&format=markdown)
- About IBM Cloud Logs
   - [Features](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-about-cl&format=markdown)
   - [Metadata fields](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-metadata&format=markdown)
- About the Logging agent
   - [About the Logging agent](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-about&format=markdown)
   - [Supported agent versions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-supported-versions&format=markdown)
   - [Agent support policy](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-support-policy&format=markdown)
   - [Fluent Bit plug-ins supported](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-plugin-support&format=markdown)
- Observability telemetry
   - [Activity tracking events](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cl-at-events&format=markdown)
   - [Platform logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cl-platform-logs&format=markdown)
   - [Operational logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cl-operational-logs&format=markdown)
- Release notes
   - [Release notes](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-logs-release-notes&format=markdown)
   - [Logging agent release notes](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-release-notes-agent&format=markdown)
   - [Log Analysis and Activity Tracker users](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-atla&format=markdown)
   - [Notifications about functional changes](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-releasenotes_notif&format=markdown)

## Tutorials

- [Send IBM Cloud Kubernetes Service log data to IBM Cloud Logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-kube2logs&format=markdown)
- [Restricting access from a network zone](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-cbr-tutorial&format=markdown)
- [Restricting access to integrated services](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-cbr-tutorial-integrated-services&format=markdown)
- [Multiline parsing for Log4j (orchestrated)](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-multiline-log4j-helm&format=markdown)
- [Multiline parsing for Log4j (non-orchestrated)](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-multiline-log4j&format=markdown)
- [Multiline parsing for Winston (orchestrated)](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-multiline-winston-helm&format=markdown)
- [Multiline parsing for Winston (non-orchestrated)](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-multiline-winston&format=markdown)
- [Creating new index fields from non-JSON logs](https://community.ibm.com/community/user/blogs/marisa-lopez-de-silanes/2025/03/17/creating-indexed-fields-1)

## How to

- Enhancing security
   - [Architecture and workload isolation](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-compute-isolation&format=markdown)
   - [Using virtual private endpoints](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-vpe-connection&format=markdown)
   - [CSE proxy endpoints](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cse_proxy&format=markdown)
   - [Data security](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-mng-data&format=markdown)
   - [Protecting resources with context-based restrictions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-cbr&format=markdown)
- Managing access
   - [Getting started with IAM](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam&format=markdown)
   - [Granting service access](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-assign-access&format=markdown)
   - [Granting permissions for ingestion](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-ingestion-permissions&format=markdown)
   - [Generating a Trusted Profile for ingestion](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-ingestion-trusted-profile&format=markdown)
   - [Generating a service ID API Key for ingestion](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-ingestion-serviceid-api-key&format=markdown)
   - [Verifying the service ID API Key for ingestion](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-verify-key&format=markdown)
   - [IAM actions by role](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-actions&format=markdown)
   - [Required permissions to work with views](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-views&format=markdown)
   - [Managing custom roles](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-custom-roles&format=markdown)
   - [Data access rules](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-data-access-rules&format=markdown)
   - [Access reports](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-access-report&format=markdown)
   - S2S authorizations
      - [Managing authorizations](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-service-auth&format=markdown)
      - [S2S for Cloud Object Storage](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-service-auth-cos&format=markdown)
      - [Cross-account S2S for Cloud Object Storage](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-service-auth-cos-crossacc&format=markdown)
      - [S2S for Logs Routing](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-service-auth-logs-routing&format=markdown)
      - [S2S for Activity Tracker Event Routing](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-service-auth-atracker&format=markdown)
      - [S2S for Event Notification](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-service-auth-en&format=markdown)
      - [S2S for Event Streams](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-service-auth-es&format=markdown)
      - [Removing authorizations](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-iam-service-auth-remove-auth&format=markdown)
- Managing instances
   - [Provisioning an instance](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-instance-provision&format=markdown)
   - [Managing instances in the Observability UI](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-observe&format=markdown)
   - [Deleting an instance](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-instance-remove&format=markdown)
   - [Recovering a deleted instance](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-instance-reclaim&format=markdown)
   - [Using Terraform](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-terraform-setup&format=markdown)
- [Configuring your account preferences](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-account_preferences&format=markdown)
- Managing COS buckets
   - [About buckets](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-about-bucket&format=markdown)
   - [Managing buckets](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cos&format=markdown)
   - [Configuring the data bucket](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-configure-data-bucket&format=markdown)
   - [Configuring the metrics bucket](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-configure-metrics-bucket&format=markdown)
   - [Configuring retention tags to manage data retention](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-retention-tags&format=markdown)
- TCO Optimizer
   - [Configuring the TCO Optimizer](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-tco-optimizer&format=markdown)
   - [Policy processing order](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-tco-optimizer-ordering&format=markdown)
- [Launching the UI](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-instance-launch&format=markdown)
- Working with parsing rules
   - [Parsing rules](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-log_parsing_rules&format=markdown)
   - [Working with rule groups](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-rules_groups&format=markdown)
   - [Working with severity rules](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-severity&format=markdown)
   - [Building RegEx expressions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-rules-regex&format=markdown)
   - [Converting unstructured text into JSON](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-rule&format=markdown)
   - [Creating new fields](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-extract-rule&format=markdown)
   - [Modifying a metadata field](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-extract-value-to-metadata-field&format=markdown)
   - [Replacing the timestamp of logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-replace-timestamp&format=markdown)
   - [Fixing log data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-replace-rule&format=markdown)
   - [Blocking log data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-block-rule&format=markdown)
   - [Removing fields from logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-remove-rule&format=markdown)
   - [Reduce the amount of indexed fields](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-convert-to-json-string&format=markdown)
   - [Transform escaped or stringified logs to JSON format](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-parse-convert-to-json-object&format=markdown)
- Enriching data
   - [Enriching data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-enriching-data&format=markdown)
   - [Configuring custom enrichments](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-enrich-howto&format=markdown)
- Querying data
   - [Querying data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-data&format=markdown)
   - [Using Livetail](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-livetail&format=markdown)
   - [Filtering data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-data-filter&format=markdown)
   - [Indexing and field mapping](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-indexing_mapping&format=markdown)
   - [Daily index limit considerations](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-priority-insight-index-limits&format=markdown)
   - [Managing data mapping exceptions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-mapping-exceptions&format=markdown)
   - [Using benchmark tags](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-benchmarks&format=markdown)
   - [Querying data by using regex](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-regex&format=markdown)
   - [Querying data by using Lucene](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-data-lucene&format=markdown)
   - [Specifying a time interval](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-data-time&format=markdown)
   - [Limitations when querying data through the Logs page](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query_limitations&format=markdown)
   - Dataprime
      - [Querying data by using DataPrime](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-data-dataprime&format=markdown)
      - [Using query parameters in your DataPrime queries](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-parameters&format=markdown)
      - [DataPrime expressions and constructs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-expressions&format=markdown)
      - [DataPrime operators](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-operators&format=markdown)
      - [DataPrime text search text search operators](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-operators-text-search&format=markdown)
      - [DataPrime aggregation expressions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-expressions-agg&format=markdown)
      - [DataPrime case expressions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-expressions-case&format=markdown)
      - [DataPrime general functions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-expressions-gral-func&format=markdown)
      - [DataPrime number functions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-number-func&format=markdown)
      - [DataPrime: URL decoding / encoding](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-url-func&format=markdown)
      - [DataPrime string functions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-str-func&format=markdown)
      - [DataPrime array functions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-array&format=markdown)
      - [DataPrime IP functions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-ip-func&format=markdown)
      - [DataPrime UUID functions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-uuid-func&format=markdown)
      - [DataPrime date / time functions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-date-time-func&format=markdown)
      - [DataPrime encoding / decoding functions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dataprime-ref-encode-func&format=markdown)
- [Pipeline analyzer](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-pipeline-analyzer&format=markdown)
- Schema Manager
   - [Schema manager](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-schema-manager&format=markdown)
   - [Schema explorer](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-schema-explorer&format=markdown)
   - [Reserved fields](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-reserved-fields&format=markdown)
- Managing custom views
   - [Managing custom views](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-custom_views&format=markdown)
   - [Managing default views](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-custom_views_default&format=markdown)
   - [Using views as templates](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-custom_views_templates&format=markdown)
   - [Compact views](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-compact-views&format=markdown)
   - [Log details](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-log-details&format=markdown)
   - [Using actions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-actions&format=markdown)
   - [Sharing URLs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-share_url&format=markdown)
- Managing dashboards
   - [Dashboards](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-about_dashboards&format=markdown)
   - [Managing custom dashboards](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-create_dashboards&format=markdown)
   - [Using Visual Explorer](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-visual-explorer&format=markdown)
   - [Query Builder](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_query_bulder&format=markdown)
   - [Creating and managing variables](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-variables&format=markdown)
   - Creating widgets
      - [Data table](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_datatable&format=markdown)
      - [Dynamic](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_dynamic&format=markdown)
      - [Gauge](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_gauge&format=markdown)
      - [Geomap](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_geo_map&format=markdown)
      - [Heatmap](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_heatmap&format=markdown)
      - [Horizontal bar](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_horizontalbar&format=markdown)
      - [Line chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_linechart&format=markdown)
      - [Pie chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_piechart&format=markdown)
      - [Vertical bar](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_verticalbar&format=markdown)
      - [Markdown](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_markdown&format=markdown)
      - [DataPrime creator](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_dataprime&format=markdown)
      - [Polystat](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-widget_polystat&format=markdown)
- Managing extensions
   - [Managing extensions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-mgmt&format=markdown)
   - [System Monitoring](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-system-monitoring&format=markdown)
   - [Activity Tracking](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-activity-tracking&format=markdown)
   - [IBM Cloud Kubernetes Service](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-kubernetes&format=markdown)
   - [IBM Cloud Databases for MySQL](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-db-mysql&format=markdown)
   - [IBM Cloud Databases for PostgreSQL](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-db-postgresql&format=markdown)
   - [IBM Cloudant](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-db-cloudant&format=markdown)
   - [Cloudflare](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-cloudflare&format=markdown)
   - [IBM Cloud Databases for Redis](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-db-redis&format=markdown)
   - [Linux](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-linux&format=markdown)
   - [MongoDB](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-mongodb&format=markdown)
   - [NGINX](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-extensions-nginx&format=markdown)
- Downloading data
   - [Exporting data from the Logs page](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-export-data&format=markdown)
   - [Exporting data directly from the bucket](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-query-archive-data-bucket&format=markdown)
- Working with templates
   - [Managing templates](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-templates&format=markdown)
   - [Managing unclassified logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-templates-unclassified-logs&format=markdown)
- Managing alerts
   - [Alerting](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts&format=markdown)
   - [Working with alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-event-notifications-about&format=markdown)
   - [Alert priorities](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-priorities&format=markdown)
   - [Terraform changes required to convert alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-migrate_alert_definitions&format=markdown)
   - [Configuring the integration with the Event Notifications service](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-event-notifications-configure&format=markdown)
   - Creating alerts
      - [Configuring alerts in Cloud Logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts-config&format=markdown)
      - [Multi-condition alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-multi-condition&format=markdown)
      - [Evaluation window](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-eval-window&format=markdown)
      - [Standard alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts-config-standard&format=markdown)
      - [Time relative alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts-config-time-relative&format=markdown)
      - [Unique count alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts-config-unique-count&format=markdown)
      - [Ratio alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts-config-ratio&format=markdown)
      - [New value alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts-config-new-value&format=markdown)
      - [Metric alert](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts-config-metric&format=markdown)
      - [Flow alerts](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-alerts-config-flow&format=markdown)
   - [Alert suppression rules](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-suppression_rules&format=markdown)
   - [Configuring routing of events to destinations in Event Notifications](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-event-notifications-alerts&format=markdown)
   - [Creating notification templates](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-event-notifications-create-template&format=markdown)
   - [Customizing Slack messages](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-event-notifications-slack-template&format=markdown)
   - [Managing triggered alerts in Cloud Logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-incidents&format=markdown)
   - [Event types](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cl-events-for-en&format=markdown)
   - [Event severities](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-event-severities&format=markdown)
   - [Event payload](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-event-payload&format=markdown)
   - [Notification channels](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-destinations&format=markdown)
   - [Configuring the custom email domain for alerts](https://community.ibm.com/community/user/blogs/marisa-lopez-de-silanes/2025/12/03/configuring-custom-emails-for-alerts-triggered-in)
- Working with metrics
   - [Enabling system metrics](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-data-usage-enable-metrics&format=markdown)
   - [Configuring collection of metrics from logs (Event2metrics)](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-configure-event2metrics&format=markdown)
   - [Exploring a metric through the Metrics Explorer](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-metrics-explorer&format=markdown)
   - [Exploring metrics through the Metrics Data Dashboard](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-metrics-explorer-r114&format=markdown)
- Data Usage
   - [About Data Usage](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-data-usage&format=markdown)
   - [Analyzing user data sent](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-data-usage-analyzer&format=markdown)
   - [Analyzing metrics](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-data-usage-metrics-analyzer&format=markdown)
   - [Generating Data Usage overview reports](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-data-usage-reports&format=markdown)
   - [Generating detailed Data Usage reports](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-data-usage-detailed-reports&format=markdown)
- Observability
   - [Auditing events](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-at_events&format=markdown)
- Sending data to a Cloud Logs instance
   - [Sending data using the REST API](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-send-logs-api&format=markdown)
   - Customizing the Helm Chart used to deploy orchestrated environments
      - [Checking the available Helm chart versions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-helm-chart-versions&format=markdown)
      - [Downloading a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-helm-chart-download&format=markdown)
      - [Helm Chart required configuration options](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-template-config-options-required&format=markdown)
      - [Configuring the IAM endpoint](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-iam-endpoint&format=markdown)
      - [Configuring the IAM authentication method](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-iam-authentication&format=markdown)
      - [Configuring custom metadata values](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-metadata&format=markdown)
      - [Enabling the Kubernetes filter to enrich logs with Kubernetes metadata](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-kubernetes-filter&format=markdown)
      - [Configuring the number of retries sending data if an error occurs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-retry-sending-data&format=markdown)
      - [Changing the resources that are assigned to run the agent](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-resources&format=markdown)
      - [Configuring the output plugin to enable parallel processing of log data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-parallel-processing&format=markdown)
      - [Overriding the default severity field](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-severity&format=markdown)
      - [Ensuring tainted nodes are updated](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-tainted&format=markdown)
      - [Configuring the log files that are collected by the agent](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-log-files&format=markdown)
      - [Keeping a copy of the original log](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-raw-log&format=markdown)
      - [Configuring multiple input plugins](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-additionalInputs&format=markdown)
      - [Configuring multiple parsers](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-additionalParsers&format=markdown)
      - [Configuring multiple filters](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-additionalFilters&format=markdown)
      - [Configuring custom multiline parsers](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-additionalMultilineParsers&format=markdown)
      - [Configuring additional service options](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-additionalServiceOptions&format=markdown)
      - [Configuring multiple outputs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-additionalOutputs&format=markdown)
      - [Configuring the number of unavailable pods](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-configure-maxunavailable&format=markdown)
      - [Configure the maximum length of the log](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-maxloglength&format=markdown)
   - [Agent configuration considerations](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-configuration-considerations&format=markdown)
   - [Understanding how the agent parses severities](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-severity&format=markdown)
   - Managing the Logging agent for orchestrated environments
      - [Checking the available agent versions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-check-agent-versions&format=markdown)
      - [Deploying the Logging agent on OpenShift using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-os-deploy&format=markdown)
      - [Deploying the Logging agent on a Kubernetes cluster using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-kube-deploy&format=markdown)
      - [Upgrading the Logging agent version using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-update&format=markdown)
      - [Rotating the Logging agent IAM APIKey for ingestion using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-credential-rotation&format=markdown)
      - [Uninstalling the Logging agent using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-remove&format=markdown)
      - [Configuring the log files that are collected](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-configure-include-exclude&format=markdown)
      - [Multiline support](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-multiline-new&format=markdown)
   - Managing the Logging agent for Linux environments
      - [Deploying and managing the agent](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-linux&format=markdown)
      - [Configure the Logging agent to collect and route Rsyslog messages](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-rsyslog&format=markdown)
      - [Multiline support](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-multiline-linux&format=markdown)
   - Managing the Logging agent for Windows environments
      - [Deploying the agent](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-windows&format=markdown)
      - [Configuring the agent to collect the Windows event log](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-windows-event-log&format=markdown)
      - [Configuring the agent to include or exclude files](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-windows-read-files&format=markdown)
      - [Adding metadata](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-windows-metadata&format=markdown)
      - [Managing the agent](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-windows-manage&format=markdown)
      - [Multiline support](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-multiline-windows&format=markdown)
   - [Output plug-in parameters to send data to Cloud Logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-plugin-parameters&format=markdown)
   - [Configuring multiple Cloud Logs destinations](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-multi-icl-config&format=markdown)
   - [Configuring the agent to use proxies](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-proxy&format=markdown)
   - [Understanding the agent configuration file](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-fluentbit&format=markdown)
   - [Configuring custom metadata fields](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-set-appsubname&format=markdown)
- Streaming data
   - [Streaming data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-streaming&format=markdown)
   - [Configuring streaming](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-streaming-config&format=markdown)
   - [Configuring streaming data rules](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-streaming_rules&format=markdown)
   - [DataPrime Expression Language (DPXL) reference](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-dpxl_ref&format=markdown)
   - [Streaming auditing data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-streaming_at_select&format=markdown)
   - [Streaming platform logs](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-streaming_platform_data_select&format=markdown)
   - [Streaming to SIEM tools](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-siem&format=markdown)
- Optimizing logs and costs
   - [Controlling cost](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-controlling-cost&format=markdown)
   - [Controlling ingested data for search](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-control-data&format=markdown)

## Reference

- [Data portability](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-data-portability&format=markdown)
- [Your responsibilities](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-shared-responsibilities&format=markdown)
- [Understanding high availability and disaster recovery](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cloud-logs-ha-dr&format=markdown)
- [Service plans and pricing](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-service_plans&format=markdown)
- [Locations](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-regions&format=markdown)
- [Service API endpoints](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-endpoints_api&format=markdown)
- [Ingress endpoints](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-endpoints_ingress&format=markdown)
- [IP addresses for firewalls](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ips2open&format=markdown)
- [Retrieving an access token](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-retrieve-access-token&format=markdown)
- API Reference
   - [Logs API](https://{DomainName}/apidocs/logs-service-api)
- CLI Reference
   - [CLI Reference](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cloud-logs-cli-temp&format=markdown)
- Terraform Reference
   - [Terraform reference](https://registry.terraform.io/providers/IBM-Cloud/ibm/latest/docs/resources/logs_dashboard)
   - [Terraform IBM Modules (TIM) for IBM Cloud Logs](https://registry.terraform.io/modules/terraform-ibm-modules/cloud-logs/ibm/latest)
   - [Terraform IBM Module (TIM) for the Logging agent](https://registry.terraform.io/modules/terraform-ibm-modules/logs-agent/ibm/latest)
- SDK Reference
   - [GO SDK](https://github.com/IBM/logs-go-sdk/)
- Observability services
   - [Observability services](https://cloud.ibm.com/docs/observability-hub?format=markdown)
- [Limits](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-limits&format=markdown)
- [Logs severity mapping](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-severities&format=markdown)
- [Considerations for recent release](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-new-version-considerations&format=markdown)
- [Considerations and limitations sending data](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-limits-sending-data&format=markdown)
- Sending data using the Logging agent prior to v1.6.x
   - Logging agent for orchestrated environments
      - [Checking the available Helm chart versions](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-helm-chart-versions-1&format=markdown)
      - [Helm chart template to deploy the Logging agent prior to v1.6.x](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-helm-chart-download-1&format=markdown)
      - [Deploying the Logging agent on OpenShift using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-os-deploy-1&format=markdown)
      - [Deploying the Logging agent on a Kubernetes cluster using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-kube-deploy-1&format=markdown)
      - [Deploying the Logging agent using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-template-clusters&format=markdown)
      - [Rotating the Logging agent IAM APIKey by using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-credential-rotation-1&format=markdown)
      - [Uninstalling the Logging agent using a Helm chart](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent-helm-remove-1&format=markdown)
- [Cloud services message ID prefixes](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-cloud_services_msg_prefix&format=markdown)

## Help

- [Getting help and support](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-getting-help&format=markdown)
- FAQ
   - [FAQ](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-faq&format=markdown)
   - [Agent FAQ](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-agent_faq&format=markdown)
- Troubleshooting
   - Troubleshooting Cloud Logs
      - [Why am I not seeing results from my Priority insights searches?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-mapping-exceptions&format=markdown)
      - [Why is the severity of some of my logs different from what I am expecting?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-rules&format=markdown)
      - [Why is the All Logs option not available?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-no-all-logs&format=markdown)
      - [TCO policies are configured to route data to the Analyze and alert and Store and search pipelines, but I can't find my logs. What might be the problem?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-no-tco-data&format=markdown)
   - Troubleshooting alerts
      - [Why are my alerts not being sent?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-alerts&format=markdown)
      - [Return code 500 returned when an alert is sent to IBM Cloud Event Notifications](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-troubleshoot-rc500&format=markdown)
   - Troubleshooting Cloud Object Storage
      - [What happens if a metrics bucket is not configured?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-no-metrics-bucket&format=markdown)
      - [Why is the UI displaying a message that a bucket isn't connected? ](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-cos-config&format=markdown)
      - [Why am I receiving a message that no data exists in my COS bucket?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-no-data&format=markdown)
      - [Why am I not seeing successful read activity tracking events for IBM Cloud Object Storage activity generated by IBM Cloud Logs?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-cos-events&format=markdown)
   - Troubleshooting platform data
      - [Why can't I see platform logs in the UI?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-no-logs&format=markdown)
   - Troubleshooting the Logging agent
      - [I am getting a timeout error when running my Linux agent configuration script. What do I do?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-no-public&format=markdown)
      - [What do I do when I see [input] pausing tail messages in my agent log?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-input-error&format=markdown)
      - [I am getting an error when starting the Logging agent?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-fb-error&format=markdown)
      - [Why am I receiving a warning message when logging into helm to install the Logging agent?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-helm-proxy&format=markdown)
      - [I think some of my data is not reaching my IBM Cloud Logs instance. What can I look for to determine possible ingestion failures?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-ingestion-failures&format=markdown)
      - [How can I find the IBM Cloud Logs Logging agent logs?](https://cloud.ibm.com/docs/cloud-logs?topic=cloud-logs-ts-agent-logs&format=markdown)
