Kubernetes logs and events
By default, some logs and events from the Kubernetes cluster are collected. To change which Kubernetes logs are sent to SolarWinds Observability SaaS, see Update Kubernetes cluster logs collection. Events and logs can also be found in the Logs Explorer. To search for your specific event or container log, use the following key:value pairs as search parameters:
Key | Valid values |
---|---|
sw.k8s.log.type
|
String representing the type of log. Valid values include:
|
k8s.cluster.name
|
String representing the cluster name. |
k8s.container.name
|
String representing the container name. |
k8s.node.name
|
String representing the node name. |
k8s.pod.name
|
String matching the pod name. |
k8s.namespace.name
|
String matching the namespace name. |
k8s.event.count
|
For Kubernetes events, the count of how many of the same event occurred. |
k8s.event.name
|
For Kubernetes events, the name of the event. |
k8s.event.reason
|
For Kubernetes events, the reason for the event. |
severity_text
|
String representing the severity of the event/log. Valid values include:
|
Example Kubernetes search in the Logs Explorer:
sw.k8s.log.type:container AND k8s.cluster.name:xyz AND k8s.pod.name:abc "some text to search"