All Products
Search
Document Center

Security Center:Query logs

Last Updated:Nov 24, 2025

Security Center integrates with Simple Log Service, allowing you to query and analyze host and security logs from your assets. Security Center automatically collects and stores logs in real time and uses Simple Log Service to provide log query and analysis, reporting, alerting, and delivery to downstream computing systems.

Prerequisites

Ensure that log analysis is enabled. For more information, see Enable log analysis.

Procedure

You can select a log type to query and analyze collected log data in real time, view or edit dashboards, and set alert monitoring rules.

  1. Log on to the Security Center console.

  2. In the navigation pane on the left, choose Risk Governance > Log Analysis. In the upper-left corner of the console, select the region where your assets are located:Chinese MainlandOutside Chinese MainlandOutside China.

  3. In the upper-left corner of the Log Analysis page, select the log type that you want to view and set Log Status to Enabled.日志分析

  4. On the Log Analysis page, you can query and analyze logs.

    You can do the following:

    • The Log Analysis page displays the query and analysis results for the log type that you selected in Step 3. The system automatically provides a corresponding search statement.查询语句

    • Click the time field above the Search & Analyze button. In the Time panel, set a time range and then click Search & Analyze to view the logs for the specified period.选择日志时间范围

      Note

      Security Center logs are stored for 180 days. After this period, log entries are automatically deleted.