Soru

Zorluk: KolayLog Analytics Workspaces and KQL Queries

You have an Azure subscription that contains a Log Analytics workspace named Workspace1. You need to ensure that Workspace1 stops accepting data and stops incurring charges for the rest of the day if the volume of ingested data in a single day reaches 10 GB. What should you configure in Workspace1?

  1. A daily cap of 10 GBCevap
  2. B
    A subscription budget with a threshold of 10 GB
  3. C
    A diagnostic setting configured to filter out excess logs
  4. D
    An Azure Monitor alert rule with an action group

Cevap

A daily cap of 10 GB
Configuring a daily cap of 10 GB on the Log Analytics workspace is the correct solution. Once the daily cap is met, the workspace stops accepting new data for the remainder of the UTC day, preventing additional ingestion charges.

Adım Adım Çözüm

1
Analyze the requirement to halt data ingestion and prevent billing charges when a specific data volume threshold is reached in a Log Analytics workspace.
Identify that the configuration must apply directly to data ingestion volume on the workspace level.
This helps narrow down settings applicable directly to the Log Analytics workspace rather than subscription or alert configurations.
2
Evaluate the workspace-level features in Azure.
Select 'daily cap' as the feature designed to manage data ingestion limits and halt ingestion to prevent extra costs.
The daily cap setting specifically stops data ingestion for the rest of the day once the limit is reached.

Anahtar Kavram

Configuring a daily cap in a Log Analytics workspace to control costs and limit daily data ingestion.
Bu soruyu puanla