Skip to content

Commit d3ab7e2

Browse files
authored
Merge branch 'main' into DOCS-718
2 parents 777a5c9 + 00dde3b commit d3ab7e2

File tree

382 files changed

+2380
-549
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

382 files changed

+2380
-549
lines changed

blog-service/2025-03-31-apps.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,15 +13,15 @@ import useBaseUrl from '@docusaurus/useBaseUrl';
1313

1414
We’re excited to announce the release of the new Azure Key Vault and AWS Auto scaling apps for Sumo Logic.
1515

16-
- **Azure Key Vault**. Azure Key Vault is a managed service, hosted in the cloud that acts as a central message hub for communication between an IoT application and its attached devices. This integration helps in comprehensive monitoring of your key vaults requests, performance, failures, and latency. [Learn more](/docs/integrations/microsoft-azure/azure-key-vault/).
16+
- **Azure Key Vault**. Azure Key Vault is a cloud service that helps you securely store and manage secrets, keys, and certificates. You can use it to protect data for cloud apps and services. This integration helps in comprehensive monitoring of your Key Vault operations, requests, failures, and latency. [Learn more](/docs/integrations/microsoft-azure/azure-key-vault/).
1717
- **AWS Auto scaling**. Amazon EC2 Auto Scaling helps you maintain application availability and lets you automatically add or remove EC2 instances using scaling policies that you define. Dynamic or predictive scaling policies let you add or remove EC2 instance capacity to service established or real-time demand patterns. [Learn more](/docs/integrations/amazon-aws/amazon-ec2-auto-scaling/).
1818

1919
### Enhancements
2020

2121
- **Added metrics collection capability for OpenTelemetry collectors**. [RabbitMQ](/docs/send-data/opentelemetry-collector/remote-management/source-templates/rabbitmq/#for-metrics-collection) and [Redis](/docs/send-data/opentelemetry-collector/remote-management/source-templates/redis/#for-metrics-collection).
2222
- **Added use cases to monitor EBS volume and snapshots in AWS EC2 apps**. [AWS EC2](/docs/integrations/amazon-aws/ec2-cloudwatch-metrics/#events).
2323
- **Updated the metric collection and dashboard for Google apps**. [Google BigQuery](/docs/integrations/google/bigquery/) and [Google Cloud Load Balancing](/docs/integrations/google/cloud-load-balancing/).
24-
- Added new dashboards to the [Sumo Logic Kickstart Data(Beta)](/docs/integrations/sumo-apps/kickstart-data/) app.
24+
- Added new dashboards to the [Sumo Logic Kickstart Data (Beta)](/docs/integrations/sumo-apps/kickstart-data/) app.
2525
- **Updated the queries to accommodate the new threat intel feed**. [Apache - OpenTelemetry](/docs/integrations/web-servers/opentelemetry/apache-opentelemetry/), [Apache Tomcat - OpenTelemetry](/docs/integrations/web-servers/opentelemetry/apache-tomcat-opentelemetry/), [HAProxy - OpenTelemetry](/docs/integrations/web-servers/opentelemetry/haproxy-opentelemetry/), [IIS 10 - OpenTelemetry](/docs/integrations/web-servers/opentelemetry/iis-10-opentelemetry/), [Ngin - OpenTelemetry](/docs/integrations/web-servers/opentelemetry/nginx-opentelemetry/), [PostgreSQL - OpenTelemetry](/docs/integrations/databases/opentelemetry/postgresql-opentelemetry/), [Varnish - OpenTelemetry](/docs/integrations/web-servers/opentelemetry/varnish-opentelemetry/), [Acquia](/docs/integrations/saas-cloud/acquia/), [Azure Web Apps](/docs/integrations/microsoft-azure/web-apps/), [JFrog Xray](/docs/integrations/app-development/jfrog-xray/), and [MongoDB Atlas 6](/docs/integrations/databases/mongodb-atlas/).
2626
- Updated Azure integration from` Node.js v18` to `Node.js v20`. [Learn more](https://github.com/SumoLogic/sumologic-azure-function/releases/tag/v4.1.6).
2727

blog-service/2025-04-08-security.md

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -11,10 +11,6 @@ import useBaseUrl from '@docusaurus/useBaseUrl';
1111

1212
We’re excited to announce a new `SumoLogic_ThreatIntel` source incorporating Indicators of Compromise (IoC) from [Intel 471](https://intel471.com/). Analysts can use this out-of-the-box default source of threat indicators to aid in security analysis.
1313

14-
:::warning
15-
On April 30, 2025, we will discontinue our legacy `_sumo_global_feed_cs` source. If you have rules that explicitly point to this source, update them to use the new `SumoLogic_ThreatIntel` source.
16-
:::
17-
1814
[Learn more](/docs/security/threat-intelligence/about-threat-intelligence/#sumo-logic-threat-intelligence-sources).
1915

2016
<img src={useBaseUrl('img/security/threat-intelligence-tab-example.png')} alt="Threat Intelligence tab" style={{border: '1px solid gray'}} width="800" />

blog-service/2025-04-09-manage.md

Lines changed: 16 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,16 @@
1+
---
2+
title: Kickstart Data Onboarding (Manage)
3+
image: https://help.sumologic.com/img/sumo-square.png
4+
keywords:
5+
- onboarding
6+
- trial
7+
hide_table_of_contents: true
8+
---
9+
10+
We’re excited to announce the general availability of Kickstart Data, a streamlined onboarding experience that includes sample data and prebuilt dashboards. Whether you're starting a free trial or simply spinning up a new account, Kickstart Data makes it easy to understand Sumo Logic's capabilities without needing to ingest your own data first.
11+
12+
* **Instant insights**. Preloaded data and dashboards show platform value right away.
13+
* **No setup required**. Skip config steps like firewalls or security permissions.
14+
* **Easy handoff**. Start using your own data anytime—Kickstart deactivates automatically.
15+
16+
[Learn more](/docs/get-started/quickstart/#getting-started-with-kickstart-data-in-your-trial).

cid-redirects.json

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -438,8 +438,10 @@
438438
"/05Search/Get-Started-with-Search/Visualizations/Group-By-Operator": "/docs/search/search-query-language/search-operators",
439439
"/05Search/Live-Tail": "/docs/search/live-tail",
440440
"/05Search/Live-Tail/About-Live-Tail": "/docs/search/live-tail/about-live-tail",
441+
"/Search/Anomaly_Detection": "/docs/alerts/monitors/create-monitor",
441442
"/Search/Live-Tail": "/docs/search/live-tail/about-live-tail",
442443
"/Search/Live-Tail/About-Live-Tail": "/docs/search/live-tail/about-live-tail",
444+
"/Search/Live_Tail/Live_Tail_CLI": "/docs/search/live-tail/live-tail-cli",
443445
"/05Search/Live-Tail/Filter-Live-Tail": "/docs/search/live-tail/filter-live-tail",
444446
"/05Search/Live-Tail/Live-Tail-CLI": "/docs/search/live-tail/live-tail-cli",
445447
"/05Search/Live-Tail/Live-Tail-Highlighting": "/docs/search/live-tail/live-tail-highlighting",
@@ -1563,7 +1565,6 @@
15631565
"/cid/0100": "/docs/manage/security/installation-tokens",
15641566
"/cid/0020": "/docs/manage/health-events",
15651567
"/cid/0020001": "/docs/security/threat-intelligence/upload-formats",
1566-
"/cid/20002": "/docs/search/search-query-language/search-operators/threatlookup",
15671568
"/cid/0020003": "/docs/security/threat-intelligence",
15681569
"/cid/0523": "/docs/manage/manage-subscription/upgrade-account/upgrade-sumo-logic-flex-account",
15691570
"/cid/0524": "/docs/manage/manage-subscription/cloud-flex-legacy-accounts",
@@ -3034,6 +3035,7 @@
30343035
"/Knowledge_Base/APIs": "/docs/api",
30353036
"/Knowledge_Base/Apps": "/docs/integrations",
30363037
"/Knowledge_Base/Parsing/Using_line_breaks_as_an_anchor_within_parse": "/docs/search/search-query-language/parse-operators/parse-predictable-patterns-using-an-anchor",
3038+
"/Knowledge_Base/Search": "/docs/search",
30373039
"/Knowledge_Base/Search/How_to_Prevent_your_Scheduled_Search_from_Timing_Out": "/docs/alerts/scheduled-searches/faq",
30383040
"/Limited_Availability/Lookup_Tables": "/docs/search/search-query-language/search-operators/lookupcontains",
30393041
"/Limited_Availability/Lookup_Tables/lookupContains_Operator": "/docs/search/search-query-language/search-operators/lookupcontains",
@@ -3047,6 +3049,7 @@
30473049
"/Manage/01Manage_Subscription/03Upgrade_a_Cloud_Flex_Credits_Account": "/docs/manage/manage-subscription/upgrade-account/upgrade-sumo-logic-flex-account",
30483050
"/Manage/01Manage_Subscription/04Upgrade_Your_Account": "/docs/manage/manage-subscription/upgrade-account/upgrade-cloud-flex-legacy-account",
30493051
"/Manage/01Manage_Subscription/05Manage_Organization": "/docs/manage/manage-subscription/create-and-manage-orgs/manage-org-settings",
3052+
"/Manage/01Manage_Subscription/05Manage_Organizational_Settings": "/docs/manage/manage-subscription/create-and-manage-orgs/manage-org-settings",
30503053
"/docs/manage/manage-subscription/upgrade-cloud-flex-account": "/docs/manage/manage-subscription/upgrade-account/upgrade-cloud-flex-legacy-account",
30513054
"/Manage/01Manage_Subscription/06Manage_Billing_Information": "/docs/manage/manage-subscription/manage-billing-information",
30523055
"/Manage/01Manage_Subscription/08Create_and_Manage_Orgs": "/docs/manage/manage-subscription/create-and-manage-orgs/create-manage-orgs",
@@ -4091,6 +4094,7 @@
40914094
"/Send-Data/Sources/04Reference-Information-for-Sources/Collecting_Multiline_Logs": "/docs/send-data/reference-information/collect-multiline-logs",
40924095
"/Solutions/AWS_Observability_Solution/01_About_the_AWS_Observability_Solution": "/docs/observability/aws/about",
40934096
"/Solutions/AWS_Observability_Solution/05_Monitor_Control_Tower-Managed_Accounts": "/docs/observability/aws/other-configurations-tools/integrate-control-tower-accounts",
4097+
"/Solutions/AWS_Observability_Solution/AWS_Observability_Application_Load_Balancer": "/docs/observability/aws/integrations/aws-application-load-balancer",
40944098
"/Solutions/AWS_Observability_Solution/View_AWS_Observability_Solution_Dashboards": "/docs/observability/aws/deploy-use-aws-observability/view-dashboards",
40954099
"/Solutions/AWS_Observability_Solution/Root_Cause_Explorer": "/docs/observability/root-cause-explorer",
40964100
"/Solutions/AWS_Observability_Solution/03_Set_Up_the_AWS_Observability_Solution": "/docs/observability/aws/about",
@@ -4211,6 +4215,7 @@
42114215
"/docs/dashboards/chart-panel-types/string-single-value-charts": "/docs/dashboards/panels/single-value-charts",
42124216
"/docs/dashboards/get-started": "/docs/dashboards",
42134217
"/docs/dashboards/get-started/add-links-text-panels": "/docs/dashboards/about",
4218+
"/docs/dashboards/get-started/dashboard-optimization": "/docs/dashboards/advanced",
42144219
"/docs/dashboards/get-started/launch-search-data-panel": "/docs/dashboards/about",
42154220
"/docs/dashboards/get-started/markdown-syntax": "/docs/dashboards/panels/markdown-syntax",
42164221
"/docs/dashboards/get-started/move-panel-dashboard": "/docs/dashboards/about",

docs/get-started/quickstart.md

Lines changed: 7 additions & 17 deletions
Original file line numberDiff line numberDiff line change
@@ -27,34 +27,24 @@ You'll need a Sumo Logic account. Sign up for a free trial [here](/docs/get-star
2727

2828
## Getting started with Kickstart Data in your trial
2929

30-
With your [Sumo Logic trial](/docs/get-started/sign-up), you can access preloaded placeholder Kickstart Data to explore Sumo Logic instantly prior to setting up your own data. This feature helps trial users see immediate value and bypass setup barriers like firewall and security configurations.
31-
32-
:::warning limitations
33-
* Your trial workflow—Kickstart Data or custom data—is automatically determined by marketing-based user profiling. Manual selection of a workflow is not currently supported.
34-
* This feature is only available to select trial users during the initial rollout phase.
35-
* Kickstart Data is available for a maximum of 7 days. After this period, you must begin ingesting your own data to continue using Sumo Logic.
36-
:::
37-
38-
### Key benefits
30+
As part of your Sumo Logic trial, Kickstart Data provides preloaded sample data and dashboards, letting you explore the platform immediately—no setup or data ingestion required. This helps you quickly understand Sumo Logic’s value without dealing with firewall or security configurations. Following are some key benefits:
3931

4032
* **Immediate insights**. Explore Sumo Logic right away, without initial data setup, to quickly see its value and decide if it’s a fit for you.
4133
* **Quick setup**. Kickstart Data removes technical hurdles, making onboarding faster and easier.
4234
* **Guided experience**. Access pre-built dashboards and reports that demonstrate real-world scenarios, helping you make the most of your trial.
4335
* **Safe exploration**. Evaluate our platform in a secure environment with no exposure of sensitive data.
4436

45-
### How it works
37+
Here's how it works:
4638

47-
1. **User assignment**. When you start your trial, you will be automatically assigned to either the Kickstart Data workflow or a custom data workflow, based on your user profile.
48-
2. **Sample dashboards**. If you are assigned the Kickstart Data option, sample data will be preloaded into the platform, along with dashboards and log searches tailored to your monitoring and troubleshooting use cases.
39+
1. **Sample dashboards**. When you first log in, you'll see sample data preloaded into Sumo Logic, tailored to your monitoring and troubleshooting use cases, along with log searches and the following dashboards:
4940
* **Application reliability**. Metrics like Homepage Load Time, Checkout Errors, and Internal Server Orders.
5041
* **Business KPIs**. Revenue Trends, Promo Performance, and Customer Feedback Metrics.
51-
3. **Onboarding checklist**. You will follow a guided checklist that helps you:
52-
* Analyze sample data.
42+
* **Security**. Security events and failed sign-in attempts across multiple geographical locations.
43+
1. **Onboarding checklist**. You will follow a guided checklist that helps you:
44+
* Analyze the sample data.
5345
* Perform log searches.
5446
* Invite team members to join and explore the platform with you.
55-
4. **Seamless transition to real data**. Kickstart Data is available for only 7 days. After that, you must set up your own data ingestion while continuing to use the platform’s core features. When your trial ends, Kickstart Data is deactivated automatically.
56-
57-
You can skip Kickstart Data anytime and begin ingesting your own data.
47+
1. **Transition to real data**. Kickstart Data is available for 7 days or until you start ingesting real data—whichever comes first. It deactivates automatically at the end of the trial, but can be skipped at any time.
5848

5949
## Step 1: Get your data into Sumo
6050

docs/integrations/amazon-aws/waf.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -60,7 +60,7 @@ _sourceCategory=AWS/WAF {{client_ip}}
6060
| parse "\"httpMethod\":\"*\"," as httpMethod,"\"httpVersion\":\"*\"," as httpVersion,"\"uri\":\"*\"," as uri, "{\"clientIp\":\"*\",\"country\":\"*\"" as clientIp,country, "\"action\":\"*\"" as action, "\"matchingNonTerminatingRules\":[*]" as matchingNonTerminatingRules, "\"rateBasedRuleList\":[*]" as rateBasedRuleList, "\"ruleGroupList\":[*]" as ruleGroupList, "\"httpSourceId\":\"*\"" as httpSourceId, "\"httpSourceName\":\"*\"" as httpSourceName, "\"terminatingRuleType\":\"*\"" as terminatingRuleType, "\"terminatingRuleId\":\"*\"" as terminatingRuleId, "\"webaclId\":\"*\"" as webaclId nodrop
6161
| lookup type, actor, raw, threatlevel as malicious_confidence from sumo://threat/cs on threat=clientip
6262
```
63-
<!-- Replace code example with this after `sumo://threat/i471` is replaced by `threatlookup`:
63+
<!-- Per DOCS-643, replace code example with this after `sumo://threat/cs` is replaced by `threatlookup`:
6464
```sql title="Client IP Threat Info"
6565
_sourceCategory=AWS/WAF {{client_ip}}
6666
| parse "\"httpMethod\":\"*\"," as httpMethod,"\"httpVersion\":\"*\"," as httpVersion,"\"uri\":\"*\"," as uri, "{\"clientIp\":\"*\",\"country\":\"*\"" as clientIp,country, "\"action\":\"*\"" as action, "\"matchingNonTerminatingRules\":[*]" as matchingNonTerminatingRules, "\"rateBasedRuleList\":[*]" as rateBasedRuleList, "\"ruleGroupList\":[*]" as ruleGroupList, "\"httpSourceId\":\"*\"" as httpSourceId, "\"httpSourceName\":\"*\"" as httpSourceName, "\"terminatingRuleType\":\"*\"" as terminatingRuleType, "\"terminatingRuleId\":\"*\"" as terminatingRuleId, "\"webaclId\":\"*\"" as webaclId nodrop

docs/integrations/microsoft-azure/azure-key-vault.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ import useBaseUrl from '@docusaurus/useBaseUrl';
88

99
<img src={useBaseUrl('img/integrations/microsoft-azure/azure-key-vault.png')} alt="Thumbnail icon" width="50"/>
1010

11-
[Azure Key Vault](https://learn.microsoft.com/en-us/azure/key-vault/general/overview) is a managed service hosted in the cloud that acts as a central message hub for communication between an IoT application and its attached devices. This integration helps in comprehensive monitoring of your key vaults requests, performance, failures, and latency.
11+
[Azure Key Vault](https://learn.microsoft.com/en-us/azure/key-vault/) is a cloud service that helps you securely store and manage secrets, keys, and certificates. You can use it to protect data for cloud apps and services. This integration helps in comprehensive monitoring of your Key Vault operations, requests, failures, and latency.
1212

1313
## Log and metric types
1414

0 commit comments

Comments
 (0)