Query Administration
Monitor, control, and optimize queries running in your LogScale environment
New to Query Administration?
Learn how LogScale handles queries at the administrative level before you start configuring controls. Understand query costs, resource consumption, quotas, and blocking - so you can make informed decisions when queries impact system performance.
- Query Cost and Resource Metrics
- Query Quotas and Limits
- Query Blocking
- Organization-Owned Queries
Ready to Configure Query Controls?
You understand how query administration works and are ready to act. Monitor running queries, set resource quotas, block problematic queries, and manage organization-owned queries to keep your environment stable and performant.
- Query Monitor
- Killing and Blocking Queries
- Setting Query Quotas
- Managing Organization-Owned Queries
Workflow 1: New to Query Administration?
Build a solid understanding of how LogScale measures and controls query resource consumption. This foundation helps you set appropriate limits and respond effectively when queries cause performance problems.
Query Administration Overview
Understand the tools available for managing queries at the organization level
Understanding Query Costs
Learn how LogScale measures query resource consumption
Query Monitor
guideintermediateUnderstand how the Query Monitor displays real-time resource usage for running queries. Learn what cost metrics, CPU consumption, and memory usage mean for system performance.
Cost Points
guideintermediateLearn how LogScale uses cost points to measure query resource consumption across CPU, memory, and I/O. Understanding cost points is essential for setting effective quotas.
Query Quotas
Learn how quotas limit query resource consumption per user
Query Quotas
guideintermediateUnderstand how query quotas prevent individual users from consuming excessive resources. Learn about static and live cost point quotas, query count limits, and per-user overrides.
Quota Types
guideintermediateUnderstand the difference between cost-point quotas (resource consumption) and query count quotas (number of concurrent queries), and when to use each.
Query Blocking
Learn how to prevent specific queries from running
Organization-Owned Queries
Understand how ownership affects scheduled searches, alerts, and dashboards
Workflow 2: Ready to Configure Query Controls?
Monitor your environment, act on problem queries, set preventive limits, and manage long-running automated queries.
Monitor Running Queries
Use the Query Monitor to observe what queries are running and how much resource they consume
Query Monitor
guideintermediateAccess the Query Monitor to see all currently running queries, their resource cost, the user who submitted them, and how long they have been running.
Display Controls
guideintermediateFilter the query list by repository, user, or status. Switch between recent queries and all active queries to focus on the most resource-intensive activity.
Query Stats
guideintermediateExamine detailed resource metrics for individual queries: CPU usage, memory consumption, cost points, and execution time. Use this to identify queries that need attention.
Kill and Block Queries
Stop queries that are consuming excessive resources or causing performance issues
Kill a Running Query
guideintermediateImmediately terminate a running query from the Query Monitor. Use this when a query is consuming excessive resources and needs to be stopped right away.
Block a Query
guideintermediateAdd a query pattern to the blocklist directly from the Query Monitor. Prevents the same or similar queries from running again.
Add a Query to the Blocklist
guideintermediateManually add query patterns to the blocklist using exact strings or regular expressions. Configure organization-wide or repository-specific blocks with optional expiration times.
Remove a Blocked Query
guideintermediateRemove or update an existing block when the query pattern is no longer a problem or the block was too broad.
Configure Query Quotas
Set resource limits to prevent any single user from overwhelming the system
Specify Quotas
guideintermediateConfigure default quota settings that apply to all users. Set cost-point and query count limits with time intervals to control resource consumption across your organization.
Default Settings
guideintermediateSet organization-wide default quotas that apply to users who do not have a specific quota override. Start with defaults before customizing for individual users.
User Overrides
guideintermediateGrant higher or lower quotas to specific users. Use overrides to give trusted analysts more headroom while keeping stricter limits on general users.
Manage Organization-Owned Queries
Ensure scheduled searches, alerts, and dashboards keep running when users leave or change roles
Enable Organization Ownership for a Role
guideintermediateGrant a role the permission to create organization-owned queries. Only users with this permission can create queries that run under organization ownership rather than a personal user account.
Transfer Ownership of Existing Queries
guideintermediateUpdate existing scheduled searches, alerts, and dashboards to run under organization ownership. Use this when onboarding queries that were created by individual users.
Activity Logs for Organization-Owned Queries
guideintermediateReview activity logs to audit which organization-owned queries are running, who created them, and when they last executed.