Experience Center
About Insights Logs
The Zscaler service provides real-time log consolidation across the globe, so you can view every transaction performed by your users regardless of where they are in the world.
Logs are stored for 180 days in the Zscaler Nanolog servers. Zscaler also offers the Nanolog Streaming Service (NSS), a virtual machine (VM) that can stream web traffic logs in real time from the Zscaler Nanolog to your security information and event management (SIEM) system, such as Splunk, enabling real-time alerting, correlation with the logs of your firewall and other devices, and long-term local log archival. Contact your Zscaler representative or Zscaler Support for more information on subscribing to NSS.
The Insights Logs pages provide the following benefits and enable you to:
- View logs for each transaction processed by Zscaler.
- Quickly access the desired logs with the help of multiple filters and operators when troubleshooting.
You can view the following logs pages:
- Session Logs
- DNS Logs
- Tunnel Logs
About the Insights Logs Pages
On the Insights Logs pages (Logs > Insights > Branch & Cloud Connectors), you can do the following:
- View the Insights tab.
- Clear all filters. You are returned to the default Insights page.
- Click to show or hide the left-side navigation.
- Choose a predefined time frame, or select Custom to use the calendar and time menus to define your own time frame. In Custom, the end date can be up to 92 days after the start date.
- Select Display to view logs, or select Download to download logs. Logs are downloaded in the time zone set on the My Profile page.
- Choose how many records you want to see displayed on the page.
- Apply filters to narrow down the list or to find transactions, such as those associated with a specific user or URL. To view Insights Logs filters for specific traffic types, see:
- Click Apply Filters to activate your changes.
- View the transactions in a log table. You can search for specific entries wherever you see a magnifying glass on a column field name. You can also sort certain columns by ascending or descending order.
- Customize your log view by selecting or deselecting which column fields you want to see. To view Insights Logs column fields for specific categories, see: