Query HTTP request events
Read the event records of requests to a workload from the workloadEvents dataset, in Azion Console and with a GraphQL query.
You can read the event record of a single request from Real-Time Events, in Azion Console or with a query to its GraphQL API. The records sit in the HTTP Requests data source, which the API serves as the workloadEvents dataset: one record per request an application or a firewall received.
The two interfaces name the same value differently. Azion Console takes the variable name in lowercase with underscores, such as status='400'. The GraphQL API takes the camelCase field, such as statusIn: [400].
Prerequisites
- An application or a firewall already serving traffic, so the HTTP Requests data source holds records to read.
- A value that identifies the request: a host, an HTTP status code, or the request id a response carries in its
x-azion-request-idheader. - Access to Azion Console, for the Console procedure. To sign in, refer to How to access Azion Console.
- A personal token, for the GraphQL query. To create one, refer to Personal Tokens.
The period a query can ask for is bounded by how long an event record is kept. For that bound and the others a query carries, refer to Limits.
Read the record of a request
A search is one data source, one period, and one filter over them. To open the record of a request in Azion Console:
Access Azion Console > Products menu > Observe > Real-Time Events.
In Data Sources, select HTTP Requests.
In Time Filter, select a period that contains the request. The filter opens on Last 15 minutes.
In Filter by, enter a condition built from the values you have:
Select the row of the request in the results table.
The More details view opens, carrying every variable the HTTP Requests data source holds for that one request.
Filter by reads SQL, and AND, OR, and NOT combine terms. For the full syntax, refer to Filter events. For what each variable of this data source means, refer to Data sources.