Search Logs
dynatrace_search_logsSearch exact Dynatrace log lines by Kubernetes, log level, text/regex, trace ID, and time filters to find specific events, not full dumps.
Instructions
Exact matching log lines only (not a dump). Filter by cluster/namespace/pod/container, loglevel, contains/regex, trace id, and date bounds. Default limit 50, max 200.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| to | No | End: now or ISO-8601 | |
| pod | No | Pod name: exact replica, prefix ending with '-', or glob (my-app-*). | |
| from | No | Start: now-30m or ISO-8601 | |
| host | No | host.name | |
| node | No | k8s.node.name | |
| pods | No | One or more pod names (same matching rules as pod) | |
| sort | No | ||
| limit | No | ||
| regex | No | ||
| around | No | Pivot timestamp for a window | |
| offset | No | ||
| sample | No | Keep 1 in N lines | |
| spanId | No | ||
| status | No | ||
| window | No | Half-window around pivot, e.g. 2m | |
| cluster | No | Dynatrace k8s.cluster.name. Discover with dynatrace_list_clusters; do not assume a cluster. | |
| endDate | No | Calendar end YYYY-MM-DD (UTC day) | |
| service | No | service.name / dt.entity.service | |
| traceId | No | ||
| contains | No | ||
| entityId | No | Dynatrace entity id if known | |
| loglevel | No | ERROR,WARN or array | |
| workload | No | Workload or deployment name (k8s.workload.name / k8s.deployment.name). | |
| container | No | k8s.container.name | |
| namespace | No | Kubernetes namespace (k8s.namespace.name). Discover with dynatrace_list_namespaces. | |
| startDate | No | Calendar start YYYY-MM-DD (UTC day) | |
| connection | No | Named connection from env (default, optional stage/prod aliases, or a DYNATRACE_CONNECTIONS key) | |
| containsAll | No | ||
| containsAny | No | ||
| notContains | No | ||
| excludeLevels | No | ||
| allowLongRange | No | Allow ranges longer than the default cap | |
| caseInsensitive | No | ||
| excludePatterns | No | ||
| maxContentChars | No |