Skip to main content
Sumo Logic

Install Apache App and view the Dashboards

The Sumo Logic Application for Apache consists of predefined searches and Dashboards, providing visibility into your environment for real-time or historical analysis.

Install the Sumo Logic App

Now that you have set up collection for Apache, install the Sumo Logic App for Apache to use the preconfigured searches and dashboards to analyze your data.

To install the app, do the following:

Locate and install the app you need from the App Catalog. If you want to see a preview of the dashboards included with the app before installing, click Preview Dashboards.

  1. From the App Catalog, search for and select the app. 
  2. To install the app, click Add to Library and complete the following fields.
    1. App Name. You can retain the existing name, or enter a name of your choice for the app.

    2. Data Source. Select either of these options for the data source.

      • Choose Source Category, and select a source category from the list.

      • Choose Enter a Custom Data Filter, and enter a custom source category beginning with an underscore. Example: (_sourceCategory=MyCategory).

    3. Advanced. Select the Location in Library (the default is the Personal folder in the library), or click New Folder to add a new folder.
  3. Click Add to Library.

Once an app is installed, it will appear in your Personal folder, or other folder that you specified. From here, you can share it with your organization. 

Panels will start to fill automatically. It's important to note that each panel slowly fills with data matching the time range query and received since the panel was created. Results won't immediately be available, but with a bit of time, you'll see full graphs and maps. 

Dashboard filters   Edit section

Each dashboard has a set of filters that you can apply to the entire dashboard, as shown in the following example. Click the funnel icon in the top dashboard menu bar to display a scrollable list of filters that are applied across the entire dashboard.

Apache_Dashboard_filter.png

Each panel has a set of filters that are applied to the results for that panel only, as shown in the following example. Click the funnel icon in the top panel menu bar to display a list of panel-specific filters.

Apache_Panel_filter.png

Apache - Overview Dashboard

The Apache - Overview Dashboard provides a high-level view of the activity and health of Apache servers on your network. Dashboard panels display visual graphs and detailed information on visitor geographic locations, traffic volume and distribution, responses over time, as well as time comparisons for visitor locations and server hits.

Use this dashboard to:

  • Understand the traffic distribution across servers, to provide insights for resource planning by analyzing data volume and bytes served.
  • Gain insights into originated traffic location by region. This can help you allocated compute resources to different regions according to their needs.

Apache_Overview.png

Apache - Visitor Access Types Dashboard

The Apache - Visitor Access Types Dashboard provides insights into visitor platform types, browsers, and operating systems, as well as the most popular mobile devices, PC and Mac versions used.

Use this dashboard to:

Understand which platform and browsers are used to gain access to your infrastructure. These insights can be useful for planning which browsers, platform, and operating system (OS) should be supported by different software services.

Apache_Visitor_Access_Types.png

Apache - Visitor Locations Dashboard

The Apache - Visitor Locations Dashboard provides a high-level view of Apache visitor geographic locations both worldwide and in the United States. Dashboard panels also show graphic trends for visits by country over time and visits by  US region over time.

Use this dashboard to:

Gain insights into geographic locations of your user base.  This is useful for resource planning in different regions across the globe.

Apache_Visitor_Locations.png

Apache  - Visitor Traffic Insight Dashboard

The Apache - Visitor Traffic Insight Dashboard provides detailed information on the top documents accessed, top referrers, top search terms from popular search engines, and the media types served.

Use this dashboard to:

Understand the type of content that is frequently requested by users. This information can be helpful when allocating IT resources according to the content types.

Apache_Visitor_Traffic_Insight.png

Apache - Web Server Operations Dashboard

The Apache - Web Server Operations Dashboard provides a high-level view combined with detailed information on the top ten bots, geographic locations and data for clients with high error rates, server errors over time, and non 200 response code status codes. Dashboard panels also show information on server error logs, error log levels, error responses by server, and the top URIs responsible for 404 responses.

Use this dashboard to:

This dashboard provides visibility into servers operations, errors, and the geographic locations of clients producing errors. This is helpful for detecting when a regional server is misbehaving and throwing errors.

Apache_Web_Server_Operations.png

Apache - Threat Analysis Dashboard

The Apache - Threat Analysis Dashboard provides an at-a-glance view of threats to Apache servers on your network. Dashboard panels display threat count over a selected time period, geographic locations where threats occurred, source breakdown, actors responsible for threats, severity, and a correlation of IP addresses, method, and status code of threats.

Use this dashboard to:

Understand Threats in incoming traffic and discover potential IOCs. Incoming traffic requests are analyzed using the Sumo - Crowdstrikes threat feed.

Apache_Threat_Analysis.png

Apache - Outlier Analysis Dashboard

The Apache -  Outlier Analysis Dashboard provides a high-level view of Apache server outlier metrics for bytes served, number of visitors, and server errors. You can select the time interval over which outliers are aggregated, then hover the cursor over the graph to display detailed information for that point in time. Use the dashboard and panel filters to drill down and view more granular data.

Use this dashboard to:

Detect outliers in your infrastructure with Sumo Logic’s machine learning algorithm. This dashboards allows to find outliers in incoming traffic and the number of errors encountered by your servers.

Apache_Outlier_Analysis.png

Apache - Error Overview Dashboard

The Apache - Error Overview Dashboard provides a high-level view of log level breakdowns,  comparisons, and trends. The panels also show the geographic locations of clients and clients with critical messages, new connections and outliers, client requests, request trends, and request outliers.

Use this dashboard to:

  • Track requests from clients and analyze outliers in client requests. A request is a message asking for a resource, such as a page or an image.
  • Track new connection requests from clients and view their geographic locations.
  • Track critical alerts and emergency errors alerts.

Apache_Error_Overview.png