On-Premise Log Monitoring
Self-hosted AlphaSOC deployments now have a Monitoring tab in the local web interface that shows recent engine logs directly in the browser. You can filter by severity, narrow to a time range, search the log text, and leave the view on auto-refresh while you work.
Local log viewing is independent of log upload. Reading your own logs through the interface previously meant enabling upload of those logs to AlphaSOC; the two are now separate, so you can troubleshoot a self-hosted deployment without any log data leaving your environment.
Log capture writes to a directory the deployment configures. Snap installations are set up automatically. For manual and systemd installations, set the log directory as described in the installation guide before the Monitoring tab will show anything.