[en] Server Logs
ملاحظة
[en] This article describes the Server Logs functionality introduced in 2026 R1, which uses OpenTelemetry and VictoriaLogs. If your system uses the legacy Log Server, refer to the documentation for your XProtect version instead.
[en] Introduction
تقوم مكونات خادم XProtectVMS بإنشاء إدخالات سجل لنشاط النظام والأحداث والأخطاء. يتم جمع إدخالات السجل هذه وإرسالها باستخدام OpenTelemetry من خلال بروتوكول OpenTelemetry (OTLP).
[en] The OpenTelemetry Collector forwards log data to a log processing service. By default, this is VictoriaLogs.
[en] You can view system logs, audit logs, and rule logs in XProtect Management Client. From the Server Logs page, you can search, filter, and analyze log entries to investigate system activity, user actions, events, and errors.
[en] Some logging settings, including retention and collection behavior, are managed outside XProtect Management Client through the OpenTelemetry Collector and VictoriaLogs configuration files.
[en] OpenTelemetry and the OTLP protocol
[en] OpenTelemetry is an open standard for collecting and transferring telemetry data, including logs. XProtect uses the OpenTelemetry Protocol (OTLP) to send log data between components in the logging infrastructure.
[en] Using OTLP makes the logging infrastructure more flexible. In addition to the default setup with VictoriaLogs, you can connect the system to external logging or monitoring solutions that support OTLP.
للحصول على نظرة عامة حول كيفية تعامل OpenTelemetry مع السجلات كإشارة قياس عن بعد، راجع تسجيل OpenTelemetry في وثائق OpenTelemetry: .https://opentelemetry.io/docs/specs/otel/logs/
خدمة OpenTelemetry Collector
تتطلب سجلات الخادم تشغيل خدمة OpenTelemetry Collector. ترسل مكونات XProtectخادم السجلات إلى المجمع باستخدام بروتوكول OpenTelemetry (OTLP)، ويقوم المجمع بإعادة توجيه السجلات إلى VictoriaLogs أو إلى حل تسجيل خارجي.
[en] The OpenTelemetry Collector receives log data from XProtect server components and forwards it to the configured log processing service. By default, this is VictoriaLogs.
[en] VictoriaLogs
[en] VictoriaLogs serves as the log database engine for XProtect logs, handling log storage, querying, and analysis. It replaces the SQL Server-based log database used in earlier versions of XProtect.
[en] You can access log data from the Server Logs page in XProtect Management Client.
[en] By default, system logs and rule logs are retained for 7 days, and audit logs are retained for 30 days. Older log entries are automatically deleted when the retention period expires. You can modify the retention settings in the VictoriaLogs configuration files stored on the Management Server. For more information, see Set log retention policy.