Overview of the Query Center
View information about the In Progress and Completed queries that that were run on the tenant.
The Query Center displays information about all queries that were run on the tenant, and the queries that are currently In Progress. The Query Center displays the following tabs:
Query History
View and manage all completed Cortex Query Language (XQL) and Graph Search queries. On this tab you can view query results, re-run and adjust queries, and schedule when a query runs. You can also see details of cancelled queries, including the query type and source, and the name of the user who cancelled the query.
Active Queries
View and manage all queries that are currently In Progress on the tenant. You can view details about a running query, including the user who ran the query, the context from which it ran, the source of the query, and the amount of time that the query has been running. From this tab you can also cancel active queries.
Note
Very short queries might not be listed.
You cannot cancel correlation queries.
The default retention period for historic queries is aligned with issue retention.
Edit and run queries in Query Center
From the Query Center you can take action on the Completed and In Progress queries that are running on your tenant.
Right-click a query to see the available options, where some of the options differ depending on the type of query you've selected. The pivot (right-click) options described below are some of the ones that may require further explanation.
Note
If query limits are applied to your tenant, the number of concurrent running queries is limited per user. If query usage is reaching the defined limit, a system message warns you that a high query load is impacting performance. If you exceed the limit, new queries are blocked until query usage drops. You can view all active queries under Query Center → Active Queries, and cancel queries to reduce the load.
Query Center reference information
The table below lists the common fields in the Query Center, where the options differ for an XQL query versus a Graph Search query.
Last updated
Was this helpful?

