Amazon CloudWatch announces lookup processor for log enrichment
News
Amazon CloudWatch now supports a lookup processor for enriching log events with additional context by matching fields against lookup tables within CloudWatch Pipelines.
- Upload CSV files containing reference data and match incoming log fields against this data
- Automatically tag logs with enriched metadata, such as mapping IP addresses to application teams
- Match log event fields against lookup table fields and add specified fields from matching rows
- Enable data enrichment scenarios like mapping user IDs to details or error codes to descriptions
- Enrich logs at ingestion time so queries, dashboards, and alarms immediately benefit from context
- Available in all AWS commercial regions supporting CloudWatch Pipelines
- Configure via AWS Management Console, AWS CLI, or AWS SDKs
The lookup processor eliminates the need for custom enrichment logic outside CloudWatch by providing native log enrichment capabilities.
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
Related articles
Mar 31
2026
2026
Amazon CloudWatch Logs introduces lookup query command
Jun 15
2026
2026
Amazon CloudWatch introduces Log Analytics for unified log analysis
Jun 19
2026
2026
Log analysis with facets, correlation, enrichment, and automation in Amazon CloudWatch Log Analytics
Nov 21
2024
2024
Amazon CloudWatch Logs launches the ability to transform and enrich logs
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.