Skip to main content
Use the CVM log drawer to inspect a container’s runtime output. When Public Logs is enabled, you can also open the selected container’s log stream in a separate browser tab and share its URL.
Docker logs can contain application data, request details, or secrets written by your application. Only enable Public Logs when the output is safe to share with anyone who has the URL.

View Docker container logs

The log viewer opens from the Logs button in the upper-right corner of the CVM detail-page header.
CVM detail-page header with the Logs button highlighted in the upper-right corner

Logs in the CVM detail-page header

  1. Open your app in the Phala Cloud dashboard, then open the CVM instance.
  2. Click Logs in the CVM detail-page header.
  3. Under Docker Containers, select the container whose logs you want to view.
The log drawer switches to the selected container’s output. If a container does not have an available log endpoint, the container is disabled in the list.
CVM log drawer with demo-api selected under Docker Containers and its application output streaming

Docker Containers in the log source list

Open and copy a public log URL

  1. Select a container under Docker Containers.
  2. Open the log toolbar menu, then click Open in New Window.
  3. Copy the URL from the new window’s browser address bar.
Open in New Window is available only when the selected container has a public log endpoint. Anyone with the copied URL can open it without signing in to Phala Cloud.

Control public access

The Public Logs setting controls Phala Cloud’s managed Docker log endpoints. To change the setting for an existing CVM:
  1. Open the CVM detail page and click Settings.
  2. Find Worker Attestation Visibility Settings.
  3. Enable or disable Public Logs.
  4. Click Save Changes, then confirm the change.
Worker Attestation Visibility Settings with the Public Logs switch enabled

Public Logs under Worker Attestation Visibility Settings

Changing a visibility setting restarts the CVM. Its applications are temporarily unavailable during the restart.
For authenticated access to private Docker logs, follow Set up a private log viewer.