“Active Alerts” – something like “Username, coming in from IP x.y.z is consuming a high number of database connections.” Is this possible? please let me know

Yes it is.

@warkolm thanks, So this can be done using watcher if i m correct.


@bini the input of most watches is an elasticsearch query. So all you have to do is to find and create the elasticsearch query you want and make sure this query is part of a watch.

thanks @spinscale

