Hello,
How can I alert based on conditions across a variety of different data sources.
For example, I want to be alert if log.level: error x 3 from logs-* AND system.filesystem.used.pct >= 80% from metrics-*
Thanks,
Hello,
How can I alert based on conditions across a variety of different data sources.
For example, I want to be alert if log.level: error x 3 from logs-* AND system.filesystem.used.pct >= 80% from metrics-*
Thanks,
Do you want to specify both the condition in one alert?
yes!
By correlating data between sources would allow to pinpoint the root cause of an alert.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.