As the documentation explains, alert indices are system/hidden indices, so use with caution! I’d suggest using the .alerts-* aliases instead of the corresponding .internal.alerts-* indices directly. If you need to query specific rule types, you can do so using the kibana.alert.rule.rule_type_id field in alert documents.
However if you only need to display alerts in your dashboards without complex queries, consider using the Alerts panel: it displays an alerts table you can filter by Solution, rule type and rule tags.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.