I am working on ELK stack and was wondering if a data source has stopped sending data to ELK due to any reason, how can we identify or alert team that this particular network device or server has stopped sending events.
can we create any rule or does elk has any thing build-in for this purpose.
Still waiting If someone can respond
Alerting would work.
Should be able to monitor your index and then alert if the index hasn't been updated in your given timeframe.
Isn't there any other way to do this, can we use some kind of application which will give this kind of feature.
and how can we configure an alert for this that index is not updating?