Does Search Alert in 7.12 include query?

Dear all =)

When I read the summary for [Alerting] Search alert by ymao1 · Pull Request #88528 · elastic/kibana · GitHub it says

New stack alert for executing ES DSL (query only, no aggregation support) and evaluating the number of matches against a threshold condition.

But when reading

I don't see any mention of how to make an alert using DSL query is done. Did that not make it into 7.12, or am I missing something?

Sandra =)

Hi @Sandra_Schlichting ,

The Elasticsearch query alert is definitely part of 7.12. You can find the documentation for it under "Alerting and Actions" -> "Alerts" -> "Elasticsearch query" (Elasticsearch query | Kibana Guide [7.12] | Elastic).

Hope this helps :slight_smile:

Dear Mike

It very much did. Thanks =)

Do you know if they are supported in the REST API, so I can automate creating and deleting them?

Sandra =)

Absolutely, you can use the Create alert API | Kibana Guide [7.12] | Elastic to do so :slight_smile:

Feel free to observe the request sent by the browser to see how the properties map and you can automate by using our official API.

Wow! I had no idea that was possible. Thanks a lot =)

