Hi I had setup of ELK stack on dev hosts,
I have installed http://elastalert.readthedocs.org/en/latest/index.html to get alerts,
but could not able to write rule file , which send alert if some exception is seen in logs
ex: if java.lang.OutOfMemoryError is seen in logs(elastic search ) I want alert mail to my email id,
Could any please help me to write rule file for my requirement .