Elasticsearch cluster query logic by ElastAlert

Hi, I have question. I am planning to use elasticalert for Elasticsearch. I have 1 cluster with 3 node in my docker es01,es02 and es03. Can I know when elasticalert query in es01, if data does not exists will it query in es02 as well automatically? As the data is split into shards

You will need to ask the developers of elastalert how their query code works, it's not something that we support sorry.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.