How are multiple conditions interpreted in Kibana rules


Just looking for some guidance on how multiple conditions behave within a Kibana rule.


For example, the screenshot above shows a rule with 2 conditions, are those conditions interpreted as an "and" operator, and the two conditions have to be fulfilled to trigger an action or as an "or" operator when either condition is fulfilled it triggers an action.



Hi @zvazquez,

Both of the conditions need to be met in order to trigger an alert (so it's an "and" operator). You can also check this document for more information:

Hope that helps!

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.