I am very new in elasticsearch and kibana.
I have elasticsearch and kibana on the same on premise server. And filebeat agents are installed on several other servers (on premise). These agents send logs to elasticsearch. (There is no logstash)
How I can get an e-mail notification when some specific string like "error" or "warning" is logged?
Since there are several log files, I need the log file path, the log file server and the message which contains that specific string in the e-mail.
I tried to create log threshold and Elasticsearch query but I did not get the mentioned informations in e-mail. I dont know if I did correctly.