# "logs threshold rule" adding comparator: "MATCHES"

**URL:** <https://discuss.elastic.co/t/logs-threshold-rule-adding-comparator-matches/343986>\
**Category:** Elastic Observability\
**Created:** [September 27, 2023, 12:51pm UTC](https://discuss.elastic.co/t/logs-threshold-rule-adding-comparator-matches/343986 "2023-09-27T12:51:22Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![BRINDAH\_B](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/brindah_b/32/125978_2.png) [@BRINDAH\_B](https://discuss.elastic.co/u/BRINDAH_B)\
**Post date:** [September 27, 2023, 12:51pm UTC](https://discuss.elastic.co/t/logs-threshold-rule-adding-comparator-matches/343986/1 "2023-09-27T12:51:22Z")

</div>

Missing "comparator": "MATCHES" or "MATCHES PHRASE" in "logs threshold rule". I want end-user to be able to search text fields in that rule. Is this possible?  
At this stage we are not able to grant "all" privilege for end-user, for them to use the Elastisearch query rule.
