input_octets
the values of the above fields is an incrementing counter.
Is there a way to make an Elastic machine learning job which can detect drops in traffic somehow? To do that it would have to detect changes in the rate the octets increment. I've tried, but was unable to do that.
Not sure what you tried, but this should work fine as is. I just did a quick mockup using the following CSV, with a contrived discontinuity of slope in it:
Imported into elasticsearch with File Upload. Configured an ML job:
Cool - but it would be more effective to split the analysis on host using the Multi-metric job wizard rather than merely relying on using the host as an influencer.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.