i have created a machine learning job and i have selected this job in the correspondent machine learning rule in Security->Rules-> Detection Rules and have added as action a notification to my e-mail.
I have also set up a notification email on the machine learning job level.
However i am not receiving any notification from the ML rule. I am receiving notification only from the job.
Have you got any idea why this happens?
Hello, just to let you know that after attending an elastic workshop i was able to find the solution to this. I had to widen the lookback time of the detection rule.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.