# Monitoring Alerts

**URL:** <https://discuss.elastic.co/t/monitoring-alerts/100040>\
**Category:** Elasticsearch\
**Tags:** elastic-stack-alerting\
**Created:** [September 11, 2017, 11:42am UTC](https://discuss.elastic.co/t/monitoring-alerts/100040 "2017-09-11T11:42:30Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![mykael](https://avatars.discourse-cdn.com/v4/letter/m/ec9cab/32.png) [@mykael](https://discuss.elastic.co/u/mykael)\
**Post date:** [September 11, 2017, 11:42am UTC](https://discuss.elastic.co/t/monitoring-alerts/100040/1 "2017-09-11T11:42:30Z")

</div>

The X-Pack doco makes mention of monitoring alerts raised by Watcher, but I'm struggling to find any more doco on it.

Is it just accomplished through the Watcher alert logging function?

Is there a document describing the format of the JSON records produced? And which index they are stored in?

---

<div class="post-metadata">

**Author:** ![spinscale](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/spinscale/32/25011_2.png) [@spinscale](https://discuss.elastic.co/u/spinscale)\
**Post date:** [September 11, 2017, 12:00pm UTC](https://discuss.elastic.co/t/monitoring-alerts/100040/2 "2017-09-11T12:00:33Z")

</div>

Hey,

those alerts are shown in the kibana UI by indexing into another index, when an alert occurs.  
You can query the `.watches` index to list all watches to find those, if you want.

Hope this helps.

--Alex

---

<div class="post-metadata">

**Author:** ![mykael](https://avatars.discourse-cdn.com/v4/letter/m/ec9cab/32.png) [@mykael](https://discuss.elastic.co/u/mykael)\
**Post date:** [September 11, 2017, 1:57pm UTC](https://discuss.elastic.co/t/monitoring-alerts/100040/3 "2017-09-11T13:57:31Z")

</div>

Thanks.

I'm looking at a tool to put alerts directly into indexes in elasticsearch  
and I was looking to see if there were any standard fields on the x-type  
alerts I could be compatible with, but I guess it just ends up with a  
message and timestamp.

Mik

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [October 9, 2017, 1:57pm UTC](https://discuss.elastic.co/t/monitoring-alerts/100040/4 "2017-10-09T13:57:43Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
