Query for a new entry on a field

I have an index which contains a field network_device_ID

I want to alert whenever there a new entry coming into the Index. what is the best way to achieve this?

Cheers, Ginu

Have a look at the free Elast Alert or the premium feature of kibana.

Hi Defalt
thanks for the suggestion. but my question was more about how to cache the value which is already existing and only to alert the new Values coming in using Watchers.

in the example:

when there is a new network_device_id shows up. I want to alert.

Regards, Ginu