New to ELK
I'm trying to setup rules for alerting on Kibana. One of them would be "Host Down".
Trying to use the system.uptime.duration.ms metricset to tell me if a Host is down for more than 5 mins.
So far, below image is what I get. I turned off one the hosts and so I should be getting "1 instance has satisfied the condition" instead I'm getting 0. I know I'm missing something rudimentary here, Please help.
Also is there a link where we can view examples for alerting?