Hi
Could you, please, help with two issues about Kibana alarms?
-
The tags I can add to a rule when creating a rule from the Rules and Connectors page seem to be integrated with the tags I can create from the Kibana Tags menu? The tags from Kibana tags can be attached to Kibana objects, so I expect tags created while editing a rule also was create in Kibana tags and visa versa.
-
How do I get access to terms in the documents returned to the rule by an Elasticsearch query, so I can write the values out in the message? I would like to write like this in the message Log level: {{context.log.level}} as an example assuming the query returns one document. It would also be useful to be able to iterate over the returned documents.
Best regards
Flemming