# Uptime Monitor Alert Maintenance Window

**URL:** <https://discuss.elastic.co/t/uptime-monitor-alert-maintenance-window/341702>\
**Category:** Synthetics\
**Created:** [August 25, 2023, 3:21pm UTC](https://discuss.elastic.co/t/uptime-monitor-alert-maintenance-window/341702 "2023-08-25T15:21:04Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![wwalker](https://avatars.discourse-cdn.com/v4/letter/w/43a26b/32.png) [@wwalker](https://discuss.elastic.co/u/wwalker)\
**Post date:** [August 25, 2023, 3:21pm UTC](https://discuss.elastic.co/t/uptime-monitor-alert-maintenance-window/341702/1 "2023-08-25T15:21:04Z")

</div>

I have an uptime monitor configured to look at a website. There is an automated task that restarts SQL for this application, which causes an HTTP 5xx code during restart. This causes the uptime monitor to report the site as down. I'd like to create a window in the monitor to not alert during this timeframe. I've tried the below filters on the monitor config, but it says it's going to match all monitors and not this specific one. How can I create a window for this monitor to not report down between 04:45 - 5:05 UTC?

**Reg Ex timestamp**  
`monitor.id : example.contoso.net AND NOT @timestamp >= /\d{4}-\d{2}-\d{2}T04:45.*/ AND NOT @timestamp <= /\d{4}-\d{2}-\d{2}T05:05.*/`

**KQL Wildcard timestamp**  
`monitor.id : example.contoso.net AND NOT @timestamp >= *T04:45* AND NOT @timestamp <= *T05:05*`

---

<div class="post-metadata">

**Author:** ![jsanz](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/jsanz/32/53734_2.png) [@jsanz](https://discuss.elastic.co/u/jsanz)\
**Post date:** [September 4, 2023, 1:33pm UTC](https://discuss.elastic.co/t/uptime-monitor-alert-maintenance-window/341702/2 "2023-09-04T13:33:26Z")

</div>

Unfortunately at this moment maintenance windows affect all rules. There is already a feature request to allow filtering as described here

> <https://github.com/elastic/kibana/issues/164255>
>
> \*\*Describe the feature:\*\*
> 
> The new maintenance window feature is a great conce…pt, however, it has one serious flaw; it affects all rules in the space during the maintenance window. I'd like to be able to "filter" the Rules/Alerts that the maintenance window will affect.
> 
> \*\*Describe a specific use case for the feature:\*\*
> 
> Maintenance windows are great because they allow for suppressing notifications while doing work, however, in their current implementation, they suppress \_all\_ alerts for \_all\_ rules in a space.
> 
> A few reasons why this can be an issue.
> 
> \## Use Case 1
> 
> Suppose I want to work on System A, and not have notifications for this system. If I add a Maintenance window, now I won't get alerts if System B has an issue, even though I really want to get alerts from System B, as I'm not actively working on this system.
> 
> \## Use Case 2
> 
> Similar to Use Case 1, but slightly different, suppose \`Operations Team A\` and \`Operations Team B\`, both operate out of a shared space \`Observability\`. If \`Operations Team A\` wants to do work on their systems and they add a Maintenance Window, then \`Operations Team B\` will now not get notified if one of there rules fires.
> 
> In both of the use cases above, Maintenance Windows now become a "dangerous" feature as they have the real possibility of hiding issues that aren't intended to be hidden.
> 
> (I think something similar to the recently added Conditional Actions functionality, would be a relatively robust fit for Maintenance Windows to make them more effective)

Feel free to chime in there with more details or feedback as you see fit.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [October 2, 2023, 1:34pm UTC](https://discuss.elastic.co/t/uptime-monitor-alert-maintenance-window/341702/3 "2023-10-02T13:34:05Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
