I'm using logstash + elasticsearch + kibana to monitor my logfiles.
What i'm doing is sending e-mail each time a field contains a pattern. But it is not usefull as i get a lot of entries with that pattern. I want to know if it is possible to send e-mails after receiving 20 logs with that pattern in a minute.
I'm sure it is possible but i cannot make it works like that.