The error seems to be with the aggregations field - null pointer. But I did specify the Alert aggregation and make sure it's got documents with the condition:
I'm using Scripted Fields in my query - maybe that could be problematic in queries? because when I'm omitting them the query is good and I'm getting the results.
Edit:
The scripted fields which I'm using are nullable and I think that is the cause - is there any way to check for null inside the Watcher script?
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.