You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The alert rule 'Index Threshold' should have a box like the 'Elastic Search Query' that lets you specify a query that scopes the aggregation being done.
Describe a specific use case for the feature:
I have an index with logs from multiple deployments being dumped in it that all have the field "deployment". I would like to specify different rules for certain deployments while using the 'Index Threshold' alerting rule. There is currently no way to filter your results before Grouping.
The text was updated successfully, but these errors were encountered:
Hi @andystroz, thank you for your enhancement request. We've been tracking the filtering feature under #66046. I've copied your use case into it, so we do not forget. So I will close this issue in favour of #66046.
Describe the feature:
The alert rule 'Index Threshold' should have a box like the 'Elastic Search Query' that lets you specify a query that scopes the aggregation being done.
Describe a specific use case for the feature:
I have an index with logs from multiple deployments being dumped in it that all have the field "deployment". I would like to specify different rules for certain deployments while using the 'Index Threshold' alerting rule. There is currently no way to filter your results before Grouping.
The text was updated successfully, but these errors were encountered: