Skip to content

Cannot get flatline rule to work, please help #452

Closed Locked Answered by jertel
mkostechuk asked this question in Q&A
Discussion options

You must be logged in to vote

Your logs from the elastalert command only show 4 minutes of log data, but you are using a frequency of 50 or 60 minutes. So I have to assume you are not getting alerts even after 50 or 60 minutes either. Is that true? You have to let the app run for the full frequency duration before you will see alerts.

Without knowing what documents exist and at what times it's difficult to troubleshoot. When you search the default_test for robotName: robot in Kibana, are there any hits? If so, how often are they?

I suggest trimming back your frequency to 30 seconds to make it easier to troubleshoot, and then enable debug logging, and possibly es trace logging. The documentation for elastalert2 explain…

Replies: 3 comments 2 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
2 replies
@mkostechuk
Comment options

@jertel
Comment options

Answer selected by mkostechuk
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants