elastalert
elastalert copied to clipboard
Rule is not working and Getting 400 request error in logs
Following error is coming :
ProcessController: WARNING:elasticsearch:GET https://sp-omega-fore-client-test.i.sp.expediagroup.net:443/kibana_sample*/_search?ignore_unavailable=true&_source_includes=%40timestamp%2C%2A&scroll=30s&size=10000 [status:400 request:0.005s]
However curl command on same is running fine.
May be anything to do with @timestamp which is not set automatically my guess