Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Watcher UI walkthrough for creating alerts #29392

Closed
danielkasen opened this issue Jan 25, 2019 · 10 comments
Closed

Watcher UI walkthrough for creating alerts #29392

danielkasen opened this issue Jan 25, 2019 · 10 comments
Labels
Feature:Watcher needs-team Issues missing a team label

Comments

@danielkasen
Copy link

I'm not sure if I missed this request or not. But it strikes me as odd that there isn't an easy way to build a watch using the WebUI. The simple alert doesn't even let you add a query string. SHouldn't there be an easy way to go from a query (maybe on the discover page too) to generate an event and then fill out to information about where it gets sent to and additional conditions you would want around the query? It feels like the sentinl project has a much more feature rich environment as a free product over the licensed watcher service.

@elasticmachine
Copy link
Contributor

Pinging @elastic/kibana-platform

@legrego legrego added Team:Core Core services & architecture: plugins, logging, config, saved objects, http, ES client, i18n, etc Feature:Watcher labels Jan 28, 2019
@njd5475
Copy link
Contributor

njd5475 commented Jan 28, 2019

@danielkasen We are currently working on component for an alerting service within kibana that should allow for much more flexibility with the types of alerts than watcher can provide. On top of that it should provide much better integration within Kibana. You can track the meta issue #24214 to see progress on it.

@danielkasen
Copy link
Author

Cool, look forward to seeing this released. I'm sure our users will be very happy.

@justinwalz
Copy link

In addition to creating alerts from a dedicated UI or Discover, it'd also be very nice to create alerts from Visualization too. Thanks!

Original query for reference https://discuss.elastic.co/t/create-watcher-from-visualization-of-saved-search/165940

@cjcenizal cjcenizal added the Team:Kibana Management Dev Tools, Index Management, Upgrade Assistant, ILM, Ingest Node Pipelines, and more label Feb 11, 2019
@elasticmachine
Copy link
Contributor

Pinging @elastic/es-ui

@justinwalz
Copy link

To add a little more context to my previous comment, I found this video extremely helpful in getting setup with visual builder https://www.youtube.com/watch?v=CNR-4kZ6v_E (blog: https://www.elastic.co/blog/master-time-with-kibanas-new-time-series-visual-builder). Thank you to the elastic team for pushing out content like this.

Ideally, at the end of this video, there'd be a blurb about creating alerts from the queries already setup in the visualization. While the original metric is the total number of bytes in or out, this graph lets you easily see what general network traffic looks like as a rate, in easier to understand units. Creating a good threshold to alert on from this graph is significantly easier than looking at an example document that metricbeat pushes, and trying to generate the same aggregated query using watcher inputs and transforms.

Best, Justin

@cjcenizal cjcenizal added Team:Stack Services and removed Team:Kibana Management Dev Tools, Index Management, Upgrade Assistant, ILM, Ingest Node Pipelines, and more Team:Core Core services & architecture: plugins, logging, config, saved objects, http, ES client, i18n, etc labels Jul 2, 2019
@elasticmachine
Copy link
Contributor

Pinging @elastic/kibana-stack-services

@cjcenizal
Copy link
Contributor

CC @mikecote @bmcconaghy I relabeled this to fall under Stack Services since this seems like something which will be handled by Alerting before Watcher.

@bmcconaghy bmcconaghy added Team:ResponseOps Label for the ResponseOps team (formerly the Cases and Alerting teams) and removed Team:Stack Services labels Dec 12, 2019
@ymao1
Copy link
Contributor

ymao1 commented Mar 4, 2021

@mikecote Is this issue still needed?

@mikecote
Copy link
Contributor

mikecote commented Mar 4, 2021

@ymao1 It's not clear if the problem also relates to Kibana alerting, we can re-open if necessary.

@ymao1 ymao1 closed this as completed Mar 4, 2021
@gmmorris gmmorris added Feature:Watcher and removed Feature:Alerting Team:ResponseOps Label for the ResponseOps team (formerly the Cases and Alerting teams) labels Jul 15, 2021
@botelastic botelastic bot added the needs-team Issues missing a team label label Jul 15, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Feature:Watcher needs-team Issues missing a team label
Projects
None yet
Development

No branches or pull requests

10 participants