hi, I need to send alert if no logs for the time interval, how to do it? thank you
http://elastalert.readthedocs.io/en/latest/ruletypes.html#flatline
type: flatline timeframe: hours: 1 threshold: 1 ...
Most helpful comment
http://elastalert.readthedocs.io/en/latest/ruletypes.html#flatline