Skip to content

Flatline alerts sending alerts even though logs are there #1424

Locked Answered by jertel
eeH9ahso asked this question in Q&A
Discussion options

You must be logged in to vote

Needs to be wrapped in quotes:

timestamp_field: "@timestamp"

Or just get rid of the line altogether since it's the default. I wasn't sure why you were trying to override it in the first place, since your Kibana screenshot shows that the timestamp field starts with @.

Replies: 1 comment 4 replies

Comment options

You must be logged in to vote
4 replies
@eeH9ahso
Comment options

@jertel
Comment options

@eeH9ahso
Comment options

@jertel
Comment options

Answer selected by jertel
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants