Skip to content

How to send all warnings at once via http_post2 #1314

Closed Locked Answered by jertel
huangyutongs asked this question in Q&A
Discussion options

You must be logged in to vote

I suggest reviewing the docs that cover this topic: https://elastalert2.readthedocs.io/en/latest/ruletypes.html#aggregation. Also consider the any rule type if you're num_events property will be 1.

You don't need to specify the aggregation_key property since you don't want to separate the alerts.

Also, your aggregation time of 50 seconds is tiny compared to the frequency window. Consider adjusting either that value or the timeframe so that the aggregations is a multiple of the timeframe.

Replies: 1 comment 2 replies

Comment options

You must be logged in to vote
2 replies
@huangyutongs
Comment options

@jertel
Comment options

Answer selected by jertel
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants