elastalert
elastalert copied to clipboard
RequestError(400, u'search_phase_execution_exception', u'No mapping found for [alert_time] in order to sort on')
Hi~ I have a trouble,can you help me? ENV: elk-->5.6.16 elastalert-->0.1.39 when I have tested,it was successfully.But when I have started,it was error.
elastalert-test-rule example_rules/filebeat.yaml

python -m elastalert.elastalert --verbose --rule example_rules/filebeat.yaml

Did you find any solution?