Edited alert queries retain old query
Posted: Thu Jun 01, 2017 12:44 pm
There seems to be a bug when we try to manually edit the query of an existing alert. If I create a query that searches for the word "ldap", then I create an alert based on that, I cannot edit that alert query afterwards. I've tried editing the original query to search for a new word, I've tried editing it in the text field that opens when I click on the advances link in the edit query window, and I even tried creating a dashboard with the new query. No matter what is done, the alert query keeps the old search word, in this example "ldap". Is this a known bug?
Sever info:
Nagios Log Server 1.4.4
Elasticsearch 1.6.0
Logstash 1.5.1
Kibana 3.1.1-nagios3
Thanks!
Sever info:
Nagios Log Server 1.4.4
Elasticsearch 1.6.0
Logstash 1.5.1
Kibana 3.1.1-nagios3
Thanks!