stack kb alerting-v2 get-alerting-v2-execution-history-action-policies cli command
elastic stack kb alerting-v2 get-alerting-v2-execution-history-action-policies \
--page <page> \
--per-page <per-page> \
--sort-field <sort-field> \
--sort-order <sort-order> \
[options]
List action policy executions
Behaviour flags:
--dry-run — validate all inputs and exit without performing any action
--pagenumberrequired- Page number (1-indexed). Defaults to 1.
--per-pagenumberrequired- Number of events per page. Defaults to 20. Pass 0 for a count-only read.
--sort-fieldenumrequired-
Sort field. Defaults to "dispatched_at".
Values: dispatched_at
--sort-orderenumrequired-
Sort direction. Defaults to "desc".
Values: asc, desc
--fromstring- Inclusive ISO datetime lower bound on the event timestamp; overrides the default 24-hour window. Independent of episode_ids — e.g. set it to an episode’s start time to scope results to that episode’s lifetime.
--tostring- Inclusive ISO datetime upper bound on the event timestamp.
--episode-idsstring[]-
Episode filter. Narrows events to those referencing at least one of the provided episode ids.
Repeatable: pass
--episode-idsmultiple times to supply more than one value --searchstring- Free-text search. Matches policy name, rule name, policy/rule ID (case-insensitive).
--rule-idsstring[]-
Explicit rule filter. Narrows events to those referencing at least one of the provided rule ids. Also unions with the search filter if both are provided.
Repeatable: pass
--rule-idsmultiple times to supply more than one value --outcomesstring[]-
Outcome filter. When omitted matches all outcomes. Pass one or more of "success", "throttled", "failure" to narrow.
Repeatable: pass
--outcomesmultiple times to supply more than one value --input-filestring- path to a JSON file to use as command input
--dry-run- validate all inputs and exit without performing any action (preview changes without applying them)
--no-validate- skip input validation and send the request as-is
--output-fieldsstring- comma-separated list of fields to include in output (dot-notation supported)
--output-templatestring- Mustache-like template for custom text output (e.g. "{{id}}: {{name}}")
--json-
output as JSON