Set Kibana alerting v2 rule data sources
Every Kibana alerting v2 rule evaluates data from one or more Elasticsearch indices. The data source is defined by the FROM command in the rule's ES|QL query.
Every Kibana alerting v2 rule evaluates data from one or more Elasticsearch indices. The data source is defined by the FROM command in the rule's ES|QL query.