Loading

Stack monitoring alerts

ECE ECK Elastic Cloud Hosted Self Managed

The Elastic Stack monitoring features provide Alerting rules out-of-the box to notify you of potential issues in the Elastic Stack. These rules are preconfigured based on the best practices recommended by Elastic. However, you can tailor them to meet your specific needs.

{{kib}} alerting notifications in {{stack-monitor-app}}
Note

The default Watcher based "cluster alerts" for Stack Monitoring have been recreated as rules in Kibana alerting features. For this reason, the existing Watcher email action monitoring.cluster_alerts.email_notifications.email_address no longer works. The default action for all Stack Monitoring rules is to write to Kibana logs and display a notification in the UI.

When you open Stack Monitoring for the first time, you will be asked to allow Kibana to create the default set of rules. They are initially configured to detect and notify on various conditions across your monitored clusters. You can view notifications for Cluster health, Resource utilization, and Errors and exceptions for Elasticsearch in real time.

If you denied creation of the default rules initially, or to recreate any deleted rules, then you can trigger Kibana to create the rules by going to Alerts and rules > Create default rules.

To receive external notifications for these alerts, you need to configure a connector and modify the relevant rule to use the connector. If you're using Elastic Cloud Hosted, then you can use the default Elastic-Cloud-SMTP email connector or configure your own.

Note

Some action types are subscription features, while others are free. For a comparison of the Elastic subscription levels, see the alerting section of the Subscriptions page.

To review and modify existing Stack Monitoring rules, click Enter setup mode on the Cluster overview page. Cards with alerts configured are annotated with an indicator.

Tip

Alternatively, to manage all rules, including create and delete functionality go to Stack Management > Rules.

  1. On any card showing available alerts, select the alerts indicator. Use the menu to select the type of alert for which you’d like to be notified.
  2. In the Edit rule pane, set how often to check for the condition and how often to send notifications.
  3. In the Actions section, select the connector that you'd like to use for notifications.
  4. Configure the connector message contents and select Save.

The following rules are preconfigured for stack monitoring.