forked from daichi703n/praeco-helm
-
Notifications
You must be signed in to change notification settings - Fork 0
/
vars.yml.example
46 lines (45 loc) · 1.18 KB
/
vars.yml.example
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
elastalert:
elasticsearch:
host: elasticsearch-master
port: 9200
useSsl: false
username: ""
password: ""
slack_webhook_url: https://hooks.slack.com/services/XXXXXXXXX/XXXXXXXXX/XXXXXXXXXXXXXXXXXXXXXXXX
extraConfigOptions:
slack_ignore_ssl_errors: true
rules:
static: |
__praeco_full_path: static
__praeco_query_builder: '{"query":{"logicalOperator":"all","children":[]}}'
alert:
- slack
alert_subject: Static Alert
alert_subject_args: []
alert_text: |
Alert at `{0}`
alert_text_args:
- '@timestamp'
alert_text_type: alert_text_only
filter:
- query:
query_string:
query: '@timestamp:*'
import: BaseRule.config
index: filebeat-*
is_enabled: true
name: static
realert:
minutes: 0
slack_channel_override: '#general'
slack_msg_color: warning
slack_title_link: 'http://praeco:8080/rules/static'
slack_username_override: Praeco
timestamp_field: '@timestamp'
timestamp_type: iso
type: any
use_strftime_index: false
praeco:
schema: http
external_host: praeco
port: 8080