Open
Description
Description
What: we are introducing an ungrouped alerts option to configure alerts for ES|QL rule type. See description of #1580 for more info.
When: 9.1/8.19
Why: Update the ES query ES|QL rule type to allow users to generate an alert for each row in the query results, using a unique alert identifier
Resources
Which documentation set does this change impact?
Elastic On-Prem and Cloud (all)
Kibana:
- 9.0: https://www.elastic.co/docs/explore-analyze/alerts-cases/alerts/rule-type-es-query
- 8.18: https://www.elastic.co/guide/en/kibana/8.18/rule-type-es-query.html
Observability:
- 9.0: https://www.elastic.co/docs/solutions/observability/incident-management/create-an-elasticsearch-query-rule
- 8.18: No page in 8.18
Feature differences
The feature is identical in all deployment methods
What release is this request related to?
8.19/9.1
Serverless release
May 5, 2025
Collaboration model
The documentation team
Point of contact.
Main contact: @doakalexi @tiamliu
Stakeholders: