ES|QL Rules: Add Exclude matches from previous run #198529
Labels
Feature:ES|QL
ES|QL related features in Kibana
Team:ResponseOps
Label for the ResponseOps team (formerly the Cases and Alerting teams)
Describe the feature:
Currently the Elasticsearch Query for DSL and KQL support
Exclude matches from previous run
, but for ES|QL Rule this feature is missingDescribe a specific use case for the feature:
The use case is the same for DSL and KQL to prevent matching on the same alerts, and to be consistent for all search types within the same Rule category.
The text was updated successfully, but these errors were encountered: