Skip to content

Log count not matching between alert duration chart and Log spikes analysis chart #160618

Open
@benakansara

Description

Reference: #160321

I noticed a difference in log count between this chart and Log spikes analysis chart. Is this expected?

For this chart, criteria is passed as KQL and group by is passed as filter. In the Log spikes, we are passing everything as filter. Depending on the criteria, there can be different filter types - term, match, match_phrase, range which are used in rule executor. Do they provide same results as KQL generated for this chart?

Screenshot 2023-06-27 at 10 59 25 Screenshot 2023-06-27 at 10 59 47 Screenshot 2023-06-27 at 12 21 59

Originally posted by @benakansara in #160321 (review)

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Assignees

No one assigned

    Labels

    :mlFeature:ML/AIOpsML AIOps features: Change Point Detection, Log Pattern Analysis, Log Rate AnalysisTeam: Actionable Observability - DEPRECATEDFor Observability Alerting and SLOs use "Team:obs-ux-management", for AIops "Team:obs-knowledge"bugFixes for quality problems that affect the customer experience

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions