Hi Team,
I am trying to setup an alert if the count of errors are in range of between 10 to19(more then 10 and less than 19).
for example:
index=abc sourcetype=xyz "errors"
only if count >= 10 AND count <=19, should only trigger alert.
please help
thank you
| where count >= 10 AND count <=19
Then trigger your alert if there are any results
Thank you its working