Is it possible for Graylog to alert me if the volume of messages is a designated percentage higher than the average qty of messages over a given period of history. I can be alerted if messages hit a certain Count per Time frame… I was looking into a percentage instead of a Count.
For example, can I be alerted if the volume of messages are 1000 messages per minute greater than the average of the previous 30 minutes,or is this even Possible in Graylog2 ?
I looked in Graylog Market and found this
I don’t believe it can be set for a percentage.
Any suggestions would be appreciated. Thank in advance.