You can do a search to find what events the address was found in, but time window analysis like that you will have to do yourself.
On 16 March 2015 at 04:26, Mitul Golakiya <[email protected]> wrote: > Hello All, > > We are tacking user with elastic search. I want to retrieve data like, > > Check if same mac address was there for more than 5 times in 1 minute of > timeframe. > > How can I retrieve data like this ? > > Thanks. > > -- > You received this message because you are subscribed to the Google Groups > "elasticsearch" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to [email protected]. > To view this discussion on the web visit > https://groups.google.com/d/msgid/elasticsearch/49ff391f-c64c-4d7b-8990-f126de1e2de0%40googlegroups.com > <https://groups.google.com/d/msgid/elasticsearch/49ff391f-c64c-4d7b-8990-f126de1e2de0%40googlegroups.com?utm_medium=email&utm_source=footer> > . > For more options, visit https://groups.google.com/d/optout. > -- You received this message because you are subscribed to the Google Groups "elasticsearch" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/elasticsearch/CAEYi1X9aP2K5RNgw8mh9TX98E2iL175Ayr%3D%2B134HDdRF7eNWaA%40mail.gmail.com. For more options, visit https://groups.google.com/d/optout.
