Get configuration and usage information for anomaly detection jobs.
This API returns a maximum of 10,000 jobs.
If the Elasticsearch security features are enabled, you must have monitor_ml,
monitor, manage_ml, or manage cluster privileges to use this API.
IMPORTANT: CAT APIs are only intended for human consumption using the Kibana console or command line. They are not intended for use by applications. For application consumption, use the get anomaly detection job statistics API. ##Required authorization
- Cluster privileges:
monitor_ml
Query parameters
-
Specifies what to do when the request:
- Contains wildcard expressions and there are no jobs that match.
- Contains the
_allstring or no identifiers and there are no matches. - Contains wildcard expressions and there are only partial matches.
If
true, the API returns an empty jobs array when there are no matches and the subset of results when there are partial matches. Iffalse, the API returns a 404 status code when there are no matches or only partial matches. -
The unit used to display byte values.
Values are
b,kb,mb,gb,tb, orpb. -
Comma-separated list of column names to display.
Values are
assignment_explanation,ae,buckets.count,bc,bucketsCount,buckets.time.exp_avg,btea,bucketsTimeExpAvg,buckets.time.exp_avg_hour,bteah,bucketsTimeExpAvgHour,buckets.time.max,btmax,bucketsTimeMax,buckets.time.min,btmin,bucketsTimeMin,buckets.time.total,btt,bucketsTimeTotal,data.buckets,db,dataBuckets,data.earliest_record,der,dataEarliestRecord,data.empty_buckets,deb,dataEmptyBuckets,data.input_bytes,dib,dataInputBytes,data.input_fields,dif,dataInputFields,data.input_records,dir,dataInputRecords,data.invalid_dates,did,dataInvalidDates,data.last,dl,dataLast,data.last_empty_bucket,dleb,dataLastEmptyBucket,data.last_sparse_bucket,dlsb,dataLastSparseBucket,data.latest_record,dlr,dataLatestRecord,data.missing_fields,dmf,dataMissingFields,data.out_of_order_timestamps,doot,dataOutOfOrderTimestamps,data.processed_fields,dpf,dataProcessedFields,data.processed_records,dpr,dataProcessedRecords,data.sparse_buckets,dsb,dataSparseBuckets,forecasts.memory.avg,fmavg,forecastsMemoryAvg,forecasts.memory.max,fmmax,forecastsMemoryMax,forecasts.memory.min,fmmin,forecastsMemoryMin,forecasts.memory.total,fmt,forecastsMemoryTotal,forecasts.records.avg,fravg,forecastsRecordsAvg,forecasts.records.max,frmax,forecastsRecordsMax,forecasts.records.min,frmin,forecastsRecordsMin,forecasts.records.total,frt,forecastsRecordsTotal,forecasts.time.avg,ftavg,forecastsTimeAvg,forecasts.time.max,ftmax,forecastsTimeMax,forecasts.time.min,ftmin,forecastsTimeMin,forecasts.time.total,ftt,forecastsTimeTotal,forecasts.total,ft,forecastsTotal,id,model.bucket_allocation_failures,mbaf,modelBucketAllocationFailures,model.by_fields,mbf,modelByFields,model.bytes,mb,modelBytes,model.bytes_exceeded,mbe,modelBytesExceeded,model.categorization_status,mcs,modelCategorizationStatus,model.categorized_doc_count,mcdc,modelCategorizedDocCount,model.dead_category_count,mdcc,modelDeadCategoryCount,model.failed_category_count,modelFailedCategoryCount,model.frequent_category_count,mfcc,modelFrequentCategoryCount,model.log_time,mlt,modelLogTime,model.memory_limit,mml,modelMemoryLimit,model.memory_status,mms,modelMemoryStatus,model.over_fields,mof,modelOverFields,model.partition_fields,mpf,modelPartitionFields,model.rare_category_count,mrcc,modelRareCategoryCount,model.timestamp,mt,modelTimestamp,model.total_category_count,mtcc,modelTotalCategoryCount,node.address,na,nodeAddress,node.ephemeral_id,ne,nodeEphemeralId,node.id,ni,nodeId,node.name,nn,nodeName,opened_time,ot,state, ors. -
Comma-separated list of column names or column aliases used to sort the response.
Values are
assignment_explanation,ae,buckets.count,bc,bucketsCount,buckets.time.exp_avg,btea,bucketsTimeExpAvg,buckets.time.exp_avg_hour,bteah,bucketsTimeExpAvgHour,buckets.time.max,btmax,bucketsTimeMax,buckets.time.min,btmin,bucketsTimeMin,buckets.time.total,btt,bucketsTimeTotal,data.buckets,db,dataBuckets,data.earliest_record,der,dataEarliestRecord,data.empty_buckets,deb,dataEmptyBuckets,data.input_bytes,dib,dataInputBytes,data.input_fields,dif,dataInputFields,data.input_records,dir,dataInputRecords,data.invalid_dates,did,dataInvalidDates,data.last,dl,dataLast,data.last_empty_bucket,dleb,dataLastEmptyBucket,data.last_sparse_bucket,dlsb,dataLastSparseBucket,data.latest_record,dlr,dataLatestRecord,data.missing_fields,dmf,dataMissingFields,data.out_of_order_timestamps,doot,dataOutOfOrderTimestamps,data.processed_fields,dpf,dataProcessedFields,data.processed_records,dpr,dataProcessedRecords,data.sparse_buckets,dsb,dataSparseBuckets,forecasts.memory.avg,fmavg,forecastsMemoryAvg,forecasts.memory.max,fmmax,forecastsMemoryMax,forecasts.memory.min,fmmin,forecastsMemoryMin,forecasts.memory.total,fmt,forecastsMemoryTotal,forecasts.records.avg,fravg,forecastsRecordsAvg,forecasts.records.max,frmax,forecastsRecordsMax,forecasts.records.min,frmin,forecastsRecordsMin,forecasts.records.total,frt,forecastsRecordsTotal,forecasts.time.avg,ftavg,forecastsTimeAvg,forecasts.time.max,ftmax,forecastsTimeMax,forecasts.time.min,ftmin,forecastsTimeMin,forecasts.time.total,ftt,forecastsTimeTotal,forecasts.total,ft,forecastsTotal,id,model.bucket_allocation_failures,mbaf,modelBucketAllocationFailures,model.by_fields,mbf,modelByFields,model.bytes,mb,modelBytes,model.bytes_exceeded,mbe,modelBytesExceeded,model.categorization_status,mcs,modelCategorizationStatus,model.categorized_doc_count,mcdc,modelCategorizedDocCount,model.dead_category_count,mdcc,modelDeadCategoryCount,model.failed_category_count,modelFailedCategoryCount,model.frequent_category_count,mfcc,modelFrequentCategoryCount,model.log_time,mlt,modelLogTime,model.memory_limit,mml,modelMemoryLimit,model.memory_status,mms,modelMemoryStatus,model.over_fields,mof,modelOverFields,model.partition_fields,mpf,modelPartitionFields,model.rare_category_count,mrcc,modelRareCategoryCount,model.timestamp,mt,modelTimestamp,model.total_category_count,mtcc,modelTotalCategoryCount,node.address,na,nodeAddress,node.ephemeral_id,ne,nodeEphemeralId,node.id,ni,nodeId,node.name,nn,nodeName,opened_time,ot,state, ors. -
The unit used to display time values.
Values are
nanos,micros,ms,s,m,h, ord.
GET _cat/ml/anomaly_detectors?h=id,s,dpr,mb&v=true&format=json
curl \
--request GET 'http://api.example.com/_cat/ml/anomaly_detectors'
[
{
"id": "high_sum_total_sales",
"s": "closed",
"dpr": "14022",
"mb": "1.5mb"
},
{
"id": "low_request_rate",
"s": "closed",
"dpr": "1216",
"mb": "40.5kb"
},
{
"id": "response_code_rates",
"s": "closed",
"dpr": "28146",
"mb": "132.7kb"
},
{
"id": "url_scanning",
"s": "closed",
"dpr": "28146",
"mb": "501.6kb"
}
]