Aggregate Processor
Aggregate Processor
Purpose: The Aggregate Processor allows you to reduce data volume by grouping multiple events into a single event using Tumbling or Sliding Interval Windows. This helps minimize data sent out of Mezmo while preserving meaningful aggregated values.
Key Features:
- Window Types: Choose between Tumbling (fixed interval, e.g., 1 minute to 25 hours) or Sliding (minimum duration with overlapping intervals).
- Evaluation Options: Define how to aggregate data using sum, min, max, average, intersection, distributed concatenation, or custom JavaScript logic.
- Grouping: Use field paths (name, namespace, tag) to group events based on log values.
Steps to Add:
- Navigate to the Pipeline page and select your pipeline.
- Click Edit Pipeline > Add Processor.
- Scroll to the Aggregate Processor and configure:
- Title/Description for clarity.
- Field path for grouping. a. Define evaluation operation (e.g., sum, average). b. Set interval for Tumbling or minimum duration for Sliding.
Note: For sliding window details, consult Mezmo product documentation.