Skip to navigation

Aggregate Processor

Aggregate Processor

Purpose: The Aggregate Processor allows you to reduce data volume by grouping multiple events into a single event using Tumbling or Sliding Interval Windows. This helps minimize data sent out of Mezmo while preserving meaningful aggregated values.

Key Features:

  • Window Types: Choose between Tumbling (fixed interval, e.g., 1 minute to 25 hours) or Sliding (minimum duration with overlapping intervals).
  • Evaluation Options: Define how to aggregate data using sum, min, max, average, intersection, distributed concatenation, or custom JavaScript logic.
  • Grouping: Use field paths (name, namespace, tag) to group events based on log values.

Steps to Add:

  1. Navigate to the Pipeline page and select your pipeline.
  2. Click Edit Pipeline > Add Processor.
  3. Scroll to the Aggregate Processor and configure:
  • Title/Description for clarity.
  • Field path for grouping. a. Define evaluation operation (e.g., sum, average). b. Set interval for Tumbling or minimum duration for Sliding.

Note: For sliding window details, consult Mezmo product documentation.