Add the fatalmonitor query to logstash_checker
This is meant to address some conclusions from the 2016-08-09 MW
incident report. Mainly that the fatalmonitor and the logstash_checker
used by scap differ. This should allow deployments to use the same
information that is seen by deployers and non just rely on MediaWiki
errors and exceptions.