-
公开(公告)号:US11556577B2
公开(公告)日:2023-01-17
申请号:US17028722
申请日:2020-09-22
Applicant: SPLUNK INC.
Inventor: R. David Carasso , Micah James Delfino , Johnvey Hwang
IPC: G06F7/00 , G06F16/34 , G06F16/242 , G06F16/2458 , G06F40/40 , G06F40/166 , G06F40/174 , G06F3/0484 , H04L67/10 , G06F3/04842
Abstract: Embodiments are directed towards real time display of event records and extracted values based on at least one extraction rule, such as a regular expression. A user interface may be employed to enable a user to have an extraction rule automatically generate and/or to manually enter an extraction rule. The user may be enabled to manually edit a previously provided extraction rule, which may result in real time display of updated extracted values. The extraction rule may be utilized to extract values from each of a plurality of records, including event records of unstructured machine data. Statistics may be determined for each unique extracted value, and may be displayed to the user in real time. The user interface may also enable the user to select at least one unique extracted value to display those event records that include an extracted value that matches the selected value.
-
公开(公告)号:US20220156244A1
公开(公告)日:2022-05-19
申请号:US17589818
申请日:2022-01-31
Applicant: Splunk Inc.
Inventor: Michael Joseph Baum , R. David Carasso , Robin Kumar Das , Rory Greene , Bradley Hall , Nicholas Christian Mealy , Brian Philip Murphy , Stephen Phillip Sorkin , Andre David Stechert , Erik M. Swan
IPC: G06F16/22 , G06F16/248 , G06F16/951 , G06F16/23 , G06F16/2458 , G06F16/2455 , G06F16/2457
Abstract: Methods and apparatus are disclosed to automatically timestamp events within streaming machine data. The streaming machine data is broken into a set of events using breaking rules. Each event can be analyzed by iterating over own time stamp format patterns from a list of known time stamp format patterns to determine whether a matching pattern exists in the event. When an individual event broken out from the streaming machine data includes time information according to at least one known time stamp format pattern of the list of known time stamp format patterns, a timestamp can be created for the event by extracting a time value from event ng the matching pattern determined to exist in the event.
-
公开(公告)号:US11126477B2
公开(公告)日:2021-09-21
申请号:US15885753
申请日:2018-01-31
Applicant: Splunk Inc.
Inventor: Michael Joseph Baum , R. David Carasso , Robin Kumar Das , Bradley Hall , Brian Philip Murphy , Stephen Phillip Sorkin , Andre David Stechert , Erik M. Swan , Rory Greene , Nicholas Christian Mealy , Christina Frances Regina Noren
IPC: G06F9/54
Abstract: Methods and apparatus consistent with the invention provide the ability to organize and build understandings of machine data generated by a variety of information-processing environments. Machine data is a product of information-processing systems (e.g., activity logs, configuration files, messages, database records) and represents the evidence of particular events that have taken place and been recorded in raw data format. In one embodiment, machine data is turned into a machine data web by organizing machine data into events and then linking events together.
-
公开(公告)号:US11119833B2
公开(公告)日:2021-09-14
申请号:US16399146
申请日:2019-04-30
Applicant: Splunk Inc.
Inventor: Michael Joseph Baum , R. David Carasso , Robin Kumar Das , Bradley Hall , Brian Philip Murphy , Stephen Phillip Sorkin , Andre David Stechert , Erik M. Swan , Rory Greene , Nicholas Christian Mealy , Christina Frances Regina Noren
IPC: G06F9/54
Abstract: Methods and apparatus consistent with the invention provide the ability to organize and build understandings of machine data generated by a variety of information-processing environments. Machine data is a product of information-processing systems (e.g., activity logs, configuration files, messages, database records) and represents the evidence of particular events that have taken place and been recorded in raw data format. In one embodiment, machine data is turned into a machine data web by organizing machine data into events and then linking events together.
-
公开(公告)号:US11100150B2
公开(公告)日:2021-08-24
申请号:US15582671
申请日:2017-04-29
Applicant: SPLUNK, Inc.
Inventor: R. David Carasso , Micah James Delfino , Johnvey Hwang
IPC: G06F16/34 , G06F16/242 , G06F16/2458 , G06F3/0484 , H04L29/08 , G06F40/166 , G06F40/40 , G06F40/174 , G06F17/24 , G06F17/28
Abstract: Embodiments are directed towards real time display of event records and extracted values based on at least one extraction rule, such as a regular expression. A user interface may be employed to enable a user to have an extraction rule automatically generate and/or to manually enter an extraction rule. The user may be enabled to manually edit a previously provided extraction rule, which may result in real time display of updated extracted values. The extraction rule may be utilized to extract values from each of a plurality of records, including event records of unstructured machine data. Statistics may be determined for each unique extracted value, and may be displayed to the user in real time. The user interface may also enable the user to select at least one unique extracted value to display those event records that include an extracted value that matches the selected value.
-
公开(公告)号:US11036567B2
公开(公告)日:2021-06-15
申请号:US16399136
申请日:2019-04-30
Applicant: Splunk Inc.
Inventor: Michael Joseph Baum , R. David Carasso , Robin Kumar Das , Bradley Hall , Brian Philip Murphy , Stephen Phillip Sorkin , Andre David Stechert , Erik M. Swan , Rory Greene , Nicholas Christian Mealy , Christina Frances Regina Noren
IPC: G06F9/54
Abstract: Methods and apparatus consistent with the invention provide the ability to organize and build understandings of machine data generated by a variety of information-processing environments. Machine data is a product of information-processing systems (e.g., activity logs, configuration files, messages, database records) and represents the evidence of particular events that have taken place and been recorded in raw data format. In one embodiment, machine data is turned into a machine data web by organizing machine data into events and then linking events together.
-
117.
公开(公告)号:US10977233B2
公开(公告)日:2021-04-13
申请号:US15885806
申请日:2018-01-31
Applicant: Splunk Inc.
Inventor: Erik M. Swan , R. David Carasso , Robin Kumar Das , Rory Greene , Bradley Hall , Nicholas Christian Mealy , Brian Philip Murphy , Stephen Phillip Sorkin , Andre David Stechert , Michael Joseph Baum
IPC: G06F7/00 , G06F16/22 , G06F16/248 , G06F16/951 , G06F16/23 , G06F16/2458 , G06F16/2455 , G06F16/2457
Abstract: Methods and apparatus consistent with the invention provide the ability to organize, index, search, and present time series data based on searches. Time series data are sequences of time stamped records occurring in one or more usually continuous streams, representing some type of activity. In one embodiment, time series data is organized into discrete events with normalized time stamps and the events are indexed by time and keyword. A search is received and relevant event information is retrieved based in whole or in part on the time indexing mechanism, keyword indexing mechanism, or statistical indices calculated at the time of the search.
-
118.
公开(公告)号:US10891281B2
公开(公告)日:2021-01-12
申请号:US15963740
申请日:2018-04-26
Applicant: Splunk Inc.
Inventor: Michael Joseph Baum , R. David Carasso , Robin Kumar Das , Rory Greene , Bradley Hall , Nicholas Christian Mealy , Brian Philip Murphy , Stephen Phillip Sorkin , Andre David Stechert , Erik M. Swan
IPC: G06F16/00 , G06F16/22 , G06F16/248 , G06F16/951 , G06F16/23 , G06F16/2458 , G06F16/2455 , G06F16/2457
Abstract: Methods and apparatus consistent with the invention provide the ability to organize, index, search, and present time series data based on searches. Time series data are sequences of time stamped records occurring in one or more usually continuous streams, representing some type of activity. In one embodiment, time series data is stored as discrete events time stamps. A search is received and relevant event information is retrieved based in whole or in part on the time stamp, a keyword indexing mechanism, or statistical indices calculated at the time of the search.
-
公开(公告)号:US10747742B2
公开(公告)日:2020-08-18
申请号:US15883552
申请日:2018-01-30
Applicant: Splunk Inc.
Inventor: Michael Joseph Baum , R. David Carasso , Robin Kumar Das , Rory Greene , Bradley Hall , Nicholas Christian Mealy , Brian Philip Murphy , Stephen Phillip Sorkin , Andre David Stechert , Erik M. Swan
IPC: G06F16/00 , G06F16/22 , G06F16/248 , G06F16/951 , G06F16/23 , G06F16/2458 , G06F16/2455 , G06F16/2457
Abstract: Methods and apparatus consistent with the invention provide the ability to organize, index, search, and present time series data based on searches. Time series data are sequences of time stamped records occurring in one or more usually continuous streams, representing some type of activity. In one embodiment, time series data is stored as discrete events time stamps. A search is received and relevant event information is retrieved based in whole or in part on the time stamp, a keyword indexing mechanism, or statistical indices calculated at the time of the search.
-
公开(公告)号:US20200174986A1
公开(公告)日:2020-06-04
申请号:US16779552
申请日:2020-01-31
Applicant: Splunk Inc.
Inventor: Michael Joseph Baum , R. David Carasso , Robin Kumar Das , Rory Greene , Bradley Hall , Nicholas Christian Mealy , Brian Philip Murphy , Stephen Phillip Sorkin , Andre David Stechert , Erik M. Swan
IPC: G06F16/22 , G06F16/2457 , G06F16/2455 , G06F16/2458 , G06F16/23 , G06F16/951 , G06F16/248
Abstract: Methods and apparatus consistent with the invention provide the ability to search and present time series data based on searches. Time series data are sequences of time stamped records occurring in one or more usually continuous streams, representing some type of activity. In one embodiment, time series data is organized into discrete events with normalized time stamps and the events are indexed by time and keyword. A search is received and relevant event information is retrieved based in whole or in part on the time indexing mechanism, keyword indexing mechanism, or statistical indices calculated at the time of the search.
-
-
-
-
-
-
-
-
-