Automatic generation of a field-extraction rule based on selections in a sample event
    141.
    发明授权
    Automatic generation of a field-extraction rule based on selections in a sample event 有权
    基于样本事件中的选择自动生成场提取规则

    公开(公告)号:US08909642B2

    公开(公告)日:2014-12-09

    申请号:US13748306

    申请日:2013-01-23

    Applicant: Splunk Inc.

    CPC classification number: G06F17/271

    Abstract: Embodiments are directed towards automatically generating extraction rules for extracting fields from event records. An extraction rule application receives field data describing the fields to be extracted (including one or more examples) and a collection of event records that may be a representative sample set from a larger set of events records. The extraction rule application generates extraction rules based on the event records and the field data. These extraction rules may be ranked using a determined quality score. Quality scores for extraction rules may be determined based on various metrics related to the operation of the extraction rules and the resultant extracted values. Preferred extraction rules may be determined by ranking the extraction rules based on their quality scores. Also, natural language expressions may be used to create, edit, or modify extraction rules.

    Abstract translation: 实施例针对自动生成从事件记录中提取字段的提取规则。 提取规则应用程序接收描述要提取的字段(包括一个或多个示例)的字段数据以及可以是来自较大事件记录集合的代表性样本集合的事件记录的集合。 提取规则应用程序根据事件记录和字段数据生成提取规则。 这些提取规则可以使用确定的质量得分进行排名。 可以基于与提取规则的操作和所得到的提取值相关的各种度量来确定提取规则的质量分数。 可以通过基于它们的质量得分对提取规则进行排名来确定优选的提取规则。 此外,自然语言表达式可用于创建,编辑或修改提取规则。

    INTERFACE FOR MANAGING SPLITTABLE TIMESTAMPS ACROSS EVENT RECORDS
    142.
    发明申请
    INTERFACE FOR MANAGING SPLITTABLE TIMESTAMPS ACROSS EVENT RECORDS 审中-公开
    用于在事件记录之间管理可分割时间的界面

    公开(公告)号:US20140208217A1

    公开(公告)日:2014-07-24

    申请号:US13747177

    申请日:2013-01-22

    Applicant: SPLUNK INC.

    CPC classification number: G06F16/2477 G06F16/9014 G06F17/277

    Abstract: Embodiments are directed towards a graphical user interface to identify locations within event records with splittable timestamp information. A display of event records is provided using any of a variety of formats. A splittable timestamp selector allows a user to select one or more locations within event records as having time related information that may be split across the one or more locations, including, information based on date, time of day, day of the week, or other time information. Any of a plurality of mechanisms is used to associate the selected locations with the split timestamp information, including tags, labels, or header information within the event records. In other embodiments, a separate table, list, index, or the like may be generated that associates the selected locations with the split timestamp information. The split timestamp information may be used within extraction rules for selecting subsets of the event records.

    Abstract translation: 实施例针对图形用户界面,以使用可拆分的时间戳信息来识别事件记录内的位置。 使用各种格式的任何一种提供事件记录的显示。 可拆分时间戳选择器允许用户选择事件记录中的一个或多个位置具有可以跨越一个或多个位置分割的时间相关信息,包括基于日期,时间,星期几或其他的信息 时间信息。 使用多个机制中的任一个来将所选择的位置与分组时间戳信息相关联,包括事件记录内的标签,标签或标题信息。 在其他实施例中,可以生成将所选择的位置与分割的时间戳信息相关联的单独的表,列表,索引等。 分割时间戳信息可以在提取规则中用于选择事件记录的子集。

    AUTOMATICALLY GENERATING REGULAR EXPRESSIONS FOR DATA FIELD EXTRACTIONS WITH NATURAL LANGUAGE EDITING
    143.
    发明申请
    AUTOMATICALLY GENERATING REGULAR EXPRESSIONS FOR DATA FIELD EXTRACTIONS WITH NATURAL LANGUAGE EDITING 有权
    用自然语言编辑自动生成数据字段提取的常规表达

    公开(公告)号:US20140207792A1

    公开(公告)日:2014-07-24

    申请号:US13748306

    申请日:2013-01-23

    Applicant: SPLUNK INC.

    CPC classification number: G06F17/271

    Abstract: Embodiments are directed towards automatically generating extraction rules for extracting fields from event records. An extraction rule application receives field data describing the fields to be extracted (including one or more examples) and a collection of event records that may be a representative sample set from a larger set of events records. The extraction rule application generates extraction rules based on the event records and the field data. These extraction rules may be ranked using a determined quality score. Quality scores for extraction rules may be determined based on various metrics related to the operation of the extraction rules and the resultant extracted values. Preferred extraction rules may be determined by ranking the extraction rules based on their quality scores. Also, natural language expressions may be used to create, edit, or modify extraction rules.

    Abstract translation: 实施例针对自动生成从事件记录中提取字段的提取规则。 提取规则应用程序接收描述要提取的字段(包括一个或多个示例)的字段数据以及可以是来自较大事件记录集合的代表性样本集合的事件记录的集合。 提取规则应用程序根据事件记录和字段数据生成提取规则。 这些提取规则可以使用确定的质量得分进行排名。 可以基于与提取规则的操作和所得到的提取值相关的各种度量来确定提取规则的质量分数。 可以通过基于它们的质量得分对提取规则进行排名来确定优选的提取规则。 此外,自然语言表达式可用于创建,编辑或修改提取规则。

Patent Agency Ranking