Generating augmented process models for process analytics

    公开(公告)号:US11210622B2

    公开(公告)日:2021-12-28

    申请号:US15339787

    申请日:2016-10-31

    Applicant: Splunk Inc.

    Abstract: Embodiments of the present invention are directed to generating augmented process models for use in process analytics. In one embodiment, a process model, search indicators, composite attributes, and relationship indicators are received. The process model defines a process and includes a plurality of components of the process. Search indicators indicate a search that, when executed, provides data related to the corresponding component. Composite attributes indicate data to be captured by machine data searches associated with the corresponding component. Relationship indicators indicate relationships between components of the process. An augmented process model is generated based on the process model, the search indicators, the composite attributes, and the relationship indicators, wherein the augmented process model is used to manage process instances associated with the process.

    Visualizing network activity across network address spaces

    公开(公告)号:US11190422B2

    公开(公告)日:2021-11-30

    申请号:US16779056

    申请日:2020-01-31

    Applicant: Splunk Inc.

    Abstract: Techniques and mechanisms are disclosed for generating visualizations which graphically depict network activity occurring between pairs of networked computing devices. The visualizations are based on data indicating the network activity, where the network activity can involve devices having any network addresses within an entire network address space (e.g., any address within the Internet Protocol version v4 (IPv4) or IPv6 network address space), or within some subset of an entire network address space. The ability to visualize high-level information related to network activity occurring across an entire network address space enables network analysts and other users to readily analyze characteristics of computer networks which otherwise might not be evident or difficult to obtain using other types of visualizations.

    INTERVAL-BASED GENERATION OF EVENT STREAMS BY REMOTE CAPTURE AGENTS

    公开(公告)号:US20200336390A1

    公开(公告)日:2020-10-22

    申请号:US16908564

    申请日:2020-06-22

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system obtains a set of event streams from one or more remote capture agents over one or more networks, wherein the set of event streams comprises time-series event data generated from network packets captured by the one or more remote capture agents. Next, the system causes for display, within a graphical user interface (GUI), a first set of user interface elements, wherein the first set of user interface elements includes event stream information for an event stream in the set of event streams and a first graph of a metric associated with the time-series event data in the event stream. The system then updates the first graph in real-time with the time-series event data from the one or more remote capture agents.

    VISUALIZING NETWORK ACTIVITY INVOLVING NETWORKED COMPUTING DEVICES DISTRIBUTED ACROSS NETWORK ADDRESS SPACES

    公开(公告)号:US20200169484A1

    公开(公告)日:2020-05-28

    申请号:US16779056

    申请日:2020-01-31

    Applicant: Splunk Inc.

    Abstract: Techniques and mechanisms are disclosed for generating visualizations which graphically depict network activity occurring between pairs of networked computing devices. The visualizations are based on data indicating the network activity, where the network activity can involve devices having any network addresses within an entire network address space (e.g., any address within the Internet Protocol version v4 (IPv4) or IPv6 network address space), or within some subset of an entire network address space. The ability to visualize high-level information related to network activity occurring across an entire network address space enables network analysts and other users to readily analyze characteristics of computer networks which otherwise might not be evident or difficult to obtain using other types of visualizations.

    Visualizing network activity involving networked computing devices distributed across network address spaces

    公开(公告)号:US10594576B2

    公开(公告)日:2020-03-17

    申请号:US15421389

    申请日:2017-01-31

    Applicant: Splunk Inc.

    Abstract: Techniques and mechanisms are disclosed for generating visualizations which graphically depict network activity occurring between pairs of networked computing devices. The visualizations are based on data indicating the network activity, where the network activity can involve devices having any network addresses within an entire network address space (e.g., any address within the Internet Protocol version v4 (IPv4) or IPv6 network address space), or within some subset of an entire network address space. The ability to visualize high-level information related to network activity occurring across an entire network address space enables network analysts and other users to readily analyze characteristics of computer networks which otherwise might not be evident or difficult to obtain using other types of visualizations.

    Managing ephemeral event streams generated from captured network data

    公开(公告)号:US10523521B2

    公开(公告)日:2019-12-31

    申请号:US14610457

    申请日:2015-01-30

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that contain temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream. The system then updates the configuration information based on input received through the first set of user-interface elements.

    CREATING AN ENTITY DEFINITION FROM A SEARCH RESULT SET

    公开(公告)号:US20170322985A1

    公开(公告)日:2017-11-09

    申请号:US15662206

    申请日:2017-07-27

    Applicant: Splunk Inc.

    Abstract: A processing device performs a search query to produce a search result set having entries having data items. A table, having rows and columns, is displayed in a user interface. Each data item of a particular entry appears in a respective column of the same row of the table. Each column may correspond to the ordinal position of its respective data item. User input is received designating, for each respective column, a field name and an entity definition component type to which the respective column pertains, and stores for each data item of the particular entry an element value of an entity definition. The element has the element name designated for the respective column in which the data item appeared, and is associated with an entity definition component having the type designated for the respective column in which the data item appeared.

    VISUALIZATIONS OF STATISTICS ASSOCIATED WITH CAPTURED NETWORK DATA
    20.
    发明申请
    VISUALIZATIONS OF STATISTICS ASSOCIATED WITH CAPTURED NETWORK DATA 审中-公开
    与被捕获的网络数据相关的统计数据的可视化

    公开(公告)号:US20150341212A1

    公开(公告)日:2015-11-26

    申请号:US14699807

    申请日:2015-04-29

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display a graphical user interface (GUI) for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements containing a set of statistics associated with one or more event streams that comprise the time-series event data. The system then causes for display, in the GUI, one or more graphs comprising one or more values from the set of statistics. Finally, the system causes for display, in the GUI, a value of a statistic from the set of statistics based on a position of a cursor over the one or more graphs.

    Abstract translation: 所公开的实施例提供了有助于网络数据的处理的系统。 在操作期间,该系统导致显示用于从由一个或多个远程捕获代理捕获的网络分组生成时间序列事件数据的图形用户界面(GUI)。 接下来,系统导致在GUI中显示包含与包括时间序列事件数据的一个或多个事件流相关联的一组统计信息的第一组用户界面元素。 然后,系统在GUI中显示包括来自该组统计信息中的一个或多个值的一个或多个图形。 最后,系统导致在GUI中根据一个或多个图形上的光标的位置从该组统计显示统计值的值。

Patent Agency Ranking