Transforming event data using remote capture agents and transformation servers

    公开(公告)号:US10257059B2

    公开(公告)日:2019-04-09

    申请号:US15709343

    申请日:2017-09-19

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    Abstract: The disclosed embodiments provide a method and system for processing network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network data obtained from network packets at the remote capture agent. The system then uses the configuration information to configure transformation of the event data or the network data into transformed event data at the remote capture agent.

    Dynamic configuration of remote capture agents for network data capture

    公开(公告)号:US09923767B2

    公开(公告)日:2018-03-20

    申请号:US14253744

    申请日:2014-04-15

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    CPC classification number: H04L41/0816 H04L41/0856

    Abstract: The disclosed embodiments provide a method and system for facilitating the processing of network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network packets at the remote capture agent. Upon receiving an update to the configuration information from the configuration server, the system uses the update to reconfigure the generation of the event data by the remote capture agent during runtime of the remote capture agent.

    GRAPHICAL CONFIGURATION OF EVENT STREAMS FOR NETWORK DATA CAPTURE AND PROCESSING
    13.
    发明申请
    GRAPHICAL CONFIGURATION OF EVENT STREAMS FOR NETWORK DATA CAPTURE AND PROCESSING 审中-公开
    用于网络数据捕获和处理的事件流的图形配置

    公开(公告)号:US20150295775A1

    公开(公告)日:2015-10-15

    申请号:US14253767

    申请日:2014-04-15

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    CPC classification number: H04L41/22 H04L41/046 H04L41/0806 H04L43/04 H04L43/12

    Abstract: The disclosed embodiments provide a method and system for facilitating processing of network data. During operation, the system provides a graphical user interface (GUI) for obtaining configuration information for configuring the generation of event data from network data obtained from network packets at one or more remote capture agents. Next, the system enables use of the GUI in configuring the connection of one or more event streams containing the event data to one or more reactors for subsequent processing of the event data by the one or more reactors.

    Abstract translation: 所公开的实施例提供了一种便于处理网络数据的方法和系统。 在操作期间,系统提供图形用户界面(GUI),用于获得用于从在一个或多个远程捕获代理处从网络分组获得的网络数据配置事件数据的生成的配置信息。 接下来,该系统使得能够使用GUI来将包含事件数据的一个或多个事件流的连接配置到一个或多个反应器,用于由一个或多个反应器随后处理事件数据。

    Applying updated configuration dynamically to remote capture agents

    公开(公告)号:US12212475B1

    公开(公告)日:2025-01-28

    申请号:US18511884

    申请日:2023-11-16

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    Abstract: The disclosed embodiments provide a method and system for processing network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network data obtained from network packets at the remote capture agent. The system then uses the configuration information to configure transformation of the event data or the network data into transformed event data at the remote capture agent.

    CONFIGURING EVENT STREAM GENERATION IN CLOUD-BASED COMPUTING ENVIRONMENTS

    公开(公告)号:US20190312776A1

    公开(公告)日:2019-10-10

    申请号:US16445155

    申请日:2019-06-18

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    Abstract: The disclosed embodiments provide a method and system for facilitating the processing of network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network packets at the remote capture agent. Upon receiving an update to the configuration information from the configuration server, the system uses the update to reconfigure the generation of the event data by the remote capture agent during runtime of the remote capture agent.

    TRANSFORMING EVENT DATA USING REMOTE CAPTURE AGENTS AND TRANSFORMATION SERVERS

    公开(公告)号:US20190238431A1

    公开(公告)日:2019-08-01

    申请号:US16378400

    申请日:2019-04-08

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    Abstract: The disclosed embodiments provide a method and system for processing network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network data obtained from network packets at the remote capture agent. The system then uses the configuration information to configure transformation of the event data or the network data into transformed event data at the remote capture agent.

    Generating and transforming timestamped event data at a remote capture agent

    公开(公告)号:US10348583B2

    公开(公告)日:2019-07-09

    申请号:US15582309

    申请日:2017-04-28

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    Abstract: The disclosed embodiments provide a method and system for processing network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network data obtained from network packets at the remote capture agent. The system then uses the configuration information to configure transformation of the event data or the network data into transformed event data at the remote capture agent.

    Distributed processing of network data using remote capture agents

    公开(公告)号:US10127273B2

    公开(公告)日:2018-11-13

    申请号:US14253713

    申请日:2014-04-15

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    Abstract: The disclosed embodiments provide a method and system for processing network data. During operation, the system obtains one or more event streams from one or more remote capture agents over one or more networks, wherein the one or more event streams include event data generated from network packets captured by the one or more remote capture agents. Next, the system applies one or more transformations to the one or more event streams to obtain transformed event data from the event data. The system then enables querying of the transformed event data.

    TRANSFORMATION OF NETWORK DATA AT REMOTE CAPTURE AGENTS

    公开(公告)号:US20170237634A1

    公开(公告)日:2017-08-17

    申请号:US15582309

    申请日:2017-04-28

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    Abstract: The disclosed embodiments provide a method and system for processing network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network data obtained from network packets at the remote capture agent. The system then uses the configuration information to configure transformation of the event data or the network data into transformed event data at the remote capture agent.

    DYNAMIC CONFIGURATION OF REMOTE CAPTURE AGENTS FOR NETWORK DATA CAPTURE
    20.
    发明申请
    DYNAMIC CONFIGURATION OF REMOTE CAPTURE AGENTS FOR NETWORK DATA CAPTURE 有权
    用于网络数据捕获的远程捕获代理的动态配置

    公开(公告)号:US20150295765A1

    公开(公告)日:2015-10-15

    申请号:US14253744

    申请日:2014-04-15

    Applicant: Splunk Inc.

    Inventor: Michael Dickey

    CPC classification number: H04L41/0816 H04L41/0856

    Abstract: The disclosed embodiments provide a method and system for facilitating the processing of network data. During operation, the system obtains, at a remote capture agent, configuration information for the remote capture agent from a configuration server over a network. Next, the system uses the configuration information to configure the generation of event data from network packets at the remote capture agent. Upon receiving an update to the configuration information from the configuration server, the system uses the update to reconfigure the generation of the event data by the remote capture agent during runtime of the remote capture agent.

    Abstract translation: 所公开的实施例提供了一种便于处理网络数据的方法和系统。 在操作期间,系统在远程捕获代理处通过网络从配置服务器获取远程捕获代理的配置信息。 接下来,系统使用配置信息来配置从远程捕获代理的网络数据包生成事件数据。 在从配置服务器接收到对配置信息的更新之后,系统使用该更新在远程捕获代理的运行时期间由远程捕获代理重新配置事件数据的生成。

Patent Agency Ranking