Configuring event streams based on identified security risks

    公开(公告)号:US11818018B1

    公开(公告)日:2023-11-14

    申请号:US17875170

    申请日:2022-07-27

    Applicant: Splunk Inc.

    CPC classification number: H04L41/22 H04L43/022 H04L43/045

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that contain temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream. The system then updates the configuration information based on input received through the first set of user-interface elements.

    CONFIGURING THE GENERATION OF EPHEMERAL EVENT STREAMS BY REMOTE CAPTURE AGENTS

    公开(公告)号:US20200067790A1

    公开(公告)日:2020-02-27

    申请号:US16670816

    申请日:2019-10-31

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that contain temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream. The system then updates the configuration information based on input received through the first set of user-interface elements.

    GROUPING AND MANAGING EVENT STREAMS GENERATED FROM CAPTURED NETWORK DATA
    13.
    发明申请
    GROUPING AND MANAGING EVENT STREAMS GENERATED FROM CAPTURED NETWORK DATA 审中-公开
    从捕获的网络数据生成的事件流的分组和管理

    公开(公告)号:US20150295780A1

    公开(公告)日:2015-10-15

    申请号:US14610457

    申请日:2015-01-30

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that contain temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream. The system then updates the configuration information based on input received through the first set of user-interface elements.

    Abstract translation: 所公开的实施例提供了有助于网络数据的处理的系统。 在操作期间,系统导致在计算机系统上显示用于从由一个或多个远程捕获代理捕获的网络分组生成时间序列事件数据的配置信息的图形用户界面(GUI)。 接下来,系统导致在GUI中显示第一组用户界面元素,用于管理从网络分组中包含临时生成的时间序列事件数据的一个或多个临时事件流,其中管理一个或多个短暂事件 流包括修改用于终止在短暂事件流中捕获时间序列事件数据的结束时间。 然后,系统基于通过第一组用户界面元素接收的输入来更新配置信息。

Patent Agency Ranking