-
公开(公告)号:US10949419B2
公开(公告)日:2021-03-16
申请号:US15996226
申请日:2018-06-01
Applicant: Splunk Inc.
Inventor: Marc Vincent Robichaud , Cory Eugene Burke , Jeffrey Thomas Lloyd
IPC: G06F16/242 , G06F3/0482 , G06F3/0484
Abstract: A search interface is displayed in a table format that includes one or more columns, each column including data items of an event attribute, the data items being of a set of events, and a plurality of rows forming cells with the one or more columns, each cell displaying a textual representation of at least one of the data items of the event attribute of a corresponding column. Based on a user selecting a portion of the textual representation in a corresponding cell, a list of options is displayed that corresponds to the selected portion of the textual representation. Furthermore, one or more commands are added to a search query that corresponds to the set of events, the one or more commands being based on at least an option that is selected from the list of options and the selected portion of the textual representation in the corresponding cell.
-
公开(公告)号:US10762138B2
公开(公告)日:2020-09-01
申请号:US14610717
申请日:2015-01-30
Applicant: SPLUNK INC.
Inventor: Marc Vincent Robichaud , Cory Eugene Burke , Jeffrey Thomas Lloyd
IPC: G06F16/93 , G06F3/0482 , G06F16/242 , G06F16/2458 , G06F16/248 , G06F16/9038
Abstract: A based on a selection by a user of first one or more values of one or more events displayed in a graphical interface, an extraction rule is automatically determined that is capable of extracting a field label-value pair at least partially within at least the selected one or more values. An option is displayed that correspond to the determined extraction rule in the graphical interface. Based on the user selecting the option in the graphical interface, display is caused of second one or more values of one or more field label-value pairs extracted from the one or more events using the extraction rule. The one or more events may be displayed in a table format, and the first one or more value may be selected by the user selecting one or more cells, columns, or text portions in the table format.
-
公开(公告)号:US10726030B2
公开(公告)日:2020-07-28
申请号:US14815954
申请日:2015-07-31
Applicant: Splunk Inc.
Inventor: Cory Eugene Burke , Jacob Barton Leverich , Jeffrey Thomas Lloyd , Adam Jamison Oliner , Marc Vincent Robichaud , Jesse Miller
IPC: G06F16/248 , G06F11/30 , G06F11/34 , G06F16/242 , G06F16/245
Abstract: A facility for defining an event subtype using examples is described. The facility displays events identified among machine-generated data. The facility receives user input selecting a first subset of the events as examples of an event subtype. In response to receiving the user input, the facility displays a second subset of the events predicted to belong to the event subtype on the basis of the examples of the event subtype.
-
公开(公告)号:US10204093B2
公开(公告)日:2019-02-12
申请号:US14815932
申请日:2015-07-31
Applicant: SPLUNK INC.
Inventor: Jesse Miller , Marc V. Robichaud , Cory Burke , Jeffrey Thomas Lloyd , Alexander James , Andrew Robbins
IPC: G06F17/30 , G06F17/24 , G06F3/0484
Abstract: In some embodiments, a method may include display of a data summary view of a set of events that correspond to query results of a query. Each event of the set of events may include data items of a plurality of event attributes. In embodiments, the data summary view can include various summary reports. Each summary report can include summary entries and a summary graph that each present a summary of data items of a selected event attribute, of the plurality of event attributes. At least one summary report can include summary entries that are selectable by a user. The method may further include filtering the set of event, in response to, and based on, selection of one or more of the selectable summary entries by the user and updating of at least the first and second summary graphs to correspond to the filtered set of events.
-
公开(公告)号:US10185708B2
公开(公告)日:2019-01-22
申请号:US14815928
申请日:2015-07-31
Applicant: SPLUNK INC.
Inventor: Jesse Miller , Marc V. Robichaud , Cory Burke , Jeffrey Thomas Lloyd
Abstract: Embodiments of the present invention provide methods, computer-readable media, and systems directed at providing a data summary view. In some embodiments, a method may include receiving a request to display a data summary view of search results of a search query. The request may be received while the search results are displayed in a table format. The method may further include causing display of the data summary view. The data summary view can include a summary report for a selected event attribute of a plurality of event attributes that are represented in the table format. The summary report can include summary entries that present a summary of data items of the selected event attribute and a summary graph of the data items. The summary graph may depict a distribution of at least a subset of the data items of the selected event attribute over a period of time.
-
公开(公告)号:US10013454B2
公开(公告)日:2018-07-03
申请号:US14611026
申请日:2015-01-30
Applicant: SPLUNK INC.
Inventor: Marc Vincent Robichaud , Cory Eugene Burke , Jeffrey Thomas Lloyd
IPC: G06F17/30 , G06F3/0482 , G06F3/0484
CPC classification number: G06F16/2428 , G06F3/0482 , G06F3/04842 , G06F3/04847
Abstract: A search interface is displayed in a table format that includes one or more columns, each column including data items of an event attribute, the data items being of a set of events, and a plurality of rows forming cells with the one or more columns, each cell displaying a textual representation of at least one of the data items of the event attribute of a corresponding column. Based on a user selecting a portion of the textual representation in a corresponding cell, a list of options is displayed that corresponds to the selected portion of the textual representation. Furthermore, one or more commands are added to a search query that corresponds to the set of events, the one or more commands being based on at least an option that is selected from the list of options and the selected portion of the textual representation in the corresponding cell.
-
公开(公告)号:US20160224532A1
公开(公告)日:2016-08-04
申请号:US14815928
申请日:2015-07-31
Applicant: SPLUNK INC.
Inventor: JESSE MILLER , Marc V. Robichaud , Cory Burke , Jeffrey Thomas Lloyd
IPC: G06F17/24 , G06F3/0484 , G06T11/20 , G06F3/0482
CPC classification number: G06F17/245 , G06F3/0482 , G06F3/0484 , G06F3/04842 , G06F17/30 , G06F17/30365 , G06F17/30374 , G06F17/30392 , G06F17/30466 , G06F17/30507 , G06F17/30551 , G06F17/30572 , G06F17/30634 , G06F17/30663 , G06F21/6227 , G06Q10/10
Abstract: Embodiments of the present invention provide methods, computer-readable media, and systems directed at providing a data summary view. In some embodiments, a method may include receiving a request to display a data summary view of search results of a search query. The request may be received while the search results are displayed in a table format. The method may further include causing display of the data summary view. The data summary view can include a summary report for a selected event attribute of a plurality of event attributes that are represented in the table format. The summary report can include summary entries that present a summary of data items of the selected event attribute and a summary graph of the data items. The summary graph may depict a distribution of at least a subset of the data items of the selected event attribute over a period of time.
Abstract translation: 本发明的实施例提供了方法,计算机可读介质和旨在提供数据摘要视图的系统。 在一些实施例中,方法可以包括接收显示搜索查询的搜索结果的数据摘要视图的请求。 当以表格格式显示搜索结果时,可以接收该请求。 该方法还可以包括导致显示数据摘要视图。 数据摘要视图可以包括以表格格式表示的多个事件属性的所选事件属性的摘要报告。 总结报告可以包括提供所选事件属性的数据项摘要的摘要条目和数据项的汇总图。 汇总图可以描绘在一段时间内所选事件属性的数据项的至少一个子集的分布。
-
公开(公告)号:US11983167B1
公开(公告)日:2024-05-14
申请号:US17969582
申请日:2022-10-19
Applicant: SPLUNK INC.
Inventor: Jesse Miller , Marc V. Robichaud , Cory Burke , Alexander James , Jeffrey Thomas Lloyd
IPC: G06F16/33 , G06F3/0482 , G06F3/0484 , G06F3/04842 , G06F16/00 , G06F16/23 , G06F16/242 , G06F16/2453 , G06F16/2455 , G06F16/2458 , G06F16/26 , G06F21/62 , G06F40/134 , G06F40/174 , G06F40/177 , G06F40/186 , G06Q10/00 , G06T11/20 , G06Q10/10
CPC classification number: G06F16/2372 , G06F3/0482 , G06F3/0484 , G06F3/04842 , G06F16/00 , G06F16/23 , G06F16/235 , G06F16/2423 , G06F16/24544 , G06F16/24564 , G06F16/2477 , G06F16/26 , G06F16/33 , G06F16/3334 , G06F21/6227 , G06F40/134 , G06F40/174 , G06F40/177 , G06F40/186 , G06Q10/00 , G06T11/206 , G06Q10/10 , G06T2200/24
Abstract: A method includes receiving, in a first query interface, a query composed by the user by typing commands into a query box of the first query interface and based on the receiving of the query, causing events corresponding to query results of the query to be displayed in the first query interface with fields corresponding to the events. Based on the selection by the user of an option, a second query interface is displayed with a table that includes events that correspond to query results of a loaded query. The table includes columns corresponding to event attributes, rows corresponding to events. Cells are populated with the data items of event attributes, where one of the columns corresponds to a field of the fields displayed in the first query interface. The table also includes interactive regions selectable by the user to add one or more commands to the loaded query.
-
公开(公告)号:US11983166B1
公开(公告)日:2024-05-14
申请号:US17806151
申请日:2022-06-09
Applicant: SPLUNK INC.
Inventor: Jesse Miller , Marc V. Robichaud , Cory Burke , Jeffrey Thomas Lloyd , Alexander James , Andrew Robbins
IPC: G06F16/23 , G06F3/0482 , G06F3/0484 , G06F3/04842 , G06F16/00 , G06F16/242 , G06F16/2453 , G06F16/2455 , G06F16/2458 , G06F16/26 , G06F16/33 , G06F21/62 , G06F40/174 , G06F40/177 , G06F40/186 , G06Q10/00 , G06T11/20 , G06Q10/10
CPC classification number: G06F16/2372 , G06F3/0482 , G06F3/0484 , G06F3/04842 , G06F16/00 , G06F16/23 , G06F16/235 , G06F16/2423 , G06F16/24544 , G06F16/24564 , G06F16/2477 , G06F16/26 , G06F16/33 , G06F16/3334 , G06F21/6227 , G06F40/174 , G06F40/177 , G06F40/186 , G06Q10/00 , G06T11/206 , G06Q10/10 , G06T2200/24
Abstract: In some embodiments, a method may include display of a data summary view of a set of events that correspond to query results of a query. Each event of the set of events may include data items of a plurality of event attributes. In embodiments, the data summary view can include various summary reports. Each summary report can include summary entries and a summary graph that each present a summary of data items of a selected event attribute, of the plurality of event attributes. At least one summary report can include summary entries that are selectable by a user. The method may further include filtering the set of event, in response to, and based on, selection of one or more of the selectable summary entries by the user and updating of at least the first and second summary graphs to correspond to the filtered set of events.
-
公开(公告)号:US11698900B2
公开(公告)日:2023-07-11
申请号:US16520251
申请日:2019-07-23
Applicant: SPLUNK INC.
Inventor: Brian Krueger , Katherine Kyle Feeney , Andrew E. Robbins , Jesse Brandau Miller , Elizabeth Dykstra-Erickson , Jeffrey Thomas Lloyd , Cory Eugene Burke , Marc V. Robichaud
IPC: G06F16/242
CPC classification number: G06F16/2425
Abstract: In various embodiments, methods and systems for presenting a search interface with search query history based functionality is provided. A search query history store comprising search queries is accessed. The search query history store includes search queries executed in a search computing system. A search query comprises one or more commands. A plurality of search queries retrieved from the search query history store is displayed on the search interface using a placement style. A placement style, such as an indent style, provides a structure for separating and arranging commands of a plurality of search queries displayed. The search interface further provides for receiving a selection of at least a portion of a search query from the plurality of search queries to initiate actions or execute actions based on the selection. The search interface includes a search input interface, such as a search bar, where the selection of the portion of the search query is displayed based on a selected action.
-
-
-
-
-
-
-
-
-