Linking event streams across applications of a data intake and query system

    公开(公告)号:US11086897B2

    公开(公告)日:2021-08-10

    申请号:US16442338

    申请日:2019-06-14

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements comprising event stream information for one or more ephemeral event streams used to temporarily generate the time-series event data from the network packets. The system then causes for display, in the GUI, a mechanism for navigating between the event stream information and creation information for one or more creators of the one or more ephemeral event streams.

    INTERVAL-BASED GENERATION OF EVENT STREAMS BY REMOTE CAPTURE AGENTS

    公开(公告)号:US20200336390A1

    公开(公告)日:2020-10-22

    申请号:US16908564

    申请日:2020-06-22

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system obtains a set of event streams from one or more remote capture agents over one or more networks, wherein the set of event streams comprises time-series event data generated from network packets captured by the one or more remote capture agents. Next, the system causes for display, within a graphical user interface (GUI), a first set of user interface elements, wherein the first set of user interface elements includes event stream information for an event stream in the set of event streams and a first graph of a metric associated with the time-series event data in the event stream. The system then updates the first graph in real-time with the time-series event data from the one or more remote capture agents.

    VISUALIZING NETWORK ACTIVITY INVOLVING NETWORKED COMPUTING DEVICES DISTRIBUTED ACROSS NETWORK ADDRESS SPACES

    公开(公告)号:US20200169484A1

    公开(公告)日:2020-05-28

    申请号:US16779056

    申请日:2020-01-31

    Applicant: Splunk Inc.

    Abstract: Techniques and mechanisms are disclosed for generating visualizations which graphically depict network activity occurring between pairs of networked computing devices. The visualizations are based on data indicating the network activity, where the network activity can involve devices having any network addresses within an entire network address space (e.g., any address within the Internet Protocol version v4 (IPv4) or IPv6 network address space), or within some subset of an entire network address space. The ability to visualize high-level information related to network activity occurring across an entire network address space enables network analysts and other users to readily analyze characteristics of computer networks which otherwise might not be evident or difficult to obtain using other types of visualizations.

    Visualizing network activity involving networked computing devices distributed across network address spaces

    公开(公告)号:US10594576B2

    公开(公告)日:2020-03-17

    申请号:US15421389

    申请日:2017-01-31

    Applicant: Splunk Inc.

    Abstract: Techniques and mechanisms are disclosed for generating visualizations which graphically depict network activity occurring between pairs of networked computing devices. The visualizations are based on data indicating the network activity, where the network activity can involve devices having any network addresses within an entire network address space (e.g., any address within the Internet Protocol version v4 (IPv4) or IPv6 network address space), or within some subset of an entire network address space. The ability to visualize high-level information related to network activity occurring across an entire network address space enables network analysts and other users to readily analyze characteristics of computer networks which otherwise might not be evident or difficult to obtain using other types of visualizations.

    Managing ephemeral event streams generated from captured network data

    公开(公告)号:US10523521B2

    公开(公告)日:2019-12-31

    申请号:US14610457

    申请日:2015-01-30

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that contain temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream. The system then updates the configuration information based on input received through the first set of user-interface elements.

    Configuring generation of multiple event streams from a packet flow

    公开(公告)号:US10264106B2

    公开(公告)日:2019-04-16

    申请号:US15799158

    申请日:2017-10-31

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that processes network data. During operation, the system obtains, at a remote capture agent, a first protocol classification for a first packet flow captured by the remote capture agent. Next, the system uses configuration information associated with the first protocol classification to build a first event stream from the first packet flow at the remote capture agent, wherein the first event stream comprises time-series event data generated from network packets in the first packet flow based on the first protocol classification. The system then transmits the first event stream over a network for subsequent storage and processing of the first event stream by one or more components on the network.

    VISUALIZATIONS OF STATISTICS ASSOCIATED WITH CAPTURED NETWORK DATA
    27.
    发明申请
    VISUALIZATIONS OF STATISTICS ASSOCIATED WITH CAPTURED NETWORK DATA 审中-公开
    与被捕获的网络数据相关的统计数据的可视化

    公开(公告)号:US20150341212A1

    公开(公告)日:2015-11-26

    申请号:US14699807

    申请日:2015-04-29

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display a graphical user interface (GUI) for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements containing a set of statistics associated with one or more event streams that comprise the time-series event data. The system then causes for display, in the GUI, one or more graphs comprising one or more values from the set of statistics. Finally, the system causes for display, in the GUI, a value of a statistic from the set of statistics based on a position of a cursor over the one or more graphs.

    Abstract translation: 所公开的实施例提供了有助于网络数据的处理的系统。 在操作期间,该系统导致显示用于从由一个或多个远程捕获代理捕获的网络分组生成时间序列事件数据的图形用户界面(GUI)。 接下来,系统导致在GUI中显示包含与包括时间序列事件数据的一个或多个事件流相关联的一组统计信息的第一组用户界面元素。 然后,系统在GUI中显示包括来自该组统计信息中的一个或多个值的一个或多个图形。 最后,系统导致在GUI中根据一个或多个图形上的光标的位置从该组统计显示统计值的值。

    INLINE VISUALIZATIONS OF METRICS RELATED TO CAPTURED NETWORK DATA
    28.
    发明申请
    INLINE VISUALIZATIONS OF METRICS RELATED TO CAPTURED NETWORK DATA 审中-公开
    与捕获的网络数据相关的度量的在线可视化

    公开(公告)号:US20150295778A1

    公开(公告)日:2015-10-15

    申请号:US14609223

    申请日:2015-01-29

    Applicant: Splunk Inc.

    CPC classification number: H04L41/22 H04L43/045 H04L43/0894

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system obtains a set of event streams from one or more remote capture agents over one or more networks, wherein the set of event streams comprises time-series event data generated from network packets captured by the one or more remote capture agents. Next, the system causes for display, within a graphical user interface (GUI), a first set of user interface elements, wherein the first set of user interface elements includes event stream information for an event stream in the set of event streams and a first graph of a metric associated with the time-series event data in the event stream. The system then updates the first graph in real-time with the time-series event data from the one or more remote capture agents.

    Abstract translation: 所公开的实施例提供了有助于网络数据的处理的系统。 在操作期间,系统通过一个或多个网络从一个或多个远程捕获代理获得一组事件流,其中该组事件流包括由一个或多个远程捕获代理捕获的网络分组生成的时间序列事件数据。 接下来,系统导致在图形用户界面(GUI)内显示第一组用户界面元素,其中第一组用户界面元素包括事件流集合中的事件流的事件流信息,以及第一组 与事件流中的时间序列事件数据相关联的度量图。 系统随后使用来自一个或多个远程捕获代理程序的时间序列事件数据实时更新第一个图形。

    Configuring the generation of ephemeral event streams by remote capture agents

    公开(公告)号:US11451453B2

    公开(公告)日:2022-09-20

    申请号:US16670816

    申请日:2019-10-31

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that contain temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream. The system then updates the configuration information based on input received through the first set of user-interface elements.

Patent Agency Ranking