Suggested field extraction
    33.
    发明授权

    公开(公告)号:US10915583B2

    公开(公告)日:2021-02-09

    申请号:US14610717

    申请日:2015-01-30

    Applicant: SPLUNK INC.

    Abstract: A based on a selection by a user of first one or more values of one or more events displayed in a graphical interface, an extraction rule is automatically determined that is capable of extracting a field label-value pair at least partially within at least the selected one or more values. An option is displayed that correspond to the determined extraction rule in the graphical interface. Based on the user selecting the option in the graphical interface, display is caused of second one or more values of one or more field label-value pairs extracted from the one or more events using the extraction rule. The one or more events may be displayed in a table format, and the first one or more value may be selected by the user selecting one or more cells, columns, or text portions in the table format.

    Suggested filed extraction
    34.
    发明授权

    公开(公告)号:US10719558B2

    公开(公告)日:2020-07-21

    申请号:US14610717

    申请日:2015-01-30

    Applicant: SPLUNK INC.

    Abstract: A based on a selection by a user of first one or more values of one or more events displayed in a graphical interface, an extraction rule is automatically determined that is capable of extracting a field label-value pair at least partially within at least the selected one or more values. An option is displayed that correspond to the determined extraction rule in the graphical interface. Based on the user selecting the option in the graphical interface, display is caused of second one or more values of one or more field label-value pairs extracted from the one or more events using the extraction rule. The one or more events may be displayed in a table format, and the first one or more value may be selected by the user selecting one or more cells, columns, or text portions in the table format.

    Supplemental event attributes in a table format

    公开(公告)号:US10204132B2

    公开(公告)日:2019-02-12

    申请号:US14815924

    申请日:2015-07-31

    Applicant: SPLUNK INC.

    Abstract: A method includes displaying events that correspond to search results of a search query, the events comprising data items of event attributes, the events displayed in a table. The table includes columns corresponding to an event attribute, rows corresponding events, cells populated data items, and interactive regions corresponding to at least one data item and selectable to add one or more commands to the search query. A reference event attribute is determined based on an analysis of a data object. A supplemental column corresponding to a supplemental event attribute is added to the table based on the reference event attribute. Supplemental interactive regions are added to the table and correspond to supplemental data items.

    Integrating query interfaces
    37.
    发明授权

    公开(公告)号:US10203842B2

    公开(公告)日:2019-02-12

    申请号:US14815927

    申请日:2015-07-31

    Applicant: SPLUNK INC.

    Abstract: A method includes receiving, in a first query interface, a query composed by the user by typing commands into a query box of the first query interface and based on the receiving of the query, causing events corresponding to query results of the query to be displayed in the first query interface with fields corresponding to the events. Based on the selection by the user of an option, a second query interface is displayed with a table that includes events that correspond to query results of a loaded query. The table includes columns corresponding to event attributes, rows corresponding to events. Cells are populated with the data items of event attributes, where one of the columns corresponds to a field of the fields displayed in the first query interface. The table also includes interactive regions selectable by the user to add one or more commands to the loaded query.

    Cell-based table manipulation of event data

    公开(公告)号:US10061824B2

    公开(公告)日:2018-08-28

    申请号:US14611002

    申请日:2015-01-30

    Applicant: SPLUNK INC.

    Abstract: A search interface is displayed in a table format that includes one or more columns, each column including data items of an event attribute, the data items being of a set of events, and a plurality of rows forming cells with the one or more columns, each cell including one or more of the data items of the event attribute of a corresponding column. Based on a user selecting one or more of the cells, a list of options if displayed corresponding to the selection, and one or more commands are added to a search query that corresponds to the set of events, the one or more commands being based on at least an option that is selected from the list of options and the event attribute for each of the one or more of the data items of each of the selected one or more cells.

    Defining Event Subtypes Using Examples
    39.
    发明申请
    Defining Event Subtypes Using Examples 审中-公开
    使用示例定义事件子类型

    公开(公告)号:US20170031659A1

    公开(公告)日:2017-02-02

    申请号:US14815954

    申请日:2015-07-31

    Applicant: Splunk Inc.

    Abstract: A facility for defining an event subtype using examples is described. The facility displays events identified among machine-generated data. The facility receives user input selecting a first subset of the events as examples of an event subtype. In response to receiving the user input, the facility displays a second subset of the events predicted to belong to the event subtype on the basis of the examples of the event subtype.

    Abstract translation: 描述使用示例来定义事件子类型的设施。 设备显示在机器生成的数据之间标识的事件。 该设施接收选择事件的第一子集的用户输入,作为事件子类型的示例。 响应于接收到用户输入,设施基于事件子类型的示例显示预测属于事件子类型的事件的第二子集。

    DATA SUMMARY VIEW WITH FILTERING
    40.
    发明申请
    DATA SUMMARY VIEW WITH FILTERING 审中-公开
    数据摘要查看与过滤

    公开(公告)号:US20160224676A1

    公开(公告)日:2016-08-04

    申请号:US14815932

    申请日:2015-07-31

    Applicant: SPLUNK INC.

    Abstract: In some embodiments, a method may include display of a data summary view of a set of events that correspond to query results of a query. Each event of the set of events may include data items of a plurality of event attributes. In embodiments, the data summary view can include various summary reports. Each summary report can include summary entries and a summary graph that each present a summary of data items of a selected event attribute, of the plurality of event attributes. At least one summary report can include summary entries that are selectable by a user. The method may further include filtering the set of event, in response to, and based on, selection of one or more of the selectable summary entries by the user and updating of at least the first and second summary graphs to correspond to the filtered set of events.

    Abstract translation: 在一些实施例中,方法可以包括显示与查询的查询结果相对应的一组事件的数据摘要视图。 事件集合的每个事件可以包括多个事件属性的数据项。 在实施例中,数据摘要视图可以包括各种总结报告。 每个总结报告可以包括摘要条目和总结图,每个摘要图表显示多个事件属性中所选事件属性的数据项的摘要。 至少一个摘要报告可以包括可由用户选择的摘要条目。 该方法可以进一步包括响应于并且基于用户对一个或多个可选择的摘要条目的选择来过滤事件集合,并且至少更新第一和第二摘要图表以对应于过滤的集合 事件

Patent Agency Ranking