-
公开(公告)号:US10204093B2
公开(公告)日:2019-02-12
申请号:US14815932
申请日:2015-07-31
Applicant: SPLUNK INC.
Inventor: Jesse Miller , Marc V. Robichaud , Cory Burke , Jeffrey Thomas Lloyd , Alexander James , Andrew Robbins
IPC: G06F17/30 , G06F17/24 , G06F3/0484
Abstract: In some embodiments, a method may include display of a data summary view of a set of events that correspond to query results of a query. Each event of the set of events may include data items of a plurality of event attributes. In embodiments, the data summary view can include various summary reports. Each summary report can include summary entries and a summary graph that each present a summary of data items of a selected event attribute, of the plurality of event attributes. At least one summary report can include summary entries that are selectable by a user. The method may further include filtering the set of event, in response to, and based on, selection of one or more of the selectable summary entries by the user and updating of at least the first and second summary graphs to correspond to the filtered set of events.
-
公开(公告)号:US10185708B2
公开(公告)日:2019-01-22
申请号:US14815928
申请日:2015-07-31
Applicant: SPLUNK INC.
Inventor: Jesse Miller , Marc V. Robichaud , Cory Burke , Jeffrey Thomas Lloyd
Abstract: Embodiments of the present invention provide methods, computer-readable media, and systems directed at providing a data summary view. In some embodiments, a method may include receiving a request to display a data summary view of search results of a search query. The request may be received while the search results are displayed in a table format. The method may further include causing display of the data summary view. The data summary view can include a summary report for a selected event attribute of a plurality of event attributes that are represented in the table format. The summary report can include summary entries that present a summary of data items of the selected event attribute and a summary graph of the data items. The summary graph may depict a distribution of at least a subset of the data items of the selected event attribute over a period of time.
-
公开(公告)号:US10037331B2
公开(公告)日:2018-07-31
申请号:US14611010
申请日:2015-01-30
Applicant: Splunk Inc.
Inventor: Alexander D. Munk , Jesse Miller
IPC: G06F17/30 , G06F3/0482
CPC classification number: G06F16/13 , G06F3/0482 , G06F16/148 , G06F16/168 , G06F16/951
Abstract: A data intake and query system provides interfaces that enable users to configure source type definitions used by the system. A data intake and query system generally refers to a system for collecting and analyzing data including machine-generated data. Such a system may be configured to consume many different types of machine data generated by any number of different data sources including various servers, network devices, applications, etc. At a high level, a source type definition comprises one or more properties that define how various components of a data intake and query system collect, index, store, search and otherwise interact with particular types of data consumed by the system. The interfaces provided by the system generally comprise one or more interface components for configuring various attributes of a source type definition.
-
公开(公告)号:US09922037B2
公开(公告)日:2018-03-20
申请号:US14611118
申请日:2015-01-30
Applicant: Splunk Inc.
Inventor: Jesse Miller
CPC classification number: G06F17/30091 , G06F11/30 , G06F11/323 , G06F11/3495 , G06F17/30106 , G06F17/30967 , G06F2201/86
Abstract: A graphical user interface allows a customer to specify delimiters and/or patterns that occur in event data and indicate the presence of a particular field. The graphical user interface applies a customer's delimiter specifications directly to event data and displays the resulting event data in real time. Delimiter specifications may be saved as configuration settings and systems in a distributed setting may use the delimiter specifications to extract field values as the systems process raw data into event data. Extracted field values are used to accelerate search queries that a system receives.
-
公开(公告)号:US20160224631A1
公开(公告)日:2016-08-04
申请号:US14815929
申请日:2015-07-31
Applicant: SPLUNK INC.
Inventor: ALEXANDER JAMES , Jesse Miller
IPC: G06F17/30
CPC classification number: G06F17/245 , G06F3/0482 , G06F3/0484 , G06F3/04842 , G06F17/30 , G06F17/30365 , G06F17/30374 , G06F17/30392 , G06F17/30466 , G06F17/30507 , G06F17/30551 , G06F17/30572 , G06F17/30634 , G06F17/30663 , G06F21/6227 , G06Q10/10
Abstract: A method includes assigning an access permission of a first user to a query object that represents a first query, the access permission granting are first user access rights to one or more data sources of the first query, the access permission being assigned as a runtime permission of the first query, granting a request from a second user to execute a second query, the first query being a subquery of the second query, and allowing the second user to execute the first query on the one or more data sources of the first query using the runtime permission assigned to the first query in executing the second query using the first query as the subquery.
Abstract translation: 一种方法包括将第一用户的访问许可分配给表示第一查询的查询对象,访问许可授予是对第一查询的一个或多个数据源的第一用户访问权限,访问许可被分配为运行时权限 所述第一查询授予来自第二用户的请求以执行第二查询,所述第一查询是所述第二查询的子查询,并且允许所述第二用户对所述第一查询的所述一个或多个数据源执行所述第一查询 使用第一个查询作为子查询执行第二个查询时分配给第一个查询的运行时权限。
-
公开(公告)号:US20160224576A1
公开(公告)日:2016-08-04
申请号:US14611010
申请日:2015-01-30
Applicant: Splunk Inc.
Inventor: Alexander D. Munk , Jesse Miller
IPC: G06F17/30 , G06F17/27 , G06F3/0482
CPC classification number: G06F17/30091 , G06F3/0482 , G06F17/30106 , G06F17/30126 , G06F17/30864
Abstract: A data intake and query system provides interfaces that enable users to configure source type definitions used by the system. A data intake and query system generally refers to a system for collecting and analyzing data including machine-generated data. Such a system may be configured to consume many different types of machine data generated by any number of different data sources including various servers, network devices, applications, etc. At a high level, a source type definition comprises one or more properties that define how various components of a data intake and query system collect, index, store, search and otherwise interact with particular types of data consumed by the system. The interfaces provided by the system generally comprise one or more interface components for configuring various attributes of a source type definition.
Abstract translation: 数据采集和查询系统提供使用户能够配置系统使用的源类型定义的接口。 数据采集和查询系统通常是指用于收集和分析包括机器生成数据的数据的系统。 这样的系统可以被配置为消耗由包括各种服务器,网络设备,应用等的任何数量的不同数据源生成的许多不同类型的机器数据。在高级别,源类型定义包括一个或多个属性,其定义如何 数据采集和查询系统的各种组件收集,索引,存储,搜索和以其他方式与系统消耗的特定类型的数据进行交互。 由系统提供的接口通常包括用于配置源类型定义的各种属性的一个或多个接口组件。
-
公开(公告)号:US12197420B1
公开(公告)日:2025-01-14
申请号:US18180397
申请日:2023-03-08
Applicant: Splunk Inc.
Inventor: Jesse Miller , Marc V. Robichaud , Cory Burke , Alexander James , Jeffrey Thomas Lloyd
IPC: G06F16/23 , G06F3/0482 , G06F3/0484 , G06F3/04842 , G06F16/00 , G06F16/242 , G06F16/2453 , G06F16/2455 , G06F16/2458 , G06F16/26 , G06F16/33 , G06F21/62 , G06F40/134 , G06F40/174 , G06F40/177 , G06F40/18 , G06Q10/00 , G06T11/20 , G06Q10/10
Abstract: A method includes displaying events that correspond to search results of a search query, the events comprising data items of event attributes, the events displayed in a table. The table includes columns corresponding to an event attribute, rows corresponding events, cells populated data items, and interactive regions corresponding to at least one data item and selectable to add one or more commands to the search query. A reference event attribute is determined based on an analysis of a data object. A supplemental column corresponding to a supplemental event attribute is added to the table based on the reference event attribute. Supplemental interactive regions are added to the table and correspond to supplemental data items.
-
公开(公告)号:US20240419712A1
公开(公告)日:2024-12-19
申请号:US18419179
申请日:2024-01-22
Applicant: Splunk Inc.
Inventor: Jesse Miller , Jason Szeto , Jose Solis , Jindrich Dinga , David Marquardt
IPC: G06F16/34 , G06F16/335 , G06F16/35 , G06T11/20
Abstract: Systems and methods are disclosed involving user interface (UI) search tools for locating data, including tools for summarizing indexed raw machine data that organize and present results to enable expansion and exploration of initial summarizations. The initial summarizations may be explored and refined to help users determine how to identify and best focus a search on data subsets of greater interest.
-
公开(公告)号:US11972203B1
公开(公告)日:2024-04-30
申请号:US18306863
申请日:2023-04-25
Applicant: Splunk Inc.
Inventor: Jesse Miller , Micah James Delfino , Marc Robichaud , David Carasso
IPC: G06F3/048 , G06F16/2458 , G06F40/174
CPC classification number: G06F40/174 , G06F16/2477
Abstract: The technology disclosed relates to formulating and refining field extraction rules that are used at query time on raw data with a late-binding schema. The field extraction rules identify portions of the raw data, as well as their data types and hierarchical relationships. These extraction rules are executed against very large data sets not organized into relational structures that have not been processed by standard extraction or transformation methods. By using sample events, a focus on primary and secondary example events help formulate either a single extraction rule spanning multiple data formats, or multiple rules directed to distinct formats. Selection tools mark up the example events to indicate positive examples for the extraction rules, and to identify negative examples to avoid mistaken value selection. The extraction rules can be saved for query-time use, and can be incorporated into a data model for sets and subsets of event data.
-
公开(公告)号:US11880399B2
公开(公告)日:2024-01-23
申请号:US17861083
申请日:2022-07-08
Applicant: Splunk Inc.
Inventor: Jesse Miller , Jason Szeto , Jose Solis , Jindrich Dinga , David Marquardt
IPC: G06F16/34 , G06F16/335 , G06F16/35 , G06T11/20
CPC classification number: G06F16/345 , G06F16/335 , G06F16/358 , G06T11/206 , G06T2200/24
Abstract: Systems and methods are disclosed involving user interface (UI) search tools for locating data, including tools for summarizing indexed raw machine data that organize and present results to enable expansion and exploration of initial summarizations. The initial summarizations may be explored and refined to help users determine how to identify and best focus a search on data subsets of greater interest.
-
-
-
-
-
-
-
-
-