Isolated execution environment system monitoring

    公开(公告)号:US10929415B1

    公开(公告)日:2021-02-23

    申请号:US16148918

    申请日:2018-10-01

    Applicant: Splunk Inc.

    Abstract: Systems and methods are described to determine relationships between one or more components of an isolated execution environment system based on data obtained from a data intake and query system. Based on the determined relationships, an interactive visualization is generated that indicates the hierarchical relationship of the components. In some cases, to illustrate the relationship between components of the isolated execution environment system, the visualization can include one or more display objects displayed in a subordinate or superior relationship to other display objects. In certain cases, based on an interaction with a display object, the system can generate a query and/or display additional information and/or visualizations based on the results of the query.

    Configuring the protocol-based generation of event streams by remote capture agents

    公开(公告)号:US10805438B2

    公开(公告)日:2020-10-13

    申请号:US16459573

    申请日:2019-07-01

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that processes network data. During operation, the system obtains, at a remote capture agent, a first protocol classification for a first packet flow captured by the remote capture agent. Next, the system uses configuration information associated with the first protocol classification to build a first event stream from the first packet flow at the remote capture agent, wherein the first event stream comprises time-series event data generated from network packets in the first packet flow based on the first protocol classification. The system then transmits the first event stream over a network for subsequent storage and processing of the first event stream by one or more components on the network.

    Configuring rules for filtering events to be included in event streams

    公开(公告)号:US10701191B2

    公开(公告)日:2020-06-30

    申请号:US16384688

    申请日:2019-04-15

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that processes network data. During operation, the system obtains, at a remote capture agent, a first protocol classification for a first packet flow captured by the remote capture agent. Next, the system uses configuration information associated with the first protocol classification to build a first event stream from the first packet flow at the remote capture agent, wherein the first event stream comprises time-series event data generated from network packets in the first packet flow based on the first protocol classification. The system then transmits the first event stream over a network for subsequent storage and processing of the first event stream by one or more components on the network.

    Adjusting network data storage based on event stream statistics

    公开(公告)号:US10700950B2

    公开(公告)日:2020-06-30

    申请号:US14699787

    申请日:2015-04-29

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display a graphical user interface (GUI) for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for managing one or more event streams containing the time-series event data, wherein managing the one or more event streams includes enabling the generation of a set of statistics from an event stream without subsequently storing and processing at least a first portion of the event stream by one or more components on a network. The GUI then updates the configuration information based on input received through the first set of user-interface elements.

    Inline visualizations of metrics related to captured network data

    公开(公告)号:US10693742B2

    公开(公告)日:2020-06-23

    申请号:US14609223

    申请日:2015-01-29

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system obtains a set of event streams from one or more remote capture agents over one or more networks, wherein the set of event streams comprises time-series event data generated from network packets captured by the one or more remote capture agents. Next, the system causes for display, within a graphical user interface (GUI), a first set of user interface elements, wherein the first set of user interface elements includes event stream information for an event stream in the set of event streams and a first graph of a metric associated with the time-series event data in the event stream. The system then updates the first graph in real-time with the time-series event data from the one or more remote capture agents.

    CONFIGURING THE PROTOCOL-BASED GENERATION OF EVENT STREAMS BY REMOTE CAPTURE AGENTS

    公开(公告)号:US20190327348A1

    公开(公告)日:2019-10-24

    申请号:US16459573

    申请日:2019-07-01

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that processes network data. During operation, the system obtains, at a remote capture agent, a first protocol classification for a first packet flow captured by the remote capture agent. Next, the system uses configuration information associated with the first protocol classification to build a first event stream from the first packet flow at the remote capture agent, wherein the first event stream comprises time-series event data generated from network packets in the first packet flow based on the first protocol classification. The system then transmits the first event stream over a network for subsequent storage and processing of the first event stream by one or more components on the network.

    Grouping and managing event streams generated from captured network data

    公开(公告)号:US10360196B2

    公开(公告)日:2019-07-23

    申请号:US14610408

    申请日:2015-01-30

    Applicant: Splunk Inc.

    Abstract: The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display a graphical user interface (GUI) for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for specifying a grouping of a set of event streams containing the time-series event data by an event stream attribute associated with the event streams. The system then causes for display, in the GUI, a second set of user-interface elements containing event stream information for one or more subsets of the event streams represented by the grouping of the event streams by the event stream attribute.

    Protocol-based capture of network data using remote capture agents

    公开(公告)号:US09838512B2

    公开(公告)日:2017-12-05

    申请号:US14528898

    申请日:2014-10-30

    Applicant: Splunk Inc.

    CPC classification number: H04L69/22 H04L67/10

    Abstract: The disclosed embodiments provide a system that processes network data. During operation, the system obtains, at a remote capture agent, a first protocol classification for a first packet flow captured by the remote capture agent. Next, the system uses configuration information associated with the first protocol classification to build a first event stream from the first packet flow at the remote capture agent, wherein the first event stream comprises time-series event data generated from network packets in the first packet flow based on the first protocol classification. The system then transmits the first event stream over a network for subsequent storage and processing of the first event stream by one or more components on the network.

Patent Agency Ranking