Creating a correlation search
    582.
    发明授权

    公开(公告)号:US12130866B1

    公开(公告)日:2024-10-29

    申请号:US17114423

    申请日:2020-12-07

    Applicant: Splunk Inc.

    CPC classification number: G06F16/90335 G06F16/9032 G06F16/906 G06F16/907

    Abstract: One or more processing devices receive a definition of a search query for a correlation search of a data store, the data store comprising time-stamped events that each include raw machine data reflecting activity in an information technology environment and produced by a component of the information technology environment, receive a definition of a triggering condition to be evaluated based on aggregated statistics of values of one or more fields of a dataset produced by the search query, receive a definition of one or more actions to be performed when the triggering condition is satisfied, generate, using search processing language, a statement to define the search query and the triggering condition, and in view of the results of the execution of the search processing language, cause generation of the correlation search using the defined search query, the triggering condition, and the one or more actions, the correlation search comprising updated search processing language having the search query and a processing command for criteria on which the triggering condition is based.

    Data stream integrity in a tiered blockchain structure

    公开(公告)号:US12118127B1

    公开(公告)日:2024-10-15

    申请号:US17514738

    申请日:2021-10-29

    Applicant: SPLUNK INC.

    CPC classification number: G06F21/64 H04L9/3236 H04L9/50

    Abstract: A machine data validation system can track and validate the integrity of machine data generated by machines. The system can generate hashes for the items and batch hashes that can be validated using an immutable data store, such one or more blockchains in a tiered blockchain structure. The system can store machine data and additional associated data in a first lightweight blockchain, and store grouped sets of the data in a second robust blockchain. The system can implement the tiered blockchain structure to efficiently store and reference the hashes to validate the machine data at different times or upon request from an end-user.

    Data visualization in an extended reality environment

    公开(公告)号:US12112010B1

    公开(公告)日:2024-10-08

    申请号:US18313933

    申请日:2023-05-08

    Applicant: SPLUNK INC.

    CPC classification number: G06F3/04815 G06F3/0482 G06F3/04842 G06F9/451

    Abstract: A device that includes an extended reality application is employed by a user to access an extended reality environment. A selection of a first subset of dashboard panels included in a plurality of dashboard panels is received via an input device associated with the extended reality environment. Each dashboard panel included in the plurality of dashboard panels includes a visual representation of data. The first subset of dashboard panels is displayed in a foreground area of a workspace of the XR environment. A second subset of dashboard panels included in the plurality of dashboard panels is displayed in a background area of the workspace of the XR environment.

    Low-latency streaming analytics
    589.
    发明授权

    公开(公告)号:US12105740B2

    公开(公告)日:2024-10-01

    申请号:US18343420

    申请日:2023-06-28

    Applicant: Splunk Inc.

    Abstract: Systems and methods are disclosed for implementing a low-latency data stream monitoring system. The data stream monitoring system may obtain raw data from a data source as soon after the data is generated, and may classify the data according to different topics. The topics may be published in a publish-subscribe messaging model, and data enrichment systems may subscribe to the topics to receive data for enrichment. The data enrichment systems may supplement or replace the raw data with additional information, and may further classify or reclassify the enriched data into different topics. The enriched data may then be published to an alert generation system, which may apply various criteria to the enriched data to determine that alerts should be generated, generate the alerts, and publish or transmit the alerts to client devices. Individual data streams, topics, enrichments, criteria, and alarms may be added, removed, or modified as required.

Patent Agency Ranking