Event View Selector
    51.
    发明申请
    Event View Selector 审中-公开
    事件视图选择器

    公开(公告)号:US20160092045A1

    公开(公告)日:2016-03-31

    申请号:US14528939

    申请日:2014-10-30

    Applicant: Splunk, Inc.

    Abstract: An event view selector for a search user interface is described. In one or more implementations, a service may operate to collect and store data as events and apply a late binding schema to extract events that match the search criteria and provide search results for display via the search user interface. The search user interface exposes an event view selector operable to enable transitions between multiple different views of the events associated with different levels of detail. The views may include at least a raw view, a list view, and a table view. Responsive to receiving an indication of a view selected via the event view selector, the selected view may be exposed via the search user interface.

    Abstract translation: 描述用于搜索用户界面的事件视图选择器。 在一个或多个实现中,服务可以操作以收集和存储数据作为事件,并且应用后期绑定模式来提取与搜索条件匹配的事件,并且通过搜索用户界面提供用于显示的搜索结果。 搜索用户界面公开了可操作的事件视图选择器,以启用与不同细节级别相关联的事件的多个不同视图之间的转换。 视图可以至少包括原始视图,列表视图和表视图。 响应于接收通过事件视图选择器选择的视图的指示,所选择的视图可以经由搜索用户界面公开。

    Tracking metadata for a column in a table as a sequence of commands operates on the table
    52.
    发明授权
    Tracking metadata for a column in a table as a sequence of commands operates on the table 有权
    跟踪表中列的元数据作为一系列命令在表上运行

    公开(公告)号:US09152682B2

    公开(公告)日:2015-10-06

    申请号:US14068651

    申请日:2013-10-31

    Applicant: Splunk Inc.

    Abstract: Embodiments are directed towards determining and tracking metadata for the generation of visualizations of requested data. A user may request data by providing a query that may be employed to search for the requested data. The query may include a plurality of commands, which may be employed in a pipeline to perform the search and to generate a table of the requested data. In some embodiments, each command may be executed to perform an action on a set of data. The execution of a command may generate one or more columns to append and/or insert into the table of requested data. Metadata for each generated column may be determined based on the actions performed by executing the commands. The table of requested data and the column metadata may be employed to generate and display a visualization of at least a portion of the requested data to a user.

    Abstract translation: 实施例旨在确定和跟踪用于生成所请求数据的可视化的元数据。 用户可以通过提供可用于搜索所请求的数据的查询来请求数据。 该查询可以包括多个命令,其可以在流水线中用于执行搜索并生成所请求的数据的表。 在一些实施例中,可以执行每个命令以对一组数据执行动作。 命令的执行可以生成一个或多个列来附加和/或插入到所请求的数据的表中。 可以基于通过执行命令执行的动作来确定每个生成的列的元数据。 可以使用所请求的数据和列元数据的表来生成并向用户显示所请求的数据的至少一部分的可视化。

    Graphical user interface for extracting from extracted fields

    公开(公告)号:US11868364B1

    公开(公告)日:2024-01-09

    申请号:US17809830

    申请日:2022-06-29

    Applicant: SPLUNK INC.

    Abstract: First one or more values are extracted from a plurality of events using a first extraction rule. The extracted first one or more values are assigned to a first field of the plurality of events as a first set of field-data item pairs. Second one or more values are extracted from the plurality of the events using a second extraction rule. The second extraction rule identifies the second one or more values and a field label corresponding to the second one or more values in the extracted first one or more values of the first set of field-data item pairs. The extracted second one or more values are assigned to a second field of the plurality of events as a second set of field-data item pairs. The field label extracted using the second extraction rule or a modified version thereof may be assigned to the second field.

    Generation of search commands via text-based selections

    公开(公告)号:US10949419B2

    公开(公告)日:2021-03-16

    申请号:US15996226

    申请日:2018-06-01

    Applicant: Splunk Inc.

    Abstract: A search interface is displayed in a table format that includes one or more columns, each column including data items of an event attribute, the data items being of a set of events, and a plurality of rows forming cells with the one or more columns, each cell displaying a textual representation of at least one of the data items of the event attribute of a corresponding column. Based on a user selecting a portion of the textual representation in a corresponding cell, a list of options is displayed that corresponds to the selected portion of the textual representation. Furthermore, one or more commands are added to a search query that corresponds to the set of events, the one or more commands being based on at least an option that is selected from the list of options and the selected portion of the textual representation in the corresponding cell.

    Suggested filed extraction
    60.
    发明授权

    公开(公告)号:US10762138B2

    公开(公告)日:2020-09-01

    申请号:US14610717

    申请日:2015-01-30

    Applicant: SPLUNK INC.

    Abstract: A based on a selection by a user of first one or more values of one or more events displayed in a graphical interface, an extraction rule is automatically determined that is capable of extracting a field label-value pair at least partially within at least the selected one or more values. An option is displayed that correspond to the determined extraction rule in the graphical interface. Based on the user selecting the option in the graphical interface, display is caused of second one or more values of one or more field label-value pairs extracted from the one or more events using the extraction rule. The one or more events may be displayed in a table format, and the first one or more value may be selected by the user selecting one or more cells, columns, or text portions in the table format.

Patent Agency Ranking