-
公开(公告)号:US10795555B2
公开(公告)日:2020-10-06
申请号:US14526430
申请日:2014-10-28
Applicant: Splunk Inc.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F3/048 , G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F40/18 , G06K9/20 , G06F9/451
Abstract: In embodiments of statistics value chart interface row mode drill down, a first interface is displayed in a table format that includes columns each with field values of an event field, and each column having a column heading of a different one of the event fields, and includes rows each with one or more of the field values, where each field value in a row is associated with a different one of the event fields, and each row includes an aggregated metric that represents a number of events having field-value pairs that match all of the one or more field values listed in a respective row and the corresponding event fields listed in the respective columns. A row can be emphasized in the first interface, and in response, a menu is displayed with selectable options to transition to a second interface that displays a listing of the events based on a selected one of the options.
-
公开(公告)号:US10719558B2
公开(公告)日:2020-07-21
申请号:US14610717
申请日:2015-01-30
Applicant: SPLUNK INC.
Inventor: Marc Vincent Robichaud , Cory Eugene Burke , Jeffrey Thomas Lloyd
IPC: G06F16/93 , G06F3/0482 , G06F16/242 , G06F16/2458 , G06F16/248 , G06F16/9038
Abstract: A based on a selection by a user of first one or more values of one or more events displayed in a graphical interface, an extraction rule is automatically determined that is capable of extracting a field label-value pair at least partially within at least the selected one or more values. An option is displayed that correspond to the determined extraction rule in the graphical interface. Based on the user selecting the option in the graphical interface, display is caused of second one or more values of one or more field label-value pairs extracted from the one or more events using the extraction rule. The one or more events may be displayed in a table format, and the first one or more value may be selected by the user selecting one or more cells, columns, or text portions in the table format.
-
公开(公告)号:US10564825B2
公开(公告)日:2020-02-18
申请号:US16169815
申请日:2018-10-24
Applicant: SPLUNK INC.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F17/24 , G06K9/20 , G06F9/451
Abstract: In embodiments of statistics time chart interface cell mode drill down, a first interface displays in a table format that includes columns each having a column heading comprising a different value, each different value associated with a particular event field, and includes one or more rows, each row having a time increment and aggregated metrics that each represent a number of events having a field-value pair that matches the different value represented in one of the columns and within the time increment over which the aggregated metric is calculated. A cell can be emphasized that includes one of the aggregated metrics in a row that includes the respective time increment, and in response, a menu displays options to transition to a second interface.
-
公开(公告)号:US10444956B2
公开(公告)日:2019-10-15
申请号:US15885486
申请日:2018-01-31
Applicant: SPLUNK INC.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F17/30 , G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F17/24 , G06K9/20 , G06F9/451
Abstract: In embodiments of statistics time chart interface row mode drill down, a first interface is displayed in a table format that includes columns each having a column heading comprising a different value, each different value associated with a particular event field, and includes rows each with a time increment and one or more aggregated metrics, each aggregated metric representing a number of events having a field-value pair that matches the different value represented in one of the columns and within the time increment over which the aggregated metric is calculated. A row that includes the time increment and the aggregated metrics can be emphasized in the first interface, and in response, a menu is displayed with selectable options to transition to a second interface based on a selected one of the options.
-
公开(公告)号:US10303344B2
公开(公告)日:2019-05-28
申请号:US14526406
申请日:2014-10-28
Applicant: Splunk Inc.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F7/00 , G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F17/24 , G06K9/20 , G06F17/30 , G06F9/451
Abstract: In embodiments of field value search drill down, a search system exposes a search interface that displays one or more events returned as a search result set. A field-value pair can be emphasized in the field-value pairs of an event displayed in the search interface, and a menu is displayed with search options that are selectable to operate on the emphasized field-value pair of the event. The menu includes the search options to add search criteria of the emphasized field-value pair to a search command in a search bar of the search interface, exclude the search criteria of the emphasized field-value pair from a search, or create a new data search based on the emphasized field-value pair. A selection of one of the search options in the menu can be received, and the search command in the search bar is updated based on the search option that is selected.
-
公开(公告)号:US10223423B2
公开(公告)日:2019-03-05
申请号:US14528905
申请日:2014-10-30
Applicant: Splunk Inc.
Inventor: Nicholas John Filippi , Katherine Kyle Feeney , Cory Eugene Burke , Abhinav Prasad Nekkanti , Marc Vincent Robichaud , Irina Korobova
Abstract: Custom communication alert techniques are described where a triggering condition is detected by one or more computing devices that is found by searching data using one or more extraction rules of a late-binding schema. Responsive to the detection of the triggering condition of the alert, a communication is formed by the one or more computing devices that corresponds to the alert and that includes one or more tokens based on one or more values of the data taken from fields defined by the one or more extraction rules. The communication is caused to be transmitted by the one or more computing device via a network for receipt by at least one computing device of an intended recipient of the communication.
-
公开(公告)号:US10061824B2
公开(公告)日:2018-08-28
申请号:US14611002
申请日:2015-01-30
Applicant: SPLUNK INC.
Inventor: Marc Vincent Robichaud , Cory Eugene Burke , Jeffrey Thomas Lloyd , Jesse Miller
IPC: G06F17/30 , G06F3/0484 , G06F17/24
Abstract: A search interface is displayed in a table format that includes one or more columns, each column including data items of an event attribute, the data items being of a set of events, and a plurality of rows forming cells with the one or more columns, each cell including one or more of the data items of the event attribute of a corresponding column. Based on a user selecting one or more of the cells, a list of options if displayed corresponding to the selection, and one or more commands are added to a search query that corresponds to the set of events, the one or more commands being based on at least an option that is selected from the list of options and the event attribute for each of the one or more of the data items of each of the selected one or more cells.
-
公开(公告)号:US20180157400A1
公开(公告)日:2018-06-07
申请号:US15885486
申请日:2018-01-31
Applicant: SPLUNK INC.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F3/0484 , G06K9/20 , G06F17/30 , G06F3/0482 , G06F17/24
CPC classification number: G06F3/04842 , G06F3/0482 , G06F3/04847 , G06F9/451 , G06F16/221 , G06F16/242 , G06F16/2425 , G06F16/2455 , G06F16/248 , G06F16/252 , G06F16/951 , G06F17/246 , G06K9/2054
Abstract: In embodiments of statistics time chart interface row mode drill down, a first interface is displayed in a table format that includes columns each having a column heading comprising a different value, each different value associated with a particular event field, and includes rows each with a time increment and one or more aggregated metrics, each aggregated metric representing a number of events having a field-value pair that matches the different value represented in one of the columns and within the time increment over which the aggregated metric is calculated. A row that includes the time increment and the aggregated metrics can be emphasized in the first interface, and in response, a menu is displayed with selectable options to transition to a second interface based on a selected one of the options.
-
公开(公告)号:US20170031659A1
公开(公告)日:2017-02-02
申请号:US14815954
申请日:2015-07-31
Applicant: Splunk Inc.
Inventor: Cory Eugene Burke , Jacob Barton Leverich , Jeffrey Thomas Lloyd , Adam Jamison Oliner , Marc Vincent Robichaud
Abstract: A facility for defining an event subtype using examples is described. The facility displays events identified among machine-generated data. The facility receives user input selecting a first subset of the events as examples of an event subtype. In response to receiving the user input, the facility displays a second subset of the events predicted to belong to the event subtype on the basis of the examples of the event subtype.
Abstract translation: 描述使用示例来定义事件子类型的设施。 设备显示在机器生成的数据之间标识的事件。 该设施接收选择事件的第一子集的用户输入,作为事件子类型的示例。 响应于接收到用户输入,设施基于事件子类型的示例显示预测属于事件子类型的事件的第二子集。
-
公开(公告)号:US20160224614A1
公开(公告)日:2016-08-04
申请号:US14611023
申请日:2015-01-30
Applicant: SPLUNK INC.
Inventor: MARC VINCENT ROBICHAUD , Cory Eugene Burke , Jeffrey Thomas Lloyd
IPC: G06F17/30 , G06F3/0482
CPC classification number: G06F17/30392 , G06Q10/103
Abstract: A list of command entries is displayed in a search interface, each of the command entries representing one or more commands of a plurality of commands of a search query. The list of command entries are displayed in a sequence corresponding to the plurality of commands of the search query. Based on a user interaction with a designated command entry in the displayed list of command entries, the displayed list of command entries is modified with respect to the designated command. Furthermore, the search query is automatically modified with respect to the corresponding one or more commands represented by the designated command entry. The modification can include causing the designated command entry to be removed from or reordered in the displayed list of command entries and the automatic modification cam include causing the corresponding one or more commands to be removed from or reordered in the search query.
Abstract translation: 在搜索界面中显示命令条目的列表,每个命令条目表示搜索查询的多个命令的一个或多个命令。 以与搜索查询的多个命令对应的顺序显示命令条目的列表。 根据与显示的命令条目列表中的指定命令条目的用户交互,显示的命令条目列表相对于指定命令被修改。 此外,搜索查询相对于由指定的命令条目表示的对应的一个或多个命令被自动修改。 该修改可以包括使所指定的命令条目在显示的命令条目列表中被移除或重新排序,并且自动修改凸轮包括使相应的一个或多个命令从搜索查询中移除或重新排序。
-
-
-
-
-
-
-
-
-