Ingest health monitoring
    1.
    发明授权

    公开(公告)号:US12061533B1

    公开(公告)日:2024-08-13

    申请号:US17877725

    申请日:2022-07-29

    Applicant: Splunk Inc.

    CPC classification number: G06F11/3476 G06F3/0619 G06F2201/81

    Abstract: Ingest health monitoring includes receiving an event stream of events in a data intake and query system to store on at least one storage system and obtaining an event from the event stream. Ingest health monitoring further includes transmitting the event to a selected ingest module queue for the event, updating an output rate indicator counter for the selected ingest module queue when failure to store the event in the ingest module queue occurs, obtaining the event from the selected ingest module queue, processing the event to generate a file for the event, and transmitting the file to the at least one storage system. Ingest health monitoring further includes updating the write failure indicator counter for a storage system of the at least one storage system when failure to transmit to the storage system occurs and updating the user interface based on the output rate indicator counter and the write failure indicator counter.

    Ingest preview of events in a network computing environment

    公开(公告)号:US12197968B1

    公开(公告)日:2025-01-14

    申请号:US17875172

    申请日:2022-07-27

    Applicant: Splunk Inc.

    Abstract: A computing device receives an ingest preview request to preview events to be stored by at least one indexer. Responsive to the ingest preview request, the computing device sends a subscription request to the forwarders. The forwarders receive the subscription request and intercept the events that are being sent to at least one of the indexers. The forwarders then clone matching events to the subscription request and responds to the computing device with the matching events. When the computing device receives the matching events, the computing device adds the matching events to a dispatch directory. The user interface is then populated with events in the dispatch directory.

    Filesystem destinations
    4.
    发明授权

    公开(公告)号:US12174797B1

    公开(公告)日:2024-12-24

    申请号:US18103323

    申请日:2023-01-30

    Applicant: Splunk Inc.

    Abstract: A method for file system destinations includes obtaining events for storage on one or more of the storage systems. For each event, the method includes extracting at least one field value from the event, comparing the at least one field value to configurations of the storage systems to identify at least one storage system of the plurality of storage systems having a matching configuration, transmitting the event to an ingest module queue for the at least one storage system, selecting a partition for the event based on the at least one field value to obtain a selected partition, mapping the selected partition to a file using a partition mapping, and appending the event to the file on the at least one storage system.

Patent Agency Ranking