-
公开(公告)号:US11409758B2
公开(公告)日:2022-08-09
申请号:US16919400
申请日:2020-07-02
Applicant: SPLUNK Inc.
Inventor: Marc Vincent Robichaud
Abstract: First one or more values are extracted from a plurality of events using a first extraction rule. The extracted first one or more values are assigned to a first field of the plurality of events as a first set of field-data item pairs. Second one or more values are extracted from the plurality of the events using a second extraction rule. The second extraction rule identifies the second one or more values and a field label corresponding to the second one or more values in the extracted first one or more values of the first set of field-data item pairs. The extracted second one or more values are assigned to a second field of the plurality of events as a second set of field-data item pairs. The field label extracted using the second extraction rule or a modified version thereof may be assigned to the second field.
-
公开(公告)号:US11321311B2
公开(公告)日:2022-05-03
申请号:US16204989
申请日:2018-11-29
Applicant: SPLUNK INC.
Inventor: Alice Emily Neels , Archana Sulochana Ganapathi , Marc Vincent Robichaud , Stephen Phillip Sorkin , Steve Yu Zhang
IPC: G06F16/242 , G06F16/27 , G06F16/245 , G06F16/248 , G06F16/9535 , G06F16/2457 , G06F40/186 , G06F3/0482
Abstract: Embodiments include generating data models that may give semantic meaning for unstructured or structured data that may include data generated and/or received by search engines, including a time series engine. A method includes generating a data model for data stored in a repository. Generating the data model includes generating an initial query string, executing the initial query string on the data, generating an initial result set based on the initial query string being executed on the data, determining one or more candidate fields from one or results of the initial result set, generating a candidate data model based on the one or more candidate fields, iteratively modifying the candidate data model until the candidate data model models the data, and using the candidate data model as the data model.
-
公开(公告)号:US11144528B2
公开(公告)日:2021-10-12
申请号:US16177027
申请日:2018-10-31
Applicant: SPLUNK INC.
Inventor: Divanny I. Lamas , Marc Vincent Robichaud
IPC: G06F16/00 , G06F16/22 , G06F16/2458
Abstract: Event time selection output techniques are described. In one or more implementations, one or more inputs are received, at one or more computing devices, that involve interaction associated with a particular one of a plurality of events via a user interface, in which the plurality of events result from a search of data, each of the plurality of events include the data that is associated with a respective point in time, and the one or more inputs specify a relative time in relation to the respective point in time of the particular event. A determination is made as to which of the plurality of events correspond to the specified relative time by the one or more computing devices and a result of the determination is output by the one or more computing devices for display in the user interface.
-
公开(公告)号:US20210223946A1
公开(公告)日:2021-07-22
申请号:US17224381
申请日:2021-04-07
Applicant: SPLUNK INC.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F40/18 , G06K9/20
Abstract: In embodiments of statistics value chart interface cell mode drill down, a first interface displays in a table format that includes columns each with field values of an event field, and each column having a column heading of a different one of the event fields, and includes rows each with one or more of the field values, each field value in a row associated with a different one of the event fields, and having an aggregated metric that represents a number of events with field-value pairs that match all of the field values listed in a respective row and the corresponding event fields listed in the respective columns. A cell can be emphasized that includes one of the field values in a row that corresponds to one of the different event fields in a column, and in response, a menu displays options to transition to a second interface.
-
公开(公告)号:US10915583B2
公开(公告)日:2021-02-09
申请号:US14610717
申请日:2015-01-30
Applicant: SPLUNK INC.
Inventor: Marc Vincent Robichaud , Cory Eugene Burke , Jeffrey Thomas Lloyd
IPC: G06F16/93 , G06F16/9038 , G06F16/242 , G06F3/0482 , G06F16/2458 , G06F16/248
Abstract: A based on a selection by a user of first one or more values of one or more events displayed in a graphical interface, an extraction rule is automatically determined that is capable of extracting a field label-value pair at least partially within at least the selected one or more values. An option is displayed that correspond to the determined extraction rule in the graphical interface. Based on the user selecting the option in the graphical interface, display is caused of second one or more values of one or more field label-value pairs extracted from the one or more events using the extraction rule. The one or more events may be displayed in a table format, and the first one or more value may be selected by the user selecting one or more cells, columns, or text portions in the table format.
-
公开(公告)号:US10795555B2
公开(公告)日:2020-10-06
申请号:US14526430
申请日:2014-10-28
Applicant: Splunk Inc.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F3/048 , G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F40/18 , G06K9/20 , G06F9/451
Abstract: In embodiments of statistics value chart interface row mode drill down, a first interface is displayed in a table format that includes columns each with field values of an event field, and each column having a column heading of a different one of the event fields, and includes rows each with one or more of the field values, where each field value in a row is associated with a different one of the event fields, and each row includes an aggregated metric that represents a number of events having field-value pairs that match all of the one or more field values listed in a respective row and the corresponding event fields listed in the respective columns. A row can be emphasized in the first interface, and in response, a menu is displayed with selectable options to transition to a second interface that displays a listing of the events based on a selected one of the options.
-
公开(公告)号:US10719558B2
公开(公告)日:2020-07-21
申请号:US14610717
申请日:2015-01-30
Applicant: SPLUNK INC.
Inventor: Marc Vincent Robichaud , Cory Eugene Burke , Jeffrey Thomas Lloyd
IPC: G06F16/93 , G06F3/0482 , G06F16/242 , G06F16/2458 , G06F16/248 , G06F16/9038
Abstract: A based on a selection by a user of first one or more values of one or more events displayed in a graphical interface, an extraction rule is automatically determined that is capable of extracting a field label-value pair at least partially within at least the selected one or more values. An option is displayed that correspond to the determined extraction rule in the graphical interface. Based on the user selecting the option in the graphical interface, display is caused of second one or more values of one or more field label-value pairs extracted from the one or more events using the extraction rule. The one or more events may be displayed in a table format, and the first one or more value may be selected by the user selecting one or more cells, columns, or text portions in the table format.
-
公开(公告)号:US10564825B2
公开(公告)日:2020-02-18
申请号:US16169815
申请日:2018-10-24
Applicant: SPLUNK INC.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F17/24 , G06K9/20 , G06F9/451
Abstract: In embodiments of statistics time chart interface cell mode drill down, a first interface displays in a table format that includes columns each having a column heading comprising a different value, each different value associated with a particular event field, and includes one or more rows, each row having a time increment and aggregated metrics that each represent a number of events having a field-value pair that matches the different value represented in one of the columns and within the time increment over which the aggregated metric is calculated. A cell can be emphasized that includes one of the aggregated metrics in a row that includes the respective time increment, and in response, a menu displays options to transition to a second interface.
-
公开(公告)号:US10444956B2
公开(公告)日:2019-10-15
申请号:US15885486
申请日:2018-01-31
Applicant: SPLUNK INC.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F17/30 , G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F17/24 , G06K9/20 , G06F9/451
Abstract: In embodiments of statistics time chart interface row mode drill down, a first interface is displayed in a table format that includes columns each having a column heading comprising a different value, each different value associated with a particular event field, and includes rows each with a time increment and one or more aggregated metrics, each aggregated metric representing a number of events having a field-value pair that matches the different value represented in one of the columns and within the time increment over which the aggregated metric is calculated. A row that includes the time increment and the aggregated metrics can be emphasized in the first interface, and in response, a menu is displayed with selectable options to transition to a second interface based on a selected one of the options.
-
公开(公告)号:US10303344B2
公开(公告)日:2019-05-28
申请号:US14526406
申请日:2014-10-28
Applicant: Splunk Inc.
Inventor: Cory Eugene Burke , Katherine Kyle Feeney , Divanny I. Lamas , Marc Vincent Robichaud , Matthew G. Ness , Clara E. Lee
IPC: G06F7/00 , G06F3/0484 , G06F3/0482 , G06F16/22 , G06F16/242 , G06F16/248 , G06F16/25 , G06F16/951 , G06F16/2455 , G06F17/24 , G06K9/20 , G06F17/30 , G06F9/451
Abstract: In embodiments of field value search drill down, a search system exposes a search interface that displays one or more events returned as a search result set. A field-value pair can be emphasized in the field-value pairs of an event displayed in the search interface, and a menu is displayed with search options that are selectable to operate on the emphasized field-value pair of the event. The menu includes the search options to add search criteria of the emphasized field-value pair to a search command in a search bar of the search interface, exclude the search criteria of the emphasized field-value pair from a search, or create a new data search based on the emphasized field-value pair. A selection of one of the search options in the menu can be received, and the search command in the search bar is updated based on the search option that is selected.
-
-
-
-
-
-
-
-
-