-
公开(公告)号:US11841827B2
公开(公告)日:2023-12-12
申请号:US17163039
申请日:2021-01-29
Applicant: SPLUNK INC.
Inventor: Alexandros Batsakis , Ankit Jain , Manu Jose , Jonah Pan , Hailun Yan
IPC: G06F16/00 , G06F16/13 , G06F16/182
CPC classification number: G06F16/13 , G06F16/1824
Abstract: Embodiments described herein facilitate enhancement of data model acceleration, including generating data model summaries and performing searches in an accelerated manner. In one implementation, a set of events are indexed, each of the events having a corresponding index time representing a time at which the event was indexed in an indexer. Index time parameters including an index earliest time indicating a first index time at which to begin generating a data model summary and an index latest time indicating a second index time at which to complete generating the data model summary are obtained. Thereafter, a data model summary is generated. Such a data model summary summarizes events having corresponding index times between the index earliest time and the index latest time. The data model summary is provided to a remote data store that is separate from the indexer at which at least a portion of the events were indexed.
-
公开(公告)号:US11157498B1
公开(公告)日:2021-10-26
申请号:US16147344
申请日:2018-09-28
Applicant: Splunk Inc.
Inventor: Alexander Douglas James , Manu Jose , Sourav Pal , Christopher Madden Pride , Nicholas Robert Romito , Igor Braylovskiy , Arun Ramani , Ankit Jain
IPC: G06F17/00 , G06F16/2453 , G06F16/242 , G06F16/9535 , G06F40/205 , G06F9/54
Abstract: Systems and methods are disclosed for processing and executing queries in a data intake and query system. The data intake and query system receives a first query identifying a set of data to be processed and a manner of processing the set of data. The data intake and query system parses the first query and uses a dataset association records of a metadata catalog to dynamically identify one or more datasets associated with the query and generate a second query. The data intake and query system executes the second query.
-
公开(公告)号:US11663212B2
公开(公告)日:2023-05-30
申请号:US17443811
申请日:2021-07-27
Applicant: Splunk Inc.
Inventor: Alexander Douglas James , Manu Jose , Sourav Pal , Christopher Madden Pride , Nicholas Robert Romito , Igor Braylovskiy , Arun Ramani , Ankit Jain
IPC: G06F16/00 , G06F16/2453 , G06F16/242 , G06F16/9535 , G06F40/205 , G06F9/54
CPC classification number: G06F16/24542 , G06F16/2425 , G06F16/9535 , G06F40/205 , G06F9/547
Abstract: Systems and methods are disclosed for processing and executing queries in a data intake and query system. The data intake and query system receives a query identifying a set of data to be processed and a manner of processing the set of data. The data intake and query system parses the query and uses a metadata catalog to dynamically identify configuration parameters of datasets and/or rules associated with the query. The identified configuration parameters are communicated to a query processing component of the data intake and query system for use in executing the query.
-
公开(公告)号:US20220245093A1
公开(公告)日:2022-08-04
申请号:US17163047
申请日:2021-01-29
Applicant: SPLUNK INC.
Inventor: Alexandros Batsakis , Ankit Jain , Manu Jose , Jonah Pan , Hailun Yan
IPC: G06F16/14 , G06F16/182
Abstract: Embodiments described herein facilitate enhancement of data model acceleration, including generating data model summaries and performing searches in an accelerated manner. In one implementation, obtaining a search query from a user device. A determination may be made to execute a search, in association with the search query, via an external computing service. As such, the search query, or a variant thereof, can be provided to the external computing service, wherein the external computing service executes the search using data model summaries stored in a remote data store that is separate from a set of events from which the data model summaries were generated. A set of search results are received from the external computing service, and such search results are provided to the user device.
-
公开(公告)号:US12141137B1
公开(公告)日:2024-11-12
申请号:US17816132
申请日:2022-07-29
Applicant: Splunk Inc.
Inventor: Raman Arora , Ankit Jain , Meng Su , Hailun Yan , Sophia Rui Zhu
IPC: G06F7/00 , G06F16/2452 , G06F16/2458
Abstract: A computing device can receive a query in a first query language that identifies a set of data to be processed and determine that at least a portion of the set of data resides in an external data system that uses a different query language. The query system can translate the query in the first query language in to a second query language for the external data system. In translating the query, the computing device may translate one or more time-based query commands into the second query language.
-
公开(公告)号:US11822433B2
公开(公告)日:2023-11-21
申请号:US17161480
申请日:2021-01-28
Applicant: SPLUNK INC.
Inventor: Ankit Jain , Manu Jose, Jr. , Bharath Kishore Reddy Aleti , Amritpal Singh Bath , Yuan Xu
IPC: G06F16/00 , G06F11/14 , G06F16/21 , G06F11/34 , H04L43/106 , H04L41/069 , G06F11/30 , G06F16/27
CPC classification number: G06F11/1464 , G06F11/142 , G06F11/302 , G06F11/3089 , G06F11/3419 , G06F11/3495 , G06F16/211 , G06F16/27 , H04L41/069 , H04L43/106
Abstract: Embodiments of the present disclosure provide solutions for determining an elected search head captain is unqualified for the position, identifying a more qualified search head, and transferring the captain position to the more qualified search head. A method is provided that includes referencing qualification parameters in an elected search head captain, determining whether the newly elected search head captain is qualified for the position based on the parameters, identifying a more qualified search head to be the search head captain if the newly elected search head captain is determined to be unqualified for the position, and transferring the position of captain to the more qualified search head. The qualification parameters may include, for example, a pre-determined static flag set by an administrator of the search environment, and configuration replication status that corresponds to the most recent configuration state of the search head as recorded by the previous search head captain.
-
公开(公告)号:US20220245091A1
公开(公告)日:2022-08-04
申请号:US17163039
申请日:2021-01-29
Applicant: SPLUNK INC.
Inventor: Alexandros Batsakis , Ankit Jain , Manu Jose , Jonah Pan , Hailun Yan
IPC: G06F16/13 , G06F16/182
Abstract: Embodiments described herein facilitate enhancement of data model acceleration, including generating data model summaries and performing searches in an accelerated manner. In one implementation, a set of events are indexed, each of the events having a corresponding index time representing a time at which the event was indexed in an indexer. Index time parameters including an index earliest time indicating a first index time at which to begin generating a data model summary and an index latest time indicating a second index time at which to complete generating the data model summary are obtained. Thereafter, a data model summary is generated. Such a data model summary summarizes events having corresponding index times between the index earliest time and the index latest time. The data model summary is provided to a remote data store that is separate from the indexer at which at least a portion of the events were indexed.
-
公开(公告)号:US20210357470A1
公开(公告)日:2021-11-18
申请号:US17443811
申请日:2021-07-27
Applicant: Splunk Inc.
Inventor: Alexander Douglas James , Manu Jose , Sourav Pal , Christopher Madden Pride , Nicholas Robert Romito , Igor Braylovskiy , Arun Ramani , Ankit Jain
IPC: G06F16/9535 , G06F9/54 , G06F16/242 , G06F40/205
Abstract: Systems and methods are disclosed for processing and executing queries in a data intake and query system. The data intake and query system receives a query identifying a set of data to be processed and a manner of processing the set of data. The data intake and query system parses the query and uses a metadata catalog to dynamically identify configuration parameters of datasets and/or rules associated with the query. The identified configuration parameters are communicated to a query processing component of the data intake and query system for use in executing the query.
-
公开(公告)号:US20250028698A1
公开(公告)日:2025-01-23
申请号:US18414157
申请日:2024-01-16
Applicant: Splunk Inc.
Inventor: Brent Davis , David Johns DeWitt , Derek Feriancek , Oleksandr Gyryk , Ankit Jain , Balaji Rao , Douglas Rapp , Sai Krishna Sajja
IPC: G06F16/22 , G06F16/2455 , G06F16/28
Abstract: A data intake and query system can manage the search of data stored at an external location relative to the data intake and query system using one or more indexers. The data intake and query system can receive data stored at the external location. The data intake and query system can process the data and generate an index using the one or more indexers. The data intake and query system can discard the data and store the index and a location identifier of the external location in one or more buckets. In response to a query, the data intake and query system can identify that at least a subset of the data is responsive to the query using the index and can obtain the at least the subset of the data from the external location using the location identifier.
-
公开(公告)号:US11892976B2
公开(公告)日:2024-02-06
申请号:US17163047
申请日:2021-01-29
Applicant: SPLUNK INC.
Inventor: Alexandros Batsakis , Ankit Jain , Manu Jose , Jonah Pan , Hailun Yan
IPC: G06F16/00 , G06F16/14 , G06F16/182 , G06F16/738
CPC classification number: G06F16/144 , G06F16/156 , G06F16/1824 , G06F16/738
Abstract: Embodiments described herein facilitate enhancement of data model acceleration, including generating data model summaries and performing searches in an accelerated manner. In one implementation, obtaining a search query from a user device. A determination may be made to execute a search, in association with the search query, via an external computing service. As such, the search query, or a variant thereof, can be provided to the external computing service, wherein the external computing service executes the search using data model summaries stored in a remote data store that is separate from a set of events from which the data model summaries were generated. A set of search results are received from the external computing service, and such search results are provided to the user device.
-
-
-
-
-
-
-
-
-