Utilizing shared search queries for defining multiple key performance indicators

    公开(公告)号:US12124441B1

    公开(公告)日:2024-10-22

    申请号:US18075970

    申请日:2022-12-06

    Applicant: SPLUNK INC.

    Abstract: An example method of utilizing shared search queries for defining multiple key performance indicators (KPIs) comprises: receiving input specifying one or more service definitions, each service definition of the one or more service definitions specifying an entity definition for an entity providing a service of one or more services executing in an information technology (IT) environment, wherein the IT environment is monitored by the service monitoring system, wherein the service monitoring system uses first machine data of a first entity specified by a first service definition of the one or more service definitions to monitor a first KPI for a first service of the one or more services, and wherein the service monitoring system uses second machine data of a second entity specified by a second service definition of the one or more service definitions to monitor a second KPI for a second service of the one or more services; determining that the first machine data and the second machine data include common machine data; defining, based on the first machine data and the second machine data including common machine data, a shared base search query for the first KPI and the second KPI; executing the shared based search query to generated shared base search query results for the first KPI and the second KPI; and generating, using results from executing the shared base search query, a first value for the first KPI and a second value for the second KPI.

    Automatic entity definitions based on derived content

    公开(公告)号:US11768836B2

    公开(公告)日:2023-09-26

    申请号:US16582205

    申请日:2019-09-25

    Applicant: Splunk Inc.

    CPC classification number: G06F16/24573 G06Q10/00

    Abstract: A service monitoring system (SMS) produces key performance indicator (KPI) scores that indicate the performance of a service. To produce the KPI scores, the SMS may process the data for a large number of machine entities that perform the service. This data can be processed on a per-entity basis to produce a per-entity KPI score representing the contribution of a particular machine to the overall KPI. The per-entity KPI scores can be transformed to statistical representations which can be visualized as a distribution stream graph. The visualization may be presented with interactive aspects. Automatic entity definitions may also be generated based on content derived from the processed data.

    Information technology networked entity monitoring with dynamic metric and threshold selection

    公开(公告)号:US11093518B1

    公开(公告)日:2021-08-17

    申请号:US16049628

    申请日:2018-07-30

    Applicant: Splunk Inc.

    Abstract: Data intake and query system (DIQS) instances supporting applications including lower-tier, focused, work group oriented applications, are tailored to display the metrics for the needs of the user. An interface caused by operation of an entity monitoring system (EMS) operating in conjunction with the lower-tier DIQS displays the monitored entities as individual representations. The user selects a metric and a metric threshold. The EMS causes a display of an interface having a representation for each monitored entity. Each representation includes a metric value and indicates an entity status based on the metric value and the threshold. The user can dynamically change the threshold on the interface for easy visualization of aggregation of monitored entities to determine the performance of the infrastructure. The interface also provides the user with the ability to select an entity and click through to the entity analysis workspace for more detailed information.

    AUTOMATIC ENTITY DEFINITIONS
    8.
    发明申请
    AUTOMATIC ENTITY DEFINITIONS 审中-公开
    自动实体定义

    公开(公告)号:US20160103883A1

    公开(公告)日:2016-04-14

    申请号:US14859243

    申请日:2015-09-18

    Applicant: Splunk Inc.

    Abstract: Methods are disclosed to take advantage of the early collection of machine data from a new or changed entity in a computing environment in order to update the definitional information about entities used by a service monitoring system. In some embodiments, the process undertaken to recognize new or changed entities in an IT environment from collected machine data may be informed by the expertise of a particular subject matter area by installing that intelligence in a codified form packaged as a domain add-on to the service monitoring system.

    Abstract translation: 公开了利用在计算环境中从新的或改变的实体早期收集机器数据的方法,以便更新关于由服务监视系统使用的实体的定义信息。 在一些实施例中,从收集的机器数据识别IT环境中的新的或改变的实体的过程可以由特定主题区域的专业知识通过将该智能安装在作为域附加的 服务监控系统。

    Rule-based data stream processing

    公开(公告)号:US11669551B2

    公开(公告)日:2023-06-06

    申请号:US17072833

    申请日:2020-10-16

    Applicant: Splunk Inc.

    Abstract: Systems and methods for rule-based data stream processing by data collection, indexing, and visualization systems. An example method includes: receiving, by the computer system, an input data stream comprising raw machine data; processing the raw machine data by a data processing pipeline that produces transformed machine data, wherein the data processing pipeline comprises an ordered plurality of pipeline stages, wherein a pipeline stage of the ordered plurality of pipeline stages applies a rule of a set of rules to an input of the pipeline stage, wherein the rule specifies an action to be performed on the input of the pipeline stage responsive to evaluating a conditional expression applied to the input of the pipeline stage, wherein the action generates an output of the pipeline stage, and wherein the rule is selected based on a source type associated with the input data stream; and supplying the transformed machine data to a data collection, indexing, and visualization system.

Patent Agency Ranking