-
公开(公告)号:US11436116B1
公开(公告)日:2022-09-06
申请号:US16778511
申请日:2020-01-31
Applicant: Splunk Inc.
Inventor: Alexandros Batsakis , Mehul Goyal , Ashish Mathew , Douglas Rapp , Igor Stojanovski , Eric Woo
IPC: G06F11/00 , G06F11/30 , G06F16/182 , G06F11/32 , G06F16/17
Abstract: Systems and methods are described for improving data availability and/or resiliency of indexers of a data intake and query system. A data intake and query system can index large amounts of data using one or more indexers. An indexer can store a copy of the data that the indexer is assigned to process in the shared storage system, and a cluster master can track the storage of the data and the indexer assigned to process the data. In the event an indexer fails or is otherwise unable to index data that it has been assigned to index, the cluster master can assign one or more second indexers to process the data. The second indexer can download the data from the shared storage system.
-
公开(公告)号:US11609913B1
公开(公告)日:2023-03-21
申请号:US17162536
申请日:2021-01-29
Applicant: Splunk Inc.
Inventor: Tameem Anwar , Alexandros Batsakis , Tianyi Gou , Mehul Goyal , Ashish Mathew , Douglas Rapp , Sai Krishna Sajja , Anish Shrigondekar , Igor Stojanovski , Eric Woo , Zhenghui Xie , Ruochen Zhang , Sophia Rui Zhu
IPC: G06F16/00 , G06F16/2455 , G06F16/248 , G06F16/2458
Abstract: A data intake and query system can manage the search of large amounts of data using one or more processing nodes. When a new processing node is added or becomes available, the node coordinator can reassign duties from one or more processing nodes to the new processing node. The node coordinator can initially assign the new processing node one or more groups of data for backup purposes. At a later time, the node coordinator can reassign the new processing node to the one or more groups of data for searching purposes.
-
公开(公告)号:US20250028698A1
公开(公告)日:2025-01-23
申请号:US18414157
申请日:2024-01-16
Applicant: Splunk Inc.
Inventor: Brent Davis , David Johns DeWitt , Derek Feriancek , Oleksandr Gyryk , Ankit Jain , Balaji Rao , Douglas Rapp , Sai Krishna Sajja
IPC: G06F16/22 , G06F16/2455 , G06F16/28
Abstract: A data intake and query system can manage the search of data stored at an external location relative to the data intake and query system using one or more indexers. The data intake and query system can receive data stored at the external location. The data intake and query system can process the data and generate an index using the one or more indexers. The data intake and query system can discard the data and store the index and a location identifier of the external location in one or more buckets. In response to a query, the data intake and query system can identify that at least a subset of the data is responsive to the query using the index and can obtain the at least the subset of the data from the external location using the location identifier.
-
公开(公告)号:US11829415B1
公开(公告)日:2023-11-28
申请号:US16778427
申请日:2020-01-31
Applicant: Splunk Inc.
Inventor: Alexandros Batsakis , Mehul Goyal , Ashish Mathew , Douglas Rapp , Igor Stojanovski , Eric Woo
IPC: G06F17/00 , G06F16/901 , G06F16/953 , G06F16/906 , G06F16/9035
CPC classification number: G06F16/901 , G06F16/906 , G06F16/9035 , G06F16/953
Abstract: Systems and methods are described for improving data availability and/or resiliency of indexers of a data intake and query system. Due to a lag between the time at which data is received and the time at which the data is available for searching, the data intake and query system may receive a query indicating that received (but unavailable for search) data is to be included as part of the query. A cluster master can dynamically track what data is available for searching by different indexers and map the data to filter criteria using a bucket map identifier. When a search head receives a query, it can request a bucket map identifier from the cluster master and send the bucket map identifier to the indexers that will be executing the query. The indexers can use the bucket map identifier to request the individual buckets that they are assigned to search.
-
公开(公告)号:US12019634B1
公开(公告)日:2024-06-25
申请号:US18123758
申请日:2023-03-20
Applicant: Splunk Inc.
Inventor: Tameem Anwar , Alexandros Batsakis , Tianyi Gou , Mehul Goyal , Ashish Mathew , Douglas Rapp , Sai Krishna Sajja , Anish Shrigondekar , Igor Stojanovski , Eric Woo , Zhenghui Xie , Ruochen Zhang , Sophia Rui Zhu
IPC: G06F16/00 , G06F16/2455 , G06F16/2458 , G06F16/248
CPC classification number: G06F16/24554 , G06F16/24552 , G06F16/2477 , G06F16/248
Abstract: A data intake and query system can manage the search of large amounts of data using one or more processing nodes. When a new processing node is added or becomes available, the node coordinator can reassign duties from one or more processing nodes to the new processing node. The node coordinator can initially assign the new processing node one or more groups of data for backup purposes. At a later time, the node coordinator can reassign the new processing node to the one or more groups of data for searching purposes.
-
-
-
-