The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Sep. 08, 2020

Filed:

Aug. 02, 2015
Applicant:

Splunk Inc., San Francisco, CA (US);

Inventors:

R. David Carasso, San Francisco, CA (US);

Micah James Delfino, San Francisco, CA (US);

Johnvey Hwang, San Francisco, CA (US);

Assignee:

Splunk Inc., San Francisco, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 16/28 (2019.01); G06F 3/0484 (2013.01); G06F 3/0482 (2013.01); G06F 16/34 (2019.01); G06F 16/93 (2019.01); G06F 16/248 (2019.01); G06F 16/332 (2019.01); G06F 16/33 (2019.01); G06F 16/338 (2019.01); G06F 16/951 (2019.01); G06Q 10/06 (2012.01); G06F 40/166 (2020.01); G06F 40/169 (2020.01); G06F 40/174 (2020.01); G06Q 10/00 (2012.01);
U.S. Cl.
CPC ...
G06F 16/287 (2019.01); G06F 3/0482 (2013.01); G06F 3/04842 (2013.01); G06F 16/248 (2019.01); G06F 16/332 (2019.01); G06F 16/334 (2019.01); G06F 16/338 (2019.01); G06F 16/34 (2019.01); G06F 16/93 (2019.01); G06F 16/951 (2019.01); G06F 40/166 (2020.01); G06F 40/169 (2020.01); G06F 40/174 (2020.01); G06Q 10/00 (2013.01); G06Q 10/0637 (2013.01); Y04S 10/54 (2013.01);
Abstract

Embodiments are directed towards real time display of event records and extracted values based on at least one extraction rule, such as a regular expression. A user interface may be employed to enable a user to have an extraction rule automatically generate and/or to manually enter an extraction rule. The user may be enabled to manually edit a previously provided extraction rule, which may result in real time display of updated extracted values. The extraction rule may be utilized to extract values from each of a plurality of records, including event records of unstructured machine data. Statistics may be determined for each unique extracted value, and may be displayed to the user in real time. The user interface may also enable the user to select at least one unique extracted value to display those event records that include an extracted value that matches the selected value.


Find Patent Forward Citations

Loading…