IP Library Granted Patent US 9,497,199
Granted Patent B2
US 9,497,199 · App. 15/007,184 · Granted Nov 15, 2016

Access control for event data stored in cloud-based data stores

Inventors: Robin Kumar Das (Healdsburg, CA); Ledio Ago (San Leandro, CA); Declan Gerard Shanaghy (Benicia, CA); Gaurav Gupta (San Francisco, CA)
Assignee: Splunk Inc.
H04L63/10G06F9/4887G06F9/5088G06F17/3087G06F17/30091G06F17/30094G06F17/30117G06F17/30289G06F17/30321G06F17/30336G06F17/30864G06F17/30876G06F17/30896G06Q20/145H04L12/1435H04L67/1097
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,497,199
App. No.
15/007,184
Filed
Jan 26, 2016
Granted
Nov 15, 2016
Kind
B2
Art Unit
2154
USPC
707/708
Abstract

Embodiments are directed towards a system and method for a cloud-based front end that may abstract and enable access to the underlying cloud-hosted elements and objects that may be part of a multi-tenant application, such as a search application. Search objects may be employed to access indexed objects. An amount of indexed data accessible to a user may be based on an index storage limit selected by the user, such that data that exceeds the index storage limit may continue to be indexed. Also, one or more projects can be elastically scaled for a user to provide resources that may meet the specific needs of each project.

Claims (37)

1. A method, comprising:

receiving, by a cloud-based access control server, a request from a first user to access a set of time stamped, searchable events, the set of time stamped, searchable events among a plurality of sets of time stamped, searchable events stored in a plurality of cloud-based data stores, each of the time stamped, searchable events is parsed from raw data collected from one or more data sources, the raw data relate to performance or security aspects of one or more information technology systems;

determining, by the cloud-based access control server, a role of the first user for the set of time stamped, searchable events;

determining, by the cloud-based access control server, whether the first user has permission to access the set of time stamped, searchable events based on the role determined for the first user;

allowing, by the cloud-based access control server, the first user to access the set of time stamped, searchable events to perform operations on the set of time stamped, searchable events when the role indicates that the first user has permission to access the set of time stamped, searchable events;

wherein the method is performed by one or more computing devices.

2. The method of claim 1 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to provide data to be parsed into time stamped, searchable events at a cloud-based data store.

3. The method of claim 1 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to provide data to be parsed into time stamped, searchable events at a cloud-based data store and grants the first user permission to search time stamped, searchable events stored by the cloud-based data store.

4. The method of claim 1 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to access cloud-based resources associated with the set of time stamped, searchable events.

5. The method of claim 1 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to search time stamped, searchable events stored by a particular cloud-based data store.

6. The method of claim 1 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to search time stamped, searchable events stored by a particular cloud-based data store, and wherein the search is performed by a cloud-based search application.

7. The method of claim 1 , further comprising:

receiving, by the cloud-based access control server, input corresponding to an invitation to provide access to the set of time stamped, searchable events to a second user;

wherein the second user inherits the role for the set of time stamped, searchable events from the first user.

8. An apparatus, comprising:

a user input receiver, at a cloud-based access control server, implemented at least partially in hardware, that receives a request from a first user to access a set of time stamped, searchable events, the set of time stamped, searchable events among a plurality of sets of time stamped, searchable events stored in a plurality of cloud-based data stores, each of the time stamped, searchable events is parsed from raw data collected from one or more data sources, the raw data relate to performance or security aspects of one or more information technology systems;

a role processing device, at the cloud-based access control server, implemented at least partially in hardware, that determines a role of the first user for the set of time stamped, searchable events;

wherein the role processing device determines whether the first user has permission to access the set of time stamped, searchable events based on the role determined for the first user;

wherein the role processing device allows the first user to access the set of time stamped, searchable events to perform operations on the set of time stamped, searchable events when the role indicates that the first user has permission to access the set of time stamped, searchable events.

9. The apparatus of claim 8 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to provide data to be parsed into time stamped, searchable events at a cloud-based data store.

10. The apparatus of claim 8 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to provide data to be parsed into time stamped, searchable events at a cloud-based data store and grants the first user permission to search time stamped, searchable events stored by the cloud-based data store.

11. The apparatus of claim 8 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to access cloud-based resources associated with the set of time stamped, searchable events.

12. The apparatus of claim 8 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to search time stamped, searchable events stored by a particular cloud-based data store.

13. The apparatus of claim 8 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to search time stamped, searchable events stored by a particular cloud-based data store, and wherein the search is performed by a cloud-based search application.

14. One or more non-transitory computer-readable storage media, storing one or more sequences of instructions, which when executed by one or more processors cause performance of:

receiving, by a cloud-based access control server, a request from a first user to access a set of time stamped, searchable events, the set of time stamped, searchable events among a plurality of sets of time stamped, searchable events stored in a plurality of cloud-based data stores, each of the time stamped, searchable events is parsed from raw data collected from one or more data sources, the raw data relate to performance or security aspects of one or more information technology systems;

determining, by the cloud-based access control server, a role of the first user for the set of time stamped, searchable events;

determining, by the cloud-based access control server, whether the first user has permission to access the set of time stamped, searchable events based on the role determined for the first user;

allowing, by the cloud-based access control server, the first user to access the set of time stamped, searchable events to perform operations on the set of time stamped, searchable events when the role indicates that the first user has permission to access the set of time stamped, searchable events.

15. The one or more non-transitory computer-readable storage media of claim 14 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to provide data to be parsed into time stamped, searchable events at a cloud-based data store.

16. The one or more non-transitory computer-readable storage media of claim 14 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to provide data to be parsed into time stamped, searchable events at a cloud-based data store and grants the first user permission to search time stamped, searchable events stored by the cloud-based data store.

17. The one or more non-transitory computer-readable storage media of claim 14 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to access cloud-based resources associated with the set of time stamped, searchable events.

18. The one or more non-transitory computer-readable storage media of claim 14 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to search time stamped, searchable events stored by a particular cloud-based data store.

19. The one or more non-transitory computer-readable storage media of claim 14 , wherein the role of the first user for the set of time stamped, searchable events grants the first user permission to search time stamped, searchable events stored by a particular cloud-based data store, and wherein the search is performed by a cloud-based search application.

20. The one or more non-transitory computer-readable storage media of claim 14 , further comprising:

receiving, by the cloud-based access control server, input corresponding to an invitation to provide access to the set of time stamped, searchable events to a second user;

wherein the second user inherits the role for the set of time stamped, searchable events from the first user.

Assignments (3)
CHANGE OF NAME Recorded Jul 22, 2025
From: SPLUNK INC.
To: SPLUNK LLC
Reel/Frame 072170/0599 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 22, 2025
From: SPLUNK LLC
To: CISCO TECHNOLOGY, INC.
Reel/Frame 072173/0058 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 14, 2016
From: DAS, ROBIN KUMAR; AGO, LEDIO; SHANAGHY, DECLAN GERARD; GUPTA, GAURAV
To: SPLUNK INC.
Reel/Frame 039161/0418 →
Continuity (7)
Continuation 14735120 · Jun 9, 2015
Continuation 14449135 · Jul 31, 2014
Continuation 14068445 · Oct 31, 2013
Continuation 13662356 · Oct 26, 2012
Continuation 13572434 · Aug 10, 2012
Provisional Application 61523063 · Aug 12, 2011
Related Publication 20160164873A1 · Jun 9, 2016