IP Library Granted Patent US 11,392,605
Granted Patent B1
US 11,392,605 · App. 17/038,265 · Granted Jul 19, 2022

Integration in computer analytics system

Inventors: Subramaniam Baskaran (Foster City, CA); Syam Bollu (Union City, CA); Tristan Fletcher (Pleasant Hill, CA); Michael Margulis (Danville, CA); Joel Schoenberg (Vashon, WA); Omprakaash Thoppai (San Jose, CA)
Assignee: Splunk Inc.
G06F16/254G06F16/248G06F16/24568G06F16/258
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,392,605
App. No.
17/038,265
Granted
Jul 19, 2022
Kind
B1
Abstract

A computer implemented method includes establishing, by a data intake and query system, a network connection between the data intake and query system and an application and infrastructure monitoring platform. The data intake and query system receives a data stream from the application and infrastructure monitoring platform. The computer implemented method further includes transforming the data stream while receiving the data stream to obtain a transformed data stream. Further, the transformed data stream is analyzed while receiving the data stream to generate analysis results, which are presented.

Claims (85)

1. A computer implemented method comprising:

establishing, by a data intake and query system, a network connection between the data intake and query system and an application and infrastructure monitoring platform;

receiving, by the data intake and query system, a data stream from the application and infrastructure monitoring platform;

transforming the data stream while receiving the data stream to obtain a transformed data stream;

analyzing the transformed data stream while receiving the data stream to generate analysis results;

outputting the analysis results;

detecting, based on the analysis results of the transformed data stream, a new network entity connected to the application and infrastructure monitoring platform;

generating an object representing the new network entity; and

storing the object in a data store of the data intake and query system.

2. The computer implemented method of claim 1 , further comprising:

obtaining, from the data store located in the data intake and query system, a plurality of events,

wherein analyzing the transformed data stream is further performed using the plurality of events.

3. The computer implemented method of claim 1 , further comprising:

obtaining, from the data store located in the data intake and query system, a plurality of events;

generating a dashboard comprising the analysis results and an output determined from the plurality of events; and

presenting the dashboard in a graphical user interface.

4. The computer implemented method of claim 1 , further comprising:

receiving a data intake and query system query comprising a monitoring platform command;

extracting, based on a tag associated with the monitoring platform command, the monitoring platform command from the data intake and query system query; and

transmitting, to the application and infrastructure monitoring platform, the monitoring platform command via a monitoring platform interface on the data intake and query system.

5. The computer implemented method of claim 1 , further comprising:

extracting, from a first portion of the data stream, metadata of the first portion of the data stream;

populating an initial location of the transformed data stream with the metadata; and

while receiving the data stream, generating event data from each subsequent portion of the data stream.

6. The computer implemented method of claim 1 , further comprising:

receiving a job request comprising a monitoring platform job;

extracting, based on a tag associated with the monitoring platform job, the monitoring platform job from the job request; and

transmitting, to the application and infrastructure monitoring platform, the monitoring platform job via a monitoring platform interface on the data intake and query system,

wherein receiving the data stream is in response to executing the monitoring platform job on the application and infrastructure monitoring platform.

7. A computing device, comprising:

a processor; and

a non-transitory computer-readable medium having stored thereon instructions that, when executed by the processor, cause the processor to perform operations including:

establishing, by a data intake and query system, a network connection between the data intake and query system and an application and infrastructure monitoring platform,

receiving, by the data intake and query system, a data stream from the application and infrastructure monitoring platform,

transforming the data stream while receiving the data stream to obtain a transformed data stream,

analyzing the transformed data stream while receiving the data stream to generate analysis results,

outputting the analysis results,

detecting, based on the analysis results of the transformed data stream, a new network entity connected to the application and infrastructure monitoring platform,

generating an object representing the new network entity, and

storing the object in a data store of the data intake and query system.

8. The computing device of claim 7 , the operations further comprising:

obtaining, from the data store located in the data intake and query system, a plurality of events,

wherein analyzing the transformed data stream is further performed using the plurality of events.

9. The computing device of claim 7 , the operations further comprising:

obtaining, from the data store located in the data intake and query system, a plurality of events;

generating a dashboard comprising the analysis results and an output determined from the plurality of events; and

presenting the dashboard in a graphical user interface.

10. The computing device of claim 7 , the operations further comprising:

receiving a data intake and query system query comprising a monitoring platform command;

extracting, based on a tag associated with the monitoring platform command, the monitoring platform command from the data intake and query system query; and

transmitting, to the application and infrastructure monitoring platform, the monitoring platform command via a monitoring platform interface on the data intake and query system.

11. The computing device of claim 7 , operations further comprising:

extracting, from a first portion of the data stream, metadata of the first portion of the data stream;

populating an initial location of the transformed data stream with the metadata; and

while receiving the data stream, generating event data from each subsequent portion of the data stream.

12. The computing device of claim 7 , operations further comprising:

receiving a job request comprising a monitoring platform job;

extracting, based on a tag associated with the monitoring platform job, the monitoring platform job from the job request; and

transmitting, to the application and infrastructure monitoring platform, the monitoring platform job via a monitoring platform interface on the data intake and query system,

wherein receiving the data stream is in response to executing the monitoring platform job on the application and infrastructure monitoring platform.

13. A non-transitory computer readable medium comprising computer readable program code for performing operations, the operations comprising:

establishing, by a data intake and query system, a network connection between the data intake and query system and an application and infrastructure monitoring platform;

receiving, by the data intake and query system, a data stream from the application and infrastructure monitoring platform;

transforming the data stream while receiving the data stream to obtain a transformed data stream;

analyzing the transformed data stream while receiving the data stream to generate analysis results;

outputting the analysis results;

detecting, based on the analysis results of the transformed data stream, a new network entity connected to the application and infrastructure monitoring platform;

generating an object representing the new network entity; and

storing the object in a data store of the data intake and query system.

14. The non-transitory computer readable medium of claim 13 , the operations further comprising:

obtaining, from the data store located in the data intake and query system, a plurality of events,

wherein analyzing the transformed data stream is further performed using the plurality of events.

15. The non-transitory computer readable medium of claim 13 , the operations further comprising:

receiving a data intake and query system query comprising a monitoring platform command;

extracting, based on a tag associated with the monitoring platform command, the monitoring platform command from the data intake and query system query; and

transmitting, to the application and infrastructure monitoring platform, the monitoring platform command via a monitoring platform interface on the data intake and query system.

16. The non-transitory computer readable medium of claim 13 , the operations further comprising:

extracting, from a first portion of the data stream, metadata of the first portion of the data stream;

populating an initial location of the transformed data stream with the metadata; and

while receiving the data stream, generating event data from each subsequent portion of the data stream.

17. The non-transitory computer readable medium of claim 13 , the operations further comprising:

receiving a job request comprising a monitoring platform job;

extracting, based on a tag associated with the monitoring platform job, the monitoring platform job from the job request; and

transmitting, to the application and infrastructure monitoring platform, the monitoring platform job via a monitoring platform interface on the data intake and query system,

wherein receiving the data stream is in response to executing the monitoring platform job on the application and infrastructure monitoring platform.

Assignments (4)
CHANGE OF NAME Recorded Jul 22, 2025
From: SPLUNK INC.
To: SPLUNK LLC
Reel/Frame 072170/0599 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 22, 2025
From: SPLUNK LLC
To: CISCO TECHNOLOGY, INC.
Reel/Frame 072173/0058 →
CHANGE OF NAME Recorded Jan 6, 2025
From: SPLUNK INC.
To: SPLUNK LLC
Reel/Frame 069825/0558 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 30, 2020
From: BASKARAN, SUBRAMANIAM; BOLLU, SYAM; FLETCHER, TRISTAN; MARGULIS, MICHAEL; SCHOENBERG, JOEL; THOPPAI, OMPRAKAASH
To: SPLUNK INC.
Reel/Frame 053938/0956 →
Cited By (7)
US 12,235,838 US 12,255,788 US 12,261,923 US 12,287,710 US 12,463,880 US 12,517,884 US 12,614,192