IP Library Granted Patent US 11,675,473
Granted Patent B1
US 11,675,473 · App. 17/246,334 · Granted Jun 13, 2023

User interface for summarizing data to generate previews of metric data

Inventors: Jared Breeden (Melbourne, FL); Steven Karis (San Mateo, CA); Amin Moshgabadi (San Diego, CA); Siri Singamneni (Milpitas, CA); Rebecca Tortell (Los Altos, CA); Joshua Vertes (San Diego, CA)
Assignee: SPLUNK INC.
G06F3/0481G06F3/04847G06F16/245
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,675,473
App. No.
17/246,334
Granted
Jun 13, 2023
Kind
B1
Abstract

Systems and methods are described for providing a user interface for display of metric data. A plurality of graphical controls can be displayed in the user interface to modify the generation of the metric data. For example, a first graphical control may enable a user to specify a processing criterion and a second graphical control may enable a user to specify an aggregation criterion and a grouping criterion. Based on the aggregation criterion, aggregated data can be generated from data processed using the processing criterion. The grouping criterion can be used to extract metric data from the aggregated data and a preview of the metric data can be displayed in the user interface.

Claims (56)

1. A method comprising:

causing display of a first graphical control in a graphical user interface, wherein the first graphical control enables a user to specify a processing criterion, wherein a distributed data intake and query system uses the processing criterion to generate processed data;

causing display of a second graphical control in the graphical user interface,

wherein a first portion of the second graphical control enables the user to specify a first aggregation criterion from a plurality of aggregation criterion and a second portion of the second graphical control enables the user to specify a grouping criterion from a plurality of grouping criterion,

wherein the second portion is different from the first portion,

wherein the first aggregation criterion defines a first manner of aggregating field-value pairs of the processed data to generate aggregated data and a second aggregation criterion of the plurality of aggregation criterion defines a second manner of aggregating the field-value pairs, and

wherein the grouping criterion defines a manner of grouping a plurality of field values associated with a field of the aggregated data to generate metric data, wherein the grouping criterion comprises a field identifier identifying the field;

generating the aggregated data from the processed data using the first aggregation criterion;

extracting the metric data from the aggregated data based at least in part on the field identifier, wherein the metric data comprises a plurality of groups of data associated with the plurality of field values, wherein the plurality of groups of data are aggregated according to the first manner of aggregating the field-value pairs;

causing the graphical user interface to display a preview of the metric data;

obtaining an indication of a user input in response to the preview of the metric data; and

causing the graphical user interface to display updated metric data based at least in part on the user input, the first aggregation criterion, and the grouping criterion.

2. The method of claim 1 , wherein the second graphical control further enables the user to specify one or more of filter criterion, field criterion, or a time interval.

3. The method of claim 1 , wherein the first aggregation criterion comprises one or more of a count, a maximum, a minimum, an average, or a sum.

4. The method of claim 1 , wherein the distributed data intake and query system uses the processing criterion to generate processed data from log data.

5. The method of claim 1 , wherein the distributed data intake and query system uses the processing criterion to generate processed data from log data and metadata.

6. The method of claim 1 , wherein the processing criterion identifies one or more of a manner of searching data, a manner of processing data, or a manner of filtering data.

7. The method of claim 1 , wherein the distributed data intake and query system uses the processing criterion to generate processed data from data generated by a plurality of components in an information technology environment.

8. The method of claim 1 , wherein the distributed data intake and query system uses the processing criterion to generate processed data from data generated by disparate data sources.

9. The method of claim 1 , wherein the metric data comprises time series data.

10. The method of claim 1 , wherein the user input comprises a rejection of the preview of the metric data, wherein the second graphical control further enables the user to specify one or more of updated aggregation criterion or updated grouping criterion, wherein the updated metric data is based at least in part on the one or more of the updated aggregation criterion or the updated grouping criterion.

11. The method of claim 1 , wherein the distributed data intake and query system further uses the processing criterion to extract a plurality of field-value pairs, wherein the field identifier is associated with a particular field-value pair of the plurality of field-value pairs.

12. The method of claim 1 , further comprising:

determining that the metric data exceeds a threshold; and

causing the graphical user interface to display an alert based at least in part on determining that the metric data exceeds the threshold.

13. The method of claim 1 , wherein causing the graphical user interface to display updated metric data comprises periodically causing the graphical user interface to display the updated metric data.

14. The method of claim 1 , wherein the second graphical control further enables the user to specify filter criterion that defines a manner in which to generate the processed data.

15. The method of claim 1 , wherein the second graphical control further enables the user to specify field criterion that defines the field.

16. Non-transitory computer readable media comprising computer-executable instructions that, when executed by a computing system of a data ingestion system, cause the computing system to:

cause display of a first graphical control in a graphical user interface, wherein the first graphical control enables a user to specify a processing criterion, wherein a distributed data intake and query system uses the processing criterion to generate processed data;

cause display of a second graphical control in the graphical user interface,

wherein a first portion of the second graphical control enables the user to specify a first aggregation criterion from a plurality of aggregation criterion and a second portion of the second graphical control enables the user to specify a grouping criterion from a plurality of grouping criterion,

wherein the second portion is different from the first portion,

wherein the first aggregation criterion defines a first manner of aggregating field-value pairs of the processed data to generate aggregated data and a second aggregation criterion of the plurality of aggregation criterion defines a second manner of aggregating the field-value pairs, and

wherein the grouping criterion defines a manner of grouping a plurality of field values associated with a field of the aggregated data to generate metric data, wherein the grouping criterion comprises a field identifier identifying the field;

generate the aggregated data from the processed data using the first aggregation criterion;

extract the metric data from the aggregated data based at least in part on the field identifier, wherein the metric data comprises a plurality of groups of data associated with the plurality of field values, the plurality of groups of data aggregated according to the first manner of aggregating the field-value pairs;

cause the graphical user interface to display a preview of the metric data;

obtain a user input in response to the preview of the metric data; and

cause the graphical user interface to display updated metric data based at least in part on the user input, the first aggregation criterion, and the grouping criterion.

17. The non-transitory computer readable media of claim 16 , wherein to cause the graphical user interface to display updated metric data, execution of the computer-executable instructions further causes the computing system to periodically cause the graphical user interface to display the updated metric data.

18. A computing system of a data ingestion system, the computing system comprising:

a data store including computer-executable instructions; and

one or more processors configured to execute the computer-executable instructions, wherein execution of the computer-executable instructions causes the computing system to:

cause display of a first graphical control in a graphical user interface, wherein the first graphical control enables a user to specify a processing criterion, wherein a distributed data intake and query system uses the processing criterion to generate processed data;

cause display of a second graphical control in the graphical user interface,

wherein a first portion of the second graphical control enables the user to specify a first aggregation criterion from a plurality of aggregation criterion and a second portion of the second graphical control enables the user to specify a grouping criterion from a plurality of grouping criterion:

wherein the second portion is different from the first portion,

wherein the first aggregation criterion defines a first manner of aggregating field-value pairs of the processed data to generate aggregated data and a second aggregation criterion of the plurality of aggregation criterion defines a second manner of aggregating the field-value pairs, and

wherein the grouping criterion defines a manner of grouping a plurality of field values associated with a field of the aggregated data to generate metric data, wherein the grouping criterion comprises a field identifier identifying the field;

generate the aggregated data from the processed data using the first aggregation criterion;

extract the metric data from the aggregated data based at least in part on the field identifier, wherein the metric data comprises a plurality of groups of data associated with the plurality of field values, the plurality of groups of data aggregated according to the first manner of aggregating the field-value pairs;

cause the graphical user interface to display a preview of the metric data;

obtain a user input in response to the preview of the metric data; and

cause the graphical user interface to display updated metric data based at least in part on the user input, the first aggregation criterion, and the grouping criterion.

19. The computing system of claim 18 , wherein to cause the graphical user interface to display updated metric data, execution of the computer-executable instructions further causes the computing system to periodically cause the graphical user interface to display the updated metric data.

Assignments (3)
CHANGE OF NAME Recorded Jul 22, 2025
From: SPLUNK INC.
To: SPLUNK LLC
Reel/Frame 072170/0599 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 22, 2025
From: SPLUNK LLC
To: CISCO TECHNOLOGY, INC.
Reel/Frame 072173/0058 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 6, 2021
From: BREEDEN, JARED; KARIS, STEVEN; MOSHGABADI, AMIN; SINGAMNENI, SIRI; TORTELL, REBECCA; VERTES, JOSHUA
To: SPLUNK INC.
Reel/Frame 057720/0577 →
Cited By (47)
US 1,058,589 US 1,058,590 US 1,058,591 US 1,058,592 US 1,058,593 US 1,058,596 US 1,059,398 US 1,059,414 US 1,063,973 US 1,085,145 US 1,089,268 US 1,089,269 US 1,089,270 US 1,089,271 US 1,089,272 US 1,089,273 US 1,091,590 US 1,091,591 US 1,091,592 US 1,091,593 US 1,091,594 US 1,091,595 US 1,091,596 US 1,091,597 US 1,091,598 US 1,092,526 US 1,094,427 US 1,094,428 US 1,094,429 US 1,094,430 US 1,094,431 US 1,094,432 US 1,094,433 US 1,095,578 US 1,095,579 US 1,095,580 US 1,095,581 US 1,095,582 US 1,095,583 US 1,095,584 US 1,095,585 US 1,096,817 US 1,096,835 US 1,114,812 US 12,438,766 US 12,481,655 US 12,493,615