IP Library Patent Application 19253598
Patent Application
App. No. 19/253,598

GRAPHICAL USER INTERFACE REPRESENTING EVENT STREAMS

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
19/253,598
Abstract

Disclosed embodiments receive an event stream from a remote capture agent. The event stream includes timestamped event data generated by the remote capture agent based on network traffic monitored by the remote capture agent. A graphical user interface (GUI) is caused to be displayed for obtaining configuration information for configuring the generation of time-series event data from network packets captured by the remote capture agent. A set of statistics is generated from the time-series event data, and the configuration information is updated to trigger subsequent storage and processing of at least a portion of the event stream by one or more components on a network based on one or more of the statistics, a storage limit associated with the time-series event data, an index volume of the event stream, a historical trend associated with the statistics, or input through the GUI.

Claims (28)

1 . A computer-implemented method, comprising:

causing display, via a graphical user interface, including a set of event streams and a set of statistics representing statistics for network traffic corresponding with the set of event streams, the set of statistics generated based on timestamped event data of the set of event streams received from at least one remote capture agent without subsequently processing and storing the timestamped event data used to generate the statistics in a data store; and

causing display, via the graphical user interface, of a graph of index volumes associated with the set of event streams.

2 . The method of claim 1 , wherein the set of statistics includes one or more of a total number of events, a total incoming traffic, a total outgoing traffic, a total traffic, or an index volume for the timestamped event data in the set of event streams.

3 . The method of claim 1 , wherein the graph comprises a bar chart of index volumes of the set of event streams.

4 . The method of claim 1 , wherein the graph comprises a pie chart of index volumes across the set of event streams.

5 . The method of claim 1 further comprising causing display, via the graphical user interface, of a user-interface element to filter the set of statistics by a host from which the set of event streams are collected.

6 . The method of claim 1 , wherein the graph is updated in real-time as new timestamped event data is received.

7 . The method of claim 1 , wherein in response to detecting an indicated portion associated with the graph, modifying the appearance of the graph.

8 . The method of claim 7 , wherein in response to detecting the indicated portion associated with the graph, a search term or other data associated with an even stream is displayed.

9 . The method of claim 1 further comprising causing display, via the graphical user interface, of a legend corresponding with the graph, wherein in response to detection an indicated portion associated with the legend, modifying the appearance of the graph.

10 . The method of claim 1 further comprising causing display, via the graphical user interface, of a user-interface element including options used to configure a search term.

11 . A computing device, comprising:

one or more processors; and

a non-transitory computer-readable medium having stored thereon instructions that, when executed by the one or more processors, cause the one or more processors to perform operations including:

causing display, via a graphical user interface, including a set of event streams and a set of statistics representing statistics for network traffic corresponding with the set of event streams, the set of statistics generated based on timestamped event data of the set of event streams received from at least one remote capture agent without subsequently processing and storing the timestamped event data used to generate the statistics in a data store; and

causing display, via the graphical user interface, of a graph of index volumes associated with the set of event streams.

12 . The computing device of claim 11 , wherein the set of statistics includes one or more of a total number of events, a total incoming traffic, a total outgoing traffic, a total traffic, or an index volume for the timestamped event data in the set of event streams.

13 . The computing device of claim 11 , wherein the graph comprises a bar chart of index volumes of the set of event streams.

14 . The computing device of claim 11 , wherein the graph comprises a pie chart of index volumes across the set of event streams.

15 . A non-transitory computer-readable medium having stored thereon instructions that, when executed by one or more processors, cause the one or more processors to perform operations including:

causing display, via a graphical user interface, including a set of event streams and a set of statistics representing statistics for network traffic corresponding with the set of event streams, the set of statistics generated based on timestamped event data of the set of event streams received from at least one remote capture agent without subsequently processing and storing the timestamped event data used to generate the statistics in a data store; and

causing display, via the graphical user interface, of a graph of index volumes associated with the set of event streams.

16 . The non-transitory computer-readable medium of claim 15 further comprising causing display, via the graphical user interface, of a user-interface element to filter the set of statistics by a host from which the set of event streams are collected.

17 . The non-transitory computer-readable medium of claim 15 , wherein the graph is updated in real-time as new timestamped event data is received.

18 . The non-transitory computer-readable medium of claim 15 , wherein in response to detecting an indicated portion associated with the graph, modifying the appearance of the graph.

19 . The non-transitory computer-readable medium of claim 18 , wherein in response to detecting the indicated portion associated with the graph, a search term or other data associated with an even stream is displayed.

20 . The non-transitory computer-readable medium of claim 15 further comprising causing display, via the graphical user interface, of a legend corresponding with the graph, wherein in response to detection an indicated portion associated with the legend, modifying the appearance of the graph.

Assignments (5)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 11, 2026
From: SPLUNK LLC
To: CISCO TECHNOLOGY, INC.
Reel/Frame 074735/0375 →
CHANGE OF NAME Recorded Feb 11, 2026
From: SPLUNK INC.
To: SPLUNK LLC
Reel/Frame 074768/0649 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 13, 2026
From: SPLUNK LLC
To: CISCO TECHNOLOGY, INC.
Reel/Frame 074331/0001 →
CHANGE OF NAME Recorded Jan 13, 2026
From: SPLUNK INC.
To: SPLUNK LLC
Reel/Frame 074331/0875 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 16, 2025
From: HSIAO, FANG I.; JIANG, WEI; SHCHERBAKOV, VLADIMIR A.; CHANDRASEKHARAN, RAMKUMAR; CHING, CLAYTON S.
To: SPLUNK INC.
Reel/Frame 071727/0063 →