IP Library › Granted Patent US 9,596,146
Granted Patent B2
US 9,596,146 · App. 15/012,817 · Granted Mar 14, 2017

Mapping key performance indicators derived from machine data to dashboard templates

Inventors: John Robert Coates (Berkeley, CA); Poorva Malviya (Walnut Creek, CA); Brian John Bingham (Castle Rock, CO)
Assignee: Splunk Inc.
H04L41/22G06F3/0481G06F3/0482G06F3/0484G06F3/04817G06F3/04842G06F3/04847G06F9/542G06F17/30424G06F17/30463G06F17/30554G06F17/30572G06F17/30675G06F17/30864G06F17/30867G06F17/30958G06F17/30964G06F17/30991G06Q10/06393H04L29/08072H04L41/0213H04L41/5009H04L41/5032H04L43/045H04L43/16H04L67/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,596,146
App. No.
15/012,817
Filed
Feb 1, 2016
Granted
Mar 14, 2017
Kind
B2
Art Unit
2159
USPC
715/736
Abstract

Raw machine data are captured and organized as events. Entity definitions representing machine entities that perform a service identify the machine data associated with respective entities. KPI search queries each define a KPI. Each KPI search query derives one or more values for the KPI from machine data identified in the entity definitions. A dashboard template having an identifier for the KPI is presented by a graphical interface. The identifier presents at a user-designated location and may be a widget that provides a numerical or graphical representation of one or more values for the KPI. Embodiments may allow modification of the template.

Claims (45)

1. A method comprising:

causing display of a dashboard template in a graphical interface having an identifier for a KPI at a designated location, the KPI defined by a search query that derives one or more values for the KPI from machine data identified in stored entity definitions for one or more entities that perform a service, the one or more values reflecting a measure of the service;

wherein the KPI and the designated location are based on dashboard specification information in computer storage, the dashboard specification information based at least in part on prior user input;

wherein each stored entity definition identifies machine data generated by or about a corresponding one of the entities, and is associated with a stored service definition for the service;

wherein the machine data is produced by one or more components within an information technology environment and reflects activity within the information technology environment; and

wherein the method is performed by a computer system comprising one or more processors coupled to the computer storage.

2. The method of claim 1 wherein the machine data associated with one of the entities comes from more than one source.

3. The method of claim 1 wherein the machine data are organized as events each having a segment of raw machine data.

4. The method of claim 1 wherein the search query is in a format for execution by an event processing system.

5. The method of claim 1 wherein the machine data associated with a particular one of the entities comes from the particular entity and at least one other source.

6. The method of claim 1 wherein the designated location corresponds to dashboard specification information about a graphical interface widget for the KPI, the widget providing a numerical or graphical representation of one or more values for the KPI.

7. The method of claim 1 wherein the designated location corresponds to dashboard specification information about a graphical interface widget for the KPI, the widget providing a numerical or graphical representation of one or more values for the KPI and having a style indicated in the dashboard specification information.

8. The method of claim 1 wherein the designated location corresponds to dashboard specification information about a graphical interface widget for the KPI, the widget providing a numerical or graphical representation of one or more values for the KPI, and wherein the identifier for the KPI includes the widget.

9. The method of claim 1 wherein causing the display further includes enabling user interaction to modify the dashboard specification information.

10. The method of claim 1 wherein causing the display further includes enabling user interaction to modify the dashboard specification information related to a background of the dashboard template.

11. The method of claim 1 wherein causing the display further includes enabling user interaction to modify the dashboard specification information related to a background of the dashboard template, the background comprising an image.

12. The method of claim 1 wherein causing the display further includes enabling user interaction to modify the dashboard specification information related to a second KPI.

13. The method of claim 1 wherein causing the display further includes enabling user interaction to modify the dashboard specification information related to at least one of the designated location and the KPI.

14. A system comprising:

a memory; and

a processing device coupled with the memory to:

cause display of a dashboard template in a graphical interface having an identifier for a KPI at a designated location, the KPI defined by a search query that derives one or more values for the KPI from machine data identified in stored entity definitions for one or more entities that perform a service, the one or more values reflecting a measure of the service;

wherein the KPI and the designated location are based on dashboard specification information in computer storage, the dashboard specification information based at least in part on prior user input;

wherein each stored entity definition identifies machine data generated by or about a corresponding one of the entities, and is associated with a stored service definition for the service; and

wherein the machine data is produced by one or more components within an information technology environment and reflects activity within the information technology environment.

15. The system of claim 14 wherein the search query is in a format for execution by an event processing system.

16. The system of claim 14 wherein the designated location corresponds to dashboard specification information about a graphical interface widget for the KPI, the widget providing a numerical or graphical representation of one or more values for the KPI.

17. The system of claim 14 wherein the designated location corresponds to dashboard specification information about a graphical interface widget for the KPI, the widget providing a numerical or graphical representation of one or more values for the KPI, and wherein the identifier for the KPI includes the widget.

18. The system of claim 14 wherein the machine data associated with a particular one of the entities comes from the particular entity and at least one other source.

19. The system of claim 14 wherein the machine data associated with one of the entities comes from more than one source.

20. The system of claim 14 wherein the machine data are organized as events each having a segment of raw machine data.

21. The system of claim 14 wherein the designated location corresponds to dashboard specification information about a graphical interface widget for the KPI, the widget providing a numerical or graphical representation of one or more values for the KPI and having a style indicated in the dashboard specification information.

22. The system of claim 14 wherein to cause the display further includes enabling user interaction to modify the dashboard specification information.

23. The system of claim 14 wherein to cause the display further includes enabling user interaction to modify the dashboard specification information related to at least one of the designated location and the KPI.

24. A non-transitory computer readable storage medium encoding instructions thereon that, in response to execution by one or more processing devices, cause the one or more processing devices to perform operations comprising:

causing display of a dashboard template in a graphical interface having an identifier for a KPI at a designated location, the KPI defined by a search query that derives one or more values for the KPI from machine data identified in stored entity definitions for one or more entities that perform a service, the one or more values reflecting a measure of the service;

wherein the KPI and the designated location are based on dashboard specification information in computer storage, the dashboard specification information based at least in part on prior user input;

wherein each stored entity definition identifies machine data generated by or about a corresponding one of the entities, and is associated with a stored service definition for the service; and

wherein the machine data is produced by one or more components within an information technology environment and reflects activity within the information technology environment.

25. The non-transitory computer readable storage medium of claim 24 wherein the machine data associated with a particular one of the entities comes from the particular entity and at least one other source.

26. The non-transitory computer readable storage medium of claim 24 wherein the machine data associated with one of the entities comes from more than one source.

27. The non-transitory computer readable storage medium of claim 24 wherein the machine data are organized as events each having a segment of raw machine data.

28. The non-transitory computer readable storage medium of claim 24 wherein the designated location corresponds to dashboard specification information about a graphical interface widget for the KPI, the widget providing a numerical or graphical representation of one or more values for the KPI and having a style indicated in the dashboard specification information.

29. The non-transitory computer readable storage medium of claim 24 wherein causing the display further includes enabling user interaction to modify the dashboard specification information.

30. The non-transitory computer readable storage medium of claim 24 wherein causing the display further includes enabling user interaction to modify the dashboard specification information related to at least one of the designated location and the KPI.

Assignments (3)
CHANGE OF NAME Recorded Jul 22, 2025
From: SPLUNK INC.
To: SPLUNK LLC
Reel/Frame 072170/0599 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 22, 2025
From: SPLUNK LLC
To: CISCO TECHNOLOGY, INC.
Reel/Frame 072173/0058 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 29, 2017
From: COATES, JOHN ROBERT; MALVIYA, POORVA; BINGHAM, BRIAN
To: SPLUNK INC.
Reel/Frame 041114/0390 →
Continuity (3)
Continuation 14528882 · Oct 30, 2014
Provisional Application 62062104 · Oct 9, 2014
Related Publication 20160147380A1 · May 26, 2016