IP Library Granted Patent US 11,082,289
Granted Patent B2
US 11,082,289 · App. 16/402,896 · Granted Aug 3, 2021

Alert intelligence integration

Inventors: Kanwaldeep Kaur Dang (Sammamish, WA); Ritika Goyal (Seattle, WA); Luc John Johnson (Bothell, WA); Bnayahu Makovsky (Savyon, IL)
Assignee: ServiceNow, Inc.
H04L41/0686G06N20/00H04L41/0869H04L41/16
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,082,289
App. No.
16/402,896
Filed
May 3, 2019
Granted
Aug 3, 2021
Kind
B2
Art Unit
2441
USPC
709/224
Abstract

An enterprise platform may include a time series database that may include time series data related to a plurality of configuration items associated with an enterprise. The enterprise platform may also include one or more instance data tables having instance data associated with the plurality of configuration items. The enterprise platform may also include an alert interface that may receive an indication of an alert associated with a configuration item of the plurality of configuration items and determine a subset of a plurality of metrics associated with the alert based on the configuration item and the time series data, the instance data, or both. The alert interface may then generate a plurality of visualizations for display via a user interface based on the subset of the plurality of metrics.

Claims (51)

1. An enterprise platform, comprising:

a time series database, comprising time series data related to a plurality of configuration items associated with an enterprise;

one or more instance data tables comprising instance data associated with the plurality of configuration items, wherein the instance data comprises one or more instantaneous data values;

a processor configured to access memory comprising computer-executable instructions configured to cause the processor to:

receive an indication of an alert from a computing system in response to the computing system detecting an alert-triggering event being present in the plurality of configuration items;

access the plurality of configuration items in response to receiving the indication of the alert-triggering event, wherein each of the plurality of configuration items comprises metadata relating to a respective set of metrics;

determine a subset of a plurality of metrics based on the respective set of metrics associated with each of the plurality of configuration items, the time series data, the instance data, and the alert, wherein the subset of the plurality of metrics is predefined in a memory for a combination of the plurality of configuration items and the alert, and wherein the plurality of metrics includes a greater number of metrics as compared to the subset of the plurality of metrics;

generate a plurality of visualizations for display via a user interface based on the subset of the plurality of metrics;

receive one or more changes associated with the subset of the plurality of metrics;

update the plurality of visualizations for display via the user interface based on the one or more changes to the subset of the plurality of metrics;

determine whether the one or more changes to the subset of the plurality of metrics has been received more than a threshold amount of times by a plurality of users; and

update the metadata corresponding to each configuration item in response to the one or more changes being received more than the threshold amount of times, wherein the metadata is updated based on the one or more changes to the subset of the plurality of metrics.

2. The enterprise platform of claim 1 , wherein the plurality of metrics comprises a plurality of single data values and a plurality of time series graphs.

3. The enterprise platform of claim 1 , wherein the plurality of visualizations comprises a time series graph representative of a collection of data over a period of time that corresponds to the alert.

4. The enterprise platform of claim 3 , wherein the period of time that corresponds to the alert is adjustable via the user interface.

5. The enterprise platform of claim 1 , wherein the processor is configured to periodically generate or update a model for at least one metric of the subset of the plurality of metrics.

6. The enterprise platform of claim 5 , wherein the processor is configured to add a bound based on an expected range of data values for a period of time to a visualization of the plurality of visualizations based on the model.

7. A tangible, non-transitory, machine-readable medium, comprising machine-readable instructions that, when executed by one or more processors, cause the one or more processors to:

receive an indication of an alert from a computing system in response to the computing system detecting an alert-triggering event being present in a plurality of configuration items;

access the plurality of configuration items in response to receiving the indication of the alert-triggering event, wherein each of the plurality of configuration items comprises metadata relating to a respective set of metrics;

determine a subset of a plurality of metrics based on the respective set of metrics associated with each of the plurality of configuration items, time series data related to the configuration item, instance data comprising one or more instantaneous data values associated with the plurality of configuration items, and the alert, wherein the subset of the plurality of metrics is predefined in a memory for a combination of the plurality of configuration items and the alert, and wherein the plurality of metrics includes a greater number of metrics as compared to the subset of the plurality of metrics;

generate a plurality of visualizations for display via a user interface based on the subset of the plurality of metrics;

receive one or more changes associated with the subset of the plurality of metrics;

update the plurality of visualizations for display via the user interface based on the one or more changes to the subset of the plurality of metrics;

determine whether the one or more changes to the subset of the plurality of metrics has been received more than a threshold amount of times by a plurality of users; and

update the metadata corresponding to each configuration item in response to the one or more changes being received more than the threshold amount of times, wherein the metadata is updated based on the one or more changes to the subset of the plurality of metrics.

8. The machine-readable medium of claim 7 , comprising machine-readable instructions that, when executed by the one or more processors, cause the one or more processors to:

generate an additional visualization that depicts one or more details regarding the alert, wherein the additional visualization comprises a metrics tab; and

determine the subset of the plurality of metrics in response to receiving an input at the metrics tab, wherein the input corresponds to the one or more changes to the subset of the plurality of metrics.

9. The machine-readable medium of claim 7 , wherein the plurality of metrics comprises one or more single data values and one or more time series graphs.

10. The machine-readable medium of claim 7 , comprising machine-readable instructions that, when executed by the one or more processors, cause the one or more processors to periodically generate or update a model for at least one metric of the subset of the plurality of metrics.

11. The machine-readable medium of claim 10 , comprising machine-readable instructions that, when executed by the one or more processors, cause the one or more processors to receive one or more inputs configured to add a bound to a visualization of the plurality of visualizations based on the model.

12. A computer-implemented method, comprising:

receiving, via a processor, an indication of an alert from a computing system in response to the computing system detecting an alert-triggering event being present in a configuration item of a plurality of configuration items;

accessing the plurality of configuration items in response to receiving the indication of the alert-triggering event, wherein each of the plurality of configuration items comprises metadata relating to a respective set of metrics;

determining, via the processor, a subset of a plurality of metrics based on the respective set of metrics associated with each of the plurality of configuration items, time series data related to the configuration item, instance data comprising one or more instantaneous data values associated with the plurality of configuration items, and the alert, wherein the subset of the plurality of metrics is predefined in a memory for a combination of the configuration item and the alert, and wherein the plurality of metrics includes a greater number metrics as compared to the subset of the plurality of metrics;

generating, via the processor, a plurality of visualizations for display via a user interface based on the subset of the plurality of metrics;

receiving, via the processor, one or more changes associated with the subset of the plurality of metrics;

updating, via the processor, the plurality of visualizations for display via the user interface based on the one or more changes to the subset of the plurality of metrics;

determining, via the processor, whether the one or more changes to the subset of the plurality of metrics has been received more than a threshold amount of times by a plurality of users; and

updating, via the processor, the metadata corresponding to each configuration item in response to the one or more changes being received more than the threshold amount of times, wherein the metadata is updated based on the one or more changes to the subset of the plurality of metrics.

13. The computer-implemented method of claim 12 , wherein the plurality of metrics comprises one or more single data values and one or more time series graphs.

14. The computer-implemented method of claim 12 , wherein the subset of the plurality of metrics is predefined in metadata by an authorized user.

15. The computer-implemented method of claim 12 , further comprising:

periodically generating or updating a model for at least one metric of the subset of the plurality of metrics; and

adding a bound to a visualization of the plurality of visualizations based on an expected range of data values for a period of time that corresponds to the alert and based on the model.

16. The enterprise platform of claim 1 , wherein a visualization of the plurality of visualizations is generated for the combination of the configuration item and the alert.

17. The machine-readable medium of claim 7 , wherein a machine learning module is configured to update the subset of the plurality of metrics based on a user change to the plurality of visualizations.

18. The enterprise platform of claim 1 , wherein the subset of the plurality of metrics is predefined in metadata by an authorized user.

19. The machine-readable medium of claim 7 , wherein the subset of the plurality of metrics is predefined in metadata by an authorized user.

20. The machine-readable medium of claim 7 , wherein the plurality of visualizations for display via the user interface corresponds to a period of time determined for the alert.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 9, 2019
From: DANG, KANWALDEEP KAUR; GOYAL, RITIKA; JOHNSON, LUC JOHN; MAKOVSKY, BNAYAHU
To: SERVICENOW, INC.
Reel/Frame 049129/0281 →
Continuity (1)
Related Publication 20200351151A1 · Nov 5, 2020
Cited By (101)
US 12,206,696 US 12,244,621 US 12,261,866 US 12,267,345 US 12,284,197 US 12,309,181 US 12,309,182 US 12,309,185 US 12,309,236 US 12,323,449 US 12,335,286 US 12,335,348 US 12,341,797 US 12,348,545 US 12,355,626 US 12,355,787 US 12,355,793 US 12,363,148 US 12,368,745 US 12,368,746 US 12,368,747 US 12,375,573 US 12,381,901 US 12,395,573 US 12,401,669 US 12,405,849 US 12,407,701 US 12,407,702 US 12,418,552 US 12,418,555 US 12,425,428 US 12,425,430 US 12,445,474 US 12,452,272 US 12,452,279 US 12,457,231 US 12,463,994 US 12,463,995 US 12,463,996 US 12,463,997 US 12,464,003 US 12,470,577 US 12,470,578 US 12,483,576 US 12,489,770 US 12,489,771 US 12,495,052 US 12,500,910 US 12,500,911 US 12,500,912 US 12,505,126 US 12,506,762 US 12,511,110 US 12,513,221 US 12,526,297 US 12,537,836 US 12,537,837 US 12,537,839 US 12,537,840 US 12,537,884 US 12,549,575 US 12,549,577 US 12,556,548 US 12,556,559 US 12,563,060 US 12,563,064 US 12,563,071 US 12,563,072 US 12,580,932 US 12,580,934 US 12,580,935 US 12,580,936 US 12,580,937 US 12,587,553 US 12,592,950 US 12,598,205 US 12,613,930 US 12,615,271 US 12,621,324 US 12,621,329 US 12,627,686 US 12,627,687 US 12,627,690 US 12,634,312 US 12,634,376 US 12,652,302 US 12,659,325 US 12,659,326 US 12,659,327 US 12,659,333 US 12,676,874 US 12,689,638 US 12,689,640 US 12,695,768 US 12,706,931 US 12,706,932 US 12,706,933 US 12,706,980 US 12,712,897 US 12,719,896 US 12,726,495