IP Library › Granted Patent US 11,314,761
Granted Patent B1
US 11,314,761 · App. 16/528,287 · Granted Apr 26, 2022

Method and system for centralized multi-instance deployment consolidation

Inventors: Carl Yestrau (San Francisco, CA); Nicolas Stone (Oakland, CA)
Assignee: Splunk Inc.
G06F16/252G06F3/0482G06F16/168G06F16/2272G06F16/2471
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,314,761
App. No.
16/528,287
Granted
Apr 26, 2022
Kind
B1
Abstract

A computerized method is disclosed including operations of establishing a first communicative coupling with a first data intake and query system instance and a second communicative coupling with a second data intake and query system instance, automating performance of a search query on each of the first data intake and query system instance and the second data intake and query system instance, automating retrieval of search results from each of the first data intake and query system instance and the second data intake and query system instance, and generating instructions that, upon execution by one or more processors, cause rendering of a graphical user interface that displays the search results from each of the first data intake and query system instance and the second data intake and query system instance in a consolidated view. Additionally, performance of the search query occurs at a predetermined interval.

Claims (65)

1. A computerized method comprising:

establishing a first communicative coupling with a first data intake and query system instance and a second communicative coupling with a second data intake and query system instance;

automating performance of a search query on each of the first data intake and query system instance and the second data intake and query system instance;

automating retrieval of search results from each of the first data intake and query system instance and the second data intake and query system instance; and

generating instructions that, upon execution by one or more processors, cause rendering of a graphical user interface that displays the search results from each of the first data intake and query system instance and the second data intake and query system instance in a consolidated view.

2. The computerized method of claim 1 , wherein performance of the search query occurs at a predetermined interval.

3. The computerized method of claim 1 , wherein the search results include time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time.

4. The computerized method of claim 1 , wherein the search results include time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time, and

wherein the time series data is raw machine data.

5. The computerized method of claim 1 , wherein the data source includes a source of time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time, and

wherein the time series data is raw machine data that has been parsed into a plurality of timestamped events, each timestamped event in the plurality of timestamped events comprising at least a portion of the parsed raw data.

6. The computerized method of claim 1 , wherein establishing the first communicative coupling with the first data intake and query system instance includes:

receiving environment information including an environment name, a uniform resource identifier (URI) corresponding to the first data intake and query system instance, and authentication credentials,

storing the environment information in a repository, and

providing the authenticating credentials to the first data intake and query system.

7. The computerized method of claim 1 , wherein automating the performance of the search query on the first data intake and query system instance includes:

obtaining a predetermined interval and the search query from a search query repository,

providing, to the first data intake and query system, the search query and a command to perform the search query, and

repeatedly providing additional commands to perform the search query according to the predetermined interval.

8. The computerized method of claim 1 , wherein the graphical user interface includes a listing of data included in the search results from each of the first data intake and query system instance and the second data intake and query system.

9. The computerized method of claim 1 , wherein the graphical user interface is configured to receive user input corresponding to selection of the first data intake and query system instance and responsive thereto, obtain additional information corresponding to the search results from the first data intake and query system.

10. A non-transitory computer readable storage medium having stored thereon instructions, the instructions being executable by one or more processors to perform operations comprising:

establishing a first communicative coupling with a first data intake and query system instance and a second communicative coupling with a second data intake and query system instance;

automating performance of a search query on each of the first data intake and query system instance and the second data intake and query system instance;

automating retrieval of search results from each of the first data intake and query system instance and the second data intake and query system instance; and

generating instructions that, upon execution by one or more processors, cause rendering of a graphical user interface that displays the search results from each of the first data intake and query system instance and the second data intake and query system instance in a consolidated view.

11. The non-transitory computer readable storage medium of claim 10 , wherein performance of the search query occurs at a predetermined interval.

12. The non-transitory computer readable storage medium of claim 10 , wherein the search results include time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time.

13. The non-transitory computer readable storage medium of claim 10 , wherein the search results include time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time, and

wherein the time series data is raw machine data.

14. The non-transitory computer readable storage medium of claim 10 , wherein the data source includes a source of time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time, and

wherein the time series data is raw machine data that has been parsed into a plurality of timestamped events, each timestamped event in the plurality of timestamped events comprising at least a portion of the parsed raw data.

15. The non-transitory computer readable storage medium of claim 10 , wherein establishing the first communicative coupling with the first data intake and query system instance includes:

receiving environment information including an environment name, a uniform resource identifier (URI) corresponding to the first data intake and query system instance, and authentication credentials,

storing the environment information in a repository, and

providing the authenticating credentials to the first data intake and query system.

16. The non-transitory computer readable storage medium of claim 10 , wherein automating the performance of the search query on the first data intake and query system instance includes:

obtaining a predetermined interval and the search query from a search query repository,

providing, to the first data intake and query system, the search query and a command to perform the search query, and

repeatedly providing additional commands to perform the search query according to the predetermined interval.

17. The non-transitory computer readable storage medium of claim 10 , wherein the graphical user interface includes a listing of data included in the search results from each of the first data intake and query system instance and the second data intake and query system.

18. The non-transitory computer readable storage medium of claim 10 , wherein the graphical user interface is configured to receive user input corresponding to selection of the first data intake and query system instance and responsive thereto, obtain additional information corresponding to the search results from the first data intake and query system.

19. A system comprising:

a memory to store executable instructions; and

a processing device coupled with the memory, wherein the instructions, when executed by the processing device, cause operations including:

establishing a first communicative coupling with a first data intake and query system instance and a second communicative coupling with a second data intake and query system instance;

automating performance of a search query on each of the first data intake and query system instance and the second data intake and query system instance;

automating retrieval of search results from each of the first data intake and query system instance and the second data intake and query system instance; and

generating instructions that, upon execution by one or more processors, cause rendering of a graphical user interface that displays the search results from each of the first data intake and query system instance and the second data intake and query system instance in a consolidated view.

20. The system of claim 19 , wherein performance of the search query occurs at a predetermined interval.

21. The system of claim 19 , wherein the search results include time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time.

22. The system of claim 19 , wherein the search results include time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time, and

wherein the time series data is raw machine data.

23. The system of claim 19 , wherein the data source includes a source of time series data, wherein the time series data comprises a sequence of data points that are associated with successive points in time, and

wherein the time series data is raw machine data that has been parsed into a plurality of timestamped events, each timestamped event in the plurality of timestamped events comprising at least a portion of the parsed raw data.

24. The system of claim 19 , wherein establishing the first communicative coupling with the first data intake and query system instance includes:

receiving environment information including an environment name, a uniform resource identifier (URI) corresponding to the first data intake and query system instance, and authentication credentials,

storing the environment information in a repository, and

providing the authenticating credentials to the first data intake and query system.

25. The system of claim 19 , wherein automating the performance of the search query on the first data intake and query system instance includes:

obtaining a predetermined interval and the search query from a search query repository,

providing, to the first data intake and query system, the search query and a command to perform the search query, and

repeatedly providing additional commands to perform the search query according to the predetermined interval.

26. The system of claim 19 , wherein the graphical user interface includes a listing of data included in the search results from each of the first data intake and query system instance and the second data intake and query system.

27. The system of claim 19 , wherein the graphical user interface is configured to receive user input corresponding to selection of the first data intake and query system instance and responsive thereto, obtain additional information corresponding to the search results from the first data intake and query system.

Assignments (3)
CHANGE OF NAME Recorded Jul 22, 2025
From: SPLUNK INC.
To: SPLUNK LLC
Reel/Frame 072170/0599 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 22, 2025
From: SPLUNK LLC
To: CISCO TECHNOLOGY, INC.
Reel/Frame 072173/0058 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 31, 2019
From: YESTRAU, CARL; STONE, NICOLAS
To: SPLUNK, INC.
Reel/Frame 049922/0869 →
Cited By (5)
US 12,210,549 US 12,216,895 US 12,219,097 US 12,621,358 US 12,632,477