-
公开(公告)号:US11411804B1
公开(公告)日:2022-08-09
申请号:US17182554
申请日:2021-02-23
Applicant: Splunk Inc.
Inventor: Shalabh Goyal , Anish Shrigondekar , Bhavin Thaker , Zhenghui Xie , Ruochen Zhang
IPC: H04L41/0631 , G06F16/2458 , G06F9/451
Abstract: An actionable event responder performs actions including a server cluster determining an actionable event occurrence from a member of a server cluster, determining an event-type code matching the actionable event occurrence, retrieving an event-type response map entry matching the event-type code, and determining, in response to determining that the event-type response map entry matches the event-type code, a response action signifier in the event-type response map entry. The response action signifier indicates a response action performable by the server cluster. The server cluster further detects whether a preauthorization value is set in a dispatch field of the event-type response map entry, and generates an invocation message to a resolution handler based on the preauthorization value being set in the dispatch field of the event-type response map entry. The resolution handler performs the response action to the actionable event occurrence.
-
公开(公告)号:US12299508B2
公开(公告)日:2025-05-13
申请号:US18641089
申请日:2024-04-19
Applicant: Splunk Inc.
Inventor: Shalabh Goyal , Anish Shrigondekar , Bhavin Thaker , Zhenghui Xie , Ruochen Zhang
Abstract: As an indexer indexes and groups events, it can generate data slices that include events. Based on a slice rollover policy, the indexer can add a particular slice to an aggregate slice. Based on an aggregate slice backup policy, the indexer can store a copy of the aggregate slice to a shared storage system. The aggregate slice can be used for restore purposes in the event the indexer fails or becomes unresponsive.
-
公开(公告)号:US20250094253A1
公开(公告)日:2025-03-20
申请号:US18641089
申请日:2024-04-19
Applicant: Splunk Inc.
Inventor: Shalabh Goyal , Anish Shrigondekar , Bhavin Thaker , Zhenghui Xie , Ruochen Zhang
Abstract: As an indexer indexes and groups events, it can generate data slices that include events. Based on a slice rollover policy, the indexer can add a particular slice to an aggregate slice. Based on an aggregate slice backup policy, the indexer can store a copy of the aggregate slice to a shared storage system. The aggregate slice can be used for restore purposes in the event the indexer fails or becomes unresponsive.
-
公开(公告)号:US11966797B2
公开(公告)日:2024-04-23
申请号:US17933455
申请日:2022-09-19
Applicant: Splunk Inc.
Inventor: Shalabh Goyal , Anish Shrigondekar , Bhavin Thaker , Zhenghui Xie , Ruochen Zhang
CPC classification number: G06F9/546 , G06F11/3006 , G06F11/3409 , G06F2201/81
Abstract: As an indexer indexes and groups events, it can generate data slices that include events. Based on a slice rollover policy, the indexer can add a particular slice to an aggregate slice. Based on an aggregate slice backup policy, the indexer can store a copy of the aggregate slice to a shared storage system. The aggregate slice can be used for restore purposes in the event the indexer fails or becomes unresponsive.
-
公开(公告)号:US11693710B1
公开(公告)日:2023-07-04
申请号:US17589722
申请日:2022-01-31
Applicant: Splunk Inc.
Inventor: Bharath Kishore Reddy Aleti , Alexandros Batsakis , Mitchell Neuman Blank , Rama Gopalan , Hongxun Liu , Anish Shrigondekar
IPC: G06F16/00 , G06F7/00 , G06F9/50 , G06F16/2455 , G06F16/242 , G06F16/22
CPC classification number: G06F9/505 , G06F16/22 , G06F16/2425 , G06F16/24552
Abstract: Resource management includes storing, for multiple workload pools of a data intake and query system, a workload pool hierarchy arranged in multiple workload pool layers. After storing a processing request is assigned a selected subset of workload pools in a second layer of the workload pool hierarchy based on a type of processing request. The processing request is then assigned to an individual workload pool in the selected subset to obtain a selected workload pool. Execution of the processing request is initiated on the selected workload pool.
-
公开(公告)号:US11630695B1
公开(公告)日:2023-04-18
申请号:US17163160
申请日:2021-01-29
Applicant: Splunk Inc.
Inventor: Bharath Kishore Reddy Aleti , Alexandros Batsakis , Mitchell Neuman Blank , Rama Gopalan , Hongxun Liu , Anish Shrigondekar
Abstract: Dynamic reassignment of search processes into workload pools includes receiving a search query to search at least one data store, assigning the search query to a first workload pool, and executing the search query using a first hardware resource in the first workload pool, the first hardware resource corresponding to a first portion of a hardware device. Dynamic reassignment further includes receiving, while executing the search query, an update command to move the search query to a second workload pool, moving, while executing the search query, the search query to the second workload pool; and continuing execution of the search query using a second hardware resource in the second workload pool. The second hardware resource corresponds to a second portion of the hardware device.
-
公开(公告)号:US20230018723A1
公开(公告)日:2023-01-19
申请号:US17948037
申请日:2022-09-19
Applicant: Splunk Inc.
Inventor: Aditya Dhoke , Shalabh Goyal , Megha Lakshminarayan , Anish Shrigondekar , Ruochen Zhang
IPC: G06F16/182 , G06F11/20 , H04L67/1095 , G06F16/901 , G06F9/50 , H04L67/1087
Abstract: Cascading payload replication to target compute nodes is disclosed. Cascading payload replication can be accomplished using a two-stage operation for a replication operation. In the first stage, a plan is generated and distributed for the replication operation. The plan includes an assignment of compute nodes to tree nodes in a tree hierarchy. In the second phase, the payload is distributed according to the plan. The plan is different for at least two replication operations. Thus, the cascading payload replication is adaptable to changing target compute nodes and provides for load balancing.
-
公开(公告)号:US10545798B2
公开(公告)日:2020-01-28
申请号:US15420590
申请日:2017-01-31
Applicant: Splunk Inc.
Inventor: Jag Kerai , Anish Shrigondekar , Mitchell Blank, Jr. , Hasan Alayli
Abstract: Resegmenting chunks of data for load balancing is disclosed. A plurality of first chunks of data is received. The plurality of first chunks of data includes one or more entries that include raw data produced by a component of an information technology environment and that reflects activity in the information technology environment. The plurality of first chunks of data is resegmented into a plurality of second chunks of data based on entry boundaries in at least some of the plurality of first chunks of data. A first subset of the plurality of second chunks of data is distributed to a first indexer of a set of indexers. An occurrence of a trigger event is determined, and in response to the trigger event, a second subset of the plurality of second chunks of data is distributed to a second indexer of the set of indexers.
-
公开(公告)号:US12197962B1
公开(公告)日:2025-01-14
申请号:US18169728
申请日:2023-02-15
Applicant: SPLUNK INC.
Inventor: Jag Kerai , Anish Shrigondekar , Mitchell Blank, Jr. , Hasan Alayli
Abstract: Resegmenting chunks of data for load balancing is disclosed. A plurality of first chunks of data is received. The plurality of first chunks of data includes one or more entries that include raw data produced by a component of an information technology environment and that reflects activity in the information technology environment. The plurality of first chunks of data is resegmented into a plurality of second chunks of data based on a source type of the plurality of first chunks. A first subset of the plurality of second chunks of data is distributed to a first indexer of a set of indexers. An occurrence of a trigger event is determined, and in response to the trigger event, a second subset of the plurality of second chunks of data is distributed to a second indexer of the set of indexers.
-
公开(公告)号:US12072939B1
公开(公告)日:2024-08-27
申请号:US17589712
申请日:2022-01-31
Applicant: Splunk Inc.
Inventor: Alexandros Batsakis , Nir Frenkel , Nitilaksha Halakatti , Balaji Rao , Anish Shrigondekar , Ruochen Zhang , Steve Yu Zhang
IPC: G06F16/00 , G06F16/23 , G06F16/2458 , G06F16/903 , G06F16/9032
CPC classification number: G06F16/90335 , G06F16/23 , G06F16/2471 , G06F16/9032
Abstract: A data intake and query system can generate local data enrichment objects and receive federated data enrichment objects from another data intake and query system. In response to receiving a query, the data intake and query system can determine whether the query is subquery of a federated query. If the query is a subquery, the data intake and query system can use the federated data enrichment objects to execute the query.
-
-
-
-
-
-
-
-
-