×

Event specific entity relationship discovery in data intake stage of a distributed data processing system

  • US 10,419,463 B2
  • Filed: 03/20/2018
  • Issued: 09/17/2019
  • Est. Priority Date: 08/31/2015
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • accessing machine data representing an event, the event resulting from an activity that occurred on a computer network;

    identifying, in the event, a first entity that participated in the activity and a relationship between the first entity and a second entity, the relationship being indicative of the activity; and

    annotating, by using a graph data structure, raw machine data of the event to include the identified relationship between the first and second entities in the event, wherein annotation in the event enables an event processing engine to detect an anomaly in the computer network.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×