GROUPING AND MANAGING EVENT STREAMS GENERATED FROM CAPTURED NETWORK DATA
First Claim
1. A method for facilitating the processing of network data, comprising:
- causing for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents;
causing for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that comprise temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream; and
updating the configuration information based on input received through the first set of user-interface elements.
1 Assignment
0 Petitions
Accused Products
Abstract
The disclosed embodiments provide a system that facilitates the processing of network data. During operation, the system causes for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents. Next, the system causes for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that contain temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream. The system then updates the configuration information based on input received through the first set of user-interface elements.
85 Citations
31 Claims
-
1. A method for facilitating the processing of network data, comprising:
-
causing for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents; causing for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that comprise temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating the capture of time-series event data in an ephemeral event stream; and updating the configuration information based on input received through the first set of user-interface elements. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17)
-
-
18. An apparatus, comprising:
-
one or more processors; and memory storing instructions that, when executed by the one or more processors, cause the apparatus to; cause for display a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents; cause for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that comprise temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating an ephemeral event stream; and update the configuration information based on input received through the first set of user-interface elements. - View Dependent Claims (19, 20, 21, 22, 23, 24)
-
-
25. A non-transitory computer-readable storage medium storing instructions that when executed by a computer cause the computer to perform a method for facilitating the processing of network data, the method comprising:
-
causing for display, on a computer system, a graphical user interface (GUI) for obtaining configuration information for configuring the generation of time-series event data from network packets captured by one or more remote capture agents; causing for display, in the GUI, a first set of user-interface elements for managing one or more ephemeral event streams that comprise temporarily generated time-series event data from the network packets, wherein managing the one or more ephemeral event streams comprises modifying an end time for terminating an ephemeral event stream; and updating the configuration information based on input received through the first set of user-interface elements. - View Dependent Claims (26, 27, 28, 29, 30, 31)
-
Specification